Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

DaemonSet - see if we can make it more secure #108

Open
dgkanatsios opened this issue Dec 16, 2021 · 0 comments
Open

DaemonSet - see if we can make it more secure #108

dgkanatsios opened this issue Dec 16, 2021 · 0 comments
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed

Comments

@dgkanatsios
Copy link
Collaborator

dgkanatsios commented Dec 16, 2021

Currently the DaemonSet operates on HostPort 56001 on the Node. Whereas there is a Network Security Group that protects the cluster from outside access (only 10000-12000 range is allowed), we should examine if we can do something to disable communication between the DaemonSet Pod on a Node and Pods on different Nodes.

@dgkanatsios dgkanatsios added enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed labels Dec 16, 2021
@dgkanatsios dgkanatsios changed the title DaemonSet - make it more secure DaemonSet - make it more secure if possible Dec 16, 2021
@dgkanatsios dgkanatsios added this to the 0.3.0 milestone Dec 16, 2021
@dgkanatsios dgkanatsios removed this from the 0.3.0 milestone Mar 3, 2022
@dgkanatsios dgkanatsios changed the title DaemonSet - make it more secure if possible DaemonSet - try make it more secure Jul 3, 2022
@dgkanatsios dgkanatsios changed the title DaemonSet - try make it more secure DaemonSet - see if we can make it more secure Jul 8, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request good first issue Good for newcomers help wanted Extra attention is needed
Projects
None yet
Development

No branches or pull requests

1 participant