Learn Kubernetes Weekly issue 159 · 26 Nov 2025

CPU Limits: Scylla and Charybdis, v1.34 Container Restarts, Cached Clients, True Cost of Workloads, Cloud Cost Optimization Guide

This newsletter is brought to you by Heroku — Discover the thriving ecosystem of contributors, companies, and career paths in the Kubernetes World book

Articles

  1. Kubernetes CPU Limits: Scylla and Charybdis

    medium.com

    This article explains the difficult trade-off of setting Kubernetes CPU limits, detailing how limits cause CPU throttling while omitting them risks noisy neighbor problems.

  2. Kubernetes v1.34: Finer-Grained Control Over Container Restarts

    kubernetes.io

    This article introduces per-container restart policies and conditional restart rules in Kubernetes 1.34, letting you set restart behavior for each container and respond to specific exit codes.

  3. Understanding Kubernetes Cached Clients: How They Work and Why They Matter

    medium.com

    This article details how Kubernetes cached clients—built on informers, reflectors, and local caches—dramatically improve performance and scalability for controllers and operators by reducing direct API server calls.

  4. Understanding the True Cost of a Kubernetes Workload

    medium.com

    This article teaches you to break down costs from the cluster and node level all the way to individual microservices and API calls by combining Kubernetes metrics with APM data.

  5. Cloud Cost Optimization: A Senior Engineer’s Guide

    medium.com

    This article presents a senior engineer's three-pillar strategy for cloud cost optimization, focusing on application efficiency, data/storage strategies, and strategic service selection.

  6. Battle for Resources or the SSA Path to Kubernetes Diplomacy

    hackernoon.com

    This article explores how Server-Side Apply (SSA) can streamline resource management in Kubernetes clusters by shifting responsibility for updates, validation, and conflict resolution away from humans.

Articles worth checking out:

[eBook] Kubernetes World: Your Path

Kubernetes is more than containers and YAML files.

It's a thriving ecosystem of contributors, companies, and career paths. This book shows you how to find your place in it.

Download the eBook

[eBook] Kubernetes World: Your Path

Tutorials

  1. SPIFFE & SPIRE: Your Kubernetes Workloads’ Secret Identity Agency

    medium.com

    This tutorial walks you through deploying SPIFFE and SPIRE in Kubernetes to issue cryptographically secure, auto-rotating identities to workloads, enabling mTLS and zero-trust communication.

  2. Monitoring Kubernetes Cluster with Prometheus and Grafana using ArgoCD

    jackjapar.com

    This tutorial shows how to deploy Prometheus and Grafana via Argo CD to monitor a Kubernetes cluster, including GitOps-driven installation and dashboard setup.

  3. G-Cluster API + Talos + Proxmox = ❤️

    a-cup-of.coffee

    This guide shows how to provision fully automated Talos-based Kubernetes clusters on Proxmox using Cluster API, resolving key issues like bootstrap IP misconfig, cloud-init compatibility, missing providerID, and CCM integration for autoscaling.

More Kubernetes Than I Bargained For

Amos Wenger walks through his production incident where adding a home computer as a Kubernetes node caused TLS certificate renewals to fail. The discussion covers debugging techniques using tools like netshoot and K9s, and explores the unexpected interactions between Kubernetes overlay networks and consumer routers.

You will learn:

  • How Kubernetes networking assumptions break when mixing cloud VMs with nodes behind consumer routers, and why cert-manager challenges fail in NAT environments
  • The differences between CNI plugins like Flannel and Calico, particularly how they handle IPv6 translation
  • Debugging techniques for network issues using tools like netshoot, K9s, and iproute2
  • Best practices for mixed infrastructure including proper node labeling, taints, and scheduling controls
More Kubernetes Than I Bargained For

Kubernetes jobs

    • Platform Engineer with AMERICAN SYSTEMS

    • Salary: $155.7K to $260K a year

    • Location: remote from the United States of America

    • Tech stack: Kubernetes, Rancher, Helm, Shell, Python, Gitlab, Ansible

    • Systems Performance Engineer with Datadog

    • Salary: $187K to $240K a year

    • Location: based in the office (and remote from home) in Boston, MA / New York, NY, USA

    • Tech stack: Kubernetes, AWS, Go, Javascript, Rust, C, Datadog

    • DevOps Engineer with LEIDOS

    • Salary: $104.65K to $189.18K a year

    • Location: based in the office in Colorado Springs, CO, USA

    • Tech stack: Kubernetes, AWS, Azure, GCP, Oracle cloud, On-premise, Helm, Grafana, Prometheus, ELK

    • Site Reliability Engineer with Lambda

    • Salary: £146K to £310K a year

    • Location: remote from the United Kingdom, Germany, the Netherlands

    • Tech stack: Kubernetes, AWS, GCP, On-premise, Bare-metal, Data center, Helm, ArgoCD, Go, Python

    • Platform Engineer with Lyft

    • Salary: CA$136K to CA$170K a year

    • Location: based in the office (and remote from home) in Toronto, ON, CA

    • Tech stack: Kubernetes, AWS, GCP, Go, Python, Terraform, Grafana, Prometheus, Datadog, Istio

Discover more Kubernetes jobs on Kube Careers →

Code & tools

  1. Reloader: Kubernetes auto-reloader

    github.com/stakater

    Reloader is a Kubernetes controller that monitors changes in ConfigMap and Secrets and triggers rolling upgrades on Pods with their associated Deployment, StatefulSet or DaemonSet.

