<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Advanced on Tom Meurs</title>
    <link>https://tommeurs.nl/tags/advanced/</link>
    <description>Recent content in Advanced on Tom Meurs</description>
    <image>
      <title>Tom Meurs</title>
      <url>https://tommeurs.nl/images/papermod-cover.png</url>
      <link>https://tommeurs.nl/images/papermod-cover.png</link>
    </image>
    <generator>Hugo</generator>
    <language>en</language>
    <copyright>Tom Meurs</copyright>
    <lastBuildDate>Wed, 08 Apr 2026 20:23:00 +0100</lastBuildDate>
    <atom:link href="https://tommeurs.nl/tags/advanced/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Cilium Deep Dive: eBPF Networking for Kubernetes</title>
      <link>https://tommeurs.nl/posts/cilium-ebpf-networking/</link>
      <pubDate>Wed, 08 Apr 2026 20:23:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/cilium-ebpf-networking/</guid>
      <description>Master Cilium CNI for Kubernetes: eBPF networking, network policies, service mesh, and observability. A practical guide to modern container networking.</description>
    </item>
    <item>
      <title>Thanos Remote Write: Push-Based Metrics for Edge and Multi-Cluster</title>
      <link>https://tommeurs.nl/posts/thanos-remote-write-push-architecture/</link>
      <pubDate>Fri, 27 Mar 2026 20:38:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/thanos-remote-write-push-architecture/</guid>
      <description>Scale Prometheus with Thanos Receive using push-based remote write. Ideal for edge clusters, intermittent connectivity, and large multi-cluster environments.</description>
    </item>
    <item>
      <title>Declarative Infrastructure as Compliance Documentation: Talos, NixOS, and Audit-Ready Systems</title>
      <link>https://tommeurs.nl/posts/declarative-infrastructure-compliance-certification/</link>
      <pubDate>Mon, 23 Mar 2026 19:28:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/declarative-infrastructure-compliance-certification/</guid>
      <description>How declarative systems like Talos and NixOS make ISO 27001, NIS2, and SOC 2 compliance easier by generating audit evidence automatically.</description>
    </item>
    <item>
      <title>NixOS vs Talos for Kubernetes Nodes: Two Flavors of Immutable Infrastructure</title>
      <link>https://tommeurs.nl/posts/nixos-vs-talos-kubernetes-nodes/</link>
      <pubDate>Sun, 15 Mar 2026 20:37:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/nixos-vs-talos-kubernetes-nodes/</guid>
      <description>Comparing NixOS and Talos Linux as operating systems for Kubernetes nodes. Both are declarative and immutable, but with very different trade-offs.</description>
    </item>
    <item>
      <title>Talos Linux: The Immutable Kubernetes OS That Changed How I Think About Nodes</title>
      <link>https://tommeurs.nl/posts/talos-linux-immutable-kubernetes/</link>
      <pubDate>Wed, 11 Mar 2026 21:15:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/talos-linux-immutable-kubernetes/</guid>
      <description>Why Talos Linux is the perfect OS for Kubernetes: immutable, API-driven, and secure by default. Real experiences from running it in production.</description>
    </item>
    <item>
      <title>Data-Driven Kubernetes Migration: Why You Need Metrics Before You Move</title>
      <link>https://tommeurs.nl/posts/kubernetes-resource-sizing/</link>
      <pubDate>Sun, 08 Feb 2026 14:00:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/kubernetes-resource-sizing/</guid>
      <description>Migrating to Kubernetes without proper resource metrics is a recipe for disaster. A real Black Friday horror story and how to do data-driven pod sizing.</description>
    </item>
    <item>
      <title>K8sGPT with a Local 70B Model on Apple Silicon</title>
      <link>https://tommeurs.nl/posts/k8sgpt-local-llm-cluster-management/</link>
      <pubDate>Thu, 05 Feb 2026 14:00:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/k8sgpt-local-llm-cluster-management/</guid>
      <description>Hands-on test of K8sGPT with Llama 3.3 70B on a Mac Studio M3 Ultra. Does autonomous cluster management work with local LLMs? Including security analysis.</description>
    </item>
    <item>
      <title>Runtime Security with Falco: Detect Suspicious Behavior in Your Cluster</title>
      <link>https://tommeurs.nl/posts/falco-runtime-security/</link>
      <pubDate>Thu, 07 Aug 2025 10:00:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/falco-runtime-security/</guid>
      <description>Implement Kubernetes runtime security with Falco. Detect suspicious syscalls, container escapes, and anomalous behavior in real-time.</description>
    </item>
    <item>
