De Nederlandse Kubernetes Podcast

Ronald Kers en Jan Stomphorst

De Nederlandse Kubernetes Podcast: gemaakt door én voor mensen met een hart voor IT. In deze reeks gaan Ronald Kers en Jan Stomphorst in gesprek over Kubernetes met als doel Kubernetes toegankelijk te maken voor iedereen.

  1. #128 Why “Just Give Me Admin” Is the Most Dangerous Request in IT

    FEB 10

    #128 Why “Just Give Me Admin” Is the Most Dangerous Request in IT

    In this episode of The Dutch Kubernetes Podcast, Ronald and Jan are joined by Maurice Côté, VP of Products at Devolutions, to talk about one of the most misunderstood topics in modern IT security: Privileged Access Management (PAM). Too often, PAM is treated as a compliance checkbox. Something you buy because an auditor, insurer, or regulation tells you to. Maurice explains why that mindset is dangerous — and why access itself has become one of the biggest attack surfaces in today’s infrastructures. The conversation explores how Zero Trust principles apply in real-world environments, including Kubernetes and DevOps workflows. Topics include least privilege, just-in-time access, identity-based authentication, service accounts, and why traditional passwords are slowly disappearing in favor of certificates, passkeys, and identity providers. They also discuss upcoming regulations like NIS2 and DORA, and why security isn’t about passing audits, but about being able to survive, recover, and continue operating when something goes wrong. From bastion hosts and privileged access workstations to secret rotation and Kubernetes-native integrations, this episode focuses on practical security — not buzzwords. The key takeaway is clear: Security is not a product you buy once. It’s a discipline you practice continuously. A must-listen episode for platform engineers, DevOps teams, security architects, and anyone working with Kubernetes in regulated or high-risk environments. Powered By ACC ICT Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    29 min
  2. #127 From Silicon Valley to Palestine: Scaling Software Globally

    JAN 27

    #127 From Silicon Valley to Palestine: Scaling Software Globally

    In this episode of The Dutch Kubernetes Podcast, Ronald and Jan talk with Yahya Al-Salqan, CEO and co-founder of Jaffa.Net Software, about building and scaling global software companies far beyond the traditional tech hubs. Yahya shares his personal journey from academia and Silicon Valley, where he worked at Sun Microsystems, back to Palestine to found Jaffa.Net. What started as a mission-driven decision to contribute to his community has grown into a company with over 26 years of experience, serving international clients such as Intel, BMW, Fujitsu, Lufthansa, Oxford University, and several Dutch organizations. The conversation explores how modern software engineering practices and cloud-native technologies make it possible to deliver enterprise-grade solutions globally. Kubernetes and container technologies play a key enabling role by providing consistent environments, repeatable deployments, version control, and zero-downtime upgrades for customers running ERP and custom software solutions. Beyond technology, the episode highlights the Palestinian IT ecosystem, the importance of education, and how software development allows talent to transcend physical and political borders. Yahya explains why the IT sector is one of the fastest-growing contributors to the local economy and why investing in people and skills is the most sustainable path forward. The discussion also touches on future trends such as AI, blockchain, and programmable digital money, and how companies must continuously evolve to stay relevant. Throughout the episode, one theme remains central: global software scale is no longer defined by geography, but by mindset, tooling, and execution. Powered by ACC ICT Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    38 min
  3. #126 From 135 ms to 6 ms: The Multi-Cloud Networking Mistake Everyone Makes

    JAN 13

    #126 From 135 ms to 6 ms: The Multi-Cloud Networking Mistake Everyone Makes

    In episode 126 of De Nederlandse Kubernetes Podcast, Ronald and Jan sit down with Chris Noon, Technical Solution Director at Alkira, to talk about one of the most underestimated challenges in cloud-native environments: networking. Chris shares his journey from traditional telco and enterprise networking, through VMware NSX, to modern cloud and Kubernetes platforms. The conversation dives deep into why networking often becomes more complex—not less—once organizations adopt multi-cloud, hybrid cloud, and Kubernetes at scale. Key topics include: Why IPsec meshes don’t scale in multi-cloud environmentsHow “hair-pinning” traffic across regions creates massive latencyAlkira’s cloud-native approach to connecting AWS, Azure, GCP, and on-premNetworking considerations around Kubernetes, CNI’s, and Zero TrustDORA compliance, security architecture, and data sovereigntyWhy AI workloads make networking and data placement more critical than everA great episode for anyone who realizes that cloud-native doesn’t end at Kubernetes—it starts with solid network architecture. Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    26 min
  4. #125 Why Kubernetes Belongs on Raspberry Pi’s, PLCs, and the Edge

    JAN 6

    #125 Why Kubernetes Belongs on Raspberry Pi’s, PLCs, and the Edge

    In this episode of The Dutch Kubernetes Podcast, Ronald and Jan sit down with Jussi Nummelin, Senior Principal Engineer at Mirantis, to explore the world of lightweight Kubernetes, edge computing, and multi-cluster orchestration. Jussi introduces k0s, a fully upstream Kubernetes distribution packaged as a single, statically compiled binary with zero dependencies. He explains why simplicity, predictability, and minimal operational overhead are essential for edge and IoT environments such as factory floors, industrial controllers, and remote locations with limited connectivity. The conversation then moves to K0rdent, Mirantis’ multi-cluster management layer built on top of Cluster API. K0rdent enables organizations to declaratively manage large numbers of clusters while automatically deploying essential “beachhead services” like CNI, storage, and observability across environments. Finally, Jussi shares his perspective on the future of Kubernetes: why it’s here to stay, how edge and cloud are converging, and why Kubernetes is becoming the standard orchestration layer far beyond the traditional datacenter. A practical and forward-looking episode packed with real-world use cases, architectural insights, and a clear vision of where Kubernetes is heading. Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    27 min
  5. #124 Van Image Max Age tot DRA: de praktische kant van Kubernetes 1.35

    12/24/2025

    #124 Van Image Max Age tot DRA: de praktische kant van Kubernetes 1.35

    In aflevering 124 van De Nederlandse Kubernetes Podcast bespreken Jan Stomphorst en Ronald Kers de nieuwste Kubernetes-release: versie 1.35. Dit keer geen volledige lijst met alle wijzigingen, maar een bewuste keuze voor impactvolle features die in de praktijk het verschil maken. Een van de eerste onderwerpen is Image Max Age, een nieuwe kubelet-optie waarmee je expliciet kunt bepalen hoe lang ongebruikte container images op nodes blijven staan. Dit helpt bij het voorkomen van volle disks, onverwachte opruimacties en onnodige image downloads, vooral in grote clusters. Daarna komt Max Parallel Image Pulls aan bod. Deze feature voorkomt zogeheten image pull storms wanneer veel nodes tegelijkertijd een nieuwe image moeten downloaden. Door het pullgedrag te limiteren, blijven clusters stabieler en worden registries minder zwaar belast. Ook Dynamic Resource Allocation (DRA) krijgt aandacht. Hiermee kunnen resources buiten CPU en geheugen, zoals GPU’s en andere gespecialiseerde hardware, beter en veiliger worden toegewezen aan workloads. Kubernetes 1.35 voegt bovendien verbeterde foutmeldingen toe, waardoor het veel duidelijker wordt waarom een workload niet start. Tot slot bespreken Jan en Ronald verbeteringen rond StatefulSets, waaronder meer controle over parallelle updates. Dit maakt updates van databases en andere stateful workloads sneller en beter voorspelbaar. Kortom: Kubernetes 1.35 laat zien dat de focus steeds meer ligt op stabiliteit, schaalbaarheid en real-world operaties, in plaats van alleen nieuwe features toevoegen. Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    35 min
  6. #123 How Kubernetes and AI are helping prevent wildfires

    12/16/2025

    #123 How Kubernetes and AI are helping prevent wildfires

    In this episode of The Dutch Kubernetes Podcast, Ronald and Jan talk with Andrea Giardini, cloud native consultant and trainer, live from Dutch Cloud Native Day. Andrea shares his journey into cloud and Kubernetes and dives deep into a real-world use case where Kubernetes, data engineering, and AI are used to help prevent wildfires. Andrea explains how his client Overstory uses satellite and aerial imagery to monitor vegetation near power lines. By combining geospatial data, machine learning models, and infrastructure data from energy providers, they can calculate risk profiles and alert operators before vegetation causes sparks or fires. Instead of reacting to disasters, the platform focuses on prevention. From a technical perspective, Kubernetes plays a critical role. The workloads vary massively, ranging from small CPU-based tasks to extremely heavy jobs requiring dozens of CPUs, large amounts of memory, or GPUs. Kubernetes provides the flexibility to dynamically scale these workloads, spin resources up and down when needed, and keep costs under control. The conversation also covers the data engineering workflow. JupyterHub is used extensively for data exploration, but Andrea explains why notebooks alone are not reliable for long-term, repeatable processing. Once experiments are validated, workflows are moved into reproducible Python pipelines using a cloud-native workflow orchestrator (Dagster), fully integrated with Kubernetes. They further discuss handling large datasets in object storage, running different pipeline steps with different resource profiles, GPU scheduling, and improving developer experience with pull-request-based preview environments. The episode highlights how cloud native technologies are not just about infrastructure efficiency, but can have real-world impact on safety, sustainability, and climate-related challenges. Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    31 min
  7. #122: Helm, Hiccups, and High Scale: Adobe’s Kubernetes Story

