Home / Companies / Ory / Blog / Post Details
Content Deep Dive

Zero Trust API access control on Kubernetes

Blog post from Ory

Post Details
Company
Ory
Date Published
Author
Aeneas Rekkas
Word Count
2,627
Company Posts That Month
2
Language
English
Hacker News Points
-
Post removed?
No
Summary

As the software landscape evolves towards open infrastructure and service meshes, traditional access control methods using local libraries like OmniAuth and PassportJS are becoming less practical. This guide introduces a modern approach to access control within Kubernetes clusters using Ambassador API Gateway and Ory Oathkeeper Identity and Access Proxy. By utilizing open standards and replaceable software components, developers can enhance both development speed and application security. The setup involves deploying Ambassador as a Kubernetes-native API Gateway that facilitates traffic routing and supports external authentication services, while Ory Oathkeeper evaluates incoming HTTP requests based on predefined rules to determine access permissions. The guide provides detailed steps for deploying and configuring both Ambassador and Ory Oathkeeper in a Kubernetes environment, including setting up services, creating and applying access rules, and integrating these tools to manage access to services like httpbin. This method allows for a more scalable and language-agnostic architecture, supporting diverse programming languages and distributed services, while paving the way for a comprehensive access control system with the planned introduction of Ory Hydra and Ory Keto in subsequent guides.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 24 382 39 26 -6%
Observability 2 128 37 18 -12%
Zero Trust 2 8 3 3 +33%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.