fosstodon.org is one of the many independent Mastodon servers you can use to participate in the fediverse.
Fosstodon is an invite only Mastodon instance that is open to those who are interested in technology; particularly free & open source software. If you wish to join, contact us for an invite.

Administered by:

Server stats:

10K
active users

#kubernetes

136 posts117 participants4 posts today
Rad Web Hosting<p>Deploy <a href="https://mastodon.social/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> Cluster on <a href="https://mastodon.social/tags/Ubuntu" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Ubuntu</span></a> VPS <br>This article provides a guide for how to deploy Kubernetes cluster on Ubuntu VPS.</p><p>What is a Kubernetes Cluster?<br>Before you deploy Kubernetes cluster on Ubuntu VPS, it's important to understand Kubernetes clusters.</p><p>A Kubernetes cluster is a set of machines (nodes) that work together to run and manage containerized applications at scale. Kubernetes, an open-source container ...<br>Continued👇 <a href="https://mastodon.social/tags/vpsguide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vpsguide</span></a> <a href="https://mastodon.social/tags/docker" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>docker</span></a> <a href="https://mastodon.social/tags/installguide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>installguide</span></a></p>
Caleb Woodbine 🎺🐛<p>New Istio related blog post coming soon!<br><a href="https://mastodon.nz/tags/istio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>istio</span></a> <a href="https://mastodon.nz/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a> <a href="https://mastodon.nz/tags/envoyproxy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>envoyproxy</span></a></p>
Rachel<p><span>Cluster Rebuild Project<br><br>iPXE works!<br><br>I got the odroid running Talos via PXE/iPXE, and joined it to the cluster, big thanks to the patience of </span><a href="https://hachyderm.io/@willglynn" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@willglynn@hachyderm.io</a><span> who was incredibly helpful<br><br>Next step for that device is to figure out how to harness it's iGPU and test some workloads on it<br><br>Also, it is currently sitting backwards in an open 1U chassis sitting on top of the rack, what a mess lmao<br><br></span><a href="https://transitory.social/tags/Homelab" rel="nofollow noopener noreferrer" target="_blank">#Homelab</a> <a href="https://transitory.social/tags/Kubernetes" rel="nofollow noopener noreferrer" target="_blank">#Kubernetes</a></p>
Hey Gus<p>Why is my subnet showing a negative number of IPs available? Why didn’t the admission webhook deny my deployment when there’s clearly no IPs available? Oh let me look at this completely crucial code nobody has touched in 2 years and get it to build before I start looking for that bug <a href="https://mastodon.social/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a> <a href="https://mastodon.social/tags/golang" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>golang</span></a></p>
Last Week in Kubernetes Dev<p>Week of March 23: CRITICAL vulnerability in Ingress-Nginx (upgrade immediately!), docs and highlights due, Emulation Version, Container Stop Signals.</p><p><a href="https://lwkd.info/2025/20250325" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">lwkd.info/2025/20250325</span><span class="invisible"></span></a></p><p>See you at <a href="https://m6n.io/tags/Kubecon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubecon</span></a> next week!</p><p><a href="https://m6n.io/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> <a href="https://m6n.io/tags/Containers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Containers</span></a> <a href="https://m6n.io/tags/CloudNative" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CloudNative</span></a></p>
Feoh<p>Today's adventures in <a href="https://oldbytes.space/tags/python" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>python</span></a> - building a <a href="https://oldbytes.space/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a> Horizontal Pod Autoscaler in <a href="https://oldbytes.space/tags/pulumi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>pulumi</span></a> - good fun :)</p><p>And it ALMOST works! :)</p>
Ariel (🐿 arc)<p>Spoke too soon. Damn context object has no cache initialized so can't run a reconcile. How in the heck am I supposed to write a controller that can't check all the custom resources it's managing? This seems basic?</p><p><a href="https://eigenmagic.net/tags/KubernetesDev" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KubernetesDev</span></a> <a href="https://eigenmagic.net/tags/k8s" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>k8s</span></a> <a href="https://eigenmagic.net/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a></p>
Tim Brückner<p>Today I attended the <a href="https://techhub.social/tags/Quarkus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Quarkus</span></a> <a href="https://techhub.social/tags/Meetup" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Meetup</span></a> in Frankfurt and learned about Konveyor, a powerful ecosystem that helps to modernise legacy software applications. It will soon (~Q4 2) be able to work with generative AI to perform some of the migration steps automatically. For example, you can use it to migrate legacy applications to Quarkus. <a href="https://techhub.social/tags/Java" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Java</span></a> <a href="https://techhub.social/tags/Development" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Development</span></a> <a href="https://techhub.social/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> :redhat: :k8s: </p><p><a href="https://www.konveyor.io/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">konveyor.io/</span><span class="invisible"></span></a></p>
heise online English<p>JobSet: New API for distributed ML and HPC applications on Kubernetes</p><p>The new open source JobSet API is designed to provide more flexible and diverse configuration options for large-scale distributed HPC and ML use cases.</p><p><a href="https://www.heise.de/en/news/JobSet-New-API-for-distributed-ML-and-HPC-applications-on-Kubernetes-10328307.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/en/news/JobSet-New-AP</span><span class="invisible">I-for-distributed-ML-and-HPC-applications-on-Kubernetes-10328307.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/Containerisierung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Containerisierung</span></a> <a href="https://social.heise.de/tags/HighPerformanceComputing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HighPerformanceComputing</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> <a href="https://social.heise.de/tags/MachineLearning" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MachineLearning</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a></p>
Sheogorath<p>I'm a bit unhappy with the coverage for CVE-2025-1974. While it might be true that "&gt;40%" of all <a href="https://microblog.shivering-isles.com/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> clusters run ingress-nginx, only a small fraction will actually at risk of being exploited. If you run an overlay network (non-IPv6) and don't let non-cluster-admins create Ingress resources, the risk is drastically reduced. Remains the risk of attacks by workloads directly talking to the webhook endpoint.</p><p>It's an exciting finding, but still… keep calm and patch.</p>
VictoriaMetrics<p>🚀 <a href="https://mastodon.social/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> <a href="https://mastodon.social/tags/monitoring" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>monitoring</span></a> Made Easy with VictoriaMetrics Cluster</p><p>Our technical <a href="https://mastodon.social/tags/guide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>guide</span></a> walks you through setting up a VictoriaMetrics cluster using Helm charts, collecting k8s metrics via service discovery, and visualizing your data effortlessly.</p><p>🟣 What you'll learn:</p><p>✅ Deploying <a href="https://mastodon.social/tags/VictoriaMetrics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VictoriaMetrics</span></a> in Kubernetes with <a href="https://mastodon.social/tags/Helm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Helm</span></a></p><p>✅ Scraping <a href="https://mastodon.social/tags/metrics" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>metrics</span></a> from <a href="https://mastodon.social/tags/k8s" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>k8s</span></a> components</p><p>✅ Storing &amp; visualizing data in VictoriaMetrics <a href="https://mastodon.social/tags/tsdb" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tsdb</span></a> </p><p><a href="https://docs.victoriametrics.com/guides/k8s-monitoring-via-vm-cluster/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">docs.victoriametrics.com/guide</span><span class="invisible">s/k8s-monitoring-via-vm-cluster/</span></a></p>
Sam Stepanyan :verified: 🐘<p><a href="https://infosec.exchange/tags/NGINX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NGINX</span></a> Critical Ingress NGINX Controller for <a href="https://infosec.exchange/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> Vulnerability Allows <a href="https://infosec.exchange/tags/RCE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RCE</span></a> Without Authentication. A set of 5 critical security CVE with CVSS scores 4.8-9.8 affecting ~43% of cloud environments globally:</p><p><a href="https://infosec.exchange/tags/IngressNightmare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IngressNightmare</span></a></p><p><a href="https://thehackernews.com/2025/03/critical-ingress-nginx-controller.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thehackernews.com/2025/03/crit</span><span class="invisible">ical-ingress-nginx-controller.html</span></a></p>
Stu Watts<p>Oof. Patch time, folks! <a href="https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">wiz.io/blog/ingress-nginx-kube</span><span class="invisible">rnetes-vulnerabilities</span></a> <a href="https://hachyderm.io/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a> <a href="https://hachyderm.io/tags/ingressnightmare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ingressnightmare</span></a></p>
Hey Gus<p><span class="h-card" translate="no"><a href="https://mastodon.online/@vwbusguy" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>vwbusguy</span></a></span> <a href="https://mastodon.social/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a> not causing enough trouble? Might I suggest using onprem artistically crafted clusters for an additional layer of fun</p>
Arch :arch:<p>So what I'm learning:</p><p>Despite doing everything I can with <code>TLSCertificateDelegation</code>, <code>projectcontour.io/tls-cert-namespace</code> and whatever else, I <em>can't</em> get Contour to use my wildcard cert (<code>cert-manager/gmem-ca-wildcard</code>) for my ingresses since the cert SAN doesn't exactly match the <code>tls.hosts</code> entries in my ingress?</p><p>:floofTired: Was really hoping to find something drop-in so I could migrate to Gateway API as I needed/wanted. Not super interested in using the <code>HTTProxy</code> CRD :/ <a href="https://floofy.tech/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a></p>
The New Stack<p>Say hello to Kagent. Solo introduces this open-source AI framework to help users build and run AI agents for faster <a href="https://hachyderm.io/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> workflows. Heather Joslyn breaks it down.</p><p><a href="https://thenewstack.io/meet-kagent-open-source-framework-for-ai-agents-in-kubernetes/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thenewstack.io/meet-kagent-ope</span><span class="invisible">n-source-framework-for-ai-agents-in-kubernetes/</span></a></p>
Scott Williams 🐧<p>Scale out all your problems today with <a href="https://mastodon.online/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a>!</p>
Ricardo<p>Ouch</p><p>The maintainers of <a href="https://mstdn.social/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> have released patches for four critical vulnerabilities in the Ingress NGINX Controller, affecting 6,500, or 41%, of all Internet-facing container orchestration clusters, including those used by several Fortune 500 companies. <a href="https://www.darkreading.com/application-security/critical-ingressnightmare-vulns-kubernetes-environments" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">darkreading.com/application-se</span><span class="invisible">curity/critical-ingressnightmare-vulns-kubernetes-environments</span></a></p>
Markus Lindenberg<p>5x used Dell Wyse 5070 for ~€70 each (plus ram/ssd upgrade) or what else hardware is available for a lowest possible cost &amp; lowest possible energy consumption (but still usable for workloads around the house) five node cluster in a <a href="https://chaos.social/tags/homelab" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>homelab</span></a>? <a href="https://chaos.social/tags/kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>kubernetes</span></a></p>
K8sContributors<p>Ingress-nginx CVE-2025-1974: What You Need to Know - <a href="https://kubernetes.io/blog/2025/03/24/ingress-nginx-cve-2025-1974/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">kubernetes.io/blog/2025/03/24/</span><span class="invisible">ingress-nginx-cve-2025-1974/</span></a> <a href="https://hachyderm.io/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a></p>