Тёмный

Secure access to GKE workloads with Workload Identity 

Google Cloud Tech
Подписаться 1,2 млн
Просмотров 16 тыс.
50% 1

What authorization types are available for GKE? How do you manage access to your GKE workloads at the cloud and cluster levels? Workload Identity is the recommended way to access Google Cloud services in a secure and manageable way. In this episode of GKE Essentials, Kaslin Fields discusses how to simplify access management for Kubernetes workloads with Google Cloud Workload Identity. Watch along and learn how to secure your GKE clusters!
Chapters:
0:00 - Intro
0:33 - Authorization types in GKE
0:45 - Cloud IAM role
2:22 - Kubernetes role-based access control
3:11 - Service accounts for Kubernetes and Google Cloud
4:13 - What is Workload Identity?
5:07 - How to deploy Workload Identity
5:51 - Wrap up
Introduction to securing cluster access → goo.gle/3MjVPLm
Check out more GKE Essentials → goo.gle/GKEEssentials
Subscribe to Google Cloud Tech → goo.gle/GoogleCloudTech
#GKEEssentials

Наука

Опубликовано:

 

7 авг 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 6   
@googlecloudtech
@googlecloudtech 2 года назад
What do you think about the Workload Identity tool for GKE? Let us know in the comments below and don’t forget to like and subscribe for the latest in GKE Essentials! → goo.gle/GoogleCloudTech
@AlejandroBiancucci
@AlejandroBiancucci Месяц назад
Thanks for simplifying these topics. They can be really confusing at times ñ. This helps.
@dheer211
@dheer211 2 года назад
Great video thank you
@thecloudcareers
@thecloudcareers 2 года назад
This is one of best feature. Which avoids rotation of keys
@patricknelson
@patricknelson 2 года назад
I’ve been getting into Workload Identity more lately. One thing I’ve really been wondering about is if it’s possible to differentiate between the service account performing image pulling vs. the service account actually used to execute the workload (i.e. at the pod level). Is that possible? You can use imagePullSecrets but that’s precisely what I’m trying to avoid using, and I just want a SA who’s sole purpose is just for pulling images from a separate project. 🤦‍♂️
@aravindpoojari68
@aravindpoojari68 2 года назад
All good but wasted first 3 minutes explaining IAM.
Далее
Introduction to securing cluster access
5:55
Просмотров 10 тыс.
Interacting with your Kubernetes workloads
15:08
Просмотров 15 тыс.
Вы чего бл….🤣🤣🙏🏽🙏🏽🙏🏽
00:18
На фейсконтроле 💂
09:41
Просмотров 1 млн
Склеил девушку-курьера ❤️
01:00
RBAC in Kubernetes
20:27
Просмотров 31 тыс.
Cloud Run: Concepts of Networking
6:19
Просмотров 25 тыс.
Cloud SQL: Concepts of Networking
6:49
Просмотров 17 тыс.
Intro to building large GKE clusters
8:44
Просмотров 7 тыс.
Intro to building large GKE clusters - part 2
10:00
Просмотров 5 тыс.