James Strong
Isovalent at Cisco- Principal Customer Success Architect
Philadelphia, Pennsylvania, United States
Actions
James has been working in the Cloud and with Kubernetes for many years. He helped build a private cloud at GE Appliances, and moved into consulting migrating workloads to containers and Kubernetes for Enterprises. James is a Solution Architect with Isovalent at Cisco; where he helps companies navigate their adoption of Cilium. He also co-authored O'Reilly's Networking and Kubernetes.
Area of Expertise
Topics
Securing the future of Ingress-nginx
Ingress NGINX is a very flexible Ingress controller that provides users with a lot of NGINX functionality through annotations. However, this flexibility also raises security concerns for maintainers and cluster administrators. There have been eight significant CVEs and RCEs in Ingress NGINX. To address these issues, we have created a security hardening guide, which will be presented as a preview in this talk. Additionally, we will enable restrictive features by default to offer a more secure out-of-the-box experience with Ingress NGINX such as annotation validations. To maintain and secure the project and its Gateway API implementation, we will not be adding any new features to the core functionality of ingress, and a significant amount of functionality, such as UDP/TCP Routing, will be moved to Gateway API. We will also unveil the new name of the project during this presentation.
How to Gateway with Ingress - 140 days InGate
It still seems like yesterday when we announced this new project for a Gateway API implementation based on NGINX at KubeCon NA 2024.
Now, around 4.5 months later, we'd like to check in with you on what we've built so far, the features we're glad to support, the challenges we've faced and continue to face, and the exciting times and tasks that still await us.
We'd love for you to stop by and join us on our wonderful journey to a new Gateway API implementation!
Realizing The Benefits Of Container DevSecOps With AWS
Attendees will learn how to set up, harden, & secure a container pipeline in AWS in this talk using no servers for that pipeline. If you’re interested in integrating security and compliance into a container pipeline to realize the benefits of DevSecOps. We will be using these tools and techniques to secure a container pipeline and runtime.
Github Repo - Code Signing
Kind - Local Development
AWS ECR - Image Scanning - CVE
AWS Codepipeline/Build - CI/CD A
WS ECR - Immutable Tags
Run Time Security - Falco
Logging - FireLens Alerting - Cloudwatch
Auditing - Cloudtrail
Terraform and serverless
Curious about serverless? Curious about how to use serverless with Terraform? If so, this talk is for you!
James Strong, Technical Principal at Contino, will give a talk and demo on deploying serverless apps onto AWS with Terraform!
Introduction to Kubernetes
Introduction to Kubernetes is a hands-on, interactive workshop giving attendees a thorough understanding of the fundamentals of Kubernetes. As part of this workshop, you will learn how Kubernetes works, deploy microservices to that cluster & also hear about some war stories.
Project Lightning Talk + ContribFest + Maintainer Track: KubeCon + CloudNativeCon North America 2024 Sessionize Event
Maintainer Track + ContribFest: KubeCon + CloudNativeCon Europe 2024 Sessionize Event
KubeCon + CloudNativeCon North America 2023 Sessionize Event
CodeStock 2022 Sessionize Event
CodeMash 2022 Sessionize Event
Atlanta Code Camp 2021 Sessionize Event
DevOps Connect: DevSecOps at RSAC 2021 Sessionize Event
CodeMash 2020 Sessionize Event
Code PaLOUsa 2019 Sessionize Event
Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.
Jump to top