Bob and Alice Revisited: Understanding Encryption in Kubernetes - Jackie Maertens & Mitch Connors, Microsoft

less than 1 minute read

Abstract

Encryption is a fundamental aspect of securing data, yet many Kubernetes users struggle to differentiate between various encryption methods such as symmetric, asymmetric, TLS, mTLS, and VPN. This talk aims to demystify these concepts using the classic fictional characters Bob and Alice, who have been used to explain encryption since the 1970s. We will revisit their story and adapt it to the modern Kubernetes ecosystem, providing clear explanations and practical examples. These examples will demonstrate encryption in Kubernetes use cases such as ingress, API server communication, SPIFFE and service mesh traffic with projects like Istio. We will also explore trade-offs between data security and usability - helping you answer the age-old question: how much encryption is enough? Attendees will leave with a solid understanding of encryption techniques and how to apply them effectively in their Kubernetes environments.

Sched URL

Video