frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Docker Swarm vs. Kubernetes in 2026

https://thedecipherist.com/articles/docker_swarm_vs_kubernetes/
24•RedShift1•1h ago

Comments

Taikonerd•1h ago
> If you need granular control over every tiny aspect of your container orchestration — network policies, pod scheduling, resource quotas, multi-tenant isolation, custom admission controllers, autoscaling on custom metrics — Kubernetes gives you knobs for all of it.

> The problem is that 99% of teams don't need any of those knobs.

I keep hoping for a Docker Swarm revival. It's the right size for small-to-medium-size deployments with normal requirements.

nitinreddy88•1h ago
Every enterprise team (at least who are in B2B business) needs this. The number of security clearances (zero trust boundary), security compliance is must. May be in B2C space where you might not need that depending upon how secure you wanna be based on what data you hold
NewJazz•1h ago
Yeah I was trying to give the post a serious consider, but the author just flatly dismissed network policies as not needed, suggesting that we just make new overlay networks for every set of containers that need to communicate. This post really doesn't resonate with me, even though I am on a small team using k8s in a small company.
SOLAR_FIELDS•44m ago
ECS Fargate is basically this on AWS. It’s just not cloud agnostic. But Swarm itself while being cloud agnostic is a proprietary product as well, so you still get the lock in, just at a different layer
himata4113•1h ago
Kubernetes solves real problems for the 1% who need it. The other 99% are paying a massive complexity tax for capabilities they never use, while 87% of their provisioned CPU sits idle.

is where the author is just wrong:

- abstracts away ssh - makes it pretty unnecessary

- rbac multi tenancy

- better automations

- orchestating more than one cluster

- better infra as code

- provisions are as good as you make them, if you don't want them only use limits.

- large mind share, bitnami (was) great

I use k3s for my home network because it's simple and easy, thinking that k8s is overengineered just plain wrong - it's just different especially if you compare different versions of k8s designed for different things where for ex: k3s bundles csi, cni, ctl, ingress for you.

I actually struggle with compose ('orchestration' alternative) significantly more since it usually has complicated workarounds to missing features.

I have been running 5 k8s-flavored clusters for more than half a decade between 1 to 40 nodes.

NewJazz•1h ago
The author claimed cert-manager as inherent k8s overhead (its not) but then didn't mention certificate management with docker swarm at all. They lost me there.
SOLAR_FIELDS•46m ago
This is the thing about kubernetes that these short sighted takes always seem to miss. Kubernetes is complicated because deployment is complicated. For every little knob in k8s there is a pretty good standard path. Need certs? Cert manager. Autoscaling? Cluster autoscaler or KEDA. Load balancing? Handled. All wheels you will need to reinvent yourself otherwise.
mystifyingpoi•42m ago
I agree. Honestly, this overhead doesn't exist in practice. I've never even checked what's inside cert-manager namespace, it gets deployed for every new cluster, it works, someone automated this, now who cares.
k_roy•39m ago
No kidding. Using cert-manager with my DNS on cloudflare or GKE is about the easiest and most mindless and zero-friction LE implementation I’ve ever used.
k_roy•41m ago
The author mostly lost me when he started doing comparative line counts between docker swarm and kubernetes.

And the docker swarm example didn’t even accomplish the same thing.

verdverm•1h ago
https://k3s.io/ is my new goto for this

Docker Swarm doesn't have the mindshare for effective hiring

autotune•1h ago
Not a fan of their curl -sfL https://get.k3s.io | sh - installation method. Kind, on the other hand, has multiple installation methods, including via wget for their binary: https://kind.sigs.k8s.io/docs/user/quick-start/#installing-f....
mystifyingpoi•52m ago
Docs actually cover your need. There is a section that describes manual install.

