
5/28/2020 · Rick Spurgeon
What this post added
This post details the security features of Apache Kafka and Confluent Platform, covering authentication mechanisms (SASL with PLAIN, SCRAM, GSSAPI, OAUTHBEARER; mTLS), authorization mechanisms (Kafka ACLs, Confluent Platform's centralized ACLs, Role-Based Access Control (RBAC) powered by Confluent's Metadata Service), and encryption for data in transit (SSL/TLS). It provides configuration examples for Kafka brokers, ZooKeeper, and HTTP-based services (Kafka Connect, Schema Registry, REST Proxy, ksqlDB, Control Center). The post emphasizes the importance of securing these components for enterprise production environments and highlights the benefits of RBAC for managing access across multiple Kafka clusters and services.