Posts in 2022

  • Kubernetes 1.25: PodHasNetwork Condition for Pods

    Wednesday, September 14, 2022 in Blog

    Author: Deep Debroy (Apple) Kubernetes 1.25 introduces Alpha support for a new kubelet-managed pod condition in the status field of a pod: PodHasNetwork. The kubelet, for a worker node, will use the PodHasNetwork condition to accurately surface the …

    Read more

  • Announcing the Auto-refreshing Official Kubernetes CVE Feed

    Monday, September 12, 2022 in Blog

    Author: Pushkar Joglekar (VMware) A long-standing request from the Kubernetes community has been to have a programmatic way for end users to keep track of Kubernetes security issues (also called "CVEs", after the database that tracks public …

    Read more

  • Kubernetes 1.25: KMS V2 Improvements

    Friday, September 09, 2022 in Blog

    Authors: Anish Ramasekar, Rita Zhang, Mo Khan, and Xander Grzywinski (Microsoft) With Kubernetes v1.25, SIG Auth is introducing a new v2alpha1 version of the Key Management Service (KMS) API. There are a lot of improvements in the works, and we're …

    Read more

  • Kubernetes’s IPTables Chains Are Not API

    Wednesday, September 07, 2022 in Blog

    Author: Dan Winship (Red Hat) Some Kubernetes components (such as kubelet and kube-proxy) create iptables chains and rules as part of their operation. These chains were never intended to be part of any Kubernetes API/ABI guarantees, but some external …

    Read more

  • Introducing COSI: Object Storage Management using Kubernetes APIs

    Friday, September 02, 2022 in Blog

    Authors: Sidhartha Mani (Minio, Inc) This article introduces the Container Object Storage Interface (COSI), a standard for provisioning and consuming object storage in Kubernetes. It is an alpha feature in Kubernetes v1.25. File and block storage are …

    Read more

  • Kubernetes 1.25: cgroup v2 graduates to GA

    Wednesday, August 31, 2022 in Blog

    Authors:: David Porter (Google), Mrunal Patel (Red Hat) Kubernetes 1.25 brings cgroup v2 to GA (general availability), letting the kubelet use the latest container resource management capabilities. What are cgroups? Effective resource management is a …

    Read more

  • Kubernetes 1.25: CSI Inline Volumes have graduated to GA

    Monday, August 29, 2022 in Blog

    Author: Jonathan Dobson (Red Hat) CSI Inline Volumes were introduced as an alpha feature in Kubernetes 1.15 and have been beta since 1.16. We are happy to announce that this feature has graduated to General Availability (GA) status in Kubernetes …

    Read more

  • Kubernetes v1.25: Pod Security Admission Controller in Stable

    Thursday, August 25, 2022 in Blog

    Authors: Tim Allclair (Google), Sam Stoelinga (Google) The release of Kubernetes v1.25 marks a major milestone for Kubernetes out-of-the-box pod security controls: Pod Security admission (PSA) graduated to stable, and Pod Security Policy (PSP) has …

    Read more

  • PodSecurityPolicy: The Historical Context

    Tuesday, August 23, 2022 in Blog

    Author: Mahé Tardy (Quarkslab) The PodSecurityPolicy (PSP) admission controller has been removed, as of Kubernetes v1.25. Its deprecation was announced and detailed in the blog post PodSecurityPolicy Deprecation: Past, Present, and Future, published …

    Read more

  • Kubernetes v1.25: Combiner

    Tuesday, August 23, 2022 in Blog

    Authors: Kubernetes 1.25 Release Team Announcing the release of Kubernetes v1.25! This release includes a total of 40 enhancements. Fifteen of those enhancements are entering Alpha, ten are graduating to Beta, and thirteen are graduating to Stable. …

    Read more