241 karma · joined October 17, 2011
[ my public key: https://keybase.io/pwyliu; my proof: https://keybase.io/pwyliu/sigs/_COjb32nYGeprGg6N0wkb7NUI450EkJJTKGdRG57JBc ]
Did anyone else cringe?
Edit: this is an edge case, clearly. I just think it's an interesting problem.
# Generate a uniformly distributed unique number to sleep.
if node['chef_client']['splay'].to_i > 0
checksum = Digest::MD5.hexdigest(node['fqdn'] || 'unknown-hostname')
sleep_time = checksum.to_s.hex % node['chef_client']['splay'].to_i
else
sleep_time = nil
end
https://github.com/opscode-cookbooks/chef-client/blob/master...This is random enough so you won't kill the server, and deterministic so the resource isn't always changing every Chef run.
LXD is a new thing from Canonical, a hypervisor designed especially for containers that is supposed to guarantee hardware isolation.
For file encryption, now I just do everything on my Ubuntu workstation and use GPG + tarballs. This is sort of a pain in the ass though, and it's not as secure as a TC container of course. It's kind of just a stop gap until I can think of something better.
I'm curious about what other users are doing in this situation. What are your criteria for trusting a fork? How will you know when something (not necessarily CipherShed) is mature and safe enough to use?
You just run a command line tool on a node to inspect or create a "system description". You can then export and deploy a description to create repeatable systems. In this regard I think it's similar to what Blueprint[2] does (or did I guess since Blueprint seems dead now). So it's a lot more lightweight tool and has many less features than Puppet, certainly.
Another cool thing is you can use Machinery to build images and deploy to Openstack. Where I work I spent a pretty long time building similar tooling for Xenserver. Sure would have been nice to have just been able to say "oh there's a thing for that". I'm excited to try this tool out and see what it does.
I think Machinery only works on SLES and opensuse right now. I didn't see any mention of other distros.
http://puppetlabs.com/blog/git-workflow-and-puppet-environme...
I wonder if that could be successful, like a file swapping service built on the same premise of one time only. Charge a nickel a shot or something. I have no idea why that's useful, but for some reason I think it's cool. Maybe just because it's set and forget and you don't have to worry about cleaning up later.
Does anything easy to use do that already?
I have friends, family, and a life. I'm also naturally introverted, and sometimes I just want to put my head down for a week and jam. This is something I like doing.
Different strokes for different folks man. I think your life is sad if you can't understand that some people are different than you are.
However as you can see from the SLA (99.9%), you do have to pay something in the form of reduced redundancy and availability. If, for example, an HP RAID card freaks out and all the VM's get corrupted on your blade, well you are out of luck. That data is gone forever. It's a small risk, but it is a real one (in fact with the P410 they are using, that's actually happened to me before in production). There are lots of other things that can go wrong too. Virtualization is not all rainbows and unicorns.
In the end I think it's still a good deal if you need a backup target with phat storage in it. But if you are interested in just trying out stuff, I think Digital Ocean is a better call since they have a higher SLA (99.99%) and probably a better dashboard and it's around the same price. Backupsy, as the name implies, is made for backups.
There is something strangely compelling about sending thoughts out into the ether with no chance of feedback. Fax pranks are before my time, but I totally get it. I hope I made somebody smile today.
"It wasn't Carmen Ortiz that hounded Aaron to death, it was Steve Heymann. And the system that helped him do it: that was all of us." https://twitter.com/quinnnorton/status/290204205124304896
And Tim Carmody:
"FWIW, Carmen Ortiz just runs the US Attorney's office in MA. Stephen Heymann is the Assistant US Attorney going hard after Aaron Swartz." https://twitter.com/tcarmody/status/290192055488094209