In this video, we explore enhancing the security of your Kubernetes clusters using OPA and OPA Gatekeeper, making it essential viewing for anyone interested in Kubernetes security and CNCF projects.
Highlights include the importance of creating security policies, an overview of Open Policy Agent (OPA) and its functionalities, an in-depth look at OPA Gatekeeper (a CNCF project extending OPA to Kubernetes), and exploring the Gatekeeper library with prebuilt constraints. Additionally, you'll learn how to leverage observability signals from Gatekeeper to monitor and enforce policies effectively.
📖 Chapters 📖
-----------------------------
00:00 Introduction
01:43 Importance of Security Policies in Kubernetes
04:14 Introduction to Open Policy Agent (OPA)
10:40 Deep Dive into OPA Gatekeeper
16:38 Exploring the Gatekeeper Library
18:30 Enhancing Observability with Gatekeeper
23:01 Conclusion & Key Takeaways
-----------------------------
🔗 Additional links:
OPA Gatekeeper: https://open-policy-agent.github.io/gatekeeper/website/
Gatekeeper Library: https://open-policy-agent.github.io/gatekeeper-library/website/
Rego Playground:https://play.openpolicyagent.org/
View the GitHub tutorial: https://dt-url.net/observable-opagatekeeper
Read the blog post on OPA Gatekeeper: https://isitobservable.io/observability/kubernetes/how-to-build-and-observe-security-policies-with-opa-gatekeeper
🔬 Want more about tools that the cloud-native pros use? Check out the full list of my favs over here on this YouTube playlist: https://www.youtube.com/playlist?list=PL6VBQyIvTlRjAMeeZN5yfD07X8DdYonnI
Check out ALL my observability secrets, tips, and tricks on our blog: https://isitobservable.io/
👉✅ Stay connected with me!
Twitter: https://twitter.com/IsitObservable
LinkedIn: https://www.linkedin.com/company/isitobservable
IsItObservable is powered by Dynatrace’s own developer relations team. Subscribe to get observability reviews, tips and tricks, and tutorials tested by cloud-native experts. I review, test, and share results to help you succeed with platform engineering and observability.