Deploy without credentials with GitHub Actions and OIDC
https://blog.alexellis.io/deploy-without-credentials-using-oidc-and-github-actions
https://blog.alexellis.io/deploy-without-credentials-using-oidc-and-github-actions
Kubernetes Cost Monitoring with Prometheus & Grafana
https://loft-sh.medium.com/kubernetes-cost-monitoring-with-prometheus-grafana-9063bf8d3f43
https://loft-sh.medium.com/kubernetes-cost-monitoring-with-prometheus-grafana-9063bf8d3f43
CloudGraph
An instant GraphQL API to query your cloud infrastructure and configuration so that you can solve a host of complex security, compliance, and governance challenges 10x faster.https://github.com/cloudgraphdev/cli
parca
Continuous profiling for analysis of CPU, memory usage over time, and down to the line number. Saving infrastructure cost, improving performance, and increasing reliability.https://github.com/parca-dev/parca
What is under the hood of Kubernetes? - Part 1
https://blog.softwheel.io/what-is-under-the-hood-of-kubernetes-1
https://blog.softwheel.io/what-is-under-the-hood-of-kubernetes-1
Changing the tires on a moving bus
Adventures in refactoring a decade-old feature without ruining it for everyonehttps://mailchimp.com/developer/blog/changing-the-tires-on-a-moving-bus
algo
Algo VPN is a set of Ansible scripts that simplify the setup of a personal WireGuard and IPsec VPN. It uses the most secure defaults available and works with common cloud providers. See our release announcement for more information.https://github.com/trailofbits/algo
A Lap around Kubernetes Security & Vulnerability scanning Tools — checkov, kube-hunter, kube-bench & Starboard
https://aninditabasak.medium.com/a-lap-around-kubernetes-security-vulnerability-scanning-tools-checkov-kube-hunter-kube-bench-4ffda92c4cf1
https://aninditabasak.medium.com/a-lap-around-kubernetes-security-vulnerability-scanning-tools-checkov-kube-hunter-kube-bench-4ffda92c4cf1
Learn TypeScript in 5 minutes
Useful for tools like Pulumihttps://swizec.com/blog/learn-typescript-in-5-minutes
Infrastructure monitoring: An introduction
The ability to understand at a glance the current state of your infrastructure is an essential yet often underappreciated aspect of modern infrastructures. Regardless of the architecture, from dockerized microservices to monoliths and physical servers, knowing what’s going on is an essential part of avoiding unexpected downtime.https://mrintegrity.medium.com/monitoring-from-scratch-ea2b83a8f8a5
kuberlogic
KuberLogic is an open-source platform that deploys and manages software on top of the Kubernetes cluster and turns infrastructure into a managed PaaS. It allows running managed databases and popular applications deploying on-premises or at any cloud. The solution provides API, monitoring, backups, and integration with SSO right out of the box.https://github.com/kuberlogic/kuberlogic
massh
Go package for running Linux distributed shell commands via SSH.https://github.com/DiscoRiver/massh
zsh-bench
zsh-bench measures user-visible latency of interactive zsh: input lag, command lag, etc. You can use it to benchmark your own shell.https://github.com/romkatv/zsh-bench
VictoriaMetrics: PromQL compliance
MetricsQL is a query language inspired by PromQL. It is used as a primary query language in VictoriaMetrics, time series database and monitoring solution. MetricsQL claims to be backward-compatible with PromQL, so Grafana dashboards backed by a Prometheus datasource should work the same after switching from Prometheus to VictoriaMetrics.https://medium.com/@romanhavronenko/victoriametrics-promql-compliance-d4318203f51e
kui
A hybrid command-line/UI development experience for cloud-native developmenthttps://github.com/kubernetes-sigs/kui
kdigger
Code: https://github.com/quarkslab/kdigger
kdigger is a context discovery tool for Kubernetes penetration testing.Article: https://blog.quarkslab.com/kdigger-a-context-discovery-tool-for-kubernetes.html
Code: https://github.com/quarkslab/kdigger
Мониторинг Ceph
Как не пропустить падения и взлёты в жизни кластеров ceph с помощью prometheus или victoriametrics. Теория и практика мониторинга распределенного хранилища.https://alexzzz.ru/post/ceph-monitoring