[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-09-05。"],[[["\u003cp\u003eThis document covers version 1.10 of the Apigee hybrid documentation, and further information on other versions can be found in the "Supported versions" section.\u003c/p\u003e\n"],["\u003cp\u003eThe Apigee hybrid installation is composed of multiple pods, each with specific functions, including logging, metrics, persistence, configuration synchronization, analytics data transfer, administrative API access, and API request processing.\u003c/p\u003e\n"],["\u003cp\u003eFor a detailed breakdown of the internal connections and security protocols between Apigee hybrid pods, refer to the "Internal connections" section.\u003c/p\u003e\n"],["\u003cp\u003eGoogle recommends using Kubernetes security best practices, including reviewing the GKE security overview and hardening guidelines to secure and isolate runtime pods.\u003c/p\u003e\n"],["\u003cp\u003eNetwork policies are recommended to restrict pod communication within and outside the Kubernetes network, and can be implemented using a Container Network Interface (CNI) plugin like Calico.\u003c/p\u003e\n"]]],[],null,["# Securing the runtime installation\n\n| You are currently viewing version 1.10 of the Apigee hybrid documentation. **This version is end of life.** You should upgrade to a newer version. For more information, see [Supported versions](/apigee/docs/hybrid/supported-platforms#supported-versions).\n\nA typical Apigee hybrid installation is made of multiple pods, as listed in the\nfollowing table.\nEach of these pods require specific access to ports, and not every pod needs to communicate\nwith every other pod. For a detailed map of these internal connections and the security\nprotocols they employ, see [Internal connections](/apigee/docs/hybrid/v1.10/ports#internal).\n\n\nGoogle recommends that you follow these methods and best practices to harden,\nsecure, and isolate the runtime\npods:"]]