Loading…
16-17 June
Learn More and Register to Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for KubeCon + CloudNativeCon Japan 2025 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in Japan Standard Time (UTC+9:00)To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date." The schedule is subject to change and session seating is available on a first-come, first-served basis. 
Venue: Level 1 | Pegasus Ballroom B2+C clear filter
Monday, June 16
 

11:30 JST

Never Underestimate Memory Architecture - Bryan Boreham, Grafana Labs
Monday June 16, 2025 11:30 - 12:00 JST
Modern cloud servers are built on NUMA (Non-Uniform Memory Access) and SMT (Symmetric Multi-Threading, aka Hyperthreading) — but few engineers realize how much these technologies impact application performance.

NUMA means that your cloud server’s memory might be significantly slower to access, because it’s connected to a different CPU, while Hyperthreading makes a single CPU core pretend to be two, but not at twice the speed.

This talk will:
• Demystify NUMA & Hyperthreading — what they are, how they work, and why they matter.
• Explore Kubernetes integration—the (limited) ways Kubernetes interacts with NUMA.
• Show real-world performance impact — illustrated with measurements on AWS and Google Cloud.
• Give you visibility — how to use Prometheus metrics and Linux commands to view your servers’ NUMA and SMT configurations.

By the end of the session, you'll have an understanding of the issues, and the tools to measure and their impact on the performance of your workloads.
Speakers
avatar for Bryan Boreham

Bryan Boreham

Distinguished Engineer, Grafana Labs
Bryan Boreham is a Distinguished Engineer at Grafana Labs, working on highly scalable storage for metrics, logs and traces. Bryan's career has ranged from charting pie sales at a bakery to real-time pricing of billion-dollar bond trades. A contributor to many Open Source projects... Read More →
Monday June 16, 2025 11:30 - 12:00 JST
Level 1 | Pegasus Ballroom B2+C
  Operations + Performance

12:10 JST

New Cache Hierarchy for Container Images and OCI Artifact in Kubernetes Clusters Using Containerd - Toru Komatsu & Hidehito Yabuuchi, Preferred Networks, Inc.
Monday June 16, 2025 12:10 - 12:40 JST
One of the key bottlenecks in Kubernetes pod startup is the time taken to pull container images and OCI artifacts. It’s also costly to fetch large container images from the registry often. To tackle this problem, we developed a cache system with the following features:

* New Cache Hierarchy: Images pulled by pods are shared across the entire cluster, enabling cluster-wide optimization, not only cluster-local cache.
* Ninja: Users experience faster container image pulls without any changes on their part. Just like a ninja, the system stealthily enhances performance.
* Preheating: It supports pushing images to preheat the cache for subsequent pulls.

Deployed in a production cluster, the cache system has achieved a cache hit rate of around 95%, significantly reducing pod startup times and network communication with registries. Attendees will learn practical insights into leveraging cache and CRI to optimize image and OCI artifact pulls, ultimately enhancing cluster efficiency.
Speakers
avatar for Toru Komatsu

Toru Komatsu

Software Engineer, Preferred Networks, Inc.
Toru is the creator and lead developer of one of the CNCF Projects, Youki, an OCI runtime written in Rust. He is also a maintainer of the OCI Runtime Specification. Additionally, he is a member of Kubernetes and containerd and serves as a reviewer for runwasi. Toru is involved in... Read More →
avatar for Hidehito Yabuuchi

Hidehito Yabuuchi

Software Engineer, Preferred Networks, Inc.
Hidehito Yabuuchi is a Software Engineer at Preferred Networks, Inc. He has worked on on-premises Kubernetes clusters primarily for ML and HPC. His main interests are Kubernetes schedulers, container image registries, cooperation with public clouds, among others. He also has led the... Read More →
Monday June 16, 2025 12:10 - 12:40 JST
Level 1 | Pegasus Ballroom B2+C
  Operations + Performance

14:10 JST

No More Disruption: PlayStation Network’s Approaches To Avoid Outages on Kubernetes Platform - Tomoyuki Ehira & Shuhei Nagata, Sony Interactive Entertainment
Monday June 16, 2025 14:10 - 14:40 JST
At PlayStation Network, our Kubernetes platform with 50+ clusters handles massive amounts of user traffic every day, and the platform team consists of engineers in several global locations with different technological and cultural backgrounds.
Despite such scale and organizational complexity, we achieved remarkable stability in FY2024 so far, maintaining a notable 99.995% uptime for our platform.
In this session, we will share the key practices behind this success, including a controlled deployment strategy, robust scaling techniques, minimized manual intervention, and 24/7 operations spanning global regions. While these approaches may not be special individually, their consistent and disciplined application has been the foundation of our platform's stability.
Those who strive to achieve stable platform operation and organizations looking to expand or consolidate their platforms will leave with actionable strategies to enhance the reliability of their platform.
Speakers
avatar for Shuhei Nagata

Shuhei Nagata

Engineering Manager, Sony Interactive Entertainment
I'm an engineering manager at Sony Interactive Entertainment. I joined in 2017 and led a team that provided CI/CD pipelines and ECS infrastructure for PlayStation Network developers on the Japan site. Since 2021, I have been part of the global Internal Developer Platform team, leading... Read More →
avatar for Tomoyuki Ehira

Tomoyuki Ehira

Software Engineer, Sony Interactive Entertainment
I am a Software Engineer at Sony Interactive Entertainment, where I develop and operate the Kubernetes-based application platform for PlayStation Network. Although I am in my first year as a professional, my passion for Kubernetes and cloud-native technologies began during my student... Read More →
Monday June 16, 2025 14:10 - 14:40 JST
Level 1 | Pegasus Ballroom B2+C
  Operations + Performance

14:50 JST

Streamlined Baremetal Deployment: A Journey of Custom Controllers Integrated With OpenStack - Mitsuhiro Tanino & Masanori Kuroha, LY Corporation
Monday June 16, 2025 14:50 - 15:20 JST
As LY Corporation transitioned to developing a new private cloud infrastructure, we confronted significant challenges in managing over 6,000 baremetal servers through Kubernetes integrated with OpenStack, resulting in increased complexity, extended deployment times, and excessive resource consumption.

This session delivers how our custom controllers enhanced our approach, automating complex configurations and addressing disruptions in ArgoCD and Ansible, Kubernetes resource shortages, and scalability constraints.

We will focus on:

- Challenges in Existing Baremetal Provisioning: Explore the operational complexities and inefficiencies caused by scale, including deployment delays.

- Implementation of Custom Controllers: How we automated configurations and leading to faster, more reliable deployments with Helm.

- Enhancements in Resource Management: Techniques that streamlined processes and enhanced OpenStack integration, ultimately boosting operational simplicity and efficiency.
Speakers
avatar for Mitsuhiro Tanino

Mitsuhiro Tanino

Senior software engineer, LY Corporation
Mitsuhiro Tanino is a senior software engineer who has been working for LY Corporation since 2019. He has experience to contribute OpenStack Cinder project for several years and also contributed Kubernetes sig-storage for several years. His current working area is operating hyper-scale... Read More →
avatar for Masanori Kuroha

Masanori Kuroha

Software Engineer, LY Corporation
Masanori Kuroha has been working as a Cloud Software Engineer at LY Corporation since 2021. He is responsible for managing private clusters using OpenStack and operating Kubernetes clusters on physical machines. Recently, he focuses on customizing OpenStack Nova for internal purposes... Read More →
Monday June 16, 2025 14:50 - 15:20 JST
Level 1 | Pegasus Ballroom B2+C
  Operations + Performance

15:50 JST

The Grand Adventure of Production Apps: Build, Break, and Survive! ~ A Kawaii Manga Journey Through - Aoi Motomura, Independent
Monday June 16, 2025 15:50 - 16:20 JST
"I've started to understand the basics of Kubernetes, but when it comes to running it in production, I can't quite imagine what kind of issues might arise..."
To ease these concerns, this session will use original characters, illustrations, and animations in a “cute manga” style to visually demonstrate how production applications can break and how to troubleshoot them.
In our story, the main application as a character takes center stage as the hero, venturing out on a grand journey—only to be "suddenly attacked by a monster" at the most inopportune moment. By following this storyline, you will learn both how applications fail and how to fix them. Additionally, just as an adventurer equips better armor to prepare for future battles, we will explore common issues and explain how to prevent them from happening in the first place.
Join us on an exciting adventure in "manga-style troubleshooting" and gain the confidence to tackle production Kubernetes challenges head-on!
Speakers
avatar for Aoi Takahashi

Aoi Takahashi

Site Reliability Engineer
I am an SRE at a major technology company, specializing in ensuring the reliability, scalability, and performance of a large-scale online learning platform. My work focuses on monitoring, automation, and incident response to maintain high availability for a wide user base. I also... Read More →
Monday June 16, 2025 15:50 - 16:20 JST
Level 1 | Pegasus Ballroom B2+C
  Application Development

16:30 JST

Breaking Limits: Highly-Isolated and Low-Overhead Wasm Container - Soichiro Ueda, Kyoto University & Ai Nozaki, The University of Tokyo
Monday June 16, 2025 16:30 - 17:00 JST
Wasm is touted as the next generation of containers, offering a smaller, more secure, and more portable application format. However, challenges remain, particularly in achieving enough isolation for public clouds where multi-tenancy exists. This is because Wasm shares the host kernel between workloads like containers. To take full advantage of Wasm, there is still insufficient discussion on this problem.

To address the issue, we've developed a new Wasm runtime, Mewz. It runs a single Wasm module within a dedicated VM while also having a lightweight and specialized kernel (unikernel). This revolutionary execution model enables more secure and low-overhead Wasm containers. We've open-sourced the implementation, and Mewz is listed in the CNCF cloud native landscape! In this session, we'll explain the architecture of Mewz and why it's more isolated and low-overhead than ordinary Wasm runtimes. Building on this presentation, let’s discuss the future of cloud workloads powered by Wasm!
Speakers
avatar for Ai Nozaki

Ai Nozaki

Master Student, The University of Tokyo
Ai Nozaki is a Master's student at The University of Tokyo. She is a member of Mewz project. Her interest lies in WebAssembly, systems softwares and GPUs.
avatar for Soichiro Ueda

Soichiro Ueda

Student, Kyoto University
Master's Student in Computer Science at Kyoto University. Working on the Mewz project. Love cloud-native technologies and system software.
Monday June 16, 2025 16:30 - 17:00 JST
Level 1 | Pegasus Ballroom B2+C
  Emerging + Advanced

17:10 JST

2-Node Kubernetes: A Reliable and Compatible Solution - Xin Zhang & Guang Hu, Microsoft
Monday June 16, 2025 17:10 - 17:40 JST
High availability in Kubernetes typically requires a 3-node setup to support etcd's Raft algorithm. But what if you could achieve HA with only 2 nodes, slashing infrastructure costs by over 30% without sacrificing reliability? This is a game-changer, especially for deployments in retail and manufacturing scaling across hundreds or thousands of locations.
Join us to explore a groundbreaking 2-node HA Kubernetes solution, built by evolving the Raft algorithm for etcd. Unlike alternatives that compromise on compatibility, our approach delivers etcd-based HA, which can tolerate both node failures and network partitioning like a traditional 3-node cluster. You can seamlessly transit between 3-node and 2-node cluster utilizing standard tools like kubeadm or CAPI. This approach requires only a simple shared storage witness.
In this session, we will unpack the mechanics of this innovation, demonstrate 2-node cluster provisioning, and showcase its resilience under real-world failure scenarios.
Speakers
avatar for Guang Hu

Guang Hu

Principal Product Manager, Microsoft
Guang Hu is a Principal Program Manager at Microsoft, where they lead strategic initiatives to enhance digital transformation and customer engagement. Guang has been instrumental in driving and contributing in bring Kubernetes for edge scenarios that leverage cloud-native solutions... Read More →
avatar for Xin Zhang

Xin Zhang

Principal Software Engineer, Microsoft
Joshua is a Principal Software Engineer at Microsoft, working on cutting-edge edge computing solutions. With over a decade of experience in Azure hybrid cloud services, he’s passionate about designing, implementing, and optimizing core algorithms to bring powerful capabilities to... Read More →
Monday June 16, 2025 17:10 - 17:40 JST
Level 1 | Pegasus Ballroom B2+C
  Emerging + Advanced
  • Content Experience Level Any
  • Presentation Language English
 
Tuesday, June 17
 

11:30 JST

Should Our Project Join the CNCF? - Lenka Bočincová, Red Hat
Tuesday June 17, 2025 11:30 - 12:00 JST
Got an open source project? Considering submitting it to the CNCF (or another foundation)? Whether and when to do this is one of the biggest decisions you'll make in the life of your project. Joining a foundation changes things fundamentally, and whether or not this is a good decision is going to depend on where you are in your project's development and what your goals for the project currently are.

As a community architect in the Red Hat Open Source Program Office, I help projects with this decision. During this talk, I will share common things that projects need to consider before they make this important decision. I will also talk about common benefits and challenges that projects usually experience. After this talk you should have a better understanding of whether you should contribute the project to CNCF or not.
Speakers
avatar for Lenka Bocincova

Lenka Bocincova

Community architect, OSPO, Red Hat
I am a community architect at Red Hat, Open Source Program Office, where I work with open source projects related to Red Hat cloud native technologies and help them grow their communities. I enjoy a good cup of coffee and exploring cities on a bicycle :)
Tuesday June 17, 2025 11:30 - 12:00 JST
Level 1 | Pegasus Ballroom B2+C
  Cloud Native Experience

12:10 JST

Bridging Cultures: Kubernetes Upstream Training and Japan's Open Source Journey - Shu Muto & Ziyi Xie, NEC; Masahiro Kitamura, LY Corporation; Junya Okabe, University of Tsukuba; Masaki Kimura, Hitachi
Tuesday June 17, 2025 12:10 - 12:40 JST
This panel, featuring instructors from Kubernetes Upstream Training Japan, explores how this initiative has accelerated open-source involvement across the country since 2019. Our panelists will share personal stories, highlighting how the training lowers barriers, boosts motivation, and drives long-term community engagement. We’ll examine the current status of Japanese contributions to Kubernetes, discuss lessons learned from past participants, and propose strategies to strengthen future growth. Attendees can expect a candid conversation about nurturing collaboration, overcoming cultural and linguistic challenges, and fostering a thriving ecosystem. Whether you’re an aspiring contributor or a seasoned leader, join us to gain practical insights into cross-cultural community-building and discover the next chapter for cloud-native innovation in Japan.
Speakers
avatar for Masaki Kimura

Masaki Kimura

Engineer, Hitachi, Ltd.
Masaki Kimura is an OSS developer at Hitachi, Ltd. He has been working for improving Kubernetes. He is one of the main contributors to make raw block volume feature and CSI feature GA and CrossNamespaceVolumeDataSource feature alpha. He is an author of KEP-2839.
avatar for Masahiro Kitamura

Masahiro Kitamura

SRE, LY Corporation
Site Reliability Engineer at LY Corporation. Initiated and leading the Japanese localization team.
avatar for Shu Muto

Shu Muto

Open Source Strategy Professional, NEC Solution Innovators, Ltd.
Shu Muto is a maintainer for the Kubernetes Dashboard since Autumn 2019 and a chair for SIG UI. Previously, he contributed to the OpenStack Dashboard and its plugins as a core developer from 2015. Shu also develops WebRTC applications. He organizes Kubernetes Upstream Training Japan... Read More →
avatar for Ziyi Xie

Ziyi Xie

Software Engineer, NEC Solution Innovators, Ltd.
Xie Ziyi is an active contributor in the Kubernetes community, currently focusing on documentation and storage. She also serves as an instructor for new contributors at Kubernetes Upstream Training events in Japan. She has spoken at the Kubernetes Contributor Summit and KubeDay J... Read More →
avatar for Junya Okabe

Junya Okabe

Student, University of Tsukuba
Junya is passionate about cloud native technologies, especially Kubernetes, and is a professional in this field. He leads the localization of Kubernetes and CNCF documentation as a localization approver in SIG-Docs and a reviewer for several projects. Additionally, he is an active... Read More →
Tuesday June 17, 2025 12:10 - 12:40 JST
Level 1 | Pegasus Ballroom B2+C
  Cloud Native Experience
  • Content Experience Level Any
  • Presentation Language English

14:10 JST

Full Lifecycle API Management in Kubernetes With Envoy and WebAssembly - Brandon Kang, Akamai Technologies & Mostafa Radwan, Datadog
Tuesday June 17, 2025 14:10 - 14:40 JST
As cloud-native applications accelerate in complexity, managing APIs end to end is a top priority. This session introduces a next-generation, Kubernetes-native approach using Envoy Proxy and WebAssembly (Wasm) for dynamic, high-performance traffic control.

We’ll show how Wasm powers real-time policy enforcement, AI-assisted traffic analysis, and advanced rate limiting—without rebuilding Envoy. Attendees will learn how to implement Zero Trust principles, secure multi-tenant API gateways, and deliver external routes with minimal overhead.

Observability enhancements using eBPF and OpenTelemetry will demonstrate how to align trace data with runtime metrics for deeper insights. Finally, we’ll discuss developer onboarding, version governance, and lifecycle management to ensure long-term API success.

A live demo will illustrate ephemeral testing environments, rapid iteration, and how to achieve a future-proof, high-throughput API management layer in Kubernetes.
Speakers
avatar for Mostafa Radwan

Mostafa Radwan

Senior Solutions Engineer, Datadog
Mostafa is a technologist and consultant specialized in cloud native computing. He started his career as a software engineer before getting in the trenches of application and production support. He enjoys helping enterprise companies successfully adopt DevOps and cloud native technologies... Read More →
avatar for Brandon Kang

Brandon Kang

Principal Technical Solutions Architect, Akamai Technologies
Brandon Kang is a Principal Technical Solutions Architect at Akamai Technologies, specializing in cloud-native projects across Asia as a compute specialist.Before joining Akamai, he served as a Lead Software Engineer at Samsung, a Senior Program Manager at Microsoft, and a Service... Read More →
Tuesday June 17, 2025 14:10 - 14:40 JST
Level 1 | Pegasus Ballroom B2+C
  Application Development

14:50 JST

Mastering Authorization: Integrating Authentication and Authorization Data in Cloud Native Apps - Yoshiyuki Tabata, Hitachi, Ltd.
Tuesday June 17, 2025 14:50 - 15:20 JST
Authorization is one of the most important considerations for cloud-native applications, as highlighted by the OWASP Top 10. For a long time, there was no clear standard, making authorization a significant challenge for many implementers. The OpenID Foundation AuthZEN WG is now working on standards, focusing on interfaces between PEP (Policy Enforcement Point) and PDP (Policy Decision Point), which provides some hope.
However, managing authorization data remains challenging. Since this data is closely related to authentication data, architects often struggle with how the OP (OpenID Provider) and PDP should manage and integrate it. There are multiple methods, and the best approach varies by use case.
In this session, Yoshiyuki Tabata will explain various methods for managing and integrating authentication and authorization data. He will also describe implementation using Keycloak for OP and Topaz for PDP, providing valuable insights into effective data management.
Speakers
avatar for Yoshiyuki Tabata

Yoshiyuki Tabata

Senior OSS Consultant, Hitachi, Ltd.
He's a Senior OSS Consultant at Hitachi, Ltd. As an expert in IAM and APIs, he has provided numerous consultations over the past decade, including designing API and Authn/Authz platforms. He has actively contributed to CNCF TAG Security and has added significant functionalities to... Read More →
Tuesday June 17, 2025 14:50 - 15:20 JST
Level 1 | Pegasus Ballroom B2+C
  Security

