🤖 EKSBot
banner
eksbot.bsky.social
🤖 EKSBot
@eksbot.bsky.social
Automatic posting of EKS related blog articles, software releases, etc. Not affiliated with AWS.
How Salesforce migrated from Cluster Autoscaler to Karpenter across their fleet of 1,000 EKS clusters #karpenter #eks #kubernetes
How Salesforce migrated from Cluster Autoscaler to Karpenter across their fleet of 1,000 EKS clusters
This blog post examines how Salesforce, operating one of the world's largest Kubernetes deployments, successfully migrated from Cluster Autoscaler to Karpenter across their fleet of 1,000 plus Amazon Elastic Kubernetes Service (Amazon EKS) clusters.
aws.amazon.com
January 12, 2026 at 8:15 PM
kubernetes-sigs/aws-load-balancer-controller released v2.17.1 #eks #kubernetes
kubernetes-sigs/aws-load-balancer-controller released v2.17.1
v2.17.1 (requires Kubernetes 1.22+) Documentation Image: public.ecr.aws/eks/aws-load-balancer-controller:v2.17.1 Thanks to all our contributors! 😊 🚀 What's New QUIC Protocol Support: Added QUIC protocol support for Gateway API and Service API JWT Validation: Support for JWT validation in Gateway API Default Load Balancer Scheme: Added support for specifying —default-load-balancer-scheme flag in Helm chart 🔧 Enhancements and Fixes Bug Fixes • Helm Chart: Duplicated CRD in helm kustomization Documentation Updates • Service Actions: Fixed service.beta.kubernetes.io/actions example in documentation • Conformance Report: Generated v2.17.0 conformance test report Changelog since v2.17.0 • Merge Main to release-2.17 (#4533, @wweiwei-li) • [GW API] Add QUIC support (#4530, @zac-nixon) • docs: fix service.beta.kubernetes.io/actions example (#4529, @davidxia) • Add E2E tests for QUIC support in Service API. (#4527, @zac-nixon) • feat(chart): add support for specifying —default-load-balancer-scheme flag (#4141, @ysam12345) • fix: duplicated CRD in helm kustomization (#4518, @wweiwei-li) • generate v2.17.0 conformance test report (#4521, @shuqz) • [feat gw-api]support jwt validation (#4516, @shuqz) • fix helm chart version (#4515, @wweiwei-li)
github.com
January 9, 2026 at 11:31 PM
How can I retrieve Amazon EKS control plane logs from CloudWatch Logs? #eks #kubernetes
How can I retrieve Amazon EKS control plane logs from CloudWatch Logs?
www.youtube.com
January 5, 2026 at 6:31 PM
Proactive Amazon EKS monitoring with Amazon CloudWatch Operator and AWS Control Plane metrics #eks #kubernetes
Proactive Amazon EKS monitoring with Amazon CloudWatch Operator and AWS Control Plane metrics
This post explores using the Amazon CloudWatch monitoring, including new Amazon EKS metrics and the CloudWatch Observability Operator, to gain deeper visibility into cluster operations, detect issues, understand bottlenecks, and maintain healthy EKS clusters.
