►
From YouTube: Kubernetes SIG Security Docs 20220505
Description
No description was provided for this meeting.
If this is YOUR meeting, an easy way to fix this is to add a description to your video, wherever mtngs.io found it (probably YouTube).
A
Hello,
everyone
today
is
may
5th
2022
like
it's
the
23rd
meeting.
I
can't
believe
I
saw
the
number
23
and
I
was
writing
and
I'm
like.
Oh
my
god,
it's
almost
like
an
year
and
a
half
or
like
here
in
10
months.
What
of
meeting
since
we
started
kickstarted
this
project.
That
is
a
really
amazing,
mind
stone.
So
so
this
product,
this
project
bites
by
kubernetes
code
of
context,
which
means
be
nice
to
one
another
and
it
will
also
be
recorded
and
will
be
available
on
the
youtube.
A
So
please
be
mindful
of
whatever
that
you'll
see
all
right.
Now,
let's
move
on
to
the
topic
I
see
ma.
He
has
already
added
one
topic.
B
Yeah
yeah,
sorry,
I
couldn't
participate
in
the
chat
before
because
I
had
issues
with
my
stuff.
You
know
but
yeah.
I
wanted
to
talk
about
this
stuff.
So
to
give
you
a
little
bit
of
context,
it's
just
a
small
issue
opened
by
team
in
the
beginning
of
the
year
about
the
second
tutorial.
So
are
you
familiar
with
that
stuff
or
the
second
tutorial
on
the
documentation?
B
B
No
okay!
No,
I
just
actually
I
tried
it
because
of
the
checklist.
We
tried
to
make
savita
with
the
the
other
folks
and
it
was
pretty
interesting,
but
it's
a
bit
disorganized
and
also
I
tried
it
with
so
the
the
whole
point
of
the
the
thing
is
that
team
said
that
it
was
maybe
a
bit
problematic
that
it
requires
docker
because
they
want
to
get
rid
of
everything
referring
to
docker
in
the
website.
B
So
I
was
wondering
because
when
I,
when
I
actually
did
that
tutorial,
I
used
a
mini
cube
instead
of
kind
in
order
to
like
run
it
inside
of
am
or
stuff
like
that.
So
yeah
I
was
thinking
like.
Maybe
I
could
switch
everything
to
mini
cube
directly.
So
then
you
you
can
have
like
other
providers
than
than
local
directly
like
virtualbox.
Then
we
have
to
run
the
cluster
or
we
just
keep
trying
and
we
we
just
improve
the
documentation
to
to
use
the
experimental
podman
provider
and
all
that
stuff.
C
C
B
B
It's
part,
and
I
I
think
youtube
you
can
obviously
run
the
kubernetes
in
docker
and
mini
cube
as
a
provider.
I
think
it's
like
exactly
the
same
as
kind
they
might
as
well
like
use
the
same
chord
underneath,
because
the
difference
between
kind
and
mini
cube
is
the
interface
basically
like
a
mini
kind
uses
a
rose
definition
like
in
kubernetes,
and
I
mean
it
cube,
be
small,
like
flags
and
stuff.
C
B
A
I
am
plus
one
on
that
and
if
you
have
already
used
tried,
mini
cube
and
why
not,
it
would
be
easier,
and
if
there
is
like
we
might,
we
can
just
add
at
the
end.
I
don't
know
it's
just
a
tutorial.
We
shouldn't
even
like
we
don't
even
have
to
feel
like
adding
like.
Oh,
you
can
also
try
this
with
kind
with
the
apartment
enable
or
stuff
like
that.
I
mean
as
long
as
we
have
one
method
of
trying
the
tutorial
out.
I
think
that
should
be
good.
A
Sections,
okay,
so
I
think
I've
captured
everything
perfect
yeah,
so
I
know
I
wanted
to
also
talk
about
the
checklist.
Oh.
B
B
I
think
this
is
the
most
recent
version.
So
yeah.
What
do
you
want
to?
What
do
you
advise
us?
I
think
it's
almost
it.
It
misses
the
authorization
and
authentic
authentication
parts
and
the
container
and
image
scanning
might
be
like
we
can
remove
all
the
vendor
things.
A
Yeah,
so
for
authorization
authentication,
I
want
to
link
to
the
work
that
rory
has
done.
I
think
it's
merged
right,
rory,
the.
C
A
This
week
we
can
definitely
link
it
back
because
we
don't
want
to
reproduce
anything
like
it's.
We
don't
copy
paste
that
will
save
us
so
much
time.
We
can
always
edit
at
one
place,
make
sure
that
if
it's
linked,
it's
easy
for
us
right
so
and
I
don't
think
this
checklist
is
just
gonna,
be
like
one
time
thing
we
are
done
with
it.
It's
not
gonna
be
like
that.
More
and
more
features
gonna
come
and
we
have
to
keep
editing
it.
A
So
I
vote
for
maintaining
it
if,
if
section
has
to
be
linked
totally
fine
by
me
as
long
as
we
like,
maintain
that
so
probably
we'll
just
link
to
the
r
orbit
work
by
rory
for
I'll
copy
and
put
the
link,
I
don't
know
the
link,
probably
it's
somewhere
down
too,
so
we
can
do
that
and
for
the
container
image
container
image
scanning
stuff.
I
think
you
need
to
know
everything
third
party.
A
We
can
just
mention
that
there
are
tools
available
and
if
those
tools
already
in
the
cncf
tool
list,
then
we
can
just
link
it
there.
If
not,
all
we
have
to
say
is
like
make
sure
that
you
have
some
kind
of
container
image
scanner
installed
in
your
like
whatever,
if
it's
like
a
platform
or
like,
if
it's,
if
there
is
a
standalone
cooper,
however,
they
are
deploying,
it
will
just
tell
them
that
okay,
this
is
what's
recommended.
Have
an
image
scanner
doesn't
matter
what
image
scanner?
A
A
The
reason
is
like,
then:
we
might
just
it's
third
party
content
again
and
then
we
don't
want
to
look
biased
and
it's
not
possible
to
pick
one,
because
there
are,
like
probably
I
know,
probably
like
five
of
them
there
might
be
like
100
of
them.
A
fork
of
one
project
would
be
called
something
else
and
like
a
little
tiny
improvement.
So
many
so
I
just
say,
like
we
can
redo
everything
and
then
like
say,
like
use
an
image
scanner
things
like
that.
B
A
A
That's
what
I
think
so,
like
whatever
we
have
right
now,
probably
remove
the
references
to
third
party
and
I
think,
like
if
you
want,
go
ahead
and
create
a
w
ip
work
in
progress
pr,
so
that
it's
it's
there
and
then
we
will.
We
might
get
more
inputs
too
right
now
we
will
not
get
inputs
because
we
are
just
talking
among
us
all
the
time
like
in
this
group
and
in
the
seek
security
group.
A
We
don't
not
so
many
people
have
eyes
on
ice
on
this
work.
Sick
dogs,
people
might
not
be
aware
of
it
like
so,
let's
just
get
it
out.
If
that
is
okay,
I'm
not
if,
if
you,
if
I'll
talk
to
the
other
two
people
to
like
who
are
working
on
this,
if,
if
you
all
think
it's
not
ready,
then
we
can
wait.
A
Otherwise,
my
solution
is
like
we
can
generalize
this
and
get
it
out
and
like
get
more
inputs,
I
know
people
will
want
more
and
that
doesn't
have
to
go
in
this
first
iteration.
We
can
always
capture
it
as
another
issue
and
then
keep
improving.
We
don't
want
to
like
keep
waiting
on
covering
everything
right.
It's
not
possible,
it's
not
possible
to
just
build
an
entire
stuff
in
like
one
one
go
so.
B
A
B
Okay,
and
even
I
was
thinking
like
in
the
pot
security
thing,
I
tried
to
write
something
about
airbag
and
how
it
was
like
not
enough
to
protect
against
creation
of
privileged
pods
and
stuff,
and
I
was
thinking
maybe
you
can
just
reference
what
you
wrote
rory,
because
it
was
much
more.
B
My
paragraph
is
a
bit
like
that's
really
nice,
so
maybe
you
can.
C
B
Yeah
definitely
so
when
it's
out,
we
can
just
reference
to
this
section.
A
That
makes
sense
to
me-
and
this
is
not
even
like
a
comprehensive
list
of
sections,
so
I
bet
once
we
have
this
out.
We
might
get
suggestions
for
more
sections
right.
This
is
all
like
something
that
a
quick
like
this
is
all
like.
I
probably
I
just
threw
it
in
like
whatever
that
I
would
have
come
through.
A
I
just
put
it
and
then
maybe
that
now
there
is
more,
there
will
be
more
and
like
I
might
have
something,
and
so
once
we
get
it
out,
I
think
we
will
get
more
and
more
inputs
and
that
doesn't
have
to
go
in
the
same
thing.
You
can
always
like
keep
adding
it,
and
if
it's
interesting
one
of
you
can
pick
it
up
if
some
new
contributor
wants,
they
can
also
pick
it
up.
So
there
are
like
a
lot
of
opportunities.
A
And
I
I
don't
mind
linking
to
that
cv
ss
core
you
know
like
those
links
are
fine,
because
it's
going
to
keep
it.
I
think
those
things
are
fine
I'll
keep
those
links
now
for
people
to
know
like
what
that
is,
and
it's
going
to
wikipedia
if
we
don't
have
any
reference
than
kubernetes.
A
A
A
And
this
will
also
be
nice
like.
There
is
also
another
benefit
that
I
am
trying
saying
that
we
should
get
the
wip
out
because,
like
at
cubecon,
then
you
can
get
more
contributors
like
more
attention
to.
What's
like
security
people
be
like
interested,
you
know
like
yeah,
now,
you're
building
kubernetes
cluster,
for
like
three
four
years.
Maybe
it's
been
very
famous
in
the
past,
like
it's
been
famous
for
a
while,
but
like
three
past
three,
four
years
like
it's
been
everywhere
like
yeah.
Now
you
have
to
like
do
security
like
from
the
scratch.
A
Just
don't
think
it
is
like
an
afrotart.
Here
are
the
things
that
you
can
do
when
you
are
building
the
cluster
like,
so
I
just
want
to
use
it
to
get
more
contributors
and
to
get
more
eyes.
So
please
don't
think
I'm
forcing
or
like
pushing
you
recreate
a
pr.
That's
what
I
that's
another
thing
that
I
had
in
my
mind
and
I
had
to
get
it
out.
I
didn't
want
to
be
like,
like
partial
thought,
just
express
partial
thought
of
mine
and
I
felt
so
bad
so,
like
that's
a
whole
thought.
A
That's
the
other
part
of
the
thought
that
I
wanted
to
get
it
out
so
that,
like
we
can
get
more
contributors,
more
involvement
and
more
people
can
start
thinking
about
security.
You
know
like
it's
not
like
a
difficult
thing.
It's
just
like
you,
it's
like
muscle
memory
like
that's
how
people
should
like
feel
like
it
should
come
from
the
start.
So
that's
one
of
the
other,
probably
50
percent,
of
the
reason
why
I
said
like
we'll
just
comment:
whatever
we
have
and
then
we
can
keep
on
improving.
B
A
Yeah
we
can
ask
them
to
if
you
want
in
that
chat
that
we
have
and
then
like,
like
can
decide
among
yourselves
like
or
like
one
of
you
open
the
pr
like
give
access
to
the
thing
or
like
it.
We
can
just
work
out
the
logistics
on
the
side.
I
yeah
yeah.
A
All
right
does
either
of
you
have
anything
else
to
add
to
that.
B
No,
I
just
wanted
to
add
some
casual
conversation
from
the
beginning.
If,
if
it's
possible
yeah,
I
wanted
to
ask
like
how
do
you
manage
like
I
learned
that
there
are
thousands
of
people
that
are
going
to
attend
the
coupon?
So
how
do
you
deal
with
that
like?
How
do
you
meet
the
person
you
know
the
faces?
You
recognize
like
you
just
attend.
C
Yeah,
it's
going
to
be
tricky.
I
guess
my
plan
had
been
I'm
going
to
tweet
out,
I'm
more
only
most
recognizable
by
t-shirt.
I
think
I've
got
a
t-shirt
with
my,
like
highland
cow.
Breaking
out
of
a
container
logo,
actually
got
it
made
up
for
the
kubecon
so
one
day,
I'll
wear
that
but
yeah,
because
it
was
me
ma
a
lot
of
knowledge.
Well,
everyone
we've
masked
up
inside
the
venue.
So
it's
going
to
be
tricky,
but
I
guess
also
talks.
C
I
tend
to
find
that
I
go
to
the
same
talks
as
people
in
in
open
pass
conferences.
So
I
tend
to
you
know,
see
people
at
talks
because
I
tend
to
go
like
this.
I
go
to
all
these
huge
stocks
most
of
the
time,
so
you
know
you
get
to
meet
people
there.
I
guess
I'm
not!
I
personally,
I'm
not
planning
to
go
to
parties
because
for
same
reasons
as
you
know,
but
yeah
that's
the
other
place
sometimes
but
twitter.
