#general (2024-09)
General conversations related to DevOps/Automation
General Discussions
2024-09-01
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
Good to have you here =)
2024-09-02
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
Good to have you here =)
Hello #general
I have my application hosted on gcp vm and I have configured the VM to a loadbalancer and the same is mapped to cloudflare with my organisation’s url. I have configured the public loadbalancer, now facing a challenge with firewall rule that added to the instance.
Firewall rule added port 8080 to the instance from the loadbalancer IP(added the public IP of google’s IP list https://cloud.google.com/load-balancing/docs/https#firewall-rules) because of this all the public requests are reaching my loadbalancer IP and its forwarding to 8080 port to the backend.
But i wanted the loadbalancer to listen only from the cloudflare’s Ip range ( https://www.cloudflare.com/en-gb/ips/rather) listening from public. How can i restrict my 8080 port to listen from LB IP but it should allow public to reach the LB.
Can someone help on this?
@Andriy Knysh (Cloud Posse) @Yonatan Koren
@Dhamodharan you need to attach Cloud Armor WAF with a IP whitelisting rule
thanks @toka I found the similar article, trying that. Will post again if i have any challenges.
Thanks @Gabriela Campana (Cloud Posse) for your support aswell.
2024-09-03
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
Good to have you here =)
2024-09-04
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
Good to have you here =)
2024-09-05
Has anyone checked out stacklok/minder for open source maintenance ? They have a lot of open source rules. I was forwarded this one which proposes a github action per repo in an org for enablement of openssf’s scorecard.
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
Good to have you here =)
2024-09-06
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
- @kirstenruge
- @Patrick
- @cschandu22
Good to have you here =)
2024-09-07
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
- @kirstenruge
- @Patrick
- @cschandu22
- @Callum
- @Roman Orlovskiy
- @Aldana
- @Lee
- @steph.monclova
Good to have you here =)
2024-09-08
Hi
Hi i am GreenApple undergrad student recently discovered domains like devOps and SRE …etc. what steps shall i take in which direction in order to dive deep and explore this domain, any precautions to look out for , any resources as such to get started with any guidance would be much appreciated. Thank You .
@Dan Miller (Cloud Posse)
This site is a great example of the many many options and skills involved https://roadmap.sh/devops
Learn to become a modern DevOps engineer by following the steps, skills, resources and guides listed in our community-driven roadmap.
I’d recommend checking out the “beginner” version too if you’re just getting started https://roadmap.sh/devops?r=devops-beginner
Learn to become a modern DevOps engineer by following the steps, skills, resources and guides listed in our community-driven roadmap.
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
- @kirstenruge
- @Patrick
- @cschandu22
- @Callum
- @Roman Orlovskiy
- @Aldana
- @Lee
- @steph.monclova
- @farhan syed
Good to have you here =)
2024-09-09
This message was deleted.
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
- @kirstenruge
- @Patrick
- @cschandu22
- @Callum
- @Roman Orlovskiy
- @Aldana
- @Lee
- @steph.monclova
- @farhan syed
- @mauryapatel093
- @GABRIEL COSTA ALVES DA SILVA
Good to have you here =)
2024-09-10
2024-09-11
Hey everyone, give a warm welcome to our newest members!
- @Chris Redwine
- @Honeyball
- @Mike
- @simplyumair17
- @Ignacio Ovsannikov
- @Maryia
- @Pierre-Luc Maheux
- @Hitarth
- @chamilad
- @mohitgaikwad9
- @Emmanuel O
- @Jamie Jackson
- @harshanahmad940
- @CL YONG
- @Rahul kumar
- @Sashidhar Thallam
- @Emmanuel Kenze
- @himanshu.a.varia
- @kirstenruge
- @Patrick
- @cschandu22
- @Callum
- @Roman Orlovskiy
- @Aldana
- @Lee
- @steph.monclova
- @farhan syed
- @mauryapatel093
- @GABRIEL COSTA ALVES DA SILVA
- @William Newton
- @mkusper
- @Petr Dondukov
Good to have you here =)
2024-09-12
thanks for the many welcome(s), as a new member.
however, i’ve been robo-mentioned daily for the last week. that’s a lot of noise in my slack for a team that i don’t use very much.
can i petition for changing the “death by welcomes” strategy? once is great! once a day for eternity(?)… not so much.
@Erik Osterman (Cloud Posse) something is wrong with the welcome automation. Who set that up?
Yes, I think we can reduce the frequency
I’ve reduced it to weekly for the time being. Let’s see how that works.
with that strategy, can/will a new member get welcomed more than once?
(i can’t speak for everyone, but i think more than one welcome for any given person is excessive.)
Oh wait
I am sorry
I missed the actual problem you were alerting me to. I see what you mean. I’ll disable for now.
(posted to #terraform)
2024-09-21
This message was deleted.
Hey everyone , i am currently working on a blog , where i demonstrate in AWS how to connect to an instance in private subnet without using ssh keys and password from your local machine and using aws cli , i want to get some community views on using ssm or some challenges faced after implementing this
2024-09-24
Hello world - has anyone tried these near zero CVE images -https://hub.rapidfort.com in production ?
Discover RapidFort’s curated container images and SASM platform to achieve near-zero CVEs. Secure your software development with daily rebuilds, FIPS readiness, and FedRAMP compliance.
2024-09-27
Weird question - do you guys PR before apply or after apply? I do not have actions in place
@Igor Rodionov
@Ryan it depends. If we develop a new component from scratch, we usually apply before PR. But if we deploy the existing one then we PR before apply