DevOps and Docker Talk: Cloud Native Interviews and Tooling

DevOps and Docker Talk: Cloud Native Interviews and Tooling

By Bret FisherNewsTechnologyTech News
Download on the App Store

DevOps and Docker Talk: Cloud Native Interviews and Tooling episodes

  • A single API for multicloud with Control Plane

    Control Plane CEO Doron Grinstein joins me to discuss how they’ve created an AI-native cloud API that virtualizes multi-cloud and hybrid cloud to simplify management and ship faster.

    Watch the video of this episode.


    🖥️ Watch demos from the live stream.

    😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



    ★Show Links★

    • https://controlplane.com
    • https://docs.controlplane.com/introduction
    • get a free month to experiment with. email [email protected]


    Creators & Guests

    • Cristi Cotovan - Editor
    • Bret Fisher - Host
    • Beth Fisher - Producer
    • Doron Grinstein - Guest
    • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

      Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
      Join my cloud native DevOps community on Discord.
      Grab some merch at Bret's Loot Box
      Homepage bretfisher.com

      • (00:00) - A single API for multicloud with Control Plane
    • (04:42) - Introduction: Meet Doron Greenstein
    • (09:36) - What Is Control Plane?
    • (13:31) - The Union of All Clouds
    • (15:25) - Adoption and Onboarding
    • (18:59) - Eliminating Infrastructure Toil
    • (24:01) - AI Agents in DevOps
    • (29:19) - Infrastructure as Code in the Agent Era
    • (33:04) - Small Teams and Non-Developers
    • (37:35) - Compliance and the Data Problem
    • (40:50) - Scaling, Secrets, and Audit Trails
    • (44:48) - Cost Efficiency and Getting Started
    • ★ Support this podcast ★
      55 min
    • CI/CD via agent tools: Skills, CLIs, MCP, and more with Semaphore

      What does an AI-native CI look like? The Semaphore team joins me to talk about their focus on making your agent harness the gateway to testing, fixing, and deploying your code.

      Video podcast version here: https://youtu.be/HzXAdtVrW70


      ★Show Links★

      Semaphore https://semaphore.io/

      Semaphore open source https://github.com/semaphoreio/semaphore

      SLSA Security Checklist https://slsa.dev/


      Creators & Guests

      • Marcos Filipe - Guest
      • Cristi Cotovan - Editor
      • Bret Fisher - Host
      • Beth Fisher - Producer
      • Marko Gaćeša - Guest

        • (00:00) - Introduction
      • (00:29) - AI Native CI Vision
      • (04:54) - Bret's Update
      • (09:03) - Semaphore AI Journey
      • (22:39) - Open Source Platform Shift
      • (37:28) - Plugins CLI MCP Skills
      • (43:11) - Work Until CI Is Green
      • (45:42) - Test Boxes and Agentic CI Loop
      • (57:39) - Sandboxing and Least Privilege
      • (01:10:12) - Roadmap SLSA and Getting Started
      • ★ Support this podcast ★
        1 hr 18 min
      • K8s Maxxing with AI-Native Platform Engineering Stack with OpenChoreo

        OpenChoreo is a “batteries included”, AI-native Kubernetes platform stack for Platform Engineers that combines GitOps, Observability, AI Agents, and Workflows into a custom K8s distribution “super pack” that is managed via Backstage, CLI, API, or MCP.

        Check out the video podcast version here: https://youtu.be/AqGWjxEfj2g

        😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



        ★Show Links★

        • OpenChoreo on CNCF
        • OpenChoreo on GitHub
        • OpenChoreo website
        • SRE Day walkthrough


        Creators & Guests

        • Cristi Cotovan - Editor
        • Bret Fisher - Host
        • Beth Fisher - Producer
        • Sameera Jayasoma - Guest
        • Lakmal Warusawithana - Guest
        • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

          Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
          Join my cloud native DevOps community on Discord.
          Grab some merch at Bret's Loot Box
          Homepage bretfisher.com

          • (00:00) - MAIN - Video Podcast
        • (00:00) - Introduction
        • (08:29) - What Makes OpenChoreo Different
        • (16:41) - Agents as First-Class Citizens
        • (24:50) - The Future of Agentic DevOps
        • (32:55) - Deploying with Agents: Live Demo
        • (39:26) - Sandboxing & SRE Auto-Remediation
        • (47:03) - Getting Started & Wrap-Up
        • ★ Support this podcast ★
          55 min
        • Docker AI, what’s new with MCP, Agents, Sandboxes, and more

          Michael Irwin of Docker joins me to run through Gordon AI improvements, Docker Hardened Images and what's now free, Docker Sandboxes for running agents in proper isolation, Model Runner updates including MLX support on Mac, MCP Toolkit dynamic discovery, and the newly renamed Docker Agent with its GitHub Action for automating PR reviews and docs checks.

          Check out the video podcast version here: https://youtu.be/dTF3b36Bq6w

          😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.

          ★Show Links★

          • Docker Hardened Images for Every Developer
          • Docker Hardened System Packages
          • Hardened Images Catalog
          • Gordon AI Just Got an Update
          • Docker Sandboxes
          • NanoClaw and Docker Sandboxes
          • Docker Model Runner VLLM Metal on macOS
          • OpenWebUI + Docker Model Runner
          • MCP Catalog and Toolkit
          • Dynamic MCP
          • Cagent Action
          • PR Review Workflow of Cagent
          • Nightly Docs Scan Workflow

          Creators & Guests

          • Cristi Cotovan - Editor
          • Bret Fisher - Host
          • Beth Fisher - Producer
          • Michael Irwin 🇺🇦 🕊 - Guest
          • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

            Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
            Join my cloud native DevOps community on Discord.
            Grab some merch at Bret's Loot Box
            Homepage bretfisher.com

            • (00:00) - Introduction
          • (11:15) - Docker Hardened Images
          • (23:02) - Gordon AI
          • (33:23) - Docker Sandboxes
          • (37:38) - Sandbox Demo & Network Security
          • (55:10) - Model Runner, OpenWebUI & MCP Tools
          • (01:06:31) - Cagent, Open Source & The Future of AI in DevOps
          • ★ Support this podcast ★
            1 hr 17 min
          • Backup S3, Google Drive, iCloud, Notion with Plakar

            Bret is joined by the founders of Plakar - Julien Mangeard and Gilles Chehade - to nerd out over backup engineering. The kind where you're building your own file formats and cryptographic layers, not just wiring up cron jobs. We get into how Plakar deduplicates and encrypts at the source so your cloud provider never sees your keys. Also, their snapshot model has no chain dependencies, which means you can delete any backup without breaking the others. We had a fun hour of backup horror stories, ransomware pragmatism, where I'm lobbying hard for a Docker volume integration.

            Check out the video podcast version here: https://youtu.be/OPRK5osKQHI

            😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



            ★Show Links★

            • Plakar website
            • Plakar Github Repo
            • Plakar demo
            • Plakar on X


            Creators & Guests

            • Cristi Cotovan - Editor
            • Bret Fisher - Host
            • Beth Fisher - Producer
            • Julien Mangeard - Guest
            • Gilles Chehade - Guest
            • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

              Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
              Join my cloud native DevOps community on Discord.
              Grab some merch at Bret's Loot Box
              Homepage bretfisher.com

              • (00:00) - Introduction
            • (02:25) - Backup Engineering
            • (04:50) - Restore First Mindset
            • (06:56) - Plakar's Elevator Pitch
            • (18:24) - Docker and Volume Backups
            • (24:10) - Docker Image Deployment Challenges
            • (26:53) - Backing Up the System
            • (27:56) - Encryption and Architecture Modes
            • (31:57) - Enterprise Scaling and Solo DevOps
            • (33:48) - Ransomware And Encryption
            • (34:27) - Source Side Dedup Demo
            • (37:17) - Chainless Snapshots
            • (39:07) - Sync And Multi Store Copies
            • (41:39) - Crypto Audits And Repair
            • (43:48) - Backup Stress Horror Stories
            • (47:50) - Make Backups Usable
            • (50:00) - Ransomware Detection Heuristics
            • (56:06) - Cloud Native Positioning
            • (59:56) - Kubernetes and Integrations
            • ★ Support this podcast ★
              1 hr 7 min
            • Your Images are Out of Date (probably) - The Silent Rebuilds problem

              Container base images (like Official Docker Hub images) are often updated without new tag versions. I call this Silent Rebuilds. There's no way to know this happens without image digest-checking automation like Dependabot and Renovate with specific settings. Failure to keep up-to-date is a prime source of vulnerabilities that can lead to serious security breaches. Automate the updates!

              Check out the video podcast version here: https://youtu.be/z_ahbsSc4Fo

              😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



              ★Show Links★

              • Course waitlist: GitHub Actions Pro
              • https://www.bretfisher.com/blog/silent-rebuilds
              • https://github.com/BretFisher/silent-rebuilds
              • https://www.bretfisher.com/chainguard-event


              Creators & Guests

              • Cristi Cotovan - Editor
              • Bret Fisher - Host
              • Beth Fisher - Producer
              • Nirmal Mehta - Host
              • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

                Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
                Join my cloud native DevOps community on Discord.
                Grab some merch at Bret's Loot Box
                Homepage bretfisher.com

                • (00:00) - Intro
              • (05:30) - Docker Security and Image Builds
              • (07:56) - CVEs in Containers
              • (09:22) - Where we were
              • (13:09) - Silent Builds and Mutable Tags
              • (16:27) - Docker Official Image Tags Are Rebuilt Often
              • (18:57) - Chainguard's Tool
              • (19:17) - Tag Tracker Tool Overview
              • (23:56) - High Fivers DevOps Group
              • (25:59) - Problem of Silent Rebuilds
              • (34:16) - Post-Stream Updates
              • ★ Support this podcast ★
                37 min
              • AI Wins and Misses for 2025

                I'm joined by Nirmal Mehta of AWS and Viktor Farcic from Upbound, to go through our 2025 year in review. We look into the AI tools that consumed us this year, from CLI agents to terminal emulators, IDEs, AI browsers - what worked, what flopped, what's worth your time and money, and what we think isn't!

                Check out the video podcast version here:
                https://youtu.be/mnagfUsh5bc

                😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



                Creators & Guests

                • Cristi Cotovan - Editor
                • Bret Fisher - Host
                • Beth Fisher - Producer
                • Nirmal Mehta - Host
                • Viktor Farcic - Guest
                • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

                  Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
                  Join my cloud native DevOps community on Discord.
                  Grab some merch at Bret's Loot Box
                  Homepage bretfisher.com

                  • (00:00) - Introduction
                • (04:15) - Game of AI Tools
                • (04:41) - Reflecting on the Fast-Paced Year
                • (05:35) - CLI Tools and AI Integration
                • (07:13) - Ghostty
                • (10:12) - Terminal Preferences and AI Tools
                • (12:16) - Claude Code
                • (14:37) - Skills
                • (25:44) - Warp
                • (33:05) - AWS Kiro and Spec-Driven Development
                • (39:24) - Visual Editors (IDEs)
                • (44:45) - Zed
                • (46:55) - AI Browsers
                • (01:00:36) - Notion AI
                • (01:02:54) - Code Rabbit MCP
                • (01:05:33) - AI Optimization
                • (01:08:25) - Ad Blocking and AI SEO
                • ★ Support this podcast ★
                  1 hr 15 min
                • Find Your K8s Happy Path with RawKode Academy

                  I talk with David Flanagan, aka Rawkode, about his new opinionated Tech Matrix that helps you navigate the overwhelming CNCF landscape. https://rawkode.academy/technology/matrix

                  😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.



                  ★Show Links★

                  • RawKode Academy website
                  • David's Discord
                  • David's LinkedIn
                  • David on social media: @rawkode everywhere

                  Check out the video podcast version here: https://youtu.be/1LigTOlFiYk


                  Creators & Guests

                  • Cristi Cotovan - Editor
                  • Bret Fisher - Host
                  • Beth Fisher - Producer
                  • David Flanagan - Guest
                  • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

                    Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
                    Join my cloud native DevOps community on Discord.
                    Grab some merch at Bret's Loot Box
                    Homepage bretfisher.com

                    • (00:00) - Intro
                  • (04:46) - Opinions on HashiCorp
                  • (07:17) - The CNCF Landscape
                  • (08:46) - Opinionated Tech Matrix
                  • (16:11) - Tech Matrix in Detail
                  • (26:34) - The Advocate List
                  • (27:18) - Cloud Events and CUE
                  • (28:35) - SpiceDB and Teleport
                  • (30:01) - Service Meshes: Linkerd vs. Istio
                  • (30:46) - Kubernetes and CNI
                  • (31:41) - Observability Tools
                  • (32:22) - WebAssembly and Rust
                  • (33:08) - Learning Paths and DevOps
                  • (40:55) - Key Takeaways
                  • (43:53) - Database Fundamentals
                  • ★ Support this podcast ★
                    52 min
                  • Move K8s Stateful Pods Between Nodes

                    Bret is joined by Philip Andrews and Dan Muret of Cast AI to discuss pod live migration between nodes in a Kubernetes cluster.

                    😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.


                    Cast AI dynamically moves your pod to a different node without downtime or data lost. It copies your running pod data, memory, IP address, and TCP connections from one node to another in real time.

                    In this episode, we nerd out over how Cast AI works under the hood, use cases for it, including hardware and OS maintenance on a node. I've got a feeling Cast AI has a winning feature on their hands.

                    ★Show Links★
                    Cast AI website
                    Cast AI YouTube Channel

                    Check out the video podcast version here: https://youtu.be/yINNWxRywv4

                    Creators & Guests

                    • Cristi Cotovan - Editor
                    • Bret Fisher - Host
                    • Beth Fisher - Producer
                    • Dan Muret - Guest
                    • Philip Andrews - Guest
                    • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

                      Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
                      Join my cloud native DevOps community on Discord.
                      Grab some merch at Bret's Loot Box
                      Homepage bretfisher.com

                      • (00:00) - Introduction
                    • (02:21) - Cast AI Elevator Pitch
                    • (05:20) - Stateful Workloads
                    • (08:26) - Bin Packing in Live Migration
                    • (11:58) - Stateful vs Stateless
                    • (14:06) - Networking and Storage Considerations
                    • (21:26) - Future Developments and Use Cases
                    • (24:06) - ML Workloads
                    • (26:48) - Live Migration of Spot Instances
                    • (29:24) - Live Migration Process Explained
                    • (37:25) - Challenges and Engineering Behind Live Migration
                    • (42:19) - Getting Started with Cast AI
                    • ★ Support this podcast ★
                      45 min
                    • Swarm 2030. Let's Go!

                      Bret discusses exciting news about Swarm being maintained until 2030.

                      😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.


                      In this episode, I give an update on the future of Docker Swarm, the renewed long-term support and ongoing development from Mirantis. The news should be reassuring for you, Swarm users. Swarm remains a viable, supported option for your container orchestration needs, at least until 2030.

                      ★Show Links★
                      Swarm news: Mirantis maintaining until 2030
                      Awesome Swarm

                      Check out the video podcast version here: https://youtu.be/tmQbrCrM-yM

                      Creators & Guests

                      • Cristi Cotovan - Editor
                      • Bret Fisher - Host
                      • Beth Fisher - Producer
                      • You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!

                        Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.
                        Join my cloud native DevOps community on Discord.
                        Grab some merch at Bret's Loot Box
                        Homepage bretfisher.com

                        • (00:00) - Intro
                      • (00:34) - History of Mirantis and Swarm
                      • (01:02) - Swarm's Current Status
                      • (03:44) - Swarm's Long-Term Support
                      • (06:30) - Swarm's Value Proposition
                      • (10:48) - Technical Challenges and Solutions
                      • (16:10) - Looking Ahead: Roadmap and Commitments
                      • (18:49) - Final Thoughts
                      • ★ Support this podcast ★
                        24 min

                      About DevOps and Docker Talk: Cloud Native Interviews and Tooling

                      From the publisher's feed

                      7 years running! Interviews from Bret Fisher's live show. Topics cover container and cloud topics like Docker, Kubernetes, Cloud Native development, DevOps, SRE, GitOps, DevSecOps, Platform…

                      More shows like DevOps and Docker Talk: Cloud Native Interviews and Tooling

                      The Joe Rogan Experience by Joe Rogan

                      The Joe Rogan Experience

                      227,498 Listeners

                      All Ears English Podcast by Lindsay McMahon and Michelle Kaplan

                      All Ears English Podcast

                      2,276 Listeners

                      The Daily by The New York Times

                      The Daily

                      111,766 Listeners

                      Agentic DevOps : AI Engineering for Infrastructure by Bret Fisher

                      Agentic DevOps : AI Engineering for Infrastructure

                      2 Listeners