SlideShare a Scribd company logo
Docker Container Security
Group Product Manager, Docker
Yuvraj Mehta
Solutions Architect, Docker
Steve Richards
Agenda
● Container Security Verticals
● Secure Software Supply Chain
● Runtime Security
● Infrastructure Security
● Compliance
● DEMO TIME!!
Secure
Supply Chain
Securing the
Software
Pipeline
Docker Enterprise Security Verticals
Runtime
Security
Securing the
Application in
Production
Infrastructure
Security
Securing
Infrastructure
from the
Application
Compliance
Meet
Regulatory
Standards
Secure Software
Supply Chain
Secure Software Supply Chain
Docker Trusted
Registry
IT OPERATIONS
Control Plane
Security scan
& sign
Traditional
Third Party
Microservices
DEVELOPERS
docker trust init org/example
Trusted Images: Scanning
docker trust init org/example
docker trust sign org/example:latest
FEATURE
• Deep visibility with binary level scanning
• Integrated workflow for a secure supply
chain
• Enable proactive risk management
BENEFITS
• Detailed BOM of included components and
vulnerability profile
• Covers wide array of languages & OS
including Windows
docker trust init org/example
Trusted Images: Signing
docker trust init org/example
docker trust sign org/example:latest
FEATURE
• Run only trusted images in production
• Establish a chain of custody for Docker
images
BENEFITS
• Sign Docker images from developer to
operations
• Verifies the publisher of Docker images
• Integrated with Docker CLI
WebHooks
Automated Promotions
Production Environments
DTR
Docker UCP
Production Environments
Docker UCP
Non-Production EnvironmentsDeveloper Machine
Development CI/CD Operations
Datacenter 1
Datacenter 2
DTR
Docker for
DTR
Runtime Security
docker trust init org/example
Identify Vulnerabilities in Production
docker trust init org/example
docker trust sign org/example:latest
Docker Enterprise
Control Plane
Docker Trusted Registry
Scan Data
FEATURE
BENEFITS
• Create policies to manage
service deployments using image
vulnerability data
• Maintain compliant deployment
of production services
• View vulnerability data of images
deployed through the control plane
• Roll up views for services & pods
Run Trusted Images
Developer
signs an image
and checks it
into a registry
Engine verifies that
image is signed before
pulling to local
environment
FEATURE
BENEFITS
• Verify that images are signed before
pulling from registry
• Enable or disable on a per-shell or
per-invocation basis
• Prevent the deployment of
containers that use unsigned
images
• Enforce policies around image
signing
Infrastructure
Security
Secure Access: Single Sign-On with SAML v2.0
FEATURE
BENEFITS
• Allow for SSO to Docker Enterprise
through existing identity provider (IdP)
○ Support for Okta and ADFS, with
more IdPs added in the future
• Continue to use LDAP synch for client
bundle access
• Achieve 2FA through identity provider
• Credentials stored in IdP only; no local
hosting of passwords
Secure Access: Native Kubernetes RBAC
FEATURE
BENEFITS
• Add native Kubernetes roles defined
in YAML file
• Distinct view of Kubernetes roles
from Swarm roles
• Define grants similar to Swarm
• Deploy Helm charts
• Use native Kubernetes RBAC
primitives
Node
Worker
Node
Worker
Node
Worker
Node
Worker
swarm mode cluster
docker
enterprise
universal control plane
trusted registry
Node
Worker
Node
Worker
.NET Dev Team
Using Swarm
Java Dev Team
using K8s
Java Dev Team
Using Swarm
Ops Team
Compliance
FIPS 140-2 Validated Docker
Enterprise-Engine FEATURE
BENEFITS
• Linux support included in 18.03
Engine, 18.09 now adds FIPS
compliance for Windows
• Automatically enable FIPS mode for
Docker engine based upon host OS
FIPS status
• Use env variable to override O/S
FIPS state
• Meet regulatory requirements by
deploying Docker Engines in a
FIPS compliant mode
• Prevent non-FIPS nodes from
joining a FIPS compliant cluster
DOCKER ENGINE
containerd
Docker
API
Networking
Docker Build
(BuildKit)
Orchestration VolumesDistribution
Docker
CLI
Plugins
FIPS 140-2 Validated Encryption Module
Detailed Audit Logs
{“audit”; {
"metadata": {...},
"level": "Metadata",
"timestamp": "2018-08-07T22:10:35Z",
"auditID":
"7559d301-fa6b-4ad6-901c-b587fab75277",
"stage": "RequestReceived",
"requestURI":
"/api/v1/namespaces/default/pods",
"verb": "list",
"user": {"username": "alice",...},
"sourceIPs": ["127.0.0.1"],
...,
"requestReceivedTimestamp":
"2018-08-07T22:10:35.428850Z"}}
orchestrator audit events
audit logs
user request
{“audit”; {
"metadata": {...},
"level": "Metadata",
"timestamp": "2018-08-07T22:10:35Z",
"auditID":
"7559d301-94e7-4ad6-901c-b587fab31512",
"stage": "RequestReceived",
"requestURI": "/v1.30/configs/create",
"verb": "post",
"user": {"username": "alice",...},
"sourceIPs": ["127.0.0.1"],
...,
"requestReceivedTimestamp":
"2018-08-07T22:10:35.428850Z"}}
kubernetes pod listing swarm config create
FEATURE
• Configurable audit logs for both
Swarm and Kubernetes
• Logs API calls tracking request,
time, user, and response
• Persistent storage of audit log
BENEFITS
• Track and investigate all
security-relevant user activity in
the cluster
Demo Time
Next Steps
https://dockr.ly/Forrester
Get the Forrester Report
on Container Platforms 
For more information visit:
https://dockr.ly/WindowsServerUpgrade 
Migrate Legacy Windows
Before End of Support 
For more information visit:
Give Docker Enterprise a spin!
trial.docker.com
Thank you!

