<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>rutgerblom.com</title>
	<atom:link href="https://rutgerblom.com/feed/" rel="self" type="application/rss+xml" />
	<link>https://rutgerblom.com</link>
	<description></description>
	<lastBuildDate>Wed, 10 Jun 2026 19:42:32 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>

<image>
	<url>https://rutgerblom.com/wp-content/uploads/2018/09/cropped-favicon.png?w=32</url>
	<title>rutgerblom.com</title>
	<link>https://rutgerblom.com</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">150253070</site><cloud domain='rutgerblom.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<atom:link rel="search" type="application/opensearchdescription+xml" href="https://rutgerblom.com/osd.xml" title="rutgerblom.com" />
	<atom:link rel='hub' href='https://rutgerblom.com/?pushpress=hub'/>
	<item>
		<title>Testing the VCF 9.1 Distributed Connection Model with BGP EVPN and VXLAN</title>
		<link>https://rutgerblom.com/2026/06/10/testing-the-vcf-9-1-distributed-connection-model-with-bgp-evpn-and-vxlan/</link>
					<comments>https://rutgerblom.com/2026/06/10/testing-the-vcf-9-1-distributed-connection-model-with-bgp-evpn-and-vxlan/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Wed, 10 Jun 2026 13:52:43 +0000</pubDate>
				<category><![CDATA[nsx]]></category>
		<category><![CDATA[vmware cloud foundation]]></category>
		<category><![CDATA[BGP EVPN]]></category>
		<category><![CDATA[containerlab]]></category>
		<category><![CDATA[Distributed VXLAN]]></category>
		<category><![CDATA[evpn]]></category>
		<category><![CDATA[frr]]></category>
		<category><![CDATA[Homelab]]></category>
		<category><![CDATA[networking]]></category>
		<category><![CDATA[Route Controller]]></category>
		<category><![CDATA[VCF 9.1]]></category>
		<category><![CDATA[vxlan]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=5018</guid>

					<description><![CDATA[A small lab using containerlab and FRR to test the VCF 9.1 distributed connection model with BGP EVPN over VXLAN, focusing on Route Controller peering and control-plane visibility before testing against a physical EVPN fabric.]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/06/10/testing-the-vcf-9-1-distributed-connection-model-with-bgp-evpn-and-vxlan/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">5018</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2026/06/conlab_diagram.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/06/conlab_diagram.png" medium="image">
			<media:title type="html">conlab_diagram</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>
	</item>
		<item>
		<title>Using Kasm as a Browser-Based Jump Point for a VCF 9 Lab</title>
		<link>https://rutgerblom.com/2026/06/07/using-kasm-as-a-browser-based-jump-point-for-a-vcf-9-lab/</link>
					<comments>https://rutgerblom.com/2026/06/07/using-kasm-as-a-browser-based-jump-point-for-a-vcf-9-lab/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Sun, 07 Jun 2026 19:22:34 +0000</pubDate>
				<category><![CDATA[vmware cloud foundation]]></category>
		<category><![CDATA[Browser Isolation]]></category>
		<category><![CDATA[Identity Provider]]></category>
		<category><![CDATA[Jump Host]]></category>
		<category><![CDATA[Kasm]]></category>
		<category><![CDATA[Keycloak]]></category>
		<category><![CDATA[lab]]></category>
		<category><![CDATA[SSO]]></category>
		<category><![CDATA[VCF]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4983</guid>

					<description><![CDATA[Using Kasm as a browser-based access layer in front of a VCF lab turned out to be a useful pattern. With Keycloak providing authentication for both Kasm and VCF SSO, the lab gets a cleaner access flow without exposing every VCF administrative interface directly to my workstation.]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/06/07/using-kasm-as-a-browser-based-jump-point-for-a-vcf-9-lab/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4983</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2026/06/kasm_ws.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/06/kasm_ws.png" medium="image">
			<media:title type="html">kasm_ws</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/06/keycloak_kasm_client.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/06/skarmavbild-2026-06-07-kl.-20.36.03.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/06/kasm_oidc_user.png" medium="image" />
	</item>
		<item>
		<title>Building the Foundation for a VCF Automation All Apps Landing Zone with Terraform</title>
		<link>https://rutgerblom.com/2026/05/31/building-the-foundation-for-a-vcf-automation-all-apps-landing-zone-with-terraform/</link>
					<comments>https://rutgerblom.com/2026/05/31/building-the-foundation-for-a-vcf-automation-all-apps-landing-zone-with-terraform/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Sun, 31 May 2026 21:34:25 +0000</pubDate>
				<category><![CDATA[automation]]></category>
		<category><![CDATA[platform architecture]]></category>
		<category><![CDATA[vmware cloud foundation]]></category>
		<category><![CDATA[All Apps]]></category>
		<category><![CDATA[Cloud Automation]]></category>
		<category><![CDATA[infrastructure as code]]></category>
		<category><![CDATA[kubernetes]]></category>
		<category><![CDATA[Landing Zone]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[private cloud]]></category>
		<category><![CDATA[Supervisor Namespace]]></category>
		<category><![CDATA[terraform]]></category>
		<category><![CDATA[VCF 9.1]]></category>
		<category><![CDATA[VCF Automation]]></category>
		<category><![CDATA[VKS]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4911</guid>

					<description><![CDATA[Terraform can describe parts of a VCF Automation 9.1 All Apps landing zone, but not the full model end to end. In this post I walk through the first layers of the landing zone foundation, including organization creation, identity provider configuration, quota, networking, content library and namespace consumption, while also calling out where the current Terraform provider still has gaps.]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/05/31/building-the-foundation-for-a-vcf-automation-all-apps-landing-zone-with-terraform/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4911</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2026/05/vcf_automation_all_apps_landing_zone.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/vcf_automation_all_apps_landing_zone.png" medium="image">
			<media:title type="html">vcf_automation_all_apps_landing_zone</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>
	</item>
		<item>
		<title>Using Keycloak as an OIDC Identity Provider for a VCF Automation Organization</title>
		<link>https://rutgerblom.com/2026/05/22/using-keycloak-as-an-oidc-identity-provider-for-a-vcf-automation-organization/</link>
					<comments>https://rutgerblom.com/2026/05/22/using-keycloak-as-an-oidc-identity-provider-for-a-vcf-automation-organization/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Fri, 22 May 2026 19:23:58 +0000</pubDate>
				<category><![CDATA[vmware cloud foundation]]></category>
		<category><![CDATA[Claims Mapping]]></category>
		<category><![CDATA[Group Mapping]]></category>
		<category><![CDATA[Homelab]]></category>
		<category><![CDATA[Identity Provider]]></category>
		<category><![CDATA[Keycloak]]></category>
		<category><![CDATA[OIDC]]></category>
		<category><![CDATA[OpenID Connect]]></category>
		<category><![CDATA[Organization Authentication]]></category>
		<category><![CDATA[Provider Box]]></category>
		<category><![CDATA[SSO]]></category>
		<category><![CDATA[VCF 9.1]]></category>
		<category><![CDATA[VCF Automation]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4820</guid>

					<description><![CDATA[I wanted to test organization-level OIDC authentication in VCF Automation 9.1 using Keycloak from my Provider Box setup. It worked in the end, but a few small details around group claims and claims mapping were easy to miss.]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/05/22/using-keycloak-as-an-oidc-identity-provider-for-a-vcf-automation-organization/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4820</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2026/05/keycloak_login.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/keycloak_login.png" medium="image">
			<media:title type="html">keycloak_login</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/create_client.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/keycloak_group.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/vcfa_oidc.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/scopes.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/keys.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/group.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/oidc_login.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/tenant-admin.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/vcfa_auth.png" medium="image" />
	</item>
		<item>
		<title>Guardrails in VCF Automation 9.1</title>
		<link>https://rutgerblom.com/2026/05/20/guardrails-in-vcf-automation-9-1/</link>
					<comments>https://rutgerblom.com/2026/05/20/guardrails-in-vcf-automation-9-1/#comments</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Wed, 20 May 2026 18:52:36 +0000</pubDate>
				<category><![CDATA[automation]]></category>
		<category><![CDATA[platform architecture]]></category>
		<category><![CDATA[vmware cloud foundation]]></category>
		<category><![CDATA[All Apps]]></category>
		<category><![CDATA[guardrails]]></category>
		<category><![CDATA[platform engineering]]></category>
		<category><![CDATA[private cloud]]></category>
		<category><![CDATA[VCF 9.1]]></category>
		<category><![CDATA[VCF Automation]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4786</guid>

					<description><![CDATA[Self-service without guardrails is just delegated infrastructure access with a nicer interface. In this post I look at guardrails in the VCF Automation 9.1 All Apps model, and how organizations, quotas, namespaces, networking, policies, and extensibility work together to make private cloud consumption safer and more repeatable.]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/05/20/guardrails-in-vcf-automation-9-1/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4786</post-id>
		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/05/vcf-automation-all-apps-guardrails-layered-1.png?w=1024" medium="image">
			<media:title type="html">Layered guardrails model for VCF Automation 9.1 All Apps</media:title>
		</media:content>
	</item>
		<item>
		<title>Owning the Platform on VCF 9</title>
		<link>https://rutgerblom.com/2026/02/17/owning-the-platform-on-vcf-9/</link>
					<comments>https://rutgerblom.com/2026/02/17/owning-the-platform-on-vcf-9/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Tue, 17 Feb 2026 06:53:53 +0000</pubDate>
				<category><![CDATA[platform architecture]]></category>
		<category><![CDATA[enterprise architecture]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[platform engineering]]></category>
		<category><![CDATA[vmware cloud foundation]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4769</guid>

					<description><![CDATA[In my previous article, I reflected on what I would design differently if I were building an NSX platform today. That piece focused on architectural choices — fewer abstractions, clearer boundaries, stronger defaults. But design decisions are only part of the story. What ultimately matters is who carries responsibility for how the platform behaves over [&#8230;]]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/02/17/owning-the-platform-on-vcf-9/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4769</post-id>
		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>
	</item>
		<item>
		<title>Things I Would Do Differently If I Designed an NSX Platform Today</title>
		<link>https://rutgerblom.com/2026/01/02/things-i-would-do-differently-if-i-designed-an-nsx-platform-today/</link>
					<comments>https://rutgerblom.com/2026/01/02/things-i-would-do-differently-if-i-designed-an-nsx-platform-today/#comments</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Fri, 02 Jan 2026 08:51:20 +0000</pubDate>
				<category><![CDATA[platform architecture]]></category>
		<category><![CDATA[enterprise architecture]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[operating model]]></category>
		<category><![CDATA[vmware cloud foundation 9]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4737</guid>

					<description><![CDATA[When I started designing large NSX platforms, most of the hard problems were technical. How far could we push microsegmentation?How much overlay networking could we introduce?How flexible could we make the design so it would survive future requirements? At the time, that made a lot of sense. Today, the situation is different. NSX is mature, [&#8230;]]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2026/01/02/things-i-would-do-differently-if-i-designed-an-nsx-platform-today/feed/</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4737</post-id>
		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2026/01/vcf_nsx.png?w=1024" medium="image" />
	</item>
		<item>
		<title>Avi Load Balancer Metrics with Prometheus and Grafana</title>
		<link>https://rutgerblom.com/2025/01/04/avi-load-balancer-metrics-with-prometheus-and-grafana/</link>
					<comments>https://rutgerblom.com/2025/01/04/avi-load-balancer-metrics-with-prometheus-and-grafana/#comments</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Sat, 04 Jan 2025 00:31:02 +0000</pubDate>
				<category><![CDATA[avi]]></category>
		<category><![CDATA[kubernetes]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[ako]]></category>
		<category><![CDATA[alb]]></category>
		<category><![CDATA[avi api proxy]]></category>
		<category><![CDATA[broadcom]]></category>
		<category><![CDATA[cloud]]></category>
		<category><![CDATA[devops]]></category>
		<category><![CDATA[grafana]]></category>
		<category><![CDATA[k8s]]></category>
		<category><![CDATA[load balancer]]></category>
		<category><![CDATA[metrics]]></category>
		<category><![CDATA[observability]]></category>
		<category><![CDATA[prometheus]]></category>
		<category><![CDATA[sddc]]></category>
		<category><![CDATA[vmware]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4527</guid>

					<description><![CDATA[Avi Load Balancer offers a wealth of valuable metrics that can be accessed directly via the Avi Controller&#8217;s UI or API. However, there are various reasons why you might want to make these metrics available outside of its native platform. For instance, you might wish to avoid granting users or systems direct access to the [&#8230;]]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2025/01/04/avi-load-balancer-metrics-with-prometheus-and-grafana/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4527</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana6.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana6.png" medium="image">
			<media:title type="html">grafana6</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/avi-metrics-to-prometheus-1.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/avi-api-proxy-status.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/prometheus-status.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/avi_ingress_ui.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana-status.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana_import_1.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana_all_imported.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana1.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana2.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana3.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana4.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2025/01/grafana5.png" medium="image" />
	</item>
		<item>
		<title>Network Visibility for TKG Service Clusters</title>
		<link>https://rutgerblom.com/2024/12/30/network-visibility-for-tkg-service-clusters/</link>
					<comments>https://rutgerblom.com/2024/12/30/network-visibility-for-tkg-service-clusters/#respond</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Mon, 30 Dec 2024 22:04:22 +0000</pubDate>
				<category><![CDATA[kubernetes]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[ako]]></category>
		<category><![CDATA[antrea]]></category>
		<category><![CDATA[avi]]></category>
		<category><![CDATA[clickhouse]]></category>
		<category><![CDATA[cni]]></category>
		<category><![CDATA[flows]]></category>
		<category><![CDATA[grafana]]></category>
		<category><![CDATA[iaas control plane]]></category>
		<category><![CDATA[ingress]]></category>
		<category><![CDATA[ipfix]]></category>
		<category><![CDATA[k8s]]></category>
		<category><![CDATA[load balancer]]></category>
		<category><![CDATA[monitoring]]></category>
		<category><![CDATA[observability]]></category>
		<category><![CDATA[tanzu]]></category>
		<category><![CDATA[theia]]></category>
		<category><![CDATA[tkg]]></category>
		<category><![CDATA[tkgs]]></category>
		<category><![CDATA[visibility]]></category>
		<category><![CDATA[vmware]]></category>
		<category><![CDATA[vsphere supervisor]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4449</guid>

					<description><![CDATA[TKG Service Clusters using the default Antrea CNI, can be easily configured for enhanced network visibility through flow visualization and monitoring. The ability to monitor network traffic within your Kubernetes clusters, as well as between your Kubernetes constructs and the outside world, is essential for understanding system behavior—and especially important when things aren’t working as [&#8230;]]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2024/12/30/network-visibility-for-tkg-service-clusters/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4449</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2024/12/theia_ip.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/theia_ip.png" medium="image">
			<media:title type="html">theia_ip</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/lab_overview-5.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/happy_new_year.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/grafana_service.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/flow_records.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/network_topology.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/12/theia_dashboard_fqdn.png" medium="image" />
	</item>
		<item>
		<title>Integrating TKG Service Clusters with NSX Security</title>
		<link>https://rutgerblom.com/2024/11/23/integrating-tkg-service-clusters-with-nsx-security/</link>
					<comments>https://rutgerblom.com/2024/11/23/integrating-tkg-service-clusters-with-nsx-security/#comments</comments>
		
		<dc:creator><![CDATA[Rutger Blom]]></dc:creator>
		<pubDate>Sat, 23 Nov 2024 20:45:44 +0000</pubDate>
				<category><![CDATA[kubernetes]]></category>
		<category><![CDATA[nsx]]></category>
		<category><![CDATA[antrea]]></category>
		<category><![CDATA[cni]]></category>
		<category><![CDATA[firewall]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[tanzu]]></category>
		<category><![CDATA[tkg]]></category>
		<category><![CDATA[vmware]]></category>
		<category><![CDATA[vsphere]]></category>
		<guid isPermaLink="false">http://rutgerblom.com/?p=4378</guid>

					<description><![CDATA[Organizations aiming to leverage NSX for securing their TKG Service Clusters (Kubernetes clusters) can now achieve this with relative ease. In this guide, I’ll walk you through configuring the integration between a TKG Service Cluster and NSX—a required step for centrally managing security policies within TKG Service Clusters and between these clusters and external networks. [&#8230;]]]></description>
		
					<wfw:commentRss>https://rutgerblom.com/2024/11/23/integrating-tkg-service-clusters-with-nsx-security/feed/</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4378</post-id>
		<media:thumbnail url="https://rutgerblom.com/wp-content/uploads/2024/11/antrea_architecture_diagram.png" />
		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/antrea_architecture_diagram.png" medium="image">
			<media:title type="html">antrea_architecture_diagram</media:title>
		</media:content>

		<media:content url="https://2.gravatar.com/avatar/e9f3a80b8e984c698d20945cba989c6df8d75f3bc07bfe68379382399d2d9ce8?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">rutgerblom</media:title>
		</media:content>

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/antrea_architecture_diagram.png?w=941" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/supervisor_import.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/new_namespace.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/namespace_configuration.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/nsx_antrea_cluster.png" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/skarmavbild-2024-11-23-kl.-17.04.52.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/antrea_pod_secure.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/antrea_policy_rule.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/generic_group.png?w=1024" medium="image" />

		<media:content url="https://rutgerblom.com/wp-content/uploads/2024/11/rule_generic.png?w=1024" medium="image" />
	</item>
	</channel>
</rss>
