The Fumbled Deprecation of PodSecurityPolicies

from blog Mac's Tech Blog, | ↗ original
↗ original
In 2016, Kubernetes v1.3 was released which included a new API type: PodSecurityPolicies (PSPs). The original design proposal had the lofty goal of allowing cluster admins to restrict various Linux privileges to some Pods while still allowing other Pods to use them. PSPs filled an important security hole where having the ability to run pods could...