    12/09/2025

    #122: Helm, Hiccups, and High Scale: Adobe’s Kubernetes Story

    In deze aflevering spreken Ronald en Jan met Giorgia Fiscaletti, Cloud Reliability Engineer bij Adobe. Giorgia vertelt hoe ze vanuit een creatieve achtergrond — kunst en digital design — uiteindelijk in de wereld van cloud engineering en Kubernetes terechtkwam. Bij Adobe werkt Giorgia aan Adobe Experience Manager, een enorm platform dat draait op tientallen Kubernetes-clusters met honderden namespaces per cluster. Ze deelt hoe Adobe Helm inzet voor het managen van applicaties op schaal en welke uitdagingen daarbij komen kijken. Belangrijkste inzichten uit het gesprek: Van creatieve roots naar cloud engineering: Een onverwachte maar krachtige overgang van artistieke studies naar high-scale cloudplatforms. Helm op massale schaal: Adobe gebruikte aanvankelijk per namespace een eigen helm-controller en source-controller, maar bij clusters met 200–300 namespaces leidde dit tot overbelasting van de API-server. Sharding als oplossing: Door controllers te centraliseren en te sharden over labels werd de druk op de API-server drastisch verlaagd. Etcd-problemen: Helm release secrets stapelden zich op, wat clusters richting read-only situaties duwde. Giorgia legt uit hoe dit werd geïdentificeerd en verholpen. Complexe customization-lagen: Adobe combineert Helm met meerdere configuratielagen voor klantomgevingen, interne features en experimentele patches. Real-world scale: 50+ clusters, ~200 namespaces per cluster, Argo CD pipelines, Flux controllers en zeer diverse klantconfiguraties — allemaal parallel draaiend. Werken bij Adobe: Giorgia geeft een uniek inkijkje in de tooling, architectuur en cultuur achter een platform waar duizenden engineers op bouwen. Deze aflevering biedt een zeldzaam kijkje in de schaalproblemen, designkeuzes en technische creativiteit die nodig zijn om Kubernetes in enterprise-omgeving zoals Adobe soepel te laten functioneren. Powered by ACC ICT Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    33 min
  8. #121 SBOM or Be Doomed: Surviving the Next Supply-Chain Meltdown

    12/02/2025

    #121 SBOM or Be Doomed: Surviving the Next Supply-Chain Meltdown

    In this episode of The Dutch Kubernetes Podcast, Ronald and Jan sit down with Soroosh Khodami to explore one of the most urgent questions in modern software engineering: are we truly ready for the next Log4Shell-level cyber crisis? Soroosh, a hands-on solution architect currently supporting security platform services at Rabobank, takes us deep into the evolving threat landscape. From classic vulnerabilities like SQL injection to modern supply-chain attacks and the infamous XZ backdoor, he explains how seemingly small weaknesses can cascade into full-cluster compromise — especially in cloud-native and Kubernetes environments. The conversation covers: How a simple SQL injection can escalate into full Kubernetes root access, thanks to lateral movement and unpatched dependenciesWhat supply-chain attacks really are, and why they’re becoming the attackers' favorite weaponLow-effort, high-impact practices to secure your CI/CD pipelineShift-Left Security & DevSecOps — what’s hype, what’s real, and how teams need to evolveWhy SBOMs are becoming mandatory, and how they help organizations prepare for future zero-daysEssential tooling for SBOM generation, scanning and continuous monitoringHow new EU regulations (DORA & CRA) will impact developers, architects and enterprises in the coming yearsSoroosh also shares practical stories from the field, including real-world examples of dependency attacks, insecure pipelines, and security mistakes that happen even in mature organizations. This episode is a must-listen for developers, architects, platform engineers, and anyone building or deploying software in 2025 and beyond. Stuur ons een bericht. DevOps Conference The Conference for CI/CD, Kubernetes, Platform Engineering & DevSecOps  k8_Podcast voor 15% korting Support the show Like and subscribe! It helps out a lot. You can also find us on: De Nederlandse Kubernetes Podcast - YouTube Nederlandse Kubernetes Podcast (@k8spodcast.nl) | TikTok De Nederlandse Kubernetes Podcast Where can you meet us: Events This Podcast is powered by: ACC ICT - IT-Continuïteit voor Bedrijfskritische Applicaties | ACC ICT

    32 min

About

De Nederlandse Kubernetes Podcast: gemaakt door én voor mensen met een hart voor IT. In deze reeks gaan Ronald Kers en Jan Stomphorst in gesprek over Kubernetes met als doel Kubernetes toegankelijk te maken voor iedereen.

You Might Also Like