GOOOOD MORNING
Another day another Terraform issue.
The official DNS provider fails closed unconfigurably if no records are returned for a query. Known issue, open - get this - SINCE 2019.
https://github.com/hashicorp/terraform-provider-dns/issues/75
> When we talk about how to design our infrastructure code, we start with the limitations of our tooling and try to derive what we can do within those constraints and then call that best practice.
~ Malcolm Matalka
Nifty trick. Still don't like HCL though.
If you find yourself aliasing `terraform providers lock` you're having a bad time
Having just migrated from @snyssen@hostux.social, I think it is time for an #introduction !
I'm Simon (He/Him) and I am mainly into #selfhosting and #foss #coding, though I also like #videogames, #ttrpg, #cycling and #hiking... And #bears and #cats! (my current profile pic is my cat, Korra) I am also a #privacy advocate and I try to do my part in fighting #climatechange, #racism and #genderequality
I have never been very active on social networks, but I would like to start documenting my #selfhostingjourney a bit more, and this seems like a good place to do it. Until I do, you can already find its #iac on my github account.
I am planning on creating a second account for more personal stuff, but I still have to find a good name...
Urgh, ten pm was NOT the time to resurrect ancient terraform and apply DNS changes.
Sorry future me. It will happen again
Hallo Fediverse,
ich bin gerade auf der Suche nach einem neuen #Freelance-Projekt im #DevOps-Bereich.
Wenn ihr also Beratung und erfahrene Hände bei Themen wie Infrastruktur, #Cloud, Automatisierung, #IaC, #GitOps, #Kubernetes, #Terraform, #Ansible, Monitoring mit #Prometheus, etc. sucht und euer Unternehmen nicht gerade damit beschäftigt ist, den Planeten anzuzünden, dann lasst uns doch gerne mal sprechen.
PowerShell-based Terraform Bootstrap Script
Today, we will implement a Terraform bootstrap script.
This script will be written in PowerShell to bootstrap a new Terraform project. https://luke.geek.nz/azure/powershell-terraform-bootstrap/ #terraform #mvpbuzz #iac #powershell
This article series continues to impress me with it's incision and brevity
@jpm
TERRAFORM DESTROY
INFRASTRUCTURE IS A FUCK
I AM CLOUD MAN
84,369,251 DELETED RESOURCES
#Terraform #IaC
How do you handle your secrets? #IaC #devops #ansible #terraform #opentofu #vault #openbao #bitwarden #devsecops
Pulumi’s latest announcement reflects the growing importance in #IaC of multicloud environments and more active cloud governance.
https://thenewstack.io/why-infrastructure-as-code-needs-cloud-asset-management/
Over the weekend I moved my #Tailscale ACLs to OpenTofu #IAC . I'm very happy how that worked. Looking forward to #Bitwarden secrets provider so that I can store/retrieve Oauth tokens from there.
Quoting twice impeached, sex offender, can't-believe-this-person-was-ever-their-president:
Open antisemitic rhetoric at the #IAC:
If I were to lose the election "Jews will have a big part in this".
"In many ways, Christians love Israel more than Jews"
Jews who are voting for the Democrats are "voting for the enemy".
[...] The first event was hosted by Orthodox businessman Yehuda Kaploun, whose business partner Ed Russo was former CEO of the U.S. division of Israeli company Water-Gen. The Environmental Protection Agency signed a research agreement with Water-Gen during the Trump administration in 2018, one year after EPA Administrator Scott Pruitt met the company at the request of Miriam's late husband Sheldon.
The quotes were taken from both the Hebrew and English Editions, which are emphasizing different aspects of the event.
Hebrew https://archive.ph/NsgFQ#selection-951.107-951.135
https://www.haaretz.com/us-news/2024-09-20/ty-article/.premium/trump-israel-needs-me-to-beat-kamala-harris-more-than-anyone-on-earth/00000192-0ca2-d2af-a5be-6cf37fba0000 or https://archive.ph/2dICD#selection-1257.0-1257.395
Reminder: Douglas Murray is also a speaker at the #IAC for some reason. Right wing Jews' willingness to diminish the memory of the holocaust of Europe's Jewish population and veer into #holocaust denialism for political gains is morally repugnant.
To folks who build DNS verification into your SaaS tooling: you need to build it around the expectation that customers have Infrastructure-as-code, peer review, and other processes that mean they can't push the change in a quick session of <5 minutes that has a timeout. Instead, you need to hand them the DNS record, let them close the webpage, and give them 72 hours.
Mature, enterprise environments don't open the DNS web panel and make changes on the fly.