<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
    <title>Alek&#x27;s Blog - audit</title>
    <subtitle>Production notes on Kubernetes, OpenShift, and OVHcloud: observability, log archiving, service mesh, LLM inference, and digital sovereignty.</subtitle>
    <link rel="self" type="application/atom+xml" href="https://blog.none.at/tags/audit/atom.xml"/>
    <link rel="alternate" type="text/html" href="https://blog.none.at"/>
    <generator uri="https://www.getzola.org/">Zola</generator>
    <updated>2026-07-01T00:00:00+00:00</updated>
    <id>https://blog.none.at/tags/audit/atom.xml</id>
    <entry xml:lang="en">
        <title>K8s &amp; OpenShift: Compliance</title>
        <published>2026-07-01T00:00:00+00:00</published>
        <updated>2026-07-01T00:00:00+00:00</updated>
        
        <author>
          <name>
            
              aleks
            
          </name>
        </author>
        
        <link rel="alternate" type="text/html" href="https://blog.none.at/blog/2026/2026-07-01-k8s-openshift-bp-compliance/"/>
        <id>https://blog.none.at/blog/2026/2026-07-01-k8s-openshift-bp-compliance/</id>
        
        <summary type="html">&lt;p&gt;&lt;a href=&quot;https:&#x2F;&#x2F;blog.none.at&#x2F;blog&#x2F;2026&#x2F;2026-07-01-k8s-openshift-bp-operations&#x2F;&quot;&gt;Part 6&lt;&#x2F;a&gt; covered the operational loop:
GitOps, observability, cost control, and upgrades. This final part maps the cluster configuration
covered throughout this series to the regulatory frameworks that require it — NIS2, DORA,
PCI-DSS, HIPAA, and the Cyber Resilience Act (CRA) — and covers the two topics that compliance
work adds on top of security: audit logging as evidence and log retention as a contractual
obligation.&lt;&#x2F;p&gt;</summary>
        
    </entry>
</feed>
