
Security
Zero-trust networking in Kubernetes with Istio
Zero trust architecture in Kubernetes, from implementation and policy to observability.
15 min readRead article
Tag archive
Platform engineering notes on cluster design, workload operations, and the systems around running Kubernetes well.

Zero trust architecture in Kubernetes, from implementation and policy to observability.

A practical guide to managing Kubernetes resources with OpenTofu or Terraform.

Use External Secrets Operator to sync AWS Secrets Manager values into Kubernetes with IRSA, sane refresh policies, and less secret material in git.

How to set up and use IAM Roles for Service Accounts in EKS to securely manage pod-level IAM roles

Lowdown on the AWS Load Balancer Controller for Kubernetes ingress.

Deploy to Kubernetes from Git with Argo CD, and keep clusters in sync with what the repo says.