kubernetes security with falco & falco talon

JaberZare1 89 views 20 slides Oct 14, 2024
Slide 1
Slide 1 of 20
Slide 1
1
Slide 2
2
Slide 3
3
Slide 4
4
Slide 5
5
Slide 6
6
Slide 7
7
Slide 8
8
Slide 9
9
Slide 10
10
Slide 11
11
Slide 12
12
Slide 13
13
Slide 14
14
Slide 15
15
Slide 16
16
Slide 17
17
Slide 18
18
Slide 19
19
Slide 20
20

About This Presentation

kubernetes security with falco + falco talon
Presented at the First Cloud Native Community in Tehran.


Slide Content

Kubernetes security with Falco jaber zare Senior Devops engineer | Tapsi

The Security Camera for Modern Apps CNCF GRADUATED PROJECT created by Sysdig

What is Falc o ? Cloud Native Runtime Security Runtime security engine Observability for endpoints and cloud infrastructure Built on eBPF Integrated with Kubernetes CNCF GRADUATED PROJECT

About Falco

The Falco sensor

Sensor Sensor Sensor Sensor System Calls System Calls Audit Logs CloudTrail Alerts Collector High level architecture

High level architecture

Falco High level architecture

Falco rule example A shell is run in a container

KCP, with Marvin Beckers Spotify AI Platform, with Avin Regmi and David Xia Dagger, with Solomon Hykes https://kubernetespodcast.com Podcast

Falcosidekick

Falco Talon What is it good for? React in real-time to the Falco Events Allow fine granularity to match the events to react to Responding to default rules with specific overrides Falco Talon Response Engine for managing threats in Kubernetes clusters.

Falco Talon

Falco Talon Quarantine Pod in Network Policy

CNCF GRADUATED PROJECT Users and builders

Demo Detecting a Crypto Mining Malware attack with Falco live Demo : https://falco.org/training/

Free E-Book

Questions

Resources Get started at Falco.org Check out the Falco project in Github Get involved in the Falco community Meet the maintainers on the Falco Slack Follow @falco_org on Join a Falco workshop

Thank you!