Cloud Security Podcast

Kubernetes Network Security for Multi Tenancy

11 snips
Dec 12, 2023
Cailyn Edwards, Senior Security Engineer at Shopify, discusses the complexities of Kubernetes Network Security in a multi-tenant environment, including tools and tactics for securing Kubernetes environments. She also shares insights from her journey at Shopify and tips for advancing the security maturity of Kubernetes networks.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Kubernetes Networking Is Open by Default

  • Kubernetes networking resembles traditional networking externally but is a flat internal network needing explicit security configuration.
  • Kubernetes is not secure by default; it opens all communication by design, relying on user-specified restrictions via YAML.
ANECDOTE

Multi-Tenancy Explained with Roommates

  • Multi-tenancy in Kubernetes is like sharing an apartment with different roommates having various comfort levels.
  • You must protect your space from risky roommates to prevent unauthorized access between workloads.
ADVICE

Use Kubernetes Security Checklist

  • Use the Kubernetes Security Checklist to proactively enable built-in security features suited to your infrastructure.
  • Regularly audit your cluster configuration to prevent common misconfigurations and vulnerabilities.
Get the Snipd Podcast app to discover more snips from this episode
Get the app