The Otter’s Den

Your go-to hub for Kubernetes security and tech know-how

  • Network
  • Kubernetes
  • Network Policy
  • Zero-trust
Blog
May 16 2024
Otter this world: How to chart Kubernetes egress traffic with Otterize

Discover how Otterize helps you gain visibility into your egress Kubernetes connections.

    • Zero-trust
    • Kubernetes
    • Network
    • IBAC
    Blog
    May 13 2024
    Breaking bad policies: Crafting perfect Istio authorization policies and ingress authentication with Otterize

    Learn Istio fundamentals for authorization policies and request authentication, and how Otterize automates application security and zero-trust.

    • Kubernetes
    • IBAC
    • Zero-trust
    • IAM
    • AWS
    • EKS
    • ACK
    Blog
    Apr 29 2024
    Scheduler vs. API Proxy: Balancing Kubernetes data-plane and control-plane for optimal zero-trust IAM security with Otterize

    Discover how to automate zero-trust IAM security for EKS applications and AWS resources using AWS Controllers for Kubernetes (ACK) and Otterize.

    • Kubernetes
    • Zero-trust
    • IBAC
    • Dropbox
    • Automation
    • Startups
    • Podcasts
    Blog
    Apr 16 2024
    First Person Platform Episode 2 - Andrew Moore on Uber Workload Identity and Authorization

    The second episode of First Person Platform, a podcast: platform engineers nerd out with Ori Shoshan on access controls, Kubernetes, and platform engineering.

    • Network Policy
    • Kubernetes
    • Zero-trust
    Blog
    Feb 12 2024
    Network policies are not the right abstraction (for developers)

    We explore the limitations of relying solely on Kubernetes network policies as a solution for achieving zero-trust between pods, identifying multiple flaws that hinder their effectiveness in meeting the demands of real-world use cases, particularly when prioritizing developer experience in a Kubernetes-based platform.

    • Kubernetes
    • Zero-trust
    • IBAC
    • Dropbox
    • Automation
    • Startups
    • Podcasts
    Blog
    Jan 24 2024
    First Person Platform Episode 1 - Andrew Fong on Dropbox Grouper

    The first episode of First Person Platform, a podcast: platform engineers nerd out with Ori Shoshan on access controls, Kubernetes, and platform engineering.

    • Network
    • Kubernetes
    • Go
    Blog
    Jan 20 2024
    Network mapper, I see you!

    Learn about the recently developed Otterize network mapper, an open-source tool dedicated to efficiently mapping communication within a Kubernetes cluster by creating functional network maps, focusing on simplicity and effectiveness in revealing pod-to-pod interactions.

    • Press
    Blog
    Jan 09 2024
    Hot on the Heels of AWS re:Invent 2023, Otterize Expands Workload Identity and Access Management Platform to Include Support for AWS IAM and PostgreSQL

    Otterize enhances its platform with AWS IAM and PostgreSQL support, complementing existing features like Kubernetes network policies, Istio authorization policies, and Kafka ACLs. These additions enable organizations to seamlessly manage access to critical resources and databases, reinforcing a comprehensive zero-trust security model.

    • Amazon
    Blog
    Nov 28 2023
    Otterize launches open-source, declarative PostgreSQL permissions for RDS workloads on AWS EKS clusters

    Effortlessly manage database access complexities through the open-source intents-operator and credentials-operator, enabling seamless control of permissions via Kubernetes, ensuring security, and simplifying the entire process with the efficiency of IBAC (intent-based access control).

    • Amazon
    • AWS
    • IAM
    • Kubernetes
    • Zero-trust
    • IBAC
    Blog
    Nov 28 2023
    Otterize launches open-source, declarative IAM permissions for workloads on AWS EKS clusters

    Simplify your AWS IAM role and policy management for Kubernetes ServiceAccounts with the open-source intents-operator and credentials-operator, leveraging the power of IBAC (intents-based access control) to streamline the process and eliminate the tedious manual steps.