Welcome to this week’s edition of DevOps’ish where we cover Dev, Ops, and all the ish in between.
I hope you had a productive week and are looking forward to another productive week ahead!
So much DevOps , so little time.
Department of Assemblage Obtainment
Trello was acquired by Atlassian for a whopping $425 million. This is an acquisition that makes a lot of sense for Atlassian. Trello could be used as a sort of gateway drug into the much more complicated Atlassian software products.
Chris Lattner, the creator of Swift, is leaving Apple and joining the Autopilot team at Tesla. According to a Business Insider source, Chris Lattner left because he felt, “He always felt constrained at Apple in terms of what he could discuss publicly.” But, Chris vehemently denied this report in a tweet saying, “Folk just want to make 🍎 look bad. 😠”.
blockloop has a good post on bash and the terminal. It’s pretty basic stuff and a little macOS centric. But, it does discuss my two favorite CLI utilities in macOS: pbcopy and pbpaste.
Department of Choice Concepts
I don’t know how I missed this last week but Flickr (yes, Flickr) has a great post about how they tried to go through 2016 without buying new storage systems.
LinkedIn has a vending machine for IT equipment much like factories have vending of parts and PPE. That’s one way to automate IT functions.
Photo Courtesy the agile admin
Tom Croucher of Uber brings us a “I’ve seen the light!” moment in Don’t gamble when it comes to reliability
Department of Dafuq
Dell EMC is planning to layoff a big chunk of its workforce post-merger. The cuts could affect as much as a quarter of Dell EMC employees (that is up to 35,000 people). Insiders say things have been a little awkward inside the company since the beginning of their fiscal Q4.
Department of Data Defense
Docker 1.12.6 was released this week to address CVE-2016–9962. The vulnerability was pretty gnarly: “runC passes a file descriptor from the host’s filesystem to the ‘runc init’ bootstrap process when joining a container. This allows a malicious process inside a container to gain access to the host filesystem with its current privilege set.” Red Hat demonstrated that SELinux could have saved you from this bug ever happening in your environment.
Ansible had a pretty gnarly bug announced this week. CVE-2016–9587 was discovered by Computest. According to James Cammarata, Ansible Lead/Sr. Principal Software Engineer, “a compromised remote system being managed via Ansible can lead to commands being run on the Ansible controller (as the user running the ansible or ansible-playbook command).” Multiple release candidates came out during the week. A stable 2.x release should be coming January 16, 2017. If you are still running Ansible 1.x code, you should upgrade to the 2.1.4 or 2.2.1 release as soon as possible.
Department of Discussion
There was a great crowd at the Triangle Kubernetes and OpenShift Meetup this past week. I got some helpful tips from Thomas Wiest about running Kubernetes in AWS. I have made my notes from the Meetup available.
Photo courtesy of Red Hat OpenShift
Department of Refreshment and Refurbishment
Red Hat Enterprise Linux 6.9 beta has been released. This release brings TLS 1.2 to the 6.x branch of RHEL which is a very welcomed (albeit late) improvement.
Go 1.8 RC1 was released this past week. The feature I’m most excited for is a default $GOPATH. I swear every time I install Go I never remember where I put my $GOPATH so the default will lower the bar to entry for newer folk (and help the senile).
Not DevOps But Still Cool
The fantastic Hacker News alternative, **Lobsters** is having a membership drive of sorts. If you would like an invite just let me know.
If you are a Linux DevOps person with AWS talents please consider joining my Global DevOps team.
DevOps’ish Tweet of the Week
This week’s one-liner comes courtesy of Jérôme Petazzoni:
TIL "curl --unix-socket". I won't have to use socat to forward to local UNIX sockets anymore like a caveperson. Thanks @s0ulshake!— Jérôme Petazzoni (@jpetazzo) January 11, 2017
Sponsor DevOps'ish and put your brand in front of thousands of highly skilled operators, maintainers, developers, and leaders from Amazon, Apple, Google, IBM, Intel, Microsoft, Red Hat, many of the Fortune 100, and beyond. Download the DevOps'ish Sponsorship Prospectus now!
Join the Conversation
Join //devopsish for a stream of news and content throughout the week.