Главная
Study mode:
on
1
Intro
2
Overview
3
How does it work?
4
The problem with serverless
5
System Goals
6
Square data center
7
Workload identity at Square
8
Shape of identity for Lambda
9
Identity issuance: what options were available?
10
Identity issuance decision
11
Architecture for identity issuance
12
Architecture Decision
13
System components
14
Hellol Lambda calling
15
Application Secrets: Keywhiz
16
Full decentralization?
17
Application secrets decision
18
Security Boundaries
19
Secrets Availability
20
How to onboard
21
Risk Mitigation Access all secrets
22
Summary
Description:
Explore a comprehensive conference talk on bridging security infrastructure between data centers and AWS Lambda. Delve into Square's journey of migrating to the cloud while maintaining secure communication between microservices. Learn about workload identity architecture in AWS Lambda, identity sharing between data centers and cloud environments, and the challenges of integrating serverless technology with existing infrastructure. Discover various options for identity issuance, architectural decisions, and system components. Gain insights into application secrets management, security boundaries, and risk mitigation strategies. Understand the onboarding process and key considerations for implementing a secure serverless infrastructure that seamlessly integrates with traditional data center services.

Bridging Security Infrastructure Between the Data Center and AWS Lambda

Black Hat
Add to list
0:00 / 0:00