What I Learned Reading All 71 Articles of the Cyber Resilience Act

I read the whole of Regulation (EU) 2024/2847, every article and every annex, and mapped KubeAid and LinuxAid against it for my employer. These are the things that surprised me, the mental model I ended up with, and what I would tell the next engineer who has to do the same reading.

September 2026

CiliumNetworkPolicy Anti-Patterns: 8 Ways Correct-Looking YAML Silently Drops Traffic

Lessons from writing CiliumNetworkPolicies for the KubeAid-addons chart - toServices port traps, labels Cilium ignores, toFQDNs without a DNS rule, default-deny surprises, and why every namespace needs exactly one default-deny.

August 2026

Site Reliability Engineer (Obmondo)

Apr 2025 – Present

Kubernetes Audit Logging: Stages, Levels, and Policy Design

A breakdown of how kube-apiserver audit events actually work - request stages, audit levels, writing policies, and how SREs tune them differently for prod vs dev clusters.

June 2026

Getting Started with CISO Assistant on Kubernetes

Deploying CISO Assistant via Helm, creating your first superuser, adding users, and how evidence storage actually works.

June 2026