<https://blog.kolide.com/using-a-kubernetes-operat...
# golang
c
this is super ♨️ btw. Love the user of kubernets namespace for isolation on "shared" infra
m
namespaces don’t provide much isolation by themselves beyond secrets, but i definitely want to lock down each tenant. it would be great if each customer’s workloads could assume a hostile cluster.
but that is not the case… yet!
c
I really like what cilium is doing, have you poked at that yet? Seems very promising