Operations | Monitoring | ITSM | DevOps | Cloud

The latest News and Information on DevOps, CI/CD, Automation and related technologies.

Your Log4shell Remediation Cookbook Using the JFrog Platform

Last week, a researcher from the Alibaba Cloud Security Team dropped a zero-day remote code execution exploit on Twitter, targeting the extremely popular log4j logging framework for Java (specifically, the 2.x branch called Log4j2). The vulnerability was originally discovered and reported to Apache by the Alibaba cloud security team on November 24th. MITRE assigned CVE-2021-44228 to this vulnerability, which has since been dubbed Log4Shell by security researchers.

Data centre networking: SmartNICs

This blog post is part of our data centre networking series: With the explosion of application traffic and the multiplication of data centre workloads during the last decade, east-west traffic greatly increased and ended up impacting the traditional north-south based architectures. This raised the need to review the entire data centre architecture while keeping the goal of meeting performance, security, and monitoring requirements.

How to define software failure

Two of the four DORA metrics, Change Failure Rate and MTTR, require that you first define what failure means. Does failure always mean incident? Or should failure mean rollback? In this video, Don walks you through a couple different ways to define failure, and how Sleuth does it today. SLEUTH A deploy-based DORA / Accelerate Metrics tracker both managers and developers love.

How an open approach to DevOps gives you the flexibility to adapt to anything

No single vendor will ever build or own all the DevOps tools your team needs. Atlassian has created a large ecosystem of partners who deliver expertise in key areas of the DevOps lifecycle. Join this session to learn about Atlassian’s open toolchain approach and how it can empower your teams with best of breed tools that work better together. In this session, Snyk, JFrog, and Gitlab will discuss how their integrations can help you achieve your DevOps goals.

Building Observability in Your CircleCI Deploy

With Liz Fong Jones, Principal Developer Advocate at Honeycomb and Ryan Pedersen, Senior Solutions Engineer at CircleCI In this talk, you’ll learn how Honeycomb keeps its CircleCI workflow duration at about 10 minutes per build through parallelizing build steps, using native container builders per architecture, and tracing execution of the build to know where to optimize.

Trigger your CircleCI pipelines from a GitHub Actions workflow

If you are already a GitHub user, you may know that GitHub Actions provides you with powerful tools to increase efficiencies in your software delivery life cycle. Actions can be impactful for team collaborations and process simplification. For example, you can automate things like building a container, welcoming new users to your open source projects, managing branches, or triaging issues.

5 IT Financial Management (ITFM) Best Practices To Consider In 2022

If IT Financial Management (ITFM) was as simple as widely presumed, we’d be seeing IT expenditure dropping globally with the continued adoption of cloud services. For example, in 2020 it was expected that 83% of enterprise workloads would move to the cloud. That move happened but the results didn’t come with the extensive cost reduction benefits that businesses envisioned. Organizations are actually spending more despite the workload migration.