securityContext and podsecurityPolicies

1. 介绍

SecutyContext https://kubernetes.io/docs/tasks/configure-pod-container/security-context/#before-you-begin

2. Set Container User and Group

3. Force Container Non-Root

4. Privileged Containers

\

5. Create Privileged Containers

在这里插入图片描述

6. PrivilegeEscalation

\

7. Practice - Disable PriviledgeEscalation

在这里插入图片描述

\

9. Create and enable PodSecurityPolicy

pod-security-policy 在这里插入图片描述

allowPrivilegeEscalation设置为rue

更多细节参考

最后更新于