Join devRant
Do all the things like
				++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
				Sign Up
			Pipeless API
 
				From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
				Learn More
			Search - "ci server"
		- 
				    					
					
					So pm2 (a node process manager package on npm) just caused thousands of CI builds to fail because of an "optionalDependency" on a package called gkt which is requested as a tarball from a server that was returning 503. That package consists of one file which contains this 15 15
- 
				    					
					
					I just can't understand what will lead an so called Software Company, that provides for my local government by the way, to use an cloud sever (AWS ec2 instance) like it were an bare metal machine.
 
 They have it working, non-stop, for over 4 years or so. Just one instance. Running MySQL, PostgreSQL, Apache, PHP and an f* Tomcat server with no less than 10 HUGE apps deployed. I just can't believe this instance is still up.
 
 By the way, they don't do backups, most of the data is on the ephemeral storage, they use just one private key for every dev, no CI, no testing. Deployment are nightmares using scp to upload the .war...
 
 But still, they are running several several apps for things like registering citizen complaints that comes in by hot lines. The system is incredibly slow as they use just hibernate without query optimizations to lookup and search things (n+1 query problems).
 
 They didn't even bother to get a proper domain. They use an IP address and expose the port for tomcat directly. No reverse proxy here! (No ssl too)
 
 I've been out of this company for two years now, it was my first work as a developer, but they needed help for an app that I worked on during my time there. I was really surprised to see that everything still the same. Even the old private key that they emailed me (?!?!?!?!) back then still worked. All the passwords still the same too.
 
 I have some good rants from the time I was there, and about the general level of the developers in my region. But I'll leave them for later!
 
 Is it just me or this whole shit is crazy af?3
- 
				    					
					
					Yet another nice (bad) tool with a funny name: volkswagen
 
 > Volkswagen detects when your tests are being run in a CI server, and makes them pass.
 
 LOOOOL
 
 https://github.com/auchenberg/...3
- 
				    					
					
					A coworker complained that the ci server is to slow for a build. Found 4000 js library source files which are copied in each build.
- 
				    					
					
					Ah finally, the moment when being a web developer is full of joy.
 
 ☑️ Server-side rendering
 ☑️ Inline critical css
 ☑️ Add progressive image loading
 ☑️ Minify everything
 ☑️ Automate release process in CI
 ☑️ Lint everything
 
 Now that the strucutre is up, time to code the actual website. This is gonna be good!7
- 
				    					
					
					So, after weeks of reading spicy rants from all of you, I finally decided to join your community ; even if I'm only a student, I've encountered some solid crap in my internships.
 
 Let's go back in time bois. Two years ago, I started my first intership at a Fortune 500 company (this doesn't exists in France, but whatever, this is nearly the same category). I was supposed to build some file sharing system for the office. Before getting into it, I briefly thought aboyt what technos I could use to build it and make a sweet interface for my co-workers, in 10 weeks, and not a single another day.
 
 Expectations
 > Nice team with devs that I could ask things about and learn solid tricks that would even amaze David Copperfield
 > Having a nice dev environment
 
 Reality
 > Alone on this project
 > No fucking dev environment, I had to build everything on Notepad
 > No CI
 > No SCM
 > And, the worst, Ladies and Gentlemans,
 
 I FUCKING HAD TO WORK IN A SINGLE FILE IN A CLOSED ENVIRONMENT.
 NO WEBSERVER, NO DEDICATED SPACE.
 I HAD TO REQUEST A SPECIFIC ENVIRONMENT IN A CLOSED CUSTOM CMS THAT WAS SERVING FILES, SO THIS FORMAT COULD BE READ ON FOLDER OPENING IN IE9 (FIREFOX FORBIDDEN).
 YOU HAD TO MIX HTML, CSS AND JS IN A SINGLE FILE. NO SERVER-SIDE LANGUAGES, ONLY STATIC LINKS, NO FRAMEWORKS (if we can call jQuery, Bootstrap, Semantic UI and all these thinks "Frameworks").
 
 > mfw at the end of the intership 13 13
- 
				    					
					
					I seriously do not understand the rants against Windows.
 
 I love Windows 10 (got as free upgrade from MS), and have no issues with MacOS or Linux OS. I use them as well but do all serious work on Windows.
 
 All my life, I have worked on business / commercial side and picked up Web development in last couple of years. I started using computers on DOS in 1992, and shifted to Windows 3.0 in 1995. There was no Mac or MacOS back then.
 
 For serious work, I purchased a old Dell Precision M4700 workstation grade laptop with quad-core i7, at throwaway price, got 32GB RAM, 2.4TB (1x2 TB + 400gb) of SSD on super sale online, and installed it myself. It easily supports dual 4k monitors.
 
 Git-bash on windows allows all the necessary linux command line on windows. Though not tried, Windows 10 allows embedded Ubunutu with linux terminal. Web development tools like - VSCode, git, github / bitbucket clients, NVM/Node, React / Redux / Webpack / Gatsby / Jest, REST clients, GraphQL client and server, Graph Server, Chrome PWA / Chrome Dev Tools, http/Websocket/WebRTC interception, Google Firebase SDKs, AWS sdks, cloud utilities, CI/CD tools work flawlessly. Windows even has its own package manager for applications.31
- 
				    					
					
					I’m back for a fucking rant.
 
 My previous post I was happy, I’ve had an interview today and I felt the interviewer acted with integrity and made the role seem worthwhile. Fuck it, here’s the link:
 https://www.devrant.io/rants/889363
 
 So, since then; the recruiter got in touch: “smashed it son, sending the tech demo your way, if you can get it done this evening that would be amazing”
 
 Obviously I said based on the exact brief I think that’s possible, I’ll take a look and let them know if it isn’t.
 
 Having done loads of these, I know I can usually knock them out and impress in an evening with no trouble.
 
 Here’s where shit gets fucked up; i opened the brief.
 
 I was met with a brief for an MVP using best practice patterns and flexing every muscle with the tech available...
 
 Then I see the requirements, these fucking dicks are after 10 functional requirements averaging an hour a piece.
 
 +TDD so * 1.25,
 +DI and dependency inversion principle * 1.1
 +CI setup (1h on this platform)
 +One ill requirement to use a stored proc in SQL server to return a view (1h)
 +UX/UI design consideration using an old tech (1-2h)
 +unobtrusive jquery form post validation (2h)
 +AES-256 encryption in the db... add 2h for proper testing.
 
 These cunts want me to knock 15-20h of Work into their interview tech demo.
 
 I’ve done a lot of these recently, all of them topped out at 3h max.
 
 The job is middling: average package, old tech, not the most exciting or decent work.
 
 The interviewer alluded to his lead being a bit of a dick; one of those “the code comes first” devs.
 
 Here’s where shit gets realer:
 They’ve included mock ups in the tech demo brief’s zip... I looked at them to confirm I wasn’t over estimating the job... I wasn’t.
 
 Then I looked at the other files in the fucking zip.
 
 I found 3 of the images they wanted to use were copyright withheld... there’s no way these guys have the right to distribute these.
 
 Then I look in the font folder, it’s a single ttf, downloaded from fucking DA Font... it was published less than 2mo ago, the license file had been removed: free for Personal, anything else; contact me.
 
 There’s no way these guys have any rights to this font, and I’ve never seen a font redistributed legally without it’s accompanying licence files.
 
 This fucking company is constantly talking about its ethical behaviours.
 
 Given that I know what I’m doing; I know it would have taken less time to find free-for-commercial images and use a google font... this sloppy bullshit is beyond me.
 
 Anyway, I said I’d get back to the recruiter, he wasn’t to know and he’s a good guy. I let him know I’d complete the tech demo over the weekend, he’s looked after me and I don’t want him having trouble with his client...
 
 I’ll substitute the copyright fuckery with images I have a license for because there’s no way I’m pushing copyright stolen material to a public github repo.
 
 I’ll also be substituting the topic and leaving a few js bombs in there to ensure they don’t just steal my shit.
 
 Here’s my hypotheses, anyone with any more would be greatly welcomed...
 1: the lead dev is just a stuck up arsehole, with no real care for his work and a relaxed view on stealing other people’s.
 2: they are looking for 15-20h free work on an MVP they can modify and take to market
 3: they are looking for people to turn down this job so they can support someone’s fucking visa.
 
 In any case, it’s a shit show and I’ll just be seeing this as box checking and interview practice...
 
 Arguments for 1: the head told me about his lead’s problems within 20mn of the interview.
 2: he said his biggest problem was getting products out quickly enough.
 3: the recruiter told me they’d been “picky”, and they’re making themselves people who can’t be worked for.
 
 I’m going to knock out the demo, keep it private and protect my work well. It’s going to smash their tits off because I’m a fucking great developer... I’ll make sure I get the offer to keep the recruiter looked after.
 
 Then fuck those guys, I’m fucking livid.
 
 After a wonderful interview experience and a nice introduction to the company I’ve been completely put off...
 
 So here’s the update: if you’re interviewing for a shitty middle level dev position, amongst difficult people, on an out of date stack... you need people to want you, don’t fuck them off.
 
 If they want my time to rush out MVPs, they can pay my day rate.
 
 Fuuuuuuuuck... I typed this out whilst listening to the podcast, I’m glad I’m not the only one dealing with shit.
 
 Oh also; I had a lovely discriminatory as fuck application, personality test and disability request email sent to me from a company that seems like it’s still in the 90s. Fuck those guys too, I reported them to the relevant authorities and hope they’re made to look at how morally reprehensible their recruitment process is. The law is you don’t ask if the job can be done by anyone.6
- 
				    					
					
					My first job was actually nontechnical - I was 18 years old and sold premium office furniture for a small store in Munich.
 I did code in my free time though (PHP/JS mostly, had a litte browsergame back then - those were the days), so when my boss approached me and asked me whether I liked to take over a coding project, I agreed to the idea.
 
 Little did I know at the time: I was supposed to work with a web agency the boss had contracted to build their online shop. Only that he had no plan or anything, he basically told them "build me an online shop like abc(a major competitor of ours at the time)"
 
 He employed another sales lady who was supposed to manage the shop (that didn't exist yet). In the end, I think 80% of her job was to keep me from killing my boss.
 
 As you can imagine, with this huuuuge amout of planning and these exact visions of what was supposed to be, things went south fast and far. So far that I could visit my fellow flightless birds down in the Penguin's republic of Antarctica and still need to go further.
 
 Well... When my boss started suing the web agency, I was... ahem, asked to take over. Dumb as I was, I did - I was a PHP kid and thought that Magento, being written in PHP, would be easy to master. If you know Magento, you know that was maybe the wrongest thing I ever said.
 
 Fast forward 3 very exhausting months, the thing was online. Not all of it worked yet, but it was online and fairly secure.
 
 I did next to everything myself, administrating the CentOS box the shop was running on, its (own) e-mail server, the web server, all the coding required for the shop (can you spell 12 hour day for 8 hour pay?)
 
 3 further months later, my life basically was a wreck, I dragged myself to work, the only thing I looked forward being the motorcycle ride home. The system worked though.
 
 Mind you, I was still, at the time, working with three major customers, doing deskside support and some admin (Win Server 2008R2 at the time) - because, to quote my boss, "We could not afford a full time developer and we don't need one".
 
 I think i stopped coding in my free time, the one hobby I used to love more than anything on the world, somewhere Decemerish 2012. I dropped out of the open source projects I was in, quit working on my browser game and let everything slide.
 
 I didn't even care to renew the domains and servers for it, I just let it die without notice.
 
 The little free time I had, I spent playing video games and getting drunk/high.
 
 December 2013, 1.5 years on the job, I reached my breaking point and just left, called in sick at least a week per month because I just could not see this fucking place anymore.
 
 I looked for another job outside of ALL of what I did before. No more Magento, no more sales, no more PHP. I didn't have to look for long, despite what I thought of my skills.
 
 In February 2014, I told my boss that I quit. It was still seven months until my new job started, but I wanted him to know early so we could migrate and find a replacement.
 
 The search for said replacement started in June 2014. I had considerably less work in the months before, looks like he got the hint.
 
 In August 2014, my replacement arrived and I got him started.
 
 I found a job, which I am still in, and still happy about after almost half a decade, at a local, medium sized ISP as a software dev and IT security guy. Got a proper training with a certificate and everything now.
 
 My replacement lasted two months, he was external and never really did his job - the site, which until I had quit, had a total of 3 days downtime for 3 YEARS (they were the hoster's fault, not mine), was down for an entire month and he could not even tell why.
 
 HIS followup was kicked after taking two weeks to familiarize himself with the project. Well, I think that two weeks is not even barely enough to familiarize yourself with nearly three years of work, but my boss gave him two days.
 
 In 2016, the shop was replaced with another one. Different shop system, different OS, different CI. I don't know why and I can't say I give a damn.
 
