You must complete this task on the following cluster/nodes: Cluster:trace Master node:master Worker node:worker1 You can switch the cluster/configuration context using the following command: [desk@cli] $kubectl config use-context trace Given: You may use Sysdig or Falco documentation. Task: Use detection tools to detect anomalies like processes spawning and executing something weird frequently in the single container belonging to Podtomcat. Two tools are available to use: 1. falco 2. sysdig Tools are pre-installed on the worker1 node only. Analyse the container's behaviour for at least 40 seconds, using filters that detect newly spawning and executing processes. Store an incident file at/home/cert_masters/report, in the following format: [timestamp],[uid],[processName] Note:Make sure to store incident file on the cluster's worker node, don't move it to master node.
Cassi
2 months agoEdna
19 days agoPrincess
28 days agoLamonica
1 months agoArthur
2 months agoDaniel
2 months agoOliva
2 months agoFairy
24 days agoMeghan
26 days agoTomas
30 days agoAnnamae
3 months agoTammara
1 months agoFloyd
1 months agoAlex
1 months agoDenise
1 months agoDarnell
2 months agoSherron
2 months agoYolande
3 months agoRochell
3 months agoYolande
3 months ago