• 0 Posts
  • 38 Comments
Joined 2 years ago
cake
Cake day: June 12th, 2023

help-circle





  • Watch this thread from here on in carefully separate the idealists from those who know what defence is like.

    • yes, open-source is the goal of everything that can be opened.
    • no, defence code isn’t on the list of what can be opened
    • yes, obscurity isn’t good as a sole effort
    • yes, defence in depth
    • no the funding to get it to where it’s safe to open for randos to submit changes isn’t there today

    Anything I missed?

    Yes, Virginia, it’s better to open all the things right now, but there are risks you haven’t taken into account because you’re not aware of them. The pros are; it’s their job and their work, so listen to their expertise no matter what the oppositional/defiant disorder suggests otherwise.






  • corsicanguppy@lemmy.catoSelfhosted@lemmy.worldAnsible sounds interesting
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    1
    ·
    6 days ago

    Please, for the love of god, look at other things instead of Ansible.

    Definitely do openTofu for infrastructure and deployment, but for configuration of VMs please learn about puppet, saltstack, chef(cinc.sh) and especially mgmtConfig .

    Ansible, by comparison, better matches what we were doing in 2002 at 1/10th the speed, and it’s like pascal levels of wordy.

    Learning about options and finding one that works well for you will often give you a much better experience than fucking Ansible.

    If you do abandon all hope, though, then go ahead and do Ansible; but remember if you do: there are better options, and hating Ansible doesn’t mean you hate automation.