SlideShare a Scribd company logo
Securing Windows
workloads
Thursday, Jun 02, 2022
Your Speaker Today:
● Reza Ramezanpour - Developer
Advocate @ Tigera (Project
Calico)
Agenda
● Calico overview
● A hybrid cluster
● Windows workloads
● Securing Windows workloads
● Demo
Calico overview
01
https://projectcalico.org
https://slack.projectcalico.org
@projectcalico
https://github.com/projectcalico/community
https://discuss.projectcalico.org
6000+
Slack channel members
150+
Contributors
1,000,000+
Nodes powered by Calico every day
eBPF iptables HNS
Host Network Service
A hybrid cluster
02
© 2022 Tigera, Inc. Proprietary and Confidential
9
What is a hybrid cluster?
© 2022 Tigera, Inc. Proprietary and Confidential
10
● Linux node (System)
● Windows Server 2019 or higher
● Kubernetes v1.21 or higher
● A CNI
Hybrid environment
(psst try Calico)
Windows workloads
03
© 2022 Tigera, Inc. Proprietary and Confidential
12
Windows Containers
● Run anywhere *
● Deploy at scale
● Lightweight *
● Isolated *
© 2022 Tigera, Inc. Proprietary and Confidential
13
Choose your base image wisely
It can be lightweight
Windows Server (ltsc2022+) ServerCore NanoServer
7GB+ 4.8GB+ 2.5GB+ 90M+
© 2022 Tigera, Inc. Proprietary and Confidential
14
Kernel Compatibility
© 2022 Tigera, Inc. Proprietary and Confidential
15
Isolation
Securing Windows workloads
04
© 2022 Tigera, Inc. Proprietary and Confidential
17
● Networking
● Policy engine
Securing workloads
K8s Node
Networking layer
eth0 eth1
Network Foundation
CNI
Demo (Azure Cloud)
05
Demo (On-premises)
06
Stuff used for the demo:
https://github.com/frozenprocess/Tigera-Presentations/tr
ee/master/2022-06-02.CNCF-securing-windows-workloa
ds
Do-It-Yourself Resources
When things are not working:
Github: https://github.com/frozenprocess
Twitter: https://twitter.com/fr0zenprocess
Linkedin: https://www.linkedin.com/in/rramezanpour/
Securing Windows workloads.pdf
academy.tigera.io
Follow us on:
Kubernetes.io
https://kubernetes.io/docs/tasks/administer-cluster/kubeadm/adding-
windows-nodes/
---
Calico for WIndows
https://projectcalico.docs.tigera.io/getting-started/windows-calico/
---
AKS Netwokring
https://www.youtube.com/watch?v=JyLtg_SJ1lo
---
Kubernetes Windows (community)
https://github.com/kubernetes-sigs/sig-windows-tools
----
containerd
https://github.com/containerd/containerd
---
Wincontiner workload
https://github.com/frozenprocess/wincontainer
Credits
Follow us on:
Thank you!

More Related Content

PDF
CNCF Live Webinar 2023, 12 Apr - Exploring Kubernetes Windows HostProcess Ins...
PPTX
GDSC EPITA Docker Presentation
PDF
Podman, Buildah, and Quarkus - The Latest in Linux Containers Technologies
PDF
Free GitOps Workshop
PDF
[Global logic] container runtimes and kubernetes
PDF
Cloud Native Applications on Kubernetes: a DevOps Approach
PDF
Jenkins x gitops
PDF
E bpf and profilers
CNCF Live Webinar 2023, 12 Apr - Exploring Kubernetes Windows HostProcess Ins...
GDSC EPITA Docker Presentation
Podman, Buildah, and Quarkus - The Latest in Linux Containers Technologies
Free GitOps Workshop
[Global logic] container runtimes and kubernetes
Cloud Native Applications on Kubernetes: a DevOps Approach
Jenkins x gitops
E bpf and profilers

Similar to Securing Windows workloads.pdf (20)

