Cloud_Native_Security_Con-Ztunnel Security .pdf

编号:140590 PDF 23页 5.69MB 下载积分:VIP专享
下载报告请您先登录!

Cloud_Native_Security_Con-Ztunnel Security .pdf

1、solo.ioWhats a Zero-Trust Tunnel?Exploring Security and Simpler Operations with Istio Ambient Mesh2|Copyright 2022Jim Bartonjameshbartonjimsolo.iohttps:/ Engineer-North America Solo3|Copyright 2022virtualized6ixmarino.wijaysolo.io https:/www.twitch.tv/virtualized6ix https:/marinow.hashnode.dev https

2、:/ Platform Advocate-DevRel SoloOrganizer-KubeHuddle TorontoAmbassador-EddieHub Inc.Marino Wijay4|Copyright 2020CONFIDENTIALA 30,000 FT overview of Ambient Mesh5|Copyright 2022Istio enables Zero-Trust SecurityPPPPPPPPPPPPPPPPPPL4 ProxyPPPPPPPPPPPPPPPPPPIstio Security with Sidecar ProxyIstio Security

3、 with Ambient MeshL4 ProxyL7 ProxyAll traffic goes through ProxyProxy manages mTLS,IdentityProxy manages L7 Application Filters|PoliciesAll traffic goes through ProxyL4 Proxy manages mTLS,IdentityL7 Proxy manages L7 Application Filters|Policies6|Copyright 2022Introducing Istio Ambient MeshZero Trust

4、 SecurityReduce CostsSimplify OperationsImprove PerformanceProxy per NodeMulti-Tenant ProxyLightweight(L4)Proxy implementation(uProxy)Mesh is Transparent to ApplicationsDecouple Proxy from ApplicationsSimplify Adding new AppsSimplify App UpdatesuProxy is L4 vs L7uProxy can use acceleration in OS(eBP

5、F)7|Copyright 2022How does Istio ambient work?Separate mesh capabilities into L4 and L7Adopt only the capabilities you needRemove the data plane from the workload(no sidecar)Leverage more capabilities in the CNIReduce attack surface of data plane8|Copyright 2022How does it work(secure overlay only)?

6、9|Copyright 2022How does it work(secure overlay+L7)?10|Copyright 2022BenefitsNo more race conditions between workload containers and sidecar/init-container,etcDont need to inject Pods/alter deployment resourcesUpgrades are out of band/transparent from the applicationLimited risk

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(Cloud_Native_Security_Con-Ztunnel Security .pdf)为本站 (2200) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