Kyverno Pt. 1: What, Why & How | Mirantis Labs – Tech Talks


Kyverno Docs: https://kyverno.io/docs/introduction/#how-kyverno-works
Kyverno 1.9 Release Blog: https://kyverno.io/blog/2023/02/01/kyverno-1.9-released/

Kyverno is a Kubernetes-native policy engine which allows for validation, mutation, generation, and software supply chain security use cases all without requiring knowledge of a programming language. Kyverno was accepted as a CNCF Incubation project in June 2022 and currently has over 3.3K stars on GitHub and 1B+ image pulls, making it one of the leading open source policy engines.

In this 2-part series, we will start with the basics of Kyverno: what it is, how it is used & why it may be right for your K8s workloads. We’ll also look at the everyday use cases that will help you get started with policy and governance of your Kubernetes clusters.

You’ll walk away from this Talk with an understanding of the core concepts of an admission controller & how to write Kyverno policies declaratively to enforce & audit your clusters for Kubernetes best practices.

Learn more about Kyverno: https://kyverno.io/
Learn about Kyverno’s Enterprise Solution: https://nirmata.com/nirmata-cloud-native-policy-manager/
Need an Engine to run it on? Try Mirantis Kubernetes Engine: http://www.mirantis.com/mke

CHAPTERS
0:00 – Introducing our presenter
0:55 – Agenda
1:34 – Real world problems with Kubernetes configurations
7:04 – How policy management can help solve these problems
10:58 – What is Kyverno?
15:14 – Kyverno & admission control basics
18:53 – Anatomy of a Kyverno Policy
24:41 – Kyverno use cases & best practices
27:46 – Demo: validate your configuration with Kyverno
31:37 – Advanced features of Kyverno (covered in Deep Dive Pt. 2)
33:13 – Nirmarta Policy Manager for Kyverno: Enterprise Offering
34:24 – Recap: Key Takeaways
36:28 – Pt. 2 premieres next Tuesday!
36:57 – Outro


Duration: 00:37:09
Publisher: Mirantis
You can watch this video also at the source.