Sysadmin Tools 🇺🇦
3.88K subscribers
692 photos
28 videos
302 files
5.1K links
Sysadmin/DevOps tools, news and other interesting things from modern IT world.
Feed https://t.me/s/sysadmin_tools
Download Telegram
Harness the Power of VictoriaMetrics and Grafana Operators for Metrics Management

https://blog.ogenki.io/post/series/observability/metrics

#k8s #kubernetes #monitoring #observability #grafana #prometheus
Forwarded from LearnKube news
Kube Trace NFS is designed to observe NFS connections in a Kubernetes cluster by collecting telemetry data from a node-level eBPF program utilizing the BCC tool.

More: https://github.com/4rivappa/kube-trace-nfs
How We Built a Self-Healing System to Survive a Terrifying Concurrency Bug At Netflix

https://pushtoprod.substack.com/p/netflix-terrifying-concurrency-bug

#debug #netflix
exo

Run your own AI cluster at home with everyday devices. Forget expensive NVIDIA GPUs, unify your existing devices into one powerful GPU: iPhone, iPad, Android, Mac, Linux, pretty much any device.

https://github.com/exo-explore/exo

#ai #ios #ipados #windows #linux #macos #nvidia
KubeCon NA is approaching, and social media is already packed with related posts of the Cloud Native crowd travelling there, meeting each other, etc. Cloud Native Rejekts is the official pre-party featuring lots of great talks that didn’t make it to KubeCon itself. Moreover, these talks are streamed online and available for offline watching afterwards.

Here’s the list of yesterday’s (Nov 10) talks with the links to relevant video moments:

- “Welcome to Cloud Native Rejekts NA 2024!” by Benazir Khan
- “Malicious Compliance Automated: When You Have 4000 Vulnerabilities and only 24 Hours Before Release” by Duffie Cooley, Kyle Quest
- “Ten years of Kubernetes: Building the future” by Lachlan Evenson
- “Images Bite Back -- Dealing with Day 2 Build Issues” by Adrian Mouat
- “A Day in the Life of Kubernetes Release with Tools, Challenges, and Operations” by Meha Bhalodiya
- “Building an Open Source Observability Stack from Raw Telemetry” by Joshua Lee
- “Debug Like a Pro: Ephemeral Containers and Wolfi Linux in Action” by Chad Crowell, Natalie Lunbeck
- “Integrating eBPF superpowers into your observability tooling” by Mauricio Vasquez Bernal, Chris Kuehl
- “Meet the New Kid in the Sandbox - Integrating Visualization with Prometheus” by Eric D. Schabell
- “From Fragile to Resilient: Using Admission Policies to Strengthen Kubernetes” by Marcus Noble
- “Cloud Native Nix!” by Leigh Capili
- “Virtual Machines, Containers, and WebAssembly Face-off” by Danilo (Dan) Chiarlone, Jiaxiao (Joe) Zhou
- “Platform Engineering Loves Security: Shift Down to Your Platform, not Left to Your Developers!” by Mathieu Benoit, Maxime Coquerel

+ You can find 7 more yesterday' talks from another room here.

The schedule for today (Nov 11) is available here. These talks will be streamed via the same YouTube channel. Enjoy!

#video #events
🖼️ docker-bench-security

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production. 


https://github.com/docker/docker-bench-security

#docker #security
Please open Telegram to view this post
VIEW IN TELEGRAM
WeSQL

WeSQL is a cloud-native architected MySQL that uses S3 (and S3-compatible systems) for storage, providing cross-AZ disaster recovery with zero data loss, at nearly the cost of a single replica. 


https://github.com/wesql/wesql

#mysql #s3 #sql
WUD

WUD (aka What's up Docker?) gets you notified when a new version of your Docker Container is available. 


https://github.com/getwud/wud
https://getwud.github.io/wud/#/introduction/

#docker #semver #security
MicroCloud 2.1.0 LTS is now available

MicroClouds are optimized for repeatable and reliable remote deployments. A single command initiates the orchestration and clustering of various components with minimal user involvement, resulting in a fully functional cloud within minutes.


https://canonical.com/blog/canonical-releases-microcloud-lts

https://github.com/canonical/microcloud

#snap #ubuntu #ceph #lxc #linux
DarkFlare

DarkFlare Firewall Piercing (TCP over CDN) 

It has two parts: a client-side proxy (darkflare-client) that encodes TCP data into HTTPS requests and sends it to a Cloudflare-protected domain, and a server-side proxy (darkflare-server) that decodes the requests and forwards the data to a local service (like SSH on port 22). It’s protocol-agnostic, secure, and uses Cloudflare's encrypted infrastructure, making it stealthy and scalable for accessing internal resources or bypassing network restrictions.


https://github.com/doxx/darkflare

#security #vpn #firewall #cloudflare #proxy
Kondense is an automated resource sizing tool

https://github.com/unagex/kondense

#kubernetes #k8s
Awesome Cloud Security Labs

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

https://github.com/iknowjason/Awesome-CloudSec-Labs

#security #cloud #aws #azure #gcp #k8s #kubernetes #terraform