Skip to main content

Your submission was sent successfully! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates from Canonical and upcoming events where you can meet our team.Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

An error occurred while submitting your form. Please try again or file a bug report. Close

Addon: KubeArmor

1.28
Compatibility: amd64 arm64 classic
Source: See KubeArmor website for details.

KubeArmor is a cloud-native runtime security enforcement system that restricts the behavior (such as process execution, file access, and networking operations) of pods, containers, and nodes at the system level. It makes use of eBPF and Linux security modules (LSMs) such as AppArmor, SELinux, or BPF-LSM to enforce the user-specified policies. KubeArmor generates rich alerts/telemetry events with container/pod/namespace identities for ease of use.

Usage

To enable the addon:

microk8s enable kubearmor

Afterwards the KubeArmor CLI is available under MicroK8s:

microk8s karmor

The addon can be disabled at any time with:

microk8s disable kubearmor

Links

To learn more about KubeArmor visit:

Last updated 2 years ago. Help improve this document in the forum.