saltstack platform security model saltstack trust: …...secure sensitive infrastructure 4 secure...

Post on 25-Jul-2020

17 Views

Category:

Documents

0 Downloads

Preview:

Click to see full reader

TRANSCRIPT

SaltStack Trust: An overview of the SaltStack platform security model

1

The SaltStack Security Model

Authentication

2

1.

2.

3.

Authentication (cont.) Rotating Keys

salt-key

Encrypted Communication Channels

Refreshing Keys

3

Salt Access Control

Secure Sensitive Infrastructure

4

Secure Data Delivery

Network Ports

SSH

Implementation Best Practices

SaltStack Enterprise Security

●●●●●

Installing SaltStack Enterprise

5

Check the Minion ID in the Reactor

salt-call

Store Secure Values in Salt Pillar

Encrypt Pillar On-Disk

Use SHA 256 with FIPS-only OpenSSL

SaltStack SecOps

SaltStack Security Response

6

Installing SaltStack Enterprise (cont.)

Establishing Encrypted Database Connections

Applying Role-Based Access Controls

www.saltstack.com

top related