A FAST Kubernetes manifests validator, with support for Custom Resources!
https://github.com/yannh/kubeconform
https://github.com/yannh/kubeconform
GitHub
GitHub - yannh/kubeconform: A FAST Kubernetes manifests validator, with support for Custom Resources!
A FAST Kubernetes manifests validator, with support for Custom Resources! - yannh/kubeconform
👍4
In the evolving landscape of Infrastructure as Code (IaC), security remains paramount. This article delves into a sophisticated technique involving ANSI escape sequences that could be exploited to evade detection within Terraform noscripts. With an emphasis on demonstrating the intricacy of such vulnerabilities and providing actionable insights for mitigation, the discussion navigates through the conceptual underpinnings, practical implications, and strategic defenses against such evasion tactics. Aimed at developers, security professionals, and IaC practitioners, it underscores the necessity of vigilant security practices in the face of evolving exploitation techniques.
https://hackingthe.cloud/terraform/terraform_ansi_escape_evasion/
https://hackingthe.cloud/terraform/terraform_ansi_escape_evasion/
hackingthe.cloud
Terraform ANSI Escape - Hacking The Cloud
Using ANSI Escape Sequences to Hide Malicious Terraform Code
👍5👏1
The article discusses implementing soft data contracts for Terraform stacks, detailing how to exchange structured data between stacks to establish a relationship between upstream (producers) and downstream (consumers) services. It explores using JSON Schema for data validation, ensuring data quality, and creating a mechanism for indirect information exchange. Additionally, the article covers the concept of a soft contract, which involves versioning and managing dependencies through Terraform modules, and provides examples of its application in infrastructure as code practices
https://www.sigterm.de/2024/01/24/data-contract-for-terraform-stacks/
https://www.sigterm.de/2024/01/24/data-contract-for-terraform-stacks/
sigterm.de // Daniel Ciaglia
Implementing (soft) data contracts for Terraform stacks
Once you arrive in your Infrastructure as Code journey at a point where you layered your Terraform stacks and may have individual stacks for each service, you have to exchange data. This post explains a simple setup for exchanging structured data between…
👍5
Crash-Diagnostics (Crashd) is a tool to help investigate, analyze, and troubleshoot unresponsive or crashed Kubernetes clusters.
https://github.com/vmware-tanzu/crash-diagnostics
https://github.com/vmware-tanzu/crash-diagnostics
GitHub
GitHub - vmware-tanzu/crash-diagnostics: Crash-Diagnostics (Crashd) is a tool to help investigate, analyze, and troubleshoot unresponsive…
Crash-Diagnostics (Crashd) is a tool to help investigate, analyze, and troubleshoot unresponsive or crashed Kubernetes clusters. - vmware-tanzu/crash-diagnostics
👍5
Kubebuilder - SDK for building Kubernetes APIs using CRDs
https://github.com/kubernetes-sigs/kubebuilder
https://github.com/kubernetes-sigs/kubebuilder
GitHub
GitHub - kubernetes-sigs/kubebuilder: Kubebuilder - SDK for building Kubernetes APIs using CRDs
Kubebuilder - SDK for building Kubernetes APIs using CRDs - kubernetes-sigs/kubebuilder
👍4
The blog post discusses the transition from using AWS Cloud Development Kit (CDK) to a new version of SST, named Ion, which is not based on CDK. The article outlines the reasons behind the move, the issues with CDK and CloudFormation, and introduces Ion as a new engine for deploying SST applications using Terraform providers and Pulumi. It highlights the practical and design flaws in CDK and CloudFormation, aiming to provide a better developer experience with Ion.
https://sst.dev/blog/moving-away-from-cdk.html
https://sst.dev/blog/moving-away-from-cdk.html
SST
Moving away from CDK
You might’ve heard that we are working on a new version of SST (called Ion), that’s not based on CDK. In this post we’ll talk about why we are moving away from CDK and what’s going to change.
👍3
The blog post delves into DoorDash's journey to optimize Apache Cassandra for better performance and efficiency. It discusses the challenges of tuning Cassandra for optimal use, including managing complex configurations and performance trade-offs. The post shares insights into making Cassandra more performant and cost-effective, offering lessons that can be applied universally
https://doordash.engineering/2024/01/30/cassandra-unleashed-how-we-enhanced-cassandra-fleets-efficiency-and-performance/
https://doordash.engineering/2024/01/30/cassandra-unleashed-how-we-enhanced-cassandra-fleets-efficiency-and-performance/
👍3❤2
A smarter cd command. Supports all major shells.
https://github.com/ajeetdsouza/zoxide
https://github.com/ajeetdsouza/zoxide
GitHub
GitHub - ajeetdsouza/zoxide: A smarter cd command. Supports all major shells.
