Micah Hausler
banner
micahhausler.com
Micah Hausler
@micahhausler.com
Security and Kubernetes @ AWS
Let’s be clear about Trump’s obsession with Greenland: its not about security. If it truly were, they’d get creative about adding more US military bases and hardware as a NATO member, restrictions on shipping lanes, etc.

This is about Trump wanting to leave a legacy with global map-making changes.
January 8, 2026 at 3:20 PM
Merry Christmas from Florida!
December 25, 2025 at 10:56 PM
Reposted by Micah Hausler
ACM now supports automated certificate management for Kubernetes #eks #kubernetes
ACM now supports automated certificate management for Kubernetes
<p>AWS Certificate Manager (ACM) now automates certificate provisioning and distribution for Kubernetes workloads through AWS Controllers for Kubernetes (ACK). Previously, ACM automated certificate management for AWS-integrated services like Application Load Balancers and CloudFront. However, using ACM certificates with applications terminating TLS in Kubernetes required manual steps: exporting certificates and private keys via API, creating Kubernetes Secrets, and updating them at renewal. This integration extends ACM's automation to any Kubernetes workload for both public and private certificates, enabling you to manage certificates using native Kubernetes APIs.<br> <br> With ACK, you define certificates as Kubernetes resources, and the ACK controller automates the complete certificate lifecycle: requesting certificates from ACM, exporting them after validation, updating Kubernetes Secrets with the certificate and private key, and automatically updating those Secrets at renewal. This enables you to use ACM exportable public certificates (launched in June 2025) for internet-facing workloads or AWS Private CA private certificates for internal services in Amazon EKS or other Kubernetes environments. Use cases include terminating TLS in application pods (NGINX, custom applications), securing service mesh communication (Istio, Linkerd), and managing certificates for third-party ingress controllers (NGINX Ingress, Traefik). You can also distribute certificates to hybrid and edge Kubernetes environments.<br> <br> This feature is available in all commercial, AWS GovCloud (US), and AWS China regions where ACM is available.<br> To learn more, visit the <a href="https://github.com/aws-controllers-k8s/acm-controller">Git hub link</a> or read our <a href="https://docs.aws.amazon.com/acm/latest/userguide/acm-exportable-certificates.html">documentation</a> and our <a href="https://aws.amazon.com/certificate-manager/pricing/">pricing page</a>.&nbsp;</p>
aws.amazon.com
December 15, 2025 at 6:15 PM
Reposted by Micah Hausler
With Cedar coming to the #CNCF sandbox, the authorization engine and policy language project seeks contributors to help create new language bindings.

By @hjoslyn.bsky.social, feat. @micahhausler.com
All About Cedar, an Open Source Solution for Fine-Tuning Kubernetes Authorization
With Cedar coming to the CNCF sandbox, the authorization engine and policy language project seeks contributors to help create new language bindings.
bit.ly
December 2, 2025 at 6:30 PM
Reposted by Micah Hausler
Can you fix my printer?
December 1, 2025 at 12:03 AM
Ah, Black Friday: the day I can identify and unsubscribe from every email list I never wanted to be on.
November 29, 2025 at 5:37 AM
Reposted by Micah Hausler
This is *exactly* what these things look like. Click the link for the animated version
I've been "enjoying" scintillating scotomas more often recently. They're difficult to describe, and images online don't really capture it. But the first thing I thought when I saw them was "I should make a shader of this" – so here's a demo, it's pretty close: meetar.github.io/scotoma/
November 24, 2025 at 2:30 AM
November 20, 2025 at 9:23 PM
The golden hour light this afternoon was incredible
November 18, 2025 at 3:16 AM
Ignited a flame war in the family chat about whether Chex mix should include Corn Chex.
November 18, 2025 at 3:04 AM
No AWS employee can read, copy, modify, or otherwise access customer content in Amazon EKS. Thats a pretty big claim, and one we're proud to announce to the world today.

aws.amazon.com/blogs/securi...
Amazon Elastic Kubernetes Service gets independent affirmation of its zero operator access design | Amazon Web Services
Today, we’re excited to announce the Amazon Elastic Kubernetes Service (Amazon EKS) zero operator access posture. Because security is our top priority at Amazon Web Services (AWS), we designed an oper...
aws.amazon.com
November 13, 2025 at 1:00 AM
Reposted by Micah Hausler
#KubeCon Day 2 Recap 🚀 Yesterday's convos with AWS Open experts were invaluable. @micahhausler.com detailed the significance of upstream contributions, Mike Stefaniak shared the EKS approach to Agentic AI, and Jesse Butler explored developer tools and verification.
November 12, 2025 at 6:45 PM
This is a truly significant announcement for organizations who want to know that Amazon EKS is secure to run their most sensitive workloads. aws.amazon.com/blogs/securi...
Amazon Elastic Kubernetes Service gets independent affirmation of its zero operator access design | Amazon Web Services
Today, we’re excited to announce the Amazon Elastic Kubernetes Service (Amazon EKS) zero operator access posture. Because security is our top priority at Amazon Web Services (AWS), we designed an oper...
aws.amazon.com
November 12, 2025 at 6:38 PM
Reposted by Micah Hausler
Reminder: #Kubernetes SIG Meet & Greet is Noon-2pm today at #Kubecon, in room B216. Grab a lunch downstairs, then come meet your SIG and/or learn where to contribute to Kubernetes. Take the "secret escalator" up from the back of the show floor.

events.linuxfoundation.org/kubecon-clou...
November 12, 2025 at 4:33 PM
This absolutely sucks for anyone flying to KubeCon. Fortunately for me I'll be driving this time, but what a mess.

www.nytimes.com/2025/11/05/u...
Trump Officials to Cut Air Traffic at 40 Major Airports if Shutdown Continues
www.nytimes.com
November 6, 2025 at 5:22 AM
TBH this is such a letdown with the date change. Speaking as an attendee, moving KubeCon from Oct to mid-November so close to re:Invent is such a drag (AWS is a diamond sponsor, haven’t been the last few years when KCNA was in Nov)

events.linuxfoundation.org/kubecon-clou...
KubeCon + CloudNativeCon North America 2026 | LF Events
The Cloud Native Computing Foundation’s flagship conference gathers adopters and technologists from leading open source and cloud native communities.
events.linuxfoundation.org
November 3, 2025 at 12:15 AM
Someone, somewhere once typoed my employer as AMOZON and now it shows up in my credit report.
October 26, 2025 at 7:55 PM
I recently started an instagram account. They wait a full 4 weeks before asking “allow app to track?” I guess they found that people are reluctant to say yes when initially getting the app
October 24, 2025 at 6:35 PM
Hello Bluebird
September 28, 2025 at 12:17 AM
Last full day in Uganda, and got to see some more cool birds near Mt Elgon #birding
September 13, 2025 at 6:22 PM
Portraits from Karamoja, Uganda today
September 9, 2025 at 12:47 PM
A nice side effect to last night’s eclipse was that you could see the Milky Way with the naked eye! This is a long-exposure shot captured during totality. #astrophotography
September 8, 2025 at 8:05 PM
Pretty psyched about the birding today in rural Uganda #birding #birds
September 8, 2025 at 7:59 PM
The Sept 7th total lunar eclipse, viewed from Karamoja, Uganda #astrophotography
September 7, 2025 at 6:36 PM
Still learning how to edit, but I’m pretty pleased with the result! #astrophotography
August 27, 2025 at 8:18 PM