AWS Open Source Blog

Category: HAQM Elastic Kubernetes Service

Modernizing Snowflake Corporate's Kubernetes Infrastructure with Bottlerocket and Karpenter

Modernizing Snowflake Corporate’s Kubernetes Infrastructure with Bottlerocket and Karpenter

Snowflake Corporate IT Cloud Operations reached a critical juncture in its cloud infrastructure evolution. Managing large-scale containerized workloads on HAQM Elastic Kubernetes Service (HAQM EKS) demanded a modern, secure, and efficient operating system. The existing setup, running on HAQM Linux 2 (AL2), was functional but presented several challenges. Security hardening required frequent updates and patching, […]

Kube Resource Orchestrator, From Experiment to Community Project

Kube Resource Orchestrator, From Experiment to Community Project

When we introduced our new experimental project Kube Resource Orchestrator (kro) in November last year at KubeCon North America, we were thrilled by the initial response. Customers are excited about kro’s simplicity, and we have seen some creative and novel solutions to common problems. We have heard from platform teams looking to simplify resource management, […]

Introducing kro: Kube Resource Orchestrator

Introducing kro: Kube Resource Orchestrator

Today, we’re excited to release Kube Resource Orchestrator (kro), a new experimental open source project that simplifies and empowers the use of custom APIs and resources with Kubernetes. With kro, you can define complex, multi-resource API extensions for reuse in any Kubernetes cluster. Defining new resource groups with kro is like creating your own custom […]

Enhancing Developer Productivity

Enhancing Developer Productivity: Finch’s Support for Development Containers and the Finch Daemon

In today’s fast-paced software development landscape, containerization has become an essential tool for building and deploying applications. With all the necessary tools and dependencies encapsulated in a container, developers can effortlessly set up and replicate development environments on various machines. The key steps involved in building and running containers typically include: Building container images using […]

Achieving Zero Trust Security on HAQM EKS with Istio

Achieving Zero Trust Security on HAQM EKS with Istio

This is the fourth blog post of our “Istio on EKS” series. In this blog post, we’ll explore how Istio, a powerful service mesh, enables organizations to implement a zero trust security model on HAQM Elastic Kubernetes Service (HAQM EKS). We will start by understanding how Istio implements peer authentication between microservices by Mutual Transport […]

Getting Started with Cilium Service Mesh on HAQM EKS

Getting Started with Cilium Service Mesh on HAQM EKS

Cilium is an open source solution for providing, securing, and observing network connectivity between workloads, powered by the revolutionary kernel technology called extended Berkeley Packet Filter (eBPF). eBPF enables the dynamic insertion of security, visibility, and networking logic into the Linux kernel. Cilium provides high-performance networking, advanced load balancing, transparent encryption, and observability. Cilium was […]