Containers

Category: Security

Announcing additional Linux controls for HAQM ECS tasks on AWS Fargate

Introduction An HAQM Elastic Container Service (HAQM ECS) task is a number of co-located containers that are scheduled on to AWS Fargate or an HAQM EC2 container instance. Containers use Linux namespaces to provide workload isolation—and with namespaces—even though containers are scheduled together in an HAQM ECS task, they’re still isolated from each other and […]

Building STIG-compliant AMIs for HAQM EKS

Building STIG-compliant AMIs for HAQM EKS

As more organizations required to run hardened virtual machines to increase security to meet the internal compliance adopt Kubernetes, there is a need for hardened HAQM Machine Images (AMIs) that work with HAQM Elastic Kubernetes Service (HAQM EKS). There are multiple options to choose from. One solution is to use Bottlerocket, a special-purpose OS from […]

Enable traffic encryption between services in AWS App Mesh using AWS Certificate Manager or customer-provided certificates

NOTICE: October 04, 2024 – This post no longer reflects the best guidance for configuring a service mesh with HAQM ECS and HAQM EKS, and its examples no longer work as shown. For workloads running on HAQM ECS, please refer to newer content on HAQM ECS Service Connect, and for workloads running on HAQM EKS, […]