Simplify Your Way To Expert Kubernetes ManagementDevOps.com
Kubernetes is a deep and complex technology that is evolving fast with new functionality and a growing ecosystem of cloud-native solutions. While the public cloud delivers an almost frictionless user experience, configuring and managing a production Kubernetes environment is an enormous technical challenge for the majority of enterprises that choose to do so on premises. Without the right approach, operationalizing Kubernetes in the data center can take upwards of 6 months, jeopardizing developer productivity and speed-to-market.
In this webinar, you’ll learn from Nutanix cloud native experts on how to fast-track your way to operationalizing a production-ready Kubernetes environment on-prem.
Specifically, we’ll talk about:
How containerized applications use IT resources (and why legacy infrastructure isn’t built for Kubernetes);
The main advantages of running Kubernetes on prem (as part of a multi-cloud strategy);
Key aspects of Kubernetes lifecycle management that greatly benefit from automation.
Shifting security left simplifying security for k8s open shift environmentsLibbySchulze
This document discusses securing secrets in Kubernetes. It describes how attackers were able to hijack cloud resources by accessing unprotected credentials stored in a Kubernetes console. It then provides recommendations for securely managing secrets, including using Conjur to establish identity for applications and enforce authorization. It outlines best practices like regularly rotating secrets and removing hard-coded credentials. The document also describes how Conjur can integrate with Kubernetes to verify application identities and issue credentials without exposing secrets.
Moving Data Efficiently with Real-Time StreamingWSO2
Moving data from one place to another is a common problem that every system has to handle. Data streaming is becoming an increasingly popular technique used for data integration as it enables to transmit data efficiently with low resource usage and, more importantly, consumers receive notifications about new data/changes in real-time.
The usage of streaming to move data, a.k.a Streaming ETL, is a new technique that is becoming popular as an alternative to traditional ETL. Traditional ETL was predominantly designed to integrate data across files and DBs. But now there are various types of data sources and destinations. Therefore, the techniques used in traditional ETL might not suffice. Moreover, now users want to see data in real-time; this makes Streaming-based ETL the only choice for certain use cases.
WSO2 Enterprise Integrator is equipped with rich data streaming capabilities. It can listen to streaming data sources as well as source events from static data sources, such as files and DBs, making it possible to treat all data sources as data streams. The solution can be used as an effective tool to move large volumes of data in a streaming manner regardless of the data source.
In this webinar, we'll explore what functionalities are offered to build robust streaming ETL pipelines and introduce the developer experience offered to build streaming apps, as well as the basics you need to know to build your first streaming application with WSO2 Enterprise Integrator.
By attending this webinar, you will be able to understand what streaming ETL is and its importance and how to build a simple streaming application with WSO2 Enterprise Integrator.
During the webinar, we will cover:
What is streaming ETL? And why is it better?
Consuming streaming data and sourcing events
Processing streaming data with stream processing
Integrating streaming data with various destinations
Building a simple streaming app with WSO2 Enterprise Integrator
View the on-demand webinar: https://wso2.com/library/webinars/moving-data-efficiently-with-real-time-streaming/
This document provides an agenda and overview of topics to be covered in a session on Google Cloud infrastructure and services, including cloud storage, monitoring, functions, pub/sub, IAM, BigQuery, Cloud SQL, VPC networks, and Kubernetes Engine. It also includes primers on cloud storage, monitoring, functions, and pub/sub that define their purposes and capabilities. Hands-on examples for working with containers using Docker are outlined at the end.
[APIdays INTERFACE 2021] Now that we have K8s, can we stop re-inventing API p...WSO2
Kubernetes has been called the "platform of platforms" and the final major evolutionary step of cloud native computing. What's needed to build an API Platform on it? A great developer experience? An API Marketplace for managing all APIs together in one place? Auto build and deploy onto multiple flavors of K8s? Multi-tenancy? SaaS model hosting with multi-tenancy? Team based development? Ability to create new microservices and APIs? Support for sync and async protocols? Analytics? Metering, monitoring, policy enforcement? What else? Are we done? Or will we need to rebuild the platform again on serverless functions?
Watch Recording : https://youtu.be/kQjETt_c8Ac
Getting Started with Runtime Security on Azure Kubernetes Service (AKS)DevOps.com
This document discusses runtime security on Azure Kubernetes Service (AKS). It begins by introducing AKS and how it simplifies Kubernetes deployment and management. It then discusses the security concerns with containers and the need for runtime security. Runtime security involves monitoring activity within containers to detect unwanted behaviors. The document outlines how Sysdig provides runtime security for AKS through its agents that collect syscall data and Kubernetes audit logs. It analyzes this data using policies to detect anomalies and threats across containers, hosts, and Kubernetes clusters. Sysdig also integrates with other tools like Falco and Anchore to provide breadth and depth of security.
Achieve Full API Lifecycle Management Using NGINX ControllerNGINX, Inc.
This document discusses NGINX Controller's API Management module. It provides full lifecycle management of APIs, including API definition and publication, security features like rate limiting and authentication/authorization, ongoing monitoring and maintenance, and analytics. Key capabilities covered include creating API definitions and publishing them to NGINX Plus instances, implementing rate limiting policies, managing API keys for authentication, and monitoring API gateway performance using customizable dashboards and alerts. The vision is for NGINX Controller to be an orchestration and analytics platform for all NGINX Plus products.
Automate Your Container Deployments SecurelyDevOps.com
Operations seeking to make their apps and APIs both performant and available to their users must bake effective application security tooling into their processes and infrastructure configurations. How can development and operations teams release at increasing velocity with app protection built into their CI/CD pipeline?
A true next-generation, holistic web application and API protection platform does just that: operations teams can integrate security into their workflows and ensure new infrastructure and app code released to production is both effective and secure in any environment from cloud using containers to datacenters to a hybrid of these.
Join application security expert Aneel Dadani from Signal Sciences to learn how your team can automate, deploy at scale safely while gaining layer 7 visibility in production environments.
Attendees will learn:
What constitutes effective application security within the context of cloud adoption and an ever expanding threat landscape
How development teams can gain visibility into how their apps and APIs are being used in production and what vulnerabilities may exist that they overlooked
How DevOps teams can scale their application footprint to meet demand while securing your codebase in production
How to inspect request traffic at the API gateway or the ingress
This document discusses developing a containerized application and deploying it to the cloud. It notes that Kubernetes requires significant knowledge even for simple application releases. It then lists features of Azure Container Apps such as running containers, auto-scaling, HTTPS ingress without additional infrastructure, traffic splitting for deployments, internal service discovery, and using Dapr microservices. The document also covers ingress, service discovery, blue/green deployments with revisions, an example lab architecture, and a real project scenario. It concludes by providing a link to a sample container app project.
Achieve Full API Lifecycle Management Using NGINX Controller – EMEANGINX, Inc.
