#office-hours (2022-03)
“Office Hours” are every Wednesday at 11:30 PST via Zoom. It’s open to everyone. Ask questions related to DevOps & Cloud and get answers! https://cloudposse.com/office-hours
Public “Office Hours” are held every Wednesday at 11:30 PST via Zoom. It’s open to everyone. Ask questions related to DevOps & Cloud and get answers!
https://cpco.io/slack-office-hours
Meeting password: sweetops
2022-03-02
@here office hours is starting in 30 minutes! Remember to post your questions here.
Kerri Rist (Cloud Posse) has joined Public “Office Hours”
Mauricio Wyler has joined Public “Office Hours”
Jeremy Bouse has joined Public “Office Hours”
Michael Jenkins has joined Public “Office Hours”
Jim C has joined Public “Office Hours”
Matt Calhoun has joined Public “Office Hours”
Erik Osterman (Cloud Posse) has joined Public “Office Hours”
Zachary Loeber has joined Public “Office Hours”
Sherif Abdel-Naby has joined Public “Office Hours”
Jim Park has joined Public “Office Hours”
shilpa nimbalkar has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Tim Gourley has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Oliver Schoenborn has joined Public “Office Hours”
Amer Zec has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Oscar Blanco has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Darrin Freeman has joined Public “Office Hours”
An open-source release orchestration & CI/CD platform | Simplified software delivery workflow for kubernetes |
Web based CI/CD Platform for Kubernetes
padriano baba has joined Public “Office Hours”
Sherif Abdel-Naby has joined Public “Office Hours”
The following limitations apply to Amazon Aurora Serverless v2 (preview):
Sherif Abdel-Naby has joined Public “Office Hours”
dario erregue has joined Public “Office Hours”
Extend your AWS IAM switching roles by Chrome extension, Firefox add-on, or Edge add-on
Alfred is a productivity application for macOS, which boosts your efficiency with hotkeys, keywords and text expansion. Search your Mac and the web, and control your Mac using custom actions with the Powerpack.
Sujith SL has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Do you design software with a big requirements doc upfront or let architecture emerge during agile processes? Is there a middle ground?
Clipboard manager for macOS which does one job - keep your copy history at hand. Lightweight. Open source. No fluff.
Say hello to Owly, a cute little fellow who lives in your Mac’s menu bar and does its best to prevent your Mac from automatically sleeping. What this means is that Owly ensures your Mac’s screen never goes dim, no screen savers appear and that your Mac doesn’t enter sleep mode. By right clicking t…
Patirck Jones has joined Public “Office Hours”
Mazin Ahmed has joined Public “Office Hours”
PePe Amengual has joined Public “Office Hours”
tfquery: Run SQL queries on your Terraform infrastructure. Query resources and analyze its configuration using a SQL-powered framework.
2022-03-03
I have a question, guys.. Its pretty common to render static pages for docs purposes directly from Github Action or Gitlab Pipeline ( there is also Cloudflare Pages ), but seems that access control is always “public”, even if its a private repo, unless You pay for Github Enteprise. There are fullblown CMSs backed by git like NetlfyCMS, or unbaked solution like Backstage with theirs TechDocs. So I am asking, is there any other alternative that can support private repositories and authentication like from Github provider itself? Seems silly to me to bake static docs to container and deploy it behind some oidc proxy. Ideas? P.S. ah, i just missed officehours
Interesting, I think you can protect your pages hosted in cloudflare using Cloudflare workers: https://www.maxivanov.io/how-to-password-protect-your-website-with-cloudflare-workers/
Use Cloudflare Workers to add password protection on top of a website or API.
Hmm, hope theres some OIDC implementation for using with Github Oauth
Yea, it’s such a bummer that private pages is an enterprise feature
PubSub+ helps enterprises design, deploy and manage event-driven architectures across hybrid cloud, multi-cloud and IoT environments, so they can be more integrated and event-driven.
