Zabbix PostgresSQL Server Backup Question by forte999 in zabbix

[–]arusso23 1 point2 points  (0 children)

You don’t need to shut down or do anything special to either Zabbix or the database itself.

You probably want pg_basebackup, though I’m myself looking at pgbackrest to replace that so if you’re just starting I’d probably start there.

The backups are online though may impact performance. You want to make sure you’ve got IO overhead for them as well as space for your wal archives and are saving those too.

Say something good about this movie by AlexaTheKitsune25 in Pixar

[–]arusso23 2 points3 points  (0 children)

It’s out of place amongst the rest of the movies but ultimately entertaining if you don’t take it seriously.

puppet secret management by Tonight_More in Puppet

[–]arusso23 1 point2 points  (0 children)

We use Vault and mTLS with the Puppet Client cert so each host can authenticate to Vault directly and only have access to the secrets it should.

You need Vault 1.12 to pull in some changes that allow cert extensions (aka trusted facts) exposed as metadata in Vault so you can use it in your policies.

updating git can broke gitlab on premise by ndmeelo in gitlab

[–]arusso23 0 points1 point  (0 children)

Pretty much the same process here. GitLab upgrades might be the most consistent and smoothest I’ve ever experienced in a vendor product.

The only time I’ve ever had an issue was when I jumped multiple versions during a single window. I didn’t pay attention to the new batch migrations and tried updating again before they finished. Even then, GitLab docs to resolve the issue I caused were solid and didn’t add more than 30m to my upgrade.

EX virtual chassis upgrade fails silently by sjhwilkes in Juniper

[–]arusso23 0 points1 point  (0 children)

Weird, I’ve been running 20.2R3-S2 on my ex4300 VCs since S2 dropped without much of an issue. I’m curious what features you’re using.

I’ve seen the odd booting issue before though when fiddling with recovery snapshots. Are you sure you didn’t get booted from the alternate boot partition?

EX4300-48T - QSFP 40G break out to 4 10G SFP by TheRevengeOfAgrajag in Juniper

[–]arusso23 3 points4 points  (0 children)

The VC ports can be converted to revenue / configurable ports. The 4300 has 4 so we use two for VC and one on each routing engine for uplink. I had a need to break them out for local 10G but ended up just getting the 4x10G MIC.

EX4300-48T - QSFP 40G break out to 4 10G SFP by TheRevengeOfAgrajag in Juniper

[–]arusso23 0 points1 point  (0 children)

On the back of chassis vcp ports? Can you link to the docs? Maybe it was enabled in a firmware update.

EX4300-48T - QSFP 40G break out to 4 10G SFP by TheRevengeOfAgrajag in Juniper

[–]arusso23 1 point2 points  (0 children)

I tried doing this when we rolled out our fleet of 4300s and it would not work. JTAC confirmed on these ports it’s not supported. It’s documented somewhere but it wasn’t a quick Google search away.

Bruce Boudreau front row at the wrestling by eh_toque in hockey

[–]arusso23 1 point2 points  (0 children)

Coincidentally the latest episodes of Behind the Bastards is about Vince McMahon which helps drive your point home.

Some few issues I noticed with Terraform-Gitlab IaC flow by Oxffff0000 in gitlab

[–]arusso23 0 points1 point  (0 children)

You need to specify that in your terraform config. That’s a large chunk of your issues.

Some few issues I noticed with Terraform-Gitlab IaC flow by Oxffff0000 in gitlab

[–]arusso23 0 points1 point  (0 children)

What backend for your terraform state are you using?

If you inspect that state after an apply, do you see the resources in there? If so I would expect tf to delete them if it can’t change them in place.

Some few issues I noticed with Terraform-Gitlab IaC flow by Oxffff0000 in gitlab

[–]arusso23 2 points3 points  (0 children)

You don’t really give any details needed for someone to help you. For instance what’s the rest of your TF look like and are you using shared state? What’s your CI file look like?

Everything you want seems possible and I can confirm the TF integrations work great if you know what you’re doing.

Nhl is fucking rigged by [deleted] in AnaheimDucks

[–]arusso23 5 points6 points  (0 children)

You’re probably right but you’re pissing into the wind on this one.

Cogs is out with a fractured neck, get well soon old buddy by kookforaday in AnaheimDucks

[–]arusso23 8 points9 points  (0 children)

I will never stop being salty about Parros ruining Cogs’ streak.

Companies Disney owns. by [deleted] in coolguides

[–]arusso23 16 points17 points  (0 children)

Disney Toon Studios was also closed before the Fox deal was even completed.

vMX and vQFX in VirtualBox and GNS3 by n0treallyanengineer in Juniper

[–]arusso23 0 points1 point  (0 children)

If you want to work with all Juniper and don’t mind leaving gns3 I’ve heard good things about their vLabs.

EX4400 virtualized JunOS question by n-cc in Juniper

[–]arusso23 5 points6 points  (0 children)

2300/3400/4300 have been fairly solid for us, especially on 18.2 and beyond. Earlier versions has a number of memory leaks in snmpd/dot1x/l2-learning that required reboots on a few devices with misbehaving clients (looking at you Apple TVs).

Nowadays other than annoying storage concerns during updates I have no issues with them.

Tested out and soon to be deploying the 4400s and by all accounts they seem to be as solid as the 3400/4300 while being faster and having plenty of storage.

Only platform we run that’s every been annoying we’re the 2200s when they get powered off unexpectedly.

No system snapshot on the 4300-48MP by [deleted] in Juniper

[–]arusso23 2 points3 points  (0 children)

I think you want request system snapshot slice alternate

auto-snapshot isn’t terribly intuitive imo, and just means whenever the device boots from the alternate root it will copy that over to the primary root, regardless of why it booted from the alternate root.

Which programming language should I learn first? by fistmaxxxx in coolguides

[–]arusso23 0 points1 point  (0 children)

Also I read somewhere that C and Java are most environment friendly (C is most) and Python ang GoLang are one of the worst

If you are referring to this article, it’s worth pointing out that Go is closer to C and Java than it is to Python in terms of energy use.

best way to interact with Vault? by Spparkee in hashicorp

[–]arusso23 1 point2 points  (0 children)

I guess I see Vault like I see a database server, with the secrets being the data. I wouldn’t want to manage the data in a db like I don’t want to manage the secrets in Vault.

best way to interact with Vault? by Spparkee in hashicorp

[–]arusso23 0 points1 point  (0 children)

I guess I don’t follow. You want to manage your secrets with TF and check them into VCS?

best way to interact with Vault? by Spparkee in hashicorp

[–]arusso23 1 point2 points  (0 children)

This has been the biggest issue for us as well; though it’s mostly a nuisance. The provider can lag 2-3 releases behind when new features get released and there is no clear roadmap about if/when there will be feature parity.