Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
bedis9
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
bedis9
4y ago
Stay tune (tips: dataplaneapi)
2.
▲
by
bedis9
4y ago
Well, HAProxy Community can do all this :)
3.
▲
by
bedis9
7y ago
As you explained, HAProxy does support OCSP stapling through flat file, but also support it through the runtime API. v1 of the ingress controller does not update OCSP. That said, this is planed for a next release. Stay tuned :)
4.
▲
by
bedis9
7y ago
Yes, it does. We'll blog about those use cases during the summer.
5.
▲
by
bedis9
8y ago
Partially true. Sub matching is stored in chained lists and could take some CPU if improperly used
6.
▲
by
bedis9
8y ago
Traefik performance sucks... In my bench, it is like 6 times slower than haproxy on an AWS instance. It eats up a huge amount of memory and burns all the cups.... As well, traefik configuration is not flexible enough to match haproxy power.
7.
▲
by
bedis9
8y ago
But nginx does not do basic load balancing related features such as health checking, persistence (some apps still need that), DNS service discovery, stats, observability, etc...
8.
▲
by
bedis9
8y ago
Graphql seems to be limited because of its single endpoint design. So some features are applied globally while you may want them per route.
9.
▲
by
bedis9
8y ago
I could not have answered in a better way. Just adding we love and do open source.
10.
▲
by
bedis9
8y ago
This is part of part-2 of our blog post about api gateway with haproxy. It will feature token validation in Lua and much more fancy things..
11.
▲
by
bedis9
8y ago
Well this looks doable with Lua, as an http action probing an api that would let it now if the destination service is available and where. One point about routing, do you mean that server for handling /foo/bar may not exist yet in
12.
▲
by
bedis9
8y ago
All of this is on it's way. depending on what you mean by distributed tracing, it may already be doable
13.
▲
by
bedis9
8y ago
Hi, I did write this blog post. Feel free to ask if you have any questions.
14.
▲
How to interact with HAProxy at run time
(haproxy.com)
1 points
by
bedis9
9y ago
|
0 comments
15.
▲
by
bedis9
9y ago
LOL this software does not even understand HTTP/1.0...
16.
▲
by
bedis9
9y ago
Yes, cached A records get expired in HAProxy (both community and enterprise). HAProxy won't follow-up the TTL returned by the server. It's up to the administrator to decide how HAProxy should behave with DNS responses. From my poi
17.
▲
by
bedis9
9y ago
No way to register new frontends, new binds neither new backends. We can only add/remove servers in backends for now. The "registration" you mentioned may happen later. Please note that you can already do dynamic routing usin
18.
▲
by
bedis9
9y ago
Let me say it again: no disks I/O in HAProxy at run time. Simply put an nginx locally and use HAProxy's cache (or nginx one).
19.
▲
by
bedis9
9y ago
> The only thing I could ask for is a REST admin api to assist with my deploys. For now, there is one in HAProxy Enterprise, and it manages HAProxy's configuration file and triggers reload. We're working on opening it, as soon
20.
▲
by
bedis9
9y ago
and also that LVS does it well in kernel!
21.
▲
by
bedis9
9y ago
Server side is on its way for next release, haproxy 1.9.
22.
▲
by
bedis9
9y ago
We first developped DNS in HAProxy for our AWS users who wanted HAProxy to follow-up a node when it is restarted (and it's IP is changed)... That was the very first request from both community and customers. After we released this feat
23.
▲
by
bedis9
9y ago
Unfortunately, this is not possible! The DNS in HAProxy relies on the internal task scheduler which is itself event-driven.
24.
▲
by
bedis9
9y ago
I do agree on this statement!!! I personally validated HAProxy SRV records with both Kubernetes and Consul and I was positively supersized of how simple is consul. (Well, it does not cover all the stuff kubernetes does, you may need nomad f
25.
▲
by
bedis9
9y ago
The advantage of using SRV records with consul, is that any load-balancer supporting SRV can replace any loadbalancer already in place, almost seamlessly :) This applies to any Service Registry (I tested the feature with both Kubernetes and
26.
▲
by
bedis9
9y ago
no, this feature is already available in -dev community branch. So it's already available for free. Note this feature has not yet been backported into HAProxy Enterprise...
27.
▲
by
bedis9
9y ago
All the features developed in HAProxy, are pushed in the -dev branch of the community version. They are available for free at your own risk (running a -dev code in prod), or you have to wait until -dev become stable. HAProxy Enterprise user
28.
▲
by
bedis9
9y ago
Well, nignx inc does first develop their proprietary software... Then, they "open" some features. With nginx plus, you're locked to nginx, like when you were using a F5 load-balancer! HAProxy Technologies pushes first its dev
29.
▲
by
bedis9
9y ago
And HAProxy supports Consul out of the box thanks to this new feature :)
30.
▲
by
bedis9
11y ago
What about giving the ability to HAProxy to perform the SRV requests directly???
More ›