
This post discusses a very in-demand feature for PKI, the automation of certificate provisioning. It covers validation modes and ACME.
This post clarifies a few basic concepts around public key infrastructure, including CA tier, topology and what's in a X.509 certificate.
How workload identity on EKS (AWS Kubernetes) works to access cloud resources and how EKS Pod Identity is helpful
How workload identity on AKS (Azure Kubernetes) works to access cloud resources and whey Entra workload ID is helpful
With my configuration tampered with malicious redirect, here is how I fixed and hardened it with CloudFlare to improve WordPress security.
AWS Systems Manager is a hodgepodge and this post explains the core capabilities and the ones built on top of the core capabilities.
In addition to Control Tower, Landing Zone Accelerator (LZA) is another option to orchestrate a Landing Zone on AWS. This post discusses LZA.
We can orchestrate landing zone in AWS using different tools. This post discusses control tower as an option to orchestrate landing zone.
Options to authenticate kubectl to OIDC kube-apiserver using vanilla Kubernetes, Azure AKS, ROSA and EKS using OIDC
This post covers OIDC's classic flow - the authorization code flow and other flows for different architectures, as well as OIDC proxy.