opa gatekeeper and policy controller during continuous integration (ci) pipelines

let’s see how to shift left on security by catching opa gatekeeper policy violations during continuous integration (ci) pipelines.
read more →

secure your apps and your cluster with anthos service mesh

let’s see how you could protect and secure both your apps and your cluster with anthos service mesh (asm)
read more →

gke cos version

let’s see how to get the cos version of your gke nodes
read more →

mix both internal and external load balancers to expose your crfa services

let’s see how to setup both external and internal load balancers to expose your services in the same crfa cluster
read more →

cloud armor to protect your apps deployed on gke

let’s see how you could protect your apps deployed on gke against denial of service and web attacks
read more →

ebpf and cilium, to bring more security and more networking capabilities in gke

let’s see ebpf and cilium on gke and how they are bringing more security and networking capabilities
read more →

opa gatekeeper with policy controller

let’s see in actions how we could easily leverage opa gatekeeper on any kubernetes cluster via policy controller
read more →

fasten your seatbelt, and turn autopilot mode on

let’s see in actions the new gke’s autopilot mode
read more →

gitops on gke with config sync

let’s see gitops in actions with gke’s config sync
read more →

vertical pod autoscaler

let’s discuss about the vertical pod autoscaler and how it could help setting your Kubernetes resources request and limits.
read more →

advanced continuous integration pipeline for containers

let’s setup an advanced continuous integration pipeline for containers
read more →

my capture the flag (ctf) and kubecon na 2020 experiences

let’s see what I have learned during my first kubecon conference as well as my first capture the flag (ctf) experience to improve my knowledge about security with containers and kubernetes.
read more →

online boutique demo

let’s see how to deploy the online boutique solution on gke, w/ or w/o workload identity
read more →

binary authorization on gke

let’s see how you can only run what you trust (tl;dr whitelisted registries and signed containers) on gke with binauthz
read more →

demo bank on gke

let’s see how to deploy the demo bank (aka bank of anthos) solution on gke, w/ or w/o workload identity
read more →

confidential computing with gke

let’s see how easy it is to enable confidential computing on a gke cluster
read more →

gke’s service account

let’s discuss about how to deal with gke’s service account and few tips to improve your security posture, especially with fine-grained identity and authorization for applications with workload identity
read more →

container native networking

let’s see how gcp brings unique and true container native networking with gke
read more →

application modernization at google next onair 2020

let’s see in details what is google next onair 2020 and more specifically what you should watch on an application modernization standpoint
read more →

cloud operations with gke

let’s see how to leverage google cloud operations (aka stackdriver) with gke
read more →

build and deploy a containerized app on gke with cloud build

let’s see how to use google cloud build to build and deploy a containerized app on gke
read more →

my second week with gcp

let’s share some learnings during my second week leveraging gcp, focused on gke
read more →

my first week with gcp

let’s share some learnings during my first week leveraging gcp, tools and services like linux on my pixelbook, gcloud cli, docker, git, service account, gcr, cloud run, app engine and kubernetes engine
read more →

advanced aks cluster setup with terraform

let’s see advanced terraform templates around my aks cluster setup
read more →

setup a performant aks cluster

let’s highlight tips & tricks about the setup of an aks cluster to make it more performant as its getting more and more containers at scale
read more →

hello, cloud native hugo blog!

let’s discuss why my new blog is a containerized hugo website hosted on kubernetes
read more →

container security context on kubernetes

let’s add more security context to your containers on kubernetes
read more →

private aks and private acr, safer you are

let’s setup azure private endpoint for both azure kubernetes service (aks) and azure container registry (acr)
read more →

my own custom and private azure pipelines agent as a docker container

let’s build a custom linux container image as an azure pipelines agent
read more →

buildah, a tool to facilitate building oci container images

let’s build your own oci container images with buildah
read more →

podman, a daemonless container engine

let’s have a look at podman, a daemonless container engine
read more →

flexible kured deployment with its helm chart

let’s be more flexible while deploying kured thanks to its helm chart
read more →

my bot just became a cloud native app

let’s leverage docker, helm, kubernetes and terraform to make your bot app more cloud native
read more →

helm 3 is out

let’s go through the latest and greatest of helm 3
read more →

ignite 2019, what’s new with containers and kubernetes on azure?

let’s see what has been announced around the containers technologies at the microsoft ignite conference 2019
read more →

kubernetes network policies, how to secure the communications between your pods

let’s secure the communications between your pods with calico kubernetes network policies
read more →

ci/cd pipeline with azure devops to deploy any apps on kubernetes

let’s build and deploy a containerized app in kubernetes via azure pipelines
read more →

helm chart management in ci/cd with acr and azure devops

let’s do ci/cd with your own helm charts, acr and aks via azure pipelines
read more →

keda, event-driven containers for Kubernetes

let’s see what’s keda what it is in action
read more →

windows containers with kubernetes 1.14

let’s see what does mean the graduation of the windows nodes support in k8s as stable
read more →