The invention relates to an isolation and
security system running on a
server for use in multi-tenant container
orchestration. The
system of the invention aims to improve security and efficiency by providing isolated network, storage, and control plane environments for each tenant on multi-tenant container
orchestration platforms. In this context,
network isolation is achieved by using tenant-specific network
overlay protocols, unique VXLAN Network Identifier (VNI), distributed routing mechanisms and network policy engine. Complete storage isolation and performance continuity are ensured through separate storage pools,
encryption keys, and a storage QoS manager, for each tenant. Control plane isolation is supported by tenant-specific schedulers, admission controllers, and API endpoints, thus, an independent and secure management is offered. Tenant management processes are made efficient with automatic onboarding,
dynamic resource allocation, and isolation verifier, and security is guaranteed. Isolated monitoring and
log management are carried out with metric aggregators, log managers and
anomaly detection engines, and the
data integrity and security are guaranteed throughout the
system in line with the principle of zero trust architecture.