uk
Feedback
Kube Architect

Kube Architect

Відкрити в Telegram

News and links on architecting and developing apps on Kubernetes curated by the @Learnk8s team

Показати більше
8 946
Підписники
Немає даних24 години
Немає даних7 днів
+530 день

Триває завантаження даних...

Залучення підписників
червень '26
червень '26
+29
в 1 каналах
травень '26
+88
в 2 каналах
Get PRO
квітень '26
+108
в 3 каналах
Get PRO
березень '26
+108
в 5 каналах
Get PRO
лютий '26
+65
в 2 каналах
Get PRO
січень '26
+82
в 2 каналах
Get PRO
грудень '25
+62
в 3 каналах
Get PRO
листопад '25
+73
в 2 каналах
Get PRO
жовтень '25
+63
в 2 каналах
Get PRO
вересень '25
+69
в 2 каналах
Get PRO
серпень '25
+77
в 4 каналах
Get PRO
липень '25
+76
в 4 каналах
Get PRO
червень '25
+100
в 2 каналах
Get PRO
травень '25
+211
в 2 каналах
Get PRO
квітень '25
+274
в 3 каналах
Get PRO
березень '25
+274
в 1 каналах
Get PRO
лютий '25
+259
в 4 каналах
Get PRO
січень '25
+411
в 3 каналах
Get PRO
грудень '24
+456
в 3 каналах
Get PRO
листопад '24
+502
в 2 каналах
Get PRO
жовтень '24
+497
в 1 каналах
Get PRO
вересень '24
+573
в 2 каналах
Get PRO
серпень '24
+647
в 3 каналах
Get PRO
липень '24
+460
в 2 каналах
Get PRO
червень '24
+428
в 5 каналах
Get PRO
травень '24
+529
в 5 каналах
Get PRO
квітень '24
+579
в 4 каналах
Get PRO
березень '24
+522
в 3 каналах
Get PRO
лютий '24
+412
в 2 каналах
Get PRO
січень '24
+289
в 3 каналах
Get PRO
грудень '23
+361
в 4 каналах
Get PRO
листопад '23
+66
в 1 каналах
Get PRO
жовтень '23
+63
в 3 каналах
Get PRO
вересень '23
+115
в 0 каналах
Get PRO
серпень '23
+66
в 0 каналах
Get PRO
липень '23
+54
в 0 каналах
Get PRO
червень '23
+67
в 0 каналах
Get PRO
травень '23
+99
в 0 каналах
Get PRO
квітень '23
+73
в 0 каналах
Get PRO
березень '23
+76
в 0 каналах
Get PRO
лютий '23
+50
в 0 каналах
Get PRO
січень '23
+75
в 0 каналах
Get PRO
грудень '22
+89
в 0 каналах
Get PRO
листопад '22
+95
в 0 каналах
Get PRO
жовтень '22
+71
в 0 каналах
Get PRO
вересень '22
+65
в 0 каналах
Get PRO
серпень '22
+171
в 0 каналах
Get PRO
липень '22
+79
в 0 каналах
Get PRO
червень '22
+61
в 0 каналах
Get PRO
травень '22
+156
в 0 каналах
Get PRO
квітень '22
+67
в 0 каналах
Get PRO
березень '22
+66
в 0 каналах
Get PRO
лютий '22
+49
в 0 каналах
Get PRO
січень '22
+37
в 0 каналах
Get PRO
грудень '21
+25
в 0 каналах
Get PRO
листопад '21
+48
в 0 каналах
Get PRO
жовтень '21
+423
в 0 каналах
Дата
Залучення підписників
Згадування
Канали
10 червня+4
09 червня+5
08 червня+3
07 червня+3
06 червня+2
05 червня+2
04 червня+3
03 червня+3
02 червня+2
01 червня+2
Дописи каналу
Repost from Kubesploit
This tutorial shows how to secure east-west traffic in GKE using an Internal Regional Gateway with Envoy proxies, certificates, HTTP Routes with path rewriting, and a zero-trust architecture for service-to-service communication. More: https://ku.bz/VqqYrclKm

