Category
Security
Access, certificates, backups and sovereignty in operations.
← Clear filter
SecurityLooking at production data without sharing the password
Support wants to know whether the order really arrived. The quickest way – the app’s password and a port-forward – is almost always the wrong one. Four layers for read access that only reads and stays traceable.
- Databases
- Compliance
- Kubernetes
SecurityKubernetes Secrets: why Base64 is not encryption
A Kubernetes Secret is Base64, readable by anyone with the right permissions. Where secrets leak, and what a secret manager, rotation and clean permissions change.
- Secrets
- Kubernetes
- Scaleway
SecurityNIS2 in Kubernetes operations: the evidence an auditor wants to see
NIS2 doesn’t require any particular technology, but measures and proof. For Kubernetes operations, that means personal access, a complete log and tested backups.
- Compliance
- Kubernetes
- SaaS
SecurityCustomer offboarding: why every drop needs a dump first
Deleting is easy, restoring is impossible. Offboarding needs a fixed order: back up, verify, then tear down. And a retention rule that someone has written down.
- Backups
- SaaS
- Databases
SecurityLet’s Encrypt rate limits: why SaaS subdomains need a wildcard certificate
Fifty certificates per domain per week sounds like a lot. Until the fiftieth customer gets stuck in onboarding and the certificate won’t arrive until next week.
- TLS
- SaaS
- Ingress