Chechov анализатор кода для IaC
Checkov is a static code analysis tool for scanning infrastructure as code (IaC) files for misconfigurations that may lead to security or compliance problems.
Checkov scans these IaC file types:
• Terraform (for AWS, GCP, Azure and OCI)
• CloudFormation (including AWS SAM)
• Azure Resource Manager (ARM)
• Serverless framework
• Helm charts
• Kubernetes
• Docker
https://www.checkov.io/
#checkov #iac #terraform #k8s #docker #helm
Checkov is a static code analysis tool for scanning infrastructure as code (IaC) files for misconfigurations that may lead to security or compliance problems.
Checkov scans these IaC file types:
• Terraform (for AWS, GCP, Azure and OCI)
• CloudFormation (including AWS SAM)
• Azure Resource Manager (ARM)
• Serverless framework
• Helm charts
• Kubernetes
• Docker
https://www.checkov.io/
#checkov #iac #terraform #k8s #docker #helm
www.checkov.io
Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.
How to Improve the Security of Your Applications with Kubernetes Security Scanners
Обзор нескольких сканеров безопасности для вашего кубера.
https://blog.cloudsecque.com/how-to-improve-the-security-of-your-applications-with-kubernetes-security-scanners-cda97fd2f574
#k8s #security
Обзор нескольких сканеров безопасности для вашего кубера.
https://blog.cloudsecque.com/how-to-improve-the-security-of-your-applications-with-kubernetes-security-scanners-cda97fd2f574
#k8s #security
Medium
How to Improve the Security of Your Applications with Kubernetes Security Scanners
As more and more businesses move to the cloud, the need for solid application security has never been greater. And while Kubernetes…
Neco is a project to build and maintain highly automated on-premise data centers using Kubernetes at the center of its system.
https://github.com/cybozu-go/neco
#k8s #neco
https://github.com/cybozu-go/neco
#k8s #neco
Kubernetes
Production-Grade Container Orchestration
Kubernetes, also known as K8s, is an open source system for automating deployment, scaling, and management of containerized applications.
It groups containers that make up an application into logical units for easy management and discovery. Kubernetes builds…
It groups containers that make up an application into logical units for easy management and discovery. Kubernetes builds…
Getting Started With Kubernetes and Container Orchestration
Классная презентация про кубер.
https://qconuk2019.container.training/
#k8s
Классная презентация про кубер.
https://qconuk2019.container.training/
#k8s
https://marcusnoble.co.uk/2022-07-04-managing-kubernetes-without-loosing-your-cool/
#kuber #k8s #tools #tips
#kuber #k8s #tools #tips
Marcus Noble
Managing Kubernetes without losing your cool
This post is based on a webinar i've previously given where I go through some of my favourite tips for working with Kubernetes clusters all day long. The goal of all of these techniques is to make my life easier and (hopefully) less error prone. I start off…
Automated Troubleshooting of Kubernetes (K8s) Pods Issues
https://able8.medium.com/automated-troubleshooting-of-kubernetes-pods-issues-c6463bed2f29
#kuber #k8s #tshoot
https://able8.medium.com/automated-troubleshooting-of-kubernetes-pods-issues-c6463bed2f29
#kuber #k8s #tshoot
Medium
Automated Troubleshooting of Kubernetes (K8s) Pods Issues
Automatically Collect K8s Pod Restart Reasons, Logs, and Events
Choosing an Optimal Kubernetes Worker Node Size
https://www.argonaut.dev/blog/optimal-k8s-worker-node-size
#kuber #k8s #sizing #planing
https://www.argonaut.dev/blog/optimal-k8s-worker-node-size
#kuber #k8s #sizing #planing
Argonaut
Choosing an Optimal Kubernetes Worker Node Size
Specific recommendations for your startup
Практическое руководство по реализации Observability в DevOps
В ходе этой статьи мы развернём следующий стек инструментов Observability (наблюдаемости) Grafana:
• Loki (логи);
• Promtail (агент логов);
• Tempo (трассировка);
• Prometheus (метрики);
• Cortex и Grafana Mimir (долгосрочное хранилище для данных Prometheus);
• Alertmanager (обработка оповещений Prometheus);
• Grafana (визуализация).
https://habr.com/ru/company/ruvds/blog/701034/
#k8s #loki #prometheus #promtail #grafana #alertmanager
В ходе этой статьи мы развернём следующий стек инструментов Observability (наблюдаемости) Grafana:
• Loki (логи);
• Promtail (агент логов);
• Tempo (трассировка);
• Prometheus (метрики);
• Cortex и Grafana Mimir (долгосрочное хранилище для данных Prometheus);
• Alertmanager (обработка оповещений Prometheus);
• Grafana (визуализация).
https://habr.com/ru/company/ruvds/blog/701034/
#k8s #loki #prometheus #promtail #grafana #alertmanager
What are Kubernetes Deployments? Tutorial & Guide
In this post, you’ll learn about Kubernetes Deployments, including everything you need to know to get started with deployments, and how to configure a sample deployment of your own.
https://www.containiq.com/post/kubernetes-deployment
#k8s #kuber #напочитать
In this post, you’ll learn about Kubernetes Deployments, including everything you need to know to get started with deployments, and how to configure a sample deployment of your own.
https://www.containiq.com/post/kubernetes-deployment
#k8s #kuber #напочитать
www.airplane.dev
A Guide to Kubernetes Deployments
In this article, we'll cover the use cases and benefits of Kubernetes deployment, as well as the different strategies for executing deployments.
Kruise
OpenKruise (official site: https://openkruise.io) is a CNCF(Cloud Native Computing Foundation) incubating project. It consists of several controllers which extend and complement the Kubernetes core controllers for workload and application management.
https://github.com/openkruise/kruise
#kuber #k8s
OpenKruise (official site: https://openkruise.io) is a CNCF(Cloud Native Computing Foundation) incubating project. It consists of several controllers which extend and complement the Kubernetes core controllers for workload and application management.
https://github.com/openkruise/kruise
#kuber #k8s
CNCF
Cloud Native Computing Foundation
CNCF is the vendor-neutral hub of cloud native computing, dedicated to making cloud native ubiquitous.
Monitoring Kubernetes tutorial: using Grafana and Prometheus
Еще одно руководство о том, как использовать пром и графану для мониторинга куба.
https://www.metricfire.com/blog/monitoring-kubernetes-tutorial-using-grafana-and-prometheus
#monitoring #kuber #k8s #prometheus #grafana
Еще одно руководство о том, как использовать пром и графану для мониторинга куба.
https://www.metricfire.com/blog/monitoring-kubernetes-tutorial-using-grafana-and-prometheus
#monitoring #kuber #k8s #prometheus #grafana
Metricfire
Monitoring Kubernetes tutorial: Using Grafana and Prometheus
Learn to monitor Kubernetes from deploying Prometheus and Grafana with Helm, and then building dashboards for key Kubernetes metrics.
Grafana Loki: performance optimization with Recording Rules, caching, and parallel queries
В статье рассказывается как автор смог оптимизировать скорость выполнение запроса с 5.35 секунд до 98 милисекунд.
https://itnext.io/grafana-loki-performance-optimization-with-recording-rules-caching-and-parallel-queries-28b6ebba40c4
#loki #performance #monitoring #kuber #k8s #memcache #bolddb #prometheus #напочитать
В статье рассказывается как автор смог оптимизировать скорость выполнение запроса с 5.35 секунд до 98 милисекунд.
https://itnext.io/grafana-loki-performance-optimization-with-recording-rules-caching-and-parallel-queries-28b6ebba40c4
#loki #performance #monitoring #kuber #k8s #memcache #bolddb #prometheus #напочитать
Medium
Grafana Loki: performance optimization with Recording Rules, caching, and parallel queries
Improve the performance and CPU/Memory resources usage by Grafana Loki components with Recording Rules and caching
Getting Started with Kubernetes Networking
Про сеть в кубе
https://medium.com/patilswapnilv/getting-started-with-kubernetes-networking-7e10623fc78f
#kuber #network #k8s #напочитать
Про сеть в кубе
https://medium.com/patilswapnilv/getting-started-with-kubernetes-networking-7e10623fc78f
#kuber #network #k8s #напочитать
Medium
Getting Started with Kubernetes Networking
In this article, we will examine the idea of Kubernetes networking with the help of 10 detailed diagrams and additional context for both…
LVM+QCOW2, или Попытка создать идеальный CSI-драйвер для shared SAN в Kubernetes
https://habr.com/ru/companies/flant/articles/757864/
#k8s #kuber #cni #lvm #qcow2 #libvirt #kubevirt #vdpa #san
https://habr.com/ru/companies/flant/articles/757864/
#k8s #kuber #cni #lvm #qcow2 #libvirt #kubevirt #vdpa #san
Хабр
LVM+QCOW2, или Попытка создать идеальный CSI-драйвер для shared SAN в Kubernetes
Несколько месяцев назад у нас появилась необходимость разработать CSI-драйвер для Kubernetes, который в первую очередь использовался бы для хранения дисков виртуальных машин в Deckhouse Virtualization...
K8sGPT + LocalAI: Unlock Kubernetes superpowers for free!
Прикручиваем ИИ к «управлению» кубом.
https://itnext.io/k8sgpt-localai-unlock-kubernetes-superpowers-for-free-584790de9b65
#kuber #k8s #k8sGPT #localai #sre
Прикручиваем ИИ к «управлению» кубом.
https://itnext.io/k8sgpt-localai-unlock-kubernetes-superpowers-for-free-584790de9b65
#kuber #k8s #k8sGPT #localai #sre
Medium
K8sGPT + LocalAI: Unlock Kubernetes superpowers for free!
As we all know, LLMs are trending like crazy and the hype is not unjustified. Tons of cool projects leveraging LLM-based text generation…
Top 10 Must-Have Tools for Kubernetes Engineers
https://semaphoreci.medium.com/top-10-must-have-tools-for-kubernetes-engineers-71b32fd21b95
#k8s #kuber #tools #kubectl #prometheus #grafana #vault #kubeflow #k9s
https://semaphoreci.medium.com/top-10-must-have-tools-for-kubernetes-engineers-71b32fd21b95
#k8s #kuber #tools #kubectl #prometheus #grafana #vault #kubeflow #k9s
Medium
Top 10 Must-Have Tools for Kubernetes Engineers
Kubernetes is an open-source platform for automating tasks, deployment, scaling, and management of containerized applications. It offers a…
https://www.redhat.com/en/blog/global-load-balancer-approaches
#openshift #k8s #kuber #network #loadbalancing #anycast #bgp #gslb #dns
#openshift #k8s #kuber #network #loadbalancing #anycast #bgp #gslb #dns
Redhat
Global Load Balancer Approaches
When working with Kubernetes or OpenShift in a multicluster (possibly hybrid cloud) deployment, one of the considerations that comes up is how to direct traffic to the applications deployed across these clusters. To solve this problem, we need a global load…