Loading…
6-7 August
Learn More and Register to Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for KubeCon + CloudNativeCon India 2025 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in India Standard Time (UTC+5:30)To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date." The schedule is subject to change and session seating is available on a first-come, first-served basis. 
Company: Intermediate clear filter
arrow_back View All Dates
Wednesday, August 6
 

11:30am IST

Back To the Basics - Service Mesh Fundamentals - Kannan Jayaprakasam, Google
Wednesday August 6, 2025 11:30am - 12:00pm IST
In containerized environments like Kubernetes, service mesh has emerged as a key architectural component to ensure reliable, secure, and observable communication between services. Despite the growing popularity of service mesh, many developers, operators, and architects find the concept of a service mesh intimidating due to its perceived complexity and wide array of features.

In this talk speaker from the gRPC team in Google will demystify service mesh technology by returning to the basics, providing clear understanding of what a service mesh is, the problems it solves, and how it fits into a cloud-native ecosystem. Additionally, this talk will explore the differences between proxy-based and proxyless service mesh architectures, discussing their advantages, disadvantages, and use cases.
Speakers
avatar for Kannan Jayaprakasam

Kannan Jayaprakasam

Software Engineer, Google
Kannan works as a software engineer at Google in the gRPC team.
Wednesday August 6, 2025 11:30am - 12:00pm IST
Hall 2
  Cloud Native Novice

11:30am IST

Supercharge Backstage: Self-Service GitOps Staging Environments With VCluster and FluxCD - Farhaan Shamsee & Rakesh Reddy, Siemens Technology
Wednesday August 6, 2025 11:30am - 12:00pm IST
What if developers could create fully isolated, production-like environments—directly from Backstage—with just a click?

This talk showcases Backstage as a powerful self-service platform to spin up vClusters representing Dev, Test, and Prod environments. Each virtual cluster is fully GitOps-managed with FluxCD, automatically pulling from specific Git branches to mirror real deployment stages.

The environments can be provisioned on-demand—whether on a developer’s local laptop (using WSL), a centralized server, or a remote EKS cluster—offering flexibility and production-like confidence at every stage.

We’ll deep-dive into building this “staging system” where code is tested safely before ever reaching customers, while giving developers the speed and autonomy they crave—all powered by Backstage.

By the end of the session, you’ll learn how to build a practical, cloud-native staging system to test, validate, and promote code safely—before your customers ever see it.
Speakers
avatar for Farhaan Shamsee

Farhaan Shamsee

Senior DevOps Engineer, Siemens Technology Services Private Limited
Farhaan is a Senior DevOps Engineer at Siemens passionate about platform engineering and open source. With extensive experience in Kubernetes, GitOps, and cloud-native technologies, he focuses on building scalable self-service platforms. His work integrates tools like Backstage, vCluster... Read More →
avatar for Rakesh Reddy

Rakesh Reddy

Sr.DevOps Engineer, siemens
Rakesh Reddy G is a Senior DevOps Engineer at Siemens with 7+ years of experience in Kubernetes, AWS, and CI/CD automation. He specializes in GitOps, security, and self-service platforms using tools like Backstage and FluxCD. Passionate about open-source and DevOps best practices... Read More →
Wednesday August 6, 2025 11:30am - 12:00pm IST
Hall 1
  Platform Engineering

12:10pm IST

To Succeed in Platform Engineering, Build Infrastructure Knowledge Graphs - Safeer C M, MoEngage
Wednesday August 6, 2025 12:10pm - 12:40pm IST
Platform engineering continues to evolve as a critical discipline for modern software development. However, infrastructure complexity is slowing down its momentum. The software infrastructure is a complex web of interrelated entities that spans much beyond a simple software catalog and cloud resources. Such infrastructure management is often driven by a team’s understanding of the implicit relationship between these entities. This is not scalable and often leads to operational challenges and loss of developer productivity. Knowledge graphs can build relationships between entities from diverse infrastructure sources and make explicit what was previously implicit knowledge. It elevates the developer productivity and its neglected counterpart - operational excellence. This talk will discuss the importance of knowledge graphs and the strategies and mental models that will help in building knowledge graphs around the software infrastructure.
Speakers
avatar for Safeer CM