2
PostgreSQL on Kubernetes is no longer “can we?” but “how?” This guide covers the architecture choices that matter: operators,
PostgreSQL on Kubernetes is no longer “can we?” but “how?” This guide covers the architecture choices that matter: operators, HA, PgBouncer, storage, monitoring, backups, and PITR. https://ku.bz/LvMcNf6KT
208
3
With k-inv, you can stress a Kubernetes cluster in a fun way and check its resilience by playing space invaders. More: https:
With k-inv, you can stress a Kubernetes cluster in a fun way and check its resilience by playing space invaders. More: https://ku.bz/chMMB0vF_
187
4
Molly Sheets, Director of Engineering, Kubernetes at Zynga, addresses the common fears teams have about multi-tenant Kubernet
Molly Sheets, Director of Engineering, Kubernetes at Zynga, addresses the common fears teams have about multi-tenant Kubernetes and provides specific technical practices to make it work effectively. She explains why teams worry about sharing cluster space and outlines the essential safeguards needed for successful multi-tenancy. Molly emphasizes that CPU limits are more critical than memory limits for game workloads and stresses the importance of resource quotas. She also discusses monitoring strategies that cover both low-level resource usage and application-level metrics. A key insight is her focus on host-level requirements and shared agent dependencies - highlighting how disk space usage by shared components can impact all tenants if not properly managed. Watch the full episode: https://ku.bz/Rmpl8948_
201
5
This week on Learn Kubernetes Weekly 187: 🧠 Applying Kubernetes Patterns to LLM Workloads 🐢 Why Your Grafana is Slow on Kub
This week on Learn Kubernetes Weekly 187: 🧠 Applying Kubernetes Patterns to LLM Workloads 🐢 Why Your Grafana is Slow on Kubernetes (and 3 Replicas Won't Fix It) 📊 Observability at Albert Heijn 🎬 Vibe Coding a Kubernetes Media Server: What I Learned About AI-First Engineering 🔌 Installing Kong Gateway Custom Plugins on Kubernetes using Helm Charts Read it now: https://kube.today/issues/187 ⭐️ This newsletter is brought to you by WeAreDevelopers World Congress — The World’s Largest Event for Developers, AI Builders & Tech Leaders https://ku.bz/cwnthSpPK
213
6
StormForge just received the patent for their HPA algorithm — four years after first applying. Yasmin Rajabi from CloudBolt S
StormForge just received the patent for their HPA algorithm — four years after first applying. Yasmin Rajabi from CloudBolt Software explains what makes it unique: the algorithm adjusts CPU and memory requests while preserving your HPA scaling behavior by patching target utilization. Most vertical-right-sizing tools break horizontal scaling — StormForge's approach keeps them working together. Watch the announcement: https://ku.bz/BLhCGcbB9 Read the announcement: https://ku.bz/JrbVrpS_t
422
7
🚀 New on LearnKube: Microservice authentication with Kubernetes Service Accounts. Service Accounts are usually described as
🚀 New on LearnKube: Microservice authentication with Kubernetes Service Accounts. Service Accounts are usually described as identities used to call the Kubernetes API. But you can also use them to authenticate requests between services inside the cluster. The article walks through: - how an API service can pass its Service Account token to a data store - how the data store can validate the token with the TokenReview API - why accepting any valid token is not enough - how projected Service Account tokens let you bind a token to a specific audience Thanks to Gulcan for putting together the full walkthrough with diagrams, manifests, Go snippets, TokenReview examples, and projected Service Account tokens. Read the full guide: https://learnkube.com/microservices-authentication-kubernetes
318
8
This blog post tells how the Render team: - tracked down Kubernetes memory waste caused by many daemonset namespace watches,
This blog post tells how the Render team: - tracked down Kubernetes memory waste caused by many daemonset namespace watches, - fixed config issues, - and freed over 7 TiB of memory across clusters by reducing unnecessary listwatch overhead. More: https://ku.bz/2vS0QsvjY
434
9
Brian Donelan, VP Cloud Platform Engineering at JPMorganChase, explains how he solved a common developer problem: preventing
Brian Donelan, VP Cloud Platform Engineering at JPMorganChase, explains how he solved a common developer problem: preventing forgotten cloud resources from generating unexpected bills. Brian's key insight was treating these cloud services as "extensions of his MacBook" - since only he would use them, they should scale based on whether his laptop is active. This led him to create an automated solution that connects his MacBook's screen lock state to Kubernetes autoscaling. Watch the full episode: https://ku.bz/sFd8TL1cS
491
10
"Do you want the single pane of glass? Or do you want a more distributed architectural setup?" That's the real question when
"Do you want the single pane of glass? Or do you want a more distributed architectural setup?" That's the real question when choosing a GitOps tool, says Zach Aller. Argo CD's pull-based approach gives you a central UI to manage multiple clusters — and that's been a major driver of its adoption. But it comes with performance trade-offs at scale. The choice isn't about which tool is "better." It's about whether your team needs centralized visibility or distributed control. Watch the full interview: https://ku.bz/7Bf_w3bN_ This interview is a reaction to Mai Nishitani's episode https://ku.bz/3hWvQjXxp
478
