Sunday, September 6, 2026
HomeCloud ComputingCisco Cloud Native Safety – Half 1 Introduction

Cisco Cloud Native Safety – Half 1 Introduction

[ad_1]

On this weblog we introduce the Cisco Cloud Native Safety SPOT-On Sequence. On this collection we’ll take you thru easy methods to present a cloud native infrastructure utilizing code, what instruments are wanted to make this occur, and, most significantly, how we are able to safe these environments utilizing the Cisco Safe portfolio. 

Partially 1 of this multi-episode collection, we’ll introduce what we might be constructing, what sorts of safety applied sciences we might be implementing all through this collection, and the way the Cisco Safe portfolio will help present visibility and safety coverage in a cloud native surroundings. Please observe alongside this collection, as each weblog publish can even have a video containing demos too! 

What is going to we be constructing?

First, we want someplace to deploy our infrastructure. We might be deploying our infrastructure in Amazon Internet Providers (AWS). In AWS we’ll provision a Digital Personal Cloud (VPC) with all the required subnets, safety teams, interfaces, route tables, web gateways, elastic IP addresses, and elastic compute (EC2) situations. We can even be deploying an Elastic Kubernetes Service (EKS) cluster to handle and orchestrate our cloud native purposes. There might be two EC2 situations provisioned, the primary will host our Subsequent Technology Firewall, which might be operating Firepower Menace Protection. The second will host the EKS employee node, which is able to host our microservices purposes. Cloud Native Security

We additionally want some instruments to assist us with provisioning and configuring our surroundings. We construct a DevBox with all the required DevOps instruments to perform this. On this DevBox we’ll set up the newest variations of Terraform, Ansible, AWS CLI and Jenkins. We are going to use Terraform and the AWS CLI to provision the cloud infrastructure and purposes. Ansible might be used to configure the Subsequent Technology Firewall coverage, and Jenkins will automate and orchestrate the construct and deployment of the surroundings. There are a pair different instruments we might be utilizing similar to GitHub for supply code administration and model management, Docker for deploying Ansible playbooks and Python scripts in our CI/CD pipeline, and the Kubernetes CLI (kubectl) to watch and handle the cluster itself.

Securing the cloud native surroundings can turn into a bit bit tough as a result of what precisely are we making an attempt to safe? Are we securing the general public cloud infrastructure, or the Kubernetes cluster, or the microservices operating within the cluster, or how concerning the containers and the apps operating contained in the containers, and the APIs (Software Programming Interface) they’re exposing? What concerning the authentication and authorization of the APIs, or how the information is encrypted in transit and at relaxation, or what number of connections or requests can the app help, and are there any weak libraries be utilized in these apps? There are such a lot of questions that may come up when deploying your cloud-native app in AWS (or one other IaaS supplier). Fortunate for us, the Cisco Safe portfolio gives options to reply all these questions.

On this collection we’ll begin with the infrastructure and make our method as much as the applying. In high-level, that appears like this:

  1. We are going to safe the cloud edge utilizing Cisco Safe Firewall that can present entry management, intrusion prevention, and anti-malware.
  2. We are going to then present visibility and safety analytics into the cloud infrastructure and Kubernetes cluster utilizing Cisco Safe Cloud Analytics.
  3. Cisco Safe Workload will present micro-segmentation within the cloud infrastructure and micro-services purposes.
  4. Cisco Safe Software Cloud Native will ship Kubernetes and Container safety offering container runtime protections, hardening and vulnerability administration, CI/CD pipeline integration and API visibility and danger detection.
  5. Lastly, we’ll safe the applying itself by detecting code dependencies whereas constantly monitoring vulnerabilities and blocking exploits all throughout software runtime utilizing Cisco Safe Software.
  6. We can even dive into different rising applied sciences similar to Cloud Safety Posture Administration (CSPM) utilizing Cisco Safe Cloud Insights and what a cloud native firewall is and the way it differs from a firewall deployed on cloud occasion.

That is the primary weblog publish out of a multi-episode collection. Please observe alongside as we go! Additionally, take a look at this video for extra detailed info and demos:


Cisco Safe Cloud Native Safety – Half 1 – Introduction

 

We’d love to listen to what you assume. Ask a query or go away a remark beneath.
And keep linked with Cisco DevNet on social!

LinkedIn | Twitter @CiscoDevNet | Fb Developer Video Channel

 

Share:



[ad_2]

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Most Popular

Recent Comments