Menu

Close
    Subscribe
      Subscribe

    infrastructure

    Page 1 of 2 Older Posts →
    Out-of-Band SSH Tunnel Failover: Why Stability Beats Speed

    Out-of-Band SSH Tunnel Failover: Why Stability Beats Speed

    Apr 23, 2026 · 5 min read

    Building reliable automatic gateway failover for critical infrastructure recovery access. How naive health checks broke everything, and why a 30-second stable recovery is better than a 5-second flapping failover. »

    Production Security Updates Without Downtime: Debian, FreeBSD, and OpenBSD

    Production Security Updates Without Downtime: Debian, FreeBSD, and OpenBSD

    Mar 28, 2026 · 8 min read

    Security patches can’t wait, but unplanned reboots break production. The update runbook for Debian, FreeBSD, and OpenBSD — with real scripts, hold patterns, and a zero-downtime cluster update sequence. »

    ZFS + NFS as Kubernetes Storage: Point-in-Time Recovery Without the Cost

    ZFS + NFS as Kubernetes Storage: Point-in-Time Recovery Without the Cost

    Mar 26, 2026 · 8 min read

    Kubernetes storage is either ephemeral or expensive. We run a FreeBSD VM with ZFS + NFS in the same VPC as our K8s cluster. Hourly snapshots protect your data. Fast recovery. No vendor lock-in. Here’s how we do it. »

    OpenBSD CARP Firewalls in Front of a Private Kubernetes Cluster

    OpenBSD CARP Firewalls in Front of a Private Kubernetes Cluster

    Mar 25, 2026 · 8 min read

    We run two OpenBSD firewalls in CARP HA mode in front of a private Kubernetes cluster. Sub-second failover, full state sync, and pf rules that load-balance across worker nodes. »

    Page 1 of 2 Older Posts →
    ivomarino.com All rights reserved - 2026
    Proudly generated by HUGO, with Casper theme