Falco in Kubernetes with Alertmanager notifications

5 min readOct 21, 2023

If you’ve been following my articles, I have recently set up a homelab of 3 Kubernetes nodes while training for my CKA/CKS certifications (Setting up homelab 3.0, Installing a bare-metal Kubernetes cluster with Ansible).

Now that my cluster is running I’ve been focussing on the security aspect of managing a Kubernetes cluster and have been using a tool called Falco.

Falco is a great tool for security observability in linux systems and has amazing integrations with Kubernetes and an extremely simple setup process.