cncf / tag-security

🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!
https://tag-security.cncf.io
Other
2.06k stars 518 forks source link

[Presentation] Trusted Service Identity (Bringing together SPIFFE/SPIRE, Keycloak, Keylime) #434

Closed lumjjb closed 1 year ago

lumjjb commented 4 years ago

Title: What is the title of your presentation?

Trusted Service Identity (Bringing together SPIFFE/SPIRE, Keycloak, Keylime)

Speakers: Who will be presenting this? List names/github IDs of presenters.

@mrsabath @lumjjb

Description: Describe in a short paragraph what the presentation is about.

Trusted Service Identity by IBM Research is an effort to close the gap of preventing access to secrets by an untrusted operator during the process of obtaining authorization for data access by the applications running in the public cloud.The project ties Key Management Service and IAM, technologies with identity solutions as well as host provenance, integrity and hardware root of trust.

We aim to show how we are planning to bring together various CNCF projects: SPIFFE/SPIRE, Keycloak and Keylime to create a solution for providing high-assurance identity, authorization and global visibility.

Time: How long will the presentation take? (estimate) 30-40 mins

Availability: What is the availability times of the speakers to present the topic? Meeting times are listed on the landing page.

TBD

TO DO

cseader commented 4 years ago

Why Keycloak? Why not Gluu?

lumjjb commented 4 years ago

Eventually we want to support both.. we started with keycloak first because of our familiarity with the team as well as better organizational alignment (i.e. IBM + Red Hat).

stale[bot] commented 3 years ago

This issue has been automatically marked as inactive because it has not had recent activity.

anvega commented 1 year ago

I could not determine from the meeting notes whether this presentation ever occurred. I'll close the issue for now because it's been a few years. If its something you'd still like to present on, we can reopen the issue and get it on the schedule.