Cloud Security

KubeCon Co-Located Cloud Foundry Day Schedule Announced with Mix of Introductory Sessions and Technical Deep Dives

Cloud Foundry Foundation
The Cloud Foundry Foundation today announced the schedule for Cloud Foundry Day with anynines GmbH and VMware among the organizations taking center stage at the event.

"We are very excited to hold our first in-person Cloud Foundry event after a three year hiatus, The event is meant to showcase the extensibility of Cloud Foundry. All the latest improvements to the core platform and various  Cloud Foundry projects will be highlighted at the event. We are striving to create a balance for those who are experienced with Cloud Foundry as well as those who are looking to adopt it afresh. Cloud Foundry events are a great opportunity to meet hands-on practitioners and facilitate collaboration and discussions."

Chris Clark, program manager at Cloud Foundry

Cloud Foundry Day will be held on Tuesday, October 25, co-located with KubeCon + CloudNativeCon NA in Detroit. For this one-day event, the Cloud Foundry Foundation has joined forces with the program committee to curate a program that fosters collaboration among attendees and offers an interactive platform for education.

"At the event, we have strived to put together an agenda that presents the best of Cloud Foundry," said Ram Iyengar, chief evangelist at Cloud Foundry. "Due to the broad nature of Cloud Foundry projects, our program committee had a hard time choosing what to showcase. Attendees will get to learn about the latest open source innovations happening in the areas of core Cloud Foundry, as well as extensions to Kubernetes in the form of Paketo Buildpacks and Korifi. The agenda is also a good mix of introductory sessions, technical deep-dives, and community updates."

Sessions include:
  • A Keynote from Cloud Foundry governing board member, Catherine McGarvey
  • Introducing Korifi: The Evolution of CF on Kubernetes
  • Cloud Foundry Technical Governance: Past, Present, and Future
  • What's new with Paketo Buildpacks?
  • Recap: Ten Years of Working With Cloud Foundry
  • Grappling with Kubernetes Eventual Consistency in Korifi
  • App Runtime Interfaces Extravaganza!
  • New Features in BOSH: Improved NATS cert rotations
  • Remote Debugging of .NET Core applications with Paketo Buildpacks + Visual Studio Code
  • Stemcells are now Jam-packed with Jelly(fish)
  • How we modernized and reduced the infrastructure costs for running CFZ
  • The Future of Logs and Metrics in Cloud Foundry

The registration fee for Cloud Foundry Day is $50, or free to attend online. Attendees can register for the event here.

Cloud Foundry is an open source technology backed by the largest technology companies in the world, including, HCL, Huawei, IBM, SAP, and VMware, and is being used by leaders in manufacturing, telecommunications and financial services. Only Cloud Foundry delivers the velocity needed to continuously deliver apps at the speed of business. Cloud Foundry's container-based architecture runs apps written in any language on a choice of cloud platforms — Amazon Web Services (AWS), Google Cloud Platform (GCP), IBM Cloud, Microsoft Azure, OpenStack, and more. With a robust services ecosystem and simple integration with existing technologies, Cloud Foundry is the modern standard for deploying mission critical apps at global organizations.

About Cloud Foundry Foundation
The Cloud Foundry Foundation is a non-profit open source organization formed to sustain the development, promotion and adoption of Cloud Foundry as the industry standard for delivering the best experience for developers at companies of all sizes. The Foundation projects include Cloud Foundry, Paketo Buildpacks, Korifi, Eirini, BOSH, Open Service Broker API, CredHub, and more. Cloud Foundry makes it faster and easier to build, test, deploy and scale applications, and is used by more than half the Fortune 500, representing nearly $15 trillion in combined revenue.

Spotlight

Other News
Cloud Security

Sysdig Debuts New Benchmark for Cloud Detection and Response

Business Wire | November 03, 2023

Sysdig, the leader in cloud security powered by runtime insights, today released at SANS CyberFest 2023 the 5/5/5 Benchmark for Cloud Detection and Response, a new framework that outlines how quickly organizations should detect, triage, and respond to attacks in the cloud. Operating securely in the cloud requires a mindset shift in regard to time, and with that, cloud security programs need to hold themselves to a modernized benchmark: five seconds to detect, five minutes to correlate insights and understand what’s happening, and five additional minutes to respond. Recent findings by the Sysdig Threat Research Team published in the 2023 Global Cloud Threat Report note that, after discovering an exploitable target, malicious actors require less than 10 minutes to execute an attack. Cloud attacks are swift and sophisticated, requiring robust threat detection and response programs that move at the speed of the cloud. On-premises attacks take 16 days on average and antiquated frameworks challenge security teams to respond to a breach within 60 minutes, which is simply insufficient for the cloud. Bad actors are exploiting the automation and scale of the cloud, along with new techniques, to accelerate all stages of an attack and inflict damage within minutes. The 5/5/5 Benchmark guides organizations to detect and respond to cloud attacks faster than adversaries can complete them. The Challenge Detect threats within five seconds.Organizations should be able to gather detection signals from their cloud security tools in real time to ensure visibility into ephemeral assets. Correlate and triage within five minutes.Teams should be able to gather full context for all correlated signals within five minutes of receiving the first relevant alert. Initiate a response within five minutes.Organizations should be able to initiate a tactical response within five minutes of confirming that an attack is in progress. What people are saying People are always looking for security metrics, especially when the industry evolves into new operating models. We have plenty of 'best practices,' but no real way to quantify cloud security agility — until now, said Anna Belak, Director, Office of Cybersecurity Strategy at Sysdig. The 5/5/5 Benchmark, built in partnership with our customers, industry analysts, and the Sysdig Threat Research Team, sets a new standard for operating securely in the cloud. “As organizations move to the cloud, traditional on-premises security standards become outdated and too slow. In the cloud, both innovation and attacks happen quickly – companies need security tools, processes, and standards designed to operate at the speed of cloud-native environments,” said Phil Bues, Research Manager for IDC Cloud Security. “I don’t want to know 15 minutes after someone breached my system. I need to know instantly so that we can shut it down before the blast radius expands,” said Kuldeep Tomar, Head of Information Security at India’s leading digital skill games company and 5/5/5 Benchmark Advisor. “To move at the necessary speed, you need to not only be alerted to the right things, but also respond appropriately. Having a benchmark gives us a goal to hold ourselves to.” About Sysdig In the cloud, every second counts. Attacks move at warp speed, and security teams must protect the business without slowing it down. Sysdig stops cloud attacks in real time, instantly detecting changes in risk with runtime insights and open source Falco. Sysdig correlates signals across cloud workloads, identities, and services to uncover hidden attack paths and prioritize real risk. From prevention to defense, Sysdig helps enterprises focus on what matters: innovation. Sysdig. Secure Every Second.

Read More

Cloud Deployment Models

LightEdge Offers Secure, Scalable LightEdge Cloud with 100% Uptime

LightEdge | October 12, 2023

LightEdge, a prominent cloud and colocation provider, introduces its robust cloud offering, LightEdge Cloud. This cloud solution blends the flexibility of public clouds with private cloud-grade security, incorporating robust connectivity options and compliance expertise for heavily regulated industries. It comes with a 100% uptime guarantee and round-the-clock performance monitoring by a dedicated team of cloud engineers. LightEdge Cloud offers a secure and customizable enterprise cloud experience, emphasizing co-management and transparency. Jim Masterson, the CEO of LightEdge, emphasized that the LightEdge Cloud provides support for any enterprise workload with a scalable, transparent, and, most importantly, highly secure solution. Key features of LightEdge Cloud: Managed by experienced data center and cloud engineers for proactive performance maintenance. Transparent pricing with no hidden costs, including data egress fees and per-IP charges. Compatibility with various enterprise workloads, such as VMware-based, IBM-based, and container-based workloads Integration with VMware Cloud Director for enhanced transparency and management Enhanced security features include microsegmentation, a virtual firewall, DDoS protection, and load balancing. Supported by LightEdge's secure, redundant network developed over 25 years. Dale Dawson, the VP of Product at LightEdge, emphasized that the LightEdge Cloud offers identical advantages to any public cloud but at a more cost-effective and transparent price point, with a complete team of cloud experts prepared to intervene when necessary. LightEdge Cloud provides a secure platform for enterprise workloads, supported by cloud infrastructure and management solutions from VMware and Dell Technologies. Co-management may limit independence, and competition with established cloud providers may pose challenges. Performance and scalability should be evaluated against larger platforms. LightEdge Cloud offers robust security, 100% uptime, transparent pricing, and compatibility with various enterprise workloads, making it attractive for regulated industries. Proactive maintenance, integration with VMware Cloud Director, and a secure network boost reliability. About LightEdge LightEdge, founded in 1996, is a trusted provider of secure cloud and colocation services, with a strong emphasis on security, observability, and compliance. Serving over 1,300 clients, the company offers tailored public cloud solutions and simplifies multi-cloud environments. With a focus on reducing complexity and enhancing security, LightEdge allows clients to allocate resources to innovation over maintenance.

