Barcelona, Spain
October 25-28, 2016

Event Details

Please note: All times listed below are in Central Time Zone


Secure Your Cinder: A Hands-On Workshop with Cinder Encryption

We all know Cinder provides the awesome ability to attach block storage to our Nova instances but how secure is the data we place on these volumes? Join us as we explore the potential security vulnerabilities in using unencrypted Cinder storage and setup a live OpenStack environment to utilize block device level encryption.  Participants will learn the history of Linux encryption methods and how Cinder can utilize these methods to securely write data to block volumes.  All participants will receive a live OpenStack environment and step-by-step instruction on the Linux packages and OpenStack configuration files necessary to implement a secure Cinder infrastructure.  After completing the workshop,  participants walk away with peace of mind when faced with the possibility of bare-metal attacks on their OpenStack environment!


What can I expect to learn?

Attendees will first learn the history of Linux encryption methods including filesystem and block device level encryption.  Attendees will then explore the potential security vulnerabilities of using unencrypted Cinder storage and how one can easily configure Cinder to utilize dm-crypt and the Linux Unified Key Setup-on-disk-format (LUKS) for block device level encryption.  Participants will not only setup Cinder with encryption, but create both encrypted and unencrypted volumes, attach these volumes to Nova instances, and even replicate a real-world bare-metal attack by attempting to recover OpenStack user data!

Tuesday, October 25, 11:25am-12:55pm (9:25am - 10:55am UTC)
Difficulty Level: Beginner
Senior Technical Instructor
Matt Dorn is a Senior Technical Instructor focused on helping IT teams around the world build private clouds with OpenStack and Kubernetes.  He understands that many feel a great deal of intimidation when approaching open source projects and is fanatical about providing an easy to understand learning path that makes OpenStack accessible and fun.  His experience includes being apart of... FULL PROFILE
Rackspace
Phil Hopkins, Principal Engineer at Rackspace. has an Electrical Engineering Degree from the University of South Florida and has been working on Linux systems for over 15 years. In the past he has taught Cisco Networking classes and worked as a Cisco Admin as well as designing VOIP systems using Asterisk. He is active teaching and writing about Openstack software defined networks (SDN). He has... FULL PROFILE
Rackspace
Software Engineer helping to build Operators for OpenShift at Red Hat. FULL PROFILE