B
A
C
C
A
B
A
A
This
time
it's
two
days
every
like
the
past
two
three
times
to
be
like
one
day,
so
it'll
always
happen
the
same
day
and
but
they
will
all
be
nearby
and
those
co-located
events
are
not
super
packed
as
the
conference
itself
so
like
around
that
time,
I'll
just
meet
like
most
the
folks
that
I
want
to
meet,
and
sometimes
I
know
these
people
are
gonna,
be
at
these
boots,
so
I'll
go
and
stop
by
and
say
hi
at
the
booth
or
like
I'll
ask
them
like
do
you
know
when
this
person's
gonna
be
here?
A
So
that's
how
I
have
done,
and
I
some
I
feel
overwhelmed
so
most
of
the
times
like
I'm
done,
I'm
an
introvert
so
like.
A
I
cannot
just
be
there
all
the
time
like
draw
energy
by
talking
talking
so
I'll,
just
like
I'll
meet,
whoever
I
want
and
then
I'll
be
like
okay
and
then
I'm
like
I'll
go
to
a
quiet
place
and
I'm,
like
probably
I'll,
be
back
to
my
whole
room
by
the
time
I
have
walked
like
10
kilometers,
so
I'll
be
like
okay,
I'm
just
gonna
go
back,
relax
and
like
order
in
thanks
to
all
the
uber
and
stuff.
A
I
did
that
and
for
la
I
ordered
and-
and
everything
was
like-
I
just
went
in
a
hotter
lobby
and
picked
up,
so
many
people
were
actually
in
the
hotel
lobby
than
they
were
in
the
conference
last
time
that
I
felt
that
it
was
the
first
in
person
I
think
so
they
were
all
like
the
cafe
spaces
and
and
in
like
little
bigger
area
like
I
couldn't
there
were
not
so
many
people
in
like
confined
areas,
small
spaces
and
conference
rooms
and
all
like
all
of
them
are
like
little
in
the
places
where
there
was
like
a
lot
of
air
last
time.
A
A
C
C
A
I
just
want
warm
beaches,
somebody
I
am
like.
I
live
in
the
northeast
and
it
is
so
cold
here.
The
water
water
is
so
cold.
Even
in
summer.
The
water
is
like
ice
cold
and
I
grew
up.
I
grew
up
next
to
a
tropical
beach,
like
my
hometown's,
like
the
tropical
climate,
so
the
beaches
are
so
warm
there,
and
here
the
beaches
are
like
ice
cold
and
I
was
like
one
day.
It
was
like
95,
98
degrees,
fahrenheit
and
then
like
that
is
like
38
degrees
celsius
or
40..
A
I
I
have
to
keep
converting
because
green
growing
up.
I
think
I
was
doing
celsius
and
then
here
fahrenheit,
so
I
just
keep
going
back
and
forth.
So
I'm
sorry
for
the
confusion
so
and
then
I
was
like
why
there
are
like
even
me
and
my
friends
from
the
beach
and
we're
like
no
one's
on
the
water
like.
Why
are
they
not
in
the
water
and
then
the
real
reason
is
the
water
was
ice
cold.
It
was
so
hot.
It
felt
like
so
horrible.
A
It
gives
you
in
the
water
it
felt
so
ice
cold
that
they
are.
If
you
are
sitting
there,
you
feel
numb
after
a
while
and
if
you
come
out
it
was
like
so
hot.
This
kind
was
just
scorching
your
skin
and
you
can
feel
it
burnt
immediately,
so
it
felt
like
that
and
I'm
like.
Oh
my
god,
I
just
want
like
good
beaches,
not
too
hot,
like
warm.
So
I'm
like
looking
forward,
I'm
like
hoping
that
valencia
would
have
a
warm
beach
like
they'll.
Have
warm
beaches
around.
I
hope
so.
C
I'm
scottish
anything
above
about
20
degrees
celsius
too
hot
for
me,
so
you're,
you're,
you're
kind
of
pleasantly
warm
with
my
too
hot
I'm
gonna
go
and
find
some
more
ice,
cold
dessert.
B
I
wasn't
going
to
say
that
like
rory
scottish,
so.
A
Actually
yeah,
even
I
feel
like
that
these
days,
because
in
boston
it
gets
like
cold
and
I
feel
pleasant
when
it
is
like
15
degrees
outside,
like
today.
It's
like
sunny
and
15,
it's
so
good,
but
once
it
gets
like
20,
even
20
is
okay
for
me,
but
like
25,
it's
like
I'm,
like
hot
turn.
On
the
easy
ac,
like
I
thought
I
stopped.
A
I
closed
all
the
windows
in
my
house
and
like
turn
on
the
ac
and
I'll
turn
on
my
car
before
I
start
and
put
the
ac
on
and
stuff
like
that,
it
gets
hard
for
me
too.
