Suggested Reads

Suggested Reads

54794 bookmarks
Newest
Why Isn’t Your Strategy Sticking?
Why Isn’t Your Strategy Sticking?
It’s insufficient to just share the goals and objectives of your strategy and hope implementation will succeed. In this article, the author explains how to shift from an operational to a contextual mindset so that you can better identify the hidden obstacles that may be thwarting your strategy’s implementation so you can address them before they take root.
·hbr.org·
Why Isn’t Your Strategy Sticking?
How to Write SQL Queries
How to Write SQL Queries
Learn how to use SELECT, FROM, JOIN, WHERE, GROUP BY, HAVING, ORDER BY, OFFSET and FETCH to retrieve data with SQL.
·thenewstack.io·
How to Write SQL Queries
DevOps Toolkit - Crossplane Composition Functions | Tutorial (Part 5) - https://www.youtube.com/watch?v=XSzKs97Ls4g
DevOps Toolkit - Crossplane Composition Functions | Tutorial (Part 5) - https://www.youtube.com/watch?v=XSzKs97Ls4g

Crossplane Composition Functions | Tutorial (Part 5)

In this fifth installment of our Crossplane tutorial series, we are exploring Composition Functions. They allow us infinite flexibility to ...

via YouTube https://www.youtube.com/watch?v=XSzKs97Ls4g

·youtube.com·
DevOps Toolkit - Crossplane Composition Functions | Tutorial (Part 5) - https://www.youtube.com/watch?v=XSzKs97Ls4g
Flipping Pages: An analysis of a new Linux vulnerability in nf_tables and hardened exploitation techniques
Flipping Pages: An analysis of a new Linux vulnerability in nf_tables and hardened exploitation techniques
A tale about exploiting KernelCTF Mitigation, Debian, and Ubuntu instances with a double-free in nf_tables in the Linux kernel, using novel techniques like Dirty Pagedirectory. All without even having to recompile the exploit for different kernel targets once.
·pwning.tech·
Flipping Pages: An analysis of a new Linux vulnerability in nf_tables and hardened exploitation techniques
Week Ending March 24 2024
Week Ending March 24 2024

Week Ending March 24, 2024

https://lwkd.info/2024/20240327

Developer News

Kubernetes Contributor Summit happened last week and was attended by more than 220 contributors. As an event the day before KubeCon EU 2024, we had multiple sessions around the Kubernetes project as well as Q&As with the CNCF team and the Kubernetes Steering committee. There also have been four unconference sessions for example, revisiting Kubernetes hardware resource model. A big thanks to the community organizers & volunteers. Pictures can be found here.

The CFPs for KubeCon + CloudNativeCon and Open Source Summit China is open at https://events.linuxfoundation.org/kubecon-cloudnativecon-open-source-summit-ai-dev-china/

Release Schedule

Next Deadline: Release Day, April 17th

Kubernetes 1.30.0-rc.0 is live!. Also, the docs freeze is now in effect!

KEP of the Week

KEP 2876: CRD Validation Expression Language

This KEP proposes adding Common Expression Language (CEL) to be integrated into CRDs so that validation can be done without the use of webhooks. It’s lightweight and can be run in the kube-apiserver. It also supports pre-parsing and typechecking of expressions, allowing syntax and type errors to be caught at CRD registration time.

This KEP graduated to stable in the v1.29 release.

Subprojects and Dependency Updates

ocicni to v0.4.2 Use ‘ifconfig -j’ to access jail network state

containerd to v1.7.14 Register imagePullThroughput and count with MiB. Move high volume event logs to Trace level also v1.6.30

nerdctl to v1.7.5 update containerd (1.7.14), slirp4netns (1.2.3), CNI plugins (1.4.1), RootlessKit (2.0.2), Kubo (0.27.0), imgcrypt (1.1.10)

etcd to v3.4.31 mvcc: print backend database size and size in use in compaction logs

prometheus to v2.51.0 Relabel rules for AlertManagerConfig; allows routing alerts to different alertmanagers

via Last Week in Kubernetes Development https://lwkd.info/

March 27, 2024 at 04:28PM

·lwkd.info·
Week Ending March 24 2024
Linkerd service mesh production users will soon have to pay
Linkerd service mesh production users will soon have to pay

Linkerd service mesh production users will soon have to pay

The CNCF's Linkerd service mesh project will soon change its approach to open source code distribution in order to fund the project's future development. The first version of the Linkerd project pre-dated its chief competitor, Istio. Linkerd's original developers coined the term service mesh.

Tags:

via Pocket https://www.techtarget.com/searchitoperations/news/366570820/Linkerd-service-mesh-production-users-will-soon-have-to-pay

March 27, 2024 at 03:57PM

·techtarget.com·
Linkerd service mesh production users will soon have to pay
Explanation
Explanation

Explanation

We model the error introduce by Bernuoulli sampling to a number of statistics that are relevant for IT operations. This sampling model used by OpenTelemetry to sample on trace-level (although the spec is not clear on this.)

