Training The Linux Foundation

Training goals

code: LFS460

This instructor-led course provides skills and knowledge across a broad range of best practices for securing container-based applications and Kubernetes platforms during build, deployment, and runtime.

This course is ideal for anyone holding a CKA certification and interested in or responsible for cloud security.

This course exposes you to knowledge and skills needed to maintain security in dynamic, multi-project environments. This course addresses security concerns for cloud production environments and covers topics related to the security container supply chain, discussing topics from before a cluster has been configured through deployment, and ongoing, as well as agile use, including where to find ongoing security and vulnerability information. The course includes hands-on labs to build and secure a Kubernetes cluster, as well as monitor and log security events.

This course is designed as preparation for the Certified Kubernetes Security Specialist (CKS) exam and will substantially increase students’ ability to become certified.

Conspect Show list

  • Introduction
    • Linux Foundation
    • Linux Foundation Training
    • Linux Foundation Certifications
    • Linux Foundation Digital Badges
    • Laboratory Exercises, Solutions and Resources
    • E-Learning Course: LFS260
    • Distribution Details
    • Labs
  • Cloud Security Overview
    • Multiple Projects
    • What is Security?
    • Assessment
    • Prevention
    • Detection
    • Reaction
    • Classes of Attackers
    • Types of Attacks
    • Attack Surfaces
    • Hardware and Firmware Considerations
    • Security Agencies
    • Manage External Access
    • Labs
  • Preparing to Install
    • Image Supply Chain
    • Runtime Sandbox
    • Verify Platform Binaries
    • Minimize Access to GUI
    • Policy Based Control
    • Labs
  • Installing the Cluster
    • Update Kubernetes
    • Tools to Harden the Kernel
    • Kernel Hardening Examples
    • Mitigating Kernel Vulnerabilities
    • Labs
  • Securing the kube-apiserver
    • Restrict Access to API
    • Enable Kube-apiserver Auditing
    • Configuring RBAC
    • Pod Security Policies
    • Minimize IAM Roles
    • Protecting etcd
    • CIS Benchmark
    • Using Service Accounts
    • Labs
  • Networking
    • Firewalling Basics
    • Network Plugins
    • iptables
    • Mitigate Brute Force Login Attempts
    • Netfilter rule management
    • Netfilter Implementation
    • nft Concepts
    • Ingress Objects
    • Pod to Pod Encryption
    • Restrict Cluster Level Access
    • Labs
  • Workload Considerations
    • Minimize Base Image
    • Static Analysis of Workloads
    • Runtime Analysis of Workloads
    • Container Immutability
    • Mandatory Access Control
    • SELinux
    • AppArmor
    • Generate AppArmor Profiles
    • Labs
  • Issue Detection
    • Understanding Phases of Attack
    • Preparation
    • Understanding an Attack Progression
    • During an Incident
    • Handling Incident Aftermath
    • Intrusion Detection Systems
    • Threat Detection
    • Behavioral Analytics
    • Labs
  • Domain Reviews
    • Preparing for the Exam
    • Labs
  • Closing and Evaluation Survey
    • Evaluation Survey
Download conspect training as PDF

Additional information

Difficulty level
Duration 4 days
Certificate

The participants will obtain certificates signed by The Linux Foundation

Trainer

The Linux Foundation Certified Trainer 

Additional informations

Live Online (Virtual) or Live (Classroom)
4 days of Instructor-led class time
Hands-on Labs & Assignments
Resources & Course Manual
Certificate of Completion
Digital Badge
12 Months of Access to Online Course
Registration for CKS exam

Other training The Linux Foundation | Kubernetes

Training thematically related

Cloud

DevOps

Open Source

Contact form

Please fill form below to obtain more info about this training.







* Fields marked with (*) are required !!!

Information on data processing by Compendium - Centrum Edukacyjne Spółka z o.o.

PRICE 2200 EUR

FORM OF TRAINING ?

 

TRAINING MATERIALS ?

 

EXAM ?

 

SELECT TRAINING DATE

  • hybrid training: HYBRID
    • General information
    • Guaranteed dates
    • Last minute (-10%)
    • Language of the training
    • English
  • hybrid training: HYBRID
    • General information
    • Guaranteed dates
    • Last minute (-10%)
    • Language of the training
    • English
Book a training appointment
close

Traditional training

Sessions organised at Compendium CE are usually held in our locations in Kraków and Warsaw, but also in venues designated by the client. The group participating in training meets at a specific place and specific time with a coach and actively participates in laboratory sessions.

Dlearning training

You may participate from at any place in the world. It is sufficient to have a computer (or, actually a tablet, or smartphone) connected to the Internet. Compendium CE provides each Distance Learning training participant with adequate software enabling connection to the Data Center. For more information, please visit dlearning.eu site

close

Paper materials

Traditional materials: The price includes standard materials issued in the form of paper books, printed or other, depending on the arrangements with the manufacturer.

Electronic materials

Electronic materials: These are electronic training materials that are available to you based on your specific application: Skillpipe, eVantage, etc., or as PDF documents.

Ctab materials

Ctab materials: the price includes ctab tablet and electronic training materials or traditional training materials and supplies provided electronically according to manufacturer's specifications (in PDF or EPUB form). The materials provided are adapted for display on ctab tablets. For more information, check out the ctab website.

Upcoming The Linux Foundation training

Training schedule
The Linux Foundation