Andrei Gavriliu
open-menu closeme
Home
Projects
About
github linkedin xing rss
  • Kubernetes RBAC: Who Can Do What, and Where?

    calendar Jun 3, 2025 · 4 min read · kubernetes learn security
    Kubernetes RBAC: Who Can Do What, and Where?

    Let’s be honest: giving everyone admin access to your cluster is fast… until it isn’t. Enter RBAC, short for Role-Based Access Control—Kubernetes’ way of saying “hold up, who let you in here?” RBAC defines who can perform what actions on which resources—like a VIP list for your Kubernetes API server. What Is RBAC? RBAC …


    Read More
  • Kubernetes Network Policies: Your Cluster’s Traffic Bouncer

    calendar May 20, 2025 · 5 min read · kubernetes learn networking security
    Kubernetes Network Policies: Your Cluster’s Traffic Bouncer

    What Are Network Policies? In Kubernetes, a NetworkPolicy is like a bouncer for your pods. It checks who’s allowed to talk to whom and kicks out anything not on the guest list. By default, Kubernetes is a friendly party where everyone can chat with everyone else—great for sociability, terrible for security. Network …


    Read More
  • How to seal and unseal secrets with Bitnami Sealed-Secrets

    calendar Mar 14, 2025 · 3 min read · bitnami sealed-secrets security

    I decided to push my Kubernetes manifests to GitHub because running Git locally on the same k3s cluster as ArgoCD seemed like asking for trouble. I mean, what happens if something goes wrong? Suddenly, you’re locked out of your repository, and your applications just sit there looking sad, like ‘Hey, I need a home!’ …


    Read More

Andrei Gavriliu

Senior IT Consultant | OpenShift @ ConSol Consulting & Solutions Software GmbH
Read More

Recent Posts

  • Kubernetes RBAC: Who Can Do What, and Where?
  • Kubernetes Endpoints & EndpointSlices: Who’s Really Behind That Service?
  • Kubernetes Network Policies: Your Cluster’s Traffic Bouncer
  • Kubernetes Ingress: 7 Common Mistakes (and How to Avoid Them)
  • Kubernetes Ingress: Your Cluster's Traffic Director
  • Kubernetes Services: The Network Matchmakers
  • Kubernetes StatefulSets: Because Some Pods Need to Remember Things
  • Kubernetes Deployments: Like a Boss (Who Delegates Everything)

Series

KUBERNETES 8 HOMELAB 3 HOMEASSISTANT 2

Tags

KUBERNETES 9 LEARN 8 SECURITY 3 GPG 2 HOMEASSISTANT 2 INGRESS 2 NETWORKING 2 APPLICATION 1 APT 1 ARGOCD 1 BITNAMI 1 DEPLOYMENT 1 HELM 1 IMAGES 1 KEYRING 1 LEGACY 1 LONGHORN 1 SEALED-SECRETS 1 SERVICES 1 SKOPEO 1 SLZB-06M 1 STATEFULSET 1 TROUBLESHOOT 1 TROUBLESHOOTING 1 WASTE-COLLECTION 1 ZIGBEE2MQTT 1
Andrei Gavriliu

Copyright 2025 -  ANDREI GAVRILIU. All Rights Reserved

to-top