Use case

Enforce zero trust networking with Consul

Consul is a core component of HashiCorp's zero trust security solution. Consul enforces zero trust by using identity-based access to ensure all communication within the service mesh is authenticated with TLS certificates and encrypted in transit.

Challenge

Security within network

In traditional security strategies, protection was primarily focused on the perimeter of a network. In cloud environments, the surface area for network access is much wider than the traditional on-premises networks. In addition, traditional security practices overlook the fact that many bad actors can originate from within the network walls. Zero trust security practices are now required to ensure both external and internal communications are authenticated and encrypted.

Solution

Security and governance

Consul enforces zero trust security between all services within the service mesh. Consul supports a built-in certificate authority (CA), Vault, and AWS PCA to automatically generate and rotate TLS certificates used to authenticate and encrypt communication. This helps to increase the adoption of a zero trust security model. Consul's service intentions provide control to developers to ensure only the specified services are allowed to communicate. Consul also supports Vault to centralize certificate and secrets management.

Authenticate with mTLS and encrypt connections between services.
Hear how Tide abandoned its adoption of AWS AppMesh in favor of HashiCorp Consul, making the transition in only 6 weeks with no downtime and no big-bang migration.
Hear how Tide abandoned its adoption of AWS AppMesh in favor of HashiCorp Consul, making the transition in only 6 weeks with no downtime and no big-bang migration.
Customer case study

Tide's self-service service mesh with HCP Consul

Learn how Tide abandoned its adoption of AWS AppMesh in favor of HashiCorp Consul, making the transition in only 6 weeks with no downtime and no big-bang migration.

Introduction to HashiCorp Consul

HashiCorp Co-Founder and CTO Armon Dadgar gives a whiteboard overview of HashiCorp Consul, a service networking solution to connect, configure, and secure services in dynamic infrastructure.