Successfully reported this slideshow.
We use your LinkedIn profile and activity data to personalize ads and to show you more relevant ads. You can change your ad preferences anytime.
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
With Kuma
THE CLOUD CONNECTIVITY
COMPANY
1
https://konghq.co...
THE CLOUD
CONNECTIVITY COMPANY
P A L L A D I N O
Marco
CO-FOUNDER & CTO AT KONG
THE CLOUD
CONNECTIVITY COMPANY
Connectivity Powers Innovation
CONNECTIVITY
NUMBER OF SERVICES
THE CLOUD
CONNECTIVITY COMPANY
Trust is exploitable
4
New York
JULY
Australia
SEPTEMBER
Singapore
APRIL
Helsinki & North
MARCH
Paris
DECEMBER
London
OCTOBER
Jakarta
FEBRUARY
Ho...
THE CLOUD
CONNECTIVITY COMPANY
Trust is exploitable
5
X
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
ZERO-TRUST SECURITY
We need virtual passports
for our services.
8
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
1. Kubernetes, VMs, Multi-Cloud
2. Single and Multi-Zone
3. Multi-Mesh, Native Policies, Ea...
THE CLOUD
CONNECTIVITY COMPANY
Built to scale with focus on ease
of use.
1st class support for containers,
Kubernetes and ...
THE CLOUD
CONNECTIVITY COMPANY
THE CLOUD
CONNECTIVITY COMPANY
Kubernetes Native (CRDs)
Universal CLI
HTTP API
Built-in GUI
EASY TO USE
THE CLOUD
CONNECTIVITY COMPANY
Security
Traffic Control
Observability
Advanced Policies
POLICY BASED
THE CLOUD
CONNECTIVITY COMPANY
70+ Observability Charts
Native API Gateway Integration
One-Click Zero Trust
BATTERIES INCL...
THE CLOUD
CONNECTIVITY COMPANY
ZERO TRUST WITH KUMA
apiVersion: kuma.io/v1alpha1
kind: Mesh
metadata:
name: default
spec:
...
THE CLOUD
CONNECTIVITY COMPANY
ZERO TRUST WITH KUMA
apiVersion: kuma.io/v1alpha1
kind: TrafficPermission
mesh: default
met...
THE CLOUD
CONNECTIVITY COMPANY
IN KONG MESH
type: OPAPolicy
mesh: default
name: opa-1
selectors:
- match:
kuma.io/service:...
THE CLOUD
CONNECTIVITY COMPANY
DEMO
THE CLOUD
CONNECTIVITY COMPANY 26
More Connectivity Zero
Trust
Service Mesh
Kuma
THE CLOUD
CONNECTIVITY COMPANY 27
Download at KUMA.IO
Enterprise Offering:
konghq.com/kong-mesh
New York
JULY
Australia
SEPTEMBER
Singapore
APRIL
Helsinki & North
MARCH
Paris
DECEMBER
London
OCTOBER
Jakarta
FEBRUARY
Ho...
You’ve finished this document.
Download and read it offline.
Upcoming SlideShare
What to Upload to SlideShare
Next
Upcoming SlideShare
What to Upload to SlideShare
Next
Download to read offline and view in fullscreen.

0

Share

apidays LIVE Australia 2021 - How to Achieve Zero-Trust Security With Kuma Service Mesh by Marco Palladino, Kong

Download to read offline

apidays LIVE Australia 2021 - Accelerating Digital
September 15 & 16, 2021

How to Achieve Zero-Trust Security With Kuma Service Mesh
Marco Palladino, CTO & Co-Founder at Kong

Related Books

Free with a 30 day trial from Scribd

See all

Related Audiobooks

Free with a 30 day trial from Scribd

See all
  • Be the first to like this

apidays LIVE Australia 2021 - How to Achieve Zero-Trust Security With Kuma Service Mesh by Marco Palladino, Kong

