Self-Serve DNS and TLS Certificates in Kubernetes with NS1

Logo
Presented by

Alex Greco, Sr. DevOps Engineer, Gannett

About this talk

We can't think of a worse "Egg-on-your-Face" moment than waking up to a bunch of 'Help! Our certs have expired' messages on Slack - especially if you prefer your eggs scrambled, like I do. So a short while ago, and a few months shy of our own certificate renewal deadline, we at Gannett decided this was an opportune time to revisit how we manage our certificates and their renewals. Specifically, how can we offer a more self-serve and automated approach to the provisioning and renewal of certificates in Kubernetes for our ourselves, our customers and their applications? And since our main DNS provider is NS1, how can we leverage them as a trusted certificate solver? As we've already exposed a simple way for our customers to add and update the some of their DNS records in NS1(using External DNS), perhaps we can do something similar for our TLS certificates on our platform. Watch this session to learn how we at Gannett have been using both External DNS and Cert-Manager.io to streamline the DNS management for our customer's applications, as well as their TLS certificates, always with NS1 as our main provider."
Related topics:

More from this channel

Upcoming talks (0)
On-demand talks (45)
Subscribers (6563)
NS1 connects the world's applications and audiences with our Application Traffic Intelligence and Automation solutions. NS1's cloud-native network services, edge-to-cloud networking, and application traffic optimization technologies enable exceptional user experiences, drive IT efficiency and modernization, and ensure enterprise and application reliability and security. The NS1 Connect platform delivers these technologies with centralized management and visibility, flexible deployment, data and ecosystem integrations, cloud-native automation, orchestration, and internet scale, backed by simple pricing and world-class expertise. NS1 technologies provide a modern networking foundation that enables users to build diverse, globally distributed application footprints while avoiding vendor lock-in for critical infrastructure like CDNs and public clouds. NS1 can operate within and integrate with your existing environment, so you can deliver network services into any environment, including core networks, data centers, public cloud, private cloud and hybrid environments. Customers include LinkedIn, The Guardian, Dropbox, Weight Watchers, Salesforce, and others.