8

, Kubernetes . 80% Kubernetes . .

, . , , Kubernetes. , .

Kubernetes, , , , Kubernetes IP- IP. . , , Kubernetes . , , Kubernetes , Kubernetes.

Kubernetes:

  • , ,
  • .
  • DevOps Kubernetes
  • , .

, .


1. Kube Hunter

Kube Hunter - Aqua Security. Kubernetes. , , , .

, , Kubernetes.

Kube Hunter

.

  • , pip Kube Hunter Kubernetes. .
  • Kube Hunter - Docker. Kube Hunter , .
  • - Kube Hunter Kubernetes . .

2. KubeBench

Kube Bench , CIS (Center for Internet Security).

Kubernetes. , . , . , CIS.

KubeBench

KubeBench:

  • Go
  • Kubernetes
  • YAML,
  • JSON

3. Checkov

Checkov - , Kubernetes, Terraform, Cloudformation, Serverless Infrastructure-as-code-language. Python .

Checkov Infrastructure-as-code-language

Checkov

Checkov:

  • 500
  • AWS, Azure Google Cloud
  • - CLI, JUnit XML, JSON
  • ci/cd
  • , Terraform & Cloudformation

4. MKIT

MKIT Kubernetes. Kubernetes . .

, http://localhost:8000. . .

MKIT

MKIT:

  • Kubernetes - AKS, EKS GKE
  • -

5. Kubei

Kubei Kubernetes. Kubei Go. CIS Docker.

, Kubernetes, .. , , .. , , .

Kubei

Kubei:

  • Kubernetes
  • ,
  • -

6. Kube Scan

Kube Scan - , . , , , -. 0 10, 0 , 10 - .

Kube Scan

, Kube scan, KCCSS, Kubernetes, . CVSS (Common Vulnerability Scoring System). 30 , , Kubernetes, . .

KubeScan:

  • -
  • .
  • 24

7. Kubeaudit

Kubeaudit, , Kubernetes . Kubernetes , . Go, Go . brew.

, , . , Kubernetes, SecurityContext .

Kubeaudit

Kubeaudit:

  • Kubernetes
  • - , , ,
  • - , ,
  • , ,

8. Kubesec

Kubesec - Kubernetes. , Kubernetes. , , Kubernetes kubectl.

Kubesec

Kubesec:

  • HTTP-, 8080.
  • Kubesec-as-a-Service HTTPS v2.kubesec.io/scan
  • YAML .

Kubernetes , . .


50% Merion Academy