Kubernetes Secrets Handbook: Design, implement, and maintain production-grade Kubernetes Secrets management solutions
暫譯: Kubernetes Secrets 實用手冊:設計、實作及維護生產級 Kubernetes Secrets 管理解決方案

Gkatziouras, Emmanouil, Adams, Rom, XI, Chen

  • 出版商: Packt Publishing
  • 出版日期: 2024-01-31
  • 售價: $1,740
  • 貴賓價: 9.5$1,653
  • 語言: 英文
  • 頁數: 294
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 180512322X
  • ISBN-13: 9781805123224
  • 相關分類: Kubernetes
  • 立即出貨 (庫存=1)

商品描述

Gain hands-on skills in Kubernetes Secrets management, ensuring a comprehensive overview of the Secrets lifecycle and prioritizing adherence to regulatory standards and business sustainability


Key Features:


  • Master Secrets encryption, encompassing complex life cycles, key rotation, access control, backup, and recovery
  • Build your skills to audit Secrets consumption, troubleshoot, and optimize for efficiency and compliance
  • Learn how to manage Secrets through real-world cases, strengthening your applications' security posture
  • Purchase of the print or Kindle book includes a free PDF eBook


Book Description:


Securing Secrets in containerized apps poses a significant challenge for Kubernetes IT professionals. This book tackles the critical task of safeguarding sensitive data, addressing the limitations of Kubernetes encryption, and establishing a robust Secrets management system for heightened security for Kubernetes.


Starting with the fundamental Kubernetes architecture principles and how they apply to the design of Secrets management, this book delves into advanced Kubernetes concepts such as hands-on security, compliance, risk mitigation, disaster recovery, and backup strategies. With the help of practical, real-world guidance, you'll learn how to mitigate risks and establish robust Secrets management as you explore different types of external secret stores, configure them in Kubernetes, and integrate them with existing Secrets management solutions.


Further, you'll design, implement, and operate a secure method of managing sensitive payload by leveraging real use cases in an iterative process to enhance skills, practices, and analytical thinking, progressively strengthening the security posture with each solution.


By the end of this book, you'll have a rock-solid Secrets management solution to run your business-critical applications in a hybrid multi-cloud scenario, addressing operational risks, compliance, and controls.


What You Will Learn:


  • Explore Kubernetes Secrets, related API objects, and CRUD operations
  • Understand the Kubernetes Secrets limitations, attack vectors, and mitigation strategies
  • Explore encryption at rest and external secret stores
  • Build and operate a production-grade solution with a focus on business continuity
  • Integrate a Secrets Management solution in your CI/CD pipelines
  • Conduct continuous assessments of the risks and vulnerabilities for each solution
  • Draw insights from use cases implemented by large organizations
  • Gain an overview of the latest and upcoming Secrets management trends


Who this book is for:


This handbook is a comprehensive reference for IT professionals to design, implement, operate, and audit Secrets in applications and platforms running on Kubernetes. For developer, platform, and security teams experienced with containers, this Secrets management guide offers a progressive path-from foundations to implementation-with a security-first mindset. You'll also find this book useful if you work with hybrid multi-cloud Kubernetes platforms for organizations concerned with governance and compliance requirements.

商品描述(中文翻譯)

獲得 Kubernetes Secrets 管理的實作技能,確保對 Secrets 生命週期的全面了解,並優先遵守法規標準和業務可持續性

主要特點:


  • 掌握 Secrets 加密,涵蓋複雜的生命週期、金鑰輪換、存取控制、備份和恢復

  • 提升審計 Secrets 使用情況的技能,進行故障排除,並優化效率和合規性

  • 通過實際案例學習如何管理 Secrets,加強應用程序的安全性

  • 購買印刷版或 Kindle 書籍可獲得免費 PDF 電子書

書籍描述:

在容器化應用中保護 Secrets 對 Kubernetes IT 專業人員來說是一項重大挑戰。本書針對保護敏感數據的關鍵任務,解決 Kubernetes 加密的局限性,並建立一個強大的 Secrets 管理系統,以提高 Kubernetes 的安全性。

本書從基本的 Kubernetes 架構原則開始,探討這些原則如何應用於 Secrets 管理的設計,深入研究高級 Kubernetes 概念,如實作安全性、合規性、風險緩解、災難恢復和備份策略。在實用的現實指導下,您將學習如何減輕風險並建立強大的 Secrets 管理,探索不同類型的外部秘密存儲,並在 Kubernetes 中配置它們,與現有的 Secrets 管理解決方案集成。

此外,您將設計、實施和運營一種安全的敏感負載管理方法,利用實際用例進行迭代過程,以增強技能、實踐和分析思維,隨著每個解決方案的推出逐步加強安全性。

到本書結束時,您將擁有一個堅實的 Secrets 管理解決方案,以在混合多雲場景中運行業務關鍵應用,解決操作風險、合規性和控制問題。

您將學到什麼:


  • 探索 Kubernetes Secrets、相關的 API 對象和 CRUD 操作

  • 了解 Kubernetes Secrets 的局限性、攻擊向量和緩解策略

  • 探索靜態加密和外部秘密存儲

  • 構建和運營一個以業務連續性為重點的生產級解決方案

  • 在您的 CI/CD 管道中集成 Secrets 管理解決方案

  • 對每個解決方案進行持續的風險和漏洞評估

  • 從大型組織實施的用例中獲取見解

  • 獲得最新和即將到來的 Secrets 管理趨勢概覽

本書適合誰:

本手冊是 IT 專業人員設計、實施、運營和審計在 Kubernetes 上運行的應用和平台中的 Secrets 的全面參考。對於熟悉容器的開發人員、平台和安全團隊,本 Secrets 管理指南提供了一條從基礎到實施的漸進路徑,並以安全為首要考量。如果您在關注治理和合規要求的組織中使用混合多雲 Kubernetes 平台,您也會發現本書非常有用。