Thumbnail image

VERIFY COSIGN SIGNATURES IN GO USING SIGSTORE/SIGSTORE

After integrating cosign into the release process of Constellation’s CLI, I also wanted to improve the supply chain security of our metadata that are used for attestation.

Read more
Thumbnail image

WHAT CAN CONFIDENTIAL COMPUTING DO FOR THE KUBERNETES COMMUNITY?

This is a summary of the talk I gave at the Kubernetes Community Days (KCD) Berlin 2022. Both, the slides and a recording are available.

Read more
Thumbnail image

POSTMORTEM: UNRAID FLASH DEVICE FAILURE

Status: Complete, action items in progress.

Summary: unRAID’s OS Flash Device failed undetected for 14 days, preventing server to successfully reboot, taking all internal services down, including pfSense VM which prevented home network from accessing internet.

Read more
Thumbnail image

CONFIGURE DNS:NET AS ISP ON PFSENSE ROUTER

Since DNS:NET provides support only for a limited number of supported routers, and pfSense is not on that list, I will share my configuration here.

Read more
Thumbnail image

CONTROL VIRTUALBOX VMS VIA BATCH

VirtualBox GUI is slow for repetitive tasks such as starting & stopping virtual machines. In addition, some tasks such as starting VMs headless is not possible at all.

Read more
Thumbnail image

TRAEFIK 2 AS DOCKER REVERSE PROXY ON UNRAID

Hosting multiple containers on unRAID, and keeping track of their port mappings can become quite annoying. Using a reverse proxy as a single point of entry will allow us to hide this from the user, and use easy to remember DNS records instead.

Read more