A smarter cd command. Supports all major shells. Contribute to ajeetdsouza/zoxide development by creating an account on GitHub.
👍4
Interesting statistic from AWS what DevOps blogpost were visited mostly
https://aws.amazon.com/blogs/devops/the-most-visited-aws-devops-blogs-in-2023/
https://aws.amazon.com/blogs/devops/the-most-visited-aws-devops-blogs-in-2023/
Amazon
The most visited AWS DevOps blog posts in 2023 | Amazon Web Services
As we kick off 2024, I wanted to take a moment to highlight the top posts from 2023. Without further ado, here are the top 10 AWS DevOps blog posts of 2023. Unit Testing AWS Lambda with Python and Mock AWS Services – When building serverless event-driven…
👍4
The blog post explores the evolution and impact of DevOps practices on business and technology. It delves into how DevOps has transformed from focusing solely on IT to encompassing entire organizational structures, enhancing security, automation, cloud computing, and more. The post addresses common challenges in DevOps and provides solutions, along with highlighting the top trends for 2024, including cloud-native technology, AI, ML, and more. This insightful piece offers a comprehensive overview of the current state and future prospects of DevOps.
https://www.kovair.com/blog/future-of-devops-and-opportunities/
https://www.kovair.com/blog/future-of-devops-and-opportunities/
Kovair Blog
The Future of DevOps and Incredible Opportunities - Kovair Blog
Get information on - The Future of DevOps and the Incredible Opportunities that Lie Ahead, follow Kovair Blog for the latest information and updates on software development and information technology.
👍6
Support This Channel 💫
Enjoying the content? Show some love with a donation! Every bit helps. Thank you for your support! 🙏
Enjoying the content? Show some love with a donation! Every bit helps. Thank you for your support! 🙏
👍8
DevOps & SRE notes pinned «Support This Channel 💫 Enjoying the content? Show some love with a donation! Every bit helps. Thank you for your support! 🙏»
Blazingly-fast 🚀, rock-solid, local application development ➡️ with Kubernetes.
https://github.com/gefyrahq/gefyra
https://github.com/gefyrahq/gefyra
GitHub
GitHub - gefyrahq/gefyra: Blazingly-fast :rocket:, rock-solid, local application development with Kubernetes.
Blazingly-fast :rocket:, rock-solid, local application development :arrow_right: with Kubernetes. - GitHub - gefyrahq/gefyra: Blazingly-fast :rocket:, rock-solid, local application development with...
👍5
The article explores the evolving landscape of DevOps, emphasizing the integration of generative AI, shifts in Infrastructure as Code (IaC) tools, the rise of DevSecOps, serverless architectures, multi-cloud strategies, and the importance of observability. It highlights how these trends will shape DevOps practices, offering insights into the technological advancements and strategic approaches that professionals should anticipate and embrace in the coming year.
https://securityboulevard.com/2024/01/navigating-the-future-devops-predictions-for-2024/
https://securityboulevard.com/2024/01/navigating-the-future-devops-predictions-for-2024/
Security Boulevard
Navigating the Future: DevOps Predictions for 2024
As technology continues to evolve at an unprecedented pace, the field of DevOps is no exception. DevOps, the cultural and professional movement that aims to improve collaboration between software development and IT operations, is predicted to transform, expand…
👍5
The blog post discusses the inherent complexity and challenges of managing alerts in socio-technical systems. It emphasizes the delicate balance between signal and noise in alerting mechanisms and advocates for an iterative approach to refining alerts. The post highlights the importance of considering the human aspect of alert management, acknowledging that alerts must be actionable and meaningful to avoid fatigue and ensure they contribute positively to system monitoring and response efforts
https://www.honeycomb.io/blog/alerts-are-fundamentally-messy
https://www.honeycomb.io/blog/alerts-are-fundamentally-messy
Honeycomb
Alerts Are Fundamentally Messy
This post by SRE Fred Hebert expands on the messiness of alerting and why Honeycomb favors an iterative approach to setting our alerts.
👍4
Kubernetes Security Training Platform - focusing on security mitigation
https://github.com/controlplaneio/simulator
https://github.com/controlplaneio/simulator
GitHub
GitHub - controlplaneio/simulator: Kubernetes Security Training Platform - focusing on security mitigation
Kubernetes Security Training Platform - focusing on security mitigation - controlplaneio/simulator
👍4
Good public talk about Event-Driven architecture
https://www.youtube.com/watch?v=A_mstzRGfIE
https://www.youtube.com/watch?v=A_mstzRGfIE
👍6❤🔥2