From Static Tokens to Attestation: The Evoluti... Ciprian H, Jack Francis M, Josephine P, & Justin B
About this talk
This talk explores the evolution of secure node joining in Kubernetes, featuring panelists from Microsoft, Red Hat, and Google. The speakers discuss how current practices, such as Karpenter's rapid capacity deployment and the Cluster API's management of machine fleets, necessitate improved security measures beyond the traditional "if the kubelet connects, it’s in" approach. Topics covered include defining a root of trust, validating node identities through metadata and attestation, and implementing security controls like NodeRestriction and scoped RBAC to prevent privilege creep. This session aims to provide insights into the future of secure node joining, ensuring that only authorized nodes gain access to the cluster.
More from this event
See all 436 talks →
Best of KubeCon + CloudNativeCon Amsterdam 2026
2:17
The Quiet Work of Forever: Sustaining Open Source Communities - O. Hope Amaechi-Okorie, JSON Schema
26:24
Evolving KServe: The Unified Model Inference Platform for Both Predictive and... F. Spolti & J. Lee
32:40
Preventing S3 Cost Storms: Applying Cortex’s Efficiency Lessons to I/O-Heav... A. Fishman-Lichterman
5:32