  2. Yoke: WASM IaC deployer

    github.com/yokecd

    Yoke is an IaC tool inspired by Helm that leverages WebAssembly and Go to dynamically deploy Kubernetes packages with executable runtime capabilities.

    It supports revision tracking, rollback, and inspection.

  3. kube-state-metrics

    github.com/kubernetes

    kube-state-metrics (KSM) is a service that listens to the Kubernetes API server and generates metrics about the state of objects such as deployments, nodes and pods.

  4. Freelens: Open Source Kubernetes Desktop IDE

    freelensapp.github.io

    Freelens is a cross-platform Kubernetes IDE that replaces OpenLens with a free, open-source UI.

  5. Smesh: Lightweight Kubernetes-Integrated Sidecar Mesh Without Proxies

    github.com/thebsdbox

    smesh is a proof-of-concept service mesh for Kubernetes that utilizes eBPF to intercept and redirect pod traffic to a sidecar proxy.

Other interesting projects:

Subscribe to Learn Kubernetes Weekly

Trusted by 77K engineers. Delivered 159 issues and counting.

or subscribe via

Upcoming Kubernetes events

  1. Dec

    3

    CozySummit Virtual 2025

    Online conference organized by CNCF.

    • This is a virtual event

    • This is a free event.

  2. Nov

    27

    Cloud Native Latam Summit

    Online conference organized by Cloud Native LATAM.

    • This is a virtual event

    • This is a free event.

  3. Nov

    27

    A tale of millions of events & thousands of edge clusters

    In-person meetup organized by Cloud Native Copenhagen.

    • Location: Hellerup, DK

    • This is a free event.

  4. Dec

    3

    Zero-Code Observability: Kubernetes Auto-instrumentation with eBPF

    In-person meetup organized by Cloud Native Graz.

    • Location: Graz, AT

    • This is a free event.

  5. Nov

    26

    Devopsdays Wollongong

    In-person conference organized by Devopsdays.

    • Location: Wollongong, AU

    • This event requires an entrance fee

Discover more Kubernetes events on Kube Events →

Thanks to our sponsors who make Kube Today possible

  • LearnKube
  • Akamai
  • Fairwinds
  • Densify
Find out more about being a sponsor →

Kubernetes call for papers

  1. 80

    days

    CfgMgmtCamp 2026 Ghent

    The Call For Paper is open until 15 February 2026 at UTC. More info →
    • Location: Ghent, BE

    • In-person conference organized by CfgMgmtCamp.

    • The conference starts on the 4 February 2026.

    • Apply here
  2. 4

    days

    Devopsdays Los Angeles

    The Call For Paper is open until 1 December 2025 at UTC. More info →
    • Location: Los Angeles, CA, USA

    • In-person conference organized by Devopsdays.

    • The conference starts on the 6 March 2026.

    • Apply here
  3. 4

    days

    DevOpsCon San Diego 2026

    The Call For Paper is open until 1 December 2025 at UTC. More info →
    • Location: San Diego, CA, USA and virtual

    • Online & in-person conference organized by S&S Media.

    • The conference starts on the 1 June 2026.

    • Apply here
  4. 1

    days

    CloudLand

    The Call For Paper is open until 28 November 2025 at UTC. More info →
    • Location: Soltau, DE

    • In-person conference organized by DOAG e.V..

    • The conference starts on the 19 May 2026.

    • Apply here
  5. 67

    days

    Web Days Convention

    The Call For Paper is open until 2 February 2026 at UTC. More info →
    • Location: Aix-en-Provence, FR

    • In-person conference organized by Web Days.

    • The conference starts on the 6 February 2026.

    • Apply here
  6. 9

    days

    NDC Sydney 2026

    The Call For Paper is open until 6 December 2025 at UTC. More info →
    • Location: Sydney, AU

    • In-person conference organized by NDC.

    • The conference starts on the 23 April 2026.

    • Apply here
  7. 18

    days

    FOSSASIA Summit 2026

    The Call For Paper is open until 15 December 2025 at UTC. More info →
    • Location: Bangkok, TH

    • In-person conference organized by FOSSASIA.

    • The conference starts on the 10 March 2026.

    • Apply here
  8. 53

    days

    Devopsdays Atlanta

    The Call For Paper is open until 19 January 2026 at UTC. More info →
    • Location: Atlanta, GA, USA

    • In-person conference organized by Devopsdays.

    • The conference starts on the 21 April 2026.

    • Apply here
  9. 66

    days

    Devopsdays Copenhagen

    The Call For Paper is open until 31 January 2026 at UTC. More info →
    • Location: Copenhagen, DK

    • In-person conference organized by Devopsdays.

    • The conference starts on the 28 April 2026.

    • Apply here

Until next time!

— Gulcan

Subscribe to Learn Kubernetes Weekly

Trusted by 77K engineers. Delivered 159 issues and counting.

or subscribe via