Aporeto Announces Zero Trust Cloud Security Solution
August 07, 2019

Aporeto announced its cloud network security solution for seamless distributed policy management across Kubernetes multi-cluster and container environments, using a unique application identity-based approach to security instead of relying on IP addresses.

Aporeto’s use of identity enables network security policies to now be managed up the stack at the application level.

Aporeto offers a turn-key enterprise SaaS solution that works well for multi-cluster Kubernetes deployments across multiple geographies at scale. All that is required for the user is to deploy an Aporeto enforcer on k8 nodes or VMs. The Aporeto solution protects the whole node and not just the PODs in a Kubernetes cluster.

With Aporeto, security is implemented at layers L3-L7 with end-to-end authentication, authorization and optional encryption for a Zero Trust security posture. The layer of enforcement is a user choice, and it allows users to balance between performance overheads and security requirements. Aporeto assigns a cryptographically signed and attested service identity to every Kubernetes POD. Security policies remain portable and persistent no matter where the POD resides.

“Helping customers tackle complex cloud security challenges, while reducing operational complexity, strengthening overall security posture and addressing scalability issues is job one at Aporeto,” said Jason Schmitt, CEO of Aporeto. “With our identity-based Zero Trust cloud security solution, we not only solve distributed policy enforcement across Kubernetes single and multi-cluster environments, but provide persistent policy management for heterogeneous infrastructure and workloads.”

Aporeto works seamlessly with other Kubernetes technologies, including all existing and cloud-native container network interface (CNI) architectures and service mesh products such as Istio. Aporeto can automatically import and apply Kubernetes network policy definitions to provide DevOps with a familiar YAML interface and backward compatibility for declaring allowed network connections, eliminating stacks of unnecessary YAML files and accelerating application deployment. Additionally, Aporeto supports all formats of Kubernetes including managed offerings such as AWS EKS, Google GKE, Microsoft Azure AKS, IBM Cloud Kubernetes, as well as private installations such as Red Hat OpenShift, kubeadm and Heptio.

Share this

Industry News

April 15, 2024

OpenText™ announced Cloud Editions (CE) 24.2, including OpenText DevOps Cloud and OpenText™ DevOps Aviator.

April 15, 2024

Postman announced its acquisition of Orbit, the community growth platform for developer companies.

April 11, 2024

Check Point® Software Technologies Ltd. announced new email security features that enhance its Check Point Harmony Email & Collaboration portfolio: Patented unified quarantine, DMARC monitoring, archiving, and Smart Banners.

April 11, 2024

Automation Anywhere announced an expanded partnership with Google Cloud to leverage the combined power of generative AI and its own specialized, generative AI automation models to give companies a powerful solution to optimize and transform their business.

April 11, 2024

Jetic announced the release of Jetlets, a low-code and no-code block template, that allows users to easily build any technically advanced integration use case, typically not covered by alternative integration platforms.

April 10, 2024

Progress announced new powerful capabilities and enhancements in the latest release of Progress® Sitefinity®.

April 10, 2024

Buildkite signed a multi-year strategic collaboration agreement (SCA) with Amazon Web Services (AWS), the world's most comprehensive and broadly adopted cloud, to accelerate delivery of cloud-native applications across multiple industries, including digital native, financial services, retail or any enterprise undergoing digital transformation.

April 10, 2024

AppViewX announced new functionality in the AppViewX CERT+ certificate lifecycle management automation product that helps organizations prepare for Google’s proposed 90-day TLS certificate validity policy.

April 09, 2024

Rocket Software is addressing the growing demand for integrated security, compliance, and automation in software development with its latest release of Rocket® DevOps, formerly known as Aldon®.

April 09, 2024

Wind River announced the latest release of Wind River Studio Developer, an edge-to-cloud DevSecOps platform that accelerates development, deployment, and operation of mission-critical systems.

April 09, 2024

appCD announced its generative infrastructure from code solution now supports Azure Kubernetes Service (AKS).

April 09, 2024

Synopsys announced the availability of Black Duck® Supply Chain Edition, a new software composition analysis (SCA) offering that enables organizations to mitigate upstream risk in their software supply chains.

April 09, 2024

DataStax announced innovative integrations with API extensions to Google Cloud’s Vertex AI Extension and Vertex AI Search, offering developers an easier time leveraging their own data.

April 08, 2024

Parasoft introduced C/C++test CT, a comprehensive solution tailored for large teams engaged in the development of safety- and security-critical C and C++ products.

April 08, 2024

Endor Labs announced a strategic partnership with GuidePoint Security.