DevOps and Docker Talk: Cloud Native Interviews and Tooling
DevOps and Docker Talk: Cloud Native Interviews and Tooling
Bret Fisher
Interviews from Bret Fisher's live show with co-host Nirmal Mehta. Topics cover container and cloud topics like Docker, Kubernetes, Swarm, Cloud Native development, DevOps, SRE, GitOps, DevSecOps, platform engineering, and the full software lifecycle. Full show notes and more info available at https://podcast.bretfisher.com
CI/CD via agent tools: Skills, CLIs, MCP, and more with Semaphore
What does an AI-native CI look like? The Semaphore team joins me to talk about their focus on making your agent harness the gateway to testing, fixing, and deploying your code.Video podcast version here: https://youtu.be/HzXAdtVrW70★Show Links★Semaphore https://semaphore.io/Semaphore open source https://github.com/semaphoreio/semaphoreSLSA Security Checklist https://slsa.dev/Creators & Guests Marcos Filipe - Guest Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Marko Gaćeša - Guest (00:00) - Introduction (00:29) - AI Native CI Vision (04:54) - Bret's Update (09:03) - Semaphore AI Journey (22:39) - Open Source Platform Shift (37:28) - Plugins CLI MCP Skills (43:11) - Work Until CI Is Green (45:42) - Test Boxes and Agentic CI Loop (57:39) - Sandboxing and Least Privilege (01:10:12) - Roadmap SLSA and Getting Started
Aug 13
1 hr 17 min
K8s Maxxing with AI-Native Platform Engineering Stack with OpenChoreo
OpenChoreo is a “batteries included”, AI-native Kubernetes platform stack for Platform Engineers that combines GitOps, Observability, AI Agents, and Workflows into a custom K8s distribution “super pack” that is managed via Backstage, CLI, API, or MCP.Check out the video podcast version here: https://youtu.be/AqGWjxEfj2g😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.★Show Links★OpenChoreo on CNCFOpenChoreo on GitHubOpenChoreo websiteSRE Day walkthroughCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Sameera Jayasoma - Guest Lakmal Warusawithana - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - MAIN - Video Podcast (00:00) - Introduction (08:29) - What Makes OpenChoreo Different (16:41) - Agents as First-Class Citizens (24:50) - The Future of Agentic DevOps (32:55) - Deploying with Agents: Live Demo (39:26) - Sandboxing & SRE Auto-Remediation (47:03) - Getting Started & Wrap-Up
Jun 13
54 min
Docker AI, what’s new with MCP, Agents, Sandboxes, and more
Michael Irwin of Docker joins me to run through Gordon AI improvements, Docker Hardened Images and what's now free, Docker Sandboxes for running agents in proper isolation, Model Runner updates including MLX support on Mac, MCP Toolkit dynamic discovery, and the newly renamed Docker Agent with its GitHub Action for automating PR reviews and docs checks.Check out the video podcast version here: https://youtu.be/dTF3b36Bq6w😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.★Show Links★Docker Hardened Images for Every DeveloperDocker Hardened System PackagesHardened Images CatalogGordon AI Just Got an UpdateDocker SandboxesNanoClaw and Docker SandboxesDocker Model Runner VLLM Metal on macOSOpenWebUI + Docker Model RunnerMCP Catalog and ToolkitDynamic MCPCagent ActionPR Review Workflow of CagentNightly Docs Scan WorkflowCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Michael Irwin 🇺🇦 🕊 - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Introduction (11:15) - Docker Hardened Images (23:02) - Gordon AI (33:23) - Docker Sandboxes (37:38) - Sandbox Demo & Network Security (55:10) - Model Runner, OpenWebUI & MCP Tools (01:06:31) - Cagent, Open Source & The Future of AI in DevOps
Apr 7
1 hr 16 min
Backup S3, Google Drive, iCloud, Notion with Plakar
Bret is joined by the founders of Plakar - Julien Mangeard and Gilles Chehade - to nerd out over backup engineering. The kind where you're building your own file formats and cryptographic layers, not just wiring up cron jobs. We get into how Plakar deduplicates and encrypts at the source so your cloud provider never sees your keys. Also, their snapshot model has no chain dependencies, which means you can delete any backup without breaking the others. We had a fun hour of backup horror stories, ransomware pragmatism, where I'm lobbying hard for a Docker volume integration.Check out the video podcast version here: https://youtu.be/OPRK5osKQHI😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.★Show Links★Plakar websitePlakar Github RepoPlakar demoPlakar on XCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Julien Mangeard - Guest Gilles Chehade - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Introduction (02:25) - Backup Engineering (04:50) - Restore First Mindset (06:56) - Plakar's Elevator Pitch (18:24) - Docker and Volume Backups (24:10) - Docker Image Deployment Challenges (26:53) - Backing Up the System (27:56) - Encryption and Architecture Modes (31:57) - Enterprise Scaling and Solo DevOps (33:48) - Ransomware And Encryption (34:27) - Source Side Dedup Demo (37:17) - Chainless Snapshots (39:07) - Sync And Multi Store Copies (41:39) - Crypto Audits And Repair (43:48) - Backup Stress Horror Stories (47:50) - Make Backups Usable (50:00) - Ransomware Detection Heuristics (56:06) - Cloud Native Positioning (59:56) - Kubernetes and Integrations
Mar 20
1 hr 6 min
Your Images are Out of Date (probably) - The Silent Rebuilds problem
Container base images (like Official Docker Hub images) are often updated without new tag versions. I call this Silent Rebuilds. There's no way to know this happens without image digest-checking automation like Dependabot and Renovate with specific settings. Failure to keep up-to-date is a prime source of vulnerabilities that can lead to serious security breaches. Automate the updates!Check out the video podcast version here: https://youtu.be/z_ahbsSc4Fo😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.★Show Links★Course waitlist: GitHub Actions Prohttps://www.bretfisher.com/blog/silent-rebuildshttps://github.com/BretFisher/silent-rebuildshttps://www.bretfisher.com/chainguard-eventCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Nirmal Mehta - Host You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Intro (05:30) - Docker Security and Image Builds (07:56) - CVEs in Containers (09:22) - Where we were (13:09) - Silent Builds and Mutable Tags (16:27) - Docker Official Image Tags Are Rebuilt Often (18:57) - Chainguard's Tool (19:17) - Tag Tracker Tool Overview (23:56) - High Fivers DevOps Group (25:59) - Problem of Silent Rebuilds (34:16) - Post-Stream Updates
Mar 4
36 min
AI Wins and Misses for 2025
I'm joined by Nirmal Mehta of AWS and Viktor Farcic from Upbound, to go through our 2025 year in review. We look into the AI tools that consumed us this year, from CLI agents to terminal emulators, IDEs, AI browsers - what worked, what flopped, what's worth your time and money, and what we think isn't!Check out the video podcast version here: https://youtu.be/mnagfUsh5bc😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.Creators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Nirmal Mehta - Host Viktor Farcic - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Introduction (04:15) - Game of AI Tools (04:41) - Reflecting on the Fast-Paced Year (05:35) - CLI Tools and AI Integration (07:13) - Ghostty (10:12) - Terminal Preferences and AI Tools (12:16) - Claude Code (14:37) - Skills (25:44) - Warp (33:05) - AWS Kiro and Spec-Driven Development (39:24) - Visual Editors (IDEs) (44:45) - Zed (46:55) - AI Browsers (01:00:36) - Notion AI (01:02:54) - Code Rabbit MCP (01:05:33) - AI Optimization (01:08:25) - Ad Blocking and AI SEO
Feb 17
1 hr 14 min
Find Your K8s Happy Path with RawKode Academy
I talk with David Flanagan, aka Rawkode, about his new opinionated Tech Matrix that helps you navigate the overwhelming CNCF landscape. https://rawkode.academy/technology/matrix😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.★Show Links★RawKode Academy websiteDavid's DiscordDavid's LinkedInDavid on social media: @rawkode everywhereCheck out the video podcast version here: https://youtu.be/1LigTOlFiYkCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer David Flanagan - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Intro (04:46) - Opinions on HashiCorp (07:17) - The CNCF Landscape (08:46) - Opinionated Tech Matrix (16:11) - Tech Matrix in Detail (26:34) - The Advocate List (27:18) - Cloud Events and CUE (28:35) - SpiceDB and Teleport (30:01) - Service Meshes: Linkerd vs. Istio (30:46) - Kubernetes and CNI (31:41) - Observability Tools (32:22) - WebAssembly and Rust (33:08) - Learning Paths and DevOps (40:55) - Key Takeaways (43:53) - Database Fundamentals
Jan 23
51 min
Move K8s Stateful Pods Between Nodes
Bret is joined by Philip Andrews and Dan Muret of Cast AI to discuss pod live migration between nodes in a Kubernetes cluster. 😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.Cast AI dynamically moves your pod to a different node without downtime or data lost. It copies your running pod data, memory, IP address, and TCP connections from one node to another in real time. In this episode, we nerd out over how Cast AI works under the hood, use cases for it, including hardware and OS maintenance on a node. I've got a feeling Cast AI has a winning feature on their hands.★Show Links★Cast AI website Cast AI YouTube ChannelCheck out the video podcast version here: https://youtu.be/yINNWxRywv4Creators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Dan Muret - Guest Philip Andrews - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Introduction (02:21) - Cast AI Elevator Pitch (05:20) - Stateful Workloads (08:26) - Bin Packing in Live Migration (11:58) - Stateful vs Stateless (14:06) - Networking and Storage Considerations (21:26) - Future Developments and Use Cases (24:06) - ML Workloads (26:48) - Live Migration of Spot Instances (29:24) - Live Migration Process Explained (37:25) - Challenges and Engineering Behind Live Migration (42:19) - Getting Started with Cast AI
Oct 9, 2025
44 min
Swarm 2030. Let's Go!
Bret discusses exciting news about Swarm being maintained until 2030.😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.In this episode, I give an update on the future of Docker Swarm, the renewed long-term support and ongoing development from Mirantis. The news should be reassuring for you, Swarm users. Swarm remains a viable, supported option for your container orchestration needs, at least until 2030.★Show Links★Swarm news: Mirantis maintaining until 2030Awesome SwarmCheck out the video podcast version here: https://youtu.be/tmQbrCrM-yMCreators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Intro (00:34) - History of Mirantis and Swarm (01:02) - Swarm's Current Status (03:44) - Swarm's Long-Term Support (06:30) - Swarm's Value Proposition (10:48) - Technical Challenges and Solutions (16:10) - Looking Ahead: Roadmap and Commitments (18:49) - Final Thoughts
Aug 20, 2025
23 min
Is Docker Building the Best AI Stack?
Bret and Nirmal are joined by Michael Irwin to discuss Docker's comprehensive AI toolkit, covering everything from local model deployment to cloud-based container orchestration across multiple interconnected tools and services.😇 My new GitHub Security workshop has launched! A free 2-hour workshop with hands-on labs to harden your repos and your workflows from common supply chain attacks. I'll cover how attackers are getting in, and then we'll lock down a sample repo so you know what needs to be done to protect your code. You'll leave with a deep understanding of risks and mitigations as well as a list of helpful tools to keep your repos safe, including my new "gasa" tool for scanning your repos and orgs.We run through almost the entire Docker AI ecosystem, including the Model Runner for hosting open-source models locally or remotely, the Hub model catalog, Gordon AI chatbot integration within Docker Desktop and CLI, how MCP toolkit and catalog enable seamless tool integration with local AI systems, Docker's open-source MCP gateway for managing these connections, plus Docker's new Offload service for running containers and models entirely in Docker Cloud and much, much more!★Show Links★Docker Model RunnerGordon AI Blog PostDocker OffloadDocker Gen AI CatalogDocker MCP Catalog and ToolkitDocker MCP Gateway RepositoryCheck out the video podcast version here: https://youtu.be/dUmSsnc33O0Creators & Guests Cristi Cotovan - Editor Bret Fisher - Host Beth Fisher - Producer Nirmal Mehta - Host Michael Irwin 🇺🇦 🕊 - Guest You can also support this podcast by subscribing to my YouTube channel and my monthly newsletter at bret.news!Grab the best coupons for my GitHub, Agents, Docker, and Kubernetes courses.Join my cloud native DevOps community on Discord.Grab some merch at Bret's Loot BoxHomepage bretfisher.com (00:00) - Intro (04:32) - Gordon AI (09:41) - Docker Model Runner (19:34) - State of Free Models (22:11) - MCP Toolkit (24:39) - MCP Gateway (33:45) - MCP Server Limits (38:31) - MCP Gateway vs API Gateway (46:11) - Model Support in Docker Compose (51:00) - Docker Offload
Aug 12, 2025
1 hr 5 min
Load more