Como aumentar a segurança das configurações padrão do cluster do GKE avaliações

16756 avaliações

Lab is using PodSecurityPolicies which are deprecated and even no longer available at all on the kubernetes version running in GCP currently. Not possible to complete with 100% rate.

Maximilian W. · Revisado há over 3 years

cant finish this labb bcs the instruction is deprecated!!!

HAIDAR W. · Revisado há over 3 years

THANK YOU FOR WASTING MY TIME!! PLEASE CHECK ALL THE DEPRECATED DEPENDENCY!!! cat <<EOF | kubectl apply -f - --- apiVersion: policy/v1beta1 kind: PodSecurityPolicy metadata: name: restrictive-psp annotations: seccomp.security.alpha.kubernetes.io/allowedProfileNames: 'docker/default' apparmor.security.beta.kubernetes.io/allowedProfileNames: 'runtime/default' seccomp.security.alpha.kubernetes.io/defaultProfileName: 'docker/default' apparmor.security.beta.kubernetes.io/defaultProfileName: 'runtime/default' spec: privileged: false # Required to prevent escalations to root. allowPrivilegeEscalation: false # This is redundant with non-root + disallow privilege escalation, # but we can provide it for defense in depth. requiredDropCapabilities: - ALL # Allow core volume types. volumes: - 'configMap' - 'emptyDir' - 'projected' - 'secret' - 'downwardAPI' # Assume that persistentVolumes set up by the cluster admin are safe to use. - 'persistentVolumeClaim' hostNetwork: false hostIPC: false hostPID: false runAsUser: # Require the container to run without root privileges. rule: 'MustRunAsNonRoot' seLinux: # This policy assumes the nodes are using AppArmor rather than SELinux. rule: 'RunAsAny' supplementalGroups: rule: 'MustRunAs' ranges: # Forbid adding the root group. - min: 1 max: 65535 fsGroup: rule: 'MustRunAs' ranges: # Forbid adding the root group. - min: 1 max: 65535 EOF

Astawan Z. · Revisado há over 3 years

cant finish this labb bcs the instruction is deprecated!!!

HAIDAR W. · Revisado há over 3 years

Richard A. · Revisado há over 3 years

THANK YOU FOR WASTING MY TIME!! PLEASE CHECK ALL THE DEPRECATED DEPENDENCY!!!

Astawan Z. · Revisado há over 3 years

Wahyu L. · Revisado há over 3 years

BUGGG

HAIDAR W. · Revisado há over 3 years

YOU NEED to specify the version. On task 1 no 2, paste this instead <gcloud container clusters create simplecluster --zone $MY_ZONE --num-nodes 2 --metadata=disable-legacy-endpoints=false --cluster-version=1.24.13-gke.500> After that, you wont get error on task 7 no 2.

Moch A. · Revisado há over 3 years

Moch A. · Revisado há over 3 years

Fahrul a. · Revisado há over 3 years

Ewen L. · Revisado há over 3 years

ayu a. · Revisado há over 3 years

Fahrul a. · Revisado há over 3 years

stuck on task 7 no 2 edit : YOU NEED to specify the version. On task 1 no 2, paste this instead gcloud container clusters create simplecluster --zone $MY_ZONE --num-nodes 2 --metadata=disable-legacy-endpoints=false --cluster-version=1.24.13-gke.500 After that, you wont get error on task 7 no 2. (sometime there's may an error at some task, just wait and retry)

Muhammad I. · Revisado há over 3 years

Archie C. · Revisado há over 3 years

Damar S. · Revisado há over 3 years

Task 7 & 8 deprecated

Ayu Sudi D. · Revisado há over 3 years

Alhafiz Z. · Revisado há over 3 years

Task 7 deprecated

Ayu Sudi D. · Revisado há over 3 years

Deny K. · Revisado há over 3 years

anil k. · Revisado há over 3 years

Mocel R. · Revisado há over 3 years

Mocel R. · Revisado há over 3 years

anil k. · Revisado há over 3 years

Não garantimos que as avaliações publicadas sejam de consumidores que compraram ou usaram os produtos. As avaliações não são verificadas pelo Google.