Kaspersky Container Security

Managing runtime autoprofiles

Kaspersky Container Security can monitor processes, network traffic, and file operations in containers, and then use the obtained information to automatically generate container runtime profiles. The autoprofiling process is performed within a time interval set by the user and within the selected scope. Such a scope can be a cluster, a namespace, or a pod.

The content of an automatically generated profile (autoprofile) depends on the agent group's node monitoring settings. To start autoprofiling, you need to activate the monitoring settings for network connections, processes being started, and file operations of containers for the corresponding agent group.

The autoprofile is made unique by a combination of three settings: the name of the cluster, the name of the namespace, and the image digest. Accordingly, within one namespace, an autoprofile is generated for all containers with the selected build of an image.

In this section

Creating a runtime autoprofile

Viewing the list of runtime autoprofiles

Viewing runtime autoprofile settings

Editing runtime autoprofile settings

Stopping autoprofiling

Deleting a runtime autoprofile

Restrictions related to autoprofiles