Safeer CM

Principal Engineer, MoEngage
Safeer has worked in site reliability, DevOps, and platform engineering for the past 19 years. Safeer is the author of the book Architecting Cloud-Native Serverless Solutions. He is an ambassador for the Continuous Delivery Foundation. Currently, he is working as a Principal Engineer... Read More →
Wednesday August 6, 2025 12:10pm - 12:40pm IST
Hall 1
  Platform Engineering

12:10pm IST

Sovereign Kubernetes at Adobe: Navigating Trust, Security & Compliance Across Jurisdictions - Amandeep Singh, Adobe
Wednesday August 6, 2025 12:10pm - 12:40pm IST
Sovereign deployments operate in geographically or network-isolated environments where data at rest and in transit is highly sensitive and tightly controlled due to jurisdictional regulations. These deployments come with strict security and compliance requirements.

At Adobe, we manage multiple sovereign Kubernetes deployments across different regulatory frameworks, each with unique constraints and challenges. We have to keep operational overhead minimal while ensuring compliance and security at scale.

This talk will cover key compliance and security requirements, such as vulnerability reporting, runtime container scanning, and policy enforcement. We will dive into the challenges we faced and the solutions we developed, including:
- Building a secure and efficient image distribution system
- Automating image vulnerability scanning
- Using Falco for real-time threat detection and response
- Enforcing compliance with Kyverno and Falco
Speakers
avatar for Amandeep Singh

Amandeep Singh

Computer Scientist, Adobe
Currently a Computer Scientist at Adobe, building Adobe's AEM platform. With extensive experience across various cloud technologies, I’ve been working in the Kubernetes space for the past three years. Outside of work, I’m an avid reader and a passionate foodie.
Wednesday August 6, 2025 12:10pm - 12:40pm IST
Hall 6
  Security

2:10pm IST

Scaling AI Like a Pro-PepsiCo’s LLM Deployment Strategy on Kubernetes for AI-Driven Business Impact - Praseed Naduvath & Dhanashree Shetty, PepsiCo
Wednesday August 6, 2025 2:10pm - 2:40pm IST
As PepsiCo continues to push the boundaries of AI-driven innovation, multiple 70-billion-parameter Llama model has been deployed within our Kubernetes-based AI platform, showcasing our ability to operationalize large-scale LLMs efficiently while optimizing performance, cost, and scalability.

This session will explore our journey of deploying and managing a high-performance LLM on Kubernetes. We’ll share insights on architectural decisions, GPU provisioning, and fine-tuning techniques for efficient inferencing. Attendees will learn how we tackled memory optimization, high availability, cost-performance balancing, and Responsible AI practices.

We’ll also discuss how our infrastructure, orchestration, and resource management evolved to meet large-scale inferencing demands, ensuring AI-driven innovation remains scalable, responsible, and efficient at PepsiCo.
Speakers
avatar for Dhanashree Shetty

Dhanashree Shetty

Architect, PepsiCo
Dhanashree Shetty is a cloud engineer with over 14 years of experience in IT, specializing in cloud infrastructure. As a tech enthusiast, she enjoys exploring emerging technologies such as cloud automation and orchestration, as well as containerization, Kubernetes platforms. In her... Read More →
avatar for Praseed Naduvath

Praseed Naduvath

Platform Architect, PepsiCo
Praseed Naduvath is a techno-manager with over 18 years in IT, specializing in cloud infrastructure, container orchestration, and service mesh technologies. A Certified Kubernetes Administrator and Security Specialist, he excels in managing and securing complex Kubernetes environments... Read More →
Wednesday August 6, 2025 2:10pm - 2:40pm IST
Hall 3
  AI + ML

2:10pm IST

Who Let the Pods Out? Extending Kubernetes with Custom Controllers and CRDs - Ria Bhatia, Godman Sachs
Wednesday August 6, 2025 2:10pm - 2:40pm IST
Kubernetes is powerful, but its true strength lies in extensibility. Many developers struggle to adapt it to their needs, often resorting to workarounds instead of leveraging built-in extension mechanisms. What if Kubernetes worked for you, not the other way around?

