Containers Advanced: How Would an External Port Scan Show Up as a Kubernetes Policy Alert?
search cancel

Containers Advanced: How Would an External Port Scan Show Up as a Kubernetes Policy Alert?

book

Article ID: 289415

calendar_today

Updated On:

Products

Carbon Black Cloud Container

Issue/Introduction

  • Running a NMAP scan against a kubernetes cluster is generating no scan alerts
  • Running the scan from a computer outside the cluster
  • Why is no alert being generated?

Environment

  • Carbon Black Cloud Containers Advanced: All Supported Versions

Resolution

  • It's unlikely an alert would show up from an external device because it's likely hitting a load balancer
  • If an alert would shows up it should show up as an ingress connection