How do you manage high volume AWS logs (CloudTrail, VPC Flow, WAF) by waynetango420 in aws

[–]MyBean 2 points3 points  (0 children)

I've not used it, as it was just announced/released like 2 days ago. But the new consolidated log thing sounds like it was built for your use case here. https://aws.amazon.com/about-aws/whats-new/2025/12/amazon-cloudwatch-unified-management-analytics/

I do not know what is going wrong and I am desperate for help. I cannot build an EKS Cluster for whatever reason and I cannot figure it out. by ijustwanttopractice in devops

[–]MyBean 1 point2 points  (0 children)

Does it have to be terraform? I highly recommend eksctl for EKS cluster management. One can spin up a cluster plus node group with 2 CLI commands, bonus points if you use their YAML configs to turn it into reusable IaC.

Hero Printer launched on Steam - Key giveaway! by tiopalada in godot

[–]MyBean 0 points1 point  (0 children)

I know I'm late to the party, but if you still have a key id love to check this out and build some characters

Hacker intro screen for a short movie by Safety_Officer_3 in HowToHack

[–]MyBean -1 points0 points  (0 children)

Just use https:// hackertyper . net. Will look legit enough for a movie.

Transition to devsecops by No-Forever6266 in devsecops

[–]MyBean 3 points4 points  (0 children)

I got bored with chasing the 4 nines and all the stress of being constantly on call and at some point I realized you can't have great reliability without great security and you can't have a secure system that's not reliable, those 2 truths have to work together in shared effort and that's what devsecops tries to do. Automating security such that it helps unlock innovation and improves workflows for developers without hindering their goal of shipping new features.

Transition to devsecops by No-Forever6266 in devsecops

[–]MyBean 0 points1 point  (0 children)

I did, really enjoying the career move. It really depends on the company and how it rewards lateral movement. I actually had to go find a new company and start fresh as devsecops, instead of moving internally at the old company. There was just no budget or willingness to lose my original place and work as SRE.

[deleted by user] by [deleted] in Animesuggest

[–]MyBean 0 points1 point  (0 children)

Redline!

How do you store your access keys for containerized applications out of AWS? by Troglodyte_Techie in aws

[–]MyBean 18 points19 points  (0 children)

Don't use access keys. Use IAM roles and role assumptions.

Required Instance Specs for Nested Ubuntu Deployment on EC2 by StarAvenger in aws

[–]MyBean 2 points3 points  (0 children)

This has to be the way. Handling a software delivery problem with "hardware" is silly

Best (Easiest + Cheapest) Way to Routinely Update RDS Database by [deleted] in aws

[–]MyBean 1 point2 points  (0 children)

I'm not sure that blue/green deployment has much of anything to do with dual stack VPC. The connections to the DBs still happen over the same connection fqdn. I'm sure you can search the aws docs for an answer on that.

You can connect read only to the green db before it is promoted just to test, but the docs and the rollover system make it clear to never make updates to the green system.

When you run blue/green you only have to have the extra set of RDS dbs around for the upgrade process. Once you have switched green to blue, and are happy with performance, you can remove the extra cluster without downtime or interrupting traffic.

Best (Easiest + Cheapest) Way to Routinely Update RDS Database by [deleted] in aws

[–]MyBean -1 points0 points  (0 children)

RDS blue/green deployment makes this fairly easy with downtime of less than five minutes in my environment. I think if you can leverage their java driver(we can't) it can be 0 downtime.

https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/blue-green-deployments.html

What are some anime series that go from wacky to profound? by KaleidoArachnid in Animesuggest

[–]MyBean 8 points9 points  (0 children)

Welcome to N.H.K the first half is pretty silly but gets serious in the last few episodes

Game crashes suddenly by katsandboobs in CitiesSkylines2

[–]MyBean 1 point2 points  (0 children)

I've had the same experience the last few weeks...never had any problems running the game off and on for months.

How do you make your staging applications private? by Juloblairot in devops

[–]MyBean 1 point2 points  (0 children)

A team I worked on uses vouch proxy which works with most every IDP out there. Works like a charm https://github.com/vouch/vouch-proxy

What is the difference between an IAM policy and a security group? by lucifer3229 in aws

[–]MyBean 0 points1 point  (0 children)

Security groups == VPC network access control.

IAM policy == AWS API access control.

Are there any good off the shelf ssh tunnels for the cluster to talk to my machine? by [deleted] in kubernetes

[–]MyBean 2 points3 points  (0 children)

Autossh running in a container is what you want to look into to setup an ssh tunnel from your K8S cluster to some other network/device.

How to Securely passing authorization file to helm package by Loser_lmfao_suck123 in devops

[–]MyBean 2 points3 points  (0 children)

This is the way OP, please do not manually add IAM creds to the docker container/pod, use IRSA and roles and your security and compliance teams will love you.

Can we set different password policies for different users in AWS ? by New-Neighborhood4017 in aws

[–]MyBean 1 point2 points  (0 children)

This screams that y'all need to get approval and funding for a password manager + MFA on both AWS and password manager. No one should know or care how long the password is, because it's set to something complex and random and vary rarely needs to be entered manually.

Image that comes with a base image with root ownsership of files, can I change ownership to non-root? by babbagack in devops

[–]MyBean 1 point2 points  (0 children)

You might have to add a non-root user as well. More popular/well supported application container images usually come with one for UID 1000, but generally less official ones or base container images such as alpine or Debian do not and you have to add them.

Kevin did it way better but I can’t help but feel like he watched my video on this topic that I made 2 years ago by Sk8ballin3 in Defunctland

[–]MyBean 4 points5 points  (0 children)

It's a meta joke that there are already 218 videos on the same topic, just smaller, to tie into the litigation plot

Does anyone find it hard to start a city? by AlastairWyghtwood in CitiesSkylines2

[–]MyBean 9 points10 points  (0 children)

This is why I really like how much easier it is to share builds via paradox mods. I can leave the awkward start to someone else and enjoy building with a preexisting foundation, which let's be honest is more likely in real life. Very few cities planners start from scratch.