This beginner-friendly session will introduce you to Custom Resource Definitions (CRDs) and custom controllers, guiding you through their design, implementation, and deployment. You'll learn how to create Kubernetes-native abstractions that automate workflows, simplify operations, and enhance the developer experience. We'll cover best practices, automation strategies, and performance optimizations to ensure scalable and maintainable extensions that integrate seamlessly with Kubernetes.

Get ready to move beyond workarounds and let your pods thrive with clean, scalable, and native Kubernetes extensions!
Speakers
avatar for Ria Bhatia

Ria Bhatia

Software Engineer, Goldman Sachs
Ria Bhatia is a passionate software engineer specializing in databases, scalability, and deployment strategies. Committed to gender diversity in tech, she mentors aspiring engineers and actively shares her learnings with the community. An enthusiastic speaker, Ria has presented at... Read More →
Wednesday August 6, 2025 2:10pm - 2:40pm IST
Hall 2
  Cloud Native Novice

2:10pm IST

Keep Calm and Carry on Cluster Updates - Thanks To Kyverno Chainsaw - Vijay Dharap, Kubermatic
Wednesday August 6, 2025 2:10pm - 2:40pm IST
Do you often find yourself upgrading various resources in k8s cluster? may be some 3rd party helm chart?

Do you get a feeling of shooting in the dark? That you do not exactly know what all changes are being brought in due to new helm chart version?

Have you faced broken deployments because 3rd paty helmchart maintainer changed the values.yaml layout and you did not change the overrides.yaml to adjust to changed structure?

Yes? Yes? Yes? Well... then you have come to right place find solution to such problems!

I will introduce you to Kyverno Chainsaw, which aims to help us reliably verify the deployments!

With Chainsaw, you define test steps (which can changes / delete existing resources / add new resources) and write assertion to verify that all changes have been reflected in the cluster.

During the session - lets explore Chainsaw via few demos and integrate it in CD pipelines and use reports.

Bonus: I will share small generator I wrote to create Chainsaw testcases quickly.
Speakers
avatar for Vijay Dharap

Vijay Dharap

Tech Lead, Kubermatic
Vijay is a Certified Kubernetes Administrator and AWS certified solution architect. Vijay has designed and managed complex and hybrid deployments of multiple clusters for large chemical manufacturers in the world. Vijay has spoken at various conferences in past. Vijay is happily... Read More →
Wednesday August 6, 2025 2:10pm - 2:40pm IST
Hall 6
  Operations + Performance

2:50pm IST

Kubernetes at the Edge – Come See It in Action! - Xavier Avrillier & Antonia von den Driesch, Giant Swarm
Wednesday August 6, 2025 2:50pm - 3:20pm IST
Edge computing is still a fairly new area in the cloud native tech industry and is growing fast. As computing moves to the edge, what does Kubernetes look like beyond the cloud, and why does it matter?

This session features a live demo with a Raspberry Pi, camera, and real-time AI detection. Watch as our edge device identifies raised hands, sends data to a Kubernetes cluster via KubeEdge, and visualizes results instantly.

We'll explore:
- Edge Kubernetes challenges: connectivity, resources, security
- KubeEdge's approach to decentralized workloads
- Real-world applications across industries

Join us to see how AI, Kubernetes, and edge computing converge to enable powerful new possibilities.
Speakers
avatar for Xavier Avrillier

Xavier Avrillier

Solutions Architect, Giant Swarm
Xavier is a Solutions Architect at Giant Swarm, he is currently working on the managed Kubernetes product in hybrid environments and smart factories. His main focus is around cluster lifecycle and customer implementations.
avatar for Antonia von den Driesch

Antonia von den Driesch

Platform Engineer, Giant Swarm
Antonia has been a platform engineer at Giant Swarm for 5 years and is currently working on development of Giant Swarms Industrial IoT platform which brings their managed Kubernetes product to Smart Factory customers.
Wednesday August 6, 2025 2:50pm - 3:20pm IST
Hall 2
  Cloud Native Experience

2:50pm IST

Mastering Kubernetes Control Plane Performance Optimization With Observability - Liu Jiaxu, Alibaba Cloud
Wednesday August 6, 2025 2:50pm - 3:20pm IST
Are you experiencing performance issues with your Kubernetes control plane? Symptoms such as rising CPU/memory usage, 429 TooManyRequests errors, and delayed responses from the APIServer or ETCD can significantly degrade cluster responsiveness, especially in large environments, ultimately threatening infrastructure reliability.
In this talk, based on our experience managing tens of thousands of production clusters, we will explore how to leverage observability to identify performance bottlenecks and root causes. We'll compare logging, monitoring, and tracing within the Kubernetes control plane, using real-world example - analyzing LIST request.
We will introduce best practices for observability, discuss common performance pitfalls such as APF flow control issues, misconfigured APIServer webhooks, and the heavy burden of excessive LIST requests on control plane, etc. Additionally, we will share optimization solutions for these scenarios, empowering you to enhance cluster performance.
Speakers
avatar for Liu Jiaxu

Liu Jiaxu

Senior Software Engineer, Alibaba Cloud
Jiaxu Liu is a Senior Engineer on the Container Service Team at Alibaba Cloud. He specializes in observability enhancement and large-scale cluster management and optimization for Alibaba Cloud's container service offerings. Before joining Alibaba Cloud, he worked at Nokia as a Senior... Read More →
Wednesday August 6, 2025 2:50pm - 3:20pm IST
Hall 6
  Operations + Performance

2:50pm IST

IDP as a Product: Where Developer Happiness Meets Platform's Excellence - Ninad Desai & Ruturaj Kadikar, InfraCloud Technologies
Wednesday August 6, 2025 2:50pm - 3:20pm IST
As a developer, are you overwhelmed by the growing number of tools just to ship code? Struggling with visibility into cost, performance, and reliability? Torn between enabling developer autonomy and enforcing governance? The answer to all these challenges lies in building an Internal Developer Platform (IDP) like a real product. With clear ownership, iteration, and a focus on your internal users—you solve for both scale and usability. An IDP unifies onboarding, CI/CD, infrastructure provisioning, observability, cost visibility, and more.
You’ll learn how an IDP can streamline the entire developer journey while embedding security and operational best practices by design. We’ll discuss prioritising Developer Experience (DevEx), aligning platform capabilities with developer needs, and avoiding becoming a bottleneck.
Whether you’re a platform engineer or an engineering leader, you’ll walk away with actionable insights to make your platform a true enabler at scale.
Speakers
avatar for Ninad Desai

Ninad Desai

Staff Site Reliability Engineer, Infracloud pvt ltd
Engineer at heart with 12+ years of experience building secure, scalable cloud-native platforms and solutions. Passionate about simplifying and sharing learnings in DevOps, SRE, and platform engineering through real-world stories and community engagement.
avatar for Ruturaj Kadikar

Ruturaj Kadikar

Senior SRE, InfraCloud Technologies
Tech enthusiast navigating through Cloud-Native space! DevOps - SRE - Observability - Chaos - Production Grade Kubernetes - Disaster Recovery
Wednesday August 6, 2025 2:50pm - 3:20pm IST
Hall 1
  Platform Engineering

3:50pm IST

Beyond Productivity: Scaling Cloud Dev Environments for Faster Feedback & Sustainable Engineering - Siddhant Khare, Gitpod & Nancy Chauhan, Independent
Wednesday August 6, 2025 3:50pm - 4:20pm IST
Local dev setups worked fine when teams were small. But when you’re dealing with hundreds or thousands of developers, things start to break - slow onboarding, dependency hell, inconsistent environments, and wasted compute cycles.

Cloud Developer Environments (CDEs) promise instant, reproducible workspaces, but shifting from local machines to cloud-first workflows is easier said than done. Latency, security, adoption hurdles, and cost can turn a promising initiative into an operational headache.

