Help us make Indico better by taking this survey! Aidez-nous à améliorer Indico en répondant à ce sondage !

Oath Visit

Europe/Zurich
Description

Visit from OATH to discuss large scale clouds and related activities.

Draft points to discuss on the agenda here.

Registration
Participants
    • 09:00 11:00
      Nova Network -> Neutron 513/R-070 - Openlab Space (CERN)

      513/R-070 - Openlab Space

      CERN

      15
      Show room on map
    • 11:00 12:00
      Security and usability go hand in hand: build secure products from the ground up with Athenz 1h 31/3-004 - IT Amphitheatre (CERN)

      31/3-004 - IT Amphitheatre

      CERN

      105
      Show room on map

      Authentication and authorization for humans is, more or less, a solved problem. However, how do you trust the identity of the hosts (instances) in your cloud? How can you be assured that in a world of man-in-the-middle attacks (arp spoofing, dns cache poisoning, etc) that a given instance really is who it claims to be? And how can we do this without requiring any manual intervention on the part of a human.

      At Oath, we’ve leveraged the power of Open Source to solve exactly this problem. We have developed and open sourced a service authentication and authorization system called Athenz. By leveraging the strengths of OpenStack and Athenz, we’ve created a solution called ‘Copper Argos’ to provide attestable identity in the form of a unique short lived x509 and SSH host certificate for every single instance in our cloud. In this talk we will describe the value and design of this system and its components as well as the potential it unlocks.

      Speaker: James Penick (Oath)
    • 12:00 13:30
      LUNCH
    • 13:30 14:30
      DCVP / Data Centre - Visit
    • 14:30 16:30
      Ask me anything 513/R-068 (CERN)

      513/R-068

      CERN

      19
      Show room on map