Istio audit report - ADA Logics - 2023-01-30 - v1.0meetings with the Istio team to discuss questions and issues that came out throughout the period of the audit. Found issues were reported as they came up which gave the Istio team time to triage and assess investigation that revealed a vulnerability in Golang itself. The finding was reported by the auditing team to the Istio maintainers, because Istio does not cap the size of requests made on an h2c connection managed Istio offering which has MultiplexHTTP configured. A�er issue 10 had been reported to the Istio team, Istio maintainer John Howard assessed Golangs recommended solution for capping H2c requests which0 码力 | 55 页 | 703.94 KB | 1 年前3
生产环境 istioapp apiVersion: "nais.io/v1alpha1" kind: "Application" metadata: name: app labels: team: pension spec: image: navikt/app:1 port: 8080 replicas: { min: 2, max: 4 } probes: { liveness: app apiVersion: "nais.io/v1alpha1" kind: "Application" metadata: name: app labels: team: pension spec: image: navikt/app:1 port: 8080 replicas: { min: 2, max: 4 } probes: { liveness: serviceentry apiVersion: "nais.io/v1alpha1" kind: "Application" metadata: name: app labels: team: pension spec: image: navikt/app:1 port: 8080 replicas: { min: 2, max: 4 } probes: { liveness:0 码力 | 42 页 | 3.45 MB | 1 年前3
IstioCon 2021
Reportnew users at the end of February 2021. Impact for the project Source: http://eng.istio.io/ The team (1/3) Organizer’s Committee Co-lead Aizhamal Nurmamat kyzy (Google) Co-lead María Cruz (Google) Conner (RedHat) Member Aditya Prerepa (Highschool student) Member Alex Soto Bueno (RedHat) The team (2/3) Program Committee Co-lead Lin Sun (IBM > Solo.io) Co-lead Craig Box (Google) Member Christian Tannous (RedHat) Member Iris Ding (Intel) Member Jimmy Song (Tetrate) Member Zhonghu Xu (Huawei) The team (3/3) Event Production (Software Guru) Event Manager Mara Ruvalcaba Content Coordination Pedro0 码力 | 18 页 | 912.89 KB | 1 年前3
IstioCon 2022 Reportusers during the month of April 2022. Impact for the project Source: http://eng.istio.io/ The team (1/3) Program Committee Co-lead Lin Sun (Solo.io) Co-lead Mitch Connor (Google) Member Neeraj Poddar Jason Webb (Intuit) The team (2/3) Organizer’s Committee Co-Lead María Cruz (Google) Co-Lead Sakhi Patel (Google) Member Rose Sawvel (Solo.io) Member Alex Bush (Google) The team (3/3) Event Production0 码力 | 20 页 | 2.44 MB | 1 年前3
Istio Security Assessmentupstream server’s TLS certificate. Note: This issue and GitHub issue were originally noted by the Google team. res := model.SdsCertificateConfig{ CertificatePath: model.GetOrDefault(proxy.Metadata.TLSClientCertChain Google Istio Security Assessment Google / NCC Group Confidential Appendix F: Project Contacts The team from NCC Group has the following primary members: • Mark Manning — Technical Lead mark.manning@nccgroup Account Manager bryan.solari@nccgroup.com • Kivanç Tos — Project Manager kivanc.tos@nccgroup.com The team from Google has the following primary members: • Arun Kumar R — Google arunkr@google.com • Francois0 码力 | 51 页 | 849.66 KB | 1 年前3
IstioCon2023 Welcome KeynoteRead this quick explanation on how to report bugs, in code or in documentation. ● The Istio security team responds rapidly to vulnerability reports. Read how to submit an issue. Become a Contributor ● The Istio. ● You can access our trove of technical content and working documents by joining the istio-team-drive-access@ Google Group. ● Interested in helping with Chinese language documentation? Join the0 码力 | 14 页 | 1.31 MB | 1 年前3
宋净超 从开源 Istio 到企业级服务:如何在企业中落地服务网格Access Control (NGAC) ● Exclusively co-host annual zero trust multi-cloud conference Best in Class Team ● Creators of the service mesh Istio, gRPC, Apache SkyWalking, Zipkin from Google, Twitter, & VMWare Why not Istio OSS? ● Problems unsolved ○ Multi-cluster and VM (lower onboarding cost) ○ Enterprise team structure gap (Workspace, Tenants, etc) ○ UI&UX Background ● Leads to complexity and lack of operational0 码力 | 30 页 | 4.79 MB | 6 月前3
Performance tuning and best practices in a Knative based, large-scale serverless platform with Istiocom/gracezhang1110, www.linkedin.com/in/gong-zhang-75560670/ Advisory Software Engineer of IBM Cloud Code Engine team focusing on Knative Serving and Istio, contributor of the Knative and Cloud Foundry community, maintainer Cloud Code Engine (Serverless platform), focusing on Knative, Istio, and Tekton, community, leading team to develop and offer serverless capabilities in IBM Cloud, which based on these Opensource technologies0 码力 | 23 页 | 2.51 MB | 1 年前3
5 tips for your first
Istio.io ContributionCommunity ● Working groups - great way to get to know the community ● Join the Discuss, Slack, and Team Drive ● Meeting Agendas and Recordings are available #IstioCon Commits ● Small Commits - Documentation0 码力 | 14 页 | 717.74 KB | 1 年前3
Automate mTLS
communication with
GoPay partners with
Istioaddresses to access our endpoints. Drawback: ● Not the preferred approach suggested from security team ● Maintenance a lot of endpoint for each GoPay partner with specific IP seems burden job. ● Security0 码力 | 16 页 | 1.45 MB | 1 年前3
共 11 条
- 1
- 2













