Help Center/ Host Security Service/ FAQs/ About HSS/ What Is Container Security?
Updated on 2025-01-07 GMT+08:00

What Is Container Security?

The HSS container edition systematically protects your Cloud Container Engine (CCE) and on-premises clusters throughout their lifecycles with asset management, image security, cluster security, and runtime intrusion detection.

Container protection throughout the life cycle, including development, building, deployment, and running.

  • During development and building, HSS works with the automated image scan and build pipeline to effectively scan images during CI/CD; detect software vulnerabilities, files, system configurations, and sensitive data risks; and prevent insecure image development.
  • During deployment, HSS provides deployment admission control to ensure the security of images deployed on the live network.
  • During container running, HSS provides real-time monitoring and log management to detect and respond to abnormal activities in a timely manner. It also uses the intrusion detection system and automated response mechanism to cope with potential security threats. In addition, Huawei Cloud HSS provides the container firewall. You can customize network policies and isolation measures for containers to effectively prevent potential risks of east-west networks in clusters and ensure secure communication between containers.