Skip to main content
Currently, DCF contains both Preview and GA features. See Distributed Cloud Firewall Supported Capabilities by Controller Version for more information.
Aviatrix Kubernetes Firewall extends network security, cost efficiency, and deployment flexibility to containerized applications. It integrates with Kubernetes and adapts automatically to scale changes without manual intervention. Using DCF’s features, users can establish security policies based on native container workload identities. By extending SmartGroup capabilities to include Kubernetes attributes such as Pod and Service addresses, DCF rules can provide security coverage across both Kubernetes and VM environments. Aviatrix optimizes IP address use within Kubernetes clusters, preventing address exhaustion and simplifying deployment processes. NAT capabilities enable connectivity for Pods, spanning both cloud and on-premises environments.
Currently Aviatrix Kubernetes Firewall only enforces DCF rules on traffic from the Kubernetes clusters to anywhere outside the VPC/VNet.
To implement Aviatrix Kubernetes Firewall: