Portfolio Details
Project Information
- Category: Kubernetes and Infrastructure Consulting
- Client: A major public transportation company
- Project date: Oct 2023 - Apr 2024
Public to Sovereign Cloud Migration
I led the migration of a critical production Kubernetes cluster for a major enterprise client in the transportation sector. The task involved transitioning their infrastructure from Amazon Elastic Kubernetes Service (EKS) to a self-developed on-premises Kubernetes platform built on K3s. This platform featured core services such as Traefik for ingress management, Telegraf for agent-based node monitoring, and Fluent Bit for log monitoring.
The primary reason for this migration was to comply with national regulations and laws, including GDPR, ensuring that the personal data of Norwegian citizens is stored within sovereign boundaries. By moving away from a public cloud provider, the client aimed to enhance data privacy and security. Additionally, the migration sought to improve system performance, provide greater control over the infrastructure, and reduce long-term cloud service costs.
Utilizing GitOps and Terraform, I efficiently deployed the new cluster. My contributions included extensive support for Kubernetes networking, storage, and deployment. I also conducted image scanning with Harbor to ensure container security and assisted the client in optimizing their codebase and manifest files to adhere to best practices. This comprehensive approach ensured a seamless transition and robust operational setup.
The benefits realized from this migration included:
- Enhanced data privacy and compliance with national regulations and GDPR.
- Improved system performance and reliability.
- Greater control over infrastructure management and operations.
- Reduced dependency on third-party cloud providers, leading to cost savings.
- Streamlined monitoring and logging with integrated tools like Telegraf and Fluent Bit.
Overall, the project successfully addressed the client's requirements and positioned their infrastructure for future scalability and security.