Skip to content

"zero-trust" security / networking for training jobsΒ #2341

@astefanutti

Description

@astefanutti

What you would like to be added?

Secure, ideally by default, the data plane of the jobs managed by the training operator.

This would include:

  • The creation of NetworkPolicies that prevent ingress traffic to the training jobs, i.e., only intra-job Pod-to-Pod communication is allowed
  • The configuration of (m)TLS for Pod-to-Pod communication wherever possible, or provide some documentation on how to achieve it, possibly using external solution like a service mesh for example.

Why is this needed?

In multi-tenant setups, it's important to guarantee tenants are isolated from each other.

Love this feature?

Give it a πŸ‘ We prioritize the features with most πŸ‘

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions