Matt Moen

Matt has been involved with all things Security, Open Source and Linux since before they were cool. He's worked with everything from Fortune 100's and Wall Street Fintech firms to a tropical fish wholesaler. When not working tech, hiking or bicycling, he enjoys geeking out with symphonies, prog rock, jazz, bluegrass and whatever else tickles his melodic, harmonic and rhythmic fancy, because it don't mean a thing if it ain't got that certain je ne sais quoi. Matt holds CISSP & CISA certifications and is currently serving as the President of the Capitol of Texas chapter of the Information Systems Security Association in Austin.


Session

06-21
15:35
45min
Encrypting Your Infrastructure Without Getting Fired
Matt Moen

As we push things like Kubernetes clusters to edge installations for reduced latency and increased availability, how protected are they against crowbar theft? Encrypting their disks reduces these risks, but then you discover corner cases in production where your servers aren't automatically decrypting, and you've effectively DoSed yourself. Oops. We'll explore an alternative with network-based decryption without escrow or proprietary hardware using the Open Source Linux tools Tang and Clevis.

In the Clouds
Track 3 (Moody Rm. 102)