How to Lock Down Your Workloads With Guardian Policies Using Spyctl
This page will teach you about Guardian Workload Policies. It will explain what they are, how to create them, how to apply them, and how to manage them.
Prerequisites
What is a Guardian Workload Policy
Retrieving Fingerprints
spyctl get fingerprints --type FINGERPRINT_TYPE [NAME_OR_UID]$ spyctl get fingerprints --type container docker
Getting fingerprints from 2024-01-16T13:52:51Z to 2024-01-16T15:22:51Z
IMAGE_NAME:TAG IMAGEID REPO COVERED_BY_POLICY LATEST_TIMESTAMP
mongo:latest 8248f2793e07 docker.io/library 0/2 2024-01-16T15:00:43Z
nginx:latest 10d1f5b58f74 docker.io/library 0/14 2024-01-16T15:01:08Z
node:v3.23.5 b7f4f7a0ce46 docker.io/calico 0/1 2024-01-16T15:01:08ZDownload Fingerprints to a File
[Optional] Downloading Fingerprints from a K8s Namespace
Create the Policy
Generalize the Policy
Applying the Policy
[Optional] Adding "Interceptor" Response Actions
Summary and Next Steps
Last updated
Was this helpful?