lockfale / Malicious_Containers_Workshop

Workshop resources and materials for Workshop presented at DefCon and other security conferences - Creating and Uncovering Malicious Containers

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Try replacing tracee with Tetragon

digital-shokunin opened this issue · comments

See if I can just run tracee or Tetragon on one node since sharing one kernel in kind making eBPF redundant or spotty.

Tetragon seems to work well, follow guide for Tetragon or tracee in kind or just see if you can deploy single agent instead of daemonset w/ helm.