Docker Security: Container-friendly Intrusion Detection with Falco by Sysdig


Details
This month's event will be hosted at Haufe's offices, and this month's topic will be Security, an important topic when we want to go to production. We have a guest by Sysdig that will discuss about how Falco can help detect anomalous activity in your applications, a.k.a. the find the bad guys before the do bad things. Also, Oscar from Hopla will explain the ops side of running PostgreSQL on Docker. Running Stateful apps on containers is no easy feat, and we'll get to know how to tackle possible issues.
The talks will be given in Spanish.
Schedule
- 19:00-19:15 Introduction
- 19:15-20:00 Container-friendly Intrusion Detection with Falco by Mateo Burillo @Sysdig
- 20:00-20:30 PostgreSQL on Docker: tips and tricks, on the ops side by Oscar Garcia-Caro @HoplaSoftware
- 20:30-21:00 Networking
Description
Container-friendly Intrusion Detection with Falco
Falco is an open source behavioral security monitor for containers. It uses Sysdig
technology to examine Linux system calls and takes advantage of the immutable and
reproducible nature of containerized apps to pinpoint anomalies. Totally transparent, with
container-specific metadata for its rules.
In this talk Mateo Burillo will summarize the container security landscape with its relatively new
strengths and attack vectors and then focus on several hands-on Falco live demos such as:
- Interactive shells running inside your containers
- Controlling writable and non-writable directories
- Access to sensitive information by unauthorized processes
PostgreSQL on Docker: tips and tricks, on the ops side
On challenge of running databases over containers there are many useful tricks and configurations help us.
In this talk Oscar introduce you several approaches of how to create stacks focus on:
- Streaming replication
- connection pooling
- Load balancing
- Database failover
- Security
- and more...
Speaker Bio
Mateo Burillo
Integrations engineer and tech writer @sysdig
Mateo greatly enjoys tinkering with container technologies, creating homebrew lab environments, and the perpetual newbie feeling of this fast moving world of tech.
He spends most of the day getting in the shoes of the user at many different levels: user interface, task automation, proper documentation and error handling, code examples, and dissecting deep technical concepts for the newcomers.
Oscar Garcia-Caro
Oscar Garcia-Caro is a Senior Consultant at @HoplaSoftware. Hopla Software is a company based on open source, founded in 2013 and headquartered in Madrid. Its main mission is to provide software tools for medium and large companies, that allow them to grow better and faster through a more powerful and efficient data handling.

Sponsors
Docker Security: Container-friendly Intrusion Detection with Falco by Sysdig