Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I went ahead and blogged about the workshop, thanks y'all for the inspiration :)

https://dev.to/dnsmichi/efficient-devsecops-pipelines-in-a-c...

If you learn a new trick or gem, please blog and share with our community :-)

Overview of the topics inside the workshop:

- Introduction: CI/CD meets Dev, Sec and Ops

- CI/CD: Terminology and first steps

- Analyse & Identify

- Learn using the GitLab CI Pipeline Exporter to monitor the exercise project throughout the workshop.

- Efficiency actions

- Config Efficiency: CI/CD Variables in variables, job templates (YAML anchors, extends), includes (local, remote), rules and conditions (if, dynamic variables, conditional includes), !reference tags (script, rules), maintain own CI/CD templates (include templates, override config values), parent-child pipelines, multi project pipelines, better error messages to fix failures fast

- Resource Use Efficiency: Identification, max pipeline duration analysis, fail fast with stages grouping, fail fast with async needs, analyse blocking stages pipeline (solution with needs), matrix builds for parallel execution (pratice: combine matrix and extends, combine matrix and !reference), extends merge strategies (with and without !reference)

- CI/CD Infrastructure Efficiency: Optimization ideas, custom build images, optimize builds with C++ as example, GitLab runner resource analysis (sharing, tags, external dependencies, Kubernetes), local runner exercise, resource groups, storage usage analysis, caching (Python dependency exercise, including when:always on failed jobs)

- Auto-scaling: Overview, AWS auto-scaling with GitLab Runner with Terraform, insights into Spot Runners on AWS Graviton

- Group discussion

- Deployment Strategies: IaC, GitOps, Terraform, Kubernetes, registries

- Security: Secrets in CI/CD variables, Hashicorp Vault, secrets scanning, vulnerability scanning

- Observability: CI/CD Runner monitoring, SLOs, quality gates, CI/CD Tracing

- More efficiency ideas: Auto DevOps, Fast vs Resources, Conclusion and tips



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: