home
Harbor
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
home
-
Securing your temp space for internet browsing
From a server perspective, you make all user writable space noexec but that’s not very practical for desktop. I also configure a firewall with inbound and outbound rules, but that’s a bit more advanced than configuring fstab for new users. Although, I’m an admin I don’t like posting in admin subreddits.
-
GitHub Actions Metrics/Alarms/Telemetry data
github_wait_actions.sh
-
Bash: help me learn!
Reading the man page will blow your mind. You can make a bash e-book for easier reading outside of the terminal like a tablet.
-
Should CI/CD tooling build & deploy its own configuration and infrastructure?
Jenkins infrastructure relies on AWS features. It's uptime is maintained by an autoscaling group. The active half (say blue) sets desired capacity of green to 1 and follows up by setting its own ASG to desired capacity 0. AWS takes over from that point. Green waits for the volume to become available and if the volume is blue it takes a snapshot and waits for the snapshot to complete. After the snapshot completes it updates the AWS tag of the data volume from blue to green. Then, it hands off to this attach volume script. The script attaches, mounts the volume and sets up /etc/fstab in case of a reboot. After the storage is available then systemctl start jenkins.service is called.
-
Open source/free registry with HA
Hmm, I'm using EBS as well. I use a script on the autoscaling EC2 instance which attaches EBS before starting Nexus.
-
What do you use for storing your git history in production?
On boot, EBS store is auto mounted and pulls secrets from secrets manager.
- Where can I get or generate a pdf doc of more current vim documentation?
-
Searching for a good bash course to improve my scripting skills
Functions take compound commands. People treat bash like other programming languages but it is more powerful at specific things. Functions can take more than {} which is unlike other programming languages.
Harbor
-
Docker Private Registry using Harbor
cat << EOF wget \ https://github.com/goharbor/harbor/releases/download/v2.9.4/\ harbor-offline-installer-v2.9.4.tgz EOF
-
Signing container images: Comparing Sigstore, Notary, and Docker Content Trust
Now that you know a little more about Cosign, Notary, and DCT, we will take it one step further by using one of these tools: Cosign. For this example, we will use the simple Docker registry:2 reference image to run a simple registry. In a real-world scenario, a managed registry such as Harbor, Amazon ECR, Docker Hub, etc.
- Docker pull through cache to multiple upstreams, that you can also push to
-
tcp i/o timeout when installing network plugin in "high secure environment"
Have a look at harbor, you can also use it to follow the same methods for helm charts etc.
-
How to build a docker image and still use Watchtower
Or for something more advanced https://goharbor.io/
-
Scan selfhosted docker images for vulnerabilities automatically
Look at https://goharbor.io/
-
Docker has reversed its decision to sunset the “Docker Free Team” plan.
You can host your own image repo if your feeling feisty. Harbor is a graduated project from the CNCF and they are also working on a new implementation called Dragonfly. https://goharbor.io/
- We're no longer sunsetting the Free Team plan | Docker
-
Docker's deleting Open Source images and here's what you need to know
Does anybody know whether there could be something like an open/libre container registry?
Maybe the cloud native foundation or the linux foundation could provide something like this to prevent vendor lock-ins?
I was coincidentially trying out harbor again over the last days, and it seems nice as a managed or self-hosted alternative. [1] after some discussions we probably gonna go with that, because we want to prevent another potential lock-in with sonarpoint's nexus.
Does anybody have similar migration plans?
[1] https://goharbor.io
-
Iron Bank: Secure Registries, Secure Containers
2) Harbor instance registry
What are some alternatives?
ShellCheck - ShellCheck, a static analysis tool for shell scripts
Portainer - Making Docker and Kubernetes management easy.
pandoc - Universal markup converter
Dragonfly - This repository has be archived and moved to the new repository https://github.com/dragonflyoss/Dragonfly2.
jervis - Self service Jenkins job generation using Jenkins Job DSL plugin groovy scripts. Reads .jervis.yml and generates a job in Jenkins.
phoneinfoga - Information gathering framework for phone numbers
chartmuseum - helm chart repository server
gitlab
distribution - The toolkit to pack, ship, store, and deliver container content
ingress-nginx - Ingress-NGINX Controller for Kubernetes
Docker Swarm - Source repo for Docker's Documentation
clair - Vulnerability Static Analysis for Containers