kubernetes-event-exporter
This tool allows exporting the often missed Kubernetes events to various outputs so that they can be used for observability or alerting purposes.https://github.com/opsgenie/kubernetes-event-exporter
Buildpacks vs Dockerfiles
https://technology.doximity.com/articles/buildpacks-vs-dockerfiles
Exploring the tradeoffs of building container images at scaleЕсли страница не открывается, то попробуйте через VPN — подойдет любой не СНГ IP адрес.
https://technology.doximity.com/articles/buildpacks-vs-dockerfiles
Putting a VIP in your Kubernetes Clusters
In this post i’ve a bunch of things I want to cover all about Type:LoadBalancer (or in most cases a VIP (Virtual IP address).https://thebsdbox.co.uk/2021/01/01/Putting-a-VIP-in-your-Kubernetes-Clusters
The Missing Guide to AWS API Gateway Access Logs
https://www.alexdebrie.com/posts/api-gateway-access-logs
https://www.alexdebrie.com/posts/api-gateway-access-logs
Naming cheatsheet
Comprehensive language-agnostic guidelines on variables naming.https://github.com/kettanaito/naming-cheatsheet
Getting started with Kubernetes audit logs and Falco
https://sysdig.com/blog/kubernetes-audit-log-falco
https://sysdig.com/blog/kubernetes-audit-log-falco
eBPF-exporter и ошибки памяти станут метрикой
Ошибки железа - популярная тема, когда у вас несколько сотен серверов. Если с дисками всё в целом понятно: они либо вылетают, либо лагают, либо инкрементят счетчики S.M.A.R.T., то с памятью, например, интересней.https://alexzzz.ru/post/ebpf-exporter-mc-event
Extending applications on Kubernetes with multi-container pods
TL;DR: In this article you will learn how you can use the ambassador, adapter, sidecar and init containers to extend yours apps in Kubernetes without changing their code.https://learnk8s.io/sidecar-containers-patterns
Achieving Cloud Native Security and Compliance with Teleport
https://www.infracloud.io/blogs/achieving-cloud-native-security-compliance-teleport
https://www.infracloud.io/blogs/achieving-cloud-native-security-compliance-teleport
Introduction to GitOps on Kubernetes with Flux v2
Today we’re having a look at how to set up a GitOps pipeline for your Kubernetes cluster with Flux v2.https://blog.sldk.de/2021/02/introduction-to-gitops-on-kubernetes-with-flux-v2
We will first go through some core concepts of Flux and then create our first GitOps workflow.
Deep PostgreSQL Thoughts: The Linux Assassin
If you run Linux in production for any significant amount of time, you have likely run into the "Linux Assassin" that is, the OOM (out-of-memory) killer.https://info.crunchydata.com/blog/deep-postgresql-thoughts-the-linux-assassin
Below is an explanation of experiments and observations I've made on how the Linux Assassin works in conjunction with containers and Kubernetes, and methods to keep it away from PostgreSQL clusters in your environment.
Kubernetes Secrets Store CSI Driver
Secrets Store CSI driver for Kubernetes secrets - Integrates secrets stores with Kubernetes via a Container Storage Interface (CSI) volume.https://github.com/kubernetes-sigs/secrets-store-csi-driver
The Secrets Store CSI driver secrets-store.csi.k8s.io allows Kubernetes to mount multiple secrets, keys, and certs stored in enterprise-grade external secrets stores into their pods as a volume. Once the Volume is attached, the data in it is mounted into the container's file system.
go-enry
Programming language detector and toolbox to ignore binary or vendored files. enry, started as a port to Go of the original Linguist Ruby library, that has an improved 2x performance.https://github.com/go-enry/go-enry
Why infrastructure is a game-changer for the mobile gaming industry
Behind the scenes of a mobile game: An infrastructure overviewhttps://medium.com/tech-at-wildlife-studios/infrastructure-mobile-gaming-industry-584eee7e2fca
Site Reliability Engineering — How to prepare for the interview
https://medium.com/tech-at-wildlife-studios/wildlifes-sre-interview-process-and-how-to-prepare-for-it-33ad805880b8
https://medium.com/tech-at-wildlife-studios/wildlifes-sre-interview-process-and-how-to-prepare-for-it-33ad805880b8
My Philosophy on Alerting
based my observations while I was a Site Reliability Engineer at Googlehttps://docs.google.com/document/d/199PqyG3UsyXlwieHaqbGiWVa8eMWi8zzAn0YfcApr8Q/preview
Security Logging in Cloud Environments - AWS
https://www.marcolancini.it/2021/blog-security-logging-cloud-environments-aws
https://www.marcolancini.it/2021/blog-security-logging-cloud-environments-aws
DevOps&SRE Library
SRE Teams #6: Leroy Merlin https://sreteams.substack.com/p/leroy
SRE Teams #7: Dock
Dock is a company from the Conductor group. They provide banking APIs as a service with over half a million dollars of payments processed and 1 million active cards using their backend.https://sreteams.substack.com/p/we-are-back-sre-teams-7-dock