Tigera Enhances Calico with Major Network and Runtime Security Updates
New features extend Calico network security to virtual machines and hosts, help operators tune and customize runtime security, and simplify the management of network security
With the rise in Artificial Intelligence (AI) applications, and the infrastructure trend of migrating from virtual machines (VMs) to Kubernetes, network security has become critical. Tigera's new updates to Calico extend its network security and visibility capabilities to VMs and hosts, and provide several new enhancements for implementing network security.
The new release of Calico also includes essential capabilities for security teams. Today, there is a critical need to simplify security monitoring. Security operations teams are overwhelmed with the number of security events and false positives, and need solutions that help them become more efficient and effective in their roles. Tigera has enhanced Calico's runtime security capabilities, including fine-tuning the detectors to eliminate noise and make the detection more targeted.
Network Security Enhancements
- Policy Tiers and Support for AdminNetwork and BaselineNetwork Policies – Calico now supports new Kubernetes policies and Calico policy tiers that provide granular control over policy precedence, ensuring predictable, consistent enforcement and enabling better collaboration between teams.
- Extend Calico Network Security Beyond Kubernetes to VMs and Hosts – Calico can protect VMs and hosts running outside of a Kubernetes cluster, significantly expanding the scope of how users can leverage Calico to secure application workloads.
- Native Support for nftables – Calico introduces native support for nftables, ensuring that Kubernetes users can smoothly transition from iptables to nftables while maintaining performance and compatibility.
- New Sidecar Deployment for Envoy in Calico – Ensures greater levels of compatibility with certain Kubernetes platforms such as GKE, AKS, EKS and Wireguard.
Runtime Security Enhancements
- Fine-Tuned Runtime Threat Detection for Accuracy and Efficiency – Calico allows administrators to select which types of detectors to enable in their cluster, enabling teams to phase their deployment and tune and customize threat detection.
- Significant Reduction of False Positives – Calico enables operators to bypass threat detection for certain known processes, thereby eliminating false positives.
- Bolstered Network-Based Threat Detection – Calico supports the ability to customize SNORT rules for Deep Packet Inspection (DPI) on a workload basis to improve accuracy.
- Insight into the Exploitability of Vulnerabilities to Prioritize Remediation – Calico introduces new meta data including Exploit Prediction Scoring System (EPSS) and information on known exploits to estimate the likelihood that the software vulnerability will be exploited in the wild.
"We are pleased to extend Calico's renowned network security beyond Kubernetes clusters to virtual machines and hosts," said
With these new updates, Calico provides platform and security engineers with more control, visibility, and efficiency in securing and managing their Kubernetes and hybrid environments. Calico's latest enhancements offer both flexibility for development teams and strict controls for platform and security teams. Learn more about Calico's new capabilities here.
Meet Tigera at KubeCon North America 2024
Register for CalicoCon 2024: On
Meet Tigera at Booth #H7: To get the latest updates on Calico's container networking and security advancements, visit Tigera at KubeCon North America 2024 at Booth #H7.
Hear from Tigera developers and engineers during KubeCon NA sessions:
Casey Davenport , Developer, Tigera, will participate in the session: "How the Tables Have Turned: Kubernetes Says Goodbye to Iptables". Those attending KubeCon NA can register here.- Shaun Crampton, Distinguished Engineer, Tigera, will participate in the session: "SIG Network Intro and Updates session". Those attending KubeCon NA can register here.
Click here to learn more about Tigera's solutions or request a free trial.
About Tigera
Tigera provides secure networking and comprehensive protection for containers and Kubernetes. Tigera's Calico Cloud is the industry's only container security platform with built-in network security to prevent, detect, troubleshoot, and automatically mitigate exposure risks of security breaches. The company's self-managed service offering, Calico Enterprise, provides high-availability networking and simplified network security for cloud-native applications. Its open-source offering, Calico Open Source, is the most widely adopted container networking and security solution.
Powering more than 100M containers across 8M+ nodes in 166 countries, Calico software is supported across all major cloud providers and Kubernetes distributions, and is used by leading companies including Discover, Chipotle, NBCUniversal, HanseMerkur, Box, Siemens Healthineers, Playtech, Royal Bank of Canada, and Bell Canada.
Media Contact
ICR for Tigera
[email protected]
View original content to download multimedia:https://www.prnewswire.com/news-releases/tigera-enhances-calico-with-major-network-and-runtime-security-updates-302301572.html
SOURCE Tigera
Serious News for Serious Traders! Try StreetInsider.com Premium Free!
You May Also Be Interested In
- ISTE+ASCD Announces New Name: International Society for Transforming Education
- Beerenberg Prevails in Patent Case Against Aspen Aerogels
- Pressure Washing Added to Lynchburg Lawn Service Lineup
Create E-mail Alert Related Categories
PRNewswire, Press ReleasesRelated Entities
DavenportSign up for StreetInsider Free!
Receive full access to all new and archived articles, unlimited portfolio tracking, e-mail alerts, custom newswires and RSS feeds - and more!



Tweet
Share