Veille Technologique — Bilan hebdomadaire

Semaine 2026-W22 · du 2026-05-25 au 2026-05-31

27 feeds · 196 articles traités · 40 sélectionnés · gemma4:e2b · 2026-05-25T08:27:40.688Z

Divers

What are the best, most practical Coursera courses to learn AWS, Terraform, K8s, and Prometheus?

r/devops (Tier 1) · Publié : 2026-05-23 · 69.6/10

Hey everyone, I want to transition into DevOps and I’ve decided to use Coursera to learn the following stack: AWS, Docker, Terraform, Kubernetes, and Prometheus + Grafana. My goal is to acquire high-density, hands-on skills as fast as possible. I want to avoid massive, overly theoretical courses that repeat basic concepts (like explaining Git or "what is the cloud") over and over. If you had to build a custom learning path using Coursera, which specific courses or specializations would

How should I start learning DevOps as an absolute beginner in 2026? Is it still worth it?

r/devops (Tier 1) · Publié : 2026-05-24 · 65.8/10

I’m an absolute beginner interested in learning DevOps in 2026, but the amount of things to learn feels overwhelming. I keep seeing roadmaps with Linux, networking, Docker, Kubernetes, cloud, CI/CD, Terraform, scripting, monitoring, and more, and I honestly don’t know what I should focus on first. I wanted to ask people already in the field if DevOps is still worth learning in 2026, what the best roadmap would be for someone starting completely from zero, and what skills or projects actually hel

DevOps Resume Project

r/devops (Tier 1) · Publié : 2026-05-23 · 62.1/10

Hello everyone I’m a CS student and I’ve recently completed this project for my resume. I used AI for guidance (project structure, suggested technologies and practices, etc.), but this is NOT a vibe coded slop project. Any input is appreciated. Linux sandbox is a cloud native Ubuntu environment inspired by LabEx (which I was using to learn Linux). It is accessible via browser through https, no ssh or installs needed. My primary goal was to learn terraform, GitHub actions, and Kubernetes. The bac

Stop telling beginners they need to learn 15 different enterprise tools just to enter DevOps

r/devops (Tier 1) · Publié : 2026-05-24 · 54.3/10

Every time someone asks how to break into the field, they get hit with a laundry list that looks like a CNCF landscape chart. "Just learn Kubernetes, Terraform, Ansible, Prometheus, AWS, Jenkins, and GitHub Actions, bro." No wonder newcomers are panicking. You don't need to know how to manage a massive, multi-region enterprise cluster just to get a junior role. Can we agree that if a beginner deeply understands basic Linux systems administration, standard networking protocols, and

Maintenant - Outil de monitoring d'infrastructure open-core, distribué en binaire Go unique. Un seul conteneur remplace Uptime Kuma, Grafana, Healthch

Journal du Hacker (Tier 2) · Publié : 2026-05-18 · 54.1/10

https://maintenant.dev Le problème La plupart des pros qui gèrent de l’infra en prod jonglent avec 3 à 5 outils : un pour les conteneurs, un pour l’uptime, un pour les certs, un pour les métriques, un pour la status page. Chacun avec sa stack, sa base de données, sa courbe d’apprentissage, son budget RAM. Maintenant consolide tout ça derrière une seule interface, dans un seul process, sous moins de 30 Mo de RAM. Ce que ça fait Auto-discovery des conteneurs Docker, Swarm et Kubernetes — runtime a

The Evolving Role of Observability in DevOps

DevOps.com (Tier 1) · Publié : 2026-05-21 · 51.1/10

DevOps practices have fundamentally changed how software is delivered, operated, and improved. At their heart, DevOps methodologies seek to unify development and operations, enabling teams to ship changes more quickly while maintaining system reliability. The discipline has grown beyond simple CI/CD automation to encompass culture, observability, and intelligent workflows. As organizations scale, they face new […]

Applying OpenTelemetry Security Practices in Legacy Environments

OpenTelemetry Blog (Tier 1) · Publié : 2026-05-19 · 48.9/10

OpenTelemetry is gaining traction in manufacturing and other legacy environments as organizations explore modern observability approaches. However, applying these practices in traditional systems introduces a different set of security challenges. The constraints of legacy infrastructure fundamentally change where and how security controls must be applied. Legacy and industrial environments often include: Systems that cannot be modified or instrumented Long equipment life cycles and limited patch

OpenTelemetry is a CNCF Graduated Project

OpenTelemetry Blog (Tier 1) · Publié : 2026-05-21 · 48.3/10

Today, the Cloud Native Computing Foundation (CNCF) announced that OpenTelemetry has graduated. Graduation is an important milestone for the project and reflects the strength of the OpenTelemetry community and ecosystem. Since the merger of OpenTracing and OpenCensus, thousands of contributors, maintainers, end users, and organizations have helped shape OpenTelemetry into an open, vendor-neutral observability framework used across the industry. This milestone belongs to the community. We want to

Azure hub-and-spoke generally available for HCP Vault Dedicated

HashiCorp Blog (Tier 1) · Publié : 2026-05-19 · 46.0/10

Azure hub-and-spoke networking is now generally available in HCP Vault Dedicated, supporting enhanced cloud security maturity with private connectivity.

Stuck in current role need suggestions to shift to devops

r/devops (Tier 1) · Publié : 2026-05-23 · 46.0/10

I'm currently working as an as400 i developer with 5 YOE, though only around 2 years of actual project experience since I spent a long time on bench. Before IT, I worked for 1 year as a warehouse executive. I want to shift into DevOps/Cloud. I've completed Azure AZ-104 certification and am currently learning Linux, Docker, and Kubernetes through KodeKloud (CKA path). I feel stuck at 4 LPA and worried. Need suggestions.. submitted by /u/vengeance0008 [link] [comments]

Quelqu'un a réussi à faire tourner de vraies fenêtres Linux à l'intérieur de Minecraft

Korben (Tier 1) · Publié : 2026-05-21 · 44.8/10

Un développeur connu sous le pseudo EVVIE a sorti Waylandcraft, un projet qui n'aurait jamais dû exister et c'est tant mieux. Le principe : faire tourner de vrais logiciels Linux directement dans le monde de Minecraft, leurs fenêtres posées comme des objets au milieu du jeu. Votre navigateur, votre éditeur de texte, un terminal, tout ça affiché sur des blocs, en 3D, et utilisable pour de vrai. Pour comprendre le délire, un mot sur Wayland. Sous Linux, c'est le système qui gère l'affichage des fe

OpenTelemetry Achieves CNCF Graduated Project Status

DevOps.com (Tier 1) · Publié : 2026-05-21 · 42.9/10

The Cloud Native Computing Foundation (CNCF) today announced that the open source OpenTelemetry (OTel) project has officially graduated a little more than seven years after its initial adoption. Announced at the Observability North America Summit, OpenTelemetry was first donated to the CNCF in 2019 following the merger of separate OpenTracing and OpenCensus projects that sought […]

“Morally repugnant shortsightedness”: Why open source security leaders say companies must stop freeloading on maintainers

The New Stack (Tier 1) · Publié : 2026-05-21 · 42.5/10

The Open Source Security Foundation (OpenSSF), a cross-industry initiative of the Linux Foundation focused on sustainably securing open source software, The post “Morally repugnant shortsightedness”: Why open source security leaders say companies must stop freeloading on maintainers appeared first on The New Stack .

Kubernetes interview gone really bad

r/devops (Tier 1) · Publié : 2026-05-23 · 41.8/10

I went to a kubernetes tech interview, expecting that they are going to ask me about my experience using kubernetes and some basic question or some system design about how I could possibly build a cluster some scratch but nop they end up asking me questions that I found it very difficult to answer from the top of my head: - First warm up question was, Can you explain to me what it is Quorum? - Next question, I guess it was a follow up question, Do you know what ETCD? What is the difference betwe

After becoming cloud computing’s telemetry standard, OpenTelemetry graduates into the AI infrastructure era

The New Stack (Tier 1) · Publié : 2026-05-21 · 40.5/10

The Cloud Native Computing Foundation (CNCF) on Thursday announced the graduation of OpenTelemetry, the open source observability framework that has The post After becoming cloud computing’s telemetry standard, OpenTelemetry graduates into the AI infrastructure era appeared first on The New Stack .

Announcing etcd 3.7.0-beta.0

Kubernetes Blog (Tier 1) · Publié : 2026-05-20 · 37.2/10

SIG-Etcd announces the availability of the first beta release of etcd v3.7.0 . This new version of the popular distributed database and key Kubernetes component includes the long-requested RangeStream feature, as well as a refactoring and cleanup of multiple legacy components and interfaces. v3.7 will deliver improved security, better operational reliability, and an improved experience for working with large resultsets. First, however, the project needs users to test the beta. You can find v3.7.

Wait time for firewall inclusions is slowing me down. What am I doing wrong?

r/devops (Tier 1) · Publié : 2026-05-25 · 36.5/10

I'm in the process of laying down an infrastructure & CI/CD pipeline in our company (all of our deployments were manual until I got fed up with manual work and pitched CI/CD) for the rollout of a new version of a legacy app. On multiple occasions I'm deep in a flow state, then I see "Connection refused" and realize I have to open up a ticket, then physically visit 2-3 offices on multiple occasions to get it approved within the next hour (cause then I may have to wait a day

Track CI component usage across your organization

GitLab Blog (Tier 1) · Publié : 2026-05-21 · 35.9/10

If your platform team publishes standardized pipeline components, you've probably encountered this: once they're out in the wild, you lose visibility. You can't see if anyone’s actually using it, who's on which version, or which projects are still running outdated versions that open your organization up to security risks. Now with GitLab 19.0's new Components Analytics view in the CI/CD Catalog, your team gets visibility and important adoption data about how CI/CD components

Designing an AI-Powered DevSecOps Guardrail Pipeline Using GitHub Actions

DevOps.com (Tier 1) · Publié : 2026-05-22 · 35.2/10

By embedding AI-powered guardrails directly into CI/CD pipelines, organizations can detect vulnerabilities earlier, enforce security policies automatically and accelerate secure software delivery.

Projeto Impactante de DevOps para Portfólio

r/devops (Tier 1) · Publié : 2026-05-25 · 34.1/10

Fala pessoal, Já sou DevOps há 1 ano e meio, mas entrei inicialmente por estágio, então hoje praticamente não tenho nenhum projeto para portfolio. Mesmo conseguindo apresentar bons números e entregas no trabalho, às vezes me sinto meio inseguro por ainda ter pouco tempo de mercado e não ter projetos públicos para mostrar. Queria saber do pessoal mais experiente: que tipo de projeto vocês esperariam encontrar no portfolio de um DevOps junior/pleno para ele se destacar em entrevistas? Queria algo

pkg.go.dev gets an official API

Golang Weekly (Tier 1) · Publié : 2026-05-22 · 33.6/10

#​602 — May 22, 2026 Read the Web Version Go Weekly ▶ What's New in Go: The Google I/O 2026 Edition — Two Go team members give a 15 minute high-level overview of the state of Go from Google’s perspective. Topics include how Google is leaning heavily on Go with its in-house agentic development efforts, Go 1.25/1.26 developments, SIMD, and security work. Balahan and Dougherty (Google) ⬆️ This talk provides a great look at how Google "sees" Go as of 2026, and includes some fantastic illustrations t

Rust Could Eliminate 80% of Linux Kernel CVEs!

It's FOSS (Tier 1) · Publié : 2026-05-21 · 33.3/10

Linux's stable maintainer is betting on a new Rust type to address a class of bugs C has never been able to fully prevent.

