OpenShift image security and cluster maintenance best practices

OpenShift image security and cluster maintenance best practices

This is the last installment in our four-part OpenShift security blog series. Don’t forget to check out our previous blog posts in the series: Part 1 - OpenShift security best practices for designing clusters Part 2 - OpenShift networking and cluster access best practices Part 3 - OpenShift runtime security ... Read More
KubeLinter: An open source linter for Kubernetes, from StackRox

How KubeLinter fits in the CNCF Ecosystem

The State of Kubernetes Security in 2020 There has been a significant shift in the Kubernetes community to security topics in the past year. According to the StackRox State of Container and Kubernetes Security Report, Fall 2020, human error causes most security incidents in Kubernetes, with misconfigurations contributing to roughly ... Read More
KubeCon 2020 Highlights and Key Takeaways

KubeCon 2020 Highlights and Key Takeaways

The Cloud Native Computing Foundation’s (CNCF) flagship Kubernetes and cloud-native conference went completely virtual this year. KubeCon + Cloud-NativeCon North America took place last week over four days (November 17-21) with many unique sessions and topics. The keynote sessions took place from Wednesday to Friday for 2 hours each. Speaker ... Read More

Reflections on Our Progress During a Very Challenging Year

As we close another inspirational KubeCon and look ahead to future gatherings, let’s also pause to reflect on the accomplishments we’ve achieved together as members of the cloud-native community. For most of us, 2020 was one of the most challenging periods in our personal and professional lives. Most of us ... Read More
CKS CNCF Announcement and Exam Study Tips

CKS CNCF Announcement and Exam Study Tips

KubeCon Announcement and Linux Foundation Update On Tuesday during KubeCon, the Cloud Native Computing Foundation (CNCF) announced the Certified Kubernetes Security Specialist certification is now generally available. The announcement confirmed important information that we previously outlined in our most recent blog detailing the CKS. Thanks to the updates from the ... Read More
OpenShift Runtime Security Best Practices

OpenShift Runtime Security Best Practices

This is part three of our four-part OpenShift security blog series. Don’t forget to check out our previous blog posts in the series: Part 1 - OpenShift security best practices for designing clusters Part 2 - OpenShift networking and cluster access best practices Adhering to best practices for running your ... Read More
StackRox integrates with Google Artifact Registry to secure software supply chains on GCP

StackRox integrates with Google Artifact Registry to secure software supply chains on GCP

As the brainchild behind the Borg project – the predecessor to Kubernetes – Google Cloud is at the forefront of enabling the move towards microservices architectures, containerization, and Kubernetes. As the only Kubernetes-native container security solution provider, StackRox is a leader in Kubernetes Security and has partnered with Google Cloud ... Read More
What is CNCF’s CKS Exam and What is Covered?

What is CNCF’s CKS Exam and What is Covered?

What is the Certified Kubernetes Security Specialist (CKS)? The CKS is the third Kubernetes based certification backed by the Cloud Native Computing Foundation (CNCF). CKS will join the existing Certified Kubernetes Administrator (CKA) and Certified Kubernetes Application Developer (CKAD) programs. All three certifications are online, proctored, performance-based exams that will ... Read More
OpenShift Networking and Cluster Access Best Practices

OpenShift Networking and Cluster Access Best Practices

This blog post is part two of a four-part blog series where we discuss various OpenShift security best practices for Designing secure clusters Securing the network and cluster access (topic of this blog) Building secure images (future blog) Protecting workloads at runtime (future blog) OpenShift Networking Best Practices for Security ... Read More
OpenShift security best practices part 1 of 5: cluster design

OpenShift security best practices part 1 of 5: cluster design

Red Hat’s OpenShift Container Platform (OCP) is a Kubernetes platform for operationalizing container workloads remotely or as a hosted service. OpenShift enables consistent security, built-in monitoring, centralized policy management, and compatibility with Kubernetes workloads. The rapid adoption of open source projects can introduce vulnerabilities in standard Kubernetes Environments. OCP supports ... Read More