Kubernetes Security Simplified | Role, ClusterRole, RBAC, RoleBinding, IRSA, Service Account

แชร์
ฝัง
  • เผยแพร่เมื่อ 3 ก.พ. 2025

ความคิดเห็น • 70

  • @nitalshah9523
    @nitalshah9523 2 ปีที่แล้ว

    This is the best explanation of Kubernetes Security

  • @PeTerVampirism
    @PeTerVampirism 3 ปีที่แล้ว +2

    I already know all the K8 specific terminology .. etc really well for on-prem, but I wasn't exactly sure how that ties into AWS, and there goes your video boom ... I totally get it now. many thanks indeed !

  • @cantbefooled8044
    @cantbefooled8044 ปีที่แล้ว

    this is the best explanation of k8s subjects like wow.. thank you so much

  • @cambellajoe
    @cambellajoe ปีที่แล้ว

    Just one video and it made everything clear. Impressive !!!

  • @samsonv9332
    @samsonv9332 3 หลายเดือนก่อน

    Raj - Great explanation, thank you! 🙏🏼

    • @cloudwithraj
      @cloudwithraj  3 หลายเดือนก่อน

      Glad it was helpful!

  • @Lawrence_Femi_Ikenna_Odedina
    @Lawrence_Femi_Ikenna_Odedina 3 ปีที่แล้ว +10

    Dude, Thank you and I love you for breaking things down that even a person like me can understand.

    • @rohanrustagi7857
      @rohanrustagi7857 2 ปีที่แล้ว

      YES EVEN AN IDIOT LIKE ME ABLE TO UNDERSTAND WHATS THE DIFF BETWEEN ROLE AND CLUSTER ROLE. THANKS SIR

  • @elad3958
    @elad3958 2 ปีที่แล้ว

    dude your saving my day right now lol. Masterful.

  • @1234mytubeuser1234
    @1234mytubeuser1234 4 ปีที่แล้ว +5

    This is very first time I am reading about K8s security topics. I did not understand it completely. It is definitely an advanced + difficult topic. But I am pretty sure no one could have explained it with such ease. Kudos to your teaching style. Subscribed right after this video!

    • @cloudwithraj
      @cloudwithraj  4 ปีที่แล้ว

      Glad it was helpful! Thanks for the kind words.

  • @kennethcorradine2447
    @kennethcorradine2447 3 ปีที่แล้ว +1

    Too much interesting info. to be digested by my brain in just a few minutes ! good job

  • @arpitgupta8687
    @arpitgupta8687 3 ปีที่แล้ว +1

    It make me feel lot more clearer in terms of concept,
    thanks Buddy

  • @maheshsawaiker2492
    @maheshsawaiker2492 3 ปีที่แล้ว +1

    awesome..just what is needed in minimal time.

  • @Ramesh7534
    @Ramesh7534 2 ปีที่แล้ว

    very clear explanation.

  • @idabagusdiaz
    @idabagusdiaz ปีที่แล้ว

    Wow now it all makes sense thanks raj

  • @gknsmsk
    @gknsmsk 9 หลายเดือนก่อน

    amazing explanation thx

  • @vvsiva007
    @vvsiva007 3 ปีที่แล้ว +1

    Nice - to the point !!!

  • @nguyenthanhdat93
    @nguyenthanhdat93 3 ปีที่แล้ว +4

    Love the way you present the information. Very intuitive and easy to follow.
    Keep up your good work!!!!!

  • @87rushi
    @87rushi 2 ปีที่แล้ว

    Awesome!!! very nicely explained .. thank you!

  • @akinwaleakinsete9781
    @akinwaleakinsete9781 2 ปีที่แล้ว

    Thanks. this is clearly explained.

  • @AnkitSingh-yh9bq
    @AnkitSingh-yh9bq 2 ปีที่แล้ว

    You are "kube-god" ,thanks for saving us from complexity

  • @CarlaJenkinsTV
    @CarlaJenkinsTV 4 ปีที่แล้ว +1

    Thanks for that clear explanation.

    • @cloudwithraj
      @cloudwithraj  4 ปีที่แล้ว +2

      Glad you found this video helpful. Thanks for watching!

  • @galeop
    @galeop 2 ปีที่แล้ว

    14:18 what is the point of this mapping of my K8s user to an AWS IAM user ? Is it to grant to my K8s-user rights to access AWS resources from K8s, or is it to specify that AWS IAM is the identity provider for that K8s user ?

    • @cloudwithraj
      @cloudwithraj  2 ปีที่แล้ว +1

      The later. Since you are logged in to AWS as an IAM user, EKS needs a way to know what kubernetes user that IAM user is logged to. If you are running commands to access AWS resources from inside a pod, it'd use the IRSA of the pod and not the user IAM creds. Similar to if you run AWS commands from inside an EC2. Hope this helps.

    • @galeop
      @galeop 2 ปีที่แล้ว

      @@cloudwithraj thanks!

  • @durbabanik3372
    @durbabanik3372 ปีที่แล้ว

    you are awesome

  • @Hanushbalanshorts_24
    @Hanushbalanshorts_24 ปีที่แล้ว

    your videos are very helpful in understanding the concepts and progressing in interviews, great , keep going, I am looking for kubernetes backup and restore topic, pls share the link if you have the video for this topic

    • @cloudwithraj
      @cloudwithraj  ปีที่แล้ว

      Thank you, I will keep this in mind for future videos

  • @pro-villager5689
    @pro-villager5689 2 ปีที่แล้ว

    So since the role is namespaced so is it true to say it is non reusable for other namespaces

  • @flesz_
    @flesz_ ปีที่แล้ว

    I have 2 questions
    1. If I was to create ingress and map it to the service, what kind of service type do I have to configure, clusterIP or nodeport ?
    2. If I am using imperative commands and want to create service, what's the advantage of using kubectl create service over kubectl expose ?

  • @YouTubers-rj9xv
    @YouTubers-rj9xv 4 ปีที่แล้ว +1

    nice explanation

  • @moinsyed195
    @moinsyed195 2 ปีที่แล้ว

    Hi Raj bro,
    Please make video on how to access EKS or kubernetes cluster remotely
    And login user should create pods only
    How it’s done can you please make video on it

  • @harshamucherla4430
    @harshamucherla4430 3 ปีที่แล้ว

    Hi Raj, I am using irsa to link the iam role to service account. For that, I am just annotating the service account with iam role arn. But that setup is not working. Any idea on what other steps to perform in order that to work. Please advice.

  • @nagadeepkodali1151
    @nagadeepkodali1151 3 ปีที่แล้ว

    nice overview👏👏

  • @madeeshafernando8496
    @madeeshafernando8496 4 ปีที่แล้ว

    Excellent.

  • @sam12345-i
    @sam12345-i 4 ปีที่แล้ว

    Can we create a cluster role for Daemonset, statefulset etc?

  • @dummerducky3496
    @dummerducky3496 3 ปีที่แล้ว

    so what is the outcome of service account in usecase

  • @sujeetkumar.
    @sujeetkumar. 3 ปีที่แล้ว

    Thank you so much. You cleared all my doubts regarding this.

  • @AK_sheikh933
    @AK_sheikh933 2 ปีที่แล้ว

    I must say i don’t find this level of explanations anywhere.

  • @bhupathivarma9170
    @bhupathivarma9170 3 ปีที่แล้ว

    Pls help to do video on below.
    1.IAM role for pods to be able to access EFS.
    2. IAM role for cluster-auto scaler.
    3. IAM role for alb-ingress controller

    • @cloudwithraj
      @cloudwithraj  3 ปีที่แล้ว

      Thanks Bhupathi, will keep this in mind for future videos

  • @vickygowda2856
    @vickygowda2856 4 ปีที่แล้ว +1

    Raj can you provide the link for manifest files

    • @cloudwithraj
      @cloudwithraj  4 ปีที่แล้ว

      Here you go Bharath - github.com/saha-rajdeep/eks-demos

    • @vickygowda2856
      @vickygowda2856 4 ปีที่แล้ว

      @@cloudwithraj Thanks buddy

  • @sashankavrnable
    @sashankavrnable 4 ปีที่แล้ว +1

    any discount code for the EKS course in udemy? Please provide thank you ?

    • @cloudwithraj
      @cloudwithraj  4 ปีที่แล้ว

      here you go Sashank - www.udemy.com/course/rocking-kubernetes-with-amazon-eks-fargate-and-devops/?couponCode=GETEKSNOTCORONA

    • @sabirmoglad6070
      @sabirmoglad6070 3 ปีที่แล้ว

      @@cloudwithraj this one expired, any other code

  • @JagdishKumar-tj9iw
    @JagdishKumar-tj9iw 3 ปีที่แล้ว

    thank you! very much . Love the way you present the information very useful

    • @cloudwithraj
      @cloudwithraj  3 ปีที่แล้ว

      Glad it was helpful Jagdish!

  • @AmitSehgalster
    @AmitSehgalster 4 ปีที่แล้ว

    Coupon doesn’t seems to be working now. Is it expired ?

  • @airminghk
    @airminghk 3 ปีที่แล้ว

    Awesome! I enrolled your EKS course in Udemy as well.

    • @cloudwithraj
      @cloudwithraj  3 ปีที่แล้ว

      Awesome, thank you Frankie for the support!

  • @nitaprasad3855
    @nitaprasad3855 2 ปีที่แล้ว

    What is kubelogin?

  • @dummerducky3496
    @dummerducky3496 3 ปีที่แล้ว

    why someone want to associate serviceaccount to rolebinding for

  • @sabirmoglad6070
    @sabirmoglad6070 3 ปีที่แล้ว +1

    Very clear explanation, any discount code for the course?

  • @saikatchakrabortty
    @saikatchakrabortty 4 ปีที่แล้ว

    is it only me or the person has a mixed accent?
    Liked the content though, just the accent tickling in-ear all the time 😅

    • @cloudwithraj
      @cloudwithraj  4 ปีที่แล้ว

      Thanks Saikat. My accent is stuck in-between haha. I grew up in Kolkata (I assume you are bengali too looking at your name) and in US for last 16 years with an american spouse, hence the in-between accent. Thanks for the kind words and thanks for watching 🙏.