Software Secure Workload
Activity Configure

Policy Discovery Kubernetes Support

Policy discovery uses the information on pods and services from Kubernetes configuration to create clusters for both pods and services and the respective policies are generated.

If the Cluster Granularity is set to COARSE or VERY COARSE, then the services and the pods backing them is clustered together.

If the Cluster Granularity is set to Medium or Fine or very fine, then the services, and the pods backing them is clustered separately.

For pod clusters, the source information is added as part of the cluster description and each cluster in the description contain the information of which entity has caused the cluster to be formed.

For example, Description: “The cluster was formed from the following sources: ReplicaSet name: replicaset-zeta”.