devops

Tags

Follow from the Fediverse

Follow #devops from Mastodon or any other Fediverse app and its public posts arrive in your timeline. No vutuv account needed.

@devops@tags.vutuv.de

Your address is used once, to send you to your own server's follow dialog. It is never stored here.

Also known as

dev ops, dev-ops

The most endorsed users with this tag

Posts with this tag

11 posts

Filters
Admin:Docs @admindocsde bizzfed.de

Unter #Ubuntu 26.04 LTS (Resolute Raccoon) ist #Docker die am weitesten verbreitete Plattform zur containerbasierten Isolation von Serverdiensten. Im Gegensatz zu vollwertigen virtuellen Maschinen teilen sich Container den Linux-Kernel des Host-Systems. Die Isolation von Prozessen, Dateisystemen und Netzwerkstapeln erfolgt nativ über Linux-Kernel-Mechanismen: Control Groups (cgroups v2) und Kernel Namespaces.

Dieser Leitfaden führt durch die Einrichtung der offiziellen Docker Community Edition (CE) auf Ubuntu 26.04 LTS. Er behandelt die sichere Verwaltung des Docker-GPG-Schlüssels über /etc/apt/keyrings, die Konfiguration des Daemons für automatisierte Log-Rotation, die Berechtigungssteuerung über die docker-Gruppe sowie das Zusammenspiel mit Paketfiltern und Firewalls wie #UFW.

-> admindocs.de/de/…

docker ubuntu2604 container linuxadmin server
+2 Less devops dockercompose
Thorsten Jezierski @unmd mastodon.social

👋 Moin zusammen! Dann werfe ich auch mal ein #Neuhier in die Runde.

Beruflich im DevOps- & Cloud-Native-Bereich zuhause, privat gerne tief im Homelab, bei Linux-Tiling-Setups und Open-Source-Projekten versackt.

Ausgleich gibt’s am Netz beim Volleyball, beim 3D-Drucken nützlicher Alltags-Hacks oder beim Campen am Wochenende.

Ich freue mich auf frische Perspektiven, gute Diskussionen und neue Timelines!

Introduction DevOps K8s Linux OpenSource
+3 Less Maker Volleyball FediLZ
M. Hamzah Khan @mhamzahkhan mstdn.intahnet.co.uk

Hey everyone. This is a post I didn’t really want to make, but I lost my job a couple of months ago and the market is quite brutal right now, so I’m turning to the Fediverse for help.

If you or anyone you know has any #DevOps positions - either #Remote or in #London, open to contract or perm - I would be very interested in hearing about them. I really like working with #Kubernetes, #Ansible, #Terraform, and #GitLab.

Any boosts are hugely appreciated. Thank you! #GetFediHired #FediJobs

Hallo Welt!

Schön hier zu sein. Ganz toll, dass es endlich jemand geschafft hat eine funktionierende, föderierte Open-Source Alternative zu den verstaubten und wenig nützlichen Plattformen an den Start zu bringen.

Ich exportiere gerade mein LinkedIn profil und werde mein Profil dann überarbeiten.

Derzeit bin ich selbstständig, stelle jedoch fest dass die Verhältnisse zu scharf für meine Gesundheit geworden sind. Also suche ich jetzt wieder in Wiesbaden und Umgebung nach Arbeit. Mit Vorliebe in basisorganisierten Betrieben oder Koops. Wer jemanden mit guter Auffassungsgabe und vielseitigem Profil sucht wird bei mir fündig. Ich kann von der Hilti über den Kabeltester bis zum Riscv bootloader so ziemlich alles bedienen und konfigurieren. Ich habe diverse eigene Apps herausgebracht und orchestriere einige Dutzend Systeme täglich. Als gelernter Kaufmann bin ich zudem gut in Buchhaltung und Sales.

Verfügbar bin ich ab sofort, pkw vorhanden.

Beste Grüße

Alex

5

Teil 5 von “Podman Bausteine” ist online!

Im Quadlets-Teil ist uns AutoUpdate=registry schon begegnet, ohne dass wir näher draufgeschaut haben. Das hole ich in diesem Artikel nach.

Es geht um podman auto-update: wie Podman Container anhand des Image-Digests automatisch aktualisiert, und was passiert, wenn ein Update mal schiefgeht. Der eingebaute Rollback-Mechanismus sorgt dafür, dass ein fehlgeschlagenes Update nicht gleich den ganzen Container lahmlegt.

Hier geht’s zu Teil 5: Podman-Bausteine – Updates

Hast du einen Teil verpasst? Alle Artikel findest du auf gnulinux.ch:

devops podman containers Linux Systemd
devops podman containers Linux Systemd
Andreu Casablanca 🐀 @castarco hachyderm.io

We tweaked our firewalls and our Anubis rules. The attack persisted, but it was contained.

We also scaled our systems to avoid more accidental downtimes caused by these scrapping operations… Then the attackers scaled up their scrapping campaign, and found new ways to bypass our #Anubis config.

This past night I managed to come up with a stricter configuration that blocks virtually all of them (I don’t know for how long this will last, though).

As of now, our Anubis instance is stopping around 40 requests per second.

I know that this is “nothing” for anyone working in very big systems, but bear in mind that this is after I already blocked around 3.5% of all the IPv4 addresses existing, and it accounts for 95% of our traffic. For every legitimate request we have, we have 19 that come from bots.

P.S.: In an ideal world, I would openly share the rules I found to work well… Unfortunately I don’t think that would be a good idea. I don’t want to make the scrappers’ job any easier.

FuckAI Fuck_AI Devops DevSecOps
A graph, plotting the number of requests reaching our Forgejo instance. One can see how around 2am (Berlin timezone), that number collapses to zero, after some improvements have been applied to our Anubis configuration.
A graph:
- in red, the amount  of "challenges" issues by Anubis
- in blue, the amount of "challenges" validated by Anubis

the graph shows how around 2am (Berlin timezone), Anubis stopped validating bots requests
A graph:
- in blue, the amount  of "challenges" issues by Anubis
- in red, the amount of requests directly allowed by Anubis
- in green, the amount of requests directly denied by Anubis

the graph shows seemingly random fluctuations in requests per second that reached our systems

Keyboard shortcuts

Navigation

Home g h
Feed g f
Messages g m
Notifications g n
Your profile g p
Search /

Actions

Write a new post n
Send the post or message you are writing ⌘/Ctrl ↵
Next post in the feed j
Previous post in the feed k

General

Show this help ?
Close menus and dialogs Esc

The single-key shortcuts pause while you type, and are off on phones and tablets.