Spotlight

Cilium Network Policies: L7 HTTP Filtering with eBPF on Kubernetes

Dilan Dashintha

This tutorial shows how to use Cilium and Hubble to enforce HTTP path based network policies in Kubernetes with eBPF, so you can allow or block specific endpoints without sidecars.

More articles →

Tools and utilities

  • Yoke: WASM IaC deployer

    Yoke is an IaC tool inspired by Helm that leverages WebAssembly and Go to dynamically deploy Kubernetes packages with executable runtime capabilities.

  • Kubeconform

    Kubeconform is a Kubernetes manifests validation tool.

  • Context Builder: Infrastructure context generator for AI agents

    Context Builder is a CLI tool that extracts metadata from Kubernetes, Grafana, Datadog and other systems to generate structured context files for AI agents, improving debugging accuracy and reducing guesswork.

  • KubeVPN

    KubeVPN connects your local machine to a Kubernetes cluster network so you can reach pods and services by name and proxy inbound traffic with service mesh header routing.

  • Cluster Agent Swarm Skills

    Cluster Agent Swarm Skills is a collection of specialized AI agent skills for Kubernetes and OpenShift operations, covering cluster management, GitOps, security, observability, incident response, and platform workflow orchestration.

More projects →

Events starting soon

Discover more events onn Kube Events →

The Hidden Cost of Slow Autoscaling
The Hidden Cost of Slow Autoscaling

Forced platform migrations are usually treated as something to survive. At Scout24, a mandatory OS migration became an opportunity to rethink Kubernetes autoscaling, node provisioning, and infrastructure efficiency.

John Ford explains how Scout24 moved its EKS-based Infinity platform from a polling autoscaler and over-provisioned capacity to Karpenter and Bottlerocket. The result was faster node startup, a safer migration path, and about a 30% infrastructure reduction without major downtime.

In this interview:

  • Why two-minute node provisioning forced a 25% capacity buffer
  • How Karpenter made the Bottlerocket migration safer
  • What broke around EC2 metadata, AWS SDKs, and cgroups
  • How the new foundation enables Spot, ARM, and GPU workloads

Learn from production

More case studies →

Matching jobs

    • Software Engineer with iFood

    • Salary: $30.24K to $247.5K a year

    • Location: remote from

    • Tech stack: Kubernetes, AWS, Docker, Go, Kotlin, SQL, RabbitMQ, Kafka

    • Data Engineer with Filevine

    • Salary: $18K to $297.88K a year

    • Location: remote from

    • Tech stack: Kubernetes, AWS, Azure, GCP, Docker, C#, Python, SQL, Snowflake, Airflow

    • Data Engineer with Firmus Technologies

    • Salary: US$88.2K to US$286K a year

    • Location: based in the office in Singapore, SG

    • Tech stack: Kubernetes, AWS, Azure, GCP, Helm, Python, SQL, Snowflake, Kafka, Airflow

    • Head Of Engineering with Cyara

    • Salary: $185.4K to $385K a year

    • Location: remote from

    • Tech stack: Kubernetes, AWS, Docker

Discover more Kubernetes jobs on Kube Careers →

Subscribe to Learn Kubernetes Weekly

Trusted by 77K engineers. Delivered 184 issues and counting.

or subscribe via

Build something

More tutorials →

Call for Papers closing soon

  1. 5

    days

    DebConf26

    The Call For Paper is open until 25 May 2026 at GMT-4. More info →
    • Location: Santa Fe, AR and virtual

    • Online & in-person conference organized by Debian Argentina community.

    • The conference starts on the 20 July 2026.

    • Apply here
  2. 11

    days

    DevOpsDays Istanbul 2026

    The Call For Paper is open until 31 May 2026 at GMT-4. More info →
    • Location: Istanbul, TR

    • In-person conference organized by DevOps Turkey.

    • The conference starts on the 29 September 2026.

    • Apply here
  3. 11

    days

    DevOps Midwest 2026

    The Call For Paper is open until 31 May 2026 at GMT-4. More info →
    • Location: St. Louis, MO, USA

    • In-person conference organized by Sketch.

    • The conference starts on the 22 August 2026.

    • Apply here
  4. 11

    days

    KubeCon + CloudNativeCon North America 2026

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Los Angeles, CA, USA

    • In-person conference organized by Linux Foundation.

    • The conference starts on the 26 October 2026.

    • Apply here
  5. 12

    days

    Heapcon 2026

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Belgrade, RS

    • In-person conference organized by heapspace.

    • The conference starts on the 6 November 2026.

    • Apply here
  6. 12

    days

    Cloud Native Days Norway

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Bergen, NO

    • In-person conference organized by CND Norway.

    • The conference starts on the 27 October 2026.

    • Apply here
  7. 12

    days

    Devopsdays Istanbul

    The Call For Paper is open until 1 June 2026 at GMT-4. More info →
    • Location: Istanbul, TR

    • In-person conference organized by Devopsdays.

    • The conference starts on the 24 October 2026.

    • Apply here

Thanks to our sponsors who make Kube Today possible

Find out more about being a sponsor →

More articles

Even more articles →