1/There are also a different set of risks and challenges with the OSS business model. I’ll share some that I experienced while working at an OSS startup during my time @opendeis 🧵
2/Customers want to know “why buy the cow when I can get the milk for free?”. Is your product so much more compelling than what a skilled team can piece together using OSS?
3/Customers/community members don’t want to unknowingly build your product unpaid via OSS. Separate your product from the OSS project and make it clear so they can choose to opt-in
Every #Kubernetes cluster admin MUST watch "Advanced Persistence Threats" session from @IanColdwater@bradgeesaman#KubeCon#CloudNative. So much knowledge and goodness - thanks for sharing. I've been trying to get people to understand this attack vector for a long time 👇
You all did a much better job than me articulating it. Ahhh!!! Watching this hurts! I even wrote a chapter on this in Kubernetes Best Practices O'Reilly book. I wake up in cold sweats knowing how easy it is to leave this open! Biting my nails again.
Heartburn watching this. I suspect my pain isn't going to stop here. Anxious for what's going to happen here.
A heartwarming story on the power of open source community, a thread - @khnidk and I have been working on a rather large change in #Kubernetes to allow support for ipv4/ipv6 dual stack. It's a MASSIVE change which touches many parts of the code (as you can imagine). 1/10
This week is code freeze for the 1.15 release and we are trying to get this change in. It needs review by the sponsoring sig of the KEP. Which in this case is sig-network 2/10
So Kal did the work and got the PR ready and handed it over to sig-network. Extremely tight timeline given the size. Could we have gotten it to them earlier, sure. We probably could have done a lot of things to make this easier on everyone. 3/10