
Apache Kafka Security in Confluent Cloud - Project Metamorphosis Month 6
10/7/2020
This post details Confluent Cloud's security features, including mandatory TLS encryption for all traffic (Kafka and HTTP), encryption at rest with BYOK support on AWS, enforced SASL PLAIN authentication for Kafka, SSO integration via SAML IdP, Role-Based Access Control (RBAC) for management operations, and Access Control Lists (ACLs) for data access. It also introduces an Audit Log for tracking cluster changes.