securityContext and podsecurityPolicies

1. 介绍

SecutyContextarrow-up-right https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#before-you-beginarrow-up-right

2. Set Container User and Group

3. Force Container Non-Root

4. Privileged Containers

\

5. Create Privileged Containers

在这里插入图片描述

6. PrivilegeEscalation

\

7. Practice - Disable PriviledgeEscalation

在这里插入图片描述

\

9. Create and enable PodSecurityPolicy

pod-security-policyarrow-up-right 在这里插入图片描述

allowPrivilegeEscalation设置为rue

更多细节参考arrow-up-right

最后更新于