DevOps and Docker Talk: Cloud Native Interviews and Tooling

Kubernetes Policy Management with Kyverno and Nirmata


Listen Later

šŸ™Œ My next course is coming soon! I've opened the waitlist for those wanting to go deep in GitHub Actions for DevOps and AI automation in 2025. I'm so thrilled to announce this course. The waitlist allows you to quickly sign up for some content updates, discounts, and more as I finish building the course. https://learn.bretfisher.com/waitlistšŸ¾


Jim Bugwadia joins Bret to discuss Kubernetes policy management and "intelligent guardrails for K8s." Jim is the CEO and co-founder of Nirmata. He's also the founder of Kyverno, an CNCF Sandbox Project and open source project for managing policies in Kubernetes. We talk about what Kyverno is, what it isn't, and what problems it solves. We also talk a bit about Narmada and how it expands on that.

If you're in a team using Kubernetes together, controlling settings and standards in your workloads and clusters can be a constant source of frustration unless you have something to govern those policies across all your workloads and clusters.Streamed live on YouTube on Feb 24, 2022.

Unedited live recording of the complete show on YouTube (Ep #160). Includes demos.

ā˜…Topics ā˜…
Kyverno is a policy engine designed for Kubernetes. With Kyverno, policies are managed as Kubernetes resources, and no new language is required to write policies. This allows using familiar tools such as kubectl, git, and kustomize to manage policies. Kyverno policies can validate, mutate, and generate Kubernetes resources plus ensure OCI image supply chain security. The Kyverno CLI can be used to test policies and validate resources as part of a CI/CD pipeline.
Nirmata "Intelligent Guardrails for Kubernetes." Security, Compliance, and Operational Readiness of Kubernetes Across the Enterprise
Sigstore
Blog re Sigstore: "Linux Foundation’s Sigstore Aims to Secure Software Supply Chains"

OWASP Open Web Application Security Project

ā˜…Jim Bugwadia ā˜…
Jim on Twitter

ā˜…Join my Community ā˜…

Best coupons for my Docker and Kubernetes courses

Chat with us on our Discord Server Vital DevOps

Homepage bretfisher.com


  • (00:00) - DDT MAIN
  • (00:04) - Template intro
  • (00:53) - Bret custom intro
  • (01:53) - Sponsorship
  • (01:55) - The Guest
  • (02:23) - How Jim got to Nirmata
  • (06:11) - Their focus
  • (07:17) - What is policy management?
  • (10:17) - What's in scope?
  • (10:32) - Demo
  • (13:13) - Demo intro
  • (13:43) - Demo
  • (13:55) - What things aren't covered?
  • (15:37) - What will be enhanced in the future?
  • (18:47) - Demo
  • (19:06) - Nirmata and Kyverno
  • (20:30) - Demo
  • (22:38) - What does the adoption look like?
  • (23:13) - Demo
  • (23:36) - Open source or Saas First?
  • (24:41) - What's the future of Nirmata?
  • (30:09) - Where to look besides Nirmata?
  • (31:08) - Demo about sigstore
  • (36:58) - Questions
  • (37:02) - Question: Calico network policies
  • (38:43) - Question: Start with Kyverno?
  • (41:54) - Questions rapid fire
  • (41:57) - Question: Likely to be merged into Kubernetes?
  • (42:52) - Question
  • (45:47) - Comment about bandwidth and podcast
  • (47:03) - Where to go?
  • (48:36) - Template outro

  • You can also support my free material by subscribing to my YouTube channel and my weekly newsletter at bret.news!

    Grab the best coupons for my Docker and Kubernetes courses.
    Join my cloud native DevOps community on Discord.
    Grab some merch at Bret's Loot Box
    Homepage bretfisher.com

    ...more
    View all episodesView all episodes
    Download on the App Store

    DevOps and Docker Talk: Cloud Native Interviews and ToolingBy Bret Fisher

    • 4.6
    • 4.6
    • 4.6
    • 4.6
    • 4.6

    4.6

    54 ratings


    More shows like DevOps and Docker Talk: Cloud Native Interviews and Tooling

    View all
    The Knowledge Project by Shane Parrish

    The Knowledge Project

    2,688 Listeners

    6 Minute English by BBC Radio

    6 Minute English

    1,757 Listeners

    Learning English Conversations by BBC Radio

    Learning English Conversations

    1,038 Listeners

    The Diary Of A CEO with Steven Bartlett by DOAC

    The Diary Of A CEO with Steven Bartlett

    8,618 Listeners

    Kubernetes Podcast from Google by Abdel Sghiouar, Kaslin Fields

    Kubernetes Podcast from Google

    181 Listeners

    Day Two DevOps by Packet Pushers

    Day Two DevOps

    15 Listeners

    DevOps Paradox by Darin Pope & Viktor Farcic

    DevOps Paradox

    25 Listeners

    Adventures in DevOps by Will Button, Warren Parad

    Adventures in DevOps

    18 Listeners

    Think Fast Talk Smart: Communication Techniques by Matt Abrahams, Think Fast Talk Smart

    Think Fast Talk Smart: Communication Techniques

    798 Listeners

    All-In with Chamath, Jason, Sacks & Friedberg by All-In Podcast, LLC

    All-In with Chamath, Jason, Sacks & Friedberg

    9,935 Listeners

    Coaching Real Leaders by Harvard Business Review / Muriel Wilkins

    Coaching Real Leaders

    676 Listeners

    The Ezra Klein Show by New York Times Opinion

    The Ezra Klein Show

    15,948 Listeners

    The Foreign Affairs Interview by Foreign Affairs Magazine

    The Foreign Affairs Interview

    445 Listeners

    The Rest Is Politics: US by Goalhanger

    The Rest Is Politics: US

    2,204 Listeners

    Agentic DevOps by Bret Fisher

    Agentic DevOps

    2 Listeners