Is Istio Ambient Mesh Secure? - Christian Posta, Solo.io & John Howard, Google
Автор: CNCF [Cloud Native Computing Foundation]
Загружено: 2023-04-20
Просмотров: 824
Is Istio Ambient Mesh Secure? - Christian Posta, Solo.io & John Howard, Google
Service-to-service security is the number one reason why platform engineers leverage a service mesh. When we worked on the initial implementations of Istio Ambient Mesh, a sidecarless data plane for Istio, security was a very top concern: we could not regress or make the mesh less secure from what we already get with a sidecar architecture. When we introduced Istio Ambient mesh back in the fall of 2022, we believe we made the right architecture decisions to preserve the powerful zero-trust properties of an Istio service mesh. In this talk we dig into the security posture of Istio Ambient Mesh sidecarless data plane and understand how we do mTLS, workload identity, and establish good security boundaries between an infrastructure and application world.
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: