
Kubernetes 1.8: Security, Workloads and Feature Depth
Kubernetes 1.8 delivers major enhancements in security (RBAC GA, certificate rotation), workload APIs, runtime choices (CRI-O) and overall project maturity.

Kubernetes 1.8 delivers major enhancements in security (RBAC GA, certificate rotation), workload APIs, runtime choices (CRI-O) and overall project maturity.

Traefik 1.4 expands its Kubernetes ingress controller with weighted canaries, gRPC routing, and Let’s Encrypt enhancements for modern microservices.

With Jaeger’s admission to the CNCF Sandbox, Kubernetes teams gained a vendor-neutral distributed tracing system compatible with OpenTracing and Envoy.

Envoy 1.0 graduates with stable APIs, first-class Kubernetes integrations, and a thriving ecosystem of control planes like Istio, Lyft’s management server, and Ambassador.

Flannel 0.8 streamlines VXLAN/host-gw backends, introduces health reporting, and adds CNI plugin refinements—keeping Kubernetes networking lightweight.

Helm 2.5 tightens security around Tiller, adds chart testing hooks, and improves RBAC integration—making Kubernetes package management safer for enterprise teams.

kubeadm matures with high availability support and upgrade workflows, making it viable for production on-premises deployments.

Jetstack launches cert-manager 0.1, bringing ACME-based certificate issuance and renewal directly into Kubernetes clusters.

kube-bench 0.1.0 automates CIS Kubernetes Benchmark compliance checking, enabling teams to identify and remediate security misconfigurations in their clusters.

Kubernetes Dashboard 1.7 introduces token-based login, kubeconfig switching and CRD visibility—aligning the web UI with production-grade security practices.