More Related Content

What's hot (20)

PDF
DCEU 18: App-in-a-Box with Docker Application Packages
Docker, Inc.
 
PDF
DCEU 18: From Legacy Mainframe to the Cloud: The Finnish Railways Evolution w...
Docker, Inc.
 
PPTX
Docker Roadshow 2016
Docker, Inc.
 
PDF
DCEU 18: How To Build Your Containerization Strategy
Docker, Inc.
 
PDF
Building Your Docker Swarm Tech Stack
Bret Fisher
 
PDF
DockerCon SF 2015: DHE/DTR
Docker, Inc.
 
PDF
DCSF19 How To Build Your Containerization Strategy
Docker, Inc.
 
PDF
DCSF19 Deploying Istio as an Ingress Controller
Docker, Inc.
 
PPTX
Develop and deploy Kubernetes applications with Docker - IBM Index 2018
Patrick Chanezon
 
PDF
DCSF19 Docker Containers & Java: What I Wish I Had Been Told
Docker, Inc.
 
PDF
On-the-Fly Containerization of Enterprise Java & .NET Apps by Amjad Afanah
Docker, Inc.
 
PDF
DCEU 18: Desigual Transforms the In-Store Experience with Docker Enterprise C...
Docker, Inc.
 
PDF
DCEU 18: 5 Patterns for Success in Application Transformation
Docker, Inc.
 
PPTX
Introduction to Docker - 2017
Docker, Inc.
 
PPTX
Docker Bday #5, SF Edition: Introduction to Docker
Docker, Inc.
 
PDF
Docker ee an architecture and operations overview
Docker, Inc.
 
PPTX
Kubernetes 101 VMworld 2019 workshop slides
Simone Morellato
 
PPTX
Docker Online Meetup: Announcing Docker CE + EE
Docker, Inc.
 
PDF
Taking Docker from Local to Production at Intuit JanJaap Lahpor, Intuit and H...
Docker, Inc.
 
PDF
DCEU 18: Docker Container Networking
Docker, Inc.
 
DCEU 18: App-in-a-Box with Docker Application Packages
Docker, Inc.
 
DCEU 18: From Legacy Mainframe to the Cloud: The Finnish Railways Evolution w...
Docker, Inc.
 
Docker Roadshow 2016
Docker, Inc.
 
DCEU 18: How To Build Your Containerization Strategy
Docker, Inc.
 
Building Your Docker Swarm Tech Stack
Bret Fisher
 
DockerCon SF 2015: DHE/DTR
Docker, Inc.
 
DCSF19 How To Build Your Containerization Strategy
Docker, Inc.
 
DCSF19 Deploying Istio as an Ingress Controller
Docker, Inc.
 
Develop and deploy Kubernetes applications with Docker - IBM Index 2018
Patrick Chanezon
 
DCSF19 Docker Containers & Java: What I Wish I Had Been Told
Docker, Inc.
 
