Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
eicnix
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
61.
▲
by
eicnix
9y ago
There is also a 3rd Edition which was released in 2012. https://www.amazon.com/Practical-Guide-Commands-Editors-Prog...
62.
▲
by
eicnix
9y ago
You could pay for Google apps for work and don't have your data indexed. So it's really more a question how much money / work to switch to another provider is your data worth to you?
63.
▲
by
eicnix
9y ago
I believe its more like "write once, run everywhere except for mac". Microsoft is working on running linux containers natively on Windows.
64.
▲
by
eicnix
9y ago
Thats probably true but you could enforce it at a corporate level with a whitelist of apps that should have access to certain permissions.
65.
▲
by
eicnix
9y ago
@Proxy I am not sure what the issue is that you are facing. kubectl proxy should create a tcp-proxy from your loopback device to the pod. So there should be no http_proxy involved. If you think a kubernetes component does not respect the no
66.
▲
by
eicnix
9y ago
It seems you have not discovered the wide possibilities of kubernetes yet :) How are you setting up your cluster? A) Kubernetes abstracts the networks solution so people can choose between multiple implementations. Some people already use o
67.
▲
by
eicnix
9y ago
You can run distributed stateful workloads on kubernetes with local storage and disable rescheduling when the node goes down. This means that you need to manually migrate/restart workloads if a node goes down. There is work being done
68.
▲
by
eicnix
9y ago
When you are running on your own hardware you usually have multiple options for storage: - Use the local node storage although this is very simple but can get complicated on more complex installations - Connect to your existing storage solu
69.
▲
by
eicnix
9y ago
There is currently some work being done for improving local storage usage in k8s. https://github.com/kubernetes/community/pull/306 Additionally k8s can be configured to restart pods on the same node so you ca
70.
▲
by
eicnix
9y ago
How does this compare to other HA postgres products like stolon or Postgres-XL?
71.
▲
Kubernetes desktop client
(kubernetic.com)
5 points
by
eicnix
10y ago
|
0 comments
72.
▲
by
eicnix
10y ago
There is the Onyx Book Max which is a 13.3" grayscale Android tablet with an e-ink display. Which is kinda "cheap" with around $750 compared to other large e-ink devices. I use it to read PDFs and take notes with a stylus pen
73.
▲
by
eicnix
10y ago
I agree that the communication you described isn't completely REST style but rather "just" using HTTP as an application protocol. There is no real downside in doing so but it shouldn't be called REST. REST based on the R
74.
▲
by
eicnix
10y ago
The GCP services are usually within their SLA target so I don't see the problem with the incidents. So you know what you buy and can take actions if you need a higher SLA for your application.
75.
▲
by
eicnix
10y ago
https://status.cloud.google.com/summary tells a different story or do you have other information? I have used GCP for some time without being affected from any incident.
76.
▲
by
eicnix
10y ago
Which is coincidently down.
77.
▲
Deploying Nginx ingress with let’s encrypt on Kubernetes using Helm
(medium.com)
1 points
by
eicnix
10y ago
|
0 comments
78.
▲
by
eicnix
10y ago
GCP also provides globally distributed load balancers which reduces the overhead to deploy is multiple regions.
79.
▲
by
eicnix
10y ago
Can you talk about the additional latency between your front-page and backend by running in different cloud environments? How do you deal with a availability zone failure of a cloud provider?
80.
▲
by
eicnix
10y ago
Single droplets are a single point of failure and have a limited availability. You can take actions to mitigate this SPOF like running multiple droplets and distributing requests by adding all of these droplets to your DNS configuration als
81.
▲
by
eicnix
10y ago
I have some question about your loadbalancer and your plans about kube on DO: - Does your loadbalancer support HTTP/2 yet? - Can you share your scripts for setting up a HA kube cluster on DO? - Do you plan to provide a kubernetes cloud
82.
▲
by
eicnix
10y ago
How does Caddy compare to nginx performance wise? I have a similar setup like you running on nginx. For loadbalancers I mainly care about performance and not usability of the configuration language.
83.
▲
by
eicnix
10y ago
There is a issue open for this too... https://github.com/kubernetes/kubernetes/issues/40476
84.
▲
by
eicnix
10y ago
Encrypted storage isn't as important when you can restrict the access to the secrets. Just because the secrets are in plaintext in etcd doesn't mean everyone can read them. Then you need a mutual authenticated connection from the
85.
▲
by
eicnix
10y ago
Yes, the kubernetes secrets resource is not a replacement for a secret store. Your specific point is being worked on: https://github.com/kubernetes/kubernetes/issues/12742 You can use Vault( https://
86.
▲
by
eicnix
10y ago
Kubernetes supports this already. You have the choice to either mount the secret into the container file system or set it as a environment variable. https://kubernetes.io/docs/user-guide/secrets/#using-secrets
87.
▲
by
eicnix
10y ago
Kubernetes supported secrets for nearly 2 years: https://kubernetes.io/docs/user-guide/secrets/ They currently debate over pluggable secret stores: https://github.com/kubernetes/kubernete
88.
▲
by
eicnix
10y ago
From what I understand there are no secruity mechanisms other than authentication to the cluster. How do you prevent somebody that got access to the cluster to just read all your secrets? Can I plug in my own secret store?
89.
▲
by
eicnix
10y ago
Thank you for the recommendation. I plan to do some testing to setup a kubernetes cluster on bare metal and will try ovh for this aswell.
90.
▲
by
eicnix
10y ago
Interesting point. In my experience buy vs rent depends on the company size. Which bare metal providers can you recommend? How much control do you have over your network?
More ›