Posts in 2022

  • Kubernetes 1.26: We're now signing our binary release artifacts!

    By Sascha Grunert | Monday, December 12, 2022 in Blog

    The Kubernetes Special Interest Group (SIG) Release is proud to announce that we are digitally signing all release artifacts, and that this aspect of Kubernetes has now reached beta. Signing artifacts provides end users a chance to verify the …

    Read more

  • Kubernetes v1.26: Electrifying

    By Kubernetes 1.26 Release Team | Friday, December 09, 2022 in Blog

    It's with immense joy that we announce the release of Kubernetes v1.26! This release includes a total of 37 enhancements: eleven of them are graduating to Stable, ten are graduating to Beta, and sixteen of them are entering Alpha. We also have twelve …

    Read more

  • Forensic container checkpointing in Kubernetes

    By Adrian Reber (Red Hat) | Monday, December 05, 2022 in Blog

    Forensic container checkpointing is based on Checkpoint/Restore In Userspace (CRIU) and allows the creation of stateful copies of a running container without the container knowing that it is being checkpointed. The copy of the container can be …

    Read more

  • Finding suspicious syscalls with the seccomp notifier

    By Sascha Grunert | Friday, December 02, 2022 in Blog

    Debugging software in production is one of the biggest challenges we have to face in our containerized environments. Being able to understand the impact of the available security options, especially when it comes to configuring our deployments, is …

    Read more

  • Boosting Kubernetes container runtime observability with OpenTelemetry

    By Sascha Grunert | Thursday, December 01, 2022 in Blog

    When speaking about observability in the cloud native space, then probably everyone will mention OpenTelemetry (OTEL) at some point in the conversation. That's great, because the community needs standards to rely on for developing all cluster …

    Read more

  • registry.k8s.io: faster, cheaper and Generally Available (GA)

    By Adolfo García Veytia (Chainguard), Bob Killen (Google) | Monday, November 28, 2022 in Blog

    Starting with Kubernetes 1.25, our container image registry has changed from k8s.gcr.io to registry.k8s.io. This new registry spreads the load across multiple Cloud Providers & Regions, functioning as a sort of content delivery network (CDN) for …

    Read more

  • Kubernetes Removals, Deprecations, and Major Changes in 1.26

    By Frederico Muñoz (SAS) | Friday, November 18, 2022 in Blog

    Change is an integral part of the Kubernetes life-cycle: as Kubernetes grows and matures, features may be deprecated, removed, or replaced with improvements for the health of the project. For Kubernetes v1.26 there are several planned: this article …

    Read more

  • Live and let live with Kluctl and Server Side Apply

    By Alexander Block | Friday, November 04, 2022 in Blog

    This blog post was inspired by a previous Kubernetes blog post about Advanced Server Side Apply. The author of said blog post listed multiple benefits for applications and controllers when switching to server-side apply (from now on abbreviated with …

    Read more

  • Server Side Apply Is Great And You Should Be Using It

    By Daniel Smith (Google) | Thursday, October 20, 2022 in Blog

    Server-side apply (SSA) has now been GA for a few releases, and I have found myself in a number of conversations, recommending that people / teams in various situations use it. So I’d like to write down some of those reasons. Obvious (and …

    Read more

  • Current State: 2019 Third Party Security Audit of Kubernetes

    By Cailyn Edwards (Shopify), Pushkar Joglekar (VMware), Rey Lejano (SUSE), Rory McCune (DataDog) | Wednesday, October 05, 2022 in Blog

    We expect the brand new Third Party Security Audit of Kubernetes will be published later this month (Oct 2022). In preparation for that, let's look at the state of findings that were made public as part of the last third party security audit of 2019 …

    Read more