On-the-Fly Containerization of Enterprise Java & .NET Apps by Amjad Afanah
Docker, Inc.
 
DCEU 18: Desigual Transforms the In-Store Experience with Docker Enterprise C...
Docker, Inc.
 
DCEU 18: 5 Patterns for Success in Application Transformation
Docker, Inc.
 
Introduction to Docker - 2017
Docker, Inc.
 
Docker Bday #5, SF Edition: Introduction to Docker
Docker, Inc.
 
Docker ee an architecture and operations overview
Docker, Inc.
 
Kubernetes 101 VMworld 2019 workshop slides
Simone Morellato
 
Docker Online Meetup: Announcing Docker CE + EE
Docker, Inc.
 
Taking Docker from Local to Production at Intuit JanJaap Lahpor, Intuit and H...
Docker, Inc.
 
DCEU 18: Docker Container Networking
Docker, Inc.
 

Similar to DCEU 18: Docker Container Security (20)

PDF
Docker Security and Content Trust
ehazlett
 
PDF
Docker for Ops - Scott Coulton, Puppet
Docker, Inc.
 
PDF
Francisco Javier Ramirez Urea - Hopla - OSL19
marketingsyone
 
PDF
Docker for developers
andrzejsydor
 
PDF
Docker Enterprise Edition: Building a Secure Supply Chain for the Enterprise ...
Docker, Inc.
 
PDF
Docker security - TASK Jan 2016
Fernando Montenegro
 
PDF
Docker Security Deep Dive by Ying Li and David Lawrence
Docker, Inc.
 
PDF
Containers, Docker, and Security: State Of The Union (LinuxCon and ContainerC...
Jérôme Petazzoni
 
PDF
State of Union - Containerz
Shiva Narayanaswamy
 
PDF
Testing Docker Images Security
Jose Manuel Ortega Candel
 
PPTX
Docker Datacenter Overview and Production Setup Slides
Docker, Inc.
 
PDF
Docker Indy: Dockercon 2019 Recap and Docker CLI Plugins
ehazlett
 
PPTX
Docker EE 2.0 Choice, Security & Agility
Ashnikbiz
 
PDF
Skip the anxiety attack when building secure containerized apps
Haidee McMahon
 
PDF
Testing Docker Images Security -All day dev ops 2017
Jose Manuel Ortega Candel
 
PDF
DevOpsDaysRiga 2017: Chris Van Tuin - A DevOps State of Mind: Continuous Secu...
DevOpsDays Riga
 
PDF
Dockercon EU 2015 Recap
Lee Calcote
 
PDF
Securing the Container Pipeline at Salesforce by Cem Gurkok
Docker, Inc.
 
PPTX
Docker Security workshop slides
Docker, Inc.
 
PPTX
DockerCon EU 2015: What's New with Docker Trusted Registry
Docker, Inc.
 
Docker Security and Content Trust
ehazlett
 
Docker for Ops - Scott Coulton, Puppet
Docker, Inc.
 
Francisco Javier Ramirez Urea - Hopla - OSL19
marketingsyone
 
Docker for developers
andrzejsydor
 
Docker Enterprise Edition: Building a Secure Supply Chain for the Enterprise ...
Docker, Inc.
 
Docker security - TASK Jan 2016
Fernando Montenegro
 
Docker Security Deep Dive by Ying Li and David Lawrence
Docker, Inc.
 
Containers, Docker, and Security: State Of The Union (LinuxCon and ContainerC...
Jérôme Petazzoni
 
State of Union - Containerz
Shiva Narayanaswamy
 
Testing Docker Images Security
Jose Manuel Ortega Candel
 
Docker Datacenter Overview and Production Setup Slides
Docker, Inc.
 
Docker Indy: Dockercon 2019 Recap and Docker CLI Plugins
ehazlett
 
Docker EE 2.0 Choice, Security & Agility
Ashnikbiz
 
Skip the anxiety attack when building secure containerized apps
Haidee McMahon
 
Testing Docker Images Security -All day dev ops 2017
Jose Manuel Ortega Candel
 
DevOpsDaysRiga 2017: Chris Van Tuin - A DevOps State of Mind: Continuous Secu...
DevOpsDays Riga
 
Dockercon EU 2015 Recap
Lee Calcote
 
Securing the Container Pipeline at Salesforce by Cem Gurkok
Docker, Inc.
 
