Public “Office Hours” (2021-08-25)

Erik OstermanOffice Hours

Here's the recording from our DevOps “Office Hours” session on 2021-08-25.

We hold public “Office Hours” every Wednesday at 11:30am PST to answer questions on all things DevOps/Terraform/Kubernetes/CICD related.

These “lunch & learn” style sessions are totally free and really just an opportunity to talk shop, ask questions and get answers.

Register here: cloudposse.com/office-hours

Basically, these sessions are an opportunity to get a free weekly consultation with Cloud Posse where you can literally “ask me anything” (AMA). Since we're all engineers, this also helps us better understand the challenges our users have so we can better focus on solving the real problems you have and address the problems/gaps in our tools.

[00:00:00​] Intro
[00:01:05​] Null Label now supports tenants, labels_as_tags, and descriptors (very powerful!)
https://github.com/cloudposse/terraform-null-label/pull/132/files
[00:17:50​] New documentation on using Leapp instead of aws-vault
https://docs.cloudposse.com/howto/geodesic/authenticate-with-leapp/
[00:27:30​] Reference architecture cold-start docs are coming!!! (maybe next week?)
[00:29:11​] Geodesic M1 support disclaimer. Tools ecosystem not ready.
https://github.com/cloudposse/geodesic
[00:33:25​] Are the Cloud Posse modules tested using Terraform Cloud in addition to other, standard setups?
[00:35:27​] Are you guys still using your own Atlantis fork at Cloud Posse?
[00:39:33​] If anyone has used both CDK for Terraform and Pulumi I'd be interested in any impressions. I have a team of Go developers, so using HCL is actually harder for me to get adopted at this time.
[00:46:39​] Could we mention that this issue requires everyone’s thumbs up, so that AWS prioritize SAM+Terraform – https://github.com/aws/aws-sam-cli/issues/3154
[00:51:54] EKS module is the most complicated terraform-aws-modules module
[01:00:23​] Outro

Public “Office Hours” (2021-08-18)

Erik OstermanOffice Hours

Here's the recording from our DevOps “Office Hours” session on 2021-08-18.

We hold public “Office Hours” every Wednesday at 11:30am PST to answer questions on all things DevOps/Terraform/Kubernetes/CICD related.

These “lunch & learn” style sessions are totally free and really just an opportunity to talk shop, ask questions and get answers.

Register here: cloudposse.com/office-hours

Basically, these sessions are an opportunity to get a free weekly consultation with Cloud Posse where you can literally “ask me anything” (AMA). Since we're all engineers, this also helps us better understand the challenges our users have so we can better focus on solving the real problems you have and address the problems/gaps in our tools.

[00:00:00​] Intro
[00:03:10] EC2 demo
[00:22:25​] Products demo
[00:32:50] Q&A
[00:52:53​] Outro

Public “Office Hours” (2021-08-11)

Erik OstermanOffice Hours

Here's the recording from our DevOps “Office Hours” session on 2021-08-11.

We hold public “Office Hours” every Wednesday at 11:30am PST to answer questions on all things DevOps/Terraform/Kubernetes/CICD related.

These “lunch & learn” style sessions are totally free and really just an opportunity to talk shop, ask questions and get answers.

Register here: cloudposse.com/office-hours

Basically, these sessions are an opportunity to get a free weekly consultation with Cloud Posse where you can literally “ask me anything” (AMA). Since we're all engineers, this also helps us better understand the challenges our users have so we can better focus on solving the real problems you have and address the problems/gaps in our tools.

[00:00:00​] Intro
[00:01:26​] Announcing Amazon CloudWatch cross account alarms
https://aws.amazon.com/about-aws/whats-new/2021/08/announcing-amazon-cloudwatch-cross-account-alarms/
[00:03:04​] So what’s wrong with 1975 programming?
http://varnish-cache.org/docs/trunk/phk/notes.html
[00:04:21​] Defcon 29: Attacking Terraform Environments
https://www.youtube.com/watch?v=3ODhxYY9-9U
[00:09:32​] Do you have tips/suggestions/pointers/resources on creating plugins for tflint?
[00:13:​43] Open Terraforming Server (PoC) thanks weekly.tf
https://github.com/leg100/ots
[00:15:​47] Gaia Terraform UI (Atlantis alternative? Thanks weekly.tf
https://github.com/gaia-app/gaia
[00:19:43] Terraform resource generators
https://github.com/hashicorp/terraform/pull/28874
[00:26:30​] Searching SweetOps Slack Archives for Treasure
https://www.sheldonhull.com/sweetops-slack-archive/
[00:27:20] Terraform resource generators (cont)
https://github.com/hashicorp/terraform/pull/28874
[00:30:47​] Ubiquity products are amazing for the home office (not just enterprise)
https://www.ui.com/consoles/
[00:35:04​] DevOps Subcontractors Needed!
https://cloudposse.com/jobs/
[00:36:25​] What options do we have for TF backend, providers & init args to make them DRY, similar to what terragrunt offers?
[00:50:31] How to import 826 resources into Terraform state – only 273 are in state file? Any idea tool?
[00:56:56] Outro

Public “Office Hours” (2021-08-04)

Erik OstermanOffice Hours

Here's the recording from our DevOps “Office Hours” session on 2021-08-04.

We hold public “Office Hours” every Wednesday at 11:30am PST to answer questions on all things DevOps/Terraform/Kubernetes/CICD related.

These “lunch & learn” style sessions are totally free and really just an opportunity to talk shop, ask questions and get answers.

Register here: cloudposse.com/office-hours

Basically, these sessions are an opportunity to get a free weekly consultation with Cloud Posse where you can literally “ask me anything” (AMA). Since we're all engineers, this also helps us better understand the challenges our users have so we can better focus on solving the real problems you have and address the problems/gaps in our tools.

[00:00:00​] Intro
[00:01:15​] Save the date! August 18th: HashiCorp Boundary Demo (Taylor Dolezal)
[00:01:42​] New Cloud Posse AWS SFTP Module
https://github.com/cloudposse/terraform-aws-transfer-sftp
[00:02:48​] New Cloud Posse Self-signed Certificate Module with SSM/ASM support
https://github.com/cloudposse/terraform-aws-ssm-tls-self-signed-cert
[00:03:37​] New Cloud Posse AWS Macie Module
https://github.com/cloudposse/terraform-aws-macie
[00:04:50​] GitHub Releases 15+ code scanning integrations with open source security tools
https://github.blog/2021-07-28-new-code-scanning-integrations-open-source-security-tools/
[00:09:34​] Terraform Kubernetes Provider Now Supports Custom Resources
https://github.com/hashicorp/terraform-provider-kubernetes/issues/215#issuecomment-892028190
[00:10:35] CISA and NSA Kubernetes hardening guide released
[00:12:39] Certificate Manager now supports cert-manager
[00:14:28​] EC2 Classic is going away August 15th
[00:19:54] Geodesic provides SSH tokens to auth to GitHub, what if I use user name and password?
[00:22:19] ACM offers replacement of Lets Encrypt with Private CA
[00:25:25] Has anyone explored HashiCorp Nomad?
[00:31:16] Using CodeDeploy blue/green deployments to ECS causes 503s
[00:36:​30] Struggling to use AWS SSO for handling permissions?
[00:43:46​] Outro