Cerbos newsletter December 2024
Since our last update, we have introduced a series of updates to Cerbos PDP, as well as a new use case on implementing authorization in RAG-based AI systems with Cerbos. In other news - Cerbos is now available on AWS Marketplace!
We've also been busy expanding our educational resources - we have published a guide on using Cerbos with Supabase, and a video demo on implementing access control for RAG and LLMs.?
Beyond technical guides, we've explored broader perspectives on authorization. We examined the importance of granular permission control, considerations when it comes to user management in SaaS applications, and why external authorization is essential for modern software architecture.
?? Milestone alert ?? Cerbos PDP has surpassed 4,000 stars on GitHub! We're grateful for the growing community support and trust. Check out our repository here.
Cerbos PDP
The v0.40 version of Cerbos PDP includes introducing a new constants policy type and improved ergonomics for test suites.
Constants policy type, a new way of defining structured, constant values that can be referenced in policy conditions, has been introduced. This is the perfect place to define common data such as quota levels, usage limits and configuration values which can then be interrogated in conditions across other policy types.
This release also includes several enhancements to the policy testing framework to help reduce repetition, increase readability and increase reliability:
This is the last Cerbos release with support for SQL Server as a policy storage backend. It will be removed in the next release of Cerbos.?
You can find the full release notes here: v0.40
Cerbos PDP is open source, check out our GitHub
领英推荐
Alex Olivier shared his insights into the nuances of authorization, the challenges it presents, and its role in scalable, secure application design. ABAC vs. RBAC, the difference between stateful and stateless authorization, and why Broken Access Control is in the OWASP Top 10 Security Vulnerabilities, are some of the other topics that were covered. Check out the episode to learn more.
For those of you who we met at WebSummit and Kubecon NA: thank you for stopping by and chatting with us. Your support means a lot!
We’re looking forward to the following conferences in the coming weeks.
Visit our booth at:
Meet Alex Olivier at:
Stay connected