Menu

Close
    Subscribe
    Contact Resume About

    Hi, I'm Ivo.

    Sharing lessons from
    10+ years running
    production systems.

    Scroll Down
    Page 1 of 2 Older Posts →
    Production Security Updates Without Downtime: Debian, FreeBSD, and OpenBSD

    Production Security Updates Without Downtime: Debian, FreeBSD, and OpenBSD

    Mar 28, 2026 · 8 min read

    Security patches can’t wait, but unplanned reboots break production. The update runbook for Debian, FreeBSD, and OpenBSD — with real scripts, hold patterns, and a zero-downtime cluster update sequence. »

    From Data Science to Production: MLOps CI/CD Pipeline with Real-time Accuracy Monitoring

    From Data Science to Production: MLOps CI/CD Pipeline with Real-time Accuracy Monitoring

    Mar 27, 2026 · 7 min read

    Production machine learning requires more than training good models. This guide covers building a complete MLOps system with Kubernetes, Prometheus monitoring, and automated accuracy checks to catch model drift and prevent silent failures in production. »

    ZFS + NFS as Kubernetes Storage: Point-in-Time Recovery Without the Cost

    ZFS + NFS as Kubernetes Storage: Point-in-Time Recovery Without the Cost

    Mar 26, 2026 · 8 min read

    Kubernetes storage is either ephemeral or expensive. We run a FreeBSD VM with ZFS + NFS in the same VPC as our K8s cluster. Hourly snapshots protect your data. Fast recovery. No vendor lock-in. Here’s how we do it. »

    OpenBSD CARP Firewalls in Front of a Private Kubernetes Cluster

    OpenBSD CARP Firewalls in Front of a Private Kubernetes Cluster

    Mar 25, 2026 · 8 min read

    We run two OpenBSD firewalls in CARP HA mode in front of a private Kubernetes cluster. Sub-second failover, full state sync, and pf rules that load-balance across worker nodes. »

    Page 1 of 2 Older Posts →
    ivomarino.com All rights reserved - 2026
    Proudly generated by HUGO, with Casper theme