Docker Security workshop slides
Docker, Inc.
 
DockerCon EU 2015: What's New with Docker Trusted Registry
Docker, Inc.
 
Ad

More from Docker, Inc. (20)

PDF
Containerize Your Game Server for the Best Multiplayer Experience
Docker, Inc.
 
PDF
How to Improve Your Image Builds Using Advance Docker Build
Docker, Inc.
 
PDF
Build & Deploy Multi-Container Applications to AWS
Docker, Inc.
 
PDF
Securing Your Containerized Applications with NGINX
Docker, Inc.
 
PDF
How To Build and Run Node Apps with Docker and Compose
Docker, Inc.
 
PDF
Hands-on Helm
Docker, Inc.
 
PDF
Distributed Deep Learning with Docker at Salesforce
Docker, Inc.
 
PDF
The First 10M Pulls: Building The Official Curl Image for Docker Hub
Docker, Inc.
 
PDF
Monitoring in a Microservices World
Docker, Inc.
 
PDF
COVID-19 in Italy: How Docker is Helping the Biggest Italian IT Company Conti...
Docker, Inc.
 
PDF
Predicting Space Weather with Docker
Docker, Inc.
 
PDF
Become a Docker Power User With Microsoft Visual Studio Code
Docker, Inc.
 
PDF
How to Use Mirroring and Caching to Optimize your Container Registry
Docker, Inc.
 
PDF
Monolithic to Microservices + Docker = SDLC on Steroids!
Docker, Inc.
 
PDF
Kubernetes at Datadog Scale
Docker, Inc.
 
PDF
Labels, Labels, Labels
Docker, Inc.
 
PDF
Using Docker Hub at Scale to Support Micro Focus' Delivery and Deployment Model
Docker, Inc.
 
PDF
Build & Deploy Multi-Container Applications to AWS
Docker, Inc.
 
PDF
From Fortran on the Desktop to Kubernetes in the Cloud: A Windows Migration S...
Docker, Inc.
 
PDF
Developing with Docker for the Arm Architecture
Docker, Inc.
 
Containerize Your Game Server for the Best Multiplayer Experience
Docker, Inc.
 
How to Improve Your Image Builds Using Advance Docker Build
Docker, Inc.
 
Build & Deploy Multi-Container Applications to AWS
Docker, Inc.
 
Securing Your Containerized Applications with NGINX
Docker, Inc.
 
How To Build and Run Node Apps with Docker and Compose
Docker, Inc.
 
Hands-on Helm
Docker, Inc.
 
Distributed Deep Learning with Docker at Salesforce
Docker, Inc.
 
The First 10M Pulls: Building The Official Curl Image for Docker Hub
Docker, Inc.
 
Monitoring in a Microservices World
Docker, Inc.
 
COVID-19 in Italy: How Docker is Helping the Biggest Italian IT Company Conti...
Docker, Inc.
 
Predicting Space Weather with Docker
Docker, Inc.
 
Become a Docker Power User With Microsoft Visual Studio Code
Docker, Inc.
 
How to Use Mirroring and Caching to Optimize your Container Registry
Docker, Inc.
 
Monolithic to Microservices + Docker = SDLC on Steroids!
Docker, Inc.
 
Kubernetes at Datadog Scale
Docker, Inc.
 
Labels, Labels, Labels
Docker, Inc.
 
Using Docker Hub at Scale to Support Micro Focus' Delivery and Deployment Model
Docker, Inc.
 
Build & Deploy Multi-Container Applications to AWS
Docker, Inc.
 
From Fortran on the Desktop to Kubernetes in the Cloud: A Windows Migration S...
Docker, Inc.
 
Developing with Docker for the Arm Architecture
Docker, Inc.
 
Ad

Recently uploaded (20)

PDF
Shuen Mei Parth Sharma Boost Productivity, Innovation and Efficiency wit...
AWS Chicago
 
PDF
2025-07-15 EMEA Volledig Inzicht Dutch Webinar
ThousandEyes
 
PDF
How Current Advanced Cyber Threats Transform Business Operation
Eryk Budi Pratama
 
PDF
Women in Automation Presents: Reinventing Yourself — Bold Career Pivots That ...
DianaGray10
 
PDF
Human-centred design in online workplace learning and relationship to engagem...
Tracy Tang
 
PDF
HR agent at Mediq: Lessons learned on Agent Builder & Maestro by Tacstone Tec...
UiPathCommunity
 
PDF
SFWelly Summer 25 Release Highlights July 2025
Anna Loughnan Colquhoun
 
PPTX
Simplifying End-to-End Apache CloudStack Deployment with a Web-Based Automati...
ShapeBlue
 
PDF
Novus-Safe Pro: Brochure-What is Novus Safe Pro?.pdf
Novus Hi-Tech
 
PDF
Impact of IEEE Computer Society in Advancing Emerging Technologies including ...
Hironori Washizaki
 
PDF
NewMind AI - Journal 100 Insights After The 100th Issue
NewMind AI
 
PDF
Upgrading to z_OS V2R4 Part 01 of 02.pdf
Flavio787771
 
PDF
Arcee AI - building and working with small language models (06/25)
Julien SIMON
 
PDF
Blockchain Transactions Explained For Everyone
CIFDAQ
 
PDF
Upskill to Agentic Automation 2025 - Kickoff Meeting
DianaGray10
 
PDF
CIFDAQ Weekly Market Wrap for 11th July 2025
CIFDAQ
 
PPTX
MSP360 Backup Scheduling and Retention Best Practices.pptx
MSP360
 
PPTX
Building a Production-Ready Barts Health Secure Data Environment Tooling, Acc...
Barts Health
 
PDF
SWEBOK Guide and Software Services Engineering Education
Hironori Washizaki
 
PDF
Chris Elwell Woburn, MA - Passionate About IT Innovation
Chris Elwell Woburn, MA
 
Shuen Mei Parth Sharma Boost Productivity, Innovation and Efficiency wit...
AWS Chicago
 
2025-07-15 EMEA Volledig Inzicht Dutch Webinar
ThousandEyes
 
How Current Advanced Cyber Threats Transform Business Operation
Eryk Budi Pratama
 
Women in Automation Presents: Reinventing Yourself — Bold Career Pivots That ...
DianaGray10
 
Human-centred design in online workplace learning and relationship to engagem...
Tracy Tang
 
HR agent at Mediq: Lessons learned on Agent Builder & Maestro by Tacstone Tec...
UiPathCommunity
 
SFWelly Summer 25 Release Highlights July 2025
Anna Loughnan Colquhoun
 
Simplifying End-to-End Apache CloudStack Deployment with a Web-Based Automati...
ShapeBlue
 
Novus-Safe Pro: Brochure-What is Novus Safe Pro?.pdf
Novus Hi-Tech
 
Impact of IEEE Computer Society in Advancing Emerging Technologies including ...
Hironori Washizaki
 
NewMind AI - Journal 100 Insights After The 100th Issue
NewMind AI
 
Upgrading to z_OS V2R4 Part 01 of 02.pdf
Flavio787771
 
Arcee AI - building and working with small language models (06/25)
Julien SIMON
 
Blockchain Transactions Explained For Everyone
CIFDAQ
 
Upskill to Agentic Automation 2025 - Kickoff Meeting
DianaGray10
 
CIFDAQ Weekly Market Wrap for 11th July 2025
CIFDAQ
 
MSP360 Backup Scheduling and Retention Best Practices.pptx
MSP360
 
Building a Production-Ready Barts Health Secure Data Environment Tooling, Acc...
Barts Health
 