aws.amazon.com
January 5, 2026 at 6:15 PM
kubernetes-sigs/aws-ebs-csi-driver released v1.54.0 #eks #kubernetes
kubernetes-sigs/aws-ebs-csi-driver released v1.54.0
AWS EBS CSI Driver CHANGELOG See CHANGELOG for full list of changes
github.com
December 16, 2025 at 5:17 PM
kubernetes-sigs/aws-ebs-csi-driver released helm-chart-aws-ebs-csi-driver-2.54.1 #eks #kubernetes
kubernetes-sigs/aws-ebs-csi-driver released helm-chart-aws-ebs-csi-driver-2.54.1
A Helm chart for AWS EBS CSI Driver
github.com
December 16, 2025 at 4:32 PM
Amazon EKS introduces enhanced network security policies #ec2 #eksautomode #eks #kubernetes
Amazon EKS introduces enhanced network security policies
<p>Today, we’re announcing enhanced network policy capabilities in <a href="https://aws.amazon.com/eks/" target="_blank">Amazon Elastic Kubernetes Service (EKS)</a>, allowing customers to improve the network security posture for their Kubernetes workloads and their integrations with cluster-external destinations. This enhancement builds on network segmentation features previously supported in EKS. Now you can centrally enforce network access filters across the entire cluster, as well as leverage Domain Name System (DNS) based policies to secure egress traffic from your cluster’s environment.<br> <br> As customers continue to scale their application environments using EKS, network traffic isolation is increasingly fundamental for preventing unauthorized access to resources inside and outside the cluster. To address this, EKS introduced support for <a href="https://kubernetes.io/docs/concepts/services-networking/network-policies/" target="_blank">Kubernetes NetworkPolicies</a> in the <a href="https://github.com/aws/amazon-vpc-cni-k8s" target="_blank">Amazon VPC Container Network Interface (VPC CNI) plugin</a>, allowing you to segment pod-to-pod communication at a namespace level. Now you can further strengthen the defensive posture for your Kubernetes network environment by centrally managing network filters for the whole cluster. Also, cluster admins now have a more stable and predictable approach for preventing unauthorized access to cluster-external resources in the cloud or on-prem using egress rules that filter traffic to external endpoints based on their Fully Qualified Domain Name (FQDN).<br> <br> These new network security features are available in all commercial AWS Regions for new EKS clusters running Kubernetes version 1.29 or later, with support for existing clusters to follow in the coming weeks. ClusterNetworkPolicy is available in all EKS cluster launch modes using VPC CNI v1.21.0 or later. DNS-based policies are only supported in <a href="https://docs.aws.amazon.com/eks/latest/userguide/automode.html" target="_blank">EKS Auto Mode-launched EC2 instances</a>. To learn more, visit the <a href="https://docs.aws.amazon.com/eks/latest/userguide/auto-net-pol.html" target="_blank">Amazon EKS documentation</a> or read the <a href="https://aws.amazon.com/blogs/containers/amazon-eks-introduces-enhanced-network-policy-capabilities" target="_blank">launch blog post here</a>.</p>
aws.amazon.com
December 15, 2025 at 11:30 PM
kubernetes-sigs/aws-ebs-csi-driver released helm-chart-aws-ebs-csi-driver-2.54.0 #eks #kubernetes
kubernetes-sigs/aws-ebs-csi-driver released helm-chart-aws-ebs-csi-driver-2.54.0
A Helm chart for AWS EBS CSI Driver
github.com
December 15, 2025 at 9:32 PM
aws/karpenter-provider-aws released v1.6.6 #karpenter #eks #kubernetes
aws/karpenter-provider-aws released v1.6.6
Chores • bump greatest supported k8s version (#8774) #8774 (Jason Deal)
github.com
December 15, 2025 at 6:47 PM
aws/karpenter-provider-aws released v1.7.4 #karpenter #eks #kubernetes
aws/karpenter-provider-aws released v1.7.4
Bug Fixes • update AMI versions for suite test (#8779) #8779 (Jason Deal) Chores • bump greatest supported k8s version (#8775) #8775 (Jason Deal)
github.com
December 15, 2025 at 6:31 PM
ACM now supports automated certificate management for Kubernetes #eks #kubernetes
ACM now supports automated certificate management for Kubernetes
<p>AWS Certificate Manager (ACM) now automates certificate provisioning and distribution for Kubernetes workloads through AWS Controllers for Kubernetes (ACK). Previously, ACM automated certificate management for AWS-integrated services like Application Load Balancers and CloudFront. However, using ACM certificates with applications terminating TLS in Kubernetes required manual steps: exporting certificates and private keys via API, creating Kubernetes Secrets, and updating them at renewal. This integration extends ACM's automation to any Kubernetes workload for both public and private certificates, enabling you to manage certificates using native Kubernetes APIs.<br> <br> With ACK, you define certificates as Kubernetes resources, and the ACK controller automates the complete certificate lifecycle: requesting certificates from ACM, exporting them after validation, updating Kubernetes Secrets with the certificate and private key, and automatically updating those Secrets at renewal. This enables you to use ACM exportable public certificates (launched in June 2025) for internet-facing workloads or AWS Private CA private certificates for internal services in Amazon EKS or other Kubernetes environments. Use cases include terminating TLS in application pods (NGINX, custom applications), securing service mesh communication (Istio, Linkerd), and managing certificates for third-party ingress controllers (NGINX Ingress, Traefik). You can also distribute certificates to hybrid and edge Kubernetes environments.<br> <br> This feature is available in all commercial, AWS GovCloud (US), and AWS China regions where ACM is available.<br> To learn more, visit the <a href="https://github.com/aws-controllers-k8s/acm-controller">Git hub link</a> or read our <a href="https://docs.aws.amazon.com/acm/latest/userguide/acm-exportable-certificates.html">documentation</a> and our <a href="https://aws.amazon.com/certificate-manager/pricing/">pricing page</a>.&nbsp;</p>
aws.amazon.com
December 15, 2025 at 6:15 PM
awslabs/amazon-eks-ami released AMI Release v20251209 #eks #kubernetes
awslabs/amazon-eks-ami released AMI Release v20251209
Note There are no changes to the AMI template in this release.
github.com
December 13, 2025 at 2:31 AM
awslabs/kro released v0.7.1 #kro #eks #kubernetes
awslabs/kro released v0.7.1
What's Changed • docs: cutoff 0.7.0 by @jakobmoellerdev in https://github.com/kubernetes-sigs/kro/pull/865 • docs: update make command to install crds by @heylongdacoder in https://github.com/kubernetes-sigs/kro/pull/867 • chore(deps): bump node-forge from 1.3.1 to 1.3.2 in /website in the npm_and_yarn group across 1 directory by @dependabot[bot] in https://github.com/kubernetes-sigs/kro/pull/868 • docs: major docs revamp and website redesign by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/857 • fix: add app.kubernetes.io/managed-by label to child resources by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/869 • Make schema.group field immutable by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/870 • Update FAQ5 in README to match the website FAQ content. by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/875 • chore: Add K8s examples to doc by @kennygt51 in https://github.com/kubernetes-sigs/kro/pull/874 • chore(deps): bump mdast-util-to-hast from 13.2.0 to 13.2.1 in /website in the npm_and_yarn group across 1 directory by @dependabot[bot] in https://github.com/kubernetes-sigs/kro/pull/879 • test: add unit tests for InstanceState by @kennygt51 in https://github.com/kubernetes-sigs/kro/pull/872 • Support Kubernetes CEL library extensions (URLs and Regex) by @antcybersec in https://github.com/kubernetes-sigs/kro/pull/882 • refactor(cel/ast): rewrite inspector to use native CEL AST and improve analysis accuracy by @jakobmoellerdev in https://github.com/kubernetes-sigs/kro/pull/884 • Correct grammar in code base and examples by @majst01 in https://github.com/kubernetes-sigs/kro/pull/881 • docs: fix some docs about saas-multi-tenant examples by @kennygt51 in https://github.com/kubernetes-sigs/kro/pull/876 • docs: add URLs and Regex to available CEL libraries by @antcybersec in https://github.com/kubernetes-sigs/kro/pull/891 • Add docs-tests presubmit script by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/888 • feat(website): add custom syntax highlighting for kro code blocks (RGDs) by @a-hilaly in https://github.com/kubernetes-sigs/kro/pull/887 • Publish static kro manifests on release by @tjamet in https://github.com/kubernetes-sigs/kro/pull/820 • chore: small refactor of dynamic controller funcs by @jakobmoellerdev in https://github.com/kubernetes-sigs/kro/pull/774 New Contributors • @heylongdacoder made their first contribution in https://github.com/kubernetes-sigs/kro/pull/867 • @antcybersec made their first contribution in https://github.com/kubernetes-sigs/kro/pull/882 • @majst01 made their first contribution in https://github.com/kubernetes-sigs/kro/pull/881 Full Changelog: https://github.com/kubernetes-sigs/kro/compare/v0.7.0...v0.7.1
github.com
December 13, 2025 at 2:01 AM
AWS re:Invent 2025 - Simplify backup for stateful Amazon EKS workloads (CNS209) #reInvent #eks #kubernetes
AWS re:Invent 2025 - Simplify backup for stateful Amazon EKS workloads (CNS209)
www.youtube.com
December 8, 2025 at 11:16 PM