This talk will go deep into:

* Why local dev is unsustainable—from wasted CPU cycles to lost engineering hours.
* How cloud environments reduce friction—ephemeral, pre-configured workspaces that just work.
* Optimizing for speed—pre-warmed environments, AI-assisted debugging, and workload-aware compute allocation.
* Measuring impact—tracking developer velocity, infra costs, and sustainability improvements.
* Lessons from real-world rollouts—what works, what breaks, and how to get buy-in.
Speakers
avatar for Nancy Chauhan

Nancy Chauhan

CNCF Ambassador, Engineer
I am Nancy Chauhan, a software engineer passionate about solving complex problems and enhancing software reliability. As a CNCF Ambassador, I engage with a global cloud-native community, contributing to open-source projects and fostering collaboration. I also founded the Women in... Read More →
avatar for Siddhant Khare

Siddhant Khare

Software Engineer, Gitpod
Siddhant Khare is a Software Engineer at Gitpod, where he works on developer productivity, cloud-native architectures, and AI-driven automation. With deep expertise in Go, Rust, and distributed systems, he builds scalable solutions that improve developer workflows. His work spans... Read More →
Wednesday August 6, 2025 3:50pm - 4:20pm IST
Hall 1
  Platform Engineering

4:30pm IST

⚡ Lightning Talk: Confidential VMs in Kubevirt: Securing VMs With KubeVirt Trusted Execution Environments - Basavaraju G, IBM
Wednesday August 6, 2025 4:30pm - 4:35pm IST
Multi cloud deployments and shared infrastructure enhance data privacy and security issues, with containerized workloads becoming mainstream in Kubernetes, there is a need to host containers securely in addition to virtual machines (VMs) to safeguard hardware-level workloads.
KubeVirt is a cloud native virtualization platform that comes with Confidential Virtual Machines for the most sensitive use cases. They take advantage of Trusted Execution Environments such as AMD SEV, Intel TDX, and IBM Secure Execution to provide data-in-motion encryption for their workloads and defend against subverted host admins as well as against system attacks.
In this session, we will cover KubeVirt methodology for Confidential VMs, including the design of the architecture, challenges of implementation, and deployments. We will examine how the VMs protect sensitive workloads using memory encryption, workload isolation while being placed within Kubernetes orchestration and automation.
Speakers
avatar for Basavaraju G

Basavaraju G

Senior Software Engineer, IBM
Basava Raju.G is a seasoned Senior Software Engineer at IBM, specializing in IBM Kubernetes Service and Openshift Container Platform. With over all 13 years of experience in cloud-native and Platform as a Service (PaaS) Domain. He earned his Master’s in Computer Science At SJCE... Read More →
Wednesday August 6, 2025 4:30pm - 4:35pm IST
Hall 3
  ⚡ Lightning Talks, Security

4:30pm IST

Unlocking the Power of Kuma Service Mesh: Enhancing Reliability and Developer Productivity - Deepak Verma & Arpit Mishra, Zomato
Wednesday August 6, 2025 4:30pm - 5:00pm IST
This session delves into Zomato's journey of adopting Kuma Service Mesh to manage over 500 microservices with 10,000 dataplanes. The session begins by addressing common challenges in service communication, such as observability gaps, insecure traffic, and inconsistent configurations across environments, and explore how Kuma Service Mesh resolves these issues.

The presentation highlights how Kuma standardises configurations, minimises debugging efforts, and improves application performance, thereby reducing developer overhead. A key focus is on leveraging Kuma to enhance developer workflows through local-preview environments, allowing dynamic traffic routing to local services based on headers. This facilitates rapid iteration and debugging.

