Fine-Grained and Centralized Authorization for OpenStack with Open Policy Agent
OpenInfra Foundation via YouTube
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Learn how to implement fine-grained and centralized authorization for OpenStack using Open Policy Agent (OPA) in this 33-minute conference talk. Discover the limitations of OpenStack's current hybrid Role-based and Attribute-based access control system, where policies are hardcoded in service source code and customizable only through configuration files. Explore how the oslo.policy library handles policy enforcement and understand why more dynamic, programmatic policy definitions are needed for fine-grained access control. Gain insights from real-world production experience deploying CNCF's Open Policy Agent for OpenStack services in a public cloud environment, including detailed coverage of the general architecture and essential performance tuning strategies required to maintain smooth platform operations. Master the integration process for implementing OPA in cloud environments to achieve dynamic policy application with minimal latency.
Syllabus
Fine-grained and centralized authorization for OpenStack with Open Policy Agent
Taught by
OpenInfra Foundation