官术网_书友最值得收藏!

Chapter 3: Threat Modeling

Kubernetes is a large ecosystem comprising multiple components such as kube-apiserver, etcd, kube-scheduler, kubelet, and more. In the first chapter, we highlighted the basic functionality of different Kubernetes components. In the default configuration, interactions between Kubernetes components result in threats that developers and cluster administrators should be aware of. Additionally, deploying applications in Kubernetes introduces new entities that the application interacts with, adding new threat actors and attack surfaces to the threat model of the application.

In this chapter, we will start with a brief introduction to threat modeling and discuss component interactions within the Kubernetes ecosystem. We will look at the threats in the default Kubernetes configuration. Finally, we will talk about how threat modeling an application in the Kubernetes ecosystem introduces additional threat actors and attack surfaces.

The goal of this chapter is to help you understand that the default Kubernetes configuration is not sufficient to protect your deployed application from attackers. Kubernetes is a constantly evolving and community-maintained platform, so some of the threats that we are going to highlight in this chapter do not have mitigations because the severity of the threats varies with every environment.

This chapter aims to highlight the threats in the Kubernetes ecosystem, which includes the Kubernetes components and workloads in a Kubernetes cluster, so developers and DevOps engineers understand the risks of their deployments and have a risk mitigation plan in place for the known threats. In this chapter, we will cover the following topics:

  • Introduction to threat modeling
  • Component interactions
  • Threat actors in the Kubernetes environment
  • The Kubernetes components/objects threat model
  • Threat modeling applications in Kubernetes
主站蜘蛛池模板: 玉田县| 山阳县| 昭通市| 泗水县| 武鸣县| 松江区| 天峨县| 平陆县| 彝良县| 金昌市| 大宁县| 万源市| 宁都县| 寿阳县| 封丘县| 日土县| 四平市| 平果县| 凌源市| 九江市| 北票市| 富裕县| 雷波县| 离岛区| 陇川县| 新宾| 河西区| 锦州市| 饶河县| 甘孜| 泾川县| 噶尔县| 公安县| 五莲县| 江西省| 修武县| 凌海市| 门源| 三台县| 皋兰县| 丽水市|