Kaspersky Container Security

Solution interface

The Management Console is implemented through the web interface and consists of the following elements:

  • Main menu — sections and subsections of the main menu give access to the key functionalities of the solution.
  • Work pane — information and controls in the work pane depend on the section or subsection that you select in the main menu.

In this Help section

Main menu

Dashboard

Specific ways to set up data display

Page top
[Topic 250383]

Main menu

In the web interface, the main menu of Kaspersky Container Security is on the left pane and lists the main functional capabilities of the solution.

Resources

This section contains the monitoring results of all available Kaspersky Container Security resources: clusters, registries integrated with the solution, and CI/CD processes.

Components

This section contains information about the state of solution components. The Agents subsection also lets you create and delete Agent groups and view the information necessary to deploy Agents.

Compliance

This section contains the results of checks on cluster nodes for compliance with the Kubernetes benchmarks.

Policies

This section allows you to configure security policies when operating Kaspersky Container Security.

The Risk acceptance subsection contains a list of all detected threats and vulnerabilities, the risk of which is accepted by the user. In this subsection, you can cancel a risk acceptance or set the period during which a risk is considered accepted.

Administration

This section allows you to perform the following tasks:

Settings

This section allows you to configure the launch settings of the Kaspersky Container Security Management console and manage licensing terms.

The About subsection contains information about the version of the solution and the web address of the technical support service.

Block with the name of the current user

This block displays information about the user who logged in to the Kaspersky Container Security Management console. You can change the current user's password and exit the console using the appearing pop-up menu commands.

Page top
[Topic 259508]

Dashboard

On the main Kaspersky Container Security page, you can configure the dashboard to receive up-to-date analytical data on objects that are processed by the solution. This configuration is performed using filters that let you sort information by object and period.

Analytical data is displayed using widgets or specialized tools that show analytic information.

The Kaspersky Container Security dashboard opens when logging in to an account or when clicking the area containing the logo and name of the solution above the main menu.

In this section

Applying filters

Widgets on the dashboard

Page top
[Topic 255368]

Applying filters

Kaspersky Container Security provides the capability to configure the dashboard using the following filters:

  • Filter by period:
    • For the entire period
    • For the year
    • For the quarter
    • For the month
    • For the week
    • For the past 24 hours
    • For a customized period

    For any period you select, the time count begins from the current day. By default, information is displayed for the week.

  • Filter by resource:
    • All images
    • All images outside of clusters
    • All images in clusters
    • Images of a specific cluster
    • CI/CD images

    By default, information is displayed for all images.

Page top
[Topic 255372]

Widgets on the dashboard

Kaspersky Container Security provides analytical data on the dashboard by using widgets that are organized into groups based on data type. The following widget groups and widgets are available in Kaspersky Container Security:

  • Image compliance with security policy requirements. The solution displays the following information:
    • Total number of images.
    • Number of images with Compliant status.
    • Number of images with Non-compliant status.
  • Image risk assessment. The widget provides the following information on the statuses of objects:
    • Total number of images.
    • Number of images with the Critical status.
    • Number of images with the High status.
    • Number of images with the Medium status.
    • Number of images with the Low status.
    • Number of images with the Negligible status.
    • Number of images with the Ok status.
  • Top 10 object benchmarks that most frequently result in failure of cluster nodes to comply with the Kubernetes benchmarks:
    • 10 cluster node benchmarks that most frequently result in non-compliance.
    • Number of cluster nodes that failed the compliance check due to the specified benchmark.
  • Top 10 registries based on the number of images with maximum risk status.
  • Vulnerabilities
    • Top 10 detected vulnerabilities with Critical, High or Medium severity status, and the number of images containing the specified vulnerability.
    • Top 10 images containing the maximum number of identified vulnerabilities with Critical and High severity status.
  • Malware
    • Top 10 most frequently detected types of malware and number of images containing this malware.
    • Top 10 images with the maximum number of detected types of malware.
  • Sensitive data
    • Top 10 detected types of sensitive data with Critical, High or Medium severity status and the number of images containing this sensitive data.
    • Top 10 images containing the maximum amount of detected sensitive data with Critical and High severity status.
  • Misconfigurations
    • Top 10 detected misconfigurations with Critical, High or Medium severity status, and the number of images containing such sensitive data.
    • Top 10 images with the maximum number of detected misconfigurations with Critical and High severity status.

    Object lists that specify the severity level are sorted in descending order of severity (first items on the list are objects with the highest severity status).

Page top

[Topic 255371]

Specific ways to set up data display

Kaspersky Container Security interface provides the following ways to set up data displaying:

  • Filtering: The filter fields are located above the data tables. Filter fields and ways to manage the filter depend on the specifics of the data to be displayed.

    In some sections, you must click the filter icon to open the filter fields (Filter icon.).

  • Sorting in ascending or descending order. In some sections, you can sort the list of data by the selected column by using the sort icon (Sorting icon.) in the column header.
  • Search: You can search the displayed data by using the Search field that is located above the table and designated by the search icon ("Search" icon.).
  • Menu. In some tables, you can perform actions on the objects using the menu commands in the table rows. To open the menu for the selected object, click the Context menu icon. icon in the row of the object.
  • Delete. You can delete objects in the solution by using the delete icon ("Delete" icon.) or the Delete link that appears when selecting objects.
Page top
[Topic 250385]