Cloud Foundry Security Training

Private Training

The goal of this two-day course is to lay the foundation for understanding best Cloud Foundry security practices. The attendees will get solid knowledge about Cloud Foundry main security concepts, along with insights into achieving GDPR and PCI DSS compliance. In addition, the students will dive into security logging internals. All stages of the course are accompanied with extensive hands-on practice.

Cloud Foundry Security Training

Duration

2 days

Type

Tailor-made

Delivery format

On-site, Hands-on, Instructor-led

The course was especially tailored for

  • DevSecOps and security engineers responsible for building and operating the Cloud Foundry platform.

During the course the students will

  • Learn about Cloud Foundry and infrastructure security best practices
  • Gain insights into GDPR and PCI DSS with Cloud Foundry
  • Update their skills in security logging with industry leading tools

Why train with Altoros

Default training program

No better time to maximize your team's talent! Design custom program

Day 1

  • Main concepts of Cloud Foundry security

    Theory

    • Cloud Foundry architecture
    • Recommendations for Running a Secure Deployment
    • Web app SSO
    • Configuring TLS and HTTPS
    • Security key management (PKI)
    • Security inside a CF cluster
    • Secure network configuration
    • Security for Service Broker Integration
    • BOSH director security
    • Getting help

    Practice

    • Example of audit trail with BOSH CLI
  • CF Infrastructure Security

    Theory

    • Stemcell Security
    • Certificates and TLS in CF
    • Disk Encryption
    • Security for Your IaaS Provider
    • Antivirus
  • GDPR and Cloud Foundry

    Theory

    • Where Personal Data May Reside
  • PCI DSS

    Theory

    • Achieving PCI DSS Compliance
  • Cloud Foundry Org and Space Management security best practices

    Theory

    • Authentication and Authorization LDAP

    Practice

    • Managing organizations
    • Getting info about an organization
    • Targeting organizations
    • Getting info about spaces
    • Modifying and deleting spaces LDAP integration
  • Isolation Segments

    Theory

    • Architecture
    • Managing Isolation Segments

    Practice

    • Set up isolation segment and deploy app
  • Using Cloud Foundry security groups

    Theory

    • Structure
    • Security groups scopes

    Practice

    • Creating security groups
    • Binding security groups
    • Viewing security groups
    • Managing security groups

Day 2

  • Credentials management Automation with credential management

    Theory

    • CredHub
    • Vault

    Practice

    • Example of using CredHub as a credentials storage for Concourse CI
    • Place, generate, and retrieve credentials from CredHub examples
  • Security Event Logging and Auditing

    Theory

    • Theory
    • Best practices
    • Debugging techniques: cf apps, cf events, and cf logs recent

    Practice

    • Example of using Logsearch as logging solution
  • Container security

    Theory

    • How to manage container security on a day-to-day basis
    • Container registry best practices
  • Security update management of cf, services, buildpacks

    Theory

    • Managing a custom buildpack from a security perspective
    • Stemcell update automation

No better time and training provider to maximize your team's talent!

No better time and training provider to maximize your team's talent!

Prerequisites. Altoros recommends that all students have:

01

Expertise

  • A basic knowledge of Linux (SSH, SCP, Vim, grep)
  • Basic Docker Experience
  • First-hand experience with an IaaS provider—AWS (EC2, VPC, S3, Route53, RDS)
02

Workstation

  • A SSH/SCP terminal client (like SSH or PuTTY)
  • A web browser (Chrome/Firefox)
  • Internet connection w/o Firewall rules blocking outgoing traffic

Get updates on upcoming events and new courses, discounts and special offers

Why train with Altoros?

Through expertly led, hands-on custom training courses, Altoros helps IT professionals around the globe to advance their skills in cloud-native development and PaaS, blockchain, artificial intelligence, and deep learning.

20+

Years of experience

750+

Satisfied customers

1,400+

Successfully implemented projects

50+

Global 2000 organizations as customers

350+

Full-time engineers

7+

Global offices

What our customers say

/
01

“The instructors were friendly; the class was very wide-ranged. We covered 12 factors in details, learned about service registration and discovery, log tracing. That was as much as you can pack in a few hours.”

Adam Singh

Web Development Leader at Cummis Inc

02

“It was a great training. I’ve tried to look at this stuff and understand it on my own, but coming to this class allowed me get a much deeper understanding of Bosh and Cloud Foundry. What I’ve learned is how to deploy it, the value it has, how much more sophisticated than some of the other PaaS systems it is.”

Bill Harper

Senior Solutions Architect at Metacloud

03

“I think the training is really good. There are a lot of questions, and it’s great because I have the same ones. It shows that I am in the right place. This is a great class if you want to learn more about what the undercover of Cloud Foundry does at its best.”

Brad Schaefbauer

Cloud Foundry Platform Owner at Boeing

04

“This workshop is great for people with a zero of ground knowledge of Cloud Foundry and Bosh. It would apply even more to people who are reliant on knowing how to bring this [Cloud Foundry] up, it is going to be a “bread and butter” for developers.”

Eric Price

Software Engineer at Platform D

05

“I really like the training. I think it was thorough and informative. The hands-on nature was essential for learning Bosh, which is very complicated. It’s not something you can learn by watching just two slides. Getting your hands on the keyboard was the best part of the day. I would totally recommend this course to any of our partners or any potential customers.”

Wes Gruver

Consulting instructor at Pivotal

Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand
Brand

What trainees say about Altoros courses

/
01
Cloud Foundry for DevOps Training
02
Cloud Foundry Training at Cloud Foundry Summit

Contact us

Preloader
Alexandra Mironova

Alexandra Mironova

Training Coordinator

training@altoros.com617 841-2121

4900 Hopyard Rd. Suite 100 Pleasanton, CA 94588