Cloud-Native Telecom · Pro
Securing a 5G Core on Kubernetes requires defense in depth across multiple layers. Pod Security Standards define three profiles: Privileged, Baseline, and Restricted. Telecom control plane NFs should run under the Restricted profile, using non-root users, read-only root filesystems, and dropping all Linux capabilities. Data plane NFs like UPF may require the Baseline profile due to their need for specific capabilities like NET_ADMIN for SR-IOV and SYS_RESOURCE for hugepages. Pod Security Admission controllers enforce these standards at the namespace level, preventing deployment of pods that…
Continue reading with Pro
This lesson is part of Pro. Subscribe to unlock the full lesson plus all 32 advanced levels, 900 lessons, labs, and 21 full-length practice exams.
Instructor-led 5G training typically runs $1,500–$3,000 per course. Pro is everything — every certification course and practice exam — for a fraction of one.