Company
Date Published
Author
Marco Palladino
Word count
930
Language
English
Hacker News points
None

Summary

Kong Mesh 1.2 introduces significant security enhancements, making it the most secure enterprise service mesh by integrating Open Policy Agent (OPA) directly into its framework, allowing seamless implementation of standardized authentication and authorization across Kubernetes and VM environments without additional sidecars. Built on the open-source Kuma, Kong Mesh provides a flexible service connectivity overlay capable of running across multiple clusters and cloud environments, enhancing multi-zone functionality with improved enterprise authentication between global and remote control planes. The update also includes out-of-the-box FIPS 140-2 compliance, ensuring adherence to federal security standards, and automates third-party Certificate Authority support, establishing a zero-trust foundation within organizations. These features enable day-0 security compliance, enhancing organizational security posture, and streamlining operations by addressing previous issues with observability and zero-trust implementation, as described by MS3's CEO, Aaron Weikle. This release aims to fundamentally change service mesh security, reducing the complexity associated with advanced security models while enhancing operational efficiency.