TGViewer
Channel Public Channel
DevOps & SRE notes

DevOps & SRE notes

@devops_sre_notes

Helpful articles and tools for DevOps&SRE

youtube: https://www.youtube.com/@DevOpsAndSRENotes
Subscribers
13.3K
Photos
57
Videos
1
Links
2.6K

Showing posts older than #2203 · Back to latest

Older Posts 20 shown
Post #2201 14.2K
In this captivating tutorial, Noah H explores the powerful capabilities of eBPF technology and Tetragon for enhancing Kubernetes security through runtime monitoring and policy enforcement. The author provides valuable insights into how these tools can detect suspicious activities, prevent container escapes, and enforce security policies directly at the kernel level without significant performance overhead.

https://medium.com/@noah_h/kubernetes-security-ebpf-tetragon-for-runtime-monitoring-policy-enforcement-819b6ed97953
Medium Kubernetes Security: eBPF & Tetragon for Runtime Monitoring & Policy Enforcement Exploring eBPF for runtime visibility into Kubernetes workloads with Tetragon.
Post #2200 15.2K
This informative piece by bm54cloud explores the intricacies of deploying and updating Zarf packages in air-gapped environments. The author provides valuable insights into overcoming the unique challenges faced when working with systems disconnected from external networks.

https://medium.com/@bm54cloud/deploy-and-update-zarf-packages-in-an-air-gap-b2e3ec43abf7
Medium Deploy and Update Zarf Packages in an Air Gap This tutorial gives an example of using Zarf to deploy a Podinfo package into an air gapped Kubernetes cluster, and then upgrading that…
  • 👍 3
Post #2197 14.1K
Understanding how to secure Linux containers requires a deep dive into tools like seccomp, which can restrict the system calls available to containerized processes. In this technical guide, the fourth installment of the Container Internals Series breaks down how seccomp filters work, their real-world impact on container security, and practical steps to implement custom seccomp profiles for hardened deployments.

https://levelup.gitconnected.com/container-internals-series-part-4-seccomp-d88543988709
Medium Container Internals Series Part 4: Seccomp Linux Seccomp Security Profiles from scratch using Golang
  • 👍 4
Post #2196 14.3K
Upgrading from Node.js 18 to 20 brought unexpected performance impacts to a Kubernetes-deployed service, as detailed in this technical recap. The experience-driven story reveals how changing memory reservations on Kubernetes pods can shrink Node.js heap spaces—specifically the "new space"—triggering heavier garbage collection and higher CPU load, and how adjusting the --max-semi-space-size parameter restored both speed and stability.

https://deezer.io/node-js-20-upgrade-a-journey-through-unexpected-heap-issues-with-kubernetes-27ae3d325646
Medium Node.js 20 upgrade: a journey through unexpected HEAP issues with Kubernetes The journey to an high availability NodeJS upgrade (18 to 20) and the unexpected consequences induced by Kubernetes best practices. Hop in!
  • 👍 3
Post #2195 13.6K
Post #2193 13.6K
Meeting customers’ rising expectations for security, speed, and personalization demands a new approach to computing infrastructure, which is exactly where distributed cloud comes in. This feature explains why developers must look beyond traditional centralized cloud models—adopting distributed cloud computing to optimize performance, comply with data regulations, and deliver truly customized services at scale.

https://thenewstack.io/why-developers-need-to-care-about-distributed-cloud-computing/
The New Stack Why Developers Need To Care About Distributed Cloud Computing Gathering and processing customers’ data via distributed cloud enables real-time experience no matter where the customers are on the globe.
  • 👍 1
Post #2192 13.7K
While GitOps has brought consistency and innovation to Kubernetes deployments, its reliance on git-based workflows and tools like ArgoCD and Flux still leaves important challenges unsolved. This article explores both the real-world progress and the limitations of GitOps, from deployment strategies and multi-cluster rollouts to issues around permissions, secrets management, and the need for solutions that go beyond git as the sole source of truth.

https://itnext.io/realizing-the-potential-of-gitops-263051baff04
Medium Realizing the potential of GitOps GitOps hasn’t realized its full potential yet. What else is needed or needs to be improved?
  • ❤ 2
  • 👍 2
Post #2189 12.6K
Achieving end-to-end visibility for Python data pipelines is essential for ensuring quality and reliability in modern data architectures. This hands-on walkthrough from Elastic Observability Labs explains how to implement OpenTelemetry (OTEL) in your Python ETL scripts—covering automatic instrumentation, manual tracing, performance metrics, and anomaly-driven alerting—to proactively monitor, troubleshoot, and optimize your entire pipeline lifecycle using Elastic’s platform.

https://www.elastic.co/observability-labs/blog/monitor-your-python-data-pipelines-with-otel
www.elastic.co Monitor your Python data pipelines with OTEL — Elastic Observability Labs Learn how to configure OTEL for your data pipelines, detect any anomalies, analyze performance, and set up corresponding alerts with Elastic.
  • 👍 1
Post #2188 12.8K
Tail-based sampling unlocks deeper insights into distributed systems by allowing OpenTelemetry users to prioritize traces that matter most, such as those with errors or slow responses. This guide explains how tail-based sampling works, its differences from head-based sampling, and provides a practical walkthrough for setting up a two-tier OpenTelemetry Collector architecture that intelligently filters traces for more actionable observability.

https://itnext.io/empower-your-observability-tail-based-sampling-for-better-tracing-with-opentelemtry-243ca2cc55d1
Medium Empower Your Observability: Tail-Based Sampling for Better Tracing with Opentelemetry In the era of microservices and distributed systems, observability has become a cornerstone for maintaining robust, reliable, and scalable…
  • 👍 1
Post #2183 10.5K
Slow container startup times can cripple the productivity of Kubernetes teams managing large Docker images—sometimes dragging deployments out for hours. In this feature, Kazakov Kirill shares a practical strategy for pre-warming nodes and leveraging image caching, dramatically reducing cold starts and disk pressure during mass pod rollouts in Amazon EKS clusters.

https://hackernoon.com/how-to-optimize-kubernetes-for-large-docker-images
Hackernoon How to Optimize Kubernetes for Large Docker Images Discover how a creative warm-up process transformed our Kubernetes deployments, addressing ContainerCreating issues, reducing cold start times, and minimizing d
  • ❤ 2
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →