Staff Post
2024 year in review of CNCF and top 30 open source project velocity
By Chris Aniszczyk By consistently tracking open source project velocity, we are able to see the trends and technologies resonating with developers and end users. We have been tracking these trends since 2017; all previous blogs...
January 29, 2025
Found 2184 posts
Community Post
What is continuous profiling?
Community post by Uchechukwu Obasi Coming from a background working as a frontend developer at Grafana I’m no stranger to open source performance monitoring. I was part of a team that was responsible for the overall user...
May 31, 2022
Community Post
CNCF WG Environmental Sustainability
Community post by Max Körbächer, Co-Founder of Liquid Reply, and Leonard Pahlke, Consultant at Liquid Reply We are pleased to announce that we have established a new working group for environmental sustainability. Our mission is to...
May 31, 2022 | Max Körbächer + Leonard Pahlke
Member Post
Best practices for deploying applications to production in Kubernetes
Guest post originally published on the Elastisys blog Going live with your application and deploying it to production on Kubernetes means you are exposing it to your end users. You want this to be a successful...
May 30, 2022
Member Post
SSH bastions break your zero trust model
Guest post originally published on the Appaegis blog by Michael Shieh It’s a common practice to set up a bastion server to provide access to the host and then use that as the gateway for SSH...
May 27, 2022 | Michael Shieh
Project Post
Flux’s KubeCon Europe 2022 Wrap-Up
Project post originally published on the Flux blog by Daniel Holbach It was KubeCon + CloudNativeCon EU 2022 last week and if you weren’t able to attend, this post provides you with everything you need to...
May 27, 2022
Member Post
Designing secure applications
Guest post originally published on the Snapt blog by Iwan Price-Evans Hackers, malware, cybercriminals, and more threaten modern applications constantly. Malicious actors will try to uncover and exploit any vulnerabilities to steal private data, disrupt your...
May 26, 2022 | Iwan Price-Evans
Member Post
The components of OpenTelemetry
Guest post originally published on the Scout APM blog by Dave Anderson, CTO, Scout APM Before we dive into the Collector, let’s cover the components that make up the OpenTelemetry project. Scout’s blog post “What is...
May 25, 2022 | Dave Anderson
Kubernetes ephemeral container security
Guest post originally published on Xenit’s blog by Philip Laine, DevOps Engineer at Xenit Attempting to debug a Pod and realizing that you can’t install curl due to security settings has to be a meme at...
May 24, 2022 | Philip Laine
Member Post
What is high cardinality?
Guest post originally published on Chronosphere’s blog by Rob Skillington With the transition from monolith to cloud-native environments, we are seeing an ongoing explosion of metrics data in terms of both volume and cardinality. This is...
May 23, 2022 | Rob Skillington
Member Post
Comparing Frameworks for Node.js Serverless Apps
Guest post originally published on the Rookout blog by Gedalyah Reback Cloud deployments have gotten more complicated over the years. That’s on them, but it’s not necessarily to a fault – there’s just so much more...
May 23, 2022 | Gedalyah Reback
TAG Post
Announcing the Secure Software Factory Reference Architecture Paper
Community post by Alexander Floyd Marshall from TAG Security Almost a year ago the CNCF published its “Software Supply Chain Best Practices” guide, detailing over 50 ways to improve cloud-native software supply chains. That guide referenced...
May 20, 2022
Community Post
Cloud Native Maturity Model 2.0
Community post by Danielle Cook, Simon Forster for the Cartographos Working Group KubeCon 2021 in North America saw the launch of the Cloud Native Maturity Model, a model launched by the Cartografos Working Group to help...
May 18, 2022
Community Post
Announcing the Refreshed Cloud Native Security Whitepaper
The CNCF Security Technical Advisory Group (TAG) has just released a refreshed Cloud Native Security Whitepaper v2 to help educate the community about best practices for securing cloud native deployments. The whitepaper intends to provide organizations...
May 18, 2022
Project Post
SPIRE now runs on Windows!
Project post originally published on the SPIRE blog by the SPIRE maintainers At its heart, the SPIRE project aims to solve the problem of securely issuing workload identities at scale, no matter where the workload is...
May 18, 2022
Project Post
LitmusChaos enhances developer experience for cloud native reliability
Project post originally published on the LitmusChaos blog by the LitmusChaos maintainers In cloud native computing, the applications are expected to be resilient, loosely coupled, scalable, manageable and observable. Because of containerization, there is a proliferation...
May 18, 2022
Staff Post
SlashData: Cloud native continues to grow with more than 7 million developers worldwide
The global cloud native developer population has grown by 1 million in the last 12 months, according to the Q3 2021 State of Cloud Native Development Report developed for CNCF by SlashData. The company estimates that...
May 18, 2022
Staff Post
Service meshes are on the rise – but greater understanding and experience are required
CNCF conducted a microsurvey of the cloud native community at the end of last year to discover how organizations adopt service meshes. Overall we found that adoption is high and growing, but the community is still...
May 17, 2022
Project Post
Introducing Envoy Gateway
Project post originally published on Envoy’s blog by Matt Klein Today we are thrilled to announce Envoy Gateway, a new member of the Envoy Proxy family aimed at significantly decreasing the barrier to entry when using Envoy for...
May 16, 2022
Staff Post
New Training Course Explores Ethics in Open Source Development
As we build new software and other technologies, we do not often consider the ethical implications of these tools. Considerations like how a piece of code may be used by a malicious actor, whether a hardware...
May 16, 2022
Member Post
5 tips for implementing an Internal Developer Portal in your company
Guest post originally published on Mia-Platform’s blog by Mia-Platform Team More and more companies are adopting the Agile approach and DevOps paradigm to accelerate and improve their software development. Even though some software lifecycle processes have been simplified and speeded...
May 13, 2022 | Mia-Platform Team