PTES Implementation for Kubernetes Instance Based on AWS

Application deployment system still be developed continuosly. We know in this time, there is a virtual machines, container, and the newest one: container orchestration. One of the most popular container orchestration is developed by Google, the name is Kubernetes. Kubernetes needed in managing appli...

Full description

Saved in:
Bibliographic Details
Main Author: Amir Syuhada, Jundi
Format: Final Project
Language:Indonesia
Online Access:https://digilib.itb.ac.id/gdl/view/42192
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Institut Teknologi Bandung
Language: Indonesia
Description
Summary:Application deployment system still be developed continuosly. We know in this time, there is a virtual machines, container, and the newest one: container orchestration. One of the most popular container orchestration is developed by Google, the name is Kubernetes. Kubernetes needed in managing application deployment with great automation. Besides having advantages of simplicity, Kubernetes also has advantages in terms of security protection of the cluster. This is proven by the existence of VPC (Virtual Private Cloud), RBAC (Role Base Access Control), API authentication and other concepts applied in Kubernetes. Even so, security testing of Kubernetes still needed to do. This Final Project contains penetration test based on PTES (Penetration Testing Execution Standard) to the Kubernetes environment. Kubernetes as the object of testing is running on AWS (Amazon Web Service). The results of testing are described and scored according to the effectiveness of PTES use in Kubernetes. The conclusion obtained the effectiveness and guideline of PTES implementation in the Kubernetes’s instance. This final project still needs to explore the scenario, the scope, and the tools of testing. Hopefully, there’s other one will develop more comprehensive research of the Kubernetes security.