<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: container defenre inside google's distroless container in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512040#M627</link>
    <description>&lt;P&gt;Greetings Zulkarnain,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I hope that this note finds you well! I know that it has been a while since you had posted this question but I wanted to see if you still potentially needed any help. Thank you for your time and I hope that you have a good remainder of your day.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards,&lt;/P&gt;
&lt;P&gt;J. Avery King&lt;/P&gt;</description>
    <pubDate>Tue, 16 Aug 2022 20:47:22 GMT</pubDate>
    <dc:creator>AKing9</dc:creator>
    <dc:date>2022-08-16T20:47:22Z</dc:date>
    <item>
      <title>container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/307197#M212</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I'm trying to run defender in fargate/sidecar mode. It works fin if I use alpine/ubuntu images as base, but It fails when I try to use google's distroless static/base images&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The only log I get is&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;tandard_init_linux.go:190: exec user process caused "no such file or directory"&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The&amp;nbsp; container works fine if I don't run the defender, so it seems not to be related to my binary&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Any hint on how to fix this , if possible at all ?&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;update: it seems that the fargate_defender.sh is the issue. I changed the entrypoint to use the defender command directly and it seems to work. However this way I will not have the sleeping loop, so I might end adding some workaround...&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Sep 2020 18:04:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/307197#M212</guid>
      <dc:creator>giulianoz</dc:creator>
      <dc:date>2020-09-02T18:04:08Z</dc:date>
    </item>
    <item>
      <title>Re: container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/307417#M213</link>
      <description>&lt;P&gt;Thank you for the update !&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Cheers !&lt;/P&gt;
&lt;P&gt;-Kiwi.&lt;/P&gt;
&lt;DIV id="ConnectiveDocSignExtentionInstalled" data-extension-version="1.0.4"&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Tue, 21 Jan 2020 15:54:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/307417#M213</guid>
      <dc:creator>kiwi</dc:creator>
      <dc:date>2020-01-21T15:54:03Z</dc:date>
    </item>
    <item>
      <title>Re: container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/392359#M360</link>
      <description>&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;DIV class="lia-message-author-with-avatar"&gt;&lt;SPAN class="UserName lia-user-name lia-user-rank-L0-Member lia-component-message-view-widget-author-username"&gt;Hello &lt;A href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/130977" target="_self"&gt;&lt;SPAN class=""&gt;Giulianoz,&lt;/SPAN&gt;&lt;/A&gt;&lt;/SPAN&gt;&lt;/DIV&gt;&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV class="lia-message-author-with-avatar"&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I am having problems deploying the defender in a sidecar pattern using aws fargate eks. I get the&amp;nbsp;/var/lib/twistlock/fargate/fargate_defender.sh logs&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;Waiting for defender..., but the pod never gets registered to the console.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;the setup I have is as below:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;image: registry-auth.twistlock.com/tw_qbwexdrqucvju1oewzidiwvg1tjqybuk/twistlock/defender:defender_20_12_541&lt;BR /&gt;name: twistlockdefender&lt;BR /&gt;workingDir: /var/lib/twistlock/fargate/policy&lt;BR /&gt;command: ["/bin/sh", "-c"]&lt;BR /&gt;args: ["/var/lib/twistlock/fargate/fargate_defender.sh fargate &amp;amp; /usr/local/bin/defender "]&lt;BR /&gt;volumeMounts:&lt;BR /&gt;- name: twpolicy&lt;BR /&gt;mountPath: /var/lib/twistlock/fargate/policy&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- name: DEFENDER_TYPE&lt;BR /&gt;value: fargate&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;would appreciate an example of a deploy file which deploys an app and defender as a sidecar in same pod.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Zul&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 19 Mar 2021 18:32:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/392359#M360</guid>
      <dc:creator>Zulkarnain</dc:creator>
      <dc:date>2021-03-19T18:32:14Z</dc:date>
    </item>
    <item>
      <title>Re: container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512040#M627</link>
      <description>&lt;P&gt;Greetings Zulkarnain,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I hope that this note finds you well! I know that it has been a while since you had posted this question but I wanted to see if you still potentially needed any help. Thank you for your time and I hope that you have a good remainder of your day.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Kind Regards,&lt;/P&gt;
&lt;P&gt;J. Avery King&lt;/P&gt;</description>
      <pubDate>Tue, 16 Aug 2022 20:47:22 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512040#M627</guid>
      <dc:creator>AKing9</dc:creator>
      <dc:date>2022-08-16T20:47:22Z</dc:date>
    </item>
    <item>
      <title>Re: container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512206#M635</link>
      <description>Hello,&lt;BR /&gt;we are in the process of moving to a different solution before the license&lt;BR /&gt;expires, as it is not acceptable for us to introduce additional software&lt;BR /&gt;(sh and sleep) in our containers&lt;BR /&gt;</description>
      <pubDate>Wed, 17 Aug 2022 23:16:38 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512206#M635</guid>
      <dc:creator>giulianoz</dc:creator>
      <dc:date>2022-08-17T23:16:38Z</dc:date>
    </item>
    <item>
      <title>Re: container defenre inside google's distroless container</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512207#M636</link>
      <description>&lt;P&gt;Giulianoz,&lt;/P&gt;
&lt;P&gt;Thanks for reaching out, can you share more details on you use case? also we offer app embedded defenders for situations a container defender cannot be used.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin-compute/install/install_defender/install_app_embedded_defender" target="_blank"&gt;https://docs.paloaltonetworks.com/prisma/prisma-cloud/prisma-cloud-admin-compute/install/install_defender/install_app_embedded_defender&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Aug 2022 23:28:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/container-defenre-inside-google-s-distroless-container/m-p/512207#M636</guid>
      <dc:creator>MDavis29</dc:creator>
      <dc:date>2022-08-17T23:28:34Z</dc:date>
    </item>
  </channel>
</rss>

