Aviatrix Kubernetes Firewall extends network security, cost efficiency, and
deployment flexibility to containerized applications. It integrates with
Kubernetes and adapts automatically to scale changes without manual
intervention. Using DCF’s features, users can establish security policies based
on native container workload identities.
By extending SmartGroup capabilities to include Kubernetes attributes such as
Pod and Service addresses, DCF rules can provide security coverage across both
Kubernetes and VM environments.
Aviatrix optimizes IP address use within Kubernetes clusters, preventing address
exhaustion and simplifying deployment processes. NAT capabilities enable
connectivity for Pods, spanning both cloud and on-premises environments.
Currently Aviatrix Kubernetes Firewall only enforces DCF rules on traffic from
the Kubernetes clusters to anywhere outside the VPC/VNet.
To implement Aviatrix Kubernetes Firewall: