Micah Hausler

@micahhausler.com

Security and Kubernetes @ AWS

Joint statement from Kubernetes Steering and Security Response Committees: In March 2026, Kubernetes will retire Ingress NGINX, a piece of critical infrastructure for about half of cloud native environments. This is an emergency. Please pay attention. kubernetes.io/blog/2026/01...

Ingress NGINX: Statement from the Kubernetes Steering and Security Response Committees

In March 2026, Kubernetes will retire Ingress NGINX, a piece of critical infrastructure for about half of cloud native environments. The retirement of Ingress NGINX was announced for March 2026, after...

kubernetes.io

iOS 26 is suddenly announcing all notifications on my AirPods. I’ve definitely only enabled that for messages, and confirmed they’re turned off. This is massively annoying.

Let’s be clear about Trump’s obsession with Greenland: its not about security. If it truly were, they’d get creative about adding more US military bases and hardware as a NATO member, restrictions on shipping lanes, etc. This is about Trump wanting to leave a legacy with global map-making changes.

ACM now supports automated certificate management for Kubernetes #eks #kubernetes

ACM now supports automated certificate management for Kubernetes

<p>AWS Certificate Manager (ACM) now automates certificate provisioning and distribution for Kubernetes workloads through AWS Controllers for Kubernetes (ACK). Previously, ACM automated certificate management for AWS-integrated services like Application Load Balancers and CloudFront. However, using ACM certificates with applications terminating TLS in Kubernetes required manual steps: exporting certificates and private keys via API, creating Kubernetes Secrets, and updating them at renewal. This integration extends ACM's automation to any Kubernetes workload for both public and private certificates, enabling you to manage certificates using native Kubernetes APIs.<br> <br> With ACK, you define certificates as Kubernetes resources, and the ACK controller automates the complete certificate lifecycle: requesting certificates from ACM, exporting them after validation, updating Kubernetes Secrets with the certificate and private key, and automatically updating those Secrets at renewal. This enables you to use ACM exportable public certificates (launched in June 2025) for internet-facing workloads or AWS Private CA private certificates for internal services in Amazon EKS or other Kubernetes environments. Use cases include terminating TLS in application pods (NGINX, custom applications), securing service mesh communication (Istio, Linkerd), and managing certificates for third-party ingress controllers (NGINX Ingress, Traefik). You can also distribute certificates to hybrid and edge Kubernetes environments.<br> <br> This feature is available in all commercial, AWS GovCloud (US), and AWS China regions where ACM is available.<br> To learn more, visit the <a href="https://github.com/aws-controllers-k8s/acm-controller">Git hub link</a> or read our <a href="https://docs.aws.amazon.com/acm/latest/userguide/acm-exportable-certificates.html">documentation</a> and our <a href="https://aws.amazon.com/certificate-manager/pricing/">pricing page</a>.&nbsp;</p>

aws.amazon.com

TBH this is such a letdown with the date change. Speaking as an attendee, moving KubeCon from Oct to mid-November so close to re:Invent is such a drag (AWS is a diamond sponsor, haven’t been the last few years when KCNA was in Nov) events.linuxfoundation.org/kubecon-clou...

KubeCon + CloudNativeCon North America 2026 | LF Events

The Cloud Native Computing Foundation’s flagship conference gathers adopters and technologists from leading open source and cloud native communities.

events.linuxfoundation.org

I recently started an instagram account. They wait a full 4 weeks before asking “allow app to track?” I guess they found that people are reluctant to say yes when initially getting the app