Completed
Authorization Component: OPA Capabilities, User Groups, Service Metadata
Class Central Classrooms beta
YouTube videos curated by Class Central.
Classroom Contents
Fine-Grained User Authorization for Kubernetes with OPA and LDAP
Automatically move to the next video in the Classroom when playback concludes
- 1 Intro
- 2 Mesos Migration to Kubernetes
- 3 Motivation: Initial K8s access-controls
- 4 Authorization Architecture Overview
- 5 Authorization Component: OPA Capabilities, User Groups, Service Metadata
- 6 Capability Example
- 7 Authorization Component: The Policy Manager
- 8 Authorization Component: Client side enforcement
- 9 Example run: Basic
- 10 Example run: team-based
- 11 Rollout Strategy
- 12 Challenges and Special Cases
- 13 System Reliability
- 14 Shortcomings and Future Improvements . Not every resource has meaning metadata labelsite.
- 15 Conclusions