Containers

Category: Thought Leadership

Unlocking Benefits with Bottlerocket: A Purpose-Built Container OS

Post updated on Nov 26, 2024. This post discusses Bottlerocket, a Linux-based open source operating system that is purpose-built for running containers. We will walk through fleet management at scale and how users can benefit from it. We will also share the key pillars that support Bottlerocket’s development plan. The challenges of fleet management with […]

A deep dive into resilience and availability on HAQM Elastic Container Service

Introduction In this post, we’ll deep dive into the architecture principles we use in HAQM Elastic Container Service (HAQM ECS). We’ll outline some of the features that HAQM ECS delivers to make it easy for your application to achieve high availability and resilience. We explore how HAQM ECS is designed to use AWS availability and […]

HardenEKS: Validating Best Practices For HAQM EKS Clusters Programmatically

Introduction HardenEKS is an open source Python-based Command Line Interface (CLI). We created HardenEKS to make it easier to programmatically validate if an HAQM Elastic Kubernetes Service (HAQM EKS)  cluster follows best practices defined in AWS’ EKS Best Practices Guide (EBPG). The EBPG is an essential resource for HAQM EKS operators who seek easier Day […]

Kubernetes as a platform vs. Kubernetes as an API

Introduction What is Kubernetes? I have been working on this technology since the beginning and after 8 years, I’m still having a problem defining what it is. Some people define Kubernetes as a container orchestrator but does that definition capture the essence of Kubernetes? I don’t think so. In this post, I’d like to explore […]

Three things to consider when implementing Mutual TLS with AWS App Mesh

NOTICE: October 04, 2024 – This post no longer reflects the best guidance for configuring a service mesh with HAQM ECS and HAQM EKS, and its examples no longer work as shown. For workloads running on HAQM ECS, please refer to newer content on HAQM ECS Service Connect, and for workloads running on HAQM EKS, […]

Enabling mTLS in AWS App Mesh using SPIFFE/SPIRE in a multi-account HAQM EKS environment

NOTICE: October 04, 2024 – This post no longer reflects the best guidance for configuring a service mesh with HAQM ECS and HAQM EKS, and its examples no longer work as shown. For workloads running on HAQM ECS, please refer to newer content on HAQM ECS Service Connect, and for workloads running on HAQM EKS, […]