Attend this webinar and learn how to manage the entire lifecycle of your APIs using NGINX Controller. This includes defining, publishing, securing, routing, monitoring, troubleshooting, and analyzing usage of your APIs to assess their value. Get an overview and demo of NGINX Controller’s API Management Module.
Join this webinar to learn:
- How to manage API definitions and their component resources, define upstream groups and their backend servers, and route resources to upstreams
- How to boost developer productivity by enabling teams to deploy new APIs faster with environment‑specific, policy‑driven management
- How to mitigate DDoS attacks and protect your applications from being flooded with malicious or errant API calls by setting rate limits
- How you can meet and exceed SLAs by finding the root cause of performance issues and troubleshooting them quickly
https://www.nginx.com/resources/webinars/full-lifecycle-api-management-nginx-controller-emea
Speaker:
Owen Garrett
Sr. Director, Product Management
NGINX, Inc.
On-Deman Link: https://www.nginx.com/resources/webinars/need-service-mesh/
About the webinar:
Service mesh is one of the hottest emerging technologies. Even though it’s a nascent technology, many vendors have already released their implementation. But do you really need a service mesh?
Attend this webinar to learn about the levels of maturity on the journey to modernizing your apps using microservices, and the traffic management approaches best suited to each level. We’ll help you figure out if you really need a service mesh.
[WSO2Con USA 2018] Adaptive and Iterative Integration for Microservices and C...WSO2
In this slide deck, WSO2 Director of Integration Architecture discusses conventional centralized integration, the role of integration in microservices, microservice integration patterns and hybrid architecture with centralized vs. decentralized integration for brownfield enterprises.
View video: https://wso2.com/library/conference/2018/07/wso2con-usa-2018-adaptive-and-iterative-integration-for-microservices-and-cloud-native-architectures/
IoT 'Megaservices' - High Throughput Microservices with AkkaLightbend
**********
Watch this presentation on-demand!
https://info.lightbend.com/iot-megaservices-high-throughput-microservices-with-akka-register.html
**********
In this interactive presentation by Hugh McKee, Developer Advocate at Lightbend, we’ll share our experiences helping our clients create a system architecture that can support high throughput microservices (aka "Megaservices"). We’ll do that using IoT demo applications designed to push cloud service providers like Amazon and Google to their limits. Using sample code that you can later run on your own machine, we’ll look at:
* Modeling real-life digital twins for hundreds of thousands of IoT devices in the field, looking into how these megaservices are implemented in Akka.
* Visualizing Akka Actors–which represent IoT digital twins–in a “crop circle” formation that represents a complete distributed Reactive application, and watching at messages are processed across Akka Cluster nodes using cluster sharding.
* Some code behind the whole set up, which is built using OSS like Akka, Java, JavaScript, and Kubernetes.
Follow us on social:
TW: https://twitter.com/lightbend
LI: https://www.linkedin.com/company/lightbend-inc-/
FB: https://www.facebook.com/lightbendOfficial/
For more about Lightbend:
Blog: https://www.lightbend.com/blog
Newsletter: https://www.lightbend.com/newsletter
Scale your application to new heights with NGINX and AWSNGINX, Inc.
On-demand Link:
https://www.nginx.com/resources/webinars/scale-application-new-heights-nginx-aws/
In this webinar we will discuss how AWS and NGINX can complement each other to create highly scalable, high performance and secure web applications. We will cover the different ways that NGINX can integrate with AWS services such as NLB, Route53 and PrivateLink to add new layers of security and functionality to your high traffic website, streaming service or IOT system.
NGINX Lunch and Learn Event: Kubernetes and the NGINX Plus Ingress controllerKatherine Bagood
NGINX Lunch and Learn Event: Kubernetes and the NGINX Plus Ingress controller slides. This event was held at Cutters Crabhouse in Seattle, WA on March 14th.
APIs: Intelligent Routing, Security, & ManagementNGINX, Inc.
Kevin Jones, Global Consulting Engineer from NGINX San Francisco, preseentation about how to accelerate your journey to microservices with a modernised full API lifecycle management solution. Learn how to cut costs, improve performance, and reduce load on API endpoints. This presentation, covers:
All elements of full lifecycle management including API creation, securing your backend infrastructure, managing traffic, and ongoing monitoring.
Innovative architecture that doesn't involve additional microgateways to process API calls
Differentiated pricing model that does not penalize API adoption
Istio Mesh – Managing Container Deployments at ScaleMofizur Rahman
The service mesh is an infrastructure component that helps manage services running within our clusters. Without any changes to service or application code, solutions like Istio and Linkerd provide features to manage container deployments at scale. With Istio we get traffic management, security, rate limiting, monitoring, and many more things out of the box. We will discuss these solutions and some of their features at a high level, then roll in some specific demonstrations of using a service mesh to route and shift service traffic, easily manage deployments and test our services with micro benchmarks and fault injection.
Getting started with Azure Event Grid - Webinar with Steef-Jan WiggersCodit
Azure Event Grid is one of the latest Microsoft Azure solutions. It enables you to build reactive, event-driven apps with a fully managed event routing service. The result? It simplifies your event consumption, while you can build reliable cloud apps and focus on product innovation.
NGINX, Istio, and the Move to Microservices and Service MeshNGINX, Inc.
On-demand recording: https://www.nginx.com/resources/webinars/istio-move-to-microservices-service-mesh/
About the webinar
NGINX is widely known, used, and trusted for a variety of purposes. NGINX works as a reliable, high-performance web server, reverse proxy server, and load balancer. NGINX is also a widely used microservices hub, an Ingress controller for Kubernetes, and a sidecar proxy in the Istio service mesh.
In this webinar, we’ll describe the move to microservices, the crucial role that NGINX has already played, and a range of architectural options that organizations have for their microservices apps, including three progressively complex models in the NGINX Microservices Reference Architecture. We’ll then introduce the emergence of Kubernetes as a container orchestration framework, the use of service mesh architectures, and the design of Istio. We’ll finish by showing how NGINX Open Source and NGINX Plus can be used as the sidecar proxy in an Istio service mesh, bringing greater reliability and capability to your service mesh application.
Simplify Microservices with the NGINX Application PlatformNGINX, Inc.
Learn how we discuss our vision for reducing complexity and building microservices applications with the NGINX Application Platform.
On-demand recording: https://www.nginx.com/resources/webinars/updating-nginx-application-platform/
- Our vision for building microservices applications with the NGINX Application Platform
icon
- How the NGINX Application Platform is helping our customers reduce cost and complexity
icon
- How the NGINX Application Platform will help you consolidate multiple tools and solutions
icon
- The latest updates about products in the NGINX Application Platform
About the webinar
At NGINX we help simplify the journey to microservices. Many of our customers would love to migrate to microservices, but have been held back by existing, complex application infrastructures with years of technical debt. When we talk to these companies, they’re surprised by how much they can simplify their infrastructure by consolidating common functions onto NGINX Plus.
With the NGINX Application Platform, we can collapse ten disparate functions into a single product suite. This includes web server, load balancer, reverse proxy, content cache, application server, web application firewall (WAF), API gateway, Kubernetes ingress controller, sidecar proxy, and service mesh controller. Using the NGINX Application Platform, we are helping our customers reduce complexity and begin migrating to a modern, microservices-based architecture.
2449 rapid prototyping of innovative io t solutionsEric Cattoir
This document discusses using Node-RED, Node.js, and IBM Bluemix to create an IoT solution for monitoring and controlling climate in a museum. The solution uses a Raspberry Pi connected to sensors to monitor temperature and humidity. Node-RED is used to create flows to read sensor data and send it to the IBM IoT Cloud service. A Node.js application in Bluemix receives the sensor data and makes it available to a mobile app. The mobile app is created with Ionic and AngularJS to allow users to view sensor readings and control the climate system.
DCSF 19 Zero Trust Networks Come to Enterprise KubernetesDocker, Inc.
The document discusses a presentation about implementing zero trust networks on Docker Enterprise Kubernetes. It begins with motivations for zero trust like changes in app architectures, security threats, and deficiencies of traditional network zoning models. It then covers using Calico and Istio on Docker Enterprise to provide zero trust security with benefits like resilience against compromise and decoupling security from network location. The presentation includes a demo of a sample app and concludes with time for questions.
[WSO2Con EU 2018] Enabling Agile Integration TeamsWSO2
This presentation explores the challenges of enabling integration agile teams. The shift from CoE to a Composable Enterprise requires organizational change. Agile teams are fundamentally self-organizing and we will explore what that means, how to enable it, and what the boundaries of a self-organizing team should be.
Empower Your Security Practitioners with Elastic SIEMElasticsearch
Learn how Elastic SIEM’s latest capabilities enable interactive exploration and automated analysis — all at the speed and scale your security practitioners need to defend your organization.
See the video: https://www.elastic.co/elasticon/tour/2019/washington-dc/empower-your-security-practitioners-with-elastic-siem
Using Cisco pxGrid for Security Platform Integration: a deep diveCisco DevNet
A session in the DevNet Zone at Cisco Live, Berlin. This session will cover: Functional and architectural basics of Cisco Platform Exchange Grid (pxGrid), the new publish/subscribe/query contextual information exchange framework for creating integration between DevNet Zone partner platforms and Cisco security products; Integration use-cases such as utilizing pxGrid for executing threat response actions on the network and using identity, endpoint device and user access privilege context to enhance our DevNet Zone partners analytics, forensics and reporting; First-hand developer perspective from DevNet Zone partner ID/IP who used pxGrid to integrate Ping Identity and Cisco Identity Services Engine.
DevOps Institute SkilUp Day Enterprise Kubernetes - Navigating Your Kubernete...Tiffany Jachja
Title: Navigating Your Kubernetes Journey through Continuous Delivery
Abstract:
Let's say you were told to use Kubernetes, and you had no idea where to start. You know that Kubernetes enables container architectures that scale to meet enterprise-scale demands. And you also know that you need to deliver your software reliably to your end-users. Join us in this session to learn how to navigate your Kubernetes journey through continuous delivery (CD). CD enables software changes of all types to reach production environments in a safe, quick, and sustainable way. Attendees will learn cloud-native concepts and how to accelerate their container-native application development through people, process, and technology.
Bio:
Tiffany Jachja is a technical evangelist at Harness. She is an advocate for better software delivery, sharing applicable practices, stories, and content around modern technologies. Before joining Harness, Tiffany was a consultant with Red Hat's Consulting practice. There she used her experience to help customers build their software applications living in the cloud.
Implement a Universal Data Distribution Architecture to Manage All Streaming ...Timothy Spann
Implement a Universal Data Distribution Architecture to Manage All Streaming Data
Cloudera Partner SkillUp
Tim Spann
Principal Developer Advocate in Data In Motion for Cloudera
[email protected]
using apache nifi, apache kafka and apache flink in a hybrid environment
cloudera dataflow
cloudera streams messaging manager
cloudera sql streams builder
Google Cloud Next '22 Recap: Serverless & Data editionDaniel Zivkovic
See what's new in #Serverless and #Data at GCP. Our guest, Guillaume Blaquiere - Stack Overflow contributor & #GCP #Developer Expert from France, covered the best #GoogleCloudNext announcements, practically demoed how to benefit from #BigQuery Remote Functions and answered many questions.
The meetup recording with TOC for easy navigation is at https://youtu.be/AuZZTwHIcdY
P.S. For more interactive lectures like this, go to http://youtube.serverlesstoronto.org/ or sign up for our upcoming live events at https://www.meetup.com/Serverless-Toronto/events/
This document discusses developing a containerized application and deploying it to the cloud. It notes that Kubernetes requires significant knowledge even for simple application releases. It then lists features of Azure Container Apps such as running containers, auto-scaling, HTTPS ingress without additional infrastructure, traffic splitting for deployments, internal service discovery, and using Dapr microservices. The document also covers ingress, service discovery, blue/green deployments with revisions, an example lab architecture, and a real project scenario. It concludes by providing a link to a sample container app project.
Achieve Full API Lifecycle Management Using NGINX Controller – EMEANGINX, Inc.
Attend this webinar and learn how to manage the entire lifecycle of your APIs using NGINX Controller. This includes defining, publishing, securing, routing, monitoring, troubleshooting, and analyzing usage of your APIs to assess their value. Get an overview and demo of NGINX Controller’s API Management Module.
Join this webinar to learn:
- How to manage API definitions and their component resources, define upstream groups and their backend servers, and route resources to upstreams
- How to boost developer productivity by enabling teams to deploy new APIs faster with environment‑specific, policy‑driven management
- How to mitigate DDoS attacks and protect your applications from being flooded with malicious or errant API calls by setting rate limits
- How you can meet and exceed SLAs by finding the root cause of performance issues and troubleshooting them quickly
https://www.nginx.com/resources/webinars/full-lifecycle-api-management-nginx-controller-emea
Speaker:
Owen Garrett
Sr. Director, Product Management
NGINX, Inc.
On-Deman Link: https://www.nginx.com/resources/webinars/need-service-mesh/
About the webinar:
Service mesh is one of the hottest emerging technologies. Even though it’s a nascent technology, many vendors have already released their implementation. But do you really need a service mesh?
Attend this webinar to learn about the levels of maturity on the journey to modernizing your apps using microservices, and the traffic management approaches best suited to each level. We’ll help you figure out if you really need a service mesh.
[WSO2Con USA 2018] Adaptive and Iterative Integration for Microservices and C...WSO2
In this slide deck, WSO2 Director of Integration Architecture discusses conventional centralized integration, the role of integration in microservices, microservice integration patterns and hybrid architecture with centralized vs. decentralized integration for brownfield enterprises.
View video: https://wso2.com/library/conference/2018/07/wso2con-usa-2018-adaptive-and-iterative-integration-for-microservices-and-cloud-native-architectures/
IoT 'Megaservices' - High Throughput Microservices with AkkaLightbend
**********
Watch this presentation on-demand!
https://info.lightbend.com/iot-megaservices-high-throughput-microservices-with-akka-register.html
**********
In this interactive presentation by Hugh McKee, Developer Advocate at Lightbend, we’ll share our experiences helping our clients create a system architecture that can support high throughput microservices (aka "Megaservices"). We’ll do that using IoT demo applications designed to push cloud service providers like Amazon and Google to their limits. Using sample code that you can later run on your own machine, we’ll look at:
* Modeling real-life digital twins for hundreds of thousands of IoT devices in the field, looking into how these megaservices are implemented in Akka.
* Visualizing Akka Actors–which represent IoT digital twins–in a “crop circle” formation that represents a complete distributed Reactive application, and watching at messages are processed across Akka Cluster nodes using cluster sharding.
* Some code behind the whole set up, which is built using OSS like Akka, Java, JavaScript, and Kubernetes.
Follow us on social:
TW: https://twitter.com/lightbend
LI: https://www.linkedin.com/company/lightbend-inc-/
FB: https://www.facebook.com/lightbendOfficial/
For more about Lightbend:
Blog: https://www.lightbend.com/blog
Newsletter: https://www.lightbend.com/newsletter
Scale your application to new heights with NGINX and AWSNGINX, Inc.
On-demand Link:
https://www.nginx.com/resources/webinars/scale-application-new-heights-nginx-aws/
In this webinar we will discuss how AWS and NGINX can complement each other to create highly scalable, high performance and secure web applications. We will cover the different ways that NGINX can integrate with AWS services such as NLB, Route53 and PrivateLink to add new layers of security and functionality to your high traffic website, streaming service or IOT system.
NGINX Lunch and Learn Event: Kubernetes and the NGINX Plus Ingress controllerKatherine Bagood
NGINX Lunch and Learn Event: Kubernetes and the NGINX Plus Ingress controller slides. This event was held at Cutters Crabhouse in Seattle, WA on March 14th.
APIs: Intelligent Routing, Security, & ManagementNGINX, Inc.
Kevin Jones, Global Consulting Engineer from NGINX San Francisco, preseentation about how to accelerate your journey to microservices with a modernised full API lifecycle management solution. Learn how to cut costs, improve performance, and reduce load on API endpoints. This presentation, covers:
All elements of full lifecycle management including API creation, securing your backend infrastructure, managing traffic, and ongoing monitoring.
Innovative architecture that doesn't involve additional microgateways to process API calls
Differentiated pricing model that does not penalize API adoption
Istio Mesh – Managing Container Deployments at ScaleMofizur Rahman
The service mesh is an infrastructure component that helps manage services running within our clusters. Without any changes to service or application code, solutions like Istio and Linkerd provide features to manage container deployments at scale. With Istio we get traffic management, security, rate limiting, monitoring, and many more things out of the box. We will discuss these solutions and some of their features at a high level, then roll in some specific demonstrations of using a service mesh to route and shift service traffic, easily manage deployments and test our services with micro benchmarks and fault injection.
Getting started with Azure Event Grid - Webinar with Steef-Jan WiggersCodit
Azure Event Grid is one of the latest Microsoft Azure solutions. It enables you to build reactive, event-driven apps with a fully managed event routing service. The result? It simplifies your event consumption, while you can build reliable cloud apps and focus on product innovation.
NGINX, Istio, and the Move to Microservices and Service MeshNGINX, Inc.
On-demand recording: https://www.nginx.com/resources/webinars/istio-move-to-microservices-service-mesh/
About the webinar
NGINX is widely known, used, and trusted for a variety of purposes. NGINX works as a reliable, high-performance web server, reverse proxy server, and load balancer. NGINX is also a widely used microservices hub, an Ingress controller for Kubernetes, and a sidecar proxy in the Istio service mesh.
In this webinar, we’ll describe the move to microservices, the crucial role that NGINX has already played, and a range of architectural options that organizations have for their microservices apps, including three progressively complex models in the NGINX Microservices Reference Architecture. We’ll then introduce the emergence of Kubernetes as a container orchestration framework, the use of service mesh architectures, and the design of Istio. We’ll finish by showing how NGINX Open Source and NGINX Plus can be used as the sidecar proxy in an Istio service mesh, bringing greater reliability and capability to your service mesh application.
Simplify Microservices with the NGINX Application PlatformNGINX, Inc.
Learn how we discuss our vision for reducing complexity and building microservices applications with the NGINX Application Platform.
On-demand recording: https://www.nginx.com/resources/webinars/updating-nginx-application-platform/
- Our vision for building microservices applications with the NGINX Application Platform
icon
- How the NGINX Application Platform is helping our customers reduce cost and complexity
icon
- How the NGINX Application Platform will help you consolidate multiple tools and solutions
icon
- The latest updates about products in the NGINX Application Platform
About the webinar
At NGINX we help simplify the journey to microservices. Many of our customers would love to migrate to microservices, but have been held back by existing, complex application infrastructures with years of technical debt. When we talk to these companies, they’re surprised by how much they can simplify their infrastructure by consolidating common functions onto NGINX Plus.
With the NGINX Application Platform, we can collapse ten disparate functions into a single product suite. This includes web server, load balancer, reverse proxy, content cache, application server, web application firewall (WAF), API gateway, Kubernetes ingress controller, sidecar proxy, and service mesh controller. Using the NGINX Application Platform, we are helping our customers reduce complexity and begin migrating to a modern, microservices-based architecture.
2449 rapid prototyping of innovative io t solutionsEric Cattoir
This document discusses using Node-RED, Node.js, and IBM Bluemix to create an IoT solution for monitoring and controlling climate in a museum. The solution uses a Raspberry Pi connected to sensors to monitor temperature and humidity. Node-RED is used to create flows to read sensor data and send it to the IBM IoT Cloud service. A Node.js application in Bluemix receives the sensor data and makes it available to a mobile app. The mobile app is created with Ionic and AngularJS to allow users to view sensor readings and control the climate system.
DCSF 19 Zero Trust Networks Come to Enterprise KubernetesDocker, Inc.
The document discusses a presentation about implementing zero trust networks on Docker Enterprise Kubernetes. It begins with motivations for zero trust like changes in app architectures, security threats, and deficiencies of traditional network zoning models. It then covers using Calico and Istio on Docker Enterprise to provide zero trust security with benefits like resilience against compromise and decoupling security from network location. The presentation includes a demo of a sample app and concludes with time for questions.
[WSO2Con EU 2018] Enabling Agile Integration TeamsWSO2
This presentation explores the challenges of enabling integration agile teams. The shift from CoE to a Composable Enterprise requires organizational change. Agile teams are fundamentally self-organizing and we will explore what that means, how to enable it, and what the boundaries of a self-organizing team should be.
Empower Your Security Practitioners with Elastic SIEMElasticsearch
Learn how Elastic SIEM’s latest capabilities enable interactive exploration and automated analysis — all at the speed and scale your security practitioners need to defend your organization.
