June 2021 Eastern Canadian CNCF Meetup: Emissary-ingress and Runtime Security with Falco
As the weather gets warmer, we are also heating things up with two terrific talks from amazing experts in the cloud native space, coincidentally both named Dan!
Daniel B. from Ambassador Labs will explore Emissary-Ingress can make your life easier when it comes to routing, observability, and integration into the bigger (people and technology) picture. AND
Dan P. from Sysdig will teach us about runtime security in Kubernetes, how to make Nanaimo bars, AND somehow, deliciously, illustrate how someone can protect their cloud native (k8s) environment with tools like Falco and other OSS tools.
-
12:00 PM EDT
Intro and CNCF Updates
virtual -
12:07 PM EDT
Emissary-ingress 101: An introduction to the CNCF incubation-level API gateway
virtualBy Daniel Bryant, Ambassador Labs We all need to be able to get user traffic into our applications, and your requirements for services running on Kubernetes are no different. "But", I hear you say, "what about the K8s Ingress spec? And how do I observe what's happening under the hood? And who should be responsible for configuring the gateway: dev or ops?" These are all good questions! Join me for a whistle-stop tour of all things emissary-ingress, where we will explore how this new edition to the family of CNCF incubation projects can make your life easier when it comes to routing, observability, and integration into the bigger (people and technology) picture.
-
12:45 PM EDT
Runtime Security is like making Nanaimo Bars... you need the right ingredients
virtualBy Dan "POP" Papandrea, Sysdig Runtime Security in Kubernetes and Cloud Native is difficult… this talk uses the metaphor of baking cookies or in this case Nanaimo Barts to illustrate how someone can protect their cloud native (k8s) environment with tools like Falco and other OSS tools. In this talk and demo we will help the audience understand how ebpf, syscalls, and falco should be key parts of runtime protection in their stacks. We will show runtime security capabilities with Falco and its uses by:
*an attack to a pod and or kubernetes service *rule violation and how to create rules *remediation (using Falcosidekick/Functions) to various outputs and actions *You will come out of this with an appreciation of Falco… and perhaps more importantly Nanaimo Bars!