The Otter’s Den

Your go-to hub for Kubernetes security and tech know-how

  • IBAC
  • Network
  • Zero-trust
  • Kubernetes
Blog
Jun 13 2024
Mastering Kubernetes networking: Otterize's journey in cloud-native packet management

Master Kubernetes networking with a comprehensive packet walk, and learn how Otterize helps build adaptive Network Policies.

    • Zero-trust
    • IBAC
    Blog
    May 27 2024
    Moving beyond perimeter security: Lessons from the TunnelVision attack

    The recent "TunnelVision" attacks reinforce the need for a new security paradigm. Let's explore how this type of attack can be mitigated in the future and what tools we need.

    • Network
    • Kubernetes
    • Network Policy
    • Zero-trust
    Blog
    May 16 2024
    Otter this world: How to chart Kubernetes egress traffic with Otterize

    Discover how Otterize helps you gain visibility into your egress Kubernetes connections.

    • Zero-trust
    • Kubernetes
    • Network
    • IBAC
    Blog
    May 13 2024
    Breaking bad policies: Crafting perfect Istio authorization policies and ingress authentication with Otterize

    Learn Istio fundamentals for authorization policies and request authentication, and how Otterize automates application security and zero-trust.

    • Kubernetes
    • IBAC
    • Zero-trust
    • IAM
    • AWS
    • EKS
    • ACK
    Blog
    Apr 29 2024
    Scheduler vs. API Proxy: Balancing Kubernetes data-plane and control-plane for optimal zero-trust IAM security with Otterize

    Discover how to automate zero-trust IAM security for EKS applications and AWS resources using AWS Controllers for Kubernetes (ACK) and Otterize.

    • Kubernetes
    • Zero-trust
    • IBAC
    • Dropbox
    • Automation
    • Startups
    • Podcasts
    Blog
    Apr 16 2024
    First Person Platform Episode 2 - Andrew Moore on Uber Workload Identity and Authorization

    The second episode of First Person Platform, a podcast: platform engineers nerd out with Ori Shoshan on access controls, Kubernetes, and platform engineering.

    • Network Policy
    • Kubernetes
    • Zero-trust
    Blog
    Feb 12 2024
    Network policies are not the right abstraction (for developers)

    We explore the limitations of relying solely on Kubernetes network policies as a solution for achieving zero-trust between pods, identifying multiple flaws that hinder their effectiveness in meeting the demands of real-world use cases, particularly when prioritizing developer experience in a Kubernetes-based platform.

    • Kubernetes
    • Zero-trust
    • IBAC
    • Dropbox
    • Automation
    • Startups
    • Podcasts
    Blog
    Jan 24 2024
    First Person Platform Episode 1 - Andrew Fong on Dropbox Grouper

    The first episode of First Person Platform, a podcast: platform engineers nerd out with Ori Shoshan on access controls, Kubernetes, and platform engineering.

    • Network
    • Kubernetes
    • Go
    Blog
    Jan 20 2024
    Network mapper, I see you!

    Learn about the recently developed Otterize network mapper, an open-source tool dedicated to efficiently mapping communication within a Kubernetes cluster by creating functional network maps, focusing on simplicity and effectiveness in revealing pod-to-pod interactions.

    • Press
    Blog
    Jan 09 2024
    Hot on the Heels of AWS re:Invent 2023, Otterize Expands Workload Identity and Access Management Platform to Include Support for AWS IAM and PostgreSQL

    Otterize enhances its platform with AWS IAM and PostgreSQL support, complementing existing features like Kubernetes network policies, Istio authorization policies, and Kafka ACLs. These additions enable organizations to seamlessly manage access to critical resources and databases, reinforcing a comprehensive zero-trust security model.