Securing Cassandra for Compliance (or Paranoia) (Nate McCall, The Last Pickle)
Security is always at odds with usability, particularly in the context of operations and development. More so when dealing with a distributed system such as Apache Cassandra. This presentation will cover the steps required to completely secure a Cassandra cluster to meet most regulatory and compliance guidelines. Specific topics include: - considerations and recommendations for encrypting Cassandra data at rest - how and why to secure client to server and server to server communications - authentication and access control best practices - limiting access to management and tooling - what to expect when enabling security features in production Regardless of whether they are operators, developers or managers, attendees will be given a wealth of actionable information to help them secure their clusters. About the Speaker Nate McCall CTO, The Last Pickle Nate McCall has 16 years of server-side systems and software development experience. He started his involvement in the Cassandra community in the late fall of 2009 when he became one of the original developers on the Hector Java client. He has contributed a number of patches over the years to the Apache Cassandra code base and continues to be actively involved on the mail lists, issue system and IRC. He has been a DataStax MVP every year since the inception of the program.