SPIFFE Meets OAuth: Federated Identity for Cloud Native Workloads - Yoshiyuki Tabata, Hitachi, Ltd.
About this talk
This talk covers the integration of federated identity patterns for cloud-native workloads presented by Yoshiyuki Tabata from Hitachi, Ltd. Addressing the complexities of operating across multiple trust domains, the session explores how combining SPIFFE and OAuth extensions can enhance secure identity propagation and authorization in dynamic Kubernetes environments. The speaker demonstrates the use of SPIFFE JWT SVID and OAuth Identity Chaining, along with Assertion Framework standards, to facilitate multi-hop authorization. Attendees will receive practical insights through a live demo that incorporates Keycloak, SPIRE, and OAuth flows, illustrating the benefits of improved interoperability and security in multi-cluster Kubernetes setups.
More from this event
See all 436 talks →
Best of KubeCon + CloudNativeCon Amsterdam 2026
2:17
The Quiet Work of Forever: Sustaining Open Source Communities - O. Hope Amaechi-Okorie, JSON Schema
26:24
Evolving KServe: The Unified Model Inference Platform for Both Predictive and... F. Spolti & J. Lee
32:40
Preventing S3 Cost Storms: Applying Cortex’s Efficiency Lessons to I/O-Heav... A. Fishman-Lichterman
5:32