Chris Norman

221 posts

Chris Norman

Chris Norman

@chr_norm

Building developer-focused security tools

London, England Katılım Şubat 2017
1.5K Takip Edilen242 Takipçiler
Chris Norman
Chris Norman@chr_norm·
@micahhausler this is awesome, fantastic release @micahhausler. Love the idea of consolidating user authorization and admission control in a single language. I could envision network policies being expressed in Cedar too
English
1
0
1
16
Chris Norman
Chris Norman@chr_norm·
New article from me on the @cedarpolicy blog: validating Cedar policies using @github actions. If you use an authorization framework like Cedar, you will probably store policies as source code. My GitHub action validates these and annotates pull requests. Article link below!
Chris Norman tweet media
English
1
2
7
524
Chris Norman
Chris Norman@chr_norm·
@micahhausler I’ve not used it but I do see Kyverno being recommended now and again
English
1
0
2
71
Chris Norman
Chris Norman@chr_norm·
Granted now makes logging in to AWS IAM Identity Center faster + more secure Our new browser extension mitigates phishing attacks for @awscloud plus makes signing in a LOT faster. Some background + more info in thread.
Chris Norman tweet media
English
1
4
17
4.1K
Chris Norman
Chris Norman@chr_norm·
@micahhausler Let me know when you do! I’m a huge fan of the framework. Our customers write their own Cedar policies to authorize access inside our product. It’s led to some great, transparent discussions. It really feels like having the power of AWS IAM, but for any API.
English
1
0
1
39
Micah Hausler
Micah Hausler@micahhausler·
@chr_norm Nice! I've got some cool Cedar stuff cooking... hoping to open source it soon
English
1
0
1
19
Chris Norman
Chris Norman@chr_norm·
I spoke at @fwdcloudsec EU 2024 on how we are using @cedarpolicy to protect our services in the cloud, including implementing our very own CloudTrail-like audit logs. The talk recording is now live!
Chris Norman tweet media
English
1
0
1
367
Chris Norman
Chris Norman@chr_norm·
@micahhausler Good point on the key algo negotiation with the key directory, I kept it deliberately very simple in the initial lib implementation, because for my use case I was strictly supporting ecdsa-p256-sha256
English
1
0
0
48
Chris Norman
Chris Norman@chr_norm·
@micahhausler Thanks for the feedback! Do let me know if you build a Structured Field lib, I’d be interested in migrating to one with a friendlier license. I’d definitely accept PRs for those signing algs
English
1
0
1
41
Chris Norman
Chris Norman@chr_norm·
@Mylestro Thankyou! We’ve found adopting Cedar hugely beneficial. If you kick the tires on it I’d love to hear how you go, feel free to DM me to chat more
English
0
0
0
17
Mylestro
Mylestro@Mylestro·
Hey, @chr_norm Great talk at fwd:cloudsec, nice to see some practical talks about using Cedar. Have been thinking about giving it a look for some projects.
English
1
0
3
64