Network Security
1. Şifreleme ve SSL Otomasyonu (cert-manager & Let's Encrypt)
apiVersion: cert-manager.io/v1
kind: ClusterIssuer
metadata:
name: letsencrypt-prod
spec:
acme:
server: https://acme-v02.api.letsencrypt.org/directory
email: [email protected]
privateKeySecretRef:
name: letsencrypt-prod-key
solvers:
- http01:
ingress:
class: traefik
---
apiVersion: cert-manager.io/v1
kind: Certificate
metadata:
name: example-com-tls
spec:
secretName: example-com-tls
dnsNames:
- example.com
issuerRef:
name: letsencrypt-prod
kind: ClusterIssuer2. Ingress Güvenliği
3. CNI Network Policies
🗺️ Pod İletişimi Topolojisi
Cilium ile Gelişmiş Politikalar
4. Mutual TLS (mTLS) - Karşılıklı Güven
5. Hubble ile Gözlemlenebilirlik
Last updated