DevOpsForum 2019 l Kubernetes in Highly Secure Environments
Максим Васильев, Москва
Kublr, Senior DevOps Engineer
Kubernetes and DevOps Engineer in Kublr develop team. 18 years experience in IT operations and developments. Evangelist of DevOps, Kubernetes and Docker.
DevOps, Kubernetes инженер в команде Kublr. В ИТ эксплуатации и разработке более 18 лет, популяризатор DevOps, Kubernetes и Docker.
Installing Kubernetes is easy. Ensuring it complies with your organization’s enterprise governance and security requirements isn’t. During this session, Kublr team will outline common prerequisites to run Kubernetes in production. How to leverage fine-grained controls and separation of responsibilities to meet enterprise governance and security needs. He’ll cover basic requirements for audit, security, authentication, authorization, integration with existing identity broker, logging, and monitoring. Additionally, he’ll discuss whether cloud-hosted Kubernetes cover these requirements, how to integrate a compliant Kubernetes installation with your existing cloud infrastructure and handle cross-team communication (network/compute/storage/security). Yet on-premise Kubernetes deployments don’t come without challenges. We’ll dive into the limitations of a bare-metal installation, interactions with vSphere’s API, achieving HA, reliability and disaster recovery, as well as handling OS upgrades, security patches, and Kubernetes upgrades. We’ll close with a quick outlook of what’s next, such as infrastructure as a code, immutable infrastructure, and gitops.
