snabelen.no er en av mange uavhengige Mastodon-servere du kan bruke for å delta i det desentraliserte sosiale nettet.
Ein norsk heimstad for den desentraliserte mikroblogge-plattformen.

Administrert av:

Serverstatistikk:

363
aktive brukere

#devops

95 innlegg86 deltakere3 innlegg i dag
Ada :v_trans: :v_pan:​<p>Hey fedi-admins, what's your recommended GUI option for k8s administration? </p><p>Specifically looking for something with a low barrier to entry, as it's intended for the devs in my team who have minimal ops/infra experience.</p><p>We've been looking at 'Portainer' as the combination of easy management, stack deploys and RBAC quite appealing, but the way they're aggressively pushing the paid version... not so much.</p><p><a href="https://tech.lgbt/tags/tech" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>tech</span></a> <a href="https://tech.lgbt/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://tech.lgbt/tags/containers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>containers</span></a> <a href="https://tech.lgbt/tags/docker" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>docker</span></a> <a href="https://tech.lgbt/tags/k8s" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>k8s</span></a> <a href="https://tech.lgbt/tags/kubernetes" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>kubernetes</span></a> <a href="https://tech.lgbt/tags/development" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>development</span></a></p>
Brian Jackson<p>I just issued my first TLS certificate directly in Kubernetes against a Microsoft Active Directory Certificate Server after Terraforming the snot out of some Helm charts and a ClusterIssuer manifest with full Gitlab CI deployment. <br>I feel like I need an Experience section on my resume for just that one task. </p><p><a href="https://graphics.social/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://graphics.social/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://graphics.social/tags/automation" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>automation</span></a> <a href="https://graphics.social/tags/kubernetes" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>kubernetes</span></a></p>
PKPs Powerfromspace1<p>@medium.com </p><p>Is <a href="https://mstdn.social/tags/EC2" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>EC2</span></a> Dying? AWS Quietly Admitted Something Big</p><p>Sandesh I <a href="https://mstdn.social/tags/DevOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevOps</span></a> | <a href="https://mstdn.social/tags/AWS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AWS</span></a> | K8</p><p><a href="https://aws.plainenglish.io/rip-ec2-aws-finally-said-the-quiet-part-out-loud-d9b06deb1d76" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">aws.plainenglish.io/rip-ec2-aw</span><span class="invisible">s-finally-said-the-quiet-part-out-loud-d9b06deb1d76</span></a></p>
Benedikt Ritter (he/him)<p>When using an object store such as <a href="https://chaos.social/tags/s3" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>s3</span></a> or <a href="https://chaos.social/tags/minio" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>minio</span></a> as a backup target, what do people prefer?</p><p><a href="https://chaos.social/tags/backups" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>backups</span></a> <a href="https://chaos.social/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a></p>
Puppet Community Team :fedi:<p>New tutorial now on the blog! Start using Grafana to monitor your Puppet-managed infrastructure by adding the Observability Data Connector. </p><p>This tutorial takes you step-by-step:<br>👷‍♂️ Install the module<br>🧑‍💻 Create a Profile Class<br>🏷️ Classify the Puppet Server<br>🔍 Verify the Data Collection<br>📢 Set Up a Prometheus Service to Share the Data<br>📊 Integrate with Grafana for Visualization</p><p><a href="https://www.puppet.com/blog/tutorial-puppet-grafana-observability" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">puppet.com/blog/tutorial-puppe</span><span class="invisible">t-grafana-observability</span></a> </p><p><a href="https://fosstodon.org/tags/Observability" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Observability</span></a> <a href="https://fosstodon.org/tags/DevOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevOps</span></a></p>
Thib<p>Current blog pipeline:</p><p>1. 🕐️ How I use Bitwarden to keep my homelab credentials safe<br>2. 👀 A flexible and safe homelab with Proxmox<br>3. 👀 How bridged networks actually work<br>4. ✍️ A reproducible homelab with opentofu, cloud-init and ansible<br>5. 🕐️ GitOps with Flux and encrypted secrets with SOPS and age<br>6. 🕐️ Deploying in a Specific Order with Flux Kustomizations<br>7. 🧪 Kubernetes monitoring<br>8. 🧪 Kubernetes backups</p><p>🧪 Experimenting<br>✍️ Writing<br>👀 Under review<br>🕐️ Scheduled</p><p><a href="https://mamot.fr/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://mamot.fr/tags/kubernetes" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>kubernetes</span></a> <a href="https://mamot.fr/tags/homelab" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>homelab</span></a></p>
Alvin Ashcraft 🐿️<p>Dew Drop Weekly Newsletter #442 - Week Ending July 25, 2025.</p><p><a href="https://zc.vg/lPPY0?m=0" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">zc.vg/lPPY0?m=0</span><span class="invisible"></span></a> </p><p><a href="https://hachyderm.io/tags/dewdrop" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dewdrop</span></a> <a href="https://hachyderm.io/tags/newsletter" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>newsletter</span></a> <a href="https://hachyderm.io/tags/aspnetcore" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aspnetcore</span></a> <a href="https://hachyderm.io/tags/javascript" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>javascript</span></a> <a href="https://hachyderm.io/tags/windev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>windev</span></a> <a href="https://hachyderm.io/tags/windowsappsdk" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>windowsappsdk</span></a> <a href="https://hachyderm.io/tags/dotnet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dotnet</span></a> <a href="https://hachyderm.io/tags/unoplatform" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unoplatform</span></a> <a href="https://hachyderm.io/tags/csharp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>csharp</span></a> <a href="https://hachyderm.io/tags/ai" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ai</span></a> <a href="https://hachyderm.io/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://hachyderm.io/tags/agile" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>agile</span></a> <a href="https://hachyderm.io/tags/mobiledev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mobiledev</span></a> <a href="https://hachyderm.io/tags/gamedev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>gamedev</span></a> <a href="https://hachyderm.io/tags/IoT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IoT</span></a> <a href="https://hachyderm.io/tags/database" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>database</span></a> <a href="https://hachyderm.io/tags/m365" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>m365</span></a> <a href="https://hachyderm.io/tags/sqlserver" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sqlserver</span></a> <a href="https://hachyderm.io/tags/windows" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>windows</span></a> <a href="https://hachyderm.io/tags/powershell" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>powershell</span></a></p>
Alvin Ashcraft 🐿️<p>Dew Drop – July 25, 2025 (#4467)</p><p><a href="https://www.alvinashcraft.com/2025/07/25/dew-drop-july-25-2025-4467/" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">alvinashcraft.com/2025/07/25/d</span><span class="invisible">ew-drop-july-25-2025-4467/</span></a></p><p><a href="https://hachyderm.io/tags/dotnet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dotnet</span></a> <a href="https://hachyderm.io/tags/ai" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ai</span></a> <a href="https://hachyderm.io/tags/webdev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webdev</span></a> <a href="https://hachyderm.io/tags/cloud" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cloud</span></a> <a href="https://hachyderm.io/tags/visualstudio" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>visualstudio</span></a> <a href="https://hachyderm.io/tags/windowsdev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>windowsdev</span></a> <a href="https://hachyderm.io/tags/csharp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>csharp</span></a> <a href="https://hachyderm.io/tags/mobiledev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mobiledev</span></a> <a href="https://hachyderm.io/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://hachyderm.io/tags/dewdrop" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>dewdrop</span></a></p>
Hyde 📷 🖋 :debian:<p>It's <a href="https://lazybear.social/tags/FollowFriday" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FollowFriday</span></a> time !</p><p><a href="https://lazybear.social/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <br><span class="h-card" translate="no"><a href="https://floss.social/@monospace" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>monospace</span></a></span> <br><span class="h-card" translate="no"><a href="https://mamot.fr/@thibaultamartin" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>thibaultamartin</span></a></span> </p><p><a href="https://lazybear.social/tags/FountainPens" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FountainPens</span></a> <a href="https://lazybear.social/tags/ink" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ink</span></a> <br><span class="h-card" translate="no"><a href="https://writing.exchange/@Emmacox" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>Emmacox</span></a></span> <br><span class="h-card" translate="no"><a href="https://mastodon.art/@JenJen" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>JenJen</span></a></span> <br><span class="h-card" translate="no"><a href="https://penfount.social/@BennysLittleThings" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>BennysLittleThings</span></a></span> <br><span class="h-card" translate="no"><a href="https://vis.social/@kristinHenry" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>kristinHenry</span></a></span> </p><p><a href="https://lazybear.social/tags/indieweb" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>indieweb</span></a> <br><span class="h-card" translate="no"><a href="https://oslo.town/@matt" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>matt</span></a></span> Nice talk about <a href="https://lazybear.social/tags/mastodon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>mastodon</span></a> btw I stumbled upon on his blog</p><p><a href="https://lazybear.social/tags/pkm" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>pkm</span></a> <a href="https://lazybear.social/tags/Obsidian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Obsidian</span></a> <a href="https://lazybear.social/tags/zettelkasten" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>zettelkasten</span></a> <br><span class="h-card" translate="no"><a href="https://mastodon.online/@chriscochrun" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>chriscochrun</span></a></span><br><span class="h-card" translate="no"><a href="https://pkm.social/@janhacke" class="u-url mention" rel="nofollow noopener" target="_blank">@<span>janhacke</span></a></span></p><p>Boost them ! 🙏 </p><p><a href="https://lazybear.social/tags/fediverse" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>fediverse</span></a></p>