See the video: https://www.elastic.co/elasticon/tour/2019/washington-dc/empower-your-security-practitioners-with-elastic-siem
Using Cisco pxGrid for Security Platform Integration: a deep diveCisco DevNet
A session in the DevNet Zone at Cisco Live, Berlin. This session will cover: Functional and architectural basics of Cisco Platform Exchange Grid (pxGrid), the new publish/subscribe/query contextual information exchange framework for creating integration between DevNet Zone partner platforms and Cisco security products; Integration use-cases such as utilizing pxGrid for executing threat response actions on the network and using identity, endpoint device and user access privilege context to enhance our DevNet Zone partners analytics, forensics and reporting; First-hand developer perspective from DevNet Zone partner ID/IP who used pxGrid to integrate Ping Identity and Cisco Identity Services Engine.
DevOps Institute SkilUp Day Enterprise Kubernetes - Navigating Your Kubernete...Tiffany Jachja
Title: Navigating Your Kubernetes Journey through Continuous Delivery
Abstract:
Let's say you were told to use Kubernetes, and you had no idea where to start. You know that Kubernetes enables container architectures that scale to meet enterprise-scale demands. And you also know that you need to deliver your software reliably to your end-users. Join us in this session to learn how to navigate your Kubernetes journey through continuous delivery (CD). CD enables software changes of all types to reach production environments in a safe, quick, and sustainable way. Attendees will learn cloud-native concepts and how to accelerate their container-native application development through people, process, and technology.
Bio:
Tiffany Jachja is a technical evangelist at Harness. She is an advocate for better software delivery, sharing applicable practices, stories, and content around modern technologies. Before joining Harness, Tiffany was a consultant with Red Hat's Consulting practice. There she used her experience to help customers build their software applications living in the cloud.
Implement a Universal Data Distribution Architecture to Manage All Streaming ...Timothy Spann
Implement a Universal Data Distribution Architecture to Manage All Streaming Data
Cloudera Partner SkillUp
Tim Spann
Principal Developer Advocate in Data In Motion for Cloudera
[email protected]
using apache nifi, apache kafka and apache flink in a hybrid environment
cloudera dataflow
cloudera streams messaging manager
cloudera sql streams builder
Google Cloud Next '22 Recap: Serverless & Data editionDaniel Zivkovic
See what's new in #Serverless and #Data at GCP. Our guest, Guillaume Blaquiere - Stack Overflow contributor & #GCP #Developer Expert from France, covered the best #GoogleCloudNext announcements, practically demoed how to benefit from #BigQuery Remote Functions and answered many questions.
The meetup recording with TOC for easy navigation is at https://youtu.be/AuZZTwHIcdY
P.S. For more interactive lectures like this, go to http://youtube.serverlesstoronto.org/ or sign up for our upcoming live events at https://www.meetup.com/Serverless-Toronto/events/
Horizontal Scaling for Millions of Customers! elangovans
This document provides an overview of Elangovan Shanmugam's experience and expertise in software architecture. Some key points:
- Elangovan has over 25 years of experience in software development and has designed resilient systems that can handle millions of customers and transactions per second.
- He discusses his work on Tax products that can import documents in under 2 seconds for 45 million filers, and his role as Chief Architect for Mint which serves 35 million customers processing billions of transactions daily.
- The document outlines Elangovan's approach to software architecture including strategies for microservices, scalability, high availability, and application architecture for multiple platforms and millions of users.
Ultimate Guide to Microservice Architecture on Kuberneteskloia
This document provides an overview of microservice architecture on Kubernetes. It discusses:
1. Benefits of microservice architecture like independent deployability and scalability compared to monolithic applications.
2. Best practices for microservices including RESTful design, distributed configuration, client code generation, and API gateways.
3. Tools for microservices on Kubernetes including Prometheus for monitoring, Elasticsearch (ELK) stack for logging, service meshes, and event sourcing with CQRS.
Spring and Pivotal Application Service - SpringOne Tour - BostonVMware Tanzu
This document discusses Spring and Pivotal Application Service (PAS). It notes that PAS provides market-leading support for Spring technologies and an ecosystem of services for Spring applications. It covers why developers use Spring and PAS, how PAS supports Spring features like Boot, Security, and Cloud, and the services available on PAS like MySQL, RabbitMQ, and Redis. It concludes with next steps around contacting an account team, trying hosted PAS software, and signing up for roadmap calls.
NUS-ISS Learning Day 2018- Designing software to make the most of cloud platf...NUS-ISS
The document discusses designing cloud-native software to take advantage of cloud platforms. It describes cloud-native software as software built specifically for the cloud that maximizes the cloud's benefits. The document outlines characteristics of good cloud-native applications like high scalability and availability. It also discusses adopting microservices architectures with containers, utilizing platform as a service, and following best practices like the twelve factors of cloud applications. The goal is to design applications that are portable, scalable, and can take full advantage of cloud infrastructure and services.
Cloud Native Application Integration With APIsNirmal Fernando
Cloud native application architectures focus on building applications as microservices and running them on containers that run on dynamic orchestration platforms and utilize cloud computing functionalities. Agile DevOps and continuous delivery pipelines ensure agility and speed of application development and faster time to market. These systems follow a number of design principles to ensure they are built as loosely coupled services designed for cloud scale and performance.
A core design principle is the use of APIs for application integration. Underlying cloud orchestration layers provide certain functionalities for integration via APIs - be it RESTful or internal formats such as Protbuf, Thrift, gRPC, NATS, etc. APIs thus play an important role for both internal services communications as well as integration between composite apps. A cloud-native API gateway that also provides features of a full lifecycle API Management is key.
In this deep dive workshop, we look at the concepts of cloud-native app integration via APIs which utilize cloud-native API management. We focus on the architecture, design concepts followed by the implementation of API led microservices and then look at the runtime component which includes DevOps, CICD and hybrid clouds.
Knative is an open source software layer that helps cloud service providers and enterprise platform operators deliver a serverless experience to developers on any cloud. It’s a way to abstract the operational overhead of deploying and managing workloads that run on K8s and provides a consistent approach so that developers can focus on writing cool code.
GCP Meetup #3 - Approaches to Cloud Native Architecturesnine
Talk by Daniel Leahy and Nic Gibson, given at the Google Cloud Meetup on March 3, 2020, hosted by Nine Internet Solutions AG - Your Swiss Managed Cloud Service Provider.
A New Approach to Continuous Monitoring in the CloudNETSCOUT
In this #CLUS 2019 session, you will learn how NETSCOUT’s smart data platform enables continuous monitoring in hybrid cloud environments to minimize risk and accelerate customer migration to the Cloud. You will review real-life examples of how businesses optimized their Cloud migration gaining visibility and deep insights, in both physical and virtual worlds, to maintain continuity and security of the services throughout the migration process.
