Cloud Native Weekly: Published by ingress2gateway | 2023.10.30

Open source project recommendations

m9sweeper

m9sweeper is a free and simple Kubernetes security platform. It integrates industry-standard open source utilities into a one-stop Kubernetes security tool that can help most Kubernetes administrators secure Kubernetes clusters and the applications running on the clusters.

Kairos

Kairos is a cloud-native meta-Linux distribution running on Kubernetes, bringing the power of the public cloud to on-premises environments. With Kairos, you can build your own cloud and have full control without vendor lock-in.

Radius

Radius is a cloud-native application platform that enables developers and the platform engineers who support them to collaboratively deliver and manage cloud-native applications, adhering by default to organizational best practices for cost, operations, and security. Radius is an open source project that supports application deployment on private clouds, Microsoft Azure and Amazon Web Services, with support for additional cloud providers to come.

Article recommendations

Build APIs using .NET Core, Docker and Kubernetes

This article provides a clear guide to building and deploying APIs using .NET Core, Docker, and Kubernetes. It covers all key steps from project creation to containerization and deployment, and provides sample code and commands to enable readers to follow the guide step by step through the entire process.

Understand Pods, Nodes, and Kubelets in Kubernetes

This article provides a clear explanation of Pods, Nodes, and Kubelets in Kubernetes, as well as the basic operations for creating, managing, and using them. It is suitable for beginners to understand and get started with the basic concepts and operations of Kubernetes.

Cloud native dynamics

ingress2gateway released to simplify gateway API upgrades

Ingress2gateway is released, a tool that helps you migrate from Ingress to the Gateway API.

ingress2gateway assists with migration by converting existing Ingress resources into gateway API resources.

Linkerd stable-2.14.2 released

This stable release fixes an issue in the proxy and destination controller that could cause Linkerd proxies to send traffic to outdated endpoints. Additionally, it contains bug fixes for configuration file parsing of pods bound on host ports and includes a patch for security advisory CVE-2023-44487/GHSA-qppj-fm5r-hxr3.

Three newly discovered Kubernetes Ingress vulnerabilities

Three vulnerabilities have been disclosed that affect ingress controllers based on the open source NGINX software embedded in Kubernetes clusters. These vulnerabilities make it possible for cybercriminals to redirect traffic, inject arbitrary commands and code, and obtain the secret credentials of the ingress-nginx controller.

Jimmy Mesta, chief technology officer of the Kubernetes Security Operations Center (KSOC), said the three vulnerabilities are problematic because they cannot be fixed through patches or upgrading to a higher version of Kubernetes. Instead, IT teams need to reconfigure NGINX ingress controllers to ensure attack paths caused by these vulnerabilities are mitigated. Alternatively, IT teams can choose to replace the NGINX ingress controller with any number of existing alternatives.

NGINX modules can now be written in Rust

NGINX announced the launch of the ngx-rust project, which allows developers to write NGINX modules using Rust. The Rust programming language is a strong and popular choice due to its stability, security features, rich ecosystem, and strong community support.

NGINX is a high-performance, open source web server and reverse proxy server software that powers most Internet websites. NGINX was originally created by Igor Sysoev in 2002 and has since grown and gained widespread popularity in the world of web hosting, content delivery, and application deployment. It is known for its performance, scalability, and versatility, making it a key component for serving web content and effectively managing Internet traffic.

This article is published by OpenWrite, a blog that publishes multiple articles !

Alibaba Cloud suffered a serious failure and all products were affected (restored). Tumblr cooled down the Russian operating system Aurora OS 5.0. New UI unveiled Delphi 12 & C++ Builder 12, RAD Studio 12. Many Internet companies urgently recruit Hongmeng programmers. UNIX time is about to enter the 1.7 billion era (already entered). Meituan recruits troops and plans to develop the Hongmeng system App. Amazon develops a Linux-based operating system to get rid of Android's dependence on .NET 8 on Linux. The independent size is reduced by 50%. FFmpeg 6.1 "Heaviside" is released
{{o.name}}
{{m.name}}

Guess you like

Origin my.oschina.net/u/4197945/blog/10139825