{"id":74013,"date":"2025-10-20T07:17:37","date_gmt":"2025-10-20T00:17:37","guid":{"rendered":"https:\/\/itsystems.vn\/kubernetes-network-security-configuration-25-10-20\/"},"modified":"2026-07-29T11:32:10","modified_gmt":"2026-07-29T04:32:10","slug":"kubernetes-network-security-configuration-25-10-20","status":"publish","type":"post","link":"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/","title":{"rendered":"Kubernetes Network Security Configuration from A-Z: A Comprehensive and Effective Guide"},"content":{"rendered":"<p>In the cloud-native era, Kubernetes has emerged as a leading application deployment platform. However, network security in Kubernetes is often overlooked, creating hazardous &#8220;blind spots,&#8221; especially when pods are free to communicate with each other. This article will provide a comprehensive guide on <strong><a href=\"https:\/\/itsystems.vn\/en\/it-helpdesk-service\/\" title=\"Kubernetes Network Security Configuration\">Kubernetes network security configuration<\/a><\/strong>, from NetworkPolicy, Namespace, RBAC, to monitoring and incident response, helping you build a secure system against modern attacks.<\/p>\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 counter-hierarchy ez-toc-counter ez-toc-light-blue ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">The content of the article<\/p>\n<span class=\"ez-toc-title-toggle\"><a href=\"#\" class=\"ez-toc-pull-right ez-toc-btn ez-toc-btn-xs ez-toc-btn-default ez-toc-toggle\" aria-label=\"Toggle Table of Content\"><span class=\"ez-toc-js-icon-con\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #999;color:#999\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #999;color:#999\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/span><\/a><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Kubernetes_Network_Security_Configuration_An_Undeniable_Importance\" >Kubernetes Network Security Configuration: An Undeniable Importance<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Overview_of_Kubernetes_Network_Security\" >Overview of Kubernetes Network Security<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Configuring_NetworkPolicy_to_Control_Network_Traffic\" >Configuring NetworkPolicy to Control Network Traffic<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Structure_and_Syntax_of_NetworkPolicy\" >Structure and Syntax of NetworkPolicy<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Common_NetworkPolicy_Strategies\" >Common NetworkPolicy Strategies<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Example_NetworkPolicy_Configuration\" >Example NetworkPolicy Configuration<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-7\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Segregating_and_Isolating_Resources_with_Namespace\" >Segregating and Isolating Resources with Namespace<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-8\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Controlling_Access_with_RBAC_and_Securing_API_Server\" >Controlling Access with RBAC and Securing API Server<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-9\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Protecting_Sensitive_Information_Secrets_ConfigMap_and_CICD_Pipeline\" >Protecting Sensitive Information: Secrets, ConfigMap, and CI\/CD Pipeline<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-10\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Pod_Security_Standards_and_Pod-Level_Security_Management\" >Pod Security Standards and Pod-Level Security Management<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-11\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Monitoring_Alerting_and_Incident_Response\" >Monitoring, Alerting, and Incident Response<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-12\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Optimizing_Security_with_External_Tools\" >Optimizing Security with External Tools<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-13\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Security_Checklist_and_Common_Configuration_Mistakes\" >Security Checklist and Common Configuration Mistakes<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-14\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Conclusion\" >Conclusion<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-15\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Related_services_from_IT_Systems\" >Related services from IT Systems<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-16\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#FAQ\" >FAQ<\/a><ul class='ez-toc-list-level-3' ><li class='ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-17\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#When_should_a_business_ask_IT_Systems_for_support\" >When should a business ask IT Systems for support?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-18\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Can_IT_Systems_help_review_the_current_environment_before_proposing_a_solution\" >Can IT Systems help review the current environment before proposing a solution?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-19\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Does_this_topic_connect_to_ongoing_IT_operations\" >Does this topic connect to ongoing IT operations?<\/a><\/li><\/ul><\/li><li class='ez-toc-page-1 ez-toc-heading-level-2'><a class=\"ez-toc-link ez-toc-heading-20\" href=\"https:\/\/itsystems.vn\/en\/kubernetes-network-security-configuration-25-10-20\/#Need_help_applying_this_to_your_business\" >Need help applying this to your business?<\/a><\/li><\/ul><\/nav><\/div>\n<h2><span class=\"ez-toc-section\" id=\"Kubernetes_Network_Security_Configuration_An_Undeniable_Importance\"><\/span>Kubernetes Network Security Configuration: An Undeniable Importance<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Network security in Kubernetes plays a crucial role in protecting an organization&#8217;s resources and sensitive information. As applications run on the Kubernetes platform, improper access permissions or the failure to apply the necessary security policies can lead to significant risks. Threats can come from both outside and inside the environment, from exploiting application vulnerabilities to internal movement by elements without proper permissions.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Overview_of_Kubernetes_Network_Security\"><\/span>Overview of Kubernetes Network Security<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Kubernetes employs a complex architecture, which includes components such as Pods, Services, and Network Policies. Understanding how these components interact will help you establish effective security. Common threats like external attacks or lateral movement are things every Kubernetes operator must pay attention to. To optimally protect the system, the <strong>Defense in Depth<\/strong> security model is vital, helping protect different layers in the application and infrastructure.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Configuring_NetworkPolicy_to_Control_Network_Traffic\"><\/span>Configuring NetworkPolicy to Control Network Traffic<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>NetworkPolicy is an important concept in Kubernetes that helps control traffic between Pods. In fact, many organizations fail to implement this policy, which can lead to severe cyber attacks. For example, you can set up NetworkPolicy with the appropriate structure and syntax to ensure that only authorized Pods can communicate with each other.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Structure_and_Syntax_of_NetworkPolicy\"><\/span>Structure and Syntax of NetworkPolicy<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>NetworkPolicy outlines how network traffic to and from Pods in a specific Namespace is regulated. A simple policy can be written as follows:<\/p>\n<pre><code>apiVersion: networking.k8s.io\/v1\nkind: NetworkPolicy\nmetadata:\n  name: allow-internet\nspec:\n  podSelector:\n    matchLabels:\n      role: myapp\n  policyTypes:\n  - Ingress\n  ingress:\n  - from:\n    - podSelector:\n        matchLabels:\n          role: frontend<\/code><\/pre>\n<h3><span class=\"ez-toc-section\" id=\"Common_NetworkPolicy_Strategies\"><\/span>Common NetworkPolicy Strategies<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<ul>\n<li><strong>Default deny:<\/strong> Block all traffic, then allow selectively.<\/li>\n<li><strong>Network segmentation:<\/strong> Create separate network zones with different policies.<\/li>\n<li><strong>Controlling traffic between Namespaces:<\/strong> Establish policies to manage communication between different environments.<\/li>\n<\/ul>\n<h3><span class=\"ez-toc-section\" id=\"Example_NetworkPolicy_Configuration\"><\/span>Example NetworkPolicy Configuration<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>To allow Pods to access the Internet, you can use the following configuration:<\/p>\n<pre><code>apiVersion: networking.k8s.io\/v1\nkind: NetworkPolicy\nmetadata:\n  name: allow-external\nspec:\n  podSelector:\n    matchLabels:\n      role: backend\n  policyTypes:\n  - Egress\n  egress:\n  - to:\n    - ipBlock:\n        cidr: 0.0.0.0\/0<\/code><\/pre>\n<h2><span class=\"ez-toc-section\" id=\"Segregating_and_Isolating_Resources_with_Namespace\"><\/span>Segregating and Isolating Resources with Namespace<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Namespaces help manage resources in Kubernetes more effectively while contributing to security. Each Namespace can contain a set of Pods and other resources, completely isolated from each other. By using Namespaces, you can:<\/p>\n<ul>\n<li>Set resource quotas to control the resources used.<\/li>\n<li>Limit access through RBAC, ensuring that only authorized users have access to certain resources.<\/li>\n<\/ul>\n<h2><span class=\"ez-toc-section\" id=\"Controlling_Access_with_RBAC_and_Securing_API_Server\"><\/span>Controlling Access with RBAC and Securing API Server<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Securing the API Server is an important part of Kubernetes network security configuration. Role-Based Access Control (RBAC) allows you to create detailed access rights for users and applications. By defining appropriate Roles and RoleBindings, you can ensure the principle of Least Privilege in access management. Below is an RBAC configuration example to limit access to resources within a Namespace:<\/p>\n<pre><code>apiVersion: rbac.authorization.k8s.io\/v1\nkind: Role\nmetadata:\n  name: example-role\n  namespace: my-namespace\nrules:\n- apiGroups: [\"\"] # core API group\n  resources: [\"pods\"]\n  verbs: [\"get\", \"watch\", \"list\"]<\/code><\/pre>\n<h2><span class=\"ez-toc-section\" id=\"Protecting_Sensitive_Information_Secrets_ConfigMap_and_CICD_Pipeline\"><\/span>Protecting Sensitive Information: Secrets, ConfigMap, and CI\/CD Pipeline<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Managing Secrets and ConfigMaps is an essential part of protecting sensitive information. Using encryption for Secrets such as Sealed Secrets or HashiCorp Vault helps safeguard your secrets. If not applied correctly, critical information can leak, harming your organization.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Pod_Security_Standards_and_Pod-Level_Security_Management\"><\/span>Pod Security Standards and Pod-Level Security Management<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Pod Security Standards (PSS) have been introduced to manage security at the Pod level in Kubernetes. Implementing PSS has three levels: Privileged, Baseline, and Restricted. Each level offers different policies regarding access and interaction between Pods.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Monitoring_Alerting_and_Incident_Response\"><\/span>Monitoring, Alerting, and Incident Response<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Establishing monitoring and alerting systems is a crucial step in detecting and responding to security threats. Setting up centralized logging with the EFK stack allows you to monitor and analyze important events, while Prometheus and Grafana help visualize relevant metrics.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Optimizing_Security_with_External_Tools\"><\/span>Optimizing Security with External Tools<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>External tools such as CNI Plugins (Calico, Cilium) and Service Mesh (Istio) can enhance security for Kubernetes. They provide advanced security features that help protect data flows and sensitive information within the system.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Security_Checklist_and_Common_Configuration_Mistakes\"><\/span>Security Checklist and Common Configuration Mistakes<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>Finally, remember that setting up Kubernetes network security is an ongoing process. It is recommended to use a checklist of common security vulnerabilities to avoid missing any gaps.<\/p>\n<h2><span class=\"ez-toc-section\" id=\"Conclusion\"><\/span>Conclusion<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>We hope this guide on <strong><a href=\"https:\/\/viblo.asia\/p\/bao-mat-kubernetes-cac-tinh-nang-an-ninh-mac-dinh-quan-trong\" title=\"Kubernetes Network Security Configuration\" target=\"_blank\" rel=\"noopener\">Kubernetes network security configuration<\/a><\/strong> helps you better understand how to protect your application. Implementing the steps in this article will help you build a safer and more reliable system.<\/p>\n<p><!-- its-deep-aio-en-related-2026-07-27 --><\/p>\n<section class=\"its-deep-aio-related\" aria-label=\"Related IT Systems services\">\n<h2><span class=\"ez-toc-section\" id=\"Related_services_from_IT_Systems\"><\/span>Related services from IT Systems<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>If your team is dealing with this issue in a live business environment, these services can help you move from diagnosis to a stable operating process.