Episode 124 - GluuFederation/identerati-office-hours GitHub Wiki

Title: Authz Signal Jam

Channels

Description

In this new 60 minute format, Mike and Gabriel will improvise a conversation prompted by some latest industry news. We are also encouraging audience participation in the episode! Audience questions will trump the agenda!

Takeaways

  • ⚡ The Axiomatics acquisition is historic because they were among the first pure play authz startups. Leonoardo announced Axiomatics adds a key component in their Zero Trust offering in their Global Cybersecurity Centre. This deal was the third cybersecurity acquisition in a few months for Leonardo.

  • ⚡ MongoDB adoption of Cedar "for database administration not data"--no document level security. In the demo, MongoDB shows raw input for Cedar Policies. Authoring Cedar schema and policies is still a challenge--even with Cedar's ergonomic syntax. But... Gabriel prefers Cedar syntax to OPA Prolog syntax!

  • ⚡ Amazon 97% price drop + CNCF announcement = Amazon signaling it really wants adoption of Cedar, asserts Mike. Another explanation: perhaps Cedar is so fast, Amazon just totally screwed up their margin calculation? Or another theory: security policy adoption by enterprise customers will make their cloud infrastructure more sticky? All of the above?

  • ⚡ Cedar in JWTs? Didn't have time to discuss it. But hopefully we'll get Taka Kawasaki on to present it at some later date.

Livestream Audio Archive

here