Series

Kubernetes Journey

Learning Kubernetes security in public, from the very first "what even is a pod" to RBAC, kubelet hardening and real cloud-native attack paths. 42 parts, best read in order, newest first here. Switch the sort to "Topic 1 first" to read it as a course.

Complete series · all 42 topics published
Topic 31

Kubernetes Secrets Are Not Secret

Topic 31 of my Kubernetes journey: what a Secret actually protects, why base64 isn't security, encryption at rest, and the RBAC gap nobody closes.

Topic 34

A Namespace Is a Label, Not a Wall

Topic 34 of my Kubernetes journey: sharing one cluster between teams or customers safely with namespaces, RBAC, quotas and network policies, and where soft isolation stops.