> If you choose to not use the install script, you can run K3s simply by downloading the binary from our GitHub release page, placing it on your path, and executing it. https://docs.k3s.io/installation/configuration#configuration...

arccy•33m ago
if you read their docs, you have other options too, including airgapped installs https://docs.k3s.io/installation/airgap?airgap-load-images=M...
dwroberts•1h ago
Can you control the docker swarm API from within a container that is running inside of it?

I think one of the killer features of k8s is how simple it is to write clients that manipulate the cluster itself, even when they’re running from inside of it. Give them the right role etc and you’re done. You don’t even have to write something as complete as an actual controller/operator - but that’s also an option too

itintheory•1h ago
You can. I think there's a couple approaches - bind mount the docker socket, or expose it on localhost, and use host networking for the consuming container, or there exist various proxy projects for the socket. There may be other ways, curious if anyone else knows more.
NewJazz•1h ago
That's not even close to the same as a well thought out rbac system, sorry.
mystifyingpoi•40m ago
> bind mount the docker socket

Bind-mounting /var/run/docker.sock gives 100% root access to anyone that can write it. It's a complete non-starter for any serious deployment, and we should not even consider it at any time.

raffraffraff•1h ago
K3s + FluxCD. There's something nice about using git to add a helm repo, a helm release with a few values, then 'git push'. Shortly afterwards there's a new DNS record, TLS cert and I can hit https://mynewservice.example.com
frizlab•32m ago
Flux is the best thing that ever happened to ops. I set it up a few years back in my previous company, it was a revelation.
johnfn•1h ago
This article is very clearly AI generated. I’d rather read the prompts next time, thanks.
mzi•1h ago
Was betamax superior to VHS? https://www.youtube.com/watch?v=_oJs8-I9WtA
k_roy•1h ago
The author here repeatedly claims that teams would function identically on Swarm and are wasting resources using Kubernetes.

You don’t even need to be a mid-sized team to need stuff like RBAC, service mesh, multi-cluster networking, etc.

Claiming that kubernetes only “won” because of economic pressure is only true in the most basic of sense, and claiming it as a resume padder is flat out insulting to all its actual technical merits.

The multi-tenant nature and innate capabilities is part economics of it, but operators, extensibility, and platform portability across different environments are actual technical merits.

Claiming that autoscaling is optional and not required for most production environments is at best myopic.

It also greatly undersells the operational complexity that autoscaling actually solves, versus just the reactive script based solely on CPU. Metrics pipelines, cluster-level resource constraints, and pod disruption budgets.

As far as the repeated claim that it just “works”, great. Not working is more of a function of the application not the platform.

I dunno, this whole article frames kubernetes as a massive overhead and monolithic beast rather than the programmable infrastructure that it is.

It also tries to minimize many real world needs like multi-team isolation, extensibility, and ecosystem integrations

mystifyingpoi•47m ago
> I dunno, this whole article frames kubernetes as a massive overhead

Author describes his context being a setup with two $83/year VPS instances - a scale so incredibly minuscule compared to typical deployments, that any of his arguments against one of the core cloud technologies fall flat.

Of course he doesn't need Kubernetes. It's fine.

14-year-old Miles Wu folded origami pattern that holds 10k times its own weight

https://www.smithsonianmag.com/innovation/this-14-year-old-is-using-origami-to-design-emergency-s...
121•bookofjoe•2h ago•10 comments

Suicide Linux (2009)

https://qntm.org/suicide
16•icwtyjj•34m ago•9 comments

Testing Postgres race conditions with synchronization barriers

https://www.lirbank.com/harnessing-postgres-race-conditions
11•lirbank•45m ago•0 comments

What your Bluetooth devices reveal

https://blog.dmcc.io/journal/2026-bluetooth-privacy-bluehood/
208•ssgodderidge•6h ago•77 comments

PCB Rework and Repair Guide [pdf]

https://www.intertronics.co.uk/wp-content/uploads/2017/05/PCB-Rework-and-Repair-Guide.pdf
35•varjag•2d ago•2 comments

