Google Kubernetes Engine Security: Binary Authorization
Offered By: Google via Google Cloud Skills Boost
Course Description
Overview
This lab deploys a Kubernetes Engine Cluster with the Binary Authorization feature enabled; you'll learn how to whitelist approved container registries and the process of creating and running a signed container.
Syllabus
- GSP479
- Overview
- Architecture
- Setup
- Task 1. Copy resources
- Task 2. Set default cluster version
- Task 3. Deployment steps
- Task 4. Validation
- Task 5. Using Binary Authorization
- Task 6. Creating a private GCR image
- Task 7. Denying all images
- Task 8. Denying images except from allowlisted container registries
- Task 9. Enforcing attestations
- Task 10. "Signing" a container image
- Task 11. Running an image with attestation enforcement enabled
- Task 12. Handling emergency situations
- Task 13. Tear down
- Troubleshooting in your own environment
- Relevant materials
- Congratulations
Tags
Related Courses
Getting Started with Google Kubernetes EnginePluralsight Getting Started with Google Kubernetes Engine
Pluralsight Docker and Containers: The Big Picture
Pluralsight Developing .NET Core Apps with Docker
Pluralsight Getting Started with Docker
Pluralsight