deft/notes/presentation_leads.org
Yann Esposito (Yogsototh) d7314d7dd5
notes/presentation_leads.org
2022-06-30 16:27:51 +02:00

1.7 KiB

Presentation Leads

tags
source

Presentation

I joined Cisco in 2016.

I first worked with Guillaume on CTIA, we created the first mechanism for the IROH-Int.

The idea of the product pushed by Craig and Dean was close to what is described by hunters.ai.

  • Work mostly on Authentication and Authorization for IROH
  • Most of my work is a component named IROH-Auth
  • IROH take care of login by supporting different kind of Identity providers
  • And this is also an OAuth2 Provider
  • and this also an OpenID Connect Provider as such an Identity Provider

Historically:

  • Worked on CTIA
  • Worked on the iroh-collect, with inspect (detect observables)
  • Worked on IROH-integration, observe, and later respond
  • Started to work on generic component; add structured logs (we still have today)
  • Added the authentication layer; decision to use JWT
  • Integrated with SAML from AMP
  • then OpenID Connect with threatgrid
  • Helped Orbital use IROH-Auth
  • Worked on Integration with different Cisco Identity Providers
  • Worked closely with SSE with Matthieu, we were forced to add a few holes in the system
  • Integration with Ping Federate (named the IDB / Identity Broker)
  • Helped many internal teams to integrate with IROH mostly using OAuth2
  • SecureX time; use the same API to provide another frontend
  • Worked a lot on SXSO IdP Migration
  • Then added support for Device Grant Clients
  • More recently worked with Posture (now Device Insight)

Current work:

Improve the user experience during login with Dar and Jillian. The next change should be visible to everyone using SecureX and Threat Response. Tenant Switching.