Turing Labs (YC W20) Is Hiring – GTM Sales Hacker

1•turinglabs•9m ago

Visual Introduction to PyTorch

https://0byte.io/articles/pytorch_introduction.html
16•0bytematt•3d ago•0 comments

Ghidra by NSA

https://github.com/NationalSecurityAgency/ghidra
259•handfuloflight•2d ago•137 comments

Show HN: Jemini – Gemini for the Epstein Files

https://jmail.world/jemini
107•dvrp•15h ago•26 comments

WebMCP Proposal

https://webmachinelearning.github.io/webmcp/
100•Alifatisk•4h ago•50 comments

Qwen3.5: Towards Native Multimodal Agents

https://qwen.ai/blog?id=qwen3.5
329•danielhanchen•11h ago•152 comments

Use protocols, not services

https://notnotp.com/notes/use-protocols-not-services/
204•enz•2h ago•50 comments

How to take a photo with scotch tape (lensless imaging) [video]

https://www.youtube.com/watch?v=97f0nfU5Px0
66•surprisetalk•4h ago•3 comments

Show HN: 2D Coulomb Gas Simulator

https://simonhalvdansson.github.io/2D-Coulomb-Gas-Tools/index_gpu.html
15•swesnow•1h ago•2 comments

State of Show HN: 2025

https://blog.sturdystatistics.com/posts/show_hn/
9•kianN•1h ago•2 comments

The Long Tail of LLM-Assisted Decompilation

https://blog.chrislewis.au/the-long-tail-of-llm-assisted-decompilation/
6•knackers•2h ago•0 comments

Fff.nvim – Typo-resistant code search

https://github.com/dmtrKovalenko/fff.nvim
8•neogoose•1h ago•1 comments

Privilege is bad grammar

https://tadaima.bearblog.dev/privilege-is-bad-grammar/
96•surprisetalk•3h ago•86 comments

History of AT&T Long Lines

https://telephoneworld.org/long-distance-companies/att-long-distance-network/history-of-att-long-...
45•p_ing•4h ago•20 comments

"Token anxiety", a slot machine by any other name

https://jkap.io/token-anxiety-or-a-slot-machine-by-any-other-name/
60•presbyterian•2h ago•38 comments

I want to wash my car. The car wash is 50 meters away. Should I walk or drive?

https://mastodon.world/@knowmadd/116072773118828295
1316•novemp•14h ago•808 comments

Show HN: Simple org-mode web adapter

https://github.com/SpaceTurth/Org-Web-Adapter
46•turth•4h ago•3 comments

Neurons outside the brain

https://essays.debugyourpain.com/p/you-are-not-just-your-brain
7•yichab0d•2h ago•2 comments

Looks: A Halide Mark III Preview

https://www.lux.camera/mark-iii-looks/
61•patrikcsak•2d ago•14 comments

Ministry of Justice orders deletion of the UK's largest court reporting database

https://www.legalcheek.com/2026/02/ministry-of-justice-orders-deletion-of-the-uks-largest-court-r...
451•harel•7h ago•304 comments

Running My Own XMPP Server

https://blog.dmcc.io/journal/xmpp-turn-stun-coturn-prosody/
185•speckx•7h ago•115 comments

UK Discord users were part of a Peter Thiel-linked data collection experiment

https://www.rockpapershotgun.com/good-news-uk-discord-users-were-part-of-a-peter-thiel-linked-dat...
278•righthand•6h ago•69 comments

Robert Duvall has died

https://www.nytimes.com/2026/02/16/movies/robert-duvall-dead.html?unlocked_article_code=1.MlA.5LI...
95•glimshe•2h ago•53 comments

planckforth: Bootstrapping a Forth interpreter from hand-written tiny ELF binary

https://github.com/nineties/planckforth
54•tosh•9h ago•9 comments

The Sideprocalypse

https://johan.hal.se/wrote/2026/02/03/the-sideprocalypse/
140•headalgorithm•6h ago•113 comments