Kubernetes Security Simplified | Role, ClusterRole, RBAC, RoleBinding, IRSA, Service Account

Sdílet
Vložit
  • čas přidán 6. 08. 2024
  • Kubernetes security can be confusing. In this video, we dive deep and understand Kubernetes security concepts - ClusterRole, Service Account, ClusterRoleBinding, Role, Role Vs ClusterRole, RoleBinding, IRSA. Difference between Application Security Vs User Security.
    💰👨‍🎓 Get my courses with max discount and 30 day moneyback guarantee: bit.ly/3Eku9RH
    🙏Please Subscribe: bit.ly/2Yk0Kbb
    *Connect with me*
    🤳 Instagram: / cloudwithraj
    🏢 LinkedIN: / cloudwithraj
    🐦Twitter: / cloudwithraj
    🖼 Facebook: / cloudwithraj
  • Věda a technologie

Komentáře • 68

  • @maheshsawaiker2492
    @maheshsawaiker2492 Před 3 lety +1

    awesome..just what is needed in minimal time.

  • @Lawrence_Femi_Ikenna_Odedina

    Dude, Thank you and I love you for breaking things down that even a person like me can understand.

    • @rohanrustagi7857
      @rohanrustagi7857 Před rokem

      YES EVEN AN IDIOT LIKE ME ABLE TO UNDERSTAND WHATS THE DIFF BETWEEN ROLE AND CLUSTER ROLE. THANKS SIR

  • @peterm9893
    @peterm9893 Před 2 lety +2

    I already know all the K8 specific terminology .. etc really well for on-prem, but I wasn't exactly sure how that ties into AWS, and there goes your video boom ... I totally get it now. many thanks indeed !

  • @cantbefooled8044
    @cantbefooled8044 Před rokem

    this is the best explanation of k8s subjects like wow.. thank you so much

  • @nitalshah9523
    @nitalshah9523 Před rokem

    This is the best explanation of Kubernetes Security

  • @1234mytubeuser1234
    @1234mytubeuser1234 Před 3 lety +5

    This is very first time I am reading about K8s security topics. I did not understand it completely. It is definitely an advanced + difficult topic. But I am pretty sure no one could have explained it with such ease. Kudos to your teaching style. Subscribed right after this video!

    • @cloudwithraj
      @cloudwithraj  Před 3 lety

      Glad it was helpful! Thanks for the kind words.

  • @vvsiva007
    @vvsiva007 Před 3 lety +1

    Nice - to the point !!!

  • @elad3958
    @elad3958 Před 2 lety

    dude your saving my day right now lol. Masterful.

  • @kennethcorradine2447
    @kennethcorradine2447 Před 2 lety +1

    Too much interesting info. to be digested by my brain in just a few minutes ! good job

  • @CarlaJenkinsTV
    @CarlaJenkinsTV Před 4 lety +1

    Thanks for that clear explanation.

    • @cloudwithraj
      @cloudwithraj  Před 4 lety +2

      Glad you found this video helpful. Thanks for watching!

  • @idabagusdiazagasatya9900
    @idabagusdiazagasatya9900 Před 11 měsíci

    Wow now it all makes sense thanks raj

  • @nguyenthanhdat93
    @nguyenthanhdat93 Před 3 lety +5

    Love the way you present the information. Very intuitive and easy to follow.
    Keep up your good work!!!!!

  • @arpitgupta8687
    @arpitgupta8687 Před 2 lety +1

    It make me feel lot more clearer in terms of concept,
    thanks Buddy

  • @gknsmsk
    @gknsmsk Před 3 měsíci

    amazing explanation thx

  • @Ramesh7534
    @Ramesh7534 Před rokem

    very clear explanation.

  • @cambellajoe
    @cambellajoe Před rokem

    Just one video and it made everything clear. Impressive !!!

  • @87rushi
    @87rushi Před 2 lety

    Awesome!!! very nicely explained .. thank you!

  • @akinwaleakinsete9781
    @akinwaleakinsete9781 Před 2 lety

    Thanks. this is clearly explained.

  • @madeeshafernando8496
    @madeeshafernando8496 Před 3 lety

    Excellent.

  • @durbabanik3372
    @durbabanik3372 Před 6 měsíci

    you are awesome

  • @nagadeepkodali1151
    @nagadeepkodali1151 Před 3 lety

    nice overview👏👏

  • @YouTubers-rj9xv
    @YouTubers-rj9xv Před 3 lety +1

    nice explanation

  • @krisam12345
    @krisam12345 Před 3 lety

    Can we create a cluster role for Daemonset, statefulset etc?

  • @pro-villager5689
    @pro-villager5689 Před 2 lety

    So since the role is namespaced so is it true to say it is non reusable for other namespaces

  • @harshamucherla4430
    @harshamucherla4430 Před 2 lety

    Hi Raj, I am using irsa to link the iam role to service account. For that, I am just annotating the service account with iam role arn. But that setup is not working. Any idea on what other steps to perform in order that to work. Please advice.

  • @flesz_
    @flesz_ Před rokem

    I have 2 questions
    1. If I was to create ingress and map it to the service, what kind of service type do I have to configure, clusterIP or nodeport ?
    2. If I am using imperative commands and want to create service, what's the advantage of using kubectl create service over kubectl expose ?

  • @Hanushbalanshorts_24
    @Hanushbalanshorts_24 Před rokem

    your videos are very helpful in understanding the concepts and progressing in interviews, great , keep going, I am looking for kubernetes backup and restore topic, pls share the link if you have the video for this topic

    • @cloudwithraj
      @cloudwithraj  Před rokem

      Thank you, I will keep this in mind for future videos

  • @moinsyed195
    @moinsyed195 Před 2 lety

    Hi Raj bro,
    Please make video on how to access EKS or kubernetes cluster remotely
    And login user should create pods only
    How it’s done can you please make video on it

  • @AnkitSingh-yh9bq
    @AnkitSingh-yh9bq Před 2 lety

    You are "kube-god" ,thanks for saving us from complexity

  • @dummerducky3496
    @dummerducky3496 Před 3 lety

    so what is the outcome of service account in usecase

  • @JagdishKumar-tj9iw
    @JagdishKumar-tj9iw Před 2 lety

    thank you! very much . Love the way you present the information very useful

  • @galeop
    @galeop Před rokem

    14:18 what is the point of this mapping of my K8s user to an AWS IAM user ? Is it to grant to my K8s-user rights to access AWS resources from K8s, or is it to specify that AWS IAM is the identity provider for that K8s user ?

    • @cloudwithraj
      @cloudwithraj  Před rokem +1

      The later. Since you are logged in to AWS as an IAM user, EKS needs a way to know what kubernetes user that IAM user is logged to. If you are running commands to access AWS resources from inside a pod, it'd use the IRSA of the pod and not the user IAM creds. Similar to if you run AWS commands from inside an EC2. Hope this helps.

    • @galeop
      @galeop Před rokem

      @@cloudwithraj thanks!

  • @AK_sheikh933
    @AK_sheikh933 Před 2 lety

    I must say i don’t find this level of explanations anywhere.

  • @bhupathivarma9170
    @bhupathivarma9170 Před 3 lety

    Pls help to do video on below.
    1.IAM role for pods to be able to access EFS.
    2. IAM role for cluster-auto scaler.
    3. IAM role for alb-ingress controller

    • @cloudwithraj
      @cloudwithraj  Před 3 lety

      Thanks Bhupathi, will keep this in mind for future videos

  • @AmitSehgalster
    @AmitSehgalster Před 3 lety

    Coupon doesn’t seems to be working now. Is it expired ?

  • @sujeetkumar.
    @sujeetkumar. Před 2 lety

    Thank you so much. You cleared all my doubts regarding this.

  • @dummerducky3496
    @dummerducky3496 Před 3 lety

    why someone want to associate serviceaccount to rolebinding for

  • @sabirmoglad6070
    @sabirmoglad6070 Před 3 lety +1

    Very clear explanation, any discount code for the course?

  • @sashankavrnable
    @sashankavrnable Před 3 lety +1

    any discount code for the EKS course in udemy? Please provide thank you ?

    • @cloudwithraj
      @cloudwithraj  Před 3 lety

      here you go Sashank - www.udemy.com/course/rocking-kubernetes-with-amazon-eks-fargate-and-devops/?couponCode=GETEKSNOTCORONA

    • @sabirmoglad6070
      @sabirmoglad6070 Před 3 lety

      @@cloudwithraj this one expired, any other code

  • @nitaprasad3855
    @nitaprasad3855 Před 2 lety

    What is kubelogin?

  • @vickygowda2856
    @vickygowda2856 Před 3 lety +1

    Raj can you provide the link for manifest files

  • @airminghk
    @airminghk Před 2 lety

    Awesome! I enrolled your EKS course in Udemy as well.

    • @cloudwithraj
      @cloudwithraj  Před 2 lety

      Awesome, thank you Frankie for the support!

  • @saikatchakrabortty
    @saikatchakrabortty Před 3 lety

    is it only me or the person has a mixed accent?
    Liked the content though, just the accent tickling in-ear all the time 😅

    • @cloudwithraj
      @cloudwithraj  Před 3 lety

      Thanks Saikat. My accent is stuck in-between haha. I grew up in Kolkata (I assume you are bengali too looking at your name) and in US for last 16 years with an american spouse, hence the in-between accent. Thanks for the kind words and thanks for watching 🙏.