Загрузка страницы

HashiCorp Boundary Demo for Secure Sessions Management

In this video, we discuss secure sessions management using #HashiCorp #Boundary. HashiCorp Boundary is one of two recent products announced at the latest HashiConf Digital in October 2020. The other product is HashiCorp #Waypoint which we'll demo in a separate video.

You can find a blog post below going through the details.
https://tekanaid.com/hashicorp-boundary-make-sure-your-human-to-machine-access-is-secure/

Below is the flow of the video:
1. We first start off with a few slides explaining the reason behind the creation of HashiCorp Boundary.
2. We go over the traditional workflow for human to machine access and why it's flawed.
3. Then we take a look at how HashiCorp Boundary solves the issues described in the traditional workflow.
4. We then go over the structure and hierarchy within HashiCorp Boundary
5. A discussion over the architecture of a production deployment in AWS is next
6. We go over a diagram of what our demo environment looks like
7. We discuss the future roadmap for HashiCorp Boundary
8. Finally we see HashiCorp Boundary in action with a demo. In this demo we SSH and RDP to 2 different target hosts and witness the packets in Wireshark. We'll see how HashiCorp Boundary proxies the connections and the target hosts are not visible in our Wireshark captures.

One thing to note here is that we use the HashiCorp Boundary Terraform Provider to configure Boundary.

I was very impressed by this initial 0.1 release by the HashiCorp team. I look forward to seeing where this product goes in the future.

If you're looking for a secure access management system and a secure sessions management system, then take a look at HashiCorp Boundary.

You can skip to the relevant timestamp below:
▬▬▬▬▬▬ T I M E S T A M P S ⏰ ▬▬▬▬▬▬
00:00 Introduction
02:18 Traditional Human to Machine Access Workflow
05:00 Boundary's Workflow
07:55 Boundary's Structure
09:48 Architecture of a Production Deployment
13:03 Demo Diagram
14:36 References
15:18 Roadmap
16:48 Demo Starts Start Boundary in Dev Mode
19:23 Run Terraform to Configure Boundary
23:00 SSH Connect to Linux Server
29:20 Wireshark the SSH Connection
33:03 RDP Connect to Windows Server
34:27 Wireshark the RDP Connection
35:39 Conclusion

▬▬▬▬▬▬▬▬▬ Courses 🎓 ▬▬▬▬▬▬▬▬
- HashiCorp Vault 101 - Certified Vault Associate ► https://bit.ly/hc-vault101

▬▬▬▬▬▬▬▬ Useful Links 🛠 ▬▬▬▬▬▬▬
Get the code ► https://tekanaid.com/posts/hashicorp-boundary-make-sure-your-human-to-machine-access-is-secure#code
Blog post that goes with this video ► https://tekanaid.com/posts/hashicorp-boundary-make-sure-your-human-to-machine-access-is-secure
Blog Announcement ► https://www.hashicorp.com/blog/hashicorp-boundary
Armon's Whiteboard ► https://youtu.be/tUMe7EsXYBQ
Terraform Boundary Provider ► https://registry.terraform.io/providers/hashicorp/boundary/latest
Getting Started Learn Guide ► https://learn.hashicorp.com/tutorials/boundary/getting-started-intro?in=boundary/getting-started
Production AWS Reference Architecture ► https://github.com/hashicorp/boundary-reference-architecture
Production High Availability Architecture ► https://www.boundaryproject.io/docs/installing/high-availability
Roadmap ► https://www.boundaryproject.io/docs/roadmap
Get the code ► https://tekanaid.com/posts/hashicorp-boundary-make-sure-your-human-to-machine-access-is-secure#code
▬▬▬▬▬▬▬▬ Connect 👋 ▬▬▬▬▬▬▬▬▬
Website ► https://bit.ly/TeKanAid_Website
Facebook Page ► https://bit.ly/TeKanAid_Facebook
Don't forget to subscribe ► https://bit.ly/TeKanAid_YouTube_Subscribe
MEDIUM ► https://bit.ly/Sam_Medium
TWITTER TeKanAid ► https://bit.ly/TeKanAid_Twitter
TWITTER Sam ► https://bit.ly/Sam_Twitter
LINKEDIN TeKanAid ► https://bit.ly/TeKanAid_LinkedIn
LINKEDIN Sam ► https://bit.ly/Sam_linkedin

Видео HashiCorp Boundary Demo for Secure Sessions Management канала TeKanAid
Показать
Комментарии отсутствуют
Введите заголовок:

Введите адрес ссылки:

Введите адрес видео с YouTube:

Зарегистрируйтесь или войдите с
Информация о видео
26 октября 2020 г. 17:15:02
00:36:34
Яндекс.Метрика