<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on Terraforming the Cloud</title><link>https://blog.tazlab.net/tags/security/</link><description>Recent content in Security on Terraforming the Cloud</description><generator>Hugo -- gohugo.io</generator><language>en</language><copyright>© 2026 Roberto Tazzoli</copyright><lastBuildDate>Sat, 04 Apr 2026 14:00:00 +0000</lastBuildDate><atom:link href="https://blog.tazlab.net/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>LushyCorp Vault on Hetzner: security-driven architectural choices</title><link>https://blog.tazlab.net/posts/lushycorp-vault-hetzner-security-architecture/</link><pubDate>Sat, 04 Apr 2026 14:00:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/lushycorp-vault-hetzner-security-architecture/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/lushycorp-vault-hetzner-security-architecture/featured.jpg"/></item><item><title>Tailscale: The Secure Backbone of TazLab's Rebirth</title><link>https://blog.tazlab.net/posts/tailscale-secure-backbone-tazlab-rebirth/</link><pubDate>Tue, 24 Mar 2026 14:35:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/tailscale-secure-backbone-tazlab-rebirth/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/tailscale-secure-backbone-tazlab-rebirth/featured.jpg"/></item><item><title>Zero Credentials on Disk: Rewriting TazPod with AWS IAM Identity Center</title><link>https://blog.tazlab.net/posts/tazpod-zero-credentials-aws-sso/</link><pubDate>Sun, 22 Mar 2026 19:43:22 +0000</pubDate><guid>https://blog.tazlab.net/posts/tazpod-zero-credentials-aws-sso/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/tazpod-zero-credentials-aws-sso/featured.jpg"/></item><item><title>Bootstrap from Zero: Rebuilding Everything from a Single S3 Bucket</title><link>https://blog.tazlab.net/posts/bootstrap-from-zero-vault-s3-rebirth/</link><pubDate>Fri, 20 Mar 2026 11:00:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/bootstrap-from-zero-vault-s3-rebirth/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/bootstrap-from-zero-vault-s3-rebirth/featured.jpg"/></item><item><title>TazLab Roadmap: HashiCorp Vault and Oracle Cloud</title><link>https://blog.tazlab.net/posts/tazlab-roadmap-hashicorp-vault-oracle-cloud/</link><pubDate>Tue, 17 Mar 2026 08:00:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/tazlab-roadmap-hashicorp-vault-oracle-cloud/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/tazlab-roadmap-hashicorp-vault-oracle-cloud/featured.jpg"/></item><item><title>Phoenix Protocol V2: Enterprise Security, Parallelism, and the 8-Minute Milestone</title><link>https://blog.tazlab.net/posts/phoenix-protocol-v2-turbo-rebirth/</link><pubDate>Wed, 25 Feb 2026 17:50:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/phoenix-protocol-v2-turbo-rebirth/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/phoenix-protocol-v2-turbo-rebirth/featured.jpg"/></item><item><title>Phoenix Protocol: Validating Zero-Touch Rebirth and the S3 PITR Hell</title><link>https://blog.tazlab.net/posts/phoenix-protocol-s3-pitr-validation/</link><pubDate>Tue, 10 Feb 2026 18:30:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/phoenix-protocol-s3-pitr-validation/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/phoenix-protocol-s3-pitr-validation/featured.jpg"/></item><item><title>TazPod v2.0: Surrendering to Root and the RAM Revolution</title><link>https://blog.tazlab.net/posts/tazpod-v2-ram-vault-evolution/</link><pubDate>Fri, 06 Feb 2026 22:43:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/tazpod-v2-ram-vault-evolution/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/tazpod-v2-ram-vault-evolution/featured.jpg"/></item><item><title>The Immutable Handover: Terraform, Flux, and the Birth of the Castle Factory</title><link>https://blog.tazlab.net/posts/the-immutable-handover-factory-automation/</link><pubDate>Sun, 01 Feb 2026 07:00:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/the-immutable-handover-factory-automation/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/the-immutable-handover-factory-automation/featured.jpg"/></item><item><title>The Foundations of Accessibility: Traefik, Cert-Manager, and the Castle's Philosophical Pivot</title><link>https://blog.tazlab.net/posts/extending-ephemeral-castle-ingress-automation/</link><pubDate>Fri, 30 Jan 2026 06:42:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/extending-ephemeral-castle-ingress-automation/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/extending-ephemeral-castle-ingress-automation/featured.jpg"/></item><item><title>The Fortress Walls: Implementing Zero-Trust Security and Secret Management</title><link>https://blog.tazlab.net/posts/fortifying-the-ephemeral-castle-security/</link><pubDate>Thu, 29 Jan 2026 10:00:00 +0100</pubDate><guid>https://blog.tazlab.net/posts/fortifying-the-ephemeral-castle-security/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/fortifying-the-ephemeral-castle-security/featured.jpg"/></item><item><title>The Ephemeral Castle: Towards a Nomadic and Zero Trust Infrastructure</title><link>https://blog.tazlab.net/posts/the-ephemeral-castle-vision/</link><pubDate>Sun, 25 Jan 2026 21:45:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/the-ephemeral-castle-vision/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/the-ephemeral-castle-vision/featured.jpg"/></item><item><title>TazPod Rising: From DevPod Ashes to a Go-Powered Zero Trust CLI</title><link>https://blog.tazlab.net/posts/tazpod-rising-go-cli-zero-trust/</link><pubDate>Tue, 20 Jan 2026 10:00:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/tazpod-rising-go-cli-zero-trust/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/tazpod-rising-go-cli-zero-trust/featured.jpg"/></item><item><title>DevPod's Swan Song: The Clash Between Automation and Zero Trust Security</title><link>https://blog.tazlab.net/posts/devpod-zero-trust-struggle/</link><pubDate>Wed, 14 Jan 2026 10:00:00 +0000</pubDate><guid>https://blog.tazlab.net/posts/devpod-zero-trust-struggle/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/posts/devpod-zero-trust-struggle/featured.jpg"/></item><item><title>Advanced Secret Management Strategies: HashiCorp Vault, SOPS, and the Kubernetes Ecosystem</title><link>https://blog.tazlab.net/guides/hashicorp-vault-sops-kubernetes-guide/</link><pubDate>Sat, 10 Jan 2026 23:59:00 +0000</pubDate><guid>https://blog.tazlab.net/guides/hashicorp-vault-sops-kubernetes-guide/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/guides/hashicorp-vault-sops-kubernetes-guide/featured.jpg"/></item><item><title>Security and Lifecycle Management in Kubernetes on Talos Linux: Architectures, PKI, and Secrecy Strategies</title><link>https://blog.tazlab.net/guides/talos-linux-security-secrets/</link><pubDate>Thu, 08 Jan 2026 00:00:00 +0000</pubDate><guid>https://blog.tazlab.net/guides/talos-linux-security-secrets/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/guides/talos-linux-security-secrets/featured.jpg"/></item><item><title>Architecture and Implementation of Tailscale on Talos Linux: Technical Analysis and Resolution of Operational Criticalities</title><link>https://blog.tazlab.net/guides/talos-linux-tailscale-guide/</link><pubDate>Wed, 07 Jan 2026 00:00:00 +0000</pubDate><guid>https://blog.tazlab.net/guides/talos-linux-tailscale-guide/</guid><description/><media:content xmlns:media="http://search.yahoo.com/mrss/" url="https://blog.tazlab.net/guides/talos-linux-tailscale-guide/featured.jpg"/></item></channel></rss>