2022-03-07
Learn more about GitLab Critical Security Release: 14.8.2, 14.7.4, and 14.6.5 for GitLab Community Edition (CE) and Enterprise Edition (EE).
2022-03-09
@here office hours is starting in 30 minutes! Remember to post your questions here.
sweet - for the folks using EKS how do you avoid IP exhaustion? Any use case to avoid this?
Attach an extra CIDR (100.64.N.0/16
) and create the subnets needed, then assign those per AZ as per https://docs.aws.amazon.com/eks/latest/userguide/cni-custom-network.html via one ENIConfig
resource per AZ and configure AWS_VPC_K8S_CNI_CUSTOM_NETWORK_CFG
as per the guide as well
By default, when new network interfaces are allocated for pods, ipamD uses the security groups and subnet of the node’s primary network interface. You might want your pods to use a different security group or subnet, within the same VPC as your control plane security group. For example:
cc @fdrescher
Yup, a VPC can have its own /16
and then you can add 4 extra /16
s!
Also, https://aws.amazon.com/blogs/containers/amazon-vpc-cni-increases-pods-per-node-limits/ and https://aws.amazon.com/blogs/containers/amazon-eks-launches-ipv6-support/
As of August 2021, Amazon VPC Container Networking Interface (CNI) Plugin supports “prefix assignment mode”, enabling you to run more pods per node on AWS Nitro based EC2 instance types. To achieve higher pod density, the VPC CNI plugin leverages a new VPC capability that enables IP address prefixes to be associated with elastic network […]
The ongoing growth of the internet, particularly in the fields of mobile applications, IoT, and application modernization, has led to an industry-wide move to IPv6. With 128 bits of address space, IPv6 can provide 340 undecillion IP addresses, compared to 4.3 billion IPv4 addresses. Over the last several years, Amazon Web Services (AWS) has added […]
@Kerri Rist let’s leave on the agenda for next week since we didn’t get to it
I have a couple of questions regarding hosting .NET apps on AWS w/ IIS:
- Are there any AMIs that you would recommend?
- Have you been able to avoid requiring RDP on the IIS instances?
- Do you know of any Terraform modules that are good for this?
In the past I have used AWS beanstalk for my .net/c# apps that required windows. It worked well for my usecase as I was allowed to use PaaS. I don’t know what the underlying AMI was built on but I have a feeling it was windows server core. I remember having to jump in via RDP and triage a handful of times and only being presented with a terminal.
@fdrescher has joined the channel
Isa Aguilar has joined Public “Office Hours”
Erik Osterman (Cloud Posse) has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Isaac M has joined Public “Office Hours”
Vlad Ionescu has joined Public “Office Hours”
Jim Park has joined Public “Office Hours”
Gavin Stevens has joined Public “Office Hours”
Kerri Rist (Cloud Posse) has joined Public “Office Hours”
mike dizon has joined Public “Office Hours”
dario erregue has joined Public “Office Hours”
Clayton Olley has joined Public “Office Hours”
venkata mutyala has joined Public “Office Hours”
Ben Azoulay has joined Public “Office Hours”
mike dizon has joined Public “Office Hours”
Paul T has joined Public “Office Hours”
Connor High has joined Public “Office Hours”
David Hawthorne has joined Public “Office Hours”
Jim C has joined Public “Office Hours”
Eric Berg has joined Public “Office Hours”
Tim Gourley has joined Public “Office Hours”
Jesus Martinez has joined Public “Office Hours”
Darrin Freeman has joined Public “Office Hours”
Matt Calhoun has joined Public “Office Hours”
Russell Sherman has joined Public “Office Hours”
Mauricio Wyler has joined Public “Office Hours”
Charles Smith has joined Public “Office Hours”
emem emem has joined Public “Office Hours”
Paul Bullock has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Andrew Elkins has joined Public “Office Hours”
Ben Smith (Cloud Posse) has joined Public “Office Hours”
Sherif Abdel-Naby has joined Public “Office Hours”
If you are working on unreleased features, you can password protect feature branches that are not ready to be accessed publicly.
