[[["容易理解","easyToUnderstand","thumb-up"],["確實解決了我的問題","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["難以理解","hardToUnderstand","thumb-down"],["資訊或程式碼範例有誤","incorrectInformationOrSampleCode","thumb-down"],["缺少我需要的資訊/範例","missingTheInformationSamplesINeed","thumb-down"],["翻譯問題","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["上次更新時間:2025-09-05 (世界標準時間)。"],[[["\u003cp\u003eThis document covers version 1.10 of the Apigee hybrid documentation, and further information on other versions can be found in the "Supported versions" section.\u003c/p\u003e\n"],["\u003cp\u003eThe Apigee hybrid installation is composed of multiple pods, each with specific functions, including logging, metrics, persistence, configuration synchronization, analytics data transfer, administrative API access, and API request processing.\u003c/p\u003e\n"],["\u003cp\u003eFor a detailed breakdown of the internal connections and security protocols between Apigee hybrid pods, refer to the "Internal connections" section.\u003c/p\u003e\n"],["\u003cp\u003eGoogle recommends using Kubernetes security best practices, including reviewing the GKE security overview and hardening guidelines to secure and isolate runtime pods.\u003c/p\u003e\n"],["\u003cp\u003eNetwork policies are recommended to restrict pod communication within and outside the Kubernetes network, and can be implemented using a Container Network Interface (CNI) plugin like Calico.\u003c/p\u003e\n"]]],[],null,["# Securing the runtime installation\n\n| You are currently viewing version 1.10 of the Apigee hybrid documentation. **This version is end of life.** You should upgrade to a newer version. For more information, see [Supported versions](/apigee/docs/hybrid/supported-platforms#supported-versions).\n\nA typical Apigee hybrid installation is made of multiple pods, as listed in the\nfollowing table.\nEach of these pods require specific access to ports, and not every pod needs to communicate\nwith every other pod. For a detailed map of these internal connections and the security\nprotocols they employ, see [Internal connections](/apigee/docs/hybrid/v1.10/ports#internal).\n\n\nGoogle recommends that you follow these methods and best practices to harden,\nsecure, and isolate the runtime\npods:"]]