11
This tutorial shows how to build a hub-style multi-cluster cert-manager control plane where a central hub cluster manages certificate issuance and distribution across multiple spoke clusters using cert-manager and trust-manager. More: https://ku.bz/LKB8W3PMJ
424
12
This week on Learn Kubernetes Weekly 186: 🔥 1 Million Tokens Per Second: Qwen 3.5 27B on GKE with B200 GPUs 🤖 How I Built K
This week on Learn Kubernetes Weekly 186: 🔥 1 Million Tokens Per Second: Qwen 3.5 27B on GKE with B200 GPUs 🤖 How I Built Kernel: An AI-Powered IT Helpdesk That Deflects 80% of Support Tickets ⚙️ Ansible AWX: Infrastructure Automation on Top of Kubernetes 🛡️ I Setup Kubermatic SecureGuard Before It Even Existed 🔐 SRE: Secrets Management in Kubernetes Read it now: https://kube.today/issues/186 ⭐️ This newsletter is brought to you by StormForge by CloudBolt. Stop setting Kubernetes requests. Let ML handle rightsizing https://ku.bz/2wYKp0Q2Y
389
13
YAML often gets reviewed by teams that adopted engineering discipline later than application developers did. Viktor Farcic ex
YAML often gets reviewed by teams that adopted engineering discipline later than application developers did. Viktor Farcic explains why YAML and Helm changes can escape the same level of scrutiny as application code. His point is not that configuration is less important. It is that different teams typically inherit different habits around version control, review, and operational rigor. If the practices are uneven, the review quality will be uneven too. Watch the full interview: https://ku.bz/7ZnM0ZlDy
516
14
"Manual optimization breaks before you get to 250 changes a day." Yasmin Rajabi explains a CloudBolt Software survey finding:
"Manual optimization breaks before you get to 250 changes a day." Yasmin Rajabi explains a CloudBolt Software survey finding: most teams still require human review for resource optimization, even though Kubernetes environments can run hundreds or thousands of workloads. The takeaway: human review does not scale once optimization becomes daily operational work. Watch the announcement: https://ku.bz/HDtVsM95b Read The Kubernetes Automation Trust Gap study: https://ku.bz/449hgHFbV
523
15
Mike Stefaniak, Head of Product, Kubernetes and Registries at Amazon Web Services (AWS), tackles a fundamental platform engin
Mike Stefaniak, Head of Product, Kubernetes and Registries at Amazon Web Services (AWS), tackles a fundamental platform engineering question: how much Kubernetes knowledge should developers actually have? Mike advocates for a "middle ground" approach where platform teams build abstractions, paved paths, and best practices without completely hiding that applications run on Kubernetes. He argues that complete abstraction is a mistake because it cuts developers off from the rich Kubernetes ecosystem. Watch the full interview: https://ku.bz/NH_jwkNcR This interview is a reaction to Andrew Jeffree's episode https://ku.bz/Xvyp1_Qcv
461
16
📣 New on LearnKube: "The mechanics of Kubernetes RBAC and how it connects users to permissions." Kubernetes RBAC can feel co
📣 New on LearnKube: "The mechanics of Kubernetes RBAC and how it connects users to permissions." Kubernetes RBAC can feel confusing because the object names sound broader than the scope they actually grant. A ClusterRole does not always mean cluster-wide access. If you bind a ClusterRole with a RoleBinding, the permissions apply only in the namespace where the RoleBinding lives. The article walks through: - Why direct user-to-permission mappings do not scale - how Roles and ClusterRoles group permissions into reusable sets - how RoleBindings and ClusterRoleBindings connect identities to permissions - How to test access with kubectl auth can-i Read the full guide: https://learnkube.com/rbac-kubernetes
376
17
Ryan Brainard, Software Engineering PMTS @ Heroku by Salesforce, explains how GitOps serves as a crucial source of truth and
Ryan Brainard, Software Engineering PMTS @ Heroku by Salesforce, explains how GitOps serves as a crucial source of truth and addresses the configuration drift problems his team experienced with Helm-based pipelines. Ryan emphasizes that they avoid manual changes entirely and treat clusters as cattle, not pets - making them completely disposable and enabling seamless upgrades. This approach leverages their immutable and ephemeral workloads to maintain consistency and eliminate configuration drift at scale. Watch the full interview: https://ku.bz/WY43k-PBd This interview is a reaction to Andrew Jeffree's episode https://ku.bz/Xvyp1_Qcv
721
18
Swimmer is a native desktop Kubernetes GUI built for multi-cluster workflows, letting you browse 27+ resource types, compare clusters in split panels, and run terminal sessions per cluster, built with Tauri and Rust. More: https://ku.bz/mFQXr4w0h
550
19
Percona vs MongoDB Community vs KubeDB vs Atlas — which operator should you run for MongoDB on Kubernetes? Full breakdown + architecture + PITR guide → https://ku.bz/2n-smMsxC
700
20
Kubernetes cost optimization starts with Node Autoscaler and proper resource sizing. Amin Astaneh shares strategies: dynamica
Kubernetes cost optimization starts with Node Autoscaler and proper resource sizing. Amin Astaneh shares strategies: dynamically size clusters with Node Autoscaler and ensure workloads fit within resource requests. The combination of autoscaling and proper sizing prevents wasted capacity and unnecessary costs. Watch the full interview: https://ku.bz/p1RNM5ldZ This interview is a reaction to Marc Campora's episode https://ku.bz/5gMTkzLhV
685