Newslurp

<< Stories

Calico v3.31 🆕, Custom MCP Catalog ✨, In-House S3 💰

TLDR DevOps <dan@tldrnewsletter.com>

October 27, 11:28 am

TLDR DevOps
Calico v3.31 has been released, with the NFTables data plane now generally available, promising efficiency and performance improvements over IPTables ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌  ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ 

TLDR

Together With SANS Institute

TLDR DevOps 2025-10-27

Developer Training That Fits, Not Fights, the Workflow (Sponsor)

When developers know what secure code looks like, tools become more effective, and vulnerabilities never reach production. The SANS Developer Security Playbook reveals how hands-on training reduces rework, protects velocity, and embeds secure coding into software lifecycles.

>> SANS Developer Training equips developers with the knowledge and skills to secure code at the source.

>> Explore the Demo to experience the real-world practice that builds muscle memory, not just checkboxes.

📱

News & Trends

What's New in Calico v3.31: eBPF, NFTables, and More (81 minute read)

Calico v3.31 has been released, with the NFTables data plane now generally available, promising efficiency and performance improvements over IPTables by streamlining networking changes in the Linux kernel. Installation is now easier with a new template defaulting to the eBPF data plane, automatically disabling kube-proxy, and using bpfNetworkBootstrap to detect API server endpoints. The release also includes UI improvements for policy traces, new burst and peak rate controls for bandwidth and packet rate QoS, and finer control over NAT outgoing via natOutgoingExclusions.
Your Org, Your Tools: Build a Custom MCP Catalog (5 minute read)

Docker's Model Context Protocol (MCP) allows organizations to build their own MCP catalog to ensure appropriate guardrails are in place for AI tooling deployment. By using Docker's MCP Toolkit, Catalog, and Gateway, organizations can control the tools available to developers, customers, or AI agents, with the MCP Catalog hosting over 220+ containerized MCP servers.
🚀

Opinions & Tutorials

Extending EKS with Hybrid Nodes: IAM Roles Anywhere and HashiCorp Vault (7 minute read)

This guide explains how to extend Amazon EKS with Hybrid Nodes using AWS IAM Roles Anywhere and HashiCorp Vault PKI to securely authenticate nodes outside AWS. It details how to configure Vault as a certificate authority, establish trust with IAM Roles Anywhere, and join external Linux servers to an EKS cluster for hybrid, compliant, and low-latency workloads.
How We Saved $500,000 Per Year by Rolling Our Own “S3” (12 minute read)

Nanit replaced Amazon S3 as its primary video landing zone with a custom in-memory system called N3, built in Rust, to handle short-lived baby monitor video uploads. By offloading only overflow traffic to S3, it cut ~$500K per year in S3 request and storage fees while maintaining reliability and ordering guarantees through a two-tier fallback system, stress testing, and simple RAM-based storage.
🧑‍💻

Resources & Tools

The Linux → Azure migration guide by Microsoft, AMD, and VIAcode (Sponsor)

More than 60% of Azure cores now run Linux. Whether you're dealing with aging infrastructure, rising costs or pressure to modernize, this free guide gives you a proven roadmap to migrate your Linux workloads to Microsoft Azure. Learn to reduce risk, control costs and get to value faster
Yaak (GitHub Repo)

Yaak, a fast and private offline-first API client built with Tauri, Rust, and React, was created for organizing and executing REST, GraphQL, WebSockets, Server Sent Events, and gRPC.
Coral NPU (GitHub Repo)

Google Research designed the Coral NPU, an open-source IP, as a machine learning accelerator core for energy-efficient AI at the edge in wearable devices. Based on the 32-bit RISC-V ISA, the Coral NPU includes matrix, vector (SIMD), and scalar processor components and is freely available for integration into ultra-low-power System-on-Chips (SoCs).
🎁

Miscellaneous

DDoS in September (4 minute read)

Fastly's September 2025 DDoS weather report highlights a record 15.5 million requests-per-second attack lasting over an hour against a media and entertainment enterprise, marking one of the most intense layer 7 incidents to date. Overall attack volume dropped to 61 percent of August's levels, but trends suggest higher activity during the school year, reinforcing the need for proactive DDoS protection and preparedness as attacks grow more sophisticated.
Accelerate developer productivity with these 9 open source AI and MCP projects (3 minute read)

Developers are leveraging the Model Context Protocol to create AI-native workflows that connect agents with tools, codebases, and browsers, giving rise to a new generation of intelligent, agentic tooling. Supported by Microsoft's OSPO, GitHub Copilot, and VS Code, nine open source projects showcase framework integrations, AI-enhanced developer experience, and scalable automation to demonstrate how MCP is transforming open source development and productivity.
The Future of AI: Structured Vibe Coding - An Improved Approach to AI Software Development (4 minute read)

Marco Casalaina describes how he automated repetitive questionnaire tasks using a method called structured vibe coding, which treats AI agents like members of a software team guided by clear specifications. By integrating GitHub Copilot and Azure AI Foundry, he demonstrates that structured, spec-driven development enables AI agents to collaborate effectively under human oversight, improving productivity and scalability in software creation.

Quick Links

3 frameworks for measuring developer productivity in the age of AI (Sponsor)

This live session, hosted by experts from GitKraken and GitClear, looks at three complementary approaches to measure AI-enabled dev productivity: longitudinal tracking, diagnostics, and benchmarking. Join live (10/29)
Build Retooling of jenkins.io (5 minute read)

This project successfully modernized the Jenkins documentation platform by migrating legacy systems to a new dual-site architecture using Antora for versioned content and Vite.js for non-versioned content.
Scripts I wrote that I use all the time (8 minute read)

A collection of custom shell scripts that streamline everyday tasks across file management, networking, text processing, and system control.
Mistakes I see engineers making in their code reviews (8 minute read)

Many engineers approach code review incorrectly in the LLM era, focusing too narrowly on the diff rather than understanding how the change fits into the overall system.

Love TLDR? Tell your friends and get rewards!

Share your referral link below with friends to get free TLDR swag!
Track your referrals here.

Want to advertise in TLDR? 📰

If your company is interested in reaching an audience of devops professionals and decision makers, you may want to advertise with us.

Want to work at TLDR? 💼

Apply here or send a friend's resume to jobs@tldr.tech and get $1k if we hire them!

If you have any comments or feedback, just respond to this email!

Thanks for reading,
Kunal Desai & Martin Hauskrecht


Manage your subscriptions to our other newsletters on tech, startups, and programming. Or if TLDR DevOps isn't for you, please unsubscribe.