Managing Workload Certificates in Service Mesh Without Persisting Secrets
CNCF [Cloud Native Computing Foundation] via YouTube
Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore innovative approaches to managing workload certificates in service mesh environments without persisting secrets. Learn about the challenges of using self-signed CAs in production and the security concerns surrounding the storage of intermediate or root CA private keys as Kubernetes secrets. Discover multiple techniques developed by the service mesh community to address these issues, including the use of Registration Authority, Kubernetes CSR, and other novel methods. Compare the tradeoffs between different approaches and gain insights into implementing secure certificate management in your service mesh infrastructure.
Syllabus
Intro
Lins background
Introduction
How it works
Search
Registration Authority
Seocsr
Kubernetes CSR
How this approach works
Another Approach
One Last Approach
Conclusion
Taught by
CNCF [Cloud Native Computing Foundation]