Lock down what your CI runners can talk to. Egress filtering lets you block all outbound connections by default, then allowlist only what you need (Docker Hub, Go proxy, etc). Prevents data exfiltration & reduces attack surface.
0 likes 1 replies
?
Lock down what your CI runners can talk to. Egress filtering lets you block all outbound connections by default, then allowlist only what you need (Docker Hub, Go proxy, etc). Prevents data exfiltration & reduces attack surface.
0 likes 1 replies