Skip to main content
Engineering, Backend

Our Journey Adopting SPIFFE/SPIRE at Scale

November 9, 2023 / Global
Featured image for Our Journey Adopting SPIFFE/SPIRE at Scale
Image
Figure 1: SPIRE 101
Image
Figure 2: Workload Attestation
Image
Figure 3: SPIRE Hierarchy
Image
Figure 4: Workload Integration
Image
Figure 5: Host Monitoring
Image
Figure 6: Node alias
Image
Figure 7: Group-based Workload Entry
Image
Figure 8: Bridge Architecture
Image
Figure 9: Database Reads
Image
Figure 10: SPIRE Server CPU with LRU Cache
Andrew Moore

Andrew Moore

Andrew Moore is a Staff Software Engineer leading the Platform Authentication team at Uber and sits on the SPIFFE Steering Committee. He enjoys gardening, homebrewing, and being a forever dungeon master.

Ryan Turner

Ryan Turner

Ryan Turner is a Staff Software Engineer leading Platform Authentication and Kubernetes Security initiatives and a maintainer of the SPIRE project.

Kirutthika Raja

Kirutthika Raja

Kirutthika Raja is an Engineering Manager for the Platform Authentication team at Uber and a strong supporter of diversity and inclusion. She enjoys reading non-fiction, traveling, cooking and gardening.

Prasad Borole

Prasad Borole

Prasad Borole is a Senior Software Engineer on the Platform Authentication team at Uber.

Kurtis Nusbaum

Kurtis Nusbaum

Kurtis Nusbaum is a Senior Staff Engineer on the Uber Infrastructure team in Seattle. He works on highly-reliable distributed systems for managing Uber’s server fleet.

Zachary Train

Zachary Train

Zachary Train is a classical guitarist, a Senior Software Engineer on the Platform Authentication team at Uber, and a co-founder of Sages at Uber.

Hasibul Haque

Hasibul Haque

Hasibul Haque manages the Data and Platform Security teams at Uber, including Platform Authentication, Uber PKI, Secrets Management, and Key Management System. He is a big supporter of the Open Source community.

Posted by Andrew Moore, Ryan Turner, Kirutthika Raja, Prasad Borole, Kurtis Nusbaum, Zachary Train, Hasibul Haque