Matt Gowie has joined Public “Office Hours”
stelios L has joined Public “Office Hours”
Abe Olü has joined Public “Office Hours”
Michael Holt has joined Public “Office Hours”
Michael Jenkins has joined Public “Office Hours”
Amer Zec has joined Public “Office Hours”
@Erik Osterman (Cloud Posse) — For next time, I would love to hear and discuss more about ya’lls culture around Root Modules / Components only tracking main
. Specifically, as soon as an engineer merges a change is it then their responsibility to push that change through all environments? Do you ever rack up too many changes that haven’t been applied to stage / prod? Do you have systems in place to avoid that?
I’ve probably discussed this before, but I’ve versioned root module changes for one of my largest clients using Git Flow with some custom Spacelift policies to enable that flow… And I’m pretty sure I wouldn’t do it again
2022-03-10
Noteworthy for next office-hours — https://sweetops.slack.com/archives/CCT1E7JJY/p1646926352409299 (at least I’m excited about this)
Leapp just released v0.10.0 — https://www.leapp.cloud/releases
Super excited about this release as it enables logging into the AWS console from Leapp, which was my major feature request before being able to fully switch away from aws-vault
. If any of ya’ll are using aws-vault
then be sure to check out Leapp — It’s a vastly better tool.
2022-03-12
CloudQuery enables you to assess, audit, and evaluate the configurations of your cloud assets.
2022-03-15
Plugin for Helm to integrate the sigstore ecosystem
2022-03-16
@here office hours is starting in 30 minutes! Remember to post your questions here.
Question: Whats everyone’s experience installing/running https://goteleport.com/ on k8s? Any 1337 hax0rz to be aware of?
we’re running this in production. I work for a big FIntech. It’s pretty good - gives us all the compliance features we want. No ssh key management required.
Any “ah-ha!” moments you’ve had? Or did it just work totally as expected out of the box?
tbh - another team set up Teleport. All I can say as a user is that it works very nicely - the workflow is not onerous - you login with SSO and it just all works nicely. You can quite easily provision instances with ssh and you get kubeconfig files according to your level of access automagically
thanks!! this is awesome to hear!
Question: Whats everyone’s experience with https://crossplane.io/?
@emem i remember you had a question, but don’t recall what it was - can you share?
Erik Osterman (Cloud Posse) has joined Public “Office Hours”
ryan smith has joined Public “Office Hours”
Jesus Martinez has joined Public “Office Hours”
Mauricio Wyler has joined Public “Office Hours”
David Hawthorne has joined Public “Office Hours”
Christopher Picht has joined Public “Office Hours”
Matt Gowie has joined Public “Office Hours”
Matt Calhoun has joined Public “Office Hours”
Isa Aguilar has joined Public “Office Hours”
zvi blitsman has joined Public “Office Hours”
Jhane Thomas has joined Public “Office Hours”
Sungho Spark has joined Public “Office Hours”
Waqar Ahmed has joined Public “Office Hours”
Igor Miltchman has joined Public “Office Hours”
Andy Roth has joined Public “Office Hours”
venkata mutyala has joined Public “Office Hours”
Ola Ade has joined Public “Office Hours”
Michael Jenkins has joined Public “Office Hours”
HashiCorp Cloud Platform (HCP) is a fully managed platform offering HashiCorp products as a service to automate infrastructure on any cloud.
Paul Bullock has joined Public “Office Hours”
Jim Park has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Zachary Loeber has joined Public “Office Hours”
Eric Berg has joined Public “Office Hours”
Anere Faithful has joined Public “Office Hours”
Amer Zec has joined Public “Office Hours”
Michael Sew has joined Public “Office Hours”
Michael Jenkins has joined Public “Office Hours”
Michael Sew has joined Public “Office Hours”
stelios L has joined Public “Office Hours”
I’m curious if someone could expand on crossplane vs ACK?
