Software Engineering Radio - the podcast for professional software developers cover image

Software Engineering Radio - the podcast for professional software developers

SE Radio 578: Ori Mankali on Secrets Management using Distributed Fragments Cryptography

Aug 22, 2023
42:41
Snipd AI
Ori Mankali, senior VP of engineering at Akeyless, talks about secrets management and distributed fragment cryptography. They discuss the challenges of managing secrets at scale and the need for access policies and audit capabilities. They explain the concept of distributed fragment cryptography and its role in boosting security. The podcast also covers the downsides of relying on clients, cryptography standards, integrating Ikylas with major cloud providers, and the challenges of secrets management in Kubernetes and CICD platforms.
Read more

Podcast summary created with Snipd AI

Quick takeaways

  • Secrets management involves securely storing, accessing, and managing sensitive information for authentication in applications.
  • Distributed Fragment Cryptography (DFC) divides encryption keys into fragments distributed across multiple locations, enhancing security and scalability in secrets management.

Deep dives

Overview of Secrets Management

Secrets, in the context of applications, refer to sensitive information used for authentication. This includes credentials needed for an application to identify itself and gain access to remote services. Previously, sensitive information like passwords and keys were stored in insecure places like configuration files or within the code itself. However, this practice is risky and insecure. Secrets management is the process of securely storing, accessing, and managing these sensitive information. It involves protecting secrets through encryption, implementing access policies, integrating with identity providers, maintaining audit logs, and providing auditing capabilities for security officers. The goal is to ensure that sensitive information is always secure and properly managed throughout its lifecycle.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode