Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Adding Kubernetes Username Field to Tetragon Process Execution Events #3118

Open
2 tasks done
cy83rc0llect0r opened this issue Nov 15, 2024 · 0 comments
Open
2 tasks done
Labels
kind/enhancement This improves or streamlines existing functionality

Comments

@cy83rc0llect0r
Copy link

Is there an existing issue for this?

  • I have searched the existing issues

Is your feature request related to a problem?

No response

Describe the feature you would like

Hello,

The presence of a username or service account related to Kubernetes as a field in the process execution is particularly important from a security perspective. Currently, we achieve this by correlating Tetragon events with Kubernetes API logs, which is a cumbersome process due to various issues such as delays and time drifts.

When an execution occurs, it is highly valuable to know exactly which user performed the action. It appears that such a feature has not yet been implemented in Tetragon for Kubernetes. Although I understand that this is not a simple task and has its own challenges, do you have any suggestions? Or is adding this feature in your roadmap?

Regards.

Describe your proposed solution

No response

Code of Conduct

  • I agree to follow this project's Code of Conduct
@cy83rc0llect0r cy83rc0llect0r added the kind/enhancement This improves or streamlines existing functionality label Nov 15, 2024
@cy83rc0llect0r cy83rc0llect0r changed the title Absence of Kubernetes Username Field to Tetragon Process Execution Events Request for Adding Kubernetes Username Field to Tetragon Process Execution Events Nov 15, 2024
@cy83rc0llect0r cy83rc0llect0r changed the title Request for Adding Kubernetes Username Field to Tetragon Process Execution Events Adding Kubernetes Username Field to Tetragon Process Execution Events Nov 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
kind/enhancement This improves or streamlines existing functionality
Projects
None yet
Development

No branches or pull requests

1 participant