PDF
Free GitOps Workshop (with Intro to Kubernetes & GitOps)
PDF
NVIDIA GTC 2019: Red Hat and the NVIDIA DGX: Tried, Tested, Trusted
PPTX
Top 5 benefits of docker
PDF
Docker London Meetup: Docker Engine Evolution
PDF
Environment management in a continuous delivery world (3)
PDF
Introduction to Containers
PPTX
GitOps and Its tools.pptx
PPTX
GitOps and Its tools.pptx
PDF
Taking Docker to Production: What You Need to Know and Decide
PDF
Taking Docker to Production: What You Need to Know and Decide
PDF
Developer workflow with docker
PPTX
The State of CI/CD Tooling in 2019
PDF
OpenStack Cinder - Victoria Release Update - 2020
PPTX
[20200720]cloud native develoment - Nelson Lin
PDF
Delivering a bleeding edge community-led openstack distribution: RDO
PDF
WTF is GitOps & Why Should You Care?
PDF
WTF is GitOps and Why You Should Care?
PDF
CHIPS Alliance_Object Automation Inc_workshop
PDF
Webinar: From Development to Production with Docker and MongoDB
PDF
8.cncf en
Free GitOps Workshop (with Intro to Kubernetes & GitOps)
NVIDIA GTC 2019: Red Hat and the NVIDIA DGX: Tried, Tested, Trusted
Top 5 benefits of docker
Docker London Meetup: Docker Engine Evolution
Environment management in a continuous delivery world (3)
Introduction to Containers
GitOps and Its tools.pptx
GitOps and Its tools.pptx
Taking Docker to Production: What You Need to Know and Decide
Taking Docker to Production: What You Need to Know and Decide
Developer workflow with docker
The State of CI/CD Tooling in 2019
OpenStack Cinder - Victoria Release Update - 2020
[20200720]cloud native develoment - Nelson Lin
Delivering a bleeding edge community-led openstack distribution: RDO
WTF is GitOps & Why Should You Care?
WTF is GitOps and Why You Should Care?
CHIPS Alliance_Object Automation Inc_workshop
Webinar: From Development to Production with Docker and MongoDB
8.cncf en
Ad

More from LibbySchulze (20)

PDF
Running distributed tests with k6.pdf
PPTX
Extending Kubectl.pptx
PPTX
Enhancing Data Protection Workflows with Kanister And Argo Workflows
PDF
Fallacies in Platform Engineering.pdf
PDF
Intro to Fluvio.pptx.pdf
PPTX
Enhance your Kafka Infrastructure with Fluvio.pptx
PDF
CNCF On-Demand Webinar_ LitmusChaos Project Updates.pdf
PDF
Oh The Places You'll Sign.pdf
PPTX
Rancher MasterClass - Avoiding-configuration-drift.pptx
PPTX
vFunction Konveyor Meetup - Why App Modernization Projects Fail - Aug 2022.pptx
PPTX
CNCF Live Webinar: Low Footprint Java Containers with GraalVM
PDF
EnRoute-OPA-Integration.pdf
PDF
AirGap_zusammen_neu.pdf
PDF
Copy of OTel Me All About OpenTelemetry The Current & Future State, Navigatin...
PDF
OTel Me All About OpenTelemetry The Current & Future State, Navigating the Pr...
PDF
CNCF_ A step to step guide to platforming your delivery setup.pdf
PDF
CNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdf
PDF
Securing Windows workloads.pdf
PDF
Advancements in Kubernetes Workload Identity for Azure
PDF
Containerized IDEs.pdf
Running distributed tests with k6.pdf
Extending Kubectl.pptx
Enhancing Data Protection Workflows with Kanister And Argo Workflows
Fallacies in Platform Engineering.pdf
Intro to Fluvio.pptx.pdf
Enhance your Kafka Infrastructure with Fluvio.pptx
CNCF On-Demand Webinar_ LitmusChaos Project Updates.pdf
Oh The Places You'll Sign.pdf
Rancher MasterClass - Avoiding-configuration-drift.pptx
vFunction Konveyor Meetup - Why App Modernization Projects Fail - Aug 2022.pptx
CNCF Live Webinar: Low Footprint Java Containers with GraalVM
EnRoute-OPA-Integration.pdf
AirGap_zusammen_neu.pdf
Copy of OTel Me All About OpenTelemetry The Current & Future State, Navigatin...
OTel Me All About OpenTelemetry The Current & Future State, Navigating the Pr...
CNCF_ A step to step guide to platforming your delivery setup.pdf
CNCF Online - Data Protection Guardrails using Open Policy Agent (OPA).pdf
Securing Windows workloads.pdf
Advancements in Kubernetes Workload Identity for Azure
Containerized IDEs.pdf
Ad

Recently uploaded (20)

PDF
Behind the Smile Unmasking Ken Childs and the Quiet Trail of Deceit Left in H...
PDF
The Internet -By the Numbers, Sri Lanka Edition
Β 
PDF
Slides PDF The World Game (s) Eco Economic Epochs.pdf
PPT
tcp ip networks nd ip layering assotred slides
PPTX
international classification of diseases ICD-10 review PPT.pptx
PPTX
June-4-Sermon-Powerpoint.pptx USE THIS FOR YOUR MOTIVATION
PDF
LABUAN4D EXCLUSIVE SERVER STAR GAMING ASIA NO.1
PPTX
Introuction about ICD -10 and ICD-11 PPT.pptx
PPTX
innovation process that make everything different.pptx
PDF
Cloud-Scale Log Monitoring _ Datadog.pdf
PPTX
QR Codes Qr codecodecodecodecocodedecodecode
PPTX
SAP Ariba Sourcing PPT for learning material
PPTX
Introuction about WHO-FIC in ICD-10.pptx
PDF
Best Practices for Testing and Debugging Shopify Third-Party API Integrations...
PDF
Tenda Login Guide: Access Your Router in 5 Easy Steps
PDF
Triggering QUIC, presented by Geoff Huston at IETF 123
Β 
PDF
πŸ’° π”πŠπ“πˆ πŠπ„πŒπ„ππ€ππ†π€π πŠπˆππ„π‘πŸ’πƒ π‡π€π‘πˆ 𝐈𝐍𝐈 πŸπŸŽπŸπŸ“ πŸ’°
Β 
PPTX
presentation_pfe-universite-molay-seltan.pptx
PPTX
Internet___Basics___Styled_ presentation
PDF
An introduction to the IFRS (ISSB) Stndards.pdf
Behind the Smile Unmasking Ken Childs and the Quiet Trail of Deceit Left in H...
The Internet -By the Numbers, Sri Lanka Edition
Β 
Slides PDF The World Game (s) Eco Economic Epochs.pdf
tcp ip networks nd ip layering assotred slides
international classification of diseases ICD-10 review PPT.pptx
June-4-Sermon-Powerpoint.pptx USE THIS FOR YOUR MOTIVATION
LABUAN4D EXCLUSIVE SERVER STAR GAMING ASIA NO.1
Introuction about ICD -10 and ICD-11 PPT.pptx
innovation process that make everything different.pptx
Cloud-Scale Log Monitoring _ Datadog.pdf
QR Codes Qr codecodecodecodecocodedecodecode
SAP Ariba Sourcing PPT for learning material
Introuction about WHO-FIC in ICD-10.pptx
Best Practices for Testing and Debugging Shopify Third-Party API Integrations...
Tenda Login Guide: Access Your Router in 5 Easy Steps
Triggering QUIC, presented by Geoff Huston at IETF 123
Β 
πŸ’° π”πŠπ“πˆ πŠπ„πŒπ„ππ€ππ†π€π πŠπˆππ„π‘πŸ’πƒ π‡π€π‘πˆ 𝐈𝐍𝐈 πŸπŸŽπŸπŸ“ πŸ’°
Β 
presentation_pfe-universite-molay-seltan.pptx
Internet___Basics___Styled_ presentation
An introduction to the IFRS (ISSB) Stndards.pdf

Securing Windows workloads.pdf