Boston
May 8-11, 2017

Event Details

Please note: All times listed below are in Central Time Zone


OpenStack Security: Translating It into Real World Products

It is no secret that OpenStack is continually adding security features, but it is by no means perfect -- yet.  OpenStack has never really addressed security in a way that translates to a distributed model.  It is one thing to stand up an OpenStack environment in a lab or a data center, very much closed and controlled environments, but it is a very different thing to build a publicly available product that has the security functionality to meet the stringent requirements needed by financial institutions, healthcare organizations, government agencies and telcos.

In this session we will discuss how to best translate OpenStack security to real products in the real world based on Verizon’s experience with building several commercially available OpenStack based products and services.  By drilling down into some ways to address security by using the OpenStack tools, the team was able to create secure environments that met the most stringent requirements of our customers.


What can I expect to learn?

During this session you will learn how the team addressed thorny security issues such as:

  • The need to perform in a massively distributed (think thousands of global locations) environment.
  • Addressing security in a global environment – limits and opportunities.
  • Needs for Role Based Access Control and a separation of customer and administrative access – corralling the security cats.
  • The need to support customers with sophisticated regulatory and security requirements – think HIPAA, FedRAMP, PCI compliance and others.
  • Different approaches to minimizing the vulnerabilities – how to control the environment without compromising on rapid service delivery.
Tuesday, May 9, 4:40pm-4:50pm (8:40pm - 8:50pm UTC)
Difficulty Level: Intermediate
Verizon
Mark Durbin is currently a DMTS in the Network Security Infrastructure Planning organization. His current responsibilities include security strategic planning across Verizon's various business units, providing tactical direction for physical appliance and virtual based security solutions within these various business units.He has 25 years experience in developing and designing, testing,... FULL PROFILE
Cloud Technology Strategist
SDN Product Strategist at Verizon, working on developing virtualized networking products and services. Involved in the OpenStack community since 2010. Helped architect some of the earliest large deployments, writing the documentation and designing the architectures. Co-author of the OpenStack Architecture Design Guide. Active in the OpenStack Community as a member of the Edge Computing Work... FULL PROFILE