Semaine 2026-W20 · du 2026-05-11 au 2026-05-17
27 feeds · 195 articles traités · 40 sélectionnés · gemma4:e2b · 2026-05-11T08:28:05.264Z
GitLab Blog (Tier 1) · Publié : 2026-05-07 · 82.9/10
With GitLab 18.11 came good news for teams running GitLab on Kubernetes: Gitaly on Kubernetes is now generally available. Teams hosting GitLab on Kubernetes previously faced the challenge of maintaining a hybrid setup — running most GitLab components in Kubernetes while keeping Gitaly on virtual machines. This hybrid architecture made day-to-day operations more complex for those teams. Those days are over; Gitaly on Kubernetes is now an officially supported deployment option. The road to Kuberne
Grafana Blog (Tier 1) · Publié : 2026-05-06 · 75.1/10
So your database is slow. Now what? Grafana Cloud Database Observability already gives you visibility into your SQL queries with RED metrics, individual execution samples, wait event breakdowns, table schemas, and visual explain plans. But visibility is just the starting point. You can see that a query's P99 latency spiked, but what should you do about it? You can see wait events like wait/synch/mutex/innodb firing, but what does that actually mean? Thankfully, you can now use the new Grafana As
AWS DevOps Blog (Tier 1) · Publié : 2026-05-08 · 60.1/10
Introduction As modern applications evolve into complex ecosystems of serverless functions, microservices, and event-driven architectures, incident response becomes increasingly challenging. DevOps and SRE teams spend hours manually correlating data across observability tools and troubleshooting issues, racing against SLA deadlines. This reactive firefighting drains productivity, degrades reliability, and delays innovation. AWS DevOps Agent provides an opportunity […]
r/devops (Tier 1) · Publié : 2026-05-11 · 53.7/10
Hi I am an Architect in a small team and we're trying to implement observability solutions for our infra. We have had Zabbix for infra monitoring for years - owned and managed by our infra team. But we have been lacking at application monitoring and logging and we are implementing ELK platform and we decided to take Prometheus + Grafana for application monitoring. For the logging platform, we have an external partner who helps manage our on-prem instance. For the monitoring platform, our inf
r/devops (Tier 1) · Publié : 2026-05-10 · 52.2/10
Hello everyone, I was curious what learning resources y'all would recommend for becoming more knowledge about containers and Kubernetes in Spring of 2026? I've messed with Docker a bit, and have my personal website running via Docker Compose (Nginx, personal website, and Postgres all in one compose file). That's about the experience/knowledge I have surrounding containers. I've heard that Kubernetes the hard way is supposed to be good. I was also curious if anyone had any experie
Kubernetes Blog (Tier 1) · Publié : 2026-05-08 · 52.2/10
Volume group snapshots were introduced as an Alpha feature with the Kubernetes v1.27 release, moved to Beta in v1.32, and to a second Beta in v1.34. We are excited to announce that in the Kubernetes v1.36 release, support for volume group snapshots has reached General Availability (GA) . The support for volume group snapshots relies on a set of extension APIs for group snapshots . These APIs allow users to take crash-consistent snapshots for a set of volumes. Behind the scenes, Kubernetes uses a
Kubernetes Blog (Tier 1) · Publié : 2026-05-04 · 51.3/10
If you've ever tried to enforce a security policy across a fleet of Kubernetes clusters, you've probably run into a frustrating chicken-and-egg problem. Your admission policies are API objects, which means they don't exist until someone creates them, and they can be deleted by anyone with the right permissions. There's always a window during cluster bootstrap where your policies aren't active yet, and there's no way to prevent a privileged user from removing them. Kubernetes v1.36 introduces an
Kubernetes Blog (Tier 1) · Publié : 2026-05-05 · 51.0/10
In Kubernetes v1.36, Declarative Validation for Kubernetes native types has reached General Availability (GA). For users, this means more reliable, predictable, and better-documented APIs. By moving to a declarative model, the project also unlocks the future ability to publish validation rules via OpenAPI and integrate with ecosystem tools like Kubebuilder. For contributors and ecosystem developers, this replaces thousands of lines of handwritten validation code with a unified, maintainable fram
DevOps.com (Tier 1) · Publié : 2026-05-07 · 45.2/10
In today’s fast-paced software development landscape, Continuous Integration and Continuous Deployment (CI/CD) pipelines are essential for delivering applications efficiently. However, the speed and automation they offer can inadvertently introduce security vulnerabilities if not properly managed. Integrating security into CI/CD pipelines, often referred to as DevSecOps, is no longer optional; it’s a necessity. The Importance of […]
r/devops (Tier 1) · Publié : 2026-05-11 · 44.9/10
