Docker - Hardening with firewalld Members Public

Containers are no virtual machines - yet we might want to treat hosts running container workloads like hypervisors and apply limitations on container networking. This guide describes a way to limit container networking on docker based container hosts using firewalld.

Daniel Nachtrub
Daniel Nachtrub
Linux

Nextcloud - NativeReadStream excess data will be lost Members Public

Running nextcloud with smb as external files runs into an issue starting with some of the latest releases - we saw the issue first on release 21.0.1. This guide describes how to implement a workaround until an official fix is available.

Daniel Nachtrub
Daniel Nachtrub
Linux

Ceph - OSD restore performance Members Public

When ceph restores an OSD, performance may seem quite slow. This is due the default settings where ceph has quite conservative values depending on your application workload. Especially if you're running workloads with many small objects (files), the default values may seem too slow.

Daniel Nachtrub
Daniel Nachtrub
Linux

Add bash command auto completion Members Public

Working with latest releases of ubuntu linux shows how well bash command auto completion works. Having seen this feature once you no longer want to miss it. This guide describes how easy auto completion can be added to bash.

Daniel Nachtrub
Daniel Nachtrub
Linux

Creating and mounting filesystems using cephfs Members Public

Having a ceph cluster cluster up and running you may want to add a filesystem that can be accessed by multiple nodes at the same time (distributed filesystem). This is where cephfs kicks in. Steps required to setup a cephfs and mount it on clients are described in this article.

Daniel Nachtrub
Daniel Nachtrub
Linux

Spamhaus is adjusting it's rbl return codes Members Public

Spamhaus is adjusting the RBL return codes that are served using their public mirrors. If you're using spamhaus, you should review your configuration.

Daniel Nachtrub
Daniel Nachtrub

Adding storage to a ceph cluster Members Public

Ceph is meant to store data. A natural requirement therefore is to add data to the cluster in order to provide the cluster the ability to actually store data. This article describes how to add storage to your existing cluster.

Daniel Nachtrub
Daniel Nachtrub
Linux

Debian - Kernelupdate via backports Members Public

Working with machines running on debian is great - debian is a distribution that focuses on stable environments. Providing stability comes - as everything - with a cost: Packages provided with a distribution are not latest & greatest, they are proven. TL;DR Using debian backports is a good way

Daniel Nachtrub
Daniel Nachtrub
Linux