To me it seems like it’s the same idea with CloudFormation / CDK vs Terraform. ACK is just AWS resources and Crossplane enables any API resources through a Terraform-like provider model.
I just want to drop a note of love for https://github.com/cycjimmy/semantic-release-action
GitHub Action for Semantic Release
Rashid Boyko has joined Public “Office Hours”
Topic / Questions for next week — How are folks approaching interviewing candidates for DevOps positions nowadays? What questions do you ask? What has worked and what hasn’t?
2022-03-17
2022-03-19
2022-03-23
@here office hours is starting in 30 minutes! Remember to post your questions here.
what is the pros and cons of using EKS managed vs Self managed node groups?
Sorry we didn’t get to this today
will add for agenda next week
what’s the url to veiw live sessions?
Andy Miguel (Cloud Posse) has joined Public “Office Hours”
Erik Osterman (Cloud Posse) has joined Public “Office Hours”
Manish Khadka has joined Public “Office Hours”
Jim Park has joined Public “Office Hours”
Vlad Ionescu has joined Public “Office Hours”
Jesus Martinez has joined Public “Office Hours”
Matt Calhoun has joined Public “Office Hours”
David Hawthorne has joined Public “Office Hours”
Jose Figueredo has joined Public “Office Hours”
Eric Berg has joined Public “Office Hours”
Allen Lyons has joined Public “Office Hours”
Charles Smith has joined Public “Office Hours”
Tim Gourley has joined Public “Office Hours”
Andrew Vitko has joined Public “Office Hours”
Andrew Thompson has joined Public “Office Hours”
Matt Gowie has joined Public “Office Hours”
Mninawa Mkoko has joined Public “Office Hours”
Jhane Thomas has joined Public “Office Hours”
Isa Aguilar has joined Public “Office Hours”
Andrew Elkins has joined Public “Office Hours”
Gabriel Boie has joined Public “Office Hours”
Richard Richard has joined Public “Office Hours”
Ross Rfd has joined Public “Office Hours”
Amer Zec has joined Public “Office Hours”
links from today’s session
• https://twitter.com/jschauma/status/1506459390160871432?s=21
• https://github.com/SummitRoute/imdsv2_wall_of_shame
• https://github.com/innovationnorway/terraform-provider-tfvars
• https://github.com/jrhouston/terraform-provider-dotenv
• https://github.com/nicolai86/terraform-provider-aws-download
• https://github.com/hashicorp/terraform-provider-aws/releases/tag/v3.75.0
• https://github.com/cloudposse/terraform-aws-lambda-function
Christopher Picht has joined Public “Office Hours”
Enes Cetinkaya has joined Public “Office Hours”
Oskar Maria Grande has joined Public “Office Hours”
Uwaila Adams has joined Public “Office Hours”
Chocks Subramanian has joined Public “Office Hours”
Listening to https://www.youtube.com/watch?v=Qh3VfLFBQnU RE: coding exercises. Thanks @Andy Miguel for posting in the zoom chat
Yeah — Thanks again @Andy Miguel. I just listened through as well.
2022-03-24
2022-03-28
2022-03-30
There now seems to be an ability to close AWS Accounts: https://docs.aws.amazon.com/organizations/latest/userguide/orgs_manage_accounts_close.html
Close, delete, or suspend an AWS account that you no longer need.
Yeah was coming here to post about this as well. https://twitter.com/0xdabbad00/status/1508884966322495488?s=21&t=A2nBYI4LgyVgf5apZrjH3w
Close, delete, or suspend an AWS account that you no longer need.
Curious to know if people using Google Cloud have experienced an increase in cost. https://www.lastweekinaws.com/blog/google-cloud-alters-the-deal/
Google increases cloud pricing
@here office hours is starting in 30 minutes! Remember to post your questions here.
