Explore - Hachyderm.io
A Spiral Amongst Thousands
Self-hosting Mastodon on AWS using Nomad
With Twitter being a mess at the moment, I decided to try out Mastodon as an alternative. Mastodon is a federated social media platform, built on top of a protocol called ActivityPub. It can be self-hosted, letting you own your data, and I wanted to do so using Nomad as a cluster orchestrator. This post shows how I did it, and will hopefully inspire you to give Mastodon a try if you haven’t already! You can find me on the Fediverse at @[email protected] 🐘.
The technology behind GitHub’s new code search | The GitHub Blog
A look at what went into building the world's largest public code search index.
Blog: k8s.gcr.io image registry will be frozen from the 3rd of April 2023
Authors : Mahamed Ali (Rackspace Technology)
The Kubernetes project runs a community-owned image registry called registry.k8s.io to host its container images. On the 3rd of April 2023, the old registry k8s.gcr.io will be frozen and no further images for Kubernetes and related subprojects will be pushed to the old registry.
This registry registry.k8s.io replaced the old one and has been generally available for several months. We have published a blog post about its benefits to the community and the Kubernetes project. This post also announced that future versions of Kubernetes will not be available in the old registry. Now that time has come.
What does this change mean for contributors:
If you are a maintainer of a subproject, you will need to update your manifests and Helm charts to use the new registry.
What does this change mean for end users:
1.27 Kubernetes release will not be published to the old registry.
Patch releases for 1.24, 1.25, and 1.26 will no longer be published to the old registry from April. Please read the timelines below for details of the final patch releases in the old registry.
Starting in 1.25, the default image registry has been set to registry.k8s.io . This value is overridable in kubeadm and kubelet but setting it to k8s.gcr.io will fail for new releases after April as they won’t be present in the old registry.
If you want to increase the reliability of your cluster and remove dependency on the community-owned registry or you are running Kubernetes in networks where external traffic is restricted, you should consider hosting local image registry mirrors. Some cloud vendors may offer hosted solutions for this.
Timeline of the Changes:
k8s.gcr.io will be frozen on the 3rd of April 2023
1.27 is expected to be released on the 12th of April 2023
The last 1.23 release on k8s.gcr.io will be 1.23.18 (1.23 goes EoL before the freeze)
The last 1.24 release on k8s.gcr.io will be 1.24.12
The last 1.25 release on k8s.gcr.io will be 1.25.8
The last 1.26 release on k8s.gcr.io will be 1.26.3
What's next
Please make sure your cluster does not have dependencies on old image registry. For example, you can run this command to list the images used by pods:
kubectl get pods --all-namespaces -o jsonpath = "{.items[*].spec.containers[*].image}" |\
tr -s '[[:space:]]' '\n' |\
sort |\
uniq -c
There may be other dependencies on the old image registry. Make sure you review any potential dependencies to keep your cluster healthy and up to date.
Acknowledgments
Change is hard , and evolving our image-serving platform is needed to ensure a sustainable future for the project. We strive to make things better for everyone using Kubernetes. Many contributors from all corners of our community have been working long and hard to ensure we are making the best decisions possible, executing plans, and doing our best to communicate those plans.
Thanks to Aaron Crickenberger, Arnaud Meukam, Benjamin Elder, Caleb Woodbine, Davanum Srinivas, Mahamed Ali, and Tim Hockin from SIG K8s Infra, Brian McQueen, and Sergey Kanzhelev from SIG Node, Lubomir Ivanov from SIG Cluster Lifecycle, Adolfo García Veytia, Jeremy Rickard, Sascha Grunert, and Stephen Augustus from SIG Release, Bob Killen and Kaslin Fields from SIG Contribex, Tim Allclair from the Security Response Committee. Also a big thank you to our friends acting as liaisons with our cloud provider partners: Jay Pipes from Amazon and Jon Johnson Jr. from Google.
Dell is cutting 6,650 jobs amid falling demand for PCs
PC shipments reportedly fell by 37 percent YoY in Q4.
GPTed: using GPT-3 for semantic prose-checking
GPT-3 makes a biased, but surprisingly useful prose-checker.
British steel industry supplier Vesuvius ‘currently managing cyber incident’
Vesuvius Plc confirmed that the incident “involved unauthorized access to our systems,” but it did not provide further details.
