DevOps'ish 255: Open source operational transparency, npm security, Blackberry sells off patents, Samba vuln, Minecraft server in 10, GitOps Terraform controller for Kubernetes, and more

DevOps’ish is brought to you our friends at Honeycomb. “Stop Letting Complexity Slow You Down” Honeycomb makes it easy to understand and troubleshoot complex relationships within your distributed services. Solve problems faster. Ship reliable and performant features. SPONSORED People There Is a Much Larger Problem Than the Great Resignation. No One Wants to Talk About It. It’s okay to go to a two-year school and build up some experience to increase your value. That’s what I did. I insisted on touching keyboards more and more. North Korea Hacked Him. So He Took Down Its Internet “P4x says he has largely automated his attacks on the North Korean systems, periodically running scripts that enumerate which systems remain online and then launching exploits to take them down. ‘For me, this is like the size of a small-to-medium pentest,’ P4x says, using the abbreviation for a ‘penetration test,’ the sort of whitehat hacking he’s carried out in the past to reveal vulnerabilities in a client’s network. ‘It’s pretty interesting how easy it was to actually have some effect in there.’” ...

February 6, 2022 · 6 min · Chris Short

DevOps'ish 254: Mired in many migrations, No Substack, Kubernetes security, Nvidia's Arm deal is really dead, big Kubernetes cluster, systemd playground, and more

DevOps’ish is brought to you by Honeycomb. “Stop Letting Complexity Slow You Down” Honeycomb makes it easy to understand and troubleshoot complex relationships within your distributed services. Solve problems faster. Ship reliable and performant features. SPONSORED I mentioned on Twitter this week that I have multiple migrations going on right now. The first and easiest migration is already done. I even wrote a blog post about it: Moving off Spotify. The next migration is moving off GSuite or Google Workplace or whatever it’s called. That one is technically 50% done as far as the two GSuite accounts I have. I migrated one over to Apple+. The Apple tooling is rigid and unforgiving. It will likely instruct you to make a bad SPF record if you send mail using more than one tool. I intend to write a blog post about it during the coming weeks. The funny thing about it is that I moved the Google account I was already paying for. Now I have to move the one with the data gravity, but I have until July to do that. I am lucky and maintain a firm policy not to sign in with a Google account unless I am forced. But, to be honest, not moving, taking the easy path, even if it costs money, is likely the path I’ll take for the legacy free account. I’ll only pay for ONE Google account, though. ...

January 30, 2022 · 6 min · Chris Short

DevOps'ish 253: 5G — It's all good, Measuring open source, Intel coming to Ohio, MoonBounce, GitOps in 2021, Google SRE hellscape, and more

DevOps’ish is brought to you by Honeycomb. “Stop Letting Complexity Slow You Down” Honeycomb makes it easy to understand and troubleshoot complex relationships within your distributed services. Solve problems faster. Ship reliable and performant features. SPONSORED 5G became an absolute shit show this week. But, at the end of it all, Airline CEOs made a 180-degree turn and are now saying 5G isn’t a big problem for altimeters. They are a few 100 megahertz apart. But, the summary might piss you off, “After stalling for almost two years, FAA cleared 78% of planes in the past week.” I’m pretty sure the FAA has had a tumultuous past couple of years like many other employers. Productivity and staffing issues were probably significant limitations. You can’t work in a lab if you can’t go into the building. There’s only so much simulating you can do before you need to make sure you’re not going to kill a test pilot and need to touch the hardware in test conditions. Those skills are probably in high demand right now too. But, when you get the President’s attention, you get what you need in government. That’s how it works (I didn’t say it was right; it’s politics, and I’ve been there and done that). ...

January 23, 2022 · 5 min · Chris Short

DevOps'ish 252: 5G update, pink slips for the unvaccinated, Apache stifled by out of date software still in use, Canon's eWaste, Security Obstructionism (SecObs) Market, tracing traffic in Kubernetes, and more

DevOps’ish is brought to you by Honeycomb. “Stop Letting Complexity Slow You Down” Honeycomb makes it easy to understand and troubleshoot complex relationships within your distributed services. Solve problems faster. Ship reliable and performant features. SPONSORED Last week, I reported the back and forth with Verizon’s and AT&T’s 5G efforts on the old C-band spectrum. This frequency band is also used to tell airplanes where the ground is as they’re on final approaches and landings, and the FAA has been frantically working to prevent a delay in the 5G rollouts of two of the US’s largest carriers. Meanwhile, I’ll be getting introduced to this new service on January 19th as Verizon flips on their 5G network based on this frequency band on January 19th. This could also mean a shift in the works in terms of how I consume the internet. Right now, it’s a Comcast Business link. I would prefer not to be a Comcast customer. Home 5G, Project Kuiper, and Starlink Cat bed based internet are all looking like viable alternatives. Meanwhile, we learn that 5G could be used as a sensor itself. ...

January 16, 2022 · 6 min · Chris Short

DevOps'ish 251: About last week, 5G shenanigans, Dockershim deprecation, FTC warns companies about Log4j, GitOpsCon EU 2022 CFP open, EKS News, and more

I wrote a really good introduction last week and forgot to include it in the email newsletter. It is still on the site if you’d like to go back and look at it. The three big takeaways are: My traditional end of year blog post is out (as of today): 2021 Learnings, 2022 Expectations. I put a lot of time, effort, and thought into it. I hope it’s coherent enough so that you can plot a course in 2022. DevOps’ish.com has been completely redesigned from the ground up to provide a better reading experience. A sorely missing and incredibly helpful search capability has been added to the site. Honeycomb will be the sole sponsor of DevOps’ish in 2022 and I’m very excited about that. Last week’s issue might have been one of the worst performing ones of the year. The lack of an intro left folks wanting more. Next year (2023), I’ll plan better and not push out newsletters during significant lulls in internet activity. Plus, I can plan to take a break every once in a while (this isn’t a marathon; it’s a newsletter). ...

January 9, 2022 · 6 min · Chris Short