Secure Policy Distribution With OPA - Ash Narkar, Styra
Description:
Explore secure policy distribution using Open Policy Agent (OPA) in this 22-minute conference talk from KubeCon + CloudNativeCon Europe 2021. Learn how to mitigate potential security risks associated with OPA's bundle download feature by implementing digitally signed bundles. Discover the process of creating and validating "Signed Bundles" using industry-standard cryptographic primitives to ensure the authenticity and integrity of policies and data. Watch a comprehensive demonstration showcasing the end-to-end flow of generating and validating signed bundles, and understand how this approach effectively reduces OPA's attack surface, enhancing overall system security.