logo

SPIRE: Intro & Deep Dive Into Windows Support

2022-05-20

Authors:   Agustín Martínez Fayó, Marcos Yacob


Summary

The presentation discusses the use of Spire and Spiffe in securing containerized applications on Windows servers.
  • Spire and Spiffe are open-source tools used for securing containerized applications
  • The presentation demonstrates the successful communication between different containerized applications using Spire and Spiffe on Windows servers
  • The presenter discusses the challenges faced in implementing Spire and Spiffe on Windows servers, particularly in obtaining information about running containers
  • Future plans include making Spire and Spiffe work on Kubernetes and supporting different programming languages
The presenter demonstrates how updating the selector for the web app in Spire causes the connection between the web app and the product store to fail, illustrating the importance of proper attestation in securing containerized applications.

Abstract

Join this session for an introduction of the SPIRE project and deep dive into the new Windows support. SPIRE (the SPIFFE Runtime Environment) implements the SPIFFE standards to securely identify software systems in dynamic and heterogeneous environments. This session provides a high level overview of the basic concepts behind SPIRE and why you should consider it if you find issuing workload identities at scale challenging for you. This talk will also give a deep dive into the Windows support that is being introduced in SPIRE, offering detailed information about the implementation details, what is the difference between running SPIRE on Windows and Linux platforms, and how will be the experience from both a user and developer perspective.Click here to view captioning/translation in the MeetingPlay platform!

Materials: