skouf.com

The website of Nik Skoufis

Kubernetes posts

A black and white image of a container ship, viewed from the rear

IaC in the home - two years on

After two years of running a home Kubernetes setup, I have more thoughts and lessons about how to run a home cluster....

An image of a sailboat on the water on a stormy day

Istio TLS policies - ugly bits and undocumented bits

One of the selling points of deploying Istio in your Kubernetes cluster is that it provides mechanisms to enforce authentication between pods communicating with other services within the cluster. The documentation of these leaves a lot to be desired, as we discovered when we first started playing with these features while gearing up to roll out Istio more widely....

A box diagram showing how Matchbox works

Infrastructure as code in the home

Infrastructure as Code (herein IaC) is ubiquitous when managing large infrastructure deployments. But when we don’t have hundreds of machines to manage, is IaC still useful?

...