Network Automation Journey, A systems engineer NetOps perspectiveWalid Shaari
Network devices play a crucial role; they are not just in the Data Center. It's the Wifi, VOIP, WAN and recently underlays and overlays. Network teams are essential for operations. It's about time we highlight to the configuration management community the importance of Network teams and include them in our discussions. This talk describes the personal experience of systems engineer on how to kickstart a network team into automation. Most importantly, how and where to start, challenges faced, and progress made. The network team in question uses multi-vendor network devices in a large traditional enterprise.
NetDevOps, we do not hear that term as frequent as we should. Every time we hear about automation, or configuration management, it is usually the application, if not, it is the systems that host the applications. How about the network systems and devices that interconnect and protects our services? This talk aims to describe the journey a systems engineer had as part of an automation assignment with the network management team. Building from lessons learned and challenges faced with system automation, how one can kickstart an automation project and gain small wins quickly. Where and how to start the journey? What to avoid? What to prioritise? How to overcome the lack of network skills for the automation engineer and lack of automation and Linux/Unix skills for network engineers. What challenges were faced and how to overcome them? What fights to give up? Where do I see network automation and configuration management as a systems engineer? What are the status quo and future expectations?
I have Over 8+ years of experience as a DevOps Engineer. I came across an interesting position of DevOps Engineering position on your Linked post. Constantly updating my skill set, I am proficient in DevOps Tools like Git, Jenkins Pipeline Automation, AWS, Chef, Ansible, Kubernetes, Terraform, Docker, Shell Scripting,ELK, Jfrog and Prometheus.
This document provides a summary of Ahmed El Mawaziny's experience and skills. It includes details about his roles as a Senior Software Architect, Technology Team Lead, and Senior Software Engineer. It lists the programming languages, frameworks, databases, cloud platforms, and other tools he has experience with. It also summarizes several software projects he has worked on, including for the Saudi Ministry of Commerce, the Egyptian Electricity Holding Company, UniCare medical insurance, and others.
Elevate Your Continuous Delivery Strategy Above the Rolling Clouds (Interconn...Michael Elder
This presentation describes how we see client architectures evolving from traditional IT, to cloud-enabled, to cloud native, with bridges in between. It explains how IBM UrbanCode Deploy enables clients to capture full-stack blueprints for their workloads in a way that is cloud-portable. It will highlight new capabilities in VMWare vCenter, IBM SoftLayer, Amazon Web Services and Microsoft Azure. Attendees will also see a live demonstration of end-to-end deployment during the talk.
SpringOne Tour: Deliver 15-Factor Applications on Kubernetes with Spring BootVMware Tanzu
The document discusses 15 factors for building cloud native applications with Kubernetes based on the 12 factor app methodology. It covers factors such as treating code as immutable, externalizing configuration, building stateless and disposable processes, implementing authentication and authorization securely, and monitoring applications like space probes. The presentation aims to provide an overview of the 15 factors and demonstrate how to build cloud native applications using Kubernetes based on these principles.
[Srijan Wednesday Webinar] How to Run Stateless and Stateful Services on K8S ...Srijan Technologies
The document discusses Kubernetes operators and provides an overview of a Drupal operator called Druperator that is being developed by Srijan. It summarizes Kubernetes operators, how they automate application lifecycles on Kubernetes. It then discusses extending the Kubernetes control plane through custom resource definitions and controllers. Finally, it mentions that Druperator is a custom controller for managing the lifecycle of Drupal applications on Kubernetes.
App modernization projects are hard. Enterprises are looking to cloud-native platforms like Pivotal Cloud Foundry to run their applications, but they’re worried about the risks inherent to any replatforming effort.
Fortunately, several repeatable patterns of successful incremental migration have emerged.
In this webcast, Google Cloud’s Prithpal Bhogill and Pivotal’s Shaun Anderson will discuss best practices for app modernization and securely and seamlessly routing traffic between legacy stacks and Pivotal Cloud Foundry.
In this fireside chat, Balaji and Brian discuss the evolution of the monitoring and observability industry, the role that InfluxDB plays and a look at how one customer is using InfluxDB in their solution.
Building what's next with google cloud's powerful infrastructureMediaAgility
Building What's Next with Google Cloud's Powerful Infrastructure. Companies are facing increasing challenges
Be more data driven, but on-prem data is hard to access, analyze, and use
Have to focus to stay ahead of competition, can’t afford wasted efforts
Attract and retain customers and employees with great experiences
Security threats keep growing
Be more agile - turn IT into competitive advantage
Google is focused on helping companies meet those challenges. To know more feel free to explore these slides and write back to us.
Designing Low-Latency Systems with Rust and ScyllaDB: An Architectural Deep DiveScyllaDB
Want to learn practical tips for designing systems that can scale efficiently without compromising speed?
Join us for a workshop where we’ll address these challenges head-on and explore how to architect low-latency systems using Rust. During this free interactive workshop oriented for developers, engineers, and architects, we’ll cover how Rust’s unique language features and the Tokio async runtime enable high-performance application development.
As you explore key principles of designing low-latency systems with Rust, you will learn how to:
- Create and compile a real-world app with Rust
- Connect the application to ScyllaDB (NoSQL data store)
- Negotiate tradeoffs related to data modeling and querying
- Manage and monitor the database for consistently low latencies
UiPath Community Berlin: Orchestrator API, Swagger, and Test Manager APIUiPathCommunity
Join this UiPath Community Berlin meetup to explore the Orchestrator API, Swagger interface, and the Test Manager API. Learn how to leverage these tools to streamline automation, enhance testing, and integrate more efficiently with UiPath. Perfect for developers, testers, and automation enthusiasts!
📕 Agenda
Welcome & Introductions
Orchestrator API Overview
Exploring the Swagger Interface
Test Manager API Highlights
Streamlining Automation & Testing with APIs (Demo)
Q&A and Open Discussion
Perfect for developers, testers, and automation enthusiasts!
👉 Join our UiPath Community Berlin chapter: https://community.uipath.com/berlin/
This session streamed live on April 29, 2025, 18:00 CET.
Check out all our upcoming UiPath Community sessions at https://community.uipath.com/events/.
DevOpsDays Atlanta 2025 - Building 10x Development Organizations.pptxJustin Reock
Building 10x Organizations with Modern Productivity Metrics
10x developers may be a myth, but 10x organizations are very real, as proven by the influential study performed in the 1980s, ‘The Coding War Games.’
Right now, here in early 2025, we seem to be experiencing YAPP (Yet Another Productivity Philosophy), and that philosophy is converging on developer experience. It seems that with every new method we invent for the delivery of products, whether physical or virtual, we reinvent productivity philosophies to go alongside them.
But which of these approaches actually work? DORA? SPACE? DevEx? What should we invest in and create urgency behind today, so that we don’t find ourselves having the same discussion again in a decade?
Quantum Computing Quick Research Guide by Arthur MorganArthur Morgan
This is a Quick Research Guide (QRG).
QRGs include the following:
- A brief, high-level overview of the QRG topic.
- A milestone timeline for the QRG topic.
- Links to various free online resource materials to provide a deeper dive into the QRG topic.
