# identity-and-access

Published articles for identity-and-access.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## How CockroachDB and IBM LinuxONE Rockhopper 5 Power Resilient AI Infrastructure

DevFeed: [How CockroachDB and IBM LinuxONE Rockhopper 5 Power Resilient AI Infrastructure](<https://devfeed.tech/articles/how-cockroachdb-and-ibm-linuxone-rockhopper-5-power-resilient-ai-infrastructure-23791.md>)

Original publisher: [Read original article](<https://cockroachlabs.com/blog/ibm-linuxone-rockhopper-5-ai-infrastructure>)

Author: Kyle Basile

Published: 2026-07-07T00:00:00Z

Content type: article

Language: en

Sources: [Cockroach Labs](<https://devfeed.tech/sources/cockroach-labs.md>)

Topics: [AI Infrastructure](<https://devfeed.tech/topics/ai-infrastructure.md>), [NVIDIA DGX](<https://devfeed.tech/topics/nvidia-dgx.md>), [CockroachDB](<https://devfeed.tech/topics/cockroachdb.md>), [ibm](<https://devfeed.tech/topics/ibm.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [AI Development](<https://devfeed.tech/topics/ai-development.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-infrastructure](<https://devfeed.tech/tags/ai-infrastructure.md>), [availability](<https://devfeed.tech/tags/availability.md>), [cockroachdb](<https://devfeed.tech/tags/cockroachdb.md>), [concurrency](<https://devfeed.tech/tags/concurrency.md>), [consistency](<https://devfeed.tech/tags/consistency.md>), [customers](<https://devfeed.tech/tags/customers.md>), [data](<https://devfeed.tech/tags/data.md>), [digital](<https://devfeed.tech/tags/digital.md>), [distributed](<https://devfeed.tech/tags/distributed.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [enterprise](<https://devfeed.tech/tags/enterprise.md>), [failover](<https://devfeed.tech/tags/failover.md>), [financial](<https://devfeed.tech/tags/financial.md>), [ibm](<https://devfeed.tech/tags/ibm.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

The article explains how enterprise AI workloads increase requirements for continuous data availability, high concurrency, real-time decision-making, and elastic scaling. It presents IBM LinuxONE Rockhopper 5 and CockroachDB as infrastructure and data-platform components for resilient AI applications, including semantic retrieval, embeddings, agent memory, and transactional consistency.

### Source excerpt

Why does AI require a new approach to infrastructure?

## Guide: How to Unify Identity Across Cloud and Data Center Infrastructure

DevFeed: [Guide: How to Unify Identity Across Cloud and Data Center Infrastructure](<https://devfeed.tech/articles/guide-how-to-unify-identity-across-cloud-and-data-center-infrastructure-29954.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/unify-identity-cloud-data-centers/>)

Author: info@goteleport.com (Mayur Pipaliya)

Published: 2026-05-01T00:00:00Z

Content type: tutorial

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [trust](<https://devfeed.tech/topics/trust.md>), [certificates](<https://devfeed.tech/topics/certificates.md>), [SPIFFE](<https://devfeed.tech/topics/spiffe.md>), [Cloud](<https://devfeed.tech/topics/cloud.md>), [data centers](<https://devfeed.tech/topics/data-centers.md>), [Amazon Web Services](<https://devfeed.tech/topics/aws.md>), [Entra ID](<https://devfeed.tech/topics/entra-id.md>)

Tags: [certificates](<https://devfeed.tech/tags/certificates.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [critical-infrastructure](<https://devfeed.tech/tags/critical-infrastructure.md>), [data-center](<https://devfeed.tech/tags/data-center.md>), [entra-id](<https://devfeed.tech/tags/entra-id.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [spiffe](<https://devfeed.tech/tags/spiffe.md>)

### AI overview

This guide explains identity fragmentation across cloud accounts, data centers, and colocated infrastructure. It describes siloed identity systems, credential sprawl, and differing access models, and presents approaches including hardware roots of trust, short-lived certificates, shared certificate authorities, SPIFFE workload identities, reverse tunnels, and protocol-level enforcement.

### Source excerpt

Inside this guide, discover the root causes of identity fragmentation across cloud and data center environments -- and what it takes to unify identity.

## Zero Trust Architecture: From Perimeter Walls to "Never Trust, Always Verify"

DevFeed: [Zero Trust Architecture: From Perimeter Walls to "Never Trust, Always Verify"](<https://devfeed.tech/articles/zero-trust-architecture-from-perimeter-walls-to-never-trust-always-verify-39560.md>)

Original publisher: [Read original article](<https://ankit-rana.com/logs/08-zero-trust-architecture/>)

Author: hello@ankit-rana.com

Published: 2026-03-16T00:00:00Z

Content type: tutorial

Language: en

Sources: [Ankit Rana | Mechanical Sympathy](<https://devfeed.tech/sources/ankit-rana-mechanical-sympathy.md>)

Topics: [Zero Trust](<https://devfeed.tech/topics/zero-trust.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>), [Encryption](<https://devfeed.tech/topics/encryption.md>), [least privilege](<https://devfeed.tech/topics/least-privilege.md>), [zero trust network access](<https://devfeed.tech/topics/zero-trust-network-access.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>), [Network](<https://devfeed.tech/topics/network.md>)

Tags: [architecture](<https://devfeed.tech/tags/architecture.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [encryption](<https://devfeed.tech/tags/encryption.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [least-privilege](<https://devfeed.tech/tags/least-privilege.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [network](<https://devfeed.tech/tags/network.md>), [network-security](<https://devfeed.tech/tags/network-security.md>), [observability](<https://devfeed.tech/tags/observability.md>), [security](<https://devfeed.tech/tags/security.md>), [security-architecture](<https://devfeed.tech/tags/security-architecture.md>), [zero-trust](<https://devfeed.tech/tags/zero-trust.md>), [zero-trust-network-access](<https://devfeed.tech/tags/zero-trust-network-access.md>), [ztna](<https://devfeed.tech/tags/ztna.md>)

### AI overview

This article explains Zero Trust Architecture as a security model that assumes the network may already be compromised. It contrasts Zero Trust with perimeter security and describes explicit verification, contextual authorization, least privilege, encryption, segmentation, and continuous monitoring. It also distinguishes the broader ZTA model from Zero Trust Network Access (ZTNA).

### Source excerpt

Zero Trust starts from the assumption that the network is already compromised, so every request is authenticated, authorised, and encrypted regardless of where it originates. It rests on explicit verification, least privilege, micro-segmentation, continuous monitoring, and encryption everywhere. It is an architectural direction, not a product you buy.

## The Agentic Identity Journey: Building IAM for Autonomous Actors

DevFeed: [The Agentic Identity Journey: Building IAM for Autonomous Actors](<https://devfeed.tech/articles/the-agentic-identity-journey-29991.md>)

Original publisher: [Read original article](<https://engineering.indeedblog.com/blog/2025/06/the-agentic-identity-journey/>)

Author: Ken Adler

Published: 2025-06-03T21:53:51Z

Content type: opinion

Language: en

Sources: [Indeed](<https://devfeed.tech/sources/indeed.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Artificial Intelligence](<https://devfeed.tech/topics/ai.md>), [Web](<https://devfeed.tech/topics/web.md>)

Tags: [agentic-ai](<https://devfeed.tech/tags/agentic-ai.md>), [agentic-iam](<https://devfeed.tech/tags/agentic-iam.md>), [architecture](<https://devfeed.tech/tags/architecture.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [authorization](<https://devfeed.tech/tags/authorization.md>), [autonomous](<https://devfeed.tech/tags/autonomous.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [privacy](<https://devfeed.tech/tags/privacy.md>), [resilience](<https://devfeed.tech/tags/resilience.md>), [security](<https://devfeed.tech/tags/security.md>), [software](<https://devfeed.tech/tags/software.md>)

### AI overview

This commentary introduces Indeed's perspective on building an Agentic IAM architecture for a future in which autonomous and potentially malicious software agents interact with its platform. It emphasizes precise authorization, trustworthy delegation, verifiable auditing, speed, resilience, and privacy, and presents the post as the first entry in a series.

### Source excerpt

Every so often, the web changes in a way that rewires how we live. In the early days, Web 1.0 let us read. It was a window into information -- static pages, digital brochures, news sites. We were spectators peering into a new world. Then came Web 2.0, and we learned to write. We didn't [...]

## Exploring DORA Compliance in Practice: Key Takeaways from Our Recent Webinar

DevFeed: [Exploring DORA Compliance in Practice: Key Takeaways from Our Recent Webinar](<https://devfeed.tech/articles/exploring-dora-compliance-in-practice-key-takeaways-from-our-recent-webinar-29642.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/exploring-dora-compliance-in-practice/>)

Author: sami@goteleport.com (Sami Ali)

Published: 2025-05-07T00:00:00Z

Content type: article

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [IAM](<https://devfeed.tech/topics/iam.md>), [Access Control](<https://devfeed.tech/topics/access-control.md>), [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Security](<https://devfeed.tech/topics/security.md>), [Resilience](<https://devfeed.tech/topics/resilience.md>), [Monitoring](<https://devfeed.tech/topics/monitoring.md>)

Tags: [access-control](<https://devfeed.tech/tags/access-control.md>), [auditability](<https://devfeed.tech/tags/auditability.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [emea](<https://devfeed.tech/tags/emea.md>), [eu](<https://devfeed.tech/tags/eu.md>), [financial](<https://devfeed.tech/tags/financial.md>), [governance](<https://devfeed.tech/tags/governance.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [monitoring](<https://devfeed.tech/tags/monitoring.md>), [security](<https://devfeed.tech/tags/security.md>), [webinar](<https://devfeed.tech/tags/webinar.md>)

### AI overview

This webinar recap explains how the EU's Digital Operational Resilience Act (DORA) affects access control, identity governance, auditability, and third-party risk for financial institutions and service providers. It describes how Teleport can support practical controls such as role-based access and scoped infrastructure access.

### Source excerpt

Learn how financial institutions can achieve DORA compliance through practical IAM solutions, with insights from Teleport and Falx on implementing effective controls.

## Managing Machine Identities to Reduce Anonymous Computing Risks

DevFeed: [Managing Machine Identities to Reduce Anonymous Computing Risks](<https://devfeed.tech/articles/it-s-finally-time-to-embrace-trusted-computing-29942.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/time-to-embrace-trusted-computing/>)

Author: jason@intellyx.com (Jason Bloomberg)

Published: 2025-02-25T00:00:00Z

Content type: opinion

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [identity and access management](<https://devfeed.tech/topics/identity-and-access-management.md>), [Security](<https://devfeed.tech/topics/security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [Network](<https://devfeed.tech/topics/network.md>), [GitHub Actions](<https://devfeed.tech/topics/github-actions.md>)

Tags: [ci-cd-pipeline](<https://devfeed.tech/tags/ci-cd-pipeline.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [identity-and-access-management](<https://devfeed.tech/tags/identity-and-access-management.md>), [network](<https://devfeed.tech/tags/network.md>), [security](<https://devfeed.tech/tags/security.md>), [toolchain](<https://devfeed.tech/tags/toolchain.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

The article argues that anonymous computing occurs when infrastructure assets use fictitious or shared identities without identifying the human making a request. It presents machine-identity management as a way to reduce security vulnerabilities without obstructing necessary work.

### Source excerpt

It's Finally Time to Embrace Trusted Computing Does your corporate network treat users on VPNs as trusted regardless of who they are? Does your web server connect to its database as a fictitious user with a password in a config file somewhere? Or perhaps the most frightening scenario: did your platform engineer log in as root to configure your CI/CD pipeline toolchain?

## 2024 Predictions from Teleport CEO Ev Kontsevoy

DevFeed: [2024 Predictions from Teleport CEO Ev Kontsevoy](<https://devfeed.tech/articles/2024-predictions-from-teleport-ceo-ev-kontsevoy-29538.md>)

Original publisher: [Read original article](<https://goteleport.com/blog/2024-CEO-predictions/>)

Author: ev@goteleport.com (Ev Kontsevoy)

Published: 2024-02-07T00:00:00Z

Content type: opinion

Language: en

Sources: [Teleport](<https://devfeed.tech/sources/teleport.md>)

Topics: [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Security & Privacy](<https://devfeed.tech/topics/security-privacy.md>), [Authentication](<https://devfeed.tech/topics/authentication.md>), [Architecture & Design](<https://devfeed.tech/topics/architecture-design.md>)

Tags: [api-keys](<https://devfeed.tech/tags/api-keys.md>), [authentication](<https://devfeed.tech/tags/authentication.md>), [browser](<https://devfeed.tech/tags/browser.md>), [cloud-computing](<https://devfeed.tech/tags/cloud-computing.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [identity](<https://devfeed.tech/tags/identity.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [predictions](<https://devfeed.tech/tags/predictions.md>), [secrets](<https://devfeed.tech/tags/secrets.md>), [security](<https://devfeed.tech/tags/security.md>), [social-engineering](<https://devfeed.tech/tags/social-engineering.md>), [tokens](<https://devfeed.tech/tags/tokens.md>)

### AI overview

Teleport CEO Ev Kontsevoy's 2024 predictions describe rising identity-focused attacks, closer collaboration between engineering and security teams, and broader adoption of secretless authentication to reduce risks from exposed credentials and human error.

