Posts in 2023
Kubernetes 1.27: Single Pod Access Mode for PersistentVolumes Graduates to Beta
Thursday, April 20, 2023 in Blog
Author: Chris Henzie (Google) With the release of Kubernetes v1.27 the ReadWriteOncePod feature has graduated to beta. In this blog post, we'll take a closer look at this feature, what it does, and how it has evolved in the beta release. What is …
Kubernetes 1.27: Efficient SELinux volume relabeling (Beta)
Tuesday, April 18, 2023 in Blog
Author: Jan Šafránek (Red Hat) The problem On Linux with Security-Enhanced Linux (SELinux) enabled, it's traditionally the container runtime that applies SELinux labels to a Pod and all its volumes. Kubernetes only passes the SELinux label from a …
Kubernetes 1.27: More fine-grained pod topology spread policies reached beta
Monday, April 17, 2023 in Blog
Authors: Alex Wang (Shopee), Kante Yin (DaoCloud), Kensei Nakada (Mercari) In Kubernetes v1.19, Pod topology spread constraints went to general availability (GA). As time passed, we - SIG Scheduling - received feedback from users, and, as a result, …
Kubernetes v1.27: Chill Vibes
Tuesday, April 11, 2023 in Blog
Authors: Kubernetes v1.27 Release Team Announcing the release of Kubernetes v1.27, the first release of 2023! This release consist of 60 enhancements. 18 of those enhancements are entering Alpha, 29 are graduating to Beta, and 13 are graduating to …
Keeping Kubernetes Secure with Updated Go Versions
Thursday, April 06, 2023 in Blog
Author: Jordan Liggitt (Google) The problem Since v1.19 (released in 2020), the Kubernetes project provides 12-14 months of patch releases for each minor version. This enables users to qualify and adopt Kubernetes versions in an annual upgrade cycle …
Kubernetes Validating Admission Policies: A Practical Example
Thursday, March 30, 2023 in Blog
Authors: Craig Box (ARMO), Ben Hirschberg (ARMO) Admission control is an important part of the Kubernetes control plane, with several internal features depending on the ability to approve or change an API object as it is submitted to the server. It …
Kubernetes Removals and Major Changes In v1.27
Friday, March 17, 2023 in Blog
Author: Harshita Sao As Kubernetes develops and matures, features may be deprecated, removed, or replaced with better ones for the project's overall health. Based on the information available at this point in the v1.27 release process, which is still …
k8s.gcr.io Redirect to registry.k8s.io - What You Need to Know
Friday, March 10, 2023 in Blog
Authors: Bob Killen (Google), Davanum Srinivas (AWS), Chris Short (AWS), Frederico Muñoz (SAS Institute), Tim Bannister (The Scale Factory), Ricky Sadowski (AWS), Grace Nguyen (Expo), Mahamed Ali (Rackspace Technology), Mars Toktonaliev …
Forensic container analysis
Friday, March 10, 2023 in Blog
Authors: Adrian Reber (Red Hat) In my previous article, Forensic container checkpointing in Kubernetes, I introduced checkpointing in Kubernetes and how it has to be setup and how it can be used. The name of the feature is Forensic container …
Introducing KWOK: Kubernetes WithOut Kubelet
Wednesday, March 01, 2023 in Blog
Author: Shiming Zhang (DaoCloud), Wei Huang (Apple), Yibo Zhuang (Apple) Have you ever wondered how to set up a cluster of thousands of nodes just in seconds, how to simulate real nodes with a low resource footprint, and how to test your Kubernetes …