Read More

Cloud App Management

Google Cloud Teams Up with StackPath to Expand Edge-Forward Cloud

StackPath | September 20, 2023

StackPath Edge Compute is now accessible via the Google Cloud Marketplace, allowing Google Cloud customers to expand their environment to the internet's edge. StackPath, a leading edge computing platform, has made its Edge Compute Virtual Machines and Containers available on the marketplace, with purchases counting towards users' committed Google Cloud expenditure. StackPath offers cloud computing instances at edge points of presence within 38 major global markets, ensuring proximity to data sources and destinations. This proximity enhances application distribution options. Tom Reyes, Chief Product Officer for StackPath, emphasized the synergy between edge and cloud computing, highlighting the cost and performance benefits of utilizing Google Cloud for latency-neutral workloads and StackPath for latency-sensitive tasks. Dai Vu, Managing Director at Google Cloud, reportedly stated, As a part of their digital transformation strategies, many enterprises are seeking solutions that help them optimize their workflows. With its solutions now available on Google Cloud Marketplace, StackPath is enabling companies of all types and sizes to achieve the speed, security, and efficiency they require. [Source: PR Newswire] Additionally, StackPath recently added support for Virtual Kubelet in StackPath Edge Compute, facilitating seamless integration of StackPath Edge Compute Containers into multi-cloud Kubernetes (K8s) clusters. K8s, born on Google Cloud, remain popular among Google Cloud users. Key features of StackPath Edge Compute include deploying VMs with certified Linux distributions, image capture for autoscaling and rollbacks, deploying compliant container images, and rapid provisioning in StackPath Edge locations. About StackPath StackPath is an edge cloud platform offering cloud services in close proximity to end users compared to core cloud providers. Its edge compute solutions, including virtual machines and containers, along with edge applications such as CDN and WAF, are strategically positioned in densely populated areas. These services are connected through a secure private network fabric and managed through a single system. Clients, ranging from Fortune 50 enterprises to startups, rely on StackPath to optimize the performance, security, and efficiency of their latency-sensitive workloads and applications. Headquartered in Dallas, TX, StackPath was founded in 2015 and specializes in SECaaS, CDN, WAF, and various other cloud-related services.

Read More

Cloud Deployment Models

Mirantis’ Lens AppIQ: Upgrading Kubernetes Application Management

Mirantis | September 22, 2023

Mirantis has introduced Lens AppIQ, a new tool designed to simplify Kubernetes application management. Available directly to the 50,000 organizations using Lens, Lens AppIQ offers application intelligence, making it accessible for non-Kubernetes specialists to oversee applications across multiple clusters. Lens AppIQ aggregates information from various configuration files and sources, presenting it in a user-friendly tabbed display. This feature allows cloud-native developers to streamline the deployment and management of Kubernetes applications, offering web-based tools for viewing application details, configuring security measures, and automating deployment processes. With a quick launch time of under a minute, Lens AppIQ swiftly identifies applications in connected clusters and maps their components. Developers can access application architecture, metadata, logs, events, and more through Lens Desktop’s new 'Applications' view or the Lens AppIQ web portal, simplifying debugging, accelerating code releases, and enhancing performance optimization. DevOps professionals, platform engineers, and operators can utilize Lens AppIQ to define, monitor, and enforce policies related to application performance, security, and compliance. Automation features in Lens AppIQ facilitate repeatable deployments and enable effortless application migration to new Kubernetes environments. Miska Kaipiainen, Vice President of Engineering at Mirantis, reportedly stated, While Lens Desktop already provides an incredibly user-friendly experience for Kubernetes management, we understand that cloud-native development doesn't end there. That's why we've created Lens AppIQ. Lens AppIQ complements Lens Desktop by offering real-time intelligence and additional insights into the apps running on your Kubernetes clusters. This not only makes debugging, operation, and security easier but also opens up Kubernetes to a broader audience of developers who can benefit from streamlined processes without having to become Kubernetes experts. [Source – Businesswire] Lens AppIQ is available for free for small-scale and trial use, accommodating up to 10 nodes, two clusters, and two users. A Pro plan is available for larger-scale use, supporting up to 100 nodes, 10 clusters, and 50 users, priced at $35 per node monthly, inclusive of 8 hours/5-day business hours support. Enterprises can opt for a bespoke version with 24/7 support and custom pricing. Lens AppIQ is accessible within Lens Desktop for the 50,000 organizations currently using Lens and is also available as a Software as a Service (SaaS) solution. About Lens With over 1 million users worldwide, Lens Desktop is a leading tool for boosting productivity in Kubernetes application development and management. This desktop application breaks down barriers for newcomers to Kubernetes while significantly enhancing the efficiency of experienced users. Lens supports all certified Kubernetes distributions on any infrastructure and seamlessly runs on Linux, macOS, and Windows. As the world's largest and most advanced Kubernetes platform, it provides real-time workload management, development, debugging, monitoring, and troubleshooting across multiple clusters. Built on open-source principles, Lens enjoys a strong community with over 20,000 stars on GitHub. About Mirantis Mirantis is a leading company streamlining code delivery on public and private clouds with a ZeroOps approach to Kubernetes. It serves global enterprises, enhancing developer productivity and offering secure cloud solutions. Its clients include Adobe, DocuSign, PayPal, and others across diverse industries. Mirantis contributes to open-source projects like Lens and Kubernetes, empowering businesses to tackle complex challenges.

Read More