### Source excerpt

Teleport CEO forecasts 2024 cybersecurity shifts: secretless access, evolving security roles, M&A consolidation, and least privilege strategies.

## Easily Manage IAM Policies for Serverless REST Applications in GCP with Goblet

DevFeed: [Easily Manage IAM Policies for Serverless REST Applications in GCP with Goblet](<https://devfeed.tech/articles/easily-manage-iam-policies-for-serverless-rest-applications-in-gcp-with-goblet-23877.md>)

Original publisher: [Read original article](<https://engineering.premise.com/easily-manage-iam-policies-for-serverless-rest-applications-in-gcp-with-goblet-f1580a97b74?source=rss----c5fada0a103d---4>)

Author: Austen Novis

Published: 2023-07-10T20:09:55Z

Content type: tutorial

Language: en

Sources: [Engineering at Premise - Medium](<https://devfeed.tech/sources/engineering-at-premise-medium.md>)

Topics: [Google Cloud Platform (GCP)](<https://devfeed.tech/topics/google-cloud.md>), [IAM](<https://devfeed.tech/topics/iam.md>), [Serverless](<https://devfeed.tech/topics/serverless.md>), [Authorization](<https://devfeed.tech/topics/authorization.md>), [Python](<https://devfeed.tech/topics/python.md>), [Framework](<https://devfeed.tech/topics/framework.md>), [API](<https://devfeed.tech/topics/api.md>)

Tags: [api](<https://devfeed.tech/tags/api.md>), [cloud-computing](<https://devfeed.tech/tags/cloud-computing.md>), [deployment](<https://devfeed.tech/tags/deployment.md>), [framework](<https://devfeed.tech/tags/framework.md>), [gcp](<https://devfeed.tech/tags/gcp.md>), [goblet](<https://devfeed.tech/tags/goblet.md>), [google-cloud-platform](<https://devfeed.tech/tags/google-cloud-platform.md>), [iam](<https://devfeed.tech/tags/iam.md>), [identity-and-access](<https://devfeed.tech/tags/identity-and-access.md>), [permission](<https://devfeed.tech/tags/permission.md>), [python](<https://devfeed.tech/tags/python.md>), [serverless](<https://devfeed.tech/tags/serverless.md>), [tutorial](<https://devfeed.tech/tags/tutorial.md>)

### AI overview

This tutorial explains how the Goblet Python framework automates IAM policy management for serverless REST applications on Google Cloud Platform. It covers identifying deployment permissions, enabling required APIs, creating custom roles and service accounts, and adding invoker bindings for connected services.

### Source excerpt

By Austen Novis, Staff Software Engineer Photo by Akhilesh Sharma on Unsplash Writing and deploying serverless applications has never been easier, especially on Google Cloud Platform (GCP). With a few clicks developers are able to deploy their application to the cloud and then trigger calls in a variety of ways from Cloud Schedulers and Pubsub Subscriptions to API Gateways. Deploying your resources to GCP seems straightforward until you get a 403 error, permission denied. This error causes frustration as the root cause can be a number of issues, and often the solution requires knowing GCP roles and permissions in an in depth manner. The issue can be caused by the user not having the correct permissions to deploy their services or the services themselves not having the correct permissions to connect to each other. Once you have identified the problem you will need to understand what roles have the required permissions, how to apply those roles, and where to apply them. Instead of application developers wasting their time researching GCP documentation, searching stack overflow, or reaching out to devops teams, IAM access should be as automated as much as possible. Using the Goblet framework, we are now able to view exactly what permissions are needed to deploy our serverless applications, enable required GCP service API's, create a new custom role with these permissions, create a service account with this role, and add the correct invoker bindings so that all serverless services can connect to each other. Goblet is a python framework for writing serverless applications in GCP with the goal of making it as simple as possible to write and deploy REST applications. Goblet uses simple decorators, similar to flask, to create the necessary configurations and automatically deploy the required services and infrastructure. For example, with code below we can deploy a simple cloudfunction that is triggered by a pubsub subscription and a cloud scheduler. Goblet will also take ca