  1. 1. THE CLOUD CONNECTIVITY COMPANY THE CLOUD CONNECTIVITY COMPANY With Kuma THE CLOUD CONNECTIVITY COMPANY 1 https://konghq.com https://kuma.io Zero-Trust
  2. 2. THE CLOUD CONNECTIVITY COMPANY P A L L A D I N O Marco CO-FOUNDER & CTO AT KONG
  3. 3. THE CLOUD CONNECTIVITY COMPANY Connectivity Powers Innovation CONNECTIVITY NUMBER OF SERVICES
  4. 4. THE CLOUD CONNECTIVITY COMPANY Trust is exploitable 4
  5. 5. New York JULY Australia SEPTEMBER Singapore APRIL Helsinki & North MARCH Paris DECEMBER London OCTOBER Jakarta FEBRUARY Hong Kong AUGUST JUNE India MAY Check out our API Conferences here 50+ events since 2012, 14 countries, 2,000+ speakers, 50,000+ attendees, 300k+ online community Want to talk at one of our conferences? Apply to speak here
  6. 6. THE CLOUD CONNECTIVITY COMPANY Trust is exploitable 5 X
  7. 7. THE CLOUD CONNECTIVITY COMPANY
  8. 8. THE CLOUD CONNECTIVITY COMPANY
  9. 9. THE CLOUD CONNECTIVITY COMPANY ZERO-TRUST SECURITY We need virtual passports for our services. 8
  10. 10. THE CLOUD CONNECTIVITY COMPANY
  11. 11. THE CLOUD CONNECTIVITY COMPANY
  12. 12. THE CLOUD CONNECTIVITY COMPANY
  13. 13. THE CLOUD CONNECTIVITY COMPANY
  14. 14. THE CLOUD CONNECTIVITY COMPANY
  15. 15. THE CLOUD CONNECTIVITY COMPANY
  16. 16. THE CLOUD CONNECTIVITY COMPANY
  17. 17. THE CLOUD CONNECTIVITY COMPANY 1. Kubernetes, VMs, Multi-Cloud 2. Single and Multi-Zone 3. Multi-Mesh, Native Policies, Easy to Use 1000+ Organizations Have deployed Kuma as a Service Mesh in the past 12 months C O N T R O L P L A N E SERVICE S E R V I C E Sandbox Project
  18. 18. THE CLOUD CONNECTIVITY COMPANY Built to scale with focus on ease of use. 1st class support for containers, Kubernetes and VMs Natively multi-cluster and multi-zone. Intelligently route traffic across any platform and any cloud to meet expectations and SLAs Restrict access and encrypt all traffic by default to only complete transactions when identity is verified  Out of the box connectivity across multi-cluster, multi-cloud and multi-platform deployments.
  19. 19. THE CLOUD CONNECTIVITY COMPANY
  20. 20. THE CLOUD CONNECTIVITY COMPANY Kubernetes Native (CRDs) Universal CLI HTTP API Built-in GUI EASY TO USE
  21. 21. THE CLOUD CONNECTIVITY COMPANY Security Traffic Control Observability Advanced Policies POLICY BASED
  22. 22. THE CLOUD CONNECTIVITY COMPANY 70+ Observability Charts Native API Gateway Integration One-Click Zero Trust BATTERIES INCLUDED
  23. 23. THE CLOUD CONNECTIVITY COMPANY ZERO TRUST WITH KUMA apiVersion: kuma.io/v1alpha1 kind: Mesh metadata: name: default spec: mtls: enabledBackend: ca-1 backends: - name: ca-1 type: builtin dpCert: rotation: expiration: 1d conf: caCert: RSAbits: 2048 expiration: 10y
  24. 24. THE CLOUD CONNECTIVITY COMPANY ZERO TRUST WITH KUMA apiVersion: kuma.io/v1alpha1 kind: TrafficPermission mesh: default metadata: name: allow-all-traffic spec: sources: - match: kuma.io/service: '*' destinations: - match: kuma.io/service: '*'
  25. 25. THE CLOUD CONNECTIVITY COMPANY IN KONG MESH type: OPAPolicy mesh: default name: opa-1 selectors: - match: kuma.io/service: backend conf: policy: inlineString: | package envoy.authz import input.attributes.request.http as http_request default allow = false token = {"valid": valid, "payload": payload} { [_, encoded] := split(http_request.headers.authorization, " ") [valid, _, payload] := io.jwt.decode_verify(encoded, {"secret": "secret"}) } allow { is_token_valid action_allowed }
  26. 26. THE CLOUD CONNECTIVITY COMPANY DEMO
  27. 27. THE CLOUD CONNECTIVITY COMPANY 26 More Connectivity Zero Trust Service Mesh Kuma
  28. 28. THE CLOUD CONNECTIVITY COMPANY 27 Download at KUMA.IO Enterprise Offering: konghq.com/kong-mesh
  29. 29. New York JULY Australia SEPTEMBER Singapore APRIL Helsinki & North MARCH Paris DECEMBER London OCTOBER Jakarta FEBRUARY Hong Kong AUGUST JUNE India MAY Check out our API Conferences here 50+ events since 2012, 14 countries, 2,000+ speakers, 50,000+ attendees, 300k+ online community Want to talk at one of our conferences? Apply to speak here

apidays LIVE Australia 2021 - Accelerating Digital September 15 & 16, 2021 How to Achieve Zero-Trust Security With Kuma Service Mesh Marco Palladino, CTO & Co-Founder at Kong

Views

Total views

560

On Slideshare

0

From embeds

0

Number of embeds

10

Actions

Downloads

9

Shares

0

Comments

0

Likes

0

×