Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

CNCF [Cloud Native Computing Foundation]

Keyhouse - Production-ready Key Management Service in Rust

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Explore a conference talk on Keyhouse, a production-ready key management service built in Rust. Discover how ByteDance's security team developed this unique open-source solution, leveraging Spire for mutual trust establishment. Learn about its efficient design, utilizing less memory and CPU cores compared to its Go predecessor. Delve into the system's architecture, including cache infrastructure, Spiffy integration, key hierarchy, and authorization mechanisms. Gain insights into the advantages of using Rust for security-critical systems and the potential impact on building a memory-safe world. Understand the next steps for this innovative project, soon to be available on GitHub.

Syllabus

Introduction
Keyhouse
Design considerations
Cache infrastructure
Spiffy
How does Keyhouse useSpiffy
Keyhouse key hierarchy
Keyhouse master key
Keyhouse intermediate key
Customer keys
Data keys
Secrets
Key Rings
Keyhouse Authorization
Next Steps

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of Keyhouse - Production-ready Key Management Service in Rust

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.