[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-09-05。"],[[["\u003cp\u003eThis document outlines version 1.11 of the Apigee hybrid documentation, with details on supported versions available via a linked page.\u003c/p\u003e\n"],["\u003cp\u003eApigee hybrid installations consist of multiple pods, each with distinct roles like logging, metrics, data persistence, configuration synchronization, analytics data transfer, API endpoint management, and API request processing.\u003c/p\u003e\n"],["\u003cp\u003eThe document provides a guide on securing Apigee hybrid runtime pods, including leveraging Kubernetes security features like reviewing the Kubernetes Engine Security Overview and utilizing the Hardening your cluster's security guide.\u003c/p\u003e\n"],["\u003cp\u003eNetwork policies can be used to control communication between pods and to control access to external networks.\u003c/p\u003e\n"],["\u003cp\u003eUsing a Container Network Interface (CNI) plugin, like Calico, allows you to isolate pods from outside access and manage access to specific pods.\u003c/p\u003e\n"]]],[],null,["# Securing the runtime installation\n\n| You are currently viewing version 1.11 of the Apigee hybrid documentation. **This version is end of life.** You should upgrade to a newer version. For more information, see [Supported versions](/apigee/docs/hybrid/supported-platforms#supported-versions).\n\nA typical Apigee hybrid installation is made of multiple pods, as listed in the\nfollowing table.\nEach of these pods require specific access to ports, and not every pod needs to communicate\nwith every other pod. For a detailed map of these internal connections and the security\nprotocols they employ, see [Internal connections](/apigee/docs/hybrid/v1.11/ports#internal).\n\n\nGoogle recommends that you follow these methods and best practices to harden,\nsecure, and isolate the runtime\npods:"]]