SlideShare a Scribd company logo
1 of 14
CoreOS Fest 2016 Summary
Zsolt Molnar
Outline
• Bit about CoreOS Fest background
• News
– etcd v3, DEX, DTC
– prometheus, DEIS, systemd, Linux kernel
– Business
What the heck CoreOS is Fest about?
• What is CoreOS ?
– Operating system, Company, project umbrella
– The “other”container camp
– Similarly to docker the aim is building a container
based distributed platform for running custom
applications => GIFEE == cloud native computing
• reusing existing building blocks
– Omaha, systemd, docker, prometheus, kubernetes…
• New tools e.g: coreos-kubernetes
• New building blocks e.g: Clair, DEX, DTC
CoreOS CoreOS CoreOS CoreOS CoreOS
Bare-metal / Cloud Iaas
flannel rkt etcd …
App App App
…
Container orchestration engine
Container runtime Distributed k/v store
Network fabric
Quay
Container registry
…
kubernetes
Now the interesting bits…
• Disclamer:
maybe not all news are that crisps and fresh,
but not every baby was born on the same day
etcd v3 (beta)
• Improved memory usage
• Better performance: gRPC vs JSON
• New storage engine: incremental snapshots
• Smooth upgrade procedure
[1] http://play.etcd.io
[2]https://speakerdeck.com/philips/etcd-mission-critical-key-value-store-
coreos-fest-2016
[3] https://coreos.com/blog/etcd-v230.html
Kubernetes security
• DTC (Distributed Trust Computing) [1]
– Verifying the infrastructure integrity utilizing secure boot and
TPM chips
– Easily integrates into Kubernetes, no hacks needed
– Packet [2] [3]
• DEX [4]
– Enabling external authenticators for Kubernetes
– OAuth 2.0
– LDAP support [5]
[1] https://coreos.com/blog/coreos-trusted-computing.html
[2] http://stackpointcloud.com
[3] https://www.packet.net
[4] https://github.com/coreos/dex
[5] https://coreos.com/blog/dex-ldap-support.html
jwtproxy
• service to service authentication proxy
– use AUTH headers since this is the only field
compatible across all infra solutions
e.g. different load balancer implementations
– compatible with TLS infrastructure
[1] https://github.com/coreos/jwtproxy
Prometheus
• open-source systems monitoring and alerting toolkit by SoundCloud [1]
• Part of CNCF now! [2]
• Modeled after Google’s internal monitoring system
– Pull based metrics collection solution
– HTTP as a transport protocol
– Use labels to differentiate the characteristics of the thing that is being measured
• Inbuilt Kubernetes integration for automatic pod registration and metrics
collection
• Interesting Kubernetes related usecase [3]
• Prometheus conf 2016. Aug 25-26 , Berlin [4]
[1] https://prometheus.io
[2] https://cncf.io/news/announcement/2016/05/cloud-native-computing-
foundation-accepts-prometheus-second-hosted-project
[3] https://coreos.com/blog/improving-kubernetes-scheduler-
performance.html
[4] https://promcon.io
Keynotes
• Security Features in systemd, Lennart Poettering [1]
• State of the Linux Kernel, Greg Kroah-Hartman [2]
• Runway: a new tool for distributed systems design, Diego
Ongaro [3]
[1] http://0pointer.de/blog/projects/security.html
[2] https://www.linux.com/news/greg-kh-update-linux-kernel-
46-next-week-new-security-features
[3] http://www.internetnews.com/blog/skerner/coreos-fest-
runway-provides-a-new-model-distributed-systems-
design.html
Funky hacks
• quayctl: pulling container images via bittorrent
[1]
• Stackanetes: running OpenStack on top of
Kubernetes [2][3]
• Hyperclair: a lightweight command-line tool for
working locally with Clair
[1] https://github.com/coreos/quayctl
[2] https://tectonic.com/blog/stackanetes-openstack-on-k8s-prototype.html
[3] https://github.com/stackanetes/stackanetes
[4] https://github.com/wemanity-belgium/hyperclair
Secure the internet
Secure Operating System Secure container platform Additional security tools
systemd
Auto
updates
Linux
kernel
rkt kubernetes Clair jwtproxy
DEX DTC
Biz news
• CoreOS closed $28M Series B investment
• Canel: joint venture between Calico and
CoreOS to build best of breed network
solution
• Cooperation with Intel
– Clear containers
– Stackanetes
Thank your for your attention!
Q&A

More Related Content

What's hot

What's hot (20)

Rook cncf-wg-storage
Rook cncf-wg-storageRook cncf-wg-storage
Rook cncf-wg-storage
 
Introduction to rook
Introduction to rookIntroduction to rook
Introduction to rook
 
Alluxio data orchestration for machine learning
Alluxio data orchestration for machine learningAlluxio data orchestration for machine learning
Alluxio data orchestration for machine learning
 
OpenNebulaConf2017EU: Enabling Dev and Infra teams by Lodewijk De Schuyter,De...
OpenNebulaConf2017EU: Enabling Dev and Infra teams by Lodewijk De Schuyter,De...OpenNebulaConf2017EU: Enabling Dev and Infra teams by Lodewijk De Schuyter,De...
OpenNebulaConf2017EU: Enabling Dev and Infra teams by Lodewijk De Schuyter,De...
 
Setting up monitoring system for Alluxio with Prometheus and Grafana in 10 mi...
Setting up monitoring system for Alluxio with Prometheus and Grafana in 10 mi...Setting up monitoring system for Alluxio with Prometheus and Grafana in 10 mi...
Setting up monitoring system for Alluxio with Prometheus and Grafana in 10 mi...
 
OpenNebulaConf2017EU: Providing cloud and Managed Hosting Environment by Mich...
OpenNebulaConf2017EU: Providing cloud and Managed Hosting Environment by Mich...OpenNebulaConf2017EU: Providing cloud and Managed Hosting Environment by Mich...
OpenNebulaConf2017EU: Providing cloud and Managed Hosting Environment by Mich...
 
OpenNebula Conf 2014: Expanding OpenNebula´s support for Cloud Bursting - Emm...
OpenNebula Conf 2014: Expanding OpenNebula´s support for Cloud Bursting - Emm...OpenNebula Conf 2014: Expanding OpenNebula´s support for Cloud Bursting - Emm...
OpenNebula Conf 2014: Expanding OpenNebula´s support for Cloud Bursting - Emm...
 
The Missing Piece of On-Demand Clusters
The Missing Piece of On-Demand ClustersThe Missing Piece of On-Demand Clusters
The Missing Piece of On-Demand Clusters
 
OpenStack Swift的性能调优
OpenStack Swift的性能调优OpenStack Swift的性能调优
OpenStack Swift的性能调优
 
Openstack CPI cloudfoundry
Openstack CPI cloudfoundryOpenstack CPI cloudfoundry
Openstack CPI cloudfoundry
 
Mapbox.com: Serving maps from 8 regions
Mapbox.com: Serving maps from 8 regionsMapbox.com: Serving maps from 8 regions
Mapbox.com: Serving maps from 8 regions
 
Rethinking the OS
Rethinking the OSRethinking the OS
Rethinking the OS
 
Alluxio: The missing piece of on-demand clusters at Alluxio Meetup 2016
Alluxio: The missing piece of on-demand clusters at Alluxio Meetup 2016Alluxio: The missing piece of on-demand clusters at Alluxio Meetup 2016
Alluxio: The missing piece of on-demand clusters at Alluxio Meetup 2016
 
OpenNebulaConf2017EU: Growing into the Petabytes for Fun and Profit by Michal...
OpenNebulaConf2017EU: Growing into the Petabytes for Fun and Profit by Michal...OpenNebulaConf2017EU: Growing into the Petabytes for Fun and Profit by Michal...
OpenNebulaConf2017EU: Growing into the Petabytes for Fun and Profit by Michal...
 
Alluxio (Formerly Tachyon): Unify Data At Memory Speed at Global Big Data Con...
Alluxio (Formerly Tachyon): Unify Data At Memory Speed at Global Big Data Con...Alluxio (Formerly Tachyon): Unify Data At Memory Speed at Global Big Data Con...
Alluxio (Formerly Tachyon): Unify Data At Memory Speed at Global Big Data Con...
 
OpenNebula Conf | Lightning talk: Managing a Scientific Computing Facility wi...
OpenNebula Conf | Lightning talk: Managing a Scientific Computing Facility wi...OpenNebula Conf | Lightning talk: Managing a Scientific Computing Facility wi...
OpenNebula Conf | Lightning talk: Managing a Scientific Computing Facility wi...
 
Introducing gluster filesystem by aditya
Introducing gluster filesystem by adityaIntroducing gluster filesystem by aditya
Introducing gluster filesystem by aditya
 
Openstack swift - VietOpenStack 6thmeeetup
Openstack swift - VietOpenStack 6thmeeetupOpenstack swift - VietOpenStack 6thmeeetup
Openstack swift - VietOpenStack 6thmeeetup
 
OpenStack Swift
OpenStack SwiftOpenStack Swift
OpenStack Swift
 
OpenNebula Conf 2014 | Bootstrapping a virtual infrastructure using OpenNebul...
OpenNebula Conf 2014 | Bootstrapping a virtual infrastructure using OpenNebul...OpenNebula Conf 2014 | Bootstrapping a virtual infrastructure using OpenNebul...
OpenNebula Conf 2014 | Bootstrapping a virtual infrastructure using OpenNebul...
 

Viewers also liked

Viewers also liked (7)

Cluj.DevOps Meetup - Code your Infrastructure
Cluj.DevOps Meetup - Code your InfrastructureCluj.DevOps Meetup - Code your Infrastructure
Cluj.DevOps Meetup - Code your Infrastructure
 
Real-time Cloud Management with SaltStack
Real-time Cloud Management with SaltStackReal-time Cloud Management with SaltStack
Real-time Cloud Management with SaltStack
 
Build & test once, deploy anywhere - Vday.hu 2016
Build & test once, deploy anywhere - Vday.hu 2016Build & test once, deploy anywhere - Vday.hu 2016
Build & test once, deploy anywhere - Vday.hu 2016
 
Bitfusion Saltconf16 - Seamless Docker Orchestration with SaltStack
Bitfusion Saltconf16 - Seamless Docker Orchestration with SaltStackBitfusion Saltconf16 - Seamless Docker Orchestration with SaltStack
Bitfusion Saltconf16 - Seamless Docker Orchestration with SaltStack
 
SUSE Manager et SaltStack
SUSE Manager et SaltStackSUSE Manager et SaltStack
SUSE Manager et SaltStack
 
Packer, where DevOps begins
Packer, where DevOps beginsPacker, where DevOps begins
Packer, where DevOps begins
 
Why SaltStack ?
Why SaltStack ?Why SaltStack ?
Why SaltStack ?
 

Similar to CoreOS fest 2016 Summary - DevOps BP 2016 June

Similar to CoreOS fest 2016 Summary - DevOps BP 2016 June (20)

Moby KubeCon 2017
Moby KubeCon 2017Moby KubeCon 2017
Moby KubeCon 2017
 
Pairs OpenStack Summit Summary
Pairs OpenStack Summit SummaryPairs OpenStack Summit Summary
Pairs OpenStack Summit Summary
 
Moby Open Source Summit North America 2017
Moby Open Source Summit North America 2017Moby Open Source Summit North America 2017
Moby Open Source Summit North America 2017
 
Mesos and Kubernetes ecosystem overview
Mesos and Kubernetes ecosystem overviewMesos and Kubernetes ecosystem overview
Mesos and Kubernetes ecosystem overview
 
Webinar: Enabling Microservices with Containers, Orchestration, and MongoDB
Webinar: Enabling Microservices with Containers, Orchestration, and MongoDBWebinar: Enabling Microservices with Containers, Orchestration, and MongoDB
Webinar: Enabling Microservices with Containers, Orchestration, and MongoDB
 
'Cloud-Native' Ecosystem - Aug 2015
'Cloud-Native' Ecosystem - Aug 2015'Cloud-Native' Ecosystem - Aug 2015
'Cloud-Native' Ecosystem - Aug 2015
 
On CloudStack, Docker, Kubernetes, and Big Data…Oh my ! By Sebastien Goasguen...
On CloudStack, Docker, Kubernetes, and Big Data…Oh my ! By Sebastien Goasguen...On CloudStack, Docker, Kubernetes, and Big Data…Oh my ! By Sebastien Goasguen...
On CloudStack, Docker, Kubernetes, and Big Data…Oh my ! By Sebastien Goasguen...
 
Docker and kubernetes_introduction
Docker and kubernetes_introductionDocker and kubernetes_introduction
Docker and kubernetes_introduction
 
OSDC 2018 | Three years running containers with Kubernetes in Production by T...
OSDC 2018 | Three years running containers with Kubernetes in Production by T...OSDC 2018 | Three years running containers with Kubernetes in Production by T...
OSDC 2018 | Three years running containers with Kubernetes in Production by T...
 
Build your own private Cloud environment
Build your own private Cloud environmentBuild your own private Cloud environment
Build your own private Cloud environment
 
DNUG46 - Build your own private Cloud environment
DNUG46 - Build your own private Cloud environmentDNUG46 - Build your own private Cloud environment
DNUG46 - Build your own private Cloud environment
 
Introduction to Kubernetes
Introduction to KubernetesIntroduction to Kubernetes
Introduction to Kubernetes
 
Container Runtimes: Comparing and Contrasting Today's Engines
Container Runtimes: Comparing and Contrasting Today's EnginesContainer Runtimes: Comparing and Contrasting Today's Engines
Container Runtimes: Comparing and Contrasting Today's Engines
 
Cloud Native Landscape (CNCF and OCI)
Cloud Native Landscape (CNCF and OCI)Cloud Native Landscape (CNCF and OCI)
Cloud Native Landscape (CNCF and OCI)
 
Why kubernetes for Serverless (FaaS)
Why kubernetes for Serverless (FaaS)Why kubernetes for Serverless (FaaS)
Why kubernetes for Serverless (FaaS)
 
Kubernetes for Serverless - Serverless Summit 2017 - Krishna Kumar
Kubernetes for Serverless  - Serverless Summit 2017 - Krishna KumarKubernetes for Serverless  - Serverless Summit 2017 - Krishna Kumar
Kubernetes for Serverless - Serverless Summit 2017 - Krishna Kumar
 
Centralizing Kubernetes and Container Operations
Centralizing Kubernetes and Container OperationsCentralizing Kubernetes and Container Operations
Centralizing Kubernetes and Container Operations
 
Containers in depth – Understanding how containers work to better work with c...
Containers in depth – Understanding how containers work to better work with c...Containers in depth – Understanding how containers work to better work with c...
Containers in depth – Understanding how containers work to better work with c...
 
Introduction to Apache Mesos and DC/OS
Introduction to Apache Mesos and DC/OSIntroduction to Apache Mesos and DC/OS
Introduction to Apache Mesos and DC/OS
 
Mesosphere quick overview
Mesosphere quick overviewMesosphere quick overview
Mesosphere quick overview
 

Recently uploaded

Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

Recently uploaded (20)

MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 

CoreOS fest 2016 Summary - DevOps BP 2016 June

  • 1. CoreOS Fest 2016 Summary Zsolt Molnar
  • 2. Outline • Bit about CoreOS Fest background • News – etcd v3, DEX, DTC – prometheus, DEIS, systemd, Linux kernel – Business
  • 3. What the heck CoreOS is Fest about? • What is CoreOS ? – Operating system, Company, project umbrella – The “other”container camp – Similarly to docker the aim is building a container based distributed platform for running custom applications => GIFEE == cloud native computing • reusing existing building blocks – Omaha, systemd, docker, prometheus, kubernetes… • New tools e.g: coreos-kubernetes • New building blocks e.g: Clair, DEX, DTC
  • 4. CoreOS CoreOS CoreOS CoreOS CoreOS Bare-metal / Cloud Iaas flannel rkt etcd … App App App … Container orchestration engine Container runtime Distributed k/v store Network fabric Quay Container registry … kubernetes
  • 5. Now the interesting bits… • Disclamer: maybe not all news are that crisps and fresh, but not every baby was born on the same day
  • 6. etcd v3 (beta) • Improved memory usage • Better performance: gRPC vs JSON • New storage engine: incremental snapshots • Smooth upgrade procedure [1] http://play.etcd.io [2]https://speakerdeck.com/philips/etcd-mission-critical-key-value-store- coreos-fest-2016 [3] https://coreos.com/blog/etcd-v230.html
  • 7. Kubernetes security • DTC (Distributed Trust Computing) [1] – Verifying the infrastructure integrity utilizing secure boot and TPM chips – Easily integrates into Kubernetes, no hacks needed – Packet [2] [3] • DEX [4] – Enabling external authenticators for Kubernetes – OAuth 2.0 – LDAP support [5] [1] https://coreos.com/blog/coreos-trusted-computing.html [2] http://stackpointcloud.com [3] https://www.packet.net [4] https://github.com/coreos/dex [5] https://coreos.com/blog/dex-ldap-support.html
  • 8. jwtproxy • service to service authentication proxy – use AUTH headers since this is the only field compatible across all infra solutions e.g. different load balancer implementations – compatible with TLS infrastructure [1] https://github.com/coreos/jwtproxy
  • 9. Prometheus • open-source systems monitoring and alerting toolkit by SoundCloud [1] • Part of CNCF now! [2] • Modeled after Google’s internal monitoring system – Pull based metrics collection solution – HTTP as a transport protocol – Use labels to differentiate the characteristics of the thing that is being measured • Inbuilt Kubernetes integration for automatic pod registration and metrics collection • Interesting Kubernetes related usecase [3] • Prometheus conf 2016. Aug 25-26 , Berlin [4] [1] https://prometheus.io [2] https://cncf.io/news/announcement/2016/05/cloud-native-computing- foundation-accepts-prometheus-second-hosted-project [3] https://coreos.com/blog/improving-kubernetes-scheduler- performance.html [4] https://promcon.io
  • 10. Keynotes • Security Features in systemd, Lennart Poettering [1] • State of the Linux Kernel, Greg Kroah-Hartman [2] • Runway: a new tool for distributed systems design, Diego Ongaro [3] [1] http://0pointer.de/blog/projects/security.html [2] https://www.linux.com/news/greg-kh-update-linux-kernel- 46-next-week-new-security-features [3] http://www.internetnews.com/blog/skerner/coreos-fest- runway-provides-a-new-model-distributed-systems- design.html
  • 11. Funky hacks • quayctl: pulling container images via bittorrent [1] • Stackanetes: running OpenStack on top of Kubernetes [2][3] • Hyperclair: a lightweight command-line tool for working locally with Clair [1] https://github.com/coreos/quayctl [2] https://tectonic.com/blog/stackanetes-openstack-on-k8s-prototype.html [3] https://github.com/stackanetes/stackanetes [4] https://github.com/wemanity-belgium/hyperclair
  • 12. Secure the internet Secure Operating System Secure container platform Additional security tools systemd Auto updates Linux kernel rkt kubernetes Clair jwtproxy DEX DTC
  • 13. Biz news • CoreOS closed $28M Series B investment • Canel: joint venture between Calico and CoreOS to build best of breed network solution • Cooperation with Intel – Clear containers – Stackanetes
  • 14. Thank your for your attention! Q&A