Public preview: Pod sandboxing in AKS
Share
Services
Azure Kubernetes Service (AKS) now allows you, in public preview, to run pod sandboxed containers.
Pod Sandboxing provide an effective strategy for safeguarding against “Container Breakout” scenarios, such as a malicious or legitimate user escaping container isolation to access filesystem, processes, network interfaces and other resources on the host machine.
While one can enforce isolation through node pools, such an approach poses significant operation and resource overhead and increases operational costs. Pod Sandboxing addresses this issue by isolation workloads at the kernel level.
To learn more, visit: <https://aka.ms/aks/podsandbox>
* Azure Kubernetes Service (AKS)
* Features
* [ Azure Kubernetes Service (AKS)](https://azure.microsoft.com/en-gb/products/kubernetes-service/)
What else is happening at Microsoft Azure?
Read update
Services
Share
Read update
Services
Share
We’re retiring Azure Time Series Insights on 7 July 2024 – transition to Azure Data Explorer
May 31st, 2024
Services
Share