Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
Introduction
- Linux Foundation
- Linux Foundation Training
- Linux Foundation Certifications
- Linux Foundation Digital Badges
- Laboratory Exercises, Solutions, and Resources
- E-Learning Course: LFS260
- Distribution Details
- Labs
Cloud Security Overview
- Multiple Projects
- Defining Security
- Assessment
- Prevention
- Detection
- Reaction
- Categorization of Attackers
- Types of Attacks
- Attack Surfaces
- Hardware and Firmware Considerations
- Security Agencies
- Managing External Access
- Labs
Preparing to Install
- Image Supply Chain
- Runtime Sandbox
- Verifying Platform Binaries
- Minimizing Access to GUI
- Policy-Based Control
- Labs
Installing the Cluster
- Updating Kubernetes
- Tools for Kernel Hardening
- Kernel Hardening Examples
- Mitigating Kernel Vulnerabilities
- Labs
Securing the kube-apiserver
- Restricting API Access
- Enabling kube-apiserver Auditing
- Configuring RBAC
- Pod Security Policies
- Minimizing IAM Roles
- Protecting etcd
- CIS Benchmark
- Utilizing Service Accounts
- Labs
Networking
- Firewalling Basics
- Network Plugins
- iptables
- Mitigating Brute Force Login Attempts
- Netfilter Rule Management
- Netfilter Implementation
- nft Concepts
- Ingress Objects
- Pod-to-Pod Encryption
- Restricting Cluster-Level Access
- Labs
Workload Considerations
- Minimizing Base Images
- Static Analysis of Workloads
- Runtime Analysis of Workloads
- Container Immutability
- Mandatory Access Control
- SELinux
- AppArmor
- Generating AppArmor Profiles
- Labs
Issue Detection
- Understanding Phases of Attack
- Preparation
- Comprehending Attack Progression
- Actions During an Incident
- Handling Incident Aftermath
- Intrusion Detection Systems
- Threat Detection
- Behavioral Analytics
- Labs
Domain Reviews
- Exam Preparation - CKS
Requirements
Participants are expected to possess proficiency in Linux administration and be comfortable navigating the command line. The ability to edit files using a command-line text editor is mandatory, along with foundational security knowledge.
Audience
This course is tailored for professionals who hold a CKA certification and are either interested in or responsible for cloud security.
Experience Level: Intermediate
28 Hours
Testimonials (1)
experienced trainer