<img src="https://ws.zoominfo.com/pixel/JHVDdRXH2uangmUMQBZd" width="1" height="1" style="display: none;">

The Magalix Blog

Cloud-native Security & Compliance

Tony Chong

Tony Chong

Tony is an engineering leader with over 20 years of experience. He’s been commended for mentoring and inspiring teams, implementing standards and aligning technology with business requirements from the ground up. A former CTO, Tony currently consults and advises start-ups.

Recent Posts

Pod Security Policies Advisor - Container Running with Uncontrolled Linux Capabilities
Overview Kubernetes allows pods to have specific node capabilities without providing full root access. If...
Read More
Pod Security Policies Advisor - Container running with PrivilegeEscalation Enabled
Overview Containers running with privilegeEscalation enabled are allowing container processes to elevate...
Read More
Pod Security Policies Advisor - Container Running as Root
OVERVIEW By default, containers run as root. We consider this a security risk and something overlooked in...
Read More
Pod Security Policies Advisor - Container Running in Privileged Mode
OVERVIEW As you take your next steps into securing your Kubernetes cluster, Magalix wants to ensure that...
Read More
Governing your Containers with Pod Security Policies
OVERVIEW We all know running anything as root is bad practice. We also know giving an authorized user more...
Read More
Metadata Labels Enforce Owner Policy
Overview As our organizations continue to shift back towards the left, developers will continue to gain...
Read More
Using the Latest Container Image Tag Can Cause Nightmares
Overview When it comes to managing the behavior of your containers, Kubernetes does a good job of taking...
Read More
DevOps Kubernetes Policies
Govern Your Image Tags with a Policy
Overview Setting image tags is a core feature of your pod spec. Not setting this in your manifest can lead...
Read More
Govern Pulling Container Images with a Policy
Overview By default, Magalix KubeAdvisor ships with a governance policy that detects whether or not the...
Read More
Create A CI/CD Pipeline With Kubernetes And Jenkins
What Does CI/CD Try To Solve? CI/CD is a term that is often heard alongside other terms like DevOps,
Read More
Kubernetes StatefulSets 101 - State Of The Pods
  The Difference Between a Statefulset And a Deployment
Read More
The Sidecar Pattern
Do One Thing, Do it Best
Read More
Kubernetes Patterns : Environment Variables Configuration Pattern
Each and every application out there needs external configuration at some point. For example, the error
Read More
Kubernetes and Containers Best Practices - Health Probes
What Is The Health Probe Pattern? When you’re designing a mission-critical, highly-available application,
Read More
Implementing A Reverse Proxy Server In Kubernetes Using The Sidecar
What Is A Sidecar? A sidecar refers to a seat attached to the bicycle or motorbike so that they run on
Read More
Kubernetes Secrets 101
What is a Kubernetes Secret? There are many times when a Kubernetes Pod needs to use sensitive data. Think
Read More
Kubernetes 101 - Concepts and Why It Matters
A 10k feet overview of Kubernetes Concepts and Architecture
Read More
Kubernetes Observability: Log Aggregation Using ELK Stack
Logging In The Cloud-Native Age In the old days, all components of your infrastructure were well-defined
Read More
Deploying An Application On Kubernetes From A to Z
We’ve all been there. You learned the basics of Kubernetes, Pods, ReplicaSets, Deployments, Services, etc.
Read More
Creating Custom Kubernetes Operators
An Operator Or A Custom Controller? When I first approached this topic, I had some confusion about whether
Read More
Kubernetes Patterns : The Init Container Pattern
The Initialization Pattern The initialization logic is common among programming languages in general. In
Read More
1 2

start your 30-day free trial today!

Automate your Kubernetes cluster optimization in minutes.

Get started View Pricing
No Card Required