Shaik, Nawazpasha (2025) Automated TLS certificate lifecycle management: A policy-driven framework for kubernetes security hardening. Global Journal of Engineering and Technology Advances, 23 (1). pp. 250-257. ISSN 2582-5003
![GJETA-2025-0110.pdf [thumbnail of GJETA-2025-0110.pdf]](https://eprint.scholarsrepository.com/style/images/fileicons/text.png)
GJETA-2025-0110.pdf - Published Version
Available under License Creative Commons Attribution Non-commercial Share Alike.
Abstract
This article presents a comprehensive framework for automating TLS certificate lifecycle management in Kubernetes environments to address critical security challenges in cloud-native applications. The proposed solution integrates policy-driven certificate management with Kubernetes native resources to enforce organizational security standards, prevent misconfigurations, and enable zero-trust security models through mutual TLS. The article implements centralized policy control that ensures compliance with industry standards while providing automated certificate issuance, rotation, and revocation mechanisms that eliminate service disruptions due to expired certificates. The article demonstrates how this approach significantly reduces the attack surface by preventing weak encryption algorithms and unauthorized service communication. The evaluation shows that enterprises implementing this framework achieve consistent TLS security governance across multi-cloud Kubernetes deployments while satisfying regulatory requirements. This article contributes to the emerging field of DevSecOps by addressing the operational complexity of maintaining robust cryptographic controls in highly dynamic container orchestration environments.
Item Type: | Article |
---|---|
Official URL: | https://doi.org/10.30574/gjeta.2025.23.1.0110 |
Uncontrolled Keywords: | Kubernetes security; TLS certificate automation; Zero-trust architecture; Mutual TLS (mTLS); Certificate lifecycle management |
Depositing User: | Editor Engineering Section |
Date Deposited: | 22 Aug 2025 09:08 |
Related URLs: | |
URI: | https://eprint.scholarsrepository.com/id/eprint/5488 |