Hi, im currently working as an it admin,but my work are 95% devops related, working with azure devops. Fresh grad,no prior devops experience. I need to know, what is expected of me,by the time im already 1y in? I have been doing this for over 2months. Because rn eventho im the one who mostly handles the devops part, repo structure are still defined by the dev,who previously handled this (prior to me coming in),all commits are pushed to master (no 2nd-ary feature branches). I feel like eventho im
Golang Weekly (Tier 1) · Publié : 2026-05-08 · 44.6/10
#600 — May 8, 2026 Read the Web Version Go Weekly Go 1.26.3 and Go 1.25.10 Released with 11 Security Fixes — The headline issue is a module-proxy checksum bypass that lets untrusted proxies serve altered modules and Go toolchains, but areas as diverse as net/mail , go bug , net/http and html/template also get fixes. The proxy bug was found by an LLM, and over on Bluesky, Russ Cox apologized for its long-term presence. Go Security Team Azure HorizonDB at POSETTE: An Event for Postgres 2026 — Exp
Applied Go Weekly (newsletter) (Tier 1) · Publié : 2026-05-10 · 40.4/10
No More Excuses Hi , All my true readers can skip the first featured article. You don't have to be convinced anymore! For everyone else, if you're still not sure if Go is for you, read it. Blain Smith gives you gentle hints about how Go makes a difference. (Warning: NSFW.) After that, you'll have no more excuses for not trying Go. Trust me. –Christoph Featured articles Just Fucking Use Go When I read the author's name, I knew this article was going to be straightforward, to the point, and not qu
r/devops (Tier 1) · Publié : 2026-05-10 · 39.3/10
I just landed a DevOps internship, and I’m a little worried. I’m very familiar with Linux, Git, and Ansible. I’m not extremely strong in Python or Bash yet, but I’m actively learning scripting. I’ve also done a couple of CI/CD-related projects with Jenkins. I even used Claude to help simulate ticket-based tasks and real-world scenarios to prepare for the internship, and I’ve been learning the technologies listed in the job description. This is my first internship, so I’m wondering what else I sh
r/devops (Tier 1) · Publié : 2026-05-08 · 36.8/10
I’m reviewing an employment contract for a DevOps / systems engineering role and noticed an indemnity clause where the employee indemnifies the employer against “liabilities, claims, costs, damages, expenses and losses incurred by or made against the Employer by reason of any breach of this Agreement.” This struck me as quite broad, especially for an employee rather than a contractor/consultant. I asked a lawyer to review it, and they suggested narrowing it to something like: The Employee shall
The New Stack (Tier 1) · Publié : 2026-05-07 · 36.4/10
Keeping observability data locked behind the SRE job function is a mistake. Today’s leading companies are making operational data available The post Elastic architects reveal how to query observability data in plain English appeared first on The New Stack .
r/devops (Tier 1) · Publié : 2026-05-09 · 36.0/10
Hey guys. I’m a LatAm based DevOps. I didn’t study CompSci and I broke into this career by working on homelabs, getting courses and basically just practicing and learning in my own time. I’ve been in this industry for a bit over 5 years now and imposter syndrome has been hitting me hard but I genuinely love this career. Its been a great experience so far and I really love learning more about this career, new tools and all… Having said that… I feel a bit overwhelmed and would like to know if ther
DZone DevOps (Tier 1) · Publié : 2026-05-07 · 35.8/10
In highly automated engineering environments, the modern CI/CD pipeline has become a critical trust boundary. Every commit, build, and deployment represents an implicit decision to trust. If that trust is compromised, the pipeline does not just fail; it faithfully delivers compromise at scale . While a significant amount of security effort still centers on production defenses, the most effective attacks are increasingly targeting upstream, where artifacts are created and dependencies are resolve
r/devops (Tier 1) · Publié : 2026-05-11 · 35.4/10
I’m looking for some honest career advice from people currently working in tech, especially Business Analysts, Project Managers, Product Owners, Scrum Masters, DevOps Engineers, or anyone who transitioned between fields. For context, I previously worked as a Business Analyst / Technical Project Manager and hold both Scrum Master and Product Owner certifications. I was laid off last year and haven’t been able to secure another role in the IT/project space since then. I currently work as an AML Fi
r/devops (Tier 1) · Publié : 2026-05-11 · 35.4/10
We had a moment last year that made us realize our deployment process was a lot messier than we thought. Someone from compliance asked if we could show exactly what changed in production on a specific day and time. And honestly, we legit couldn’t. We had slack messages saying “deploying to prod,” but beyond that there wasn’t a clean audit trail. No reliable way to map production state back to Git. People had cluster access, small fixes were happening directly in Kubernetes, and over time prod dr
CNCF Blog (Tier 1) · Publié : 2026-05-06 · 34.1/10
I’ve spent enough time in and around cloud native infrastructure to know that we’re reasonably good at standardizing the theory. OpenTelemetry for instrumentation, Prometheus for metrics, Jaeger and Tempo for distributed tracing, Fluentd or Loki for...
Kubernetes Blog (Tier 1) · Publié : 2026-05-06 · 33.7/10
As Kubernetes clusters grow to tens of thousands of nodes, controllers that watch high-cardinality resources like Pods face a scaling wall. Every replica of a horizontally scaled controller receives the full stream of events from the API server, paying the CPU, memory, and network cost to deserialize everything, only to discard the objects it is not responsible for. Scaling out the controller does not reduce per-replica cost; it multiplies it. Kubernetes v1.36 introduces server-side sharded list
DZone DevOps (Tier 1) · Publié : 2026-05-04 · 33.7/10
Kubernetes is often introduced as a container orchestrator. That’s like calling a modern city “a collection of buildings.” Technically correct, but wildly incomplete. In reality, Kubernetes is a layered ecosystem where storage, compute, networking, security, and developer workflows interlock like gears in a precision machine. If one gear slips, everything grinds. If all align, you unlock a platform that scales, heals, and evolves with your applications.
The New Stack (Tier 1) · Publié : 2026-05-07 · 32.5/10
Kubernetes is complicated; everybody knows it. Logically enough, Kubernetes deployed as a cluster of collected and coalesced instances at “fleet The post How Microsoft is governing thousands of Kubernetes clusters without manual intervention appeared first on The New Stack .
Hacker News (Tier 1) · Publié : 2026-05-10 · 32.0/10
Article URL: https://nesbitt.io/2026/02/03/incident-report-cve-2024-yikes.html Comments URL: https://news.ycombinator.com/item?id=48086082 Points: 499 # Comments: 127
Kubernetes Blog (Tier 1) · Publié : 2026-05-07 · 31.5/10
Dynamic Resource Allocation (DRA) has fundamentally changed how platform administrators handle hardware accelerators and specialized resources in Kubernetes. In the v1.36 release, DRA continues to mature, bringing a wave of feature graduations, critical usability improvements, and new capabilities that extend the flexibility of DRA to native resources like memory and CPU, and support for ResourceClaims in PodGroups. Driver availability continues to expand. Beyond specialized compute accelerators
DevOps.com (Tier 1) · Publié : 2026-05-08 · 31.3/10
Security has long been the last item on the checklist. Code gets written, reviewed, merged—and then, somewhere down the line, a security team takes a look. That model worked when development moved at a human pace. It doesn’t work as well when AI writes and refactors code faster than any team can keep up with. […]
HashiCorp Blog (Tier 1) · Publié : 2026-05-04 · 30.3/10
Hybrid and multi-cloud estates create data silos. HCP Terraform powered by Infragraph provides a single source of truth to help optimize and secure infrastructure.
DZone DevOps (Tier 1) · Publié : 2026-05-08 · 30.3/10
The recent release of A2UI (Agent-to-User Interface) by Google introduces a standardized, open-source protocol for how AI agents render user interfaces . For MLOps, DevOps, and SRE teams, this moves beyond the brittle "text-only" paradigm of traditional ChatOps into a new era of Agentic Interfaces . The following DZone-style article explores how A2UI works and why it is a critical tool for operational workflows.
GitLab Blog (Tier 1) · Publié : 2026-05-07 · 29.9/10
Personal access tokens (PATs) authenticate most of the automation that runs in GitLab. When a token is issued with a broad scope like api or read_api , it extends permissions across many projects and groups. Fine-grained permissions for PATs, now in beta, let you scope a token to exactly the privileges the job requires — read access to one project's code, say, instead of read access across every project the user can reach. The case for narrowing PAT privileges A maintainer on 20 projects mig
SRE Weekly (Tier 1) · Publié : 2026-05-11 · 29.8/10
View on sreweekly.com A message from our sponsor, incident.io: Paging is just 10% of your incident workflow. incident.io’s 4-step framework turns migration into a forcing function for the other 90%: cut alert noise, fix service ownership, and build the on-call program your team actually deserves. Not all index scans are equal: How we cut query […]
DZone DevOps (Tier 1) · Publié : 2026-05-04 · 29.6/10
DevOps changed software delivery by making deployment, monitoring, and feedback continuous. But AI-driven systems are pushing those practices into new territory. Once applications start using LLMs, retrieval pipelines, tool-calling workflows, and autonomous agents, classic DevOps is no longer enough. You are not just deploying code. You are operating behavior. That is where AgentOps comes in.
DevOps.com (Tier 1) · Publié : 2026-05-08 · 29.3/10
A small internal tool was built over a weekend. An engineer used an AI coding assistant to generate most of the backend. A simple interface was added, a few API calls were wired together and within hours the app was live. The app worked. The app felt fast. The app looked like progress. No one […]
r/devops (Tier 1) · Publié : 2026-05-09 · 28.8/10
There was real momentum around server-side WASM a few years ago — runwasi, kwasm, Cloudflare Workers. What happened to it? Why has adoption slowed down so much? submitted by /u/c1rno123 [link] [comments]
r/devops (Tier 1) · Publié : 2026-05-07 · 28.5/10
Good afternoon everyone, I am in my first leadership position over a DevOps team. Been steadily learning the cadence of their work and skills, but one thing I am still confused by. Busy work - the daily bump and grind so to speak, as it pertains to 8-5 workload. In speaking with my teams, the ratio of planned vs unplanned (reactionary, “keep the lights on”) type of work is way out of skew. Like… 35% planned vs 65% unplanned firefighting. I’m a powershell scripter as part of my history, so I thin
r/devops (Tier 1) · Publié : 2026-05-09 · 28.3/10
Student, coming at this from a 'is this project worth doing' angle. Essentially, I’m trying to understand how much smaller teams actually think about metric cardinality in their observability setup. By “smaller,” I mean roughly 5–30 employees, or engineering teams without a dedicated SRE/observability team. In larger companies, it seems obvious (maybe), why cardinality matters. Too many time series, too much money spent. What I’m less sure about is whether this is a real pain point for s
The New Stack (Tier 1) · Publié : 2026-05-10 · 28.3/10
I still remember the first time we lost sleep over something that wasn’t a bug. It was a Tuesday. Grafana The post Why Prometheus couldn’t see Cilium metrics at 2 a.m. appeared first on The New Stack .
GitLab Blog (Tier 1) · Publié : 2026-05-06 · 28.2/10
Developers love Claude Code because it feels like pairing with a senior engineer right in the terminal or IDE: it helps you understand unfamiliar code, propose fixes, and scaffold new features quickly. But here is a pattern worth watching. The better agentic coding tools get at writing code, the more the rest of the software lifecycle struggles to keep up. Bug backlogs grow. Pipeline failure rates climb. Security vulnerabilities accumulate faster than teams can triage them. Writing code and ship
DevOps.com (Tier 1) · Publié : 2026-05-11 · 26.9/10
Deploying AI agents in DevOps requires a granular approach to autonomy based on reversibility, blast radius, signal quality, and time sensitivity to build organizational trust.
DevOps.com (Tier 1) · Publié : 2026-05-11 · 26.9/10
While technical tools like Python and Ansible are mature, 44% of professionals identify cultural and organizational hurdles as the primary barriers to NetDevOps adoption and successful automation.
Korben (Tier 1) · Publié : 2026-05-10 · 26.6/10
J'sais pas si vous avez vu mais le Pentagone vient de balancer 161 documents OVNI déclassifiés sur ordre de ce bon vieux Trump ! Pete Hegseth, le secrétaire à la Défense (ou à la Guerre, j'sais plus comment on dit) a donc mis en ligne 119 PDFs, 28 vidéos et 14 images couvrant les années de 1948 à 2026. Et vous allez voir, c'est la déception scientifique du siècle ! J'ai été voir un peu de quoi il en retournait et c'est majoritairement flou et nul à chier. Les vidéos infrarouges montrent des poin
Généré par veille-auto · Modèle : gemma4:e2b