Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
IT NachrichtenHow to set up your Sonos speakers using the app(20.09.2026 um 17:30 Uhr)
IT NachrichtenHow to use your phone as a remote for any smart TV(20.09.2026 um 18:00 Uhr)
Hacking & PentestingHacker entwenden Daten von Studierenden der Münchner LMU | BR24(20.09.2026 um 15:01 Uhr)
IT NachrichtenHow to set up your Sonos speakers using the app(20.09.2026 um 17:30 Uhr)
IT NachrichtenHow to use your phone as a remote for any smart TV(20.09.2026 um 18:00 Uhr)
Hacking & PentestingHacker entwenden Daten von Studierenden der Münchner LMU | BR24(20.09.2026 um 15:01 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

Agent sandbox and Pod snapshotting: Supercharging agents on GKE | The Agent Factory Podcast

Reagiere als Erste:r — dein Feedback zählt!

Author: Google Cloud Tech - Bewertung: 5x - Views:79

We spend a lot of time optimizing the "brain" of our AI agents (models, prompts, memory), but we rarely talk about where they live. Choosing the wrong runtime can lead to security nightmares, spiraling costs, or scaling walls.

In this episode of The Agent Factory, hosts Shir Meir Lador and Mofi Rahman are joined by GKE Product Manager Brandon Royal to settle the debate: Serverless vs. Kubernetes for AI agents.
We dive deep into the technical architecture required for production grade agents, specifically focusing on how to let agents execute code safely without compromising your infrastructure.

In this episode, we cover:
1️⃣ Runtime wars: When to choose the simplicity of Serverless (Cloud Run) vs. the control of Kubernetes (GKE).
2️⃣ The Sandbox challenge: What are the risks of running LLM generated code and how to build a "high fence" around it.
3️⃣ Under the hood: How Agent sandbox on Kubernetes uses gVisor to isolate agentic workloads.
Pod snapshotting: The "save state" feature that cuts startup latency from seconds to milliseconds.

Chapters:
00:00 - Introduction
00:18 - Where does an agent live?
01:03 - Welcome to the Agent Factory
01:17 - Introducing our guest, Brandon Royal
01:49 - Agenda for the episode
02:22 - Why choose GKE for your agent runtime?
04:55 - Agents and models on GKE
06:58 - Agent Development Kit (ADK) and GKE
07:23 - [Demo] Deploying an ADK agent on GKE
13:58 - Kubernetes YAML configuration
15:20 - Code execution agent and the sandbox challenge
19:18 - Building fences for code executing agents in Kubernetes
20:25 - [Demo] Agent sandbox
27:41 - Addressing latency with Pod snapshotting
29:39 - [Demo] Pod snapshotting
38:10 - Efficiency benefits of Pod snapshotting
39:29 - Pod snapshotting beyond sandboxes
40:31 - Conclusion

🔗 Resources & links mentioned:
➖ Deploy an ADK agent to Google Kubernetes Engine (GKE) → https://goo.gle/49T2omU
➖ GKE Agent Sandbox Documentation → https://goo.gle/3Mhzxib
➖ GKE sandbox → https://goo.gle/48goi2i
➖ GKE pod snapshots → https://goo.gle/48SWznt
➖ Connect with Shir → https://goo.gle/49SAveB
➖ Connect with Mofi → https://goo.gle/49UiUTK
➖ Connect with Brandon → https://goo.gle/48x3S40

Join the conversation on social media with the hashtag #TheAgentFactory.

Connect with the community at the Google Developer Program forums. → https://goo.gle/4oP9bmb

Watch more Agent Factory → https://www.youtube.com/playlist?list=PLIivdWyY5sqLXR1eSkiM5bE6pFlXC-OSs

🔔 Subscribe to Google Cloud Tech → https://goo.gle/GoogleCloudTech

#ADK #GKE #AgentSandbox

Speaker: Shir Meir Lador, Mofi Rahman, Brandon Royal
Products Mentioned: Google Kubernetes Engine, Agent Development Kit, Gemini

Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Agent sandbox and Pod snapshotting: Supercharging agents on GKE | The Agent Factory Podcast

Thematisch verwandte Begriffe: Agent, sandbox, snapshotting, Supercharging · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-93956 | A flaw has been found in olivier-ls PHP-FTS up to 1.1.2. Affected by thi…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick