Exploring NRI for Automated CA Trust Injection - Tsuzuki Tsuchiya & Kento Kubo, LY Corporation
About this talk
This talk explores the challenges of managing private Certificate Authorities (CAs) in large organizations that utilize Kubernetes. The speakers, Tsuzuki Tsuchiya and Kento Kubo from LY Corporation, discuss the complexity and unreliability of manually building new images or using Init Containers to install certificates in thousands of containers. They present a novel solution leveraging the Node Resource Interface (NRI) to automate the injection of private CA certificates into containers at startup, which streamlines operations and enforces trust policies without modifying base images. Attendees will gain insights into how NRI can address real-world security and operational challenges in large-scale Kubernetes deployments.
More from this event
See all 436 talks →
Best of KubeCon + CloudNativeCon Amsterdam 2026
2:17
The Quiet Work of Forever: Sustaining Open Source Communities - O. Hope Amaechi-Okorie, JSON Schema
26:24
Evolving KServe: The Unified Model Inference Platform for Both Predictive and... F. Spolti & J. Lee
32:40
Preventing S3 Cost Storms: Applying Cortex’s Efficiency Lessons to I/O-Heav... A. Fishman-Lichterman
5:32