<\/p>\n<ul>\n<li><a href=\"https:\/\/itsystems.vn\/en\/microsoft-business-licensing\/microsoft-windows-licensing\/\">Windows licensing for business<\/a><\/li>\n<li><a href=\"https:\/\/itsystems.vn\/en\/microsoft-business-licensing\/windows-license-pricing\/\">Windows license pricing<\/a><\/li>\n<li><a href=\"https:\/\/itsystems.vn\/en\/it-services-for-businesses\/it-support-services\/\">IT support services<\/a><\/li>\n<\/ul>\n<\/section>\n<p><!-- its-deep-aio-en-faq-2026-07-27 --><\/p>\n<section class=\"its-deep-aio-faq\" aria-label=\"Frequently asked questions\">\n<h2><span class=\"ez-toc-section\" id=\"FAQ\"><\/span>FAQ<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<h3><span class=\"ez-toc-section\" id=\"When_should_a_business_ask_IT_Systems_for_support\"><\/span>When should a business ask IT Systems for support?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Ask for support when the issue affects users, business data, security, licensing compliance, service availability or daily operations. A short technical review often prevents repeated incidents and hidden costs.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Can_IT_Systems_help_review_the_current_environment_before_proposing_a_solution\"><\/span>Can IT Systems help review the current environment before proposing a solution?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>Yes. IT Systems can review the current setup, identify risks, map the issue to the right service scope and recommend a practical next step for your business.<\/p>\n<h3><span class=\"ez-toc-section\" id=\"Does_this_topic_connect_to_ongoing_IT_operations\"><\/span>Does this topic connect to ongoing IT operations?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n<p>In most cases, yes. Problems around software, cloud, endpoint, network, backup or security should be connected to a broader IT operations plan instead of being handled as isolated incidents.<\/p>\n<\/section>\n<p><!-- its-deep-aio-en-cta-2026-07-27 --><\/p>\n<section class=\"its-deep-aio-cta\" aria-label=\"Contact IT Systems\">\n<h2><span class=\"ez-toc-section\" id=\"Need_help_applying_this_to_your_business\"><\/span>Need help applying this to your business?<span class=\"ez-toc-section-end\"><\/span><\/h2>\n<p>IT Systems Vietnam can help assess the issue, recommend the right service path and support implementation for your team.<\/p>\n<p><a class=\"button\" href=\"https:\/\/itsystems.vn\/en\/contact-it-systems-vietnam\/\">Contact IT Systems<\/a> <a class=\"button\" href=\"https:\/\/itsystems.vn\/en\/it-services-for-businesses\/it-support-services\/\">View IT support services<\/a><\/p>\n<\/section>\n","protected":false},"excerpt":{"rendered":"<p>In the cloud-native era, Kubernetes has emerged as a leading application deployment platform. However, network security in Kubernetes is often overlooked, creating hazardous &#8220;blind spots,&#8221; especially when pods are free to communicate with each other. This article will provide a comprehensive guide on Kubernetes network security configuration, from NetworkPolicy, Namespace, RBAC, to monitoring and incident [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":74011,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"rank_math_focus_keyword":"Kubernetes Network Security Configuration","rank_math_title":"Kubernetes Network Security Configuration from A-Z: A Comprehensive and Effective Guide","rank_math_description":"Kubernetes network security configuration is key to protecting your application system.","rank_math_robots":"","rank_math_canonical_url":"","rank_math_schema":"","footnotes":""},"categories":[1344,2143],"tags":[],"class_list":["post-74013","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized-en","category-it-service"],"wpml_current_locale":"en_US","wpml_translations":{"vi_VN":{"locale":"vi_VN","id":74009,"slug":"cau-hinh-bao-mat-mang-kubernetes-25-10-20","post_title":"C\u1ea5u h\u00ecnh b\u1ea3o m\u1eadt m\u1ea1ng Kubernetes t\u1eeb A-Z: H\u01b0\u1edbng d\u1eabn to\u00e0n di\u1ec7n v\u00e0 hi\u1ec7u qu\u1ea3","href":"https:\/\/itsystems.vn\/cau-hinh-bao-mat-mang-kubernetes-25-10-20\/"}},"_links":{"self":[{"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/posts\/74013","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/comments?post=74013"}],"version-history":[{"count":2,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/posts\/74013\/revisions"}],"predecessor-version":[{"id":85963,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/posts\/74013\/revisions\/85963"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/media\/74011"}],"wp:attachment":[{"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/media?parent=74013"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/categories?post=74013"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/itsystems.vn\/en\/wp-json\/wp\/v2\/tags?post=74013"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}