Operations | Monitoring | ITSM | DevOps | Cloud

The latest News and Information on CyberSecurity for Applications, Services and Infrastructure, and related technologies.

CertKit Private PKI: A private certificate authority without running one yourself

In May I wrote that you probably don’t need private PKI for internal infrastructure, because DNS validation gets a publicly trusted certificate onto hosts that never touch the internet. In June I pointed out that Apple enforces an 825-day cap on private certificates, so your own CA doesn’t even free you from the browser vendors. Two days ago I told you that public client certificates stop renewing in October, and that the replacement is a private certificate authority.

Security Camera Local Storage vs Cloud Subscriptions for Homeowners

If you want privacy and no monthly fees, choose local storage. If off-site backup matters most, choose cloud. If you need both, use a hybrid setup. Since people want to supervise their houses, check the driveway, and keep an eye on their backyards, they tend to buy a security camera to help them. But once the cameras are installed, a new problem quickly emerges: where exactly are all the recorded videos stored? This is precisely where the choice between local storage and cloud storage subscription plans for security cameras has a critical impact.

DMARC Record Generator: The Complete Guide To Creating A Secure DMARC Policy In Minutes

A DMARC record generator, often referred to as a DMARC record wizard, is a crucial resource for organizations aiming to enhance their email security and achieve compliance with DMARC standards. This tool simplifies the creation of a DMARC record, enabling domain owners to customize it according to their specific security needs and business objectives, whether for a primary domain or its subdomains.

Golden paths: how to ship securely without slowing developers

The secure path and the easy path should be the same path. Ralph McTeggart (Principal Engineer), Alex Franzmann (Customer Onboarding Team Lead), and Claire McDyre (Product Manager) at Cloudsmith lay out how platform teams can deliver supply chain security as a capability rather than a checklist. The argument runs from first principles: make a private registry the default, automate policy enforcement at the global level, and extend that same logic to compliance – so SBOM generation happens in the pipeline, not as a developer's manual task.

Bring Your Own VLAN: Moving VMs to Kubernetes Without Changing a Single IP

For many organizations, modernizing their VMs before migrating them is not a realistic option, especially when external events trigger the migration. Mapping dependencies and refactoring network configurations before the deadline is impractical, forcing VMs to move as they are. The mechanics of moving a VM are largely solved.