
"Thank you so much for having me. Yes, I'm a research scientist at Edera, a company that develops hard and runtime security solutions to secure the security boundary that Kubernetes was missing. Additionally, I am one of the co-chairs of the TAG security and compliance committee. That's the Technical Advisory Group under the CNCF, which advises CNCF projects on security and provides security assessments of projects, as well as answers questions when projects have them, to help improve the overall security of the ecosystem."
"I believe that containers are currently a comprehensive category. It started with virtualisation a long time ago. That was the natural step from bare metal to virtual machines. And then some people realised that there are features in Linux that can help make things even more efficient. And then one thing led to another, then we had containers, and then Docker stole a lot of the thunder for everything."
Edera develops hard and runtime security solutions aimed at securing the security boundary that Kubernetes lacked. The TAG security and compliance committee advises CNCF projects on security, provides security assessments, and answers project questions to improve ecosystem security. Containers package application code and all dependencies, acting as an abstraction over programs to enable consistent runtime environments. Containerization evolved from virtualization and Linux kernel features, with Docker popularizing container use and Kubernetes emerging as an orchestration solution. Containers improve efficiency but do not inherently provide strong isolation, creating the need for additional platform and runtime security measures.
Read at InfoQ
Unable to calculate read time
Collection
[
|
...
]