Tags:

via Pocket https://www.heinrichhartmann.com/sampling/

March 27, 2024 at 03:17PM

·heinrichhartmann.com·
Explanation
Torsten Volks Post
Torsten Volks Post
Docker, WASM, OpenTelemetry, and eBPF were the top themes at KubeCon 2024. Chart is based on 11,998 Tweets that include the #KubeCon tag between March 3 and… | 10 comments on LinkedIn
·linkedin.com·
Torsten Volks Post
Inbound Marketing Manager Open Source Strategy and Marketing
Inbound Marketing Manager Open Source Strategy and Marketing
AWS Open Source Strategy and Marketing (OSSM) is seeking an experienced content marketing manager to edit, project manage, and execute on a high-quality inbound marketing program to tell AWS’s most important open source stories. You will work with service teams and marketers across the entire AWS portfolio to deliver open source messaging and raise awareness of our open source projects, products, and services among developers through content. Because we are independent of any single product or service, the OSSM team operates in one of the most unique and potentially impactful spaces at AWS. This role may sit in Atlanta GA, Seattle WA or Portland OR. Relocation to these locations only from within the US only.Key job responsibilities• Develop a content calendar and oversee sourcing and production. Write and edit blog posts, wiki pages, web pages, presentations, field enablement, and other content for technical and non-technical audiences, with the ability to drive consistent messaging and unity across deliverables.• Define a strategy and mechanisms for scaling out message delivery and storytelling across teams. Create processes and workflows for ensuring high-quality content that supports core open source messaging and is accessible to and inclusive of diverse audiences.• Provide insight on the developer audience, messaging, and story reception to AWS service teams, marketers, and the field. Understand the needs and communication preferences of our internal customers and advocate for them. • Prioritize content development according to results, strategic alignment, style and branding guidelines, and legal requirements, among other priorities. • Demonstrate and execute solid project management experience and attention to detail, with the ability to learn new tools and processes quickly, and with excellent interpersonal and written communication skills. • Work closely with leaders and experts in open source communities, AWS subject matter experts, product marketers, and other stakeholders responsible for delivering messages to a large, globally distributed developer audience. • Up to 30 percent travel is required.A day in the lifeThe Open Source Strategy and Marketing (OSSM - pronounced “awesome”) team includes veterans that have worked for some of the industry’s top open source companies and foundations. Based on this open source experience, we help service teams, the field, and others effectively engage with open source constituencies: project communities, media and analysts, and social media.Our mission is to help AWS deliver on two, tightly linked objectives: 1) to significantly increase the scope and value of our open source involvement and 2) to help customers and communities learn about our involvement and understand why it matters. About the teamAbout AWSDiverse ExperiencesAWS values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying. Why AWS?Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating — that’s why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.Inclusive Team CultureHere at AWS, it’s in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness.Mentorship & Career GrowthWe’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life BalanceWe value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve in the cloud. Sales, Marketing and Global Services (SMGS)AWS Sales, Marketing, and Global Services (SMGS) is responsible for driving revenue, adoption, and growth from the largest and fastest growing small- and mid-market accounts to enterprise-level customers including public sector. The AWS Global Support team interacts with leading companies and believes that world-class support is critical to customer success. AWS Support also partners with a global list of customers that are building mission-critical applications on top of AWS services.We are open to hiring candidates to work out of one of the following locations:Atlanta, GA, USA | Portland, OR, USA | Seattle, WA, USA
·amazon.jobs·
Inbound Marketing Manager Open Source Strategy and Marketing
Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects
Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects

Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects

Cloud computing has a significant environmental impact that is rapidly growing due to the rising demand for cloud services, especially with resource-intensive applications like Generative Artificial Intelligence (GenAI).

Tags:

via Pocket https://tag-env-sustainability.cncf.io/blog/2024-green-reviews-working-group-measuring-sustainability/

March 26, 2024 at 10:10AM

·tag-env-sustainability.cncf.io·
Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects
Letter to U.S. Commerce Secretary Raimondo urging protection of openness and transparency in AI
Letter to U.S. Commerce Secretary Raimondo urging protection of openness and transparency in AI
The OSI contributed, along with other members of civil society and academia, to a letter drafted by Mozilla and the Center for Democracy & Technology (CDT) asking the White House and Congress to exercise great caution when considering whether and how to regulate the publication of open models.
·opensource.org·
Letter to U.S. Commerce Secretary Raimondo urging protection of openness and transparency in AI
That is some really old code | Canonical expands Long Term Support to 12 years starting with Ubuntu 14.04 LTS | Ubuntu
That is some really old code | Canonical expands Long Term Support to 12 years starting with Ubuntu 14.04 LTS | Ubuntu
Today, Canonical announced the general availability of Legacy Support, an Ubuntu Pro add-on that expands security and support coverage for Ubuntu LTS releases to 12 years. The add-on will be available for Ubuntu 14.04 LTS onwards.  Long term supported Ubuntu releases get five years of standard security maintenance on the main Ubuntu repos […]
·ubuntu.com·
That is some really old code | Canonical expands Long Term Support to 12 years starting with Ubuntu 14.04 LTS | Ubuntu
Attack Using Fake Python Infrastructure
Attack Using Fake Python Infrastructure
The Checkmarx Research team recently discovered an attack campaign targeting the software supply chain, with evidence of successful exploitation of multiple victims. The threat actors used multiple TTPs in this attack, including account takeover via stolen browser cookies, contributing malicious code with verified commits, setting up a custom Python mirror, and publishing malicious packages to the PyPi registry. This blog will cover the attack and the techniques used by the attackers.
·checkmarx.com·
Attack Using Fake Python Infrastructure
KubeCon Wrap Up | Emily Omier
KubeCon Wrap Up | Emily Omier
I spent most of last week at KubeCon EU in Paris, which rumor has it was the largest KubeCon yet. What were my takeaways? Well, the first thing to come clean about is that I don’t usually go to a lot of talks at conferences — my priority is to use conferences to get face time with people I know. S
·emilyomier.com·
KubeCon Wrap Up | Emily Omier