TGViewer
Kubesploit Kubesploit @kubesploit · 2.13K subscribers
Post #1529 322

Forwarded from KubeFM

Andrei Kvapil, CEO and Founder of Aenix, explains how GitOps tools handle access control and restrict deployments. He highlights that GitOps provides:

- Real-time inspection of changes before deployment
- Visibility of exact differences between desired and existing cluster states
- Control at both deployment and review phases

Andrei outlines a strategy using a pull request model to manage access:

1. Configure the GitOps operator to watch the main branch
2. Restrict direct pushes to the main branch
3. Implement a pull/merge request workflow
4. Review all changes before they reach the main branch

This approach allows companies to predict and control what will be deployed, leveraging GitOps principles while maintaining strict access control.

Watch the full episode: https://ku.bz/0mvh5s4Ld
More from @kubesploit
  1. Sep 29, 2026This tutorial shows how to let cert-manager issue Let's Encrypt certificates for services…
  2. Sep 29, 2026This article explains how to design a production-grade MCP server for platform teams, with…
  3. Sep 28, 2026This article follows a secret from an external store into a pod through the Secrets Store…
  4. Sep 28, 2026Heading to KubeCon + CloudNativeCon North America? Join us the day before for our first in…
  5. Sep 25, 2026This tutorial builds a Docker image with a secret, then shows how it still sits in an earl…
  6. Sep 24, 2026This article explains how Vault piles up unexpired leases when pods keep re-authenticating…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →