Skip to main content

Practical DevOps, Cloud, AI & Linux engineering guides

Featured Article

GitLab's New Rate Limits: What to Fix Before Oct 19

GitLab is capping unauthenticated API calls at 60 an hour starting October 19, and the preview windows land before most teams will have noticed.

KU
Kiril UrbonasAI Engineer
|Oct 4, 2026
GitLab's New Rate Limits: What to Fix Before Oct 19

Most read

  1. 01
  2. 02
  3. 03
  4. 04
  5. 05

Topics

Latest Articles

View All →
We cut our largest playbook's runtime from 14 minutes to 4 minutes. The specific changes that mattered, plus the ones that didn't.
••8 months ago

Ansible Playbook Optimization: Writing Efficient Playbooks

We cut our largest playbook's runtime from 14 minutes to 4 minutes. The specific changes that mattered, plus the ones that didn't.

KU
Kiril Urbonas·3 min read·26
Read article
We tried Pulumi for a quarter and went back to Terraform. Both are real options. Why we picked one and what would change our mind.
••8 months ago

Pulumi vs Terraform Deep Dive: Choosing the Right IaC Tool

We tried Pulumi for a quarter and went back to Terraform. Both are real options. Why we picked one and what would change our mind.

KU
Kiril Urbonas·3 min read·19
Read article
K8s Secrets are barely encrypted. We moved every secret to Vault with the Vault Agent injector and never went back. The setup checklist.
••8 months ago

Operational Checklist: Kubernetes Secrets and External Vault Integration

K8s Secrets are barely encrypted. We moved every secret to Vault with the Vault Agent injector and never went back. The setup checklist.

KU
Kiril Urbonas·3 min read·30
Read article
We test infrastructure code with three layers: validation, plan review, and integration tests. The setup that catches real bugs without slowing down PRs.
••8 months ago

Infrastructure Testing Strategies: Validating Your IaC

We test infrastructure code with three layers: validation, plan review, and integration tests. The setup that catches real bugs without slowing down PRs.

KU
Kiril Urbonas·3 min read·27
Read article
We have a private module registry with ~25 modules used across 12 accounts. Versioning, interface design, and the over-modularization mistake we keep making.
••9 months ago

Terraform Modules Best Practices: Building Reusable Infrastructure

We have a private module registry with ~25 modules used across 12 accounts. Versioning, interface design, and the over-modularization mistake we keep making.

KU
Kiril Urbonas·3 min read·21
Read article
A container is a process with extra kernel features applied. Walking through namespaces, cgroups, and the actual mechanics — the level of detail that makes "container weirdness" debuggable.
••9 months ago

Linux Container Internals: Understanding How Containers Work

A container is a process with extra kernel features applied. Walking through namespaces, cgroups, and the actual mechanics — the level of detail that makes "container weirdness" debuggable.

KU
Kiril Urbonas·4 min read·49
Read article
We have a few hundred shell scripts in production. The patterns that make them survive contact with reality, and the ones we've stopped writing.
••9 months ago

Shell Scripting Best Practices: Writing Maintainable Scripts

We have a few hundred shell scripts in production. The patterns that make them survive contact with reality, and the ones we've stopped writing.

KU
Kiril Urbonas·3 min read·57
Read article
Use prompts to get reliable, safe outputs from LLMs for runbooks, code, and ops tasks.
••9 months ago

Prompt Engineering for DevOps: Consistency and Safety

Use prompts to get reliable, safe outputs from LLMs for runbooks, code, and ops tasks.

KU
Kiril Urbonas·1 min read·25
Read article
Filesystem choice, mount options, IO schedulers — the per-host tweaks that actually moved disk performance for our database and storage workloads.
••9 months ago

File System Optimization: Improving Disk Performance

Filesystem choice, mount options, IO schedulers — the per-host tweaks that actually moved disk performance for our database and storage workloads.

KU
Kiril Urbonas·3 min read·54
Read article
How processes actually live and die on Linux, the tools that show what's happening, and the patterns we use for monitoring service health.
••9 months ago

Process Management and Monitoring in Linux

How processes actually live and die on Linux, the tools that show what's happening, and the patterns we use for monitoring service health.

KU
Kiril Urbonas·3 min read·55
Read article
A practical Linux hardening checklist for production hosts. The settings that earn their place via real production reasons, not the cargo-cult version.
••9 months ago

Linux Security Hardening: Protecting Your System

A practical Linux hardening checklist for production hosts. The settings that earn their place via real production reasons, not the cargo-cult version.

KU
Kiril Urbonas·3 min read·25
Read article
A condensed checklist of the systemd unit-file patterns we now use everywhere, with the production reasons each one matters.
••9 months ago

Operational Checklist: Systemd Service Reliability Patterns

A condensed checklist of the systemd unit-file patterns we now use everywhere, with the production reasons each one matters.

KU
Kiril Urbonas·3 min read·50
Read article
Page 39 of 47 · 559 posts