
    <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
      <channel>
        <title>Luca Cavallin</title>
        <link>https://www.lucavallin.com/it/blog/tags/containers</link>
        <description>
      Platform Engineer at Xebia, focused on AI platform engineering - the infrastructure behind reliable, observable, scalable AI and cloud-native workloads. I work primarily in Go and Google Cloud, with deep experience in Kubernetes, containers, and end-to-end observability - and a strong interest in networking and lower-level systems work in Rust. My current focus is the platform layer beneath AI: inference serving infrastructure on Kubernetes, AI gateway and MCP connectivity, agentic workload orchestration, and end-to-end observability for GenAI systems.

      My broader experience is full-stack: strong on backend, with solid frontend and mobile knowledge. I contribute to open source, write on my blog, and pick up the occasional talk, training, or meetup when something interesting comes up. I&#39;m a Google Developer Expert (GDE) and a CNCF Ambassador.

      For a deeper dive, see my blog. If you&#39;re new to open source, check out Verto.sh. For mentorship, I&#39;m on Mentorcruise. Outside of work, activities like photography, motorcycling, playing a handpan and cleaning litterboxes keep me occupied 🐈.
    </description>
        <language>it-IT</language>
        <managingEditor>Luca Cavallin</managingEditor>
        <webMaster>Luca Cavallin</webMaster>
        <lastBuildDate>Tue, 10 Mar 2026 00:00:00 GMT</lastBuildDate>
        <atom:link href="https://www.lucavallin.com/it/blog/tags/containers/feed.xml" rel="self" type="application/rss+xml"/>
        
    <item>
      <guid>https://www.lucavallin.com/it/blog/containers-are-not-automatically-secure</guid>
      <title>I Container Non Sono Automaticamente Sicuri</title>
      <link>https://www.lucavallin.com/it/blog/containers-are-not-automatically-secure</link>
      <description>I container hanno cambiato il modo in cui impacchettiamo e distribuiamo il software, ma non hanno riscritto le regole di sicurezza fondamentali. I confini di fiducia, i privilegi e la superficie d&#39;attacco sono ancora tutti lì. Questa è stata probabilmente la cosa principale che ho imparato approfondendo la sicurezza dei container, in parte dal libro Container Security di Liz Rice e in parte passando tempo con i componenti Linux sottostanti.</description>
      <pubDate>Tue, 10 Mar 2026 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>linux</category><category>containers</category><category>security</category>
    </item>
  
    <item>
      <guid>https://www.lucavallin.com/it/blog/kubernetes-networking-from-packets-to-pods</guid>
      <title>Il Networking di Kubernetes dai Pacchetti ai Pod</title>
      <link>https://www.lucavallin.com/it/blog/kubernetes-networking-from-packets-to-pods</link>
      <description>Il networking di Kubernetes non deve essere una scatola nera. Questa guida lo scompone a partire dai fondamentali del networking Linux e dell&#39;isolamento dei container. Poi ci immergiamo nel modello completo di Kubernetes, spiegando tutto dagli IP dei Pod e i plugin CNI ai Service, NetworkPolicy e Ingress, fornendo una mappa chiara end-to-end di come funziona la connettività nel cluster.</description>
      <pubDate>Tue, 01 Jul 2025 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>kubernetes</category><category>networking</category><category>containers</category><category>linux</category>
    </item>
  
    <item>
      <guid>https://www.lucavallin.com/it/blog/kubefm-podcast-lucavallin-barco-containers-from-scratch-in-c</guid>
      <title>Sono stato sul Podcast KubeFM a parlare di &quot;Linux Containers From Scratch&quot;</title>
      <link>https://www.lucavallin.com/it/blog/kubefm-podcast-lucavallin-barco-containers-from-scratch-in-c</link>
      <description>KubeFM mi ha recentemente invitato a parlare del mio progetto &quot;barco: Linux Containers From Scratch in C&quot;. In questo episodio spiego perché i container Linux non esistono davvero, come usare cgroups e namespace per isolare un processo, come proteggere il container con seccomp e le capabilities, e come effettuare le syscall giuste dal C per costruire il proprio container engine. Grazie, KubeFM, per l&#39;invito!</description>
      <pubDate>Wed, 24 Jan 2024 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>podcast</category><category>containers</category><category>linux</category><category>cloud-native</category><category>cncf</category><category>kubernetes</category>
    </item>
  
    <item>
      <guid>https://www.lucavallin.com/it/blog/barco-linux-containers-from-scratch-in-c</guid>
      <title>barco: Container Linux da Zero in C.</title>
      <link>https://www.lucavallin.com/it/blog/barco-linux-containers-from-scratch-in-c</link>
      <description>Un&#39;implementazione in C di un container runtime, costruita da zero per esplorare i container e il kernel Linux.</description>
      <pubDate>Sun, 17 Sep 2023 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>c</category><category>linux</category><category>containers</category><category>cncf</category>
    </item>
  
    <item>
      <guid>https://www.lucavallin.com/it/blog/club-cloud-stories-news-from-around-the-cloud</guid>
      <title>Club Cloud Stories #2 - Notizie dal Mondo Cloud</title>
      <link>https://www.lucavallin.com/it/blog/club-cloud-stories-news-from-around-the-cloud</link>
      <description>Le ultime notizie dal mondo cloud: Club Cloud Stories #2 è arrivato! Luca Cavallin &amp; Jacco Kulman – insieme all&#39;ospite speciale Antoni Tzavelas (creatore di corsi su Google Cloud e appassionato di DevOps) – discuteranno di: &quot;CloudFormation: Quick Retry&quot;, &quot;Google Cloud IoT Core 101&quot;, &quot;Step Functions: Power Up&quot;, &quot;What is GitOps?&quot;, &quot;Inspect Traffic Between Subnets in a VPC&quot;, &quot;Rust on CloudFlare Workers&quot;.</description>
      <pubDate>Tue, 23 Nov 2021 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>cloud</category><category>club-cloud</category><category>containers</category><category>podcast</category>
    </item>
  
    <item>
      <guid>https://www.lucavallin.com/it/blog/club-cloud-stories-first-episode-antoni-tzavelas-mark-van-holsteijn</guid>
      <title>Club Cloud Stories #1 - Il Primo Episodio con Antoni Tzavelas &amp; Mark van Holsteijn</title>
      <link>https://www.lucavallin.com/it/blog/club-cloud-stories-first-episode-antoni-tzavelas-mark-van-holsteijn</link>
      <description>In questo primo episodio di Club Cloud Stories, i conduttori Luca Cavallin e Jacco Kulman accolgono due ospiti: Antoni Tsavelas e Mark van Holsteijn. Si discute degli ultimi sviluppi nel mondo cloud e di un pacchetto speciale per interrompere l&#39;esecuzione dei container.</description>
      <pubDate>Tue, 19 Oct 2021 00:00:00 GMT</pubDate>
      <author>Luca Cavallin</author>
      <category>cloud</category><category>club-cloud</category><category>containers</category><category>podcast</category>
    </item>
  
      </channel>
    </rss>
  