Kubernetes Pod and Container Security

From NovaOrdis Knowledge Base
Revision as of 01:13, 20 February 2021 by Ovidiu (talk | contribs) (→‎Overview)
Jump to navigation Jump to search

External

Internal

Overview

Containers instantiated from container images and running in pods in a Kubernetes cluster are executing by default using container image configuration. This includes the user and the group various container processes run under, which is by default specified with the USER directive in the container image.

Pod Security Context

Container Security Context

Relationship with Pod Security Policy

For more details see:

Pod Security Policy Concepts

Privileged Mode