Additionally, we will discuss our roadmap for utilising Kuma's zone-aware routing to reduce cross-zone data transfer, lowering costs and enhancing efficiency.
Speakers
avatar for Arpit Mishra

Arpit Mishra

Software Engineer, Zomato
Arpit is a Linux and Networking enthusiast, currently working as a Software Engineer at Zomato with extensive experience in Site Reliability, Developer Experience and System Engineering. He previously worked in Glance and has a total of three years of experience in software industry... Read More →
avatar for Deepak Verma

Deepak Verma

Site Reliability Engineer, Zomato
A technology enthusiast working at Zomato with 7+ years of experience where his focus is developer experience, system administration and automation. As a SRE, Deepak has been involved in applying site reliability principles to facilitate business growth through the seamless and reliable... Read More →
Wednesday August 6, 2025 4:30pm - 5:00pm IST
Hall 2
  Connectivity

4:30pm IST

Building a Cloud Native IaC Platform for an Enterprise by Leveraging the Kubernetes Ecosystem - Florian Hopfensperger, Allianz Technology & Yury Tsarev, Upbound
Wednesday August 6, 2025 4:30pm - 5:00pm IST
Infrastructure teams have long been a staple of large enterprises, responsible for creating and managing cloud and on-premises resources. However, each team often operates with its own user interface, making it difficult for developers to access the infrastructure they need efficiently. How can we enhance the developer experience while enabling infrastructure teams to offer products more effectively?

This talk will showcase how Allianz Technology leverages the Kubernetes ecosystem and open-source software to build an infrastructure-as-code platform powered by over 1,000 Kubernetes control planes. This approach simplifies the developer experience through customized APIs while providing infrastructure engineers with a scalable framework for delivering infrastructure products and gaining insights for continuous improvement.
Speakers
avatar for Yury Tsarev

Yury Tsarev

Principal Solutions Architect, Upbound
Yury is an experienced software engineer who strongly focuses on open-source, software quality and distributed systems. As the creator of k8gb (https://www.k8gb.io) and active contributor to the Crossplane ecosystem, he frequently speaks at conferences covering topics such as Control... Read More →
avatar for Florian Hopfensperger

Florian Hopfensperger

Software Engineering Lead, Allianz Technology
Florian is a Software Engineering Lead at Allianz Technology working on Kubernetes Control Planes. He is an enthusiast for Cloud Computing, GitOps and Open Source Software and actively contributes to it.
Wednesday August 6, 2025 4:30pm - 5:00pm IST
Hall 1
  Platform Engineering

4:37pm IST

⚡ Lightning Talk: Enhancing Runtime Protection Leveraging Compliance Frameworks - Ramakant Sharma, AccuKnox Inc.
Wednesday August 6, 2025 4:37pm - 4:42pm IST
Runtime security for cloud workloads involves continuously monitoring workload behavior and preventing deviations from normal activity.

The ideal approach is to enforce application-specific zero-trust policies that establish a baseline and prevent unexpected behavior. While, implementing zero trust requires ongoing tuning and is more of a Day 2 operation. In addition, Hardening policies can be established by translating compliance frameworks' prescriptive guidance into enforceable runtime security policies. By adopting a layered runtime security approach, the attack surface can be significantly reduced.

In this talk, we’ll demonstrate how to enhance runtime security using policies influenced by compliance frameworks like CIS and MITRE, etc. We’ll showcase real-world examples and enforce these policies using KubeArmor.
Speakers
avatar for Ramakant Sharma

Ramakant Sharma

Software Engineer, AccuKnox Inc. | Maintainer@KubeArmor, AccuKnox Inc.
Working as a software engineer at AccuKnox Inc., actively contributing to open source and maintainer KubeArmor, CNCF Sandbox project.
Wednesday August 6, 2025 4:37pm - 4:42pm IST
Hall 3
  ⚡ Lightning Talks, Security

4:58pm IST

⚡ Lightning Talk: Optimizing SNAT Port and IP Address Management in Kubernetes - Nitin Nizhawan & Prachi Sahu, Microsoft
Wednesday August 6, 2025 4:58pm - 5:00pm IST
Kubernetes workloads rely on public IP addresses for egress traffic via SNAT connections. By default, Kubernetes nodes provide a limited number of SNAT ports (1024 per node), often insufficient for workloads requiring extensive outbound connectivity. Allocating additional IP addresses statically for SNAT purposes in large clusters can lead to significant inefficiencies and wastage of limited public IPv4 resources. This session introduces an innovative SNAT port and IP address management solution developed for AKS multi-cluster, multi-tenant platforms, demonstrating how optimized IP allocation significantly reduces IP address wastage and associated costs.
Speakers
avatar for Nitin Nizhawan

