Latency SLO
How do you set Latency based alerts? The most common measurement is a percentile-based expression like: 95% of the requests must complete within 350ms. But what do you alert on: 1. only 90% are below 350ms 2. 95% take 400ms A quick read herehttps://blog.last9.io/latency-slo
octopilot
Octopilot is a CLI tool designed to help you automate your Gitops workflow, by automatically creating and merging GitHub Pull Requests to update specific content in Git repositories.https://github.com/dailymotion-oss/octopilot
authorino
Cloud-native AuthN/AuthZ enforcer for Zero Trust API protection.https://github.com/kuadrant/authorino
Redis Server— Debuging Performance
https://medium.com/octopol-engineering/redis-server-debuging-performance-b1ab0594733b
https://medium.com/octopol-engineering/redis-server-debuging-performance-b1ab0594733b
This media is not supported in your browser
VIEW IN TELEGRAM
KUBERNETES INSTANCE CALCULATOR
TL;DR: You can use the calculator to explore the best instance types for your cluster based on your workloads.https://learnk8s.io/kubernetes-instance-calculator
How to use PromQL joins for more effective queries of Prometheus metrics at scale
https://grafana.com/blog/2021/08/04/how-to-use-promql-joins-for-more-effective-queries-of-prometheus-metrics-at-scale
https://grafana.com/blog/2021/08/04/how-to-use-promql-joins-for-more-effective-queries-of-prometheus-metrics-at-scale
DevOps&SRE Library
SRE Teams #7: Dock Dock is a company from the Conductor group. They provide banking APIs as a service with over half a million dollars of payments processed and 1 million active cards using their backend. https://sreteams.substack.com/p/we-are-back-sre-teams…
SRE Teams #8: Loggi
Loggi is a logistics company with the mission of connecting Brazil. They recently raised USD 212 million to connect 100% of the Brazilian population; they ended last year reaching 54% of people in Brazil, up from 43% in the year before. They grew 390% in 2020.https://sreteams.substack.com/p/loggi
kubestriker
Kubestriker is a platform-agnostic tool designed to tackle Kuberenetes cluster security issues due to misconfigurations and will help strengthen the overall IT infrastructure of any organisation.https://github.com/vchinnipilli/kubestriker
terraform-validator
Terraform Validator can run pre-deployment checks on Terraform plans for policy compliance.https://github.com/GoogleCloudPlatform/terraform-validator
applicationset
The ApplicationSet controller is a Kubernetes controller that adds support for a new custom ApplicationSet CustomResourceDefinition (CRD). This controller/CRD enables both automation and greater flexibility when managing Argo CD Applications across a large number of clusters and within monorepos, plus it makes self-service usage possible on multitenant Kubernetes clusters.https://github.com/argoproj-labs/applicationset
How to audit and secure an AWS account
https://acloudguru.com/blog/engineering/how-to-audit-and-secure-an-aws-account
https://acloudguru.com/blog/engineering/how-to-audit-and-secure-an-aws-account
KUR8
A visual overview of Kubernetes architecture and Prometheus metrics.https://github.com/oslabs-beta/KUR8
Focusing on What Matters: Using SLOs to Pursue User Happiness
Proper reliability is the greatest operational requirement for any service. If the service doesn’t work as intended, no user (or engineer) will be happy. This is where SLOs come in.https://www.betterment.com/resources/service-level-objectives-slo
chezmoi
Manage your dotfiles across multiple diverse machines, securely.https://github.com/twpayne/chezmoi
Prometheus Blackbox: What? Why? How?
https://medium.com/codex/prometheus-blackbox-what-why-how-28290dbb22ce
https://medium.com/codex/prometheus-blackbox-what-why-how-28290dbb22ce
k8s-vault-webhook
k8s-vault-webhook is a Kubernetes admission webhook which listen for the events related to Kubernetes resources for injecting secret directly from secret manager to pod, secret, and configmap. The motive of creating this project is to provide a dynamic secret injection to containers/pods running inside Kubernetes from different secret managers for enhanced security.https://github.com/OT-CONTAINER-KIT/k8s-vault-webhook
Unpacking Observability: The Observability Stack
https://adri-v.medium.com/unpacking-observability-the-observability-stack-93d4733e2a72
https://adri-v.medium.com/unpacking-observability-the-observability-stack-93d4733e2a72
kubescape
Kubescape is the first tool for testing if Kubernetes is deployed securely as defined in Kubernetes Hardening Guidance by NSA and CISAhttps://github.com/armosec/kubescape