From Eventual to Strict Encryption - Securing Cilium's WireGuard Encryption
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore the evolution of Cilium's WireGuard encryption from eventual to strict mode in this 22-minute conference talk. Delve into the challenges of securing Pod-to-Pod traffic within Kubernetes clusters and learn how Cilium's routing and encryption decisions are based on endpoint identities distributed via Kubernetes CRDs. Discover the potential security risks of unencrypted traffic during identity propagation and understand the development and implementation of the new WireGuard strict mode. Gain insights into how this enhancement mitigates vulnerabilities and strengthens the overall security posture of Kubernetes networking.
Syllabus
From Eventual to Strict Encryption – Securing Cilium’s WireGuard Encryption - Leonard Cohnen
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Security Best Practices in Google CloudGoogle Cloud via Coursera Architecting with Google Kubernetes Engine: Production en Français
Google Cloud via Coursera Configuring and Managing Kubernetes Security
Pluralsight Security Best Practices in Google Cloud
Pluralsight Kubernetes Security: Cluster Hardening
Pluralsight