Manage CI/CD credentials with GitLab Secrets Manager

GitLab Blog (Tier 1) · Publié : 2026-05-21 · 31.9/10

Many credential leaks start with a developer who needs a credential, doesn’t have a good place to put it, and improvises. It lands in an over-scoped CI/CD variable, a config file, or a .env committed “just for a moment.” GitLab Secrets Manager, now in public beta with GitLab 19.0, keeps credentials in the same platform that runs your code and pipelines. Each secret is scoped to the jobs that need it and governed by the access controls you already use. Fewer secrets end up in the wrong place, and

HCP Migration | Cloud infra

r/devops (Tier 1) · Publié : 2026-05-23 · 31.0/10

I was recently assigned a project to migrate our CI/CD pipelines and Terraform state management from Azure Storage to HCP Terraform across multiple Azure subscriptions and Git repos. Does anyone here have experience with a similar migration? Looking for ideas on where to start, best practices, and generally how the migration process usually takes place. Any advice or resources would be appreciated. Thanks! submitted by /u/Vengeance2516 [link] [comments]

Low-Code/No-Code in Microsoft 365: How Power Platform is Redefining Enterprise DevOps

DevOps.com (Tier 1) · Publié : 2026-05-21 · 30.4/10

Low-code and no-code platforms like Microsoft Power Platform are reshaping enterprise DevOps. When combined with cloud architecture, DevOps discipline, and AI-driven assistance, they enable organizations to deliver solutions faster without sacrificing control.

Les clés API Google encore en vie même après leur suppression

Korben (Tier 1) · Publié : 2026-05-22 · 30.1/10

Vous supprimez une clé API Google qui a fuité , et l'interface vous confirme que c'est bien réglé, que la clé ne fonctionne plus. Alors vous commencez à vous détendre en vous disant que vous avez bien fait votre boulot. BAH NAN ! Car vous ne le savez pas, mais cette clé va continuer de fonctionner encore durant 23 minutes. C'est en tout cas ce qu'ont mesuré les chercheurs d'Aikido Security en testant ce truc tout bête de révoquer une clé, puis de taper sur l'API en boucle pour voir quand ça s'ar

More AI models for GitLab Duo Agent Platform Self-Hosted

GitLab Blog (Tier 1) · Publié : 2026-05-21 · 27.9/10

Customers running GitLab Duo Agent Platform Self-Hosted operate under constraints many software teams don't face: data residency mandates, air-gapped networks, and compliance regulations that prohibit sending source code to third-party APIs. Those constraints also come with a trade-off. The most capable models tend to land in cloud-first deployments, leaving regulated and isolated environments a step behind on AI capability, and forcing teams into a single-model setup that's either overk

SRE Weekly Issue #518

SRE Weekly (Tier 1) · Publié : 2026-05-25 · 27.8/10

View on sreweekly.com A message from our sponsor, BigPanda: When a P1 fires, scope, impact, and cause should be instant. Instead you’re 10 minutes in, pinging people across tools and teams to understand what’s happening. BigPanda surfaces the full picture the moment an incident starts so you fix, not hunt. Reduce incident toil When AI […]

How do I become valuable in DevOps & Cloud within the next 2 years as a student?

r/devops (Tier 1) · Publié : 2026-05-22 · 27.6/10

I’m currently at the end of my 2nd year in INFT course and want to build a career in DevOps and Cloud. I’m planning to spend the next 2 years seriously learning and building skills. Where should I start? What should I focus on first? What skills/tools are most important in today’s industry? What projects should I build to stand out for internships/jobs? Would appreciate guidance from people already working in DevOps or Cloud engineering. submitted by /u/Interesting-Bug7715 [link] 

No job, no experience, no guidance — BSc IT fresher stuck after trying Data Analytics & Data Engineering… what actually works?

r/devops (Tier 1) · Publié : 2026-05-24 · 27.4/10

Hi everyone, I really need some honest advice because I feel completely stuck right now. I’ve completed my BSc IT from a tier-3 college. There was no placement support at all, so I’ve been on my own from the start. Initially, I focused on Data Analytics. I learned the skills, built some knowledge, and applied to a lot of jobs — but the reality hit me hard: almost every role requires experience, and as a fresher, I wasn’t getting any responses. Then I shifted towards Data Engineering, thinking it

Muxcard - Un ordinateur fin comme une carte bancaire

Korben (Tier 1) · Publié : 2026-05-24 · 27.4/10

L'expert en électronique connu sous le pseudo de Krauseler s'est mis en tête un truc que la plupart des ingénieurs auraient lâché au bout d'une semaine, à savoir fabriquer un vrai ordinateur qui tient dans le format exact d'une carte bancaire. Et pas " à peu près la taille d'une carte " comme on dit tous pour un Raspberry Pi, non, non, la vraie norme ISO 7810, 85 mm sur 54, et surtout l'épaisseur, soit moins d'un millimètre. Sa Muxcard, il l'a sorti tout seul, chez lui, après des mois

Modernizing DevOps Security With Intelligent KYC Enforcement Layers

DevOps.com (Tier 1) · Publié : 2026-05-22 · 26.9/10

This is where smart KYC enforcement layers fit in — not a compliance box, but an engineering control that is directly part of DevOps processes.

CI/CD Supply Chain Security: Hardening Artifacts, Dependencies, and Delivery Pipelines

DevOps.com (Tier 1) · Publié : 2026-05-21 · 26.2/10

Modern CI/CD pipelines have become one of the most attractive attack surfaces in enterprise environments. As organizations push for faster releases, broader automation, and greater reuse of third-party components, the software supply chain has quietly expanded beyond the direct control of any single team. Source code is only one small piece of what ultimately runs in […]

No Linux support on free version of Vivado 2026.1

Lobste.rs (Tier 1) · Publié : 2026-05-24 · 25.9/10

Vivado 2026.1 will stop supporting Linux for its Basic (free) tier. Comments

AI Agents in CI/CD Pipelines: Speed vs Control in Modern DevOps

DevOps.com (Tier 1) · Publié : 2026-05-22 · 25.2/10

The moment you push your code, deployment fires off on its own. The pipeline kicks in, the tests sail through, and within a few minutes your app is live in production. There is no manual sign-off and no one scanning through the final changes. Everything is running on the decisions of an AI agent plugged […]

Can you share your CI/CD pipeline approach?

r/devops (Tier 1) · Publié : 2026-05-24 · 25.0/10

Hi gus, can you share what tools are you using for your CI/CD pipeline? What are the modern best practises you guys follow. I have been working in Product based company, our tools are nowhere else used except in our org. Any of you are using Jenkins + Argo + K8S? submitted by /u/Basic_Let7303 [link] [comments]

JFrog report recaps a tumultuous year in supply chain security

The New Stack (Tier 1) · Publié : 2026-05-22 · 24.7/10

Calendar year 2025 not only broke records for code package proliferation; it also redefined the foundational architecture of the software The post JFrog report recaps a tumultuous year in supply chain security appeared first on The New Stack .

Automate root cause analysis across Datadog and Elasticsearch with AWS DevOps Agent

AWS DevOps Blog (Tier 1) · Publié : 2026-05-19 · 24.1/10

Modern distributed systems route business transactions through dozens of microservices, message queues, and event streams. When a message fails to process or processing exceeds SLA thresholds, troubleshooting requires correlating logs from tools like Elasticsearch, metrics from Datadog, and infrastructure change events in AWS CloudTrail. Correlating these signals manually across heterogeneous backends, each with different query […]

Ensure Code Integrity for AWS Lambda Functions with Automated Code Signing Using Terraform

AWS DevOps Blog (Tier 1) · Publié : 2026-05-18 · 23.1/10

Authors: Sourav Kundu and Joyson Neville Lewis. In today’s cloud-native landscape, ensuring the integrity and authenticity of your serverless functions is critical for maintaining security and compliance. Organizations face increasing challenges in preventing the execution of tampered or malicious code in their AWS Lambda functions. These challenges intensify as deployment pipelines become more complex and […]

Five Clusters. Five Lessons. One Production System.

r/devops (Tier 1) · Publié : 2026-05-23 · 23.1/10

I've been running self-hosted Kubernetes in production for five years. Not managed EKS or GKE, actual bare metal nodes I provisioned myself. Over that time I rebuilt the cluster five times. Each time because the previous version couldn't solve a specific problem. Here's what actually drove each decision: Stage 1 - needed HA. Followed Techno Tim's k3s guide. Used three DigitalOcean VPS running nginx as a makeshift load balancer with a cloud LB in front. It worked but the most expe

Généré par veille-auto · Modèle : gemma4:e2b