cncf / tag-security

🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!
https://tag-security.cncf.io
Other
2.03k stars 507 forks source link

[Suggestion] Best Practices for Namespace #942

Closed knowlengr closed 3 months ago

knowlengr commented 2 years ago

Consideration of best or suggested practices for namespace management.

Possible Impact

Additional Research Possibly relevant references. (Personal research is ongoing.)

Related

lumjjb commented 2 years ago

Sorry a bit of a lag here, but i think a few things i mentioned during the call were openshift projects that tried to implement more defined security boundaries around k8s.

Also the Flux multitenancy proposal may be a good data point as well - not sure if this is the best link: https://github.com/fluxcd/flux2-multi-tenancy

JimBugwadia commented 2 years ago

Relatively new entry in the K8s docs that discusses various isolation levels from a multi-tenancy perspective:

https://kubernetes.io/docs/concepts/security/multi-tenancy/

stale[bot] commented 1 year ago

This issue has been automatically marked as inactive because it has not had recent activity.

stale[bot] commented 1 year ago

This issue has been automatically marked as inactive because it has not had recent activity.

anvega commented 3 months ago

Closing as this has been inactive for a few years. Please feel free to reopen if there is renewed interest in pursuing this.