Fly.io's Secure Cloud Infrastructure: A Deep Dive into Macaroon Tokens
2025-03-30

Fly.io, a security bearer token company, details its Macaroon-based security system. The post focuses on its custom tkdb database, leveraging LiteFS and Litestream for high availability and data persistence, and secured communication via the Noise protocol. Token revocation, caching strategies, and leveraging Macaroon features to simplify service token management and enhance security are also covered. Fly.io's experience demonstrates that while some Macaroon features are underutilized by users, they provide significant internal infrastructure benefits, improving reliability and security.
(fly.io)
Tech
Security Tokens