SPIFFE SPIRE Foundation is a hands-on, two-day class. It gives attendees a deep understanding of the security challenges involved in developing, deploying, and managing modern distributed applications. Attendees also learn how to address these challenges using SPIFFE, a leading set of open source standards for building Zero Trust-based systems. SPIRE is its implementation. SPIFFE and SPIRE are already used in some of the largest and most security-conscious organizations to secure their systems.
Day one lays the groundwork with Zero Trust security concepts. It then introduces SPIFFE’s architecture and identity standards, including the SPIFFE ID format and trust domains that make identities portable across platforms. Students then work through SPIRE’s core concepts and architecture, and deploy SPIRE on Kubernetes. This gives every workload in the cluster a cryptographically verifiable identity that replaces long-lived credentials.
Day two moves into daily operations, running and managing a live SPIRE deployment. Attendees apply workload authentication so services can prove who they are without shared secrets, and use the SPIFFE Workload API to fetch identities programmatically. The class closes by securing microservices end to end with SPIFFE and SPIRE. This class covers the fundamental concepts and architecture of SPIFFE and SPIRE. It also provides hands-on labs with practical exercises and examples of key concepts discussed in class, plus production use cases. Attendees will leave with a clear understanding of the concepts and the skills necessary to improve their organization’s security posture.
Who Should Attend
Developers, IT and Networking Staff, Architects, Technical Managers and SREs
What Attendees Will Learn
Upon completing SPIFFE SPIRE Foundation, attendees will be able to:
- Explain Zero Trust security concepts
- Explain SPIFFE architecture and identity standards
- Explain SPIRE concepts and architecture
- Deploy SPIRE with Kubernetes
- Perform SPIRE operations
- Apply workload authentication with SPIRE
- Use the SPIFFE Workload API
- Secure microservices using SPIFFE and SPIRE
Prerequisites
Basic Linux command line skills are valuable but not required.