-
Notifications
You must be signed in to change notification settings - Fork 14.8k
Security hardening guide for scheduler configuration #45080
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: main
Are you sure you want to change the base?
Security hardening guide for scheduler configuration #45080
Conversation
|
Welcome @AnshumanTripathi! |
✅ Pull request preview available for checkingBuilt without sensitive environment variables
To edit notification comments on pull requests, go to your Netlify project configuration. |
/sig security |
@kubernetes/sig-security-pr-reviews please take a look |
0728e98
to
2cae0ed
Compare
5958b41
to
90fb6d6
Compare
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Some more feedback.
beca647
to
2aa72f3
Compare
19972a5
to
ab53e96
Compare
3257350
to
0f58ec4
Compare
0f58ec4
to
0b307ff
Compare
See #45080 (comment) for some relevant commentary about where these docs should live. |
@AnshumanTripathi do you have the time to work more on this? I think just a little more effort is what's needed so we can merge it. |
@sftim Yeah I can get this finished in sometime. Thanks for double clicking on this. |
b65cb4e
to
37e8ff3
Compare
37e8ff3
to
767eb20
Compare
[APPROVALNOTIFIER] This PR is NOT APPROVED This pull-request has been approved by: The full list of commands accepted by this bot can be found here.
Needs approval from an approver in each of these files:
Approvers can indicate their approval by writing |
767eb20
to
c1a7095
Compare
/remove-area localization |
c1a7095
to
54dcea7
Compare
As mentioned, could you wrap all your lines so that's it's easier to make suggestions and edits? |
5d7b524
to
3c15880
Compare
Wrapped long lines. LMK more is needed. |
Signed-off-by: Anshuman Tripathi <[email protected]> [WIP] Security hardening guide for scheduler configurations Signed-off-by: Anshuman Tripathi <[email protected]> Updates after passing through hemmingway.app Signed-off-by: Anshuman Tripathi <[email protected]> Update scheduling configurations Signed-off-by: Anshuman Tripathi <[email protected]> Apply suggestions from code review Co-authored-by: Tim Bannister <[email protected]> Co-authored-by: Daniel Register <[email protected]> Updates based on PR feedback Signed-off-by: Anshuman Tripathi <[email protected]> Update bind-address definition Signed-off-by: Anshuman Tripathi <[email protected]> Update phrasing of permit-address-sharing Signed-off-by: Anshuman Tripathi <[email protected]> Add -- to args Signed-off-by: Anshuman Tripathi <[email protected]> Sentence case in table title Signed-off-by: Anshuman Tripathi <[email protected]> Reword and correct grammer based on feedback Signed-off-by: Anshuman Tripathi <[email protected]> Remove verbatim argument description Signed-off-by: Anshuman Tripathi <[email protected]> More updates Signed-off-by: Anshuman Tripathi <[email protected]> Update custom scheduler heading and description Signed-off-by: Anshuman Tripathi <[email protected]> Remove dashes on args Signed-off-by: Anshuman Tripathi <[email protected]> Apply suggestions from code review Co-authored-by: Tim Bannister <[email protected]> Signed-off-by: Anshuman Tripathi <[email protected]> Update table title Signed-off-by: Anshuman Tripathi <[email protected]> Update based on feedback Signed-off-by: Anshuman Tripathi <[email protected]> node selector Signed-off-by: Anshuman Tripathi <[email protected]> Feedback Signed-off-by: Anshuman Tripathi <[email protected]> Update authentication and TLS configuration Signed-off-by: Anshuman Tripathi <[email protected]> profiling Signed-off-by: Anshuman Tripathi <[email protected]> Replace tables with bullets Signed-off-by: Anshuman Tripathi <[email protected]> Fix custom scheduler directive and link Signed-off-by: Anshuman Tripathi <[email protected]> style Signed-off-by: Anshuman Tripathi <[email protected]> Update based on feedback Signed-off-by: Anshuman Tripathi <[email protected]> fix: custom scheduler profile Signed-off-by: Anshuman Tripathi <[email protected]>
3c15880
to
b0d8a8c
Compare
Creating a scheduler hardening guide as a part of kubernetes/sig-security#30.
Page preview - https://deploy-preview-45080--kubernetes-io-main-staging.netlify.app/docs/concepts/security/hardening-guide/scheduler/