101 Labs Overview

Table of Contents

Overview

These basic labs introduce OpenShift’s secure-by-default posture. Align workloads to built-in guardrails instead of bypassing them.

Topics covered:

  • Container security fundamentals (projects and namespaces)

  • Default OpenShift platform security layers

  • Basic RBAC

  • Workload guardrails (SCC/PSA, quotas, limits)

  • Least privilege (non-root, minimal capabilities)

  • NetworkPolicies

  • Secrets basics

  • Trusted images and vulnerability awareness

  • Encryption in transit and at rest

  • Audit and cluster logs

  • Security extension operators (awareness)

Work them in order, then continue with 201 Intermediate.

Basic Labs Index

Lab Title

101-01

Default Secure Behavior

101-02

Projects & Namespaces as Security Boundaries

101-03

Role-Based Access Control Basics

101-04

SCC Limits, Resource Guardrails & Pod Security

101-05

NetworkPolicy Basics

101-06

Secrets Management

101-07

Image Provenance Guardrails

101-08

Etcd Encryption at Rest & Control Plane Hardening

101-09

Audit Logging & Exec Events

101-10

CIS Audit Log Checks (Compliance Operator)

101-11

Rebuilding & Hardening Images

101-12

Enforcing TLS on Routes