|
|
|
|
|
by erulabs
56 days ago
|
|
Awesome project! We need more eBPF projects, and congrats on launching. Assuming I hijack a production pod, can I not just make an http call to myself with the `kloak:...` secret and get back the real secret? Is there a way to validate destination? |
|
It's not perfect though, see Host Filtering | https://getkloak.io/docs/guides/host-filtering.html