Got good points in this thread https://sweetops.slack.com/archives/CB6GHNLG0/p1648583077096599
Hi there, what do you do when you need something that hasn’t been implemented in provider terraform-provider-aws yet? I’m missing this merge request https://github.com/hashicorp/terraform-provider-aws/pull/21766
Erik Osterman (Cloud Posse) has joined Public “Office Hours”
Vlad Ionescu has joined Public “Office Hours”
Andy Miguel (Cloud Posse) has joined Public “Office Hours”
Marc Slayton has joined Public “Office Hours”
Charles Smith has joined Public “Office Hours”
Michael Jenkins has joined Public “Office Hours”
Allan Mohr has joined Public “Office Hours”
Isa Aguilar has joined Public “Office Hours”
Tony Scott has joined Public “Office Hours”
David Hawthorne has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Eric Berg has joined Public “Office Hours”
Niv Weiss has joined Public “Office Hours”
dag viggo lokoeen has joined Public “Office Hours”
Obi One has joined Public “Office Hours”
Scott Mathson has joined Public “Office Hours”
Olad Oke has joined Public “Office Hours”
Sherif Abdel-Naby has joined Public “Office Hours”
Mazin Ahmed has joined Public “Office Hours”
Matt Gowie has joined Public “Office Hours”
sundar anga has joined Public “Office Hours”
Chocks Subramanian has joined Public “Office Hours”
Tim Gourley has joined Public “Office Hours”
Andrew Thompson has joined Public “Office Hours”
Learn from Docker experts to simplify and advance your app development and management with Docker. Stay up to date on Docker events and new version announcements!
Connor High has joined Public “Office Hours”
Clayton Olley has joined Public “Office Hours”
Chocks Subramanian has joined Public “Office Hours”
links from today’s session
• https://techcrunch.com/2022/03/30/docker-founder-launches-dagger-a-new-devops-platform/
• https://www.theverge.com/2022/3/29/23002138/google-docs-markdown-support-formatting-update
• https://github.com/Wilfred/difftastic
• https://github.com/roboll/helmfile/issues/1824
• https://github.com/hashicorp/terraform/releases/tag/v1.2.0-alpha-20220328
• https://www.theregister.com/2022/03/24/github_outage_details/
• https://github.com/hashicorp/terraform-provider-aws/issues/23930
• https://www.lastweekinaws.com/blog/google-cloud-alters-the-deal/
• https://aws.amazon.com/about-aws/whats-new/2022/03/aws-lambda-configure-ephemeral-storage/
• https://aws.amazon.com/about-aws/whats-new/2022/03/aws-proton-terraform-open-source/
• https://aws.amazon.com/about-aws/whats-new/2022/03/amazon-rds-itemized-billing-rds-iops-backup/
Jailson Silva has joined Public “Office Hours”
Alexandr Vorona has joined Public “Office Hours”
Asis Asis has joined Public “Office Hours”
Oliver Schoenborn has joined Public “Office Hours”
Mohammed Almusaddar has joined Public “Office Hours”
Yusuf has joined Public “Office Hours”
Isaac M has joined Public “Office Hours”
The so-called ‘Spring4Shell’ bug has cropped up, so to speak, and could be lurking in literally millions of Java applications.
Ross Rfd has joined Public “Office Hours”
wasim k has joined Public “Office Hours”
Prevent Kubernetes misconfigurations from reaching production (again )! Datree is a CLI tool to ensure K8s manifests and Helm charts follow best practices as well as your organization’s policies. See our docs: https://hub.datree.io
Jim C has joined Public “Office Hours”
Starting in InfoSec - 101
James Corteciano has joined Public “Office Hours”
stelios L has joined Public “Office Hours”
Spring4Shell: Spring core RCE vulnerability
james has joined Public “Office Hours”
Oliver Schoenborn has joined Public “Office Hours”