Stepan

392 posts

Stepan banner
Stepan

Stepan

@stepanstipl

Senior Cloud Architect // @doitint 🚀 #k8s #gcp #golang

London Katılım Eylül 2015
201 Takip Edilen106 Takipçiler
Sabitlenmiş Tweet
Stepan
Stepan@stepanstipl·
Thinking about #Kubernetes 1.22 ? We have just released a new version of 𝗸𝘂𝗯𝗲𝗻𝘁 that covers all the resources removed in the upcoming 1.22 and future 1.25 K8S versions. github.com/doitintl/kube-…
English
0
2
5
0
Stepan retweetledi
Patrick Campbell
Patrick Campbell@Patticus·
10 years ago today @aaronsw took his own life after overly aggressive prosecution. He invented internet infrastructure. He defeated the greatest threat the Internet had ever seen. And you probably don't know who he is. You should. Here’s his story 🧵
Patrick Campbell tweet media
English
271
6.7K
22.6K
4.1M
Stepan
Stepan@stepanstipl·
👉 Kubent - finally a new release (0.6.0) is out - In-cluster auth - Checking additional annotations - Support for output files - Version flag - Increased coverage 🐳 And we now publish a Docker image -ghcr.io/doitintl/kube-no-trouble:0.6.0 🐳 github.com/doitintl/kube-…
English
0
0
0
0
Stepan
Stepan@stepanstipl·
⛵️ If you need to debug any issues with GKE/K8S API server, I recommend enabling Kubernetes control plane metrics [1] (needs 1.23.6 or later). Especially useful are `apiserver_admission*` to debug webhooks . Finally! 👏 [1]:cloud.google.com/blog/products/…
English
0
0
1
0
Stepan retweetledi
Anaïs Urlichs
Anaïs Urlichs@urlichsanais·
I tried to map open source, cloud native security scanners. Which ones did I miss? 👀 Note that I will not include tools that are dependent on other scanners under the hood or do not fit our definition of open source e.g. restrict # of scans that can be performed.
Anaïs Urlichs tweet media
English
46
86
472
0
Stepan
Stepan@stepanstipl·
🔐 Google's COS - Container-Optimized OS (the OS you probably use if you run GKE 😉) - added nice support for CIS benchmark hardening and scanning: - Level 1 compliance by default - Level 2 as easy as `systemctl start cis-level2.service` #GoogleCloud cloud.google.com/container-opti…
English
0
0
0
0
Stepan
Stepan@stepanstipl·
BigQuery now supports the creation of 👉 search indexes 👈 and a SEARCH function. (in Preview) This enables you to use Google Standard SQL to efficiently find data elements in unstructured text and semi-structured data. @googlecloud cloud.google.com/bigquery/docs/…
English
0
0
1
0
Stepan
Stepan@stepanstipl·
Good read ☸️ - GKE Autopilot & how it works - OPA and why writing good policies is difficult - Why not rely on just one layer of 🔒 - Why build minimal containers - Why use tight RBAC policies - Why K8S webhooks while powerful, are also extremely dangerous unit42.paloaltonetworks.com/gke-autopilot-…
English
0
0
0
0
Stepan retweetledi
Fintan Ryan
Fintan Ryan@fintanr·
This is a big deal, we have been seeing a lot of interest in #Backstage from @SpotifyEng. Far more so than for most other @CloudNativeFdn projects entering the incubator phase, and far more enterprise interest. /cc @cloudzillion @TheMarkONeill #cloudnative
CNCF@CloudNativeFdn

Drumroll please 🥁 we're excited for the Backstage project from @SpotifyEng to move to the #CNCF Incubator! 🎤 Read more about the project: cncf.io/blog/2022/03/1…

English
2
5
16
0
Stepan
Stepan@stepanstipl·
GCP: For all the Terraform aficionados gcloud beta resource-config bulk-export \ --resource-format=terraform is a pretty useful command to export your resources in TF format, e.g. to bootstrap your declarative config. @googlecloud #terraform cloud.google.com/blog/products/…
English
0
0
0
0
Stepan
Stepan@stepanstipl·
🔐 Yes please - protect SSH access to GCE VMs with hardware key (FIDO/U2F) Now natively supported via OS Login (this is btw. a nice feature of OpenSSH 8.2+ which can generate FIDO token protected keys, even when not on GCP). @googlecloud cloud.google.com/blog/products/…
English
0
0
0
0
Stepan retweetledi
Seth Vargo
Seth Vargo@sethvargo·
Oh no 😱 my newest app accidentally logged my secret! Thankfully I'm trying out this new detection feature from @GoogleCloud that alerts me when my Secret Manager secrets appear anywhere in logs. We're looking for customers to try out this dope feature - DM if you're interested!
Seth Vargo tweet mediaSeth Vargo tweet media
English
8
21
176
0
Stepan
Stepan@stepanstipl·
👉 Compact placement 👈 policies are now available for GKE (in preview). Nodes are physically located close to each other, and this allows you to shave off some network latency. Typically used for HPC type of workloads. #GoogleCloud cloud.google.com/kubernetes-eng…
English
0
1
0
0