All
Articles
Conferences
Presentations
Dates
Clear
Within 1 day
Within 1 week
Within 1 month
Within 1 year
Within 3 years
Author
Has Video
1
Conferences
Apply
KubeCon + CloudNativeCon North America 2022
1
Tags
Apply
Kubernetes
1
containers
1
multi-tenant
1
orchestration
1
single-tenant
1
Sort by:
Most recent
Running Isolated VirtualClusters With Kata & Cluster API
Conference:
KubeCon + CloudNativeCon North America 2022
Authors:
Chris Hein
,
Eric Ernst
2022-10-26
tldr - powered by Generative AI
The presentation discusses the use of Kata containers for stronger workload isolation in a multi-tenant environment.
Multi-tenancy in a single interface can pose security risks
Options for stronger isolation include sandboxed runtimes like Kata containers
Kata containers use a virtual machine monitor to launch a minimally configured virtual machine for each container
Networking is simplified with a v eth dropped into a network name space
Per-tenant iptable rules are synced to the tenant control plane for added security
Tags:
Kubernetes
containers
orchestration
single-tenant
multi-tenant
Show 0 Comments
1