October 20, 2019

202 words 1 min read

Sharing is Caring: Your Kubernetes Cluster, Namespaces, and You

Sharing is Caring: Your Kubernetes Cluster, Namespaces, and You

Kubernetes namespaces partition workloads into virtual clusters, so multiple teams or applications can safely share a physical cluster. Today, there is no consensus on how to use namespaces in relatio …

Talk Title Sharing is Caring: Your Kubernetes Cluster, Namespaces, and You
Speakers Amy Chen (Systems Software Engineer, VMware), Eryn Muetzel (Director, Product Management, VMware)
Conference KubeCon + CloudNativeCon Europe
Conf Tag
Location Barcelona, Spain
Date May 19-23, 2019
URL Talk Page
Slides Talk Slides
Video

Kubernetes namespaces partition workloads into virtual clusters, so multiple teams or applications can safely share a physical cluster. Today, there is no consensus on how to use namespaces in relation to identity, resource limits, and security. This leads to vulnerable applications and inefficient usage of cluster resources. As the number of teams, clusters, and namespaces grows, it becomes difficult to maintain coherence. By aligning identity, resource limits, and your application’s security posture, cluster operators can get more organizational mileage out of Kubernetes namespaces. In this talk, we will… · Walk through common scenarios of how organizations use namespaces today · Show how to enforce RBAC, resource limits, and your application’s security posture (e.g. networking, service accounts) within namespaces · Outline friction in existing namespace management workflows

comments powered by Disqus