Overview
Explore the integration of WireGuard and Calico for enhancing network security in Kubernetes clusters in this 29-minute conference talk from the Linux Foundation. Delve into the security risks associated with non-encrypted inter-node traffic, including data interception and potential injection of malicious payloads. Learn about the critical importance of implementing traffic encryption within Kubernetes clusters to mitigate these threats. Examine the use of WireGuard and ProjectCalico with its eBPF dataplane for securing traffic. Navigate potential constraints, such as kernel support requirements, multi-cluster setup complexities, and compatibility issues across different environments.
Syllabus
Securing Data-in-Transit with Wireguard for Kubernetes Cluster - Dhiraj Sehgal & Davide Sellitri
Taught by
Linux Foundation