<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Tessera</title>
    <link>https://tessera.company/blog/</link>
    <atom:link href="https://tessera.company/blog/rss.xml" rel="self" type="application/rss+xml" />
    <description>How Tessera is built and why: brokered access architecture, benchmarks and the trade-offs behind them.</description>
    <language>en</language>
    <item>
      <title>One Go binary between your engineers and production: how we broker SSH, kubectl, psql and RDP — and what it costs</title>
      <link>https://tessera.company/blog/broker-architecture-and-what-it-costs/</link>
      <guid isPermaLink="true">https://tessera.company/blog/broker-architecture-and-what-it-costs/</guid>
      <description>An honest walk through a broker-model access architecture: what happens on the wire, the ~20% throughput cost measured over loopback, and the three places where short-lived certificates are the better answer.</description>
      <pubDate>Fri, 28 Aug 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>
