Friday, May 1, 2026
HomeCloud ComputingSecuring Your Cloud-Native Utility with Cisco App-First Safety

Securing Your Cloud-Native Utility with Cisco App-First Safety

[ad_1]

Amandeep SinghThis weblog is authored by Amandeep Singh,
Technical Advertising Engineer – Technical Chief at Cisco

Now we have some thrilling information: the favored Utility-First Safety lab with AWS has been up to date, and it’s higher than ever! It has now been redesigned to comply with the Cisco Validated Design “Securing Cloud-Native Functions – AWS Design Information”. We even have an up to date DevNet Sandbox, which you need to use to undergo this lab. This lab is “ByoAWS”, or deliver your personal AWS org (except you might be at a proctored Cisco occasion). That being stated, we now have a cleanup script that deletes all sources afterwards, so the prices must be minimal if you undergo the lab (solely a few $).

On this lab you’ll deploy the Sock Store microservices demo software, maintained by Weaveworks and Container Options. Sock Store simulates the user-facing a part of an e-commerce web site that sells socks. All the Sock Store supply is on GitHub and also you’ll be updating a part of the appliance’s supply code in a future portion of the lab.

cloud native security

Cisco Utility-First Safety

Earlier than we go into the main points, let’s take a step again. If you’re accustomed to Cisco Utility-First Safety, then you may skip forward to the updates.

Cisco’s Utility-First Safety answer lets you acquire visibility into software conduct and enhance the effectiveness of safety controls by combining capabilities of best-in-class merchandise together with Cisco Safe Workload, Cisco Safe Cloud Analytics Cloud, Cisco Duo Past and Cisco AppDynamics with Safe Utility (not but a part of the lab, coming quickly!). Key options embrace:

  • Nearer to the appliance: Safety nearer to your software provides you perception and context of your functions so you may simply make clever selections to guard them.
  • Steady as software modifications: Utility-First Safety follows your functions because it modifications and strikes to make sure steady protections in your digital enterprise.
  • Adaptive to software dependencies: Safety designed to adapt to your software so it can provide you granular management and scale back danger by detecting and stopping threats based mostly on general understanding of your setting.

Within the lab you’ll safe a cloud-native software (i.e. Sock Store) and public cloud infrastructure utilizing the sooner talked about Cisco Options. You’ll stage the infrastructure, modify and deploy the appliance, instrument the safety merchandise into the setting. Within the course of, you’ll get your arms soiled with merchandise and applied sciences together with git, Kubernetes, GitLab, Docker, AWS and others.

What has been up to date?

New: Cisco Validated Design

As talked about, this lab has now been redesigned to comply with the Cisco Validated Design “Securing Cloud-Native Functions – AWS Design Information”. This lab makes use of AWS to host the workloads and functions and takes benefit of a lot of their native companies. This diagram exhibits how the completely different parts are logically related:

App First security Lab

Now this diagram clearly doesn’t actually present what the tip consumer may see. Beneath you see a screenshot of the Sock Store entrance finish web page. When first deployed, no safety instruments are put in but!

sockshop-frontend

New: GitLab

The lab has been up to date to now embrace GitLab. The deployment of the Kubernetes cluster now works with a GitLab pipeline, to present an instance of how this may appear to be in actual world situation. Pipelines are the top-level part of steady integration, supply, and deployment.

Pipelines comprise of jobs and levels:

  • Jobs, which outline what to do. For instance, jobs that compile or check code.
  • Levels, which outline when to run the roles. For instance, levels that run exams after levels that compile the code.

In an yml file, you may outline the scripts and the instructions that you simply need to run. The scripts are grouped into jobs, and jobs run as half of a bigger pipeline. You’ll be able to group a number of unbiased jobs into levels that run in an outlined order. You must set up your jobs in a sequence that fits your software and is in accordance with the exams you want to carry out. To visualise the method, think about the scripts you add to jobs are the identical as CLI instructions you run in your pc to construct, check and deploy your software.

New: GitLab

One thing else that’s new is a deployment bash script that can robotically do all the preparation steps for you. The great factor about that is that should you solely need to do the Safe Workload, Safe Cloud Analytics or solely the Duo lab part, you are able to do that now. Earlier than this lab was not that modular, and took in complete a minimum of 4 hours. To do that, all you’ll want to do is run deployinfraforme from the AWS Cloud9 terminal window and you’ll select. Clearly, we suggest going by way of your entire lab, since organising the Kubernetes cluster may be very instructional.

Getting began

We hope that you’re as excited as we’re, and need to get began instantly! To take action, be sure to have an AWS account and a DevNet Sandbox reserved. All the lab directions will be discovered right here . If you happen to need assistance, please bear in mind that we now have a devoted Utility Safety part in our Cisco Developer Neighborhood!

Associated sources

 


We’d love to listen to what you assume. Ask a query or depart a remark under.
And keep related with Cisco DevNet on social!

LinkedIn | Twitter @CiscoDevNet | Fb Developer Video Channel

Share:



[ad_2]

RELATED ARTICLES

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Most Popular

Recent Comments