SWEBOK Guide and Software Services Engineering Education
Hironori Washizaki
 
Chris Elwell Woburn, MA - Passionate About IT Innovation
Chris Elwell Woburn, MA
 

DCEU 18: Docker Container Security

  • 2. Group Product Manager, Docker Yuvraj Mehta Solutions Architect, Docker Steve Richards
  • 3. Agenda ● Container Security Verticals ● Secure Software Supply Chain ● Runtime Security ● Infrastructure Security ● Compliance ● DEMO TIME!!
  • 4. Secure Supply Chain Securing the Software Pipeline Docker Enterprise Security Verticals Runtime Security Securing the Application in Production Infrastructure Security Securing Infrastructure from the Application Compliance Meet Regulatory Standards
  • 6. Secure Software Supply Chain Docker Trusted Registry IT OPERATIONS Control Plane Security scan & sign Traditional Third Party Microservices DEVELOPERS
  • 7. docker trust init org/example Trusted Images: Scanning docker trust init org/example docker trust sign org/example:latest FEATURE • Deep visibility with binary level scanning • Integrated workflow for a secure supply chain • Enable proactive risk management BENEFITS • Detailed BOM of included components and vulnerability profile • Covers wide array of languages & OS including Windows
  • 8. docker trust init org/example Trusted Images: Signing docker trust init org/example docker trust sign org/example:latest FEATURE • Run only trusted images in production • Establish a chain of custody for Docker images BENEFITS • Sign Docker images from developer to operations • Verifies the publisher of Docker images • Integrated with Docker CLI
  • 10. Automated Promotions Production Environments DTR Docker UCP Production Environments Docker UCP Non-Production EnvironmentsDeveloper Machine Development CI/CD Operations Datacenter 1 Datacenter 2 DTR Docker for DTR
  • 12. docker trust init org/example Identify Vulnerabilities in Production docker trust init org/example docker trust sign org/example:latest Docker Enterprise Control Plane Docker Trusted Registry Scan Data FEATURE BENEFITS • Create policies to manage service deployments using image vulnerability data • Maintain compliant deployment of production services • View vulnerability data of images deployed through the control plane • Roll up views for services & pods
  • 13. Run Trusted Images Developer signs an image and checks it into a registry Engine verifies that image is signed before pulling to local environment FEATURE BENEFITS • Verify that images are signed before pulling from registry • Enable or disable on a per-shell or per-invocation basis • Prevent the deployment of containers that use unsigned images • Enforce policies around image signing
  • 15. Secure Access: Single Sign-On with SAML v2.0 FEATURE BENEFITS • Allow for SSO to Docker Enterprise through existing identity provider (IdP) ○ Support for Okta and ADFS, with more IdPs added in the future • Continue to use LDAP synch for client bundle access • Achieve 2FA through identity provider • Credentials stored in IdP only; no local hosting of passwords
  • 16. Secure Access: Native Kubernetes RBAC FEATURE BENEFITS • Add native Kubernetes roles defined in YAML file • Distinct view of Kubernetes roles from Swarm roles • Define grants similar to Swarm • Deploy Helm charts • Use native Kubernetes RBAC primitives Node Worker Node Worker Node Worker Node Worker swarm mode cluster docker enterprise universal control plane trusted registry Node Worker Node Worker .NET Dev Team Using Swarm Java Dev Team using K8s Java Dev Team Using Swarm Ops Team
  • 18. FIPS 140-2 Validated Docker Enterprise-Engine FEATURE BENEFITS • Linux support included in 18.03 Engine, 18.09 now adds FIPS compliance for Windows • Automatically enable FIPS mode for Docker engine based upon host OS FIPS status • Use env variable to override O/S FIPS state • Meet regulatory requirements by deploying Docker Engines in a FIPS compliant mode • Prevent non-FIPS nodes from joining a FIPS compliant cluster DOCKER ENGINE containerd Docker API Networking Docker Build (BuildKit) Orchestration VolumesDistribution Docker CLI Plugins FIPS 140-2 Validated Encryption Module
  • 19. Detailed Audit Logs {“audit”; { "metadata": {...}, "level": "Metadata", "timestamp": "2018-08-07T22:10:35Z", "auditID": "7559d301-fa6b-4ad6-901c-b587fab75277", "stage": "RequestReceived", "requestURI": "/api/v1/namespaces/default/pods", "verb": "list", "user": {"username": "alice",...}, "sourceIPs": ["127.0.0.1"], ..., "requestReceivedTimestamp": "2018-08-07T22:10:35.428850Z"}} orchestrator audit events audit logs user request {“audit”; { "metadata": {...}, "level": "Metadata", "timestamp": "2018-08-07T22:10:35Z", "auditID": "7559d301-94e7-4ad6-901c-b587fab31512", "stage": "RequestReceived", "requestURI": "/v1.30/configs/create", "verb": "post", "user": {"username": "alice",...}, "sourceIPs": ["127.0.0.1"], ..., "requestReceivedTimestamp": "2018-08-07T22:10:35.428850Z"}} kubernetes pod listing swarm config create FEATURE • Configurable audit logs for both Swarm and Kubernetes • Logs API calls tracking request, time, user, and response • Persistent storage of audit log BENEFITS • Track and investigate all security-relevant user activity in the cluster
  • 22. https://dockr.ly/Forrester Get the Forrester Report on Container Platforms  For more information visit:
  • 24. Give Docker Enterprise a spin! trial.docker.com