15:50 JST

Practical Cloud Native Compliance Automation With OSCAL Compass - Chris Butler, Red Hat & Takumi Yanagawa, IBM Research
Tuesday June 17, 2025 15:50 - 16:20 JST
Cloud presents many advantages to users in terms of flexibility, scalability and innovation. Unfortunately compliance has become more complex as standards and regulations are used by end consumers as a proxy for security of underlying platforms whose operations are opaque. Consequently platform providers have ever increasing compliance obligations.

Compliance-as-code encompasses many activities such as automation of system configuration and general DevSecOps approaches. One perpetual challenge is how to provide machine readable workflows which span from standard to audit to allow automation in a way that scales.

OSCAL-Compass, a CNCF sandbox project, provides tooling to manage both the compliance artefacts as code and link those artefacts to executable policies. This talk will provide practical introduction to using OSCAL compass to document and enforce compliance controls using two of its tools: Compliance Trestle and C2P (compliance2policy) in the context of Kubernetes clusters.
Speakers
avatar for Takumi Yanagawa

Takumi Yanagawa

Advisory Software Developer, IBM Research
Takumi is an advisory software developer working in IBM Research - Tokyo on AI for Code and Security. He has a strong background in DevOps engineer and AI Governance product development using cloud-native technologies. With several years of experience, he has worked on building and... Read More →
avatar for Chris Butler

Chris Butler

Senior Principal Chief Architect, Red Hat
Dr. Chris Butler is a Chief Architect in the APAC Field CTO Office at Red Hat. Chris’ focus is working with regulated clients who are building infrastructure, application and AI platforms. Chris facilitates co-innovation engagements with our clients and partners with our product... Read More →
Tuesday June 17, 2025 15:50 - 16:20 JST
Level 1 | Pegasus Ballroom B2+C
  Security

16:30 JST

Your SBOM Is Lying To You – Let’s Make It Honest - Justin Cappos & Yuchen Zhang, New York University
Tuesday June 17, 2025 16:30 - 17:00 JST
SBOMs (Software Bills of Material) are essential for improving visibility and security in the software supply chain. As open-source code drives modern development, organizations face growing security risks due to limited transparency in software dependencies. Attacks like SolarWinds (2020) and Kaseya (2021) highlight the urgent need for stronger software supply chain security.
However, SBOMs are often inaccurate. This talk explores why these inaccuracies occur, how attackers exploit them, and how to address these issues. A key challenge is dependency management file analysis (e.g., cargo.toml for Rust), which struggles to track components effectively.
Enter SBOMit, an OpenSSF sandbox project leveraging in-toto attestations to create cryptographically verifiable SBOMs. By capturing supply chain steps as they occur, SBOMit enhances accuracy, mitigates tampering risks, and strengthens security. This talk examines SBOMit’s role in improving SBOM reliability across the CNCF ecosystem.
Speakers
avatar for Justin Cappos

Justin Cappos

Professor, New York University
I am a professor at NYU who has been working on software supply chain security for more than 20 years. I am a maintainer / creator of the TUF, Uptane, and in-toto projects, which are all under the LF.
avatar for Yuchen Zhang

Yuchen Zhang

Postdoctoral Associate, New York University
Yuchen is currently a postdoctoral researcher with the Secure Systems Laboratory (SSL) at the Tandon School of Engineering, New York University. He obtained his Ph.D. from the Department of Computer Science at Stevens Institute of Technology. Prior to Stevens, he completed his undergraduate... Read More →
Tuesday June 17, 2025 16:30 - 17:00 JST
Level 1 | Pegasus Ballroom B2+C
  Security
  • Content Experience Level Any
  • Presentation Language English
 
  • Filter By Date
  • Filter By Venue
  • Filter By Type
  • Content Experience Level
  • Presentation Language
  • Timezone

Share Modal

Share this link via

Or copy link

Filter sessions
Apply filters to sessions.