Главная
Study mode:
on
1
Intro
2
Things that can be encrypted
3
What we need to encrypt
4
How to enable TLS backend
5
Variables scope
6
TLS Frontend Transition
7
AJ Proxy
8
Summary
Description:
Learn how to enhance OpenStack deployment security through traffic encryption in this 19-minute technical talk. Explore three critical traffic types requiring encryption: external communication to load balancers, internal communication from load balancers to backends, and service-to-service communication including rabbitmq, galera, nova live migration, and noVNC. Discover recent improvements implemented in OpenStack-Ansible to address these security challenges, with detailed explanations of required changes and their rationale. Gain insights into TLS backend enablement, variable scope management, TLS frontend transition, and AJ Proxy implementation. Basic OpenStack-Ansible knowledge is recommended to fully grasp the concepts presented by speaker Damian Dąbrowski.

Encrypting Internal Traffic with OpenStack-Ansible - A Security Implementation Guide

OpenInfra Foundation
Add to list
0:00 / 0:00