This chapters starts by explaining the process of hardening Cloud Functions and Cloud Run for production environments. This ensures that there is a way to handle infrastructure security, enabling developers to handle their code, manage configurations, and work on dependencies with the right framework of managing their demands. Additionally, the chapter looks into working with the Cloud Functions and Cloud Run, ensuring that the best services are used to engage GCP’s native security features, such as VPC service controls and IAM policies. The chapter also delves into the implementation of event-driven security. The security model requires that events trigger functions, ensuring that there is integrity of the event data. The chapter explains security for event-driven workloads through tools such as Cloud Audit Logs and Cloud Pub/Sub. The chapter then looks at the steps to assist in leveraging Workload Identity Federation (WIF), which works with cross-cloud security platforms. Organizations working on multi-cloud strategies have to securely manage access and identities to ensure the serverless workloads are appropriately managed. Notably, the management of WIF for serverless environments is discussed, enabling security and safety in all provisions. Thus, by the end of this chapter, you will understand the deployment of secure and advanced serverless computing on GCP. The chapter also explains the process of building a scalable, secure, and resilient serverless application.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Securing Advanced Serverless Deployments

  • Advait Patel

摘要

This chapters starts by explaining the process of hardening Cloud Functions and Cloud Run for production environments. This ensures that there is a way to handle infrastructure security, enabling developers to handle their code, manage configurations, and work on dependencies with the right framework of managing their demands. Additionally, the chapter looks into working with the Cloud Functions and Cloud Run, ensuring that the best services are used to engage GCP’s native security features, such as VPC service controls and IAM policies. The chapter also delves into the implementation of event-driven security. The security model requires that events trigger functions, ensuring that there is integrity of the event data. The chapter explains security for event-driven workloads through tools such as Cloud Audit Logs and Cloud Pub/Sub. The chapter then looks at the steps to assist in leveraging Workload Identity Federation (WIF), which works with cross-cloud security platforms. Organizations working on multi-cloud strategies have to securely manage access and identities to ensure the serverless workloads are appropriately managed. Notably, the management of WIF for serverless environments is discussed, enabling security and safety in all provisions. Thus, by the end of this chapter, you will understand the deployment of secure and advanced serverless computing on GCP. The chapter also explains the process of building a scalable, secure, and resilient serverless application.