Home / Companies / Ory / Blog / October 2022

October 2022 Summaries

3 posts from Ory

Filter
Month: Year:
Post Summaries Back to Blog
Ory Hydra 2.0 represents a major update for the Ory community, introducing both a new open-source version and an integrated service on the Ory Network. This release includes significant changes such as support for JWT profiles in OAuth 2.0, integration with Ory Identities, and enhanced cryptographic key support, which collectively improve performance and scalability. The database structure has been refactored to optimize storage and query efficiency, with primary keys now using UUIDs to prevent system hotspots. The upgrade also aligns APIs and SDKs with Ory's standards, introduces a new pagination method for large-scale environments, and modifies CLI commands for better management of OAuth2 resources. Users are advised to back up databases before upgrading due to changes that may lock tables, and to familiarize themselves with the updated administrative API paths and deprecated endpoints. Additionally, OpenTelemetry support replaces the previous OpenTracing format for monitoring and telemetry.
Oct 27, 2022 1,034 words in the original blog post.
Low-code solutions, like Ory Polis, provide businesses with pre-built building blocks that allow for faster and more efficient deployment of features such as SAML integration, reducing the need for extensive coding and resource allocation. Unlike no-code platforms, which require no programming skills, low-code still necessitates some coding to integrate these components, but both approaches enable rapid development and agility, crucial in today's competitive market. Low-code platforms help businesses save on costs and time, especially for smaller enterprises that prefer to focus on core offerings rather than building tools from scratch. Despite potential issues like shadow IT, these can be mitigated with proper IT governance. The excitement around low-code and no-code lies in their ability to drive innovation, as they allow companies to easily implement standard features while dedicating resources to their unique strengths and creative pursuits.
Oct 25, 2022 693 words in the original blog post.
DevSecOps represents an evolution of DevOps by integrating security into every stage of the development process to address the increasing sophistication of cyber threats. Traditional development often involved isolated teams working in sequence, leading to long cycles and limited communication, whereas DevOps introduced agile methodologies to improve speed and efficiency through tools and automation. However, security was often considered only at the end of the development cycle, which DevSecOps seeks to change by making security a shared responsibility from the beginning. This approach enhances development velocity, incorporates multiple layers of security, and promotes collaboration among development, security, and operations teams, ultimately reducing vulnerabilities and costs by catching issues earlier through automated testing. DevSecOps ensures that security is a proactive element of development, fostering innovation and accountability across teams while mitigating vulnerabilities and controlling costs.
Oct 13, 2022 618 words in the original blog post.