Microservices Security in Action
eBook - ePub

Microservices Security in Action

  1. 616 pages
  2. English
  3. ePUB (mobile friendly)
  4. Available on iOS & Android
eBook - ePub

About this book

”A complete guide to the challenges and solutions in securing microservices architectures.” —Massimo Siani, FinDynamic

Key Features
Secure microservices infrastructure and code
Monitoring, access control, and microservice-to-microservice communications
Deploy securely using Kubernetes, Docker, and the Istio service mesh.
Hands-on examples and exercises using Java and Spring Boot

Purchase of the print book includes a free eBook in PDF, Kindle, and ePub formats from Manning Publications.

Microservices Security in Action teaches you how to address microservices-specific security challenges throughout the system. This practical guide includes plentiful hands-on exercises using industry-leading open-source tools and examples using Java and Spring Boot.

 

About The Book
Design and implement security into your microservices from the start. Microservices Security in Action teaches you to assess and address security challenges at every level of a Microservices application, from APIs to infrastructure. 

You’ll find effective solutions to common security problems, including throttling and monitoring, access control at the API gateway, and microservice-to-microservice communication. Detailed Java code samples, exercises, and real-world business use cases ensure you can put what you’ve learned into action immediately.

What You Will Learn

Microservice security concepts
Edge services with an API gateway
Deployments with Docker, Kubernetes, and Istio
Security testing at the code level
Communications with HTTP, gRPC, and Kafka

This Book Is Written For
For experienced microservices developers with intermediate Java skills.

About The Author
Prabath Siriwardena is the vice president of security architecture at WSO2. Nuwan Dias is the director of API architecture at WSO2. They have designed secure systems for many Fortune 500 companies.

Table of Contents

PART 1 OVERVIEW
1 Microservices security landscape
2 First steps in securing microservices

PART 2 EDGE SECURITY
3 Securing north/south traffic with an API gateway
4 Accessing a secured microservice via a single-page application
5 Engaging throttling, monitoring, and access control

PART 3 SERVICE-TO-SERVICE COMMUNICATIONS
6 Securing east/west traffic with certificates
7 Securing east/west traffic with JWT
8 Securing east/west traffic over gRPC
9 Securing reactive microservices

PART 4 SECURE DEPLOYMENT
10 Conquering container security with Docker
11 Securing microservices on Kubernetes
12 Securing microservices with Istio service mesh

PART 5 SECURE DEVELOPMENT
13 Secure coding practices and automation

 
 

Trusted by 375,005 students

Access to over 1 million titles for a fair monthly price.

Study more efficiently using our study tools.

Information

Table of contents

  1. Microservices Security in Action
  2. Copyright
  3. dedication
  4. brief contents
  5. contents
  6. front matter
  7. Part 1. Overview
  8. 1 Microservices security landscape
  9. 2 First steps in securing microservices
  10. Part 2. Edge security
  11. 3 Securing north/south traffic with an API gateway
  12. 4 Accessing a secured microservice via a single-page application
  13. 5 Engaging throttling, monitoring, and access control
  14. Part 3. Service-to-service communications
  15. 6 Securing east/west traffic with certificates
  16. 7 Securing east/west traffic with JWT
  17. 8 Securing east/west traffic over gRPC
  18. 9 Securing reactive microservices
  19. Part 4. Secure deployment
  20. 10 Conquering container security with Docker
  21. 11 Securing microservices on Kubernetes
  22. 12 Securing microservices with Istio service mesh
  23. Part 5. Secure development
  24. 13 Secure coding practices and automation
  25. Appendix A. OAuth 2.0 and OpenID Connect
  26. Appendix B. JSON Web Token
  27. Appendix C. Single-page application architecture
  28. Appendix D. Observability in a microservices deployment
  29. Appendix E. Docker fundamentals
  30. Appendix F. Open Policy Agent
  31. Appendix G. Creating a certificate authority and related keys with OpenSSL
  32. Appendix H. Secure Production Identity Framework for Everyone
  33. Appendix I. gRPC fundamentals
  34. Appendix J. Kubernetes fundamentals
  35. Appendix K. Service mesh and Istio fundamentals
  36. index

Frequently asked questions

Yes, you can cancel anytime from the Subscription tab in your account settings on the Perlego website. Your subscription will stay active until the end of your current billing period. Learn how to cancel your subscription
No, books cannot be downloaded as external files, such as PDFs, for use outside of Perlego. However, you can download books within the Perlego app for offline reading on mobile or tablet. Learn how to download books offline
Perlego offers two plans: Essential and Complete
  • Essential is ideal for learners and professionals who enjoy exploring a wide range of subjects. Access the Essential Library with 800,000+ trusted titles and best-sellers across business, personal growth, and the humanities. Includes unlimited reading time and Standard Read Aloud voice.
  • Complete: Perfect for advanced learners and researchers needing full, unrestricted access. Unlock 1.4M+ books across hundreds of subjects, including academic and specialized titles. The Complete Plan also includes advanced features like Premium Read Aloud and Research Assistant.
Both plans are available with monthly, semester, or annual billing cycles.
We are an online textbook subscription service, where you can get access to an entire online library for less than the price of a single book per month. With over 1 million books across 990+ topics, we’ve got you covered! Learn about our mission
Look out for the read-aloud symbol on your next book to see if you can listen to it. The read-aloud tool reads text aloud for you, highlighting the text as it is being read. You can pause it, speed it up and slow it down. Learn more about Read Aloud
Yes! You can use the Perlego app on both iOS and Android devices to read anytime, anywhere — even offline. Perfect for commutes or when you’re on the go.
Please note we cannot support devices running on iOS 13 and Android 7 or earlier. Learn more about using the app
Yes, you can access Microservices Security in Action by Wajjakkara Kankanamge Anthony Nuwan Dias,Prabath Siriwardena in PDF and/or ePUB format, as well as other popular books in Computer Science & Cyber Security. We have over one million books available in our catalogue for you to explore.