Search results for: open policy containers


Kubernetes Annual Report 2021

Posted on June 1, 2022

This is a summary of the Kubernetes project’s contributor community and activities. This report documents both quantitative measures of community health (project milestones and snapshot) as well as qualitative measures of the community as reported by…


Kubernetes ephemeral container security

Posted on May 24, 2022 | Philip Laine

Guest post originally published on Xenit’s blog by Philip Laine, DevOps Engineer at Xenit Attempting to debug a Pod and realizing that you can’t install curl due to security settings has to be a meme at…


Announcing the Refreshed Cloud Native Security Whitepaper

Posted on May 18, 2022

The CNCF Security Technical Advisory Group (TAG) has just released a refreshed Cloud Native Security Whitepaper v2 to help educate the community about best practices for securing cloud native deployments. The whitepaper intends to provide organizations…


Adopting FinOps tool for pod-level Kubernetes cost management

Posted on May 11, 2022 | Asaf Liveanu

Guest post by Asaf Liveanu, Co-Founder & CPO at Finout Cost optimization is a growing concern for organizations rapidly moving towards open-source and cloud-native projects based on Kubernetes. While flexibility remains one of the key strengths…


How do you integrate Emissary Ingress with OPA

Posted on May 6, 2022 | Tayyab Jamadar

Guest post originally published on InfraCloud’s blog by Tayyab Jamadar API gateways play a vital role while exposing microservices. They are an additional hop in the network that the incoming request must go through in order…


How to secure deployments in Kubernetes?

Posted on May 2, 2022 | Leonid Sandler

Guest post originally published on ARMO’s blog by Leonid Sandler CTO & Co-founder at Armo Security is crucial ‌for containerized applications that run on a shared infrastructure. With more and more organizations moving their container workloads…


The grype admission controller

Posted on April 14, 2022 | Josh Knarr

Guest post originally published on the BoxBoat blog by Josh Knarr Intro Today I want to write about the grype admission controller. I wrote it. I am proud of it. I think it solves a really uncomfortable…


Kubernetes Scheduler introduction

Posted on March 28, 2022 | Patrick Fu

Guest post originally published on Gemini Open Cloud‘s blog by Patrick Fu, CEO of Gemini Open Cloud Kubernetes is a portable, extensible, open-source cluster manager for managing containerized workloads and services. The features of Kubernetes include…


Testing cloud native best practices with the CNF Test Suite

Posted on March 24, 2022

Community post by Joel Hans for CNCF The telecommunications industry is the backbone of today’s increasingly-digital economies, but it faces a difficult new challenge in evolving to meet modern infrastructure practices. How did telecommunications get itself…


Karmada: Multi-cluster Management with an Ocean of Nodes

Posted on March 22, 2022 | Kevin Wang, Shen Yifan

Guest post by Kevin Wang, Huawei and Shen Yifan, Commercial Bank of China In terms of multi-cluster management, Industrial and Commercial Bank of China (ICBC) found a new way to do it efficiently, that is, using…