Vinum-Security/kubernetes-security-checklist

Network explaining

sergiomarotco opened this issue · 2 comments

Hi
It is recommended to separate the cluster nodes interacting with the Internet (DMZ) from the cluster nodes interacting with internal services. Delimitation can be within one cluster, or within two different clusters (DMZ and VLAN)

Could you please describe the requirement in more detail, for example, by drawing a network diagram showing VLANs and network hosts. This is how I draw my diagrams: example .

Не могли бы вы более подробно описать требование, например, нарисовав сетевую схему с указание VLAN и сетевых хостов.