      <title>SPIFFE and SPIRE: Zero Trust Service Identity</title>
      <link>https://tommeurs.nl/posts/spiffe-spire-zero-trust/</link>
      <pubDate>Sat, 26 Jul 2025 10:00:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/spiffe-spire-zero-trust/</guid>
      <description>Implement zero trust workload identity with SPIFFE and SPIRE. Cryptographic identity for services without static secrets.</description>
    </item>
    <item>
      <title>Kyverno Policies: Governance as Code for Kubernetes</title>
      <link>https://tommeurs.nl/posts/kyverno-policies-governance/</link>
      <pubDate>Mon, 14 Jul 2025 10:00:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/kyverno-policies-governance/</guid>
      <description>Implement Kubernetes governance with Kyverno policies. Enforce best practices, security standards, and compliance automatically.</description>
    </item>
    <item>
      <title>Progressive Delivery with Argo Rollouts: Canary and Blue-Green Deployments</title>
      <link>https://tommeurs.nl/posts/argo-rollouts-progressive-delivery/</link>
      <pubDate>Fri, 20 Jun 2025 10:00:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/argo-rollouts-progressive-delivery/</guid>
      <description>Implement canary and blue-green deployments in Kubernetes with Argo Rollouts. Reduce deployment risk with progressive delivery.</description>
    </item>
    <item>
      <title>Drift Detection with ArgoCD: How to Know If Your Cluster Is Still in Sync</title>
      <link>https://tommeurs.nl/posts/argocd-drift-detection/</link>
      <pubDate>Sat, 03 May 2025 19:27:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/argocd-drift-detection/</guid>
      <description>How to detect and prevent configuration drift in Kubernetes with ArgoCD. Monitor unauthorized changes and keep your cluster in sync with Git.</description>
    </item>
    <item>
      <title>App-of-Apps Pattern in ArgoCD: Scalable GitOps Architecture</title>
      <link>https://tommeurs.nl/posts/argocd-app-of-apps/</link>
      <pubDate>Mon, 21 Apr 2025 20:18:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/argocd-app-of-apps/</guid>
      <description>Learn the App-of-Apps pattern in ArgoCD to manage hundreds of applications with a single root application. Scalable GitOps architecture explained.</description>
    </item>
    <item>
      <title>GitOps Disaster Recovery: Rebuilding Your Cluster from Git</title>
      <link>https://tommeurs.nl/posts/gitops-disaster-recovery/</link>
      <pubDate>Wed, 09 Apr 2025 19:52:00 +0200</pubDate>
      <guid>https://tommeurs.nl/posts/gitops-disaster-recovery/</guid>
      <description>How to recover a Kubernetes cluster from complete failure using GitOps. Turn Git into your ultimate backup and disaster recovery strategy.</description>
    </item>
    <item>
      <title>Running Kubernetes Offline: Edge Computing Without Internet</title>
      <link>https://tommeurs.nl/posts/kubernetes-offline-edge/</link>
      <pubDate>Tue, 04 Mar 2025 20:47:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/kubernetes-offline-edge/</guid>
      <description>How to run Kubernetes clusters in air-gapped and offline environments. Island mode architecture for edge computing, ships, and sovereign infrastructure.</description>
    </item>
    <item>
      <title>Graceful Degradation in Kubernetes: What Happens When Components Fail</title>
      <link>https://tommeurs.nl/posts/kubernetes-graceful-degradation/</link>
      <pubDate>Thu, 20 Feb 2025 14:22:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/kubernetes-graceful-degradation/</guid>
      <description>What happens when Kubernetes components fail? Understand how kube-apiserver, etcd, scheduler, and kubelet failures affect your cluster.</description>
    </item>
    <item>
      <title>etcd Deep Dive: The Heart of Your Kubernetes Cluster</title>
      <link>https://tommeurs.nl/posts/etcd-deep-dive/</link>
      <pubDate>Mon, 27 Jan 2025 21:47:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/etcd-deep-dive/</guid>
      <description>Understanding etcd internals: Raft consensus, leader election, data model, and why it&amp;#39;s critical to Kubernetes reliability.</description>
    </item>
    <item>
      <title>Kubernetes High Availability: Stacked vs External etcd Explained</title>
      <link>https://tommeurs.nl/posts/kubernetes-high-availability-etcd/</link>
      <pubDate>Wed, 15 Jan 2025 20:23:00 +0100</pubDate>
      <guid>https://tommeurs.nl/posts/kubernetes-high-availability-etcd/</guid>
      <description>Understanding Kubernetes HA architectures: stacked etcd vs external etcd. When to use which, and how to build clusters that survive node failures.</description>
    </item>
  </channel>
</rss>
