Building Stateful Workloads in Kubernetes
It's day 2. Kubernetes is running. You have your deployments and services set. Now how do you migrate the data store? Let's journey together on this code-focused tour through Persistent Volumes, Persistent Volume Claims, and StatefulSets. We'll craft and launch a strategy to care for your users' data in this new container world. You can power your business on Kubernetes: stateless or stateful.
Bastille : Secure Container Automation for FreeBSD
Bastille automates deployment and management of containers using a container technology old enough to buy you a drink!
We've taken automation concepts learned from leading config management contenders and combined them with the ORIGINAL container technology. FreeBSD introduced containers in April 1999, pre-dating every other container technology available.
Imagine a reliable container technology that has had two decades to work out bugs.Talk about production ready!
This talk will outline design features and demonstrate secure container automation in the cloud and on the Raspberry Pi.
Beyond Syscalls: Event Abnormality Detection with Falco
In any Cloud Native architecture there’s a seemingly endless stream of events that happen at each layer. These events can be used to detect abnormal activity and possible security incidents, as well as providing an audit trail of activity. In this talk we’ll cover how we extended Falco to ingest events beyond just host system calls, such as Kubernetes audit events or even application level events.
Fedora Modularity: Lessons Learned, Next Steps & Demo
For a few years now, we have been working to make the Fedora Distribution less monolithic and find ways to better meet user needs. We refer to that work as the "Fedora Modularity Objective." We will be discussing some of our setbacks, our new architecture and demo'ing how it works. We will also demonstrate how using modules can simplify container development and maintenance.
Multi-Container Deployment with Ansible Service Broker
The Ansible Service Broker provides a new way to define and distribute containerized applications in Kubernetes and OpenShift. By combining standard Ansible playbooks, metadata for your application, and an Ansible runtime all into a single container, you now have a simple tool that can deploy your multi-service application. The Ansible Service Broker makes that tool discoverable, enabling end users to self-provision via a Service Catalog.
You will learn how to create an Ansible Playbook Bundle and expose it through the Service Catalog.
What you should know about container security
Container is a hot topic these days. The maturity of container orchestration is enabling container to be deployable in production environment. It is important to make container secure in the production environment. This session will give the audience on overview on what are the options available for securing a container such that they can know how to harden the container and the host for a more secured environment.
Techniques for Managing Postgresql with Containers
In this talk, we'll explain why you would want to run Postgresql inside containers, provide examples of deployments, demonstrate the open source Crunchy Postgresql Manager project, and provide examples of running Postgresql on Redhat Openshift. Details include data volume management, server pinning, and Postgresql administration. Example code is provided on github allowing the audience to experiment and try out Postgresql containers themselves. This will be a joint presentation between Crunchy Data and Redhat showcasing the latest cloud technologies.



