logo

Cloud Native Authorization BoF

2023-04-21

Authors:   Andres Aguiar, Anders Eknert


Summary

The presentation discusses the use of service policies and Argo workflows for Cloud native open source authorization application architecture.
  • The use of service policies and Argo workflows enables Cloud native open source authorization application architecture.
  • Service policies allow for dynamic resolution of authorization checks based on service instances.
  • Argo workflows are used for end-to-end workflows for compiling, testing, and validating authorization changes.
  • The presentation provides an example of using Argo to submit a job to pull down policies and run tests to validate changes.
  • The presentation emphasizes the importance of testing and evolving policies over time.
The presenter demonstrates the use of Argo to submit a job to pull down policies and run tests to validate changes. The tests catch an error in the policy change, highlighting the importance of testing and evolving policies over time.

Abstract

Navigating Authorization for Cloud Native ApplicationsJoin maintainers the of Cloud Native authorization projects: OpenFGA, OPCR, Topaz and OPA to discuss the challenges and best practices for implementing authorization for cloud-native applications.As more organizations move their applications to the cloud, robust and flexible authorization mechanisms become increasingly essential. We will explore topics such as role-based access control, attribute-based access control, and relation-based access control and discuss their strengths and weaknesses in the context of cloud-native applications.Whether you are a developer, architect, or security professional, this session will provide valuable insights into effectively managing authorization in your cloud-native applications.Pre-registration is required. Space is limited, reserve your seat now!

Materials: