Inspecting intra-and inter-container traffic is essential for security and compliance in hybrid cloud environments. However, that’s easier said than done. Today’s containerized applications are extremely complex and highly dispersed.
GigaVUE Cloud Suite™ enhances Kubernetes security by providing simple and scalable deep observability into container environments without impacting performance. It lets you:
Gain the deep observability you need to fortify container security and enhance performance.
Eliminate Container Blind Spots
Expand visibility into Docker container traffic, delivering plaintext visibility of lateral traffic to your full security stack using Gigamon Precryption® technology.
Strengthen Kubernetes Security
Maintain a consistent security and compliance posture by tracking risky activities and threats that can propagate laterally across containers.
Automate Scalability
Limitless hybrid cloud scale (clusters, nodes, pods). Automated workload discovery via native Kubernetes and complete service mesh visibility.
Integration of GigaVUE Cloud Suite with GigaVUE Universal Cloud Tap (UCT) in Docker environments.
GigaVUE Cloud Suite works with Kubernetes environments to acquire traffic from containers running in your private and public cloud environments. For Docker containers, a GigaVUE® Universal Cloud Tap (UCT) controller works with GigaVUE-FM fabric manager to deploy UCTs without special software, kernel modules, or application redesigns.
GigaVUE Universal Cloud Tap
Deployed on each worker node, UCT uses eBPF to mirror traffic at the kernel, and tunnel traffic to a GigaVUE V Series virtual visibility node. By ensuring that security and monitoring tools access only the necessary traffic, Gigamon reduces the performance overhead linked to complex service mesh deployments.
GigaVUE V Series
Filter and aggregate packets from UCT and perform advanced processing, such as packet de-duplication or header or payload slicing, and send to any number of security and monitoring tools.
GigaVUE-FM (Fabric Manager)
Via Kubernetes APIs, GigaVUE-FM dynamically learns where new containers and pods have been established, instantiates new UCT instances, configures policies, and directs traffic to the tools of your choice.
“We’re excited about the new Universal Cloud Tap (UCT) solution in GigaVUE Cloud Suite as it shows how Gigamon continues to innovate to stay current with modern software architectures, including a wide range of Kubernetes-based container deployments. Gigamon is heading in the right direction.”
While Kubernetes is one of the biggest names in terms of container orchestration, it doesn’t come without security risks. There are a handful of security concerns you have to consider with Kubernetes, and it’s important to devise a plan to address those security risks before they negatively impact your organization.
Misconfigurations are some of the biggest Kubernetes security concerns, as well as insider threats from compromised pods. Kubernetes also relies on some third-party components, opening up your container environment to greater security concerns.
Using Kubernetes security tools is one of the most effective ways to enhance Kubernetes security and mitigate threats before they impact your organization. GigaVUE Cloud Suite enhances Kubernetes container security by giving you high-level visibility of your containers and traffic flows. You can access and aggregate traffic from containers across multiple cloud platforms, optimizing that traffic and using the insights you gain to enhance security. Gigamon Precryption technology allows you to eliminate lateral blind spots, further protecting you from security threats.
GigaVUE Enriched Metadata (GEM) for managed Kubernetes service provides deeper situational awareness to reduce MTTD and MTTR by correlating application metadata with key service and cluster details.
GigaVUE Cloud Suite is designed to work with a large number of cloud platforms and related tools, including some of the security and observability tools you might already be using. GigaVUE Cloud Suite is also designed for scalability, which means you won’t have to start using another tool if your cloud operations grow or shrink. If you have any questions about how Gigamon cloud solutions work with the security and observability tools you’re already using, you can always reach out to our sales team.
There are many tools and processes to use to secure your Kubernetes environment, but securing the Kubernetes API server, encrypting communication, and monitoring workloads are the most crucial steps. Outside of following best practices for secure configuration, leveraging a tool like GigaVUE Cloud Suite can provide the deep observability needed to effectively monitor the complex Kubernetes environment and ensure that security risks are being detected.
Gigamon utilizes the deep observability pipeline to secure East-West traffic in Kubernetes by leveraging deep-packet inspection and precryption technology to eliminate lateral traffic blind spots and address security threats quickly.
Deep observability is critical to having a meaningful understanding of network traffic in any environment, but it is especially necessary in Kubernetes environments because of the complex and scalable nature of these systems. In order to effectively identify security threats, bottlenecks, and inefficiencies within your Kubernetes environment, you need the deep observability capabilities provided by Gigamon. Features like Gigamon Precryption, application metadata intelligence and multi-cloud traffic aggregation are key to manage security and compliance within Kubernetes. This has become even more important as generative AI has rapidly escalating cybersecurity complexity within these cloud environments, as our Hybrid Cloud Security Survey shows.
Using GigaVUE Cloud Suite within your Kubernetes environment allows for enhanced observability and scalable visibility into east-west container traffic, which can significantly improve how you handle monitoring across hybrid and multi-cloud environments. The core benefits of GigaVUE for Kubernetes include elimination of blind spots, scalability, traffic optimization and packet de-duplication, and insightful metadata extraction. All of these benefits aim to provide comprehensive, precise and real-time visibility to improve your monitoring processes.
Ready to see GigaVUE Cloud Suite for Kubernetes in action? Sign up for a live demo.
We're here to help you find the right solution for your business.
By submitting this form, you agree to our Terms & Agreement. View our Privacy Statement.