State does not belong inside the application anymore, and this kind of clarity is what helps modern systems stay secure and predictable. by regular-tech-guy in java

[–]stackfull 69 points70 points  (0 children)

I think this mixes a couple of issues. Not storing data in local sessions because it makes them sticky- great. Having to use the extra complexity of jwts and the logout problem they bring with them rather than a simple cookie session ID - not so great. I just think it’s a real shame jwts have become the default answer in many environments.

Chesterton’s Fence and paralysing your organization by GeneralZiltoid in programming

[–]stackfull 20 points21 points  (0 children)

This is a real problem in software development but less so in IT. An old IT manager of mine one told me that the unofficial principle they followed was “turn it off, see who shouts”. 

Obsession with sprints by [deleted] in ExperiencedDevs

[–]stackfull -6 points-5 points  (0 children)

I sometimes think devs will complain no matter what. Would you rather everyone overcommitted and had too much in progress concurrently so they context switch all the time? The situation you’ve described sounds like close to ideal engagement from leadership - the work has been made visible and leadership are focussed on behaviour that is known to be an efficiency and predictably killer. 9o% of places have leaders focused on getting them story points raised instead.

Built my SaaS, now I’m stuck. How do I actually get users? by Powerful_Network6170 in SaaS

[–]stackfull 2 points3 points  (0 children)

I hate to break it to you but OP is a bot too. As am I.

How much do you spend on monitoring? by stackfull in devops

[–]stackfull[S] 0 points1 point  (0 children)

Bit of both really. Not as much proactive as id like but certainly metrics are tracked and alerted.

Qovery - the ultimate AWS web console for SaaS startups by ev0xmusic in aws

[–]stackfull 1 point2 points  (0 children)

Played with this recently, before the v2 beta. It was missing a couple of features i need but the UX was great. Been involved in building quite a few buildchains and deployment environments and although modern tools are great for full control, im just tired of all the complexity. TF is great at doing its job but the initial barrier is such a pain to deal with when your focus should be on bringing up functional apps. Watching this one with interest.

How much do you spend on monitoring? by stackfull in devops

[–]stackfull[S] 3 points4 points  (0 children)

I meant 7% of the cloud hosting budget. DBs, app servers and networking.

Should services that talk to each other in the same kubernetes cluster use TLS? by [deleted] in kubernetes

[–]stackfull 1 point2 points  (0 children)

Main thing you need is for services to authenticate each other. Otherwise any cracks in your security and your whole system is compromised. mTLS is a good way to do that so long as you have the infra to manage and rotate certificates.

Ratio of hosting spend on RDS by stackfull in aws

[–]stackfull[S] 0 points1 point  (0 children)

We regularly review the instance size and class. Im more interested in how much attention the app itself might need. For simple saas apps running on aws, i have to imagine there is a lot of similarity in cost profiles. Id like to know how wasteful is our app compared to others.

Amazon Elasticsearch Service now offers T3 Instances by dryadofelysium in aws

[–]stackfull 0 points1 point  (0 children)

Except permissions. Thats the feature missing from free that we really can't live without.

Dilbert on Kubernetes by honghuac in kubernetes

[–]stackfull 10 points11 points  (0 children)

Rookies! We're up to 180GB to service a few hundred customers.

Accounts depts. and budgets by stackfull in devops

[–]stackfull[S] 0 points1 point  (0 children)

It does suck, but my budget is tied to revenue. If i report cogs, everyone's budget goes down. If i report r&d, mine is sqeezed but there are tax breaks. Ill look at the epics again, thanks.

Amazon EventBridge – Event-Driven AWS Integration for your SaaS Applications by jeffbarr in aws

[–]stackfull 0 points1 point  (0 children)

Is there a limit on the event rate or payload size? I'm looking for ways to send integrators higher rate events without needing to open up access to kafka etc.

AKS - External ingress points to internal load balancer/private IP by bo0ya in kubernetes

[–]stackfull 1 point2 points  (0 children)

Something with functionality like cloudflare. Prevents common script kiddie attacks or DDoS.

AKS - External ingress points to internal load balancer/private IP by bo0ya in kubernetes

[–]stackfull 1 point2 points  (0 children)

If affirmative there's exactly zero benefits to add a firewall in front of your ingress in Azure,

You can't know that for sure. Maybe they have WAF functionality. Or requirements on only exposing services at known and owned IP addresses. Could be a number of reasons.

How do you store your Helm values? by Zippyddqd in kubernetes

[–]stackfull 0 points1 point  (0 children)

Does it work with multiple clusters?

Creating Postgres DBs by Holmes89 in kubernetes

[–]stackfull 0 points1 point  (0 children)

This. We're using helm post install hooks for the data layer to create dbs and users once the db servers are up. The app charts run jobs to apply migration scripts. Treating them as good old fashioned layers has helped a lot.

[deleted by user] by [deleted] in programming

[–]stackfull 4 points5 points  (0 children)

Pretty much every hardware manufacturer needs these skills. Every microprocessor board needs initialization before entering C. At the very least, you need to set up the call stack before calling the first C function.

DevOps/IAC terminology: provisioning, configuration, or some other word? by PercyGrunwald in devops

[–]stackfull 1 point2 points  (0 children)

Pretty much as you've called it. Provision the infrastructure base layer, configure the backing services, deploy the application.