Presentations

As more folks deploy cloud-native architectures and technologies, store ever larger amounts of data, and build ever more complex software suites, the complexity required to correctly and securely authorize requests only becomes exponentially more difficult. Broken authorization now tops OWASP's Top 10 Security Risks. Their recommendation? Adopt ReBAC authorization models. This talk establishes the problems with the status quo, explains the concepts behind ReBAC, and introduces SpiceDB, a widely adopted open source ReBAC system inspired by the system internally powering Google: Zanzibar

This topic introduces ZIA technology—a revolutionary, cloud-agnostic migration solution that tackles the complexities of heterogeneous migration issues. By harnessing the power of ZIA, organizations can not only simplify but also accelerate their VMware migration to OpenStack, ensuring a seamless move and uninterrupted business operations.

Jetstream2 is a distributed OpenStack-based research cloud spanning five U.S. institutions, offering researchers GPU-accelerated and large-memory virtual machines, as well as containerized workflows through Kubernetes clusters. Users can deploy and manage resources via web interfaces, CLI, or APIs. From interactive development environments (Linux desktops, JupyterHub, RStudio) to web-hosted applications, we make advanced computing accessible to researchers regardless of their cloud or HPC experience. NSF-funded through ACCESS and NAIRR Pilot. Learn more at: https://jetstream-cloud.org/

This session will illustrate how to optimize your data platform for performance, scalability, flexibility, and reliability in OpenStack and OpenShift environments.

Discover how Pure Storage integrates into the OpenStack ecosystem and why it stands out as the ideal storage solution for OpenStack deployments.

A lot has been made about Broadcom's price increases for VMware, and there has also been a lot of attention paid to the technological aspects of migrating to OpenStack. Instead, let's take a look at the economics of the migration and how much it actually ends up costing organizations to migrate both in terms of licensing costs, as well as switching costs.
This talk is presented by OpenInfra Days Headline Sponsor - Rackspace Technologies

Scientific progress relies on incremental improvements, famously described by Newton’s "on the shoulders of giants." While this is true for scientific literature, code-driven analysis has not kept pace. As a scientist who transitioned from fieldwork to modeling land-atmosphere exchange, I've seen how research code often lacks long-term maintenance, limiting reuse. Research teams develop code over short timescales, publish, and move on. This talk proposes a paradigm shift in scientific coding practices, incorporating software engineering for sustainable, collaborative open-source code.

In cloud-native development, managing vulnerabilities is essential for secure, scalable environments. This talk covers the key elements of an effective vulnerability management strategy, including asset tracking, SBOMs, and risk prioritization, and provides actionable insights on implementing monitoring pipelines to detect and address threats early.



The audience will learn about the collaboration the OpenInfra Foundation has fostered with universities to get students involved in Open Source before graduation. After reaching over 100 students, we have learned a lot and are eager to share improvements and plans for the future.

The path from individual contributor (IC) to leadership in security engineering is often seen as a one-way trajectory—but what happens when the reality of management doesn’t align with your passion for deep technical work? Many security practitioners strive for leadership roles to drive meaningful change, only to find themselves frustrated by the bureaucratic and interpersonal challenges that come with management. Some return to IC roles, seeking hands-on impact, only to realize that true influence often requires a seat at the leadership table.