Over engineeringthe core of Kubernetes kopsUtility/Public subnet # - 1 NGW for the private subnet to NAT to # - 1 Route Table Association to the Main Route Table # - 1 Private subnet (to hold the instances) # ---------------------------------- Utility/Public subnet # - 1 NGW for the private subnet to NAT to # - 1 Route Table Association to the Main Route Table # - 1 Private subnet (to hold the instances) # ---------------------------------- Utility/Public subnet # - 1 NGW for the private subnet to NAT to # - 1 Route Table Association to the Main Route Table # - 1 Private subnet (to hold the instances) # ----------------------------------0 码力 | 75 页 | 4.56 MB | 1 年前3
Jib Kubecon 2018 Talktarget/classes /app/classes ENTRYPOINT java -cp /app/dependencies/*:/app/resources:/app/classes my.app.Main github.com/GoogleContainerTools/jib Containerizing with Docker build layer 1 layer 2 layer 3 com/GoogleContainerTools/skaffold official website code Development Process application k8s config build push deploy connect update code Development Process application k8s config skaffold github.com/GoogleContainerTools/jib0 码力 | 90 页 | 2.84 MB | 1 年前3
在大规模Kubernetes集群上实现高SLO的方法(SLAs), SLOs are the objectives that must be achieved — for each service activity, function and process — to provide the best opportunity for service recipient success. — Gartner Latency SLI Availability historical data. With dirty data metrics which consists of • escaped/zombie/uninterruptible process • orphaned containers • orphaned pod directories/volumes • orphaned cgroups • orphaned net device device and so on, node recovery system can cleanup those dirty data or alert cluster admins to process dirty data manually. Unhealthy node SLO Trace NPD Metrics Event Source …… runtimeErrorCo0 码力 | 11 页 | 4.01 MB | 1 年前3
Kubernetes安全求生指南ng.html a. Maintenance, Updates, and Patching b. File System Hardening c. Boot Security d. Process Security e. Minimization of Attack Surface f. Network Security g. Auditing h. Authentication 打包流程 過版流程 稽核流程 監控 & 除錯 最困難的部分其實是..... 3P: People, Policy, Process 人 (People) 政策 (Policy) 流程 (Process) ©2019 VMware, Inc. 19 導入新數位技術典範須組織架構與流程分工的配套才能順利前進 傳統的AP/SP/Security0 码力 | 23 页 | 2.14 MB | 1 年前3
QCon北京2017/智能化运维/Self Hosted Infrastructure:以自动运维 Kubernetes 为例// gcc source code #includeint main() { compile_c(argv[1]); } gcc Self hosting go // golang source code package main import "os" func main() { compile_go(os.Args[1:]) } go Self 0 码力 | 73 页 | 1.58 MB | 1 年前3
Apache OpenWhisk + Kubernetes:
A Perfect Match for Your Serverless Platformmechanisms to handle the component launch sequence: – Init Container: a pre-handling container to process staff which need to be done before the major costainer starts – Probe: readiness probe and liveness0 码力 | 24 页 | 3.53 MB | 1 年前3
VMware SIG Intro to the vSphere Cloud ProviderWe will also focus on how new contributors can get involved in the SIG. Kubernetes is in the process of moving to a new “out of tree” model, this effort spans all the touching points with the underlying0 码力 | 12 页 | 425.38 KB | 1 年前3
绕过conntrack,使用eBPF增强 IPVS优化K8s网络性能caused by conntrack • Some bugs How to optimize • Guidelines • Use less CPU instructions to process each packet • Don’t monopolize CPU • Stability and more functionalities Alternative solutions?0 码力 | 24 页 | 1.90 MB | 1 年前3
QCon北京2018/QCon北京2018-《Kubernetes-+面向未来的开发和部署》-Michael+ChenStatefulSets Replicated Pods where each Pod gets an indexed hostname Jobs A Pod which runs until the process returns a successful termination Deployments Manages the release rollout of new versions of Pods0 码力 | 42 页 | 10.97 MB | 1 年前3
Advancing the Tactical Edge with K3s and SUSE RGSthe development of Smart- Edge, a decentralized approach that goes beyond data collection to data process- ing and analytics, delivering insight and prompting immediate action. Ki Lee, vice president of0 码力 | 8 页 | 888.26 KB | 1 年前3
共 20 条
- 1
- 2













