
Hosted by Abdel Sghiouar, Kaslin Fields · EN

Mike Coleman is a developer advocate at Sysdig focused on open source software and spends a lot of time working on the Falco project. We’ll explore how Falco enables runtime security, and celebrate its recent graduation! Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod News of the week Falco Graduation announcement Google Gemma Open Model GitOps Associate Certification (CGOA) Certified GitOps Associate (CGOA) Exam Linkerd 2.15 announcement Linkerd 2.15 stable release announcement Crossplane 1.15 announcement Open Source Summit North America Schedule Cloud Native Security Con North American Cloud Native Security Con America CFP Links from the interview Mike Coleman LinkedIn Twitter "Docker?!?! But, I’m a sysadmin" - Mike Coleman Mike Colemane and Bill Gates in an Earthquake Falco project LinkedIn Twitter Slack KubeCon NA 2019 CTF Cryptomining Detection Using Falco Navigating Open Source Project Hurdles to Achieve Community Enpowerments Aizhamal Nurmamat kyzy & Bob Killen Wrangle your alerts with open source Falco and the gcpaudit plugin Falcosidekick Practical Cloud Native Security with Falco Certified Kubernetes Security (CKS) exam

Lucas Käldström is a CNCF Ambassador, Kubernetes contributor and expert. Lucas Co-led SIG cluster lifecycle, ported Kubernetes to ARM and shepherded kubeadm from inception to GA. Today Lucas runs three meetup groups in Finland, studies at Aalto University, and, when time allows, contributes to cloud native software as a contractor. We chatted about Kubernetes API machinery, Chaos, Entropy, and Dishwashers. Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod News of the week Weaveworks shutdown their operations Weavwork CEO Alexis Richardson post on Linkedin kubetrain.io Bytedance KubeAdmiral on GitHub Bytedance KubeAdmiral Announcement on InfoQ Strimzi joins the CNCF Incubator Microsoft new Cost Management tools for Azure Links from the interview Lucas Käldström LinkedIn Twitter/X Kubernetes as a dishwasher Understanding Kubernetes Through Real-World Phenomena and Analogies - Lucas Käldström Lucas research thesis Paper - Large-scale cluster management at Google with Borg API Machinery Dr. Stefan Schimanski KCP - Kubernetes-Like Control Plane Kubernetes API Conventions SIG Architecture Ingress2gateway - Ingress to Gateway Migrator Promise Theory: Principles and Applications (Mark Burgess, Jan Bergstra) In Search of Certainty: The Science of Our Information Infrastructure (Mark Burgess) Sweden Finns Links from the post-interview chat Keynote: Reperforming a Nobel Prize Discovery on Kubernetes - Ricardo Rocha & Lukas Heinrich Why Service Is the Worst API in Kubernetes, & What We’re Doing About It - Tim Hockin Gateway API TCP Routes Community-Powered Kubernetes LTS: Ensuring Stability and Compatibility While Driving Innovation Jeremy Rickard https://github.com/yannh/kubeconform

Madhav Jivrajani is an engineer at VMware, a tech lead in SIG Contributor Experience and a GitHub Admin for the Kubernetes project. He also contributes to the storage layer of Kubernetes, focusing on reliability and scalability. In this episode we talked with Madhav about a recent post on social media about a very interesting stale reads issue in Kubernetes, and what the community is doing about it. Do you have something cool to share? Some questions? Let us know: - web: kubernetespodcast.com - mail: kubernetespodcast@google.com - twitter: @kubernetespod Chatter of the week Mofi Rahman co-host this episode with Kaslin Twitter/X LinkedIn Kubernetes Podcast episode 211 News of the week Google announced a new partnership with Hugging Face RedHat self-managed offering of Ansible Automation Platform on Microsoft Azure The schedule for KubeCon CloudNativeCon EU 2024 is out CNCF Ambassador applications are open The CNCF Hackathon at KubeCon CloudNativeCon EU 2024 CFP is open now The annual Cloud Native Computing Foundation report for 2023 CNCF's certification expiration period will change to 24 months starting April 1st, 2024. Sysdig 2024 Cloud Native Security and Usage Report Links from the interview Madhav Jivrajani Twitter/X LinkedIn Priyanka Saggu Interview Stale reads Twitter/X thread by Madhav "Kubernetes is vulnerable to stale reads, violating critical pod safety guarantees" - GitHub Issue tracking the stale reads CAP Theorem issue CMU Wasm Research Center "A CAP tradeoff in the wild" blog by Lindsey Kuper "Reasoning about modern datacenter infrastructures using partial histories" research paper The Kubernetes Storage Layer: Peeling the Onion Minus the Tears - Madhav Jivrajani, VMware KEP-3157: allow informers for getting a stream of data instead of chunking. KEP 2340: Consistent Reads from Cache Journey Through Time: Understanding Etcd Revisions and Resource Versions in Kubernetes - Priyanka Saggu, KubeCon NA 2023 Kubernetes API Resource Versions documentation