Banca de DEFESA: LUCAS AURELIO GOMES COSTA

Uma banca de DEFESA de MESTRADO foi cadastrada pelo programa.
STUDENT : LUCAS AURELIO GOMES COSTA
DATE: 07/02/2024
TIME: 14:00
LOCAL: Centro de Informática - Auditorio Bloco B
TITLE:

Zero Trust and Service Meshes on Microservice Cloud-based Applications: A Comparative Study


KEY WORDS:

Service meshes, Zero Trust, Istio, Linkerd, microservices, cloud, Google Cloud, Kubernetes.


PAGES: 71
BIG AREA: Ciências Exatas e da Terra
AREA: Ciência da Computação
SUMMARY:

Migrating microservices to a cloud environment poses challenges for maintaining security. Though Zero-Trust architecture provides guidelines on protecting the services, protecting the applications is still a major concern for companies. Research has shown that service meshes, such as Istio or Linkerd, can facilitate protection for services in a Kubernetes environment.

This study aims to understand how service meshes can enable Zero-Trust approaches to service-to-service communication. Investigating how Zero-Trust protection aligns with service mesh capabilities, how it can affect service communication performance, and how Istio and Linkerd compare to each other in terms of security and performance.

This research used experiments as the key part of the process to fulfill its objectives. A proof-of-concept architecture was implemented to facilitate experiments, while the experiments were divided into two categories (security and performance) and the results were used to compare Istio to Linkerd.

Analysis of the experiments has shown that Linkerd can be faster than Istio while providing similar levels of protection.

The results indicate that different security configurations for service meshes can decrease service communication performance and how these configurations align with Zero-Trust guidelines. Based on this information, companies seeking to enforce Zero-Trust protection to services in the cloud must consider the compromises required between performance and security.


COMMITTEE MEMBERS:
Presidente - 2228250 - NELSON SOUTO ROSA
Interno - 1277234 - CARLOS ANDRE GUIMARAES FERRAZ
Externo à Instituição - IORAM SCHECHTMAN SETTE - Cesar School
Notícia cadastrada em: 11/01/2024 10:54
SIGAA | Superintendência de Tecnologia da Informação (STI-UFPE) - (81) 2126-7777 | Copyright © 2006-2024 - UFRN - sigaa10.ufpe.br.sigaa10