Spotlight
Rory McCune
This article covers network security fundamentals in Kubernetes, explaining how clusters default to a flat pod network, how network policies enforce segmentation, and best practices like “default deny” and restricting host networking.
Serhan Ekici
This tutorial shows how to deploy OpenClaw on Kubernetes with a Helm chart and ArgoCD, using persistent storage, config modes, secrets handling, and network policies to reduce the blast radius of an AI agent.
David Nguyen
This article shows how to configure Role-Based Access Control (RBAC) in Kubernetes Engine (GKE), create roles, role bindings, and enforce least privilege across namespaces and cluster APIs.
Debdut Chakraborty
This article explains:
Tools and utilities
Netfence runs as a daemon, injecting eBPF filter programs into cgroups and network interfaces, with a built-in DNS server that resolves allowed domains and populates IP allowlists, and connecting to a central control plane to synchronize network rules.
k8s-ingress-gen is a visual diagram builder for Kubernetes resources with bidirectional YAML workflow.
zot is a production-ready vendor-neutral OCI image registry - images stored in OCI image format, distribution specification on-the-wire
Hortator lets AI agents spawn sub-agents at runtime, with each agent running in its own pod with budget caps, network policies, PII redaction, and capability inheritance so children can never escalate beyond their parent's permissions.
KubeVPN is a tool that seamlessly connects to your Kubernetes cluster network, allowing you to access cluster resources from your local machine.
Events starting soon
June 22, 2026
Location: Amsterdam, NL
This event requires an entrance fee
June 22, 2026
Location: Munich, DE
This event requires an entrance fee
June 23, 2026
This is a virtual event
This is a free event.
June 23, 2026
This is a virtual event
This is a free event.
June 23, 2026
Location: Cambridge, MA, USA
This is a free event.
June 24, 2026
Location: Sydney, AU and virtual
This is a free event.
Forced platform migrations are usually treated as something to survive. At Scout24, a mandatory OS migration became an opportunity to rethink Kubernetes autoscaling, node provisioning, and infrastructure efficiency.
John Ford explains how Scout24 moved its EKS-based Infinity platform from a polling autoscaler and over-provisioned capacity to Karpenter and Bottlerocket. The result was faster node startup, a safer migration path, and about a 30% infrastructure reduction without major downtime.
In this interview:
Learn from production
Alexey Demyanov
This case study shows how Palark migrated high-traffic Drupal 8 monoliths to Kubernetes to improve resilience, autoscaling, deployment automation, and DDoS handling while reducing infrastructure waste.
This blog post tells how the Render team:
Jack Lindamood
This case study shows how OOM Killer terminated a critical network daemon on Kubernetes nodes, causing a network outage.
It covers debugging via serial console and implementing memory reservations to prevent system-critical process termination.
Kalyan Josyula
This case study shows how a team traced repeated pod OOM kills in ASP.NET Core to native memory growth from zombie SignalR connections, glibc fragmentation, and kernel socket buffers.
Matching jobs
Data Engineer with Zensurance
Salary: $98.1K to $242K a year
Location: remote from
Tech stack: Kubernetes, Docker, Typescript, Javascript, Python, Snowflake, Terraform
DevOps Engineer with Applaudo Studios
Salary: $1 a day
Location: based in the office in Bogotá, CO
Tech stack: Kubernetes, GCP, Docker, Terraform
DevOps Engineer with Inferact
Salary: $200K to $400K a year
Location: based in the office in San Francisco, CA, USA
Tech stack: Kubernetes, AWS, Azure, GCP, On-premise, Helm, Go, Python, Rust, Terraform
DevOps Engineer with InnoCraft
Salary: $135K to $220K a year
Location: remote from
Tech stack: Kubernetes, AWS
DevOps Engineer with Octus
Salary: $160K to $215K a year
Location: based in the office in New York, NY, USA
Tech stack: Kubernetes, AWS, Docker, Shell, Terraform, GitHub Actions, Jenkins, Saltstack, Datadog
Build something
DV Engineering
This tutorial teaches how to collect Prometheus metrics from Kubernetes clusters and securely route them to remote Prometheus instances using Vector with mTLS encryption.
Thiago Marsal Farias
This tutorial shows how to build a high-availability k3s homelab cluster on Proxmox using embedded etcd, kube-vip, Rancher, Traefik, and Ansible automation.
Juanma Barea Martinez
This tutorial teaches how to secure LLM inference services on Kubernetes using Authorino and Envoy for authentication and authorization.
Matt Brown
This tutorial teaches how to implement container image signature verification in Kubernetes using Cosign for signing, Kyverno for policy enforcement, and Sigstore Policy Controller for admission control.
Call for Papers closing soon
2
days
Location: Utrecht, NL
In-person conference organized by Dutch CND.
The conference starts on the 29 October 2026.
5
days
Open Source Summit Europe 2026
Location: Prague, CZ
In-person conference organized by Linux Foundation.
The conference starts on the 9 October 2026.
6
days
Kubernetes Community Days Korea 2026
Location: Seoul, KR
In-person conference organized by KCD South Korea.
The conference starts on the 1 September 2026.
7
days
Kubernetes Community Days Washington DC 2026
Location: Washington, DC, USA
In-person conference organized by KCD Washington DC.
The conference starts on the 15 September 2026.
9
days
Kubernetes Community Days Nigeria 2026
Location: Lagos, NG
In-person conference organized by KCD Nigeria.
The conference starts on the 24 October 2026.
10
days
Location: Mexico City, MX
In-person conference organized by Nerdearla.
The conference starts on the 20 November 2026.
10
days
Location: Trondheim, NO
In-person conference organized by Containerkonferansen.
The conference starts on the 15 October 2026.
More articles
Ægir Máni Hauksson
This article explains that Kubernetes operators become hard to maintain without explicit component and resource-primitive layers between the controller and raw objects.
Happy Bhati
This article describes how Red Hat's Konflux team built an AI-powered "finally task" for Tekton pipelines that automatically distills 170,000-line failure logs into a 10-line diagnosis.
Florian Lettner
This article explains how building a k3s media server with Claude Code exposed both the speed and the limits of AI-first engineering across GitOps, observability, storage tuning, and Kubernetes debugging.
Sergey Goncharov
This case study walks through a real debugging story on EKS Fargate where missing a DHCP option set caused silent DNS failures and pods stuck in pending — and how to find and fix it.