Articles tagged with: #mtls Clear filter
Security folks, which would you feel more comfortable with?

Security folks, which would you feel more comfortable with?

cybersecurity www.reddit.com

Hi all, I work at a SaaS company that needs to securely connect our cloud control plane to customer on-premise infrastructure in order to run orchestration and automation tasks. We're trying to avoid requiring customers to open inbound firewall rules or stand up full VPNs. We've narrowed it down to two models: Agent-based HTTPS/mTLS connector Customer deploys a small VM/Pod (our agent) inside their environment. The agent makes an outbound TLS connection (443) to our SaaS, authenticates with...

PP079: Rethinking the Architecture of Microsegmentation

PP079: Rethinking the Architecture of Microsegmentation

cybersecurity www.reddit.com

I was a guest on Packet Pushers, Packet Protector podcast recently - https://packetpushers.net/podcasts/packet-protector/pp079-rethinking-the-architecture-of-microsegmentation/ . We talk about a working definition of microsegmentation, and efforts to reframe microsegmentation around enforcement planes, traffic categorisation, and tiers of policy granularity. We also discuss the role of eBPF in microsegmentation, provide an overview of SDP and mTLS, and explore the work of the CSA (Cloud...