Banning Noncompetes Is Good for Innovation
A ban on noncompetes, like the one proposed in the U.S. by the Federal Trade Commission, is not just good for workers. It’s good for companies and innovation in the long run. By letting workers share in the benefits of their innovations, noncompetes motivate them to work harder, make it easier for them to start new companies, and make the overall economy more dynamic and competitive.
OpenSSH: Release Notes
OpenSSH release notes
Regular Expressions make me feel like a powerful wizard - and that's not a good thing
(This is a rant because I’m exhausted after debugging something. If you’ve made RegEx your whole personality, I’m sorry.) The other day I had to fix a multi-line Regular Expressio…
What’s Ahead in 2023? · Backstage Software Catalog and Developer Platform
# What’s Ahead in 2023?
Join Us at the First OSS Security Meetup in Tokyo, Japan - Open Source Security Foundation
We are very excited to present at the first ever OSS Security Meetup in Japan, on February 28 in Tokyo, hosted by Open Source Security Foundation (OpenSSF) Members. We aim to create a place where people with the same awareness and challenges related to OSS security can gather, share information mainly in Japanese, and move forward together.
Support Maintainers without SBOM
I got a lot of engagement and discussions over the last month around “I am not a supplier”. I am happy to see the conversation happening. One of the particular topics made me a little angry though. I heard multiple times the argument that some organizations want to support maintainers financially, to ensure the sustainability of their Digital Infrastructure. But they cannot until they have a working Software Bill of Materials (SBOM), because otherwise, they cannot know who to direct the money to.
Apple could introduce a pricier iPhone ‘Ultra’ in 2024
The device would sit above the iPhone Pro and Pro Max.
A mesh of meshes is more appealing. Think low, medium, high security models operating via WireGuard | Chris's Wiki :: blog/sysadmin/VPNMeshAppeal
Security Principles: Addressing underlying causes of risk in complex systems
On December 14th, 2022, in collaboration with technologists on team CTO and attorneys in BCP, I gave a presentation at the Federal Trade Commission’s
Gates is deeply flawed but spot on with my knowledge of things, “Transmission is key to our clean energy future.” | The key to a clean energy future
If you care about climate change, you should care about transmission.
Last Week on My Mac: Why are security updates still so unreliable?
Of the 16 security software updates in the last 8 months, only 3 have installed correctly. But isn’t the purpose of the Content Caching server to make updates quicker and easier?
Kubernetes in the wild report 2023 | Dynatrace news
The “Database as Code” Manifesto | database-as-code
The most romantic date night restaurants in Detroit
Mirantis acquires Shipa
Mirantis today announced that it has acquired Shipa, a startup that helps developers more easily deploy and manage cloud-native apps.
Netlify acquires front-end platform Gatsby
Netlify today announced that it has acquired Gatsby, a frontend web development framework.
The Kremlin Has Entered Your Telegram Chat
Russian antiwar activists placed their faith in Telegram, a supposedly secure messaging app. How does Putin’s regime seem to know their every move?
ISP admits lying to FCC about size of network to block funding to rivals
ISP gave FCC false coverage information to prevent others from getting grants.
Wag the Dirigible - emptywheel
An open thread to talk the stupidest Chinese spying balloon take.
Blinken to reschedule China trip once balloon turbulence dies down: analysts
Both countries are keen to keep up high-level dialogue to manage their differences, observers say.
Rohit Ghumare | That #DevOps Guy✍️ on Twitter
Learn DevOps by playing games 🎮1. DevOpshttps://t.co/JzrPfmPZM02. Linuxhttps://t.co/hT6XkaaFsG3. DevOps Party Gameshttps://t.co/wSTWaMlAK54. Githttps://t.co/Ay4nXTAX9U5. Python, JavaScript, Java https://t.co/mGAMKY2LLX6. 25+ languageshttps://t.co/TI3vAufL9m— Rohit Ghumare | That #DevOps Guy✍️ (@ghumare64) February 4, 2023
How Managers Can Address Their Own Biases Around Mental Health
Discrimination against employees because of their health — including mental health — is illegal. While HR can make sure the right supports are in place, managers should also make sure that stigma isn’t impacting their day-to-day decisions about their teams. For example, how can a manager prevent their personal views on mental health from biasing their task assignment or performance reviews of an employee who’s disclosed a mental health challenge? To reduce the impact of stigma after a mental health disclosure, managers should acknowledge their biases, lead with curiosity, solve collaboratively, and promote a supportive work culture.