Container security

A good starting point to understanding Red Hat OpenShift Container Platform security is to review the concepts in Understanding container security. This and subsequent sections provide a high-level walkthrough of the container security measures available in Red Hat OpenShift Container Platform, including solutions for the host layer, the container and orchestration layer, and the build and application layer. These sections also include information on the following topics:

  • Why container security is important and how it compares with existing security standards.

  • Which container security measures are provided by the host (RHCOS and RHEL) layer and which are provided by Red Hat OpenShift Container Platform.

  • How to evaluate your container content and sources for vulnerabilities.

  • How to design your build and deployment process to proactively check container content.

  • How to control access to containers through authentication and authorization.

  • How networking and attached storage are secured in Red Hat OpenShift Container Platform.

  • Containerized solutions for API management and SSO.