InfoQ<p><a href="https://techhub.social/tags/Pulumi" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Pulumi</span></a> allows developers to use <a href="https://techhub.social/tags/Terraform" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Terraform</span></a> modules directly - no conversion needed.</p><p>This preview feature lets you import Terraform modules as-is into Pulumi programs written in TypeScript, Python, Go, C#, or Java.</p><p>🔗 Learn more: <a href="https://bit.ly/3IDZG9k" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="">bit.ly/3IDZG9k</span><span class="invisible"></span></a> </p><p><a href="https://techhub.social/tags/InfoQ" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoQ</span></a> <a href="https://techhub.social/tags/DevOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevOps</span></a> <a href="https://techhub.social/tags/IaC" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IaC</span></a></p>
iX Magazin<p>Drei Fragen und Antworten: Was macht gutes Testmanagement aus?</p><p>Software entwickeln und abschließend testen? Grundlegend falsch, erklärt Waldemar Klassen im Interview. Wir zeigen, wie es besser geht.</p><p><a href="https://www.heise.de/news/Drei-Fragen-und-Antworten-Was-macht-gutes-Testmanagement-aus-10499620.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">heise.de/news/Drei-Fragen-und-</span><span class="invisible">Antworten-Was-macht-gutes-Testmanagement-aus-10499620.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege&amp;utm_source=mastodon</span></a></p><p><a href="https://social.heise.de/tags/DevOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevOps</span></a> <a href="https://social.heise.de/tags/IT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IT</span></a> <a href="https://social.heise.de/tags/Programmierung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Programmierung</span></a> <a href="https://social.heise.de/tags/Security" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Security</span></a> <a href="https://social.heise.de/tags/Softwareentwicklung" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Softwareentwicklung</span></a> <a href="https://social.heise.de/tags/Test" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Test</span></a> <a href="https://social.heise.de/tags/Wissenschaft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Wissenschaft</span></a> <a href="https://social.heise.de/tags/news" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>news</span></a></p>
ReynardSec<p>A grumpy ItSec guy walks through the office when he overhears an exchange of words.</p><p>Dev0: Hey, this isn't working, I hate containers...<br>Dev1: Maybe just add the --privileged flag!</p><p>ItSec: Just… no. Simply no. No privileged mode - the grumpy fellow interjects as he walks away.</p><p>Dev0: Jesus, fine - no privileged mode.<br>Dev1: Okay, but… why?</p><p>Here's why (one, simple example):&nbsp;</p><p>Docker's --privileged flag lifts almost all restrictions from your container - exactly the opposite of --cap-drop=ALL. Let's demo the difference.&nbsp;</p><p>1) Start two containers. </p><p>docker run -itd --privileged --name ubuntu-privileged ubuntu<br>docker run -itd --name ubuntu-unprivileged ubuntu</p><p>2) Inspect /dev in the unprivileged container.</p><p>docker exec -it ubuntu-unprivileged bash<br>ls /dev<br>exit</p><p>You'll only see a limited set of devices. No disk access.&nbsp;</p><p>3) Now inspect /dev in the privileged container.</p><p>docker exec -it ubuntu-privileged bash<br>ls /dev</p><p>/dev/sda exposed! Sometimes you may see /dev/mapper when LVM is in place. Then "apt update &amp;&amp; apt install -y lvm2" and "lvscan" may help during next phase. </p><p>4) Exploitation part (inside the privileged container) - simply mount /dev/sda to any writable path in container.</p><p>mkdir /tmp/whatever<br>mount /dev/sda1 /tmp/whatever</p><p>5) You can now enumerate - and access - the Docker host's logical volume.</p><p>ls -la /tmp/whatever</p><p>6) If you wish, you can even chroot into the host:</p><p>chroot /tmp/whatever /bin/bash</p><p>The moral of the story is to avoid privileged mode, because in the event of an incident (e.g. an attacker compromising an app running inside a container), you significantly increase the likelihood of successful lateral movement from the container to the Docker host - and from there into the rest of your infrastructure.</p><p>Usually the grumpy guy means well. He just doesn't know how to explain it properly.</p><p><a href="https://infosec.exchange/tags/devops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>devops</span></a> <a href="https://infosec.exchange/tags/programming" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>programming</span></a> <a href="https://infosec.exchange/tags/webdev" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>webdev</span></a> <a href="https://infosec.exchange/tags/java" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>java</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/php" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>php</span></a> <a href="https://infosec.exchange/tags/nodejs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>nodejs</span></a></p>

"If you're looking to optimize your containerization workflow, here's the good news - the ecosystem has evolved far beyond Docker's original design.

Docker revolutionized software deployment by making containerization a standard, but the ecosystem has grown to address specific use cases that Docker wasn't originally designed for. Modern alternatives like Podman, containerd, and CRI-O offer specialized features like daemonless designs, rootless operations, and native Kubernetes integration. These tools don't just offer incremental improvements, but instead they represent fundamental shifts in how we think about container security, performance, and workflow integration.

The container ecosystem has matured beyond Docker's monolithic approach, with specialized runtimes optimizing for specific use cases. Whether you're running microservices in production, developing locally, or managing enterprise workloads, there's likely a tool that's better suited to your specific requirements.

In this guide, I'll walk you through the most promising Docker alternatives in 2025 and help you choose the right tool for your specific needs."

datacamp.com/blog/docker-alter

The 404 Media story about a malicious prompt being accepted and pushed that encouraged Amazon's Q to delete whatever it came in contact with is eye opening, for a lot of reasons.

For me, it raises all sorts of questions regarding the governance and oversight of the deployment pipeline. How does a pull request from an unknown outsider get merged and deployed without meaningful review?

lastweekinaws.com/blog/amazon-

Last Week in AWS · Amazon Q: Now with Helpful AI-Powered Self-Destruct Capabilities - Last Week in AWS BlogToday 404Media released a truly stunning report that almost beggars belief. To break it down into its simplest form: A hacker submitted a PR. It got merged. It told Amazon Q to nuke your computer and cloud infra. Amazon shipped it.

When versions of critical infrastructure applications go EOL the battle is always to consider the risk of the upgrade vs the risk of staying where you are without support. If you have an older version of #Perforce Puppet and are thinking of upgrading to Puppet 8, you should have a watch of this new video from Stephen Potter as he tackles some key upgrade tips!

youtube.com/watch?v=EB2Ws6YtgOs

Fortsettelse av samtale

Woot, just finished implementing my first GitHub / Forgejo Actions which allows me to programmatically push meshcore builds to my radios on the roof from the comfort of my browser.

It currently only supports deploying to esp32s3 based LoRa devices so far.