- Conclusion and a recommendation for at least two books available in the SJPL system on the QRG topic.
QRGs planned for the series:
- Artificial Intelligence QRG
- Quantum Computing QRG
- Big Data Analytics QRG
- Spacecraft Guidance, Navigation & Control QRG (coming 2026)
- UK Home Computing & The Birth of ARM QRG (coming 2027)
Any questions or comments?
- Please contact Arthur Morgan at [email protected].
100% human made.
AI Changes Everything – Talk at Cardiff Metropolitan University, 29th April 2...Alan Dix
Talk at the final event of Data Fusion Dynamics: A Collaborative UK-Saudi Initiative in Cybersecurity and Artificial Intelligence funded by the British Council UK-Saudi Challenge Fund 2024, Cardiff Metropolitan University, 29th April 2025
https://alandix.com/academic/talks/CMet2025-AI-Changes-Everything/
Is AI just another technology, or does it fundamentally change the way we live and think?
Every technology has a direct impact with micro-ethical consequences, some good, some bad. However more profound are the ways in which some technologies reshape the very fabric of society with macro-ethical impacts. The invention of the stirrup revolutionised mounted combat, but as a side effect gave rise to the feudal system, which still shapes politics today. The internal combustion engine offers personal freedom and creates pollution, but has also transformed the nature of urban planning and international trade. When we look at AI the micro-ethical issues, such as bias, are most obvious, but the macro-ethical challenges may be greater.
At a micro-ethical level AI has the potential to deepen social, ethnic and gender bias, issues I have warned about since the early 1990s! It is also being used increasingly on the battlefield. However, it also offers amazing opportunities in health and educations, as the recent Nobel prizes for the developers of AlphaFold illustrate. More radically, the need to encode ethics acts as a mirror to surface essential ethical problems and conflicts.
At the macro-ethical level, by the early 2000s digital technology had already begun to undermine sovereignty (e.g. gambling), market economics (through network effects and emergent monopolies), and the very meaning of money. Modern AI is the child of big data, big computation and ultimately big business, intensifying the inherent tendency of digital technology to concentrate power. AI is already unravelling the fundamentals of the social, political and economic world around us, but this is a world that needs radical reimagining to overcome the global environmental and human challenges that confront us. Our challenge is whether to let the threads fall as they may, or to use them to weave a better future.
Book industry standards are evolving rapidly. In the first part of this session, we’ll share an overview of key developments from 2024 and the early months of 2025. Then, BookNet’s resident standards expert, Tom Richardson, and CEO, Lauren Stewart, have a forward-looking conversation about what’s next.
Link to recording, presentation slides, and accompanying resource: https://bnctechforum.ca/sessions/standardsgoals-for-2025-standards-certification-roundup/
Presented by BookNet Canada on May 6, 2025 with support from the Department of Canadian Heritage.
Generative Artificial Intelligence (GenAI) in BusinessDr. Tathagat Varma
My talk for the Indian School of Business (ISB) Emerging Leaders Program Cohort 9. In this talk, I discussed key issues around adoption of GenAI in business - benefits, opportunities and limitations. I also discussed how my research on Theory of Cognitive Chasms helps address some of these issues
Semantic Cultivators : The Critical Future Role to Enable AIartmondano
By 2026, AI agents will consume 10x more enterprise data than humans, but with none of the contextual understanding that prevents catastrophic misinterpretations.
TrsLabs - Fintech Product & Business ConsultingTrs Labs
Hybrid Growth Mandate Model with TrsLabs
Strategic Investments, Inorganic Growth, Business Model Pivoting are critical activities that business don't do/change everyday. In cases like this, it may benefit your business to choose a temporary external consultant.
An unbiased plan driven by clearcut deliverables, market dynamics and without the influence of your internal office equations empower business leaders to make right choices.
Getting things done within a budget within a timeframe is key to Growing Business - No matter whether you are a start-up or a big company
Talk to us & Unlock the competitive advantage
HCL Nomad Web – Best Practices und Verwaltung von Multiuser-Umgebungenpanagenda
Webinar Recording: https://www.panagenda.com/webinars/hcl-nomad-web-best-practices-und-verwaltung-von-multiuser-umgebungen/
HCL Nomad Web wird als die nächste Generation des HCL Notes-Clients gefeiert und bietet zahlreiche Vorteile, wie die Beseitigung des Bedarfs an Paketierung, Verteilung und Installation. Nomad Web-Client-Updates werden “automatisch” im Hintergrund installiert, was den administrativen Aufwand im Vergleich zu traditionellen HCL Notes-Clients erheblich reduziert. Allerdings stellt die Fehlerbehebung in Nomad Web im Vergleich zum Notes-Client einzigartige Herausforderungen dar.
Begleiten Sie Christoph und Marc, während sie demonstrieren, wie der Fehlerbehebungsprozess in HCL Nomad Web vereinfacht werden kann, um eine reibungslose und effiziente Benutzererfahrung zu gewährleisten.
In diesem Webinar werden wir effektive Strategien zur Diagnose und Lösung häufiger Probleme in HCL Nomad Web untersuchen, einschließlich
- Zugriff auf die Konsole
- Auffinden und Interpretieren von Protokolldateien
- Zugriff auf den Datenordner im Cache des Browsers (unter Verwendung von OPFS)
- Verständnis der Unterschiede zwischen Einzel- und Mehrbenutzerszenarien
- Nutzung der Client Clocking-Funktion
AI EngineHost Review: Revolutionary USA Datacenter-Based Hosting with NVIDIA ...SOFTTECHHUB
I started my online journey with several hosting services before stumbling upon Ai EngineHost. At first, the idea of paying one fee and getting lifetime access seemed too good to pass up. The platform is built on reliable US-based servers, ensuring your projects run at high speeds and remain safe. Let me take you step by step through its benefits and features as I explain why this hosting solution is a perfect fit for digital entrepreneurs.
Enhancing ICU Intelligence: How Our Functional Testing Enabled a Healthcare I...Impelsys Inc.
Impelsys provided a robust testing solution, leveraging a risk-based and requirement-mapped approach to validate ICU Connect and CritiXpert. A well-defined test suite was developed to assess data communication, clinical data collection, transformation, and visualization across integrated devices.
TrustArc Webinar: Consumer Expectations vs Corporate Realities on Data Broker...TrustArc
Most consumers believe they’re making informed decisions about their personal data—adjusting privacy settings, blocking trackers, and opting out where they can. However, our new research reveals that while awareness is high, taking meaningful action is still lacking. On the corporate side, many organizations report strong policies for managing third-party data and consumer consent yet fall short when it comes to consistency, accountability and transparency.
This session will explore the research findings from TrustArc’s Privacy Pulse Survey, examining consumer attitudes toward personal data collection and practical suggestions for corporate practices around purchasing third-party data.
Attendees will learn:
- Consumer awareness around data brokers and what consumers are doing to limit data collection
- How businesses assess third-party vendors and their consent management operations
- Where business preparedness needs improvement
- What these trends mean for the future of privacy governance and public trust
This discussion is essential for privacy, risk, and compliance professionals who want to ground their strategies in current data and prepare for what’s next in the privacy landscape.
Increasing Retail Store Efficiency How can Planograms Save Time and Money.pptxAnoop Ashok
In today's fast-paced retail environment, efficiency is key. Every minute counts, and every penny matters. One tool that can significantly boost your store's efficiency is a well-executed planogram. These visual merchandising blueprints not only enhance store layouts but also save time and money in the process.
2. Rahul Kumar Gupta
• 23 yrs. of experience.
• Sr Directory Tech, Publicis Sapient.
• Technologist by Heart and Role
• Engineering Lead for Microservice
based project.
• Executed > 30 projects for client across
Americas, APAC, Europe
• >15 Publications.
• > 10 certification.
3. Modern Applications are high performing,
high scalable applications which help
organizations in accelerate their DIGITAL
BUSINESS TRANSFORMATION (DBT)
journey and make them FUTURE READY
by bringing in high AGILITY to adopt new
things , deliver them FAST , reduce TCO all
by bringing the best of breed
ARCHITECTURE, TECHNOLOGIES and
PROCESS together.
4. NoSQL API Mgmt. SecDevOps SRE
Reactive Programming Polyglot Data lakes PWA ELT
AGILE Zero Trust Architecture FDD GraphQL GitOps Event Programming
Cloud Microservices
Micro frontend
DevOps Cognitive Containerization BizDevOps NewSQL
SAFe Serverless AI /ML Chaos Engineering BDD IoT Infra as a
Code Domain Driven Design Canary Deployments BFF
5. Internal
Systems
External
Systems
Integration Layer
Desktop site Mobile Site
CORE Commerce
MobileDesktop
Front End
CMS
Front End
CMS
Search Product
Price Inventory
Cart Customer
Order Checkout
Monolithic Architecture
Mobile /TabletDesktop
CORE Commerce
Search Product
Price Inventory
Cart Customer
Order Checkout
Experience ( Mobile / Desktop )
Assemble
Component
Library
Front
End
Service API (JSON)
Internal
Systems
External
Systems
Integration layer
Headless Architecture
or
Internal Systems External Systems
Integration Layer
Mobile
/ Tablet
Desktop
Experience
Assemble
Component
Library
API GATEWAY
Product
Chatbot Voice
Security
Caching Logging
Aggregation
Modern Application Architecture
Social
Price Cart Order CUST
Backend for frontend
Product
µ FE
Price
µ FE
Cart
µ FE
Order
µ FE
CUST
µ FE
PWA
MonetizationRouting
Modernization Journey
11. 88% growth in application
vulnerabilities over two years.
-The state of open source security report 2019 , SYNK
37% of open source
developers don’t implement
any sort of security testing
during CI
-The state of open source security report 2019 , SYNK
54% of developers don't do
any docker image security
testings
-The state of open source security report 2019 , SYNK
78% of vulnerabilities are
found in indirect dependencies
-The state of open source security report 2019 , SYNK
60% of Organizations Suffered a
Container Security Incident in 2018
- CyWare
In 2018, more than 70 million
records were stolen or leaked from
poorly configured S3 buckets
-Symantec
14. ● Separate Repository for Application & DevOps , Infrastructure
code .
● Secured access to Repository.
● Encryption and decryption of files in a git repository
● Use of Vaults for secret Key and Rotate keys
● Don’t write credentials into your source code & docker files
● Don’t pass secrets using environment variable, Use kubernet
Secret objects.
● Use Encryption Before Persisting sensitive Data
Start Doing
15. ● Static and Dynamic Application Scan
● Security scans for Open source library.
● Cloud Configuration scanning
● Blocking Non Compliant pipelines
Start Doing
DevSecOps. - Integrate Application,
serverless and Opensource Code security
scanning as part of CI Pipeline
17. ● Create docker images using base image.
● Use Certified docker images after Verification.
● Keep data , SSH key, tokens outside the container.
● Package a single application per container.
● Stop running containers as a Root User.
Start Doing
18. ● Self Healing - Kill Container when it misbehaves.
● Regularly update patches in all required PODS
● Scanning Containers and Docker Images.
● Container Sandbox Escaping protection.
Start Doing
DevSecOps. - Integrate VM and
docker container scanner as part of
CI/CD Pipeline
Aqua security
Anchore
Engine
20. ● Never trust, Always verify- Define Access policy for all
resource
● Use Multi-factor Authentication, wherever required.
● Define Network Policy
● Define SecCom Policy.
● VPC Service Control to restrict Cloud SaaS Service /
Outbound traffic
● TLS Everywhere
● Use Web App Firewall as a Service to Restrict entries.
Start Doing
21. ● Create Availability Zones,
● Define API Topology.
● Use OpenID or OAuth 2.0
● Centralising authentication and Authorization. Use API
Gateway Pattern
● DDOS -Limit the no of request to be served by resources
Start Doing
USE Service Mesh
Amazon
Cognito
22. DNS
CDN
Cloud Public IP
– Load balancer
Firewall
API Gateway
Private Subnet
Load balancer API Gateway
Public Subnet
fn
fn
fn
fn
External
Systems/ API
Sys1
Sys2
Ap1
Ap2
VPC
https https
https
https
https
https
23. 78% of more than 100 firms recently surveyed
are not reconfiguring their security tools when
migrating to the cloud.
- Mckinsey
25. As Monolithic Architecture is
turned into Microservices , So
the local transaction in the
monolithic system is
now distributed into multiple
services.
.
28. ● Try avoiding Transactions across Microservices, if possible.
● One Microservice should not change the data of other Microservice.
● Use Event Programming and Avoid Orchestration.
● Use of workflows/ BPM engine in transactions for multiple systems or
endpoints.
● Use CQRS pattern for Read and write.
● Apply Back-Pressure mechanism in building distributed systems or
will a failure can bring down whole system
Start Doing
30. ● Instead of Rollback trigger Delete operation.
● Idempotency is Important to Distribution Transaction.
● Use correlation-id between Micro Services involved in transaction
● Improve logging to include POD, Region, etc.
● Tools to trace the each transactions.
Start Doing
31. Two-Phase Commit Protocol using LIXA
LIXA is a transaction manager
that implements the two-phase
commit and supports the XA
specification
Source :https://dzone.com/articles/microservices-and-
distributed-transactions
33. • Standardize Techstack and toolset for project.
• Don’t trust anyone.
• Keeping business knowledge clean with API Gateway + Service Mesh +
Kubernetes components in the architecture.
• Make LEFT SHIFT as much as Possible in DevOps
• Monitor , Monitor & Monitor - Build observability - Metrics, Logs & Traces.
• Automate, Automate & Automate – Build & Deployment , IaaS, Autoscaling,
Auto healing, Vulnerability Scanning.
• Systems will fail - Embrace failure as a natural occurrence.
Few points