Venafi Integrates Machine Identity Control Plane with VMware Tanzu
January 10, 2023

Venafi announced that VMware has integrated Venafi’s machine identity control plane into its Tanzu Service Mesh.

The Venafi integration enables Tanzu users to integrate their Service Mesh with a trusted certificate authority (CA) of their choice to support mutual Transport Layer Security (mTLS) between Kubernetes clusters.

VMware Tanzu Service Mesh provides connectivity and security for modern applications across cloud native Kubernetes environments via advanced, end-to-end connectivity and security, enabling compliance with Service Level Objectives (SLOs) and data protection and privacy regulations. It does so by helping to control both north-south traffic from end users at the application edge through mesh egress and ingress, as well as east-west traffic between application workloads, APIs and data.

The Venafi integration enhances the Tanzu Service Mesh by enabling organizations to automate the management of their machine identity lifecycles as part of their established CA trust chains. This increases observability and control, while ensuring compliance in regulated industries.

As a result, customers can:

- Automate the issuance and renewal of machine identities via Venafi’s control plane, enabling developers to move at speed whilst remaining secure.

- Generate identities from over 40 trusted certificate authorities (CAs) that fit within their organization’s trust chain instead of relying on self-signed mTLS identities.

- Gain unparalleled observability, consistency, reliability and freedom of choice over machine identity management, ensuring compliance with regulations.

“Other service mesh – such as Istio – only support self-signed machine identities out-of-the-box, which fall outside of companies’ existing machine identity management infrastructure and trust chains. It’s great to see VMWare is addressing this security gap by tapping into the control plane for machine identity management in a way that’s frictionless and security-team approved.” says Kevin Bocek, VP Security Strategy and Threat Intelligence at Venafi.

Share this

Industry News

May 15, 2024

Gearset announced its new CI/CD solution, Long Term Projects in Pipelines.

May 15, 2024

Rafay Systems has extended the capabilities of its enterprise PaaS for modern infrastructure to support graphics processing unit- (GPU-) based workloads.

May 15, 2024

NodeScript, a free, low-code developer environment for workflow automation and API integration, is released by UBIO.

May 14, 2024

IBM announced IBM Test Accelerator for Z, a solution designed to revolutionize testing on IBM Z, a tool that expedites the shift-left approach, fostering smooth collaboration between z/OS developers and testers.

May 14, 2024

StreamNative launched Ursa, a Kafka-compatible data streaming engine built on top of lakehouse storage.

May 14, 2024

GitKraken acquired code health innovator, CodeSee.

May 13, 2024

ServiceNow introduced a new no‑code development studio and new automation capabilities to accelerate and scale digital transformation across the enterprise.

May 13, 2024

Security Innovation has added new skills assessments to its Base Camp training platform for software security training.

May 13, 2024

CAST introduced CAST Highlight Extensions Marketplace — an integrated marketplace for the software intelligence product where users can effortlessly browse and download a diverse range of extensions and plugins.

May 09, 2024

Red Hat and Elastic announced an expanded collaboration to deliver next-generation search experiences supporting retrieval augmented generation (RAG) patterns using Elasticsearch as a preferred vector database solution integrated on Red Hat OpenShift AI.

May 09, 2024

Traceable AI announced an Early Access Program for its new Generative AI API Security capabilities.

May 09, 2024

StackHawk announced a new integration with Microsoft Defender for Cloud to help organizations build software more securely.

May 08, 2024

MacStadium announced that it has obtained Cloud Security Alliance (CSA) Security, Trust & Assurance Registry (STAR) Level 1, meaning that MacStadium has publicly documented its compliance with CSA’s Cloud Controls Matrix (CCM), and that it joined the Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secure cloud computing environment.

May 08, 2024

The Cloud Native Computing Foundation® (CNCF®) released the two-day schedule for CloudNativeSecurityCon North America 2024 happening in Seattle, Washington from June 26-27, 2024.

May 08, 2024

Sumo Logic announced new AI and security analytics capabilities that allow security and development teams to align around a single source of truth and collect and act on data insights more quickly.