By James Penick, Architect Director, Verizon Media



At Verizon Media, we’ve developed and open sourced a platform for X.509 certificate-based service authentication and fine-grained access control in dynamic infrastructures called Athenz. Athenz addresses zero trust principles, including situations where authenticated clients require explicit authorization to be allowed to perform actions, and authorization needs to always be limited to the least privilege required.

During the OpenStack Summit in Berlin, I discussed Athenz and its integration with OpenStack for fully automated role-based authorization and identity provisioning.



We are using Athenz to bootstrap our instances deployed in both private and public clouds with service identities in the form of short-lived X.509 certificates that allow one service to securely communicate with another. Our OpenStack instances are powered by Athenz identities at scale.



To learn more about Athenz, give feedback, or contribute, please visit our Github and chat with us on Slack.

