Главная
Study mode:
on
1
Intro
2
What Are Microservices?
3
Properties of Microservices
4
SOA/ESB For Hipsters
5
A Simple Architecture
6
When Life Was Easy
7
Infrastructure-As-Code
8
Containers and Orchestration
9
Serverless Functions
10
Where's My Data? Clean Up Your Toys
11
API Gateway Pattern
12
Once You Get Past The Gateway
13
Decentralized Sanity
14
JSON Web Tokens (IWT)
15
What About Between Services?
16
Keeping Secrets
17
Bad Ideas
18
Hardcoded Secrets
19
Secrets Via Environment Variables
20
A Perfect Solution?
21
Passing Secrets To A Kubernetes Pod
22
Summary
Description:
Explore the security challenges and solutions for microservices architecture in this 24-minute conference talk from AppSec EU 2017. Dive into the unique security considerations that arise when deploying large-scale applications using microservices. Learn about the benefits and complexities of decoupled services, including supporting various user types from web and mobile to IoT devices. Discover real-world examples of successes and failures in microservices implementation, and understand which security practices translate well from monolithic design. Examine open-source and AWS-related tools for securely sharing secrets between services. Gain insights on implementing authentication in microservice architecture using the API Gateway Pattern. By the end of this presentation, acquire the knowledge to effectively navigate the security landscape of microservices and minimize potential vulnerabilities in your architecture.

Security in the Land of Microservices - Challenges and Solutions

OWASP Foundation
Add to list