Nitin Nizhawan

Principal Software Engineer, Microsoft
With over 16 years of experience in software engineering, I have a robust background in developing enterprise applications using Java, C#, and Golang. I have successfully developed solutions for both on-premises and cloud environments. For the past three years, I have been dedicated... Read More →
avatar for Prachi Sahu

Prachi Sahu

Software Engineer, Microsoft
I'm a Software Developer at Microsoft with hands-on experience working on Kubernetes and Docker at an intermediate level. My work focuses on the Linux platform and distributed networking within Azure Kubernetes Service (AKS). I work closely on network debugging and observability using... Read More →
Wednesday August 6, 2025 4:58pm - 5:00pm IST
Hall 3

5:02pm IST

⚡ Lightning Talk: Solving Multi-Region K8s Challenges: Improving Pod Startup Time & Reducing NAT Costs With Zot - Tamil Vanan Karuppannan, Arcesium
Wednesday August 6, 2025 5:02pm - 5:07pm IST
Managing a multi-region Kubernetes deployment comes with significant challenges, especially around container image distribution. In our setup, we had a central container registry in a public cloud, but as the number of clusters grew across regions, our NAT transfer costs skyrocketed— a staggering 10x increase

A major contributor to this cost was cross-region image pulls, which also impacted pod startup times. We explored multiple solutions and found Zot (a CNCF sandbox project) to be an ideal fit due to its lightweight architecture and pull-through cache capabilities

By configuring Zot as a regional caching layer, we:

Reduced NAT data transfer costs significantly by keeping frequently pulled images closer to the clusters.
Improved pod startup times by eliminating long fetch delays from a central registry.
Simplified registry management without adding unnecessary complexity.
Speakers
avatar for tamilhce

tamilhce

Principal Engineer, Arcesium
Tamil vanan is a cloud native Tech lead at Arcesium and a former Kubernetes SME at VMware. He is passionate about finding solutions to problems in the cloud native environment. He works with cloud-native technologies like Kubernetes, multi-cloud and networking. He is a passionate... Read More →
Wednesday August 6, 2025 5:02pm - 5:07pm IST
Hall 3

5:10pm IST

Rewriting the Rules: Why Kubernetes Is Moving To NFTables - Daman Arora & Yash Kumar Singh, Broadcom
Wednesday August 6, 2025 5:10pm - 5:40pm IST
This session will explore why NFTables offer clear advantages over IPTables and IPVS, especially in large-scale production environments from both maintainers and end users perspective. We’ll share a user story who faced persistent issues with IPTables, saw some success with IPVS, and finally solved their scalability problems by migrating to NFTables. From a maintainers perspective we will showcase how and why NFTable outperforms the other proxy modes. We’ll provide performance insights and discuss kernel compatibility.
We will also discuss NFTables compatibility with various CNI providers and plugins, and how NFTables support is already integrated in many environments, providing a smoother transition. Attending this session you will get an indepth understanding of behavioral changes when migrating from IPTables and IPVS to NFTables, including key metrics to track.
Speakers
avatar for Yash Singh

Yash Singh

Software Engineer, Broadcom
Yash Singh is a Software Engineer at VMware. He works on Kubernetes core components releases, building and validating the Kubernetes FIPS for Tanzu. He plays an important role in the development of Tanzu Extend Support of Kubernetes and its components. Yash contributes to a host of... Read More →
avatar for Daman Arora

Daman Arora

Senior Software Engineer, VMware by Broadcom
Trying to maintain kube-proxy.
Wednesday August 6, 2025 5:10pm - 5:40pm IST
Hall 2
  Connectivity
 
  • Filter By Date
  • Filter By Venue
  • Filter By Type
  • Content Experience Level
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.
Filtered by Date -