So
I
time
my
visit
to
home
back
home
india,
I
only
like
go
around
february
or
january
or
december.
A
B
Yeah,
okay,
okay,
so
I
bet
it
will
be
a
bit
of
a
challenge
to
meet
peoples
with
the
kovid
and
all
that
stuff.
You
know
it's
hard
to
to
start
in
this
condition.
For
me,
you
know
it's
like
my
first
in
person,
yeah.
C
I
think
yeah
I
mean
compared
to
a
couple
years
ago.
It
will
be,
I
think,
it'll
be
weird,
but
I
think
yeah.
I
think
the
travis
is
right
there.
They
are
the
security
con
event
on
the
monday,
tuesday
might
be
slightly
easier,
just
because
lower
numbers,
I
think
they're
only
expecting
like
250-ish,
is
my
what
I've
heard.
So
that's
not
like
a
big
number
so
like
it's
gonna,
be
a
lot
easier
to
find
the
right
people
there.
The
contributor.
B
C
A
There
is
also
a
meet
and
greet
on
friday.
So
if
you
want
to
meet
folks
from
it's
at
one
o'clock,
I
think
I
don't
know
if
they
have
published
the
schedule.
It's
at
1
00
pm
one
to
two,
so
I
think
it's
in
the
main
conference
and
you
can
meet
all
the
sig
leads
and
chairs
and
other
fellow
contributors
you'll
see
people
there.
That's
one
place
you
can
connect
what.
B
A
I
have
in
the
past,
have
gone
to
diversity,
lunch
stuff
and
they
are
fun
to
like.
They
generally
have
some
guest
speaker
and
whatnot.
For
me,
it
was
also
another
place
to
meet
people.
It's
something
that's
there
and
like
there
are.
You
can
definitely
find
so
many
events
that
would
that
would
not
be
overwhelming.
It
wouldn't
be
like
parties
or
like
loud
noise
or
like
screaming
and
stuff
where
people
might
stamp
on
your
feet.
A
So
there'll
be
a
lot
of
places
that
will
happen
in
the
past
cube
concert
least,
there
would
be
like
so
many
parties
like
every
restaurant,
every
bar
will
have
like
party
and
people
will
have
like
some
internal
list
of
parties.
A
I
haven't
been
to
any
parties
except
the
last
time.
Last
time
I
went
to
my
first
party
and
I
was
there
for
like
10
minutes
and
I
was
out
even
that
was
like
a
love
they
had
like
live
music.
I
think
it
was
good,
but
then
I
felt
like
a
lot
of
people
eating
and
not
wearing
masks,
and
that
made
me
so
uncomfortable,
so
I
was
like
yeah.
I
just
came
here
to
say
I
mainly
went
to
say
I
see
rey's
family
and
got
a
guy.
He
also
like
brought
his
wife
along.
A
So
I
was
like
yeah
I'll
just
go
meet
people
and
then
I
was
like
yeah.
I'm
gonna
be
out
of
this
place
now,
so
those
are
those
are
those
places.
Also,
you
will
see
people
like
some
of
these
little
lunches
and
evens.
You
will
you
can
see
fine,
you
will
see
you
can,
you
will
find
people
meet
and
greed
is
another
place
and
there
might
be
mentoring
session
too.
If
you
are
interested
in,
I
don't
I
haven't
seen
it
generally,
just
send
it
out.
A
Every
coupon
has
a
mentoring
session
that
will
happen,
so
there
are
also
to
see
people.
B
A
B
A
Yeah,
I
I
will
be
at
so
I'm
doing
booth
duty
for
red
hat,
so
I'll
be
in
there.
If
you
cannot
find
me
anywhere,
you
can
find
me
the
beaut
duty
on
thursday
morning.
B
C
A
I'm
gonna
quarantine
kind,
like
I'm
told
my
husband
that
I'm
not
gonna,
let's
not
go
anywhere
until
I
board
the
like.
Until
I
go
and
come
back
so-
and
I
won't
be
here
for
a
birthday,
so
we're
like
well
come
back
and
have
a
celebration
and
everything.
So
we
are
kind
of
like
stuck
to
home
for
a
week
at
least
now.
C
A
A
A
C
A
So
so
like
that's
there,
no
only
if
I
don't
fall
asleep
or
like,
if
I'm
not
jet,
lagged
yeah
and
I'll
not
tell
my
husband
and
I'll
spoil
this
fun
or
I'll
at
least
I'll
not
try
to,
but
yeah
we'll
see.
I
will
I'm
excited
I'll,
see
you
both
in
person.