Loading…
Visit the OpenStack Summit page for the latest news, registration and hotels.
Monday, November 3 • 17:10 - 17:50
Secure Keystone Deployment: Lessons Learned and Best Practices

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

In the Juno summit, Symantec presented it's perspective on securing Keystone.  Security is really a mindset and process. We proposed a layered security approach starting with the process for securing Keystone architecture, followed by securing the environment where Keystone is deployed and configured. Since then we have been implementing those security measures in our production environment. In this talk, we will discuss exactly how we have made our Keystone deployment secure and what we have learnt along the way.

 
Specifically, we will cover:



  • Keystone's LDAP capabilities




    • User account management




  • Two factor authentication


  • How to avoid storing plaintext password in configuration files?


  • Generic guidelines on how to secure OpenStack endpoints


  • Autonomous authentication using Trusts


  • How to secure Keystone event notifications?


  • Keystone Intrusion Detection



 

Speakers
avatar for Priti Desai

Priti Desai

Software Engineer, IBM
Priti is a Software Engineer at IBM. She implements CI/CD with Tekton and Serverless with OpenWhisk. She is a mentor for Open Source JumpStart at IBM and Outreachy. She is also an Open Source promoter within the company and has presented technical content at EclipseCon and Continuous... Read More →


Monday November 3, 2014 17:10 - 17:50 CET
Room 243

Attendees (0)