Newslurp

<< Stories

eBPF Observability 🔍, Kubernetes Build vs. Buy 💰, When To Use CosmosDB 🪐

TLDR DevOps <dan@tldrnewsletter.com>

November 13, 12:05 pm

TLDR DevOps
eBPF is a technology that enhances observability by allowing programs to be dynamically loaded into the Linux kernel without crashing it ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌  ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ ‌ 

TLDR

Together With Chronosphere

TLDR DevOps 2024-11-13

What's a telemetry pipeline? (Sponsor)

With more cloud come more logs. The explosive growth of telemetry requires a new breed of tool — built to handle the unique volumes, sources, and destinations of telemetry data.

Grab a copy of this free whitepaper by Chronosphere to learn:

  • Observability, SIEM, and where they overlap
  • The role of collector agents
  • What telemetry pipelines do and their value
  • When a telemetry pipeline is needed

📗 Download the ebook

📱

News & Trends

A new flexible DNS-based approach for accessing the GKE control plane (4 minute read)

Google Kubernetes Engine (GKE) has introduced a new DNS-based endpoint for accessing the cluster control plane, offering easier, more flexible access while improving security. This approach eliminates the need for proxies and complex IP-based configurations while integrating with IAM and VPC Service Controls for enhanced security.
Bufstream 0.1.0 (28 minute read)

Bufstream is a Kafka-compatible system that uses object storage like S3. This report highlights five issues with the system, such as stuck consumers/producers and data loss, that were resolved in version 0.1.3. It also points out unresolved Kafka transaction problems impacting Kafka, Bufstream, and similar systems, including unclear transaction documentation and issues with message ordering causing data loss and torn transactions. The report calls for Kafka protocol fixes and improved documentation for safer use of such systems.
🚀

Opinions & Tutorials

How eBPF makes observability awesome (13 minute read)

This blog post discusses eBPF, a technology that enhances observability by allowing programs to be dynamically loaded into the Linux kernel without crashing it, thus improving system performance and security. It highlights Grafana Beyla, an open-source tool that utilizes eBPF for application observability, enabling automatic instrumentation of applications without code modification.
Why Falco's new response engine is a game changer for open source cloud native security (5 minute read)

Falco's recent updates, including the new Talon response engine and integrations with Prometheus and Kubernetes, significantly enhance its threat detection and response capabilities in cloud-native environments. With added support for various data sources, automatic driver selection, and a new Rust SDK for plugin development, Falco continues to expand its reach and improve performance for its large user base.
Troubleshooting RAG-Based LLM Applications (6 minute read)

This post explores the challenges and solutions in enhancing LLM applications with retrieval-augmented generation (RAG) techniques, focusing on reducing latency, improving search relevance, and ensuring data security.
🧑‍💻

Resources & Tools

On AWS and growing fast? See if you qualify for the Growth Accelerator Program (Sponsor)

The AWS Growth Accelerator Program by DoiT provides innovative technology teams experiencing rapid growth with a comprehensive suite of benefits. Participants receive consulting from senior solutions architects, faster AWS support, and FinOps solutions to accelerate innovation and optimize cloud spend. Apply to join
ElectricEye (GitHub Repo)

ElectricEye is a Python CLI tool that provides multi-cloud and multi-SaaS asset management, security posture management, and attack surface monitoring. It offers comprehensive evaluations and controls mapped to over 20 industry frameworks to enhance cloud service provider and SaaS environments.
Policy Sentry (GitHub Repo)

Policy Sentry is a tool that simplifies the creation of security-focused IAM policies by generating least-privilege configurations for AWS resources efficiently, reducing manual effort and enhancing security through automated policy management.
🎁

Miscellaneous

Build vs Buy: Should You Build or Buy a Kubernetes Platform? (3 minute read)

Kubernetes is increasingly favored for managing containerized applications, with many organizations planning to transition their workloads to it. Companies face a choice between building an in-house Kubernetes platform for greater control and customization or purchasing a managed solution to expedite deployment and reduce operational burdens.
When things go sideways: Troubleshooting the OpenTelemetry Operator (10 minute read)

Explore using the OpenTelemetry Operator to effortlessly manage telemetry insights for your Kubernetes applications. This blog offers key installation and troubleshooting tips for streamlining collector deployment and tackling common issues.
What I Wish Someone Told Me About Postgres (14 minute read)

This guide offers practical tips for using PostgreSQL. It covers data normalization, handling NULLs, indexing, and avoiding common pitfalls like locks and long transactions. The guide emphasizes following PostgreSQL guidelines, optimizing psql configuration, and using JSONB carefully. Its goal is to simplify PostgreSQL for developers with concise, actionable advice.

Quick Links

Deploying a Log Analytics Workspace Using Azure Verified Modules (1 minute read)

This guide outlines a streamlined process for deploying an Azure Log Analytics Workspace using Azure Verified Modules with Bicep.
When to Use Cosmos DB (14 minute read)

Azure Cosmos DB is a powerful, flexible, and globally distributed database solution ideal for use cases needing document storage, hands-off scalability, and multiple consistency models, but at a higher cost compared to other databases like DynamoDB or MongoDB.

Love TLDR? Tell your friends and get rewards!

Share your referral link below with friends to get free TLDR swag!
Track your referrals here.

Want to advertise in TLDR? 📰

If your company is interested in reaching an audience of devops professionals and decision makers, you may want to advertise with us.

If you have any comments or feedback, just respond to this email!

Thanks for reading,
Kunal Desai & Martin Hauskrecht


If you don't want to receive future editions of TLDR DevOps, please unsubscribe from TLDR DevOps or manage all of your TLDR newsletter subscriptions.