DevOps&SRE Library
17.8K subscribers
461 photos
4 videos
2 files
4.76K links
Библиотека статей по теме DevOps и SRE.

Реклама: @ostinostin
Контент: @mxssl

РКН: https://knd.gov.ru/license?id=67704b536aa9672b963777b3&registryType=bloggersPermission
Download Telegram
Latency SLO

How do you set Latency based alerts? The most common measurement is a percentile-based expression like: 95% of the requests must complete within 350ms. But what do you alert on: 1. only 90% are below 350ms 2. 95% take 400ms A quick read here

https://blog.last9.io/latency-slo
octopilot

Octopilot is a CLI tool designed to help you automate your Gitops workflow, by automatically creating and merging GitHub Pull Requests to update specific content in Git repositories.

https://github.com/dailymotion-oss/octopilot
authorino

Cloud-native AuthN/AuthZ enforcer for Zero Trust API protection.

https://github.com/kuadrant/authorino
This media is not supported in your browser
VIEW IN TELEGRAM
KUBERNETES INSTANCE CALCULATOR

TL;DR: You can use the calculator to explore the best instance types for your cluster based on your workloads.

https://learnk8s.io/kubernetes-instance-calculator
How to use PromQL joins for more effective queries of Prometheus metrics at scale

https://grafana.com/blog/2021/08/04/how-to-use-promql-joins-for-more-effective-queries-of-prometheus-metrics-at-scale
DevOps&SRE Library
SRE Teams #7: Dock Dock is a company from the Conductor group. They provide banking APIs as a service with over half a million dollars of payments processed and 1 million active cards using their backend. https://sreteams.substack.com/p/we-are-back-sre-teams…
SRE Teams #8: Loggi

Loggi is a logistics company with the mission of connecting Brazil. They recently raised USD 212 million to connect 100% of the Brazilian population; they ended last year reaching 54% of people in Brazil, up from 43% in the year before. They grew 390% in 2020.

https://sreteams.substack.com/p/loggi
kubestriker

Kubestriker is a platform-agnostic tool designed to tackle Kuberenetes cluster security issues due to misconfigurations and will help strengthen the overall IT infrastructure of any organisation.

https://github.com/vchinnipilli/kubestriker
HashiCorp State of Cloud Strategy Survey

https://www.hashicorp.com/state-of-the-cloud
terraform-validator

Terraform Validator can run pre-deployment checks on Terraform plans for policy compliance.

https://github.com/GoogleCloudPlatform/terraform-validator
applicationset

The ApplicationSet controller is a Kubernetes controller that adds support for a new custom ApplicationSet CustomResourceDefinition (CRD). This controller/CRD enables both automation and greater flexibility when managing Argo CD Applications across a large number of clusters and within monorepos, plus it makes self-service usage possible on multitenant Kubernetes clusters.

https://github.com/argoproj-labs/applicationset
KUR8

A visual overview of Kubernetes architecture and Prometheus metrics.

https://github.com/oslabs-beta/KUR8
Focusing on What Matters: Using SLOs to Pursue User Happiness

Proper reliability is the greatest operational requirement for any service. If the service doesn’t work as intended, no user (or engineer) will be happy. This is where SLOs come in.

https://www.betterment.com/resources/service-level-objectives-slo
chezmoi

Manage your dotfiles across multiple diverse machines, securely.

https://github.com/twpayne/chezmoi
k8s-vault-webhook

k8s-vault-webhook is a Kubernetes admission webhook which listen for the events related to Kubernetes resources for injecting secret directly from secret manager to pod, secret, and configmap. The motive of creating this project is to provide a dynamic secret injection to containers/pods running inside Kubernetes from different secret managers for enhanced security.

https://github.com/OT-CONTAINER-KIT/k8s-vault-webhook
kubescape

Kubescape is the first tool for testing if Kubernetes is deployed securely as defined in Kubernetes Hardening Guidance by NSA and CISA

https://github.com/armosec/kubescape