 Almost all the people that worked at the company back with me have left for greener pastures, taking their customers (and revenue) with them.
 
 As for my boss' comments, instructions and lines: THAT might not be safe for work. Or kids. Or humans in general. And there wouldn't be much left if you put it through a language filter...
 
 Moral of the story: No, it's not a bad thing to leave a place if you're mistreated there. Don't mistake loyalty with stupidity!
 
 And, to quote one of my favourite Bands: "Nothing matters when the pain is all but gone" (Tragedy + Time by Rise Against).8
- 
				    					
					
					TL;DR: At a house party, on my Phone, via shitty German mobile network using the GitLab website's plain text editor. Thanks to CI/CD my changes to the code were easily tested and deployed to the server.
 
 It was for a college project and someone had a bug in his 600+ lines function that was nested like hell. At least 7 levels deep. Told him before I went to that party it's probably a redefined counter variable but he wouldn't have it as he was sure it was an error with the business logic. Told him to simplify the code then but he wouldn't do that either because "the code/logic is too complex to be simplified"... Yeah... what a dipshit...
 Nonetheless I went to the party and He kept debugging. At some point he called me and asked me to help him the following day. Knowing that the code had to be fixed anyways I agreed.
 I also knew I wouldn't be much of a help the next day due to side effects of the party, so I tried looking at this shitshow of a function on my phone. Oh did I mention it was PHP, yet? Yeah... About 30 minutes and a beer later I found the bug and of course it was a redefined counter variable... My respect for him as a dev was already crumbling but it died completely during that evening2
- 
				    					
					
					Hey there!
 
 So during my internship I learned a lot about Linux, Docker and servers and I recently switched from a shared hosting to my own VPS. On this VPS I currently have one nginx server running that serves a static ReactJs application. This is temponarily, I SFTP-ed the build files to the server and added a config file for ssl, ciphers and dhparams. I plan to change it later to a nextjs application with a ci/di pipeline etc. I also added a 'runuser' that owns the /srv/web directory in which the webserver files are located. Ssh has passwords disabled and my private keys have passphrases.
 
 Now that I it's been running for a few days I noticed a lot of requests from botnets that tried to access phpmyadmin and adminpanels on my server which gave me quite a scare. Luckily my website does not have a backend and I would never expose phpmyadmin like that if I did have it.
 
 Now my question is:
 Do you guys know any good articles or have tips and tricks for securing my server and future projects? Are there any good practices that I should absolutely read and follow? (Like not exposing server details etc., php version, rate limiting). I really want to move forward with my quest for knowledge and feel like I should have a good basis when it comes to managing a server, especially with the current privacy laws in place.
 
 Thanks in advance for enduring my rant and infodump 😅7
- 
				    					
					
					One of my first projects involved a python server. This was before I even knew about CD/CI, so we were updating by ssh-ing in, pulling, and killing the process.
 
 My solution? Make an endpoint that pulls the repo and intentionally crashes the server to restart it. We used it for two years.1
- 
				    					
					
					👍 https://github.com/auchenberg/...
 
 "If you want your software to be adopted by Americans, good tests scores from the CI server are very important. Volkswagen uses a defeat device to detect when it's being tested in a CI server and will automatically reduce errors to an acceptable level for the tests to pass. This will allow you to spend less time worrying about testing and more time enjoying the good life as a trustful software developer."rant malice driven development devops task failed successfully volkswagen emissions continuous integration satire gone wrong troll10
- 
				    					
					
					CI came up with 265 errors. (deploying to an old server to bring it back).
 
 I make some very clever fixes and run it again.
 
 Now we have 269 errors.
 
 -_-2
- 
				    					
					
					Just wrote my own webpack plugin for VueJS.
 
 In serverless application there isn't a good way to pre render a single page web application as there is no server to do this task.
 
 What we can do is use serverside rendering with webpack to locally (or in CI) generate the static HTML markup and include them in a template file like EJS.
 
 In that way, the client browsers would not have to wait for the initial render and the search engines will also be happy.
 
 This feels good! Time to upload it as a npm package 😇2
- 
				    					
					
					How common is it for development job applicants to lie about their skillsets and experience?
 
 Had an applicant come interview for a senior software engineer role, has been in the same company for 8 years and his resume is sprayed with almost every tech speciality and language there is, claims to be proficient in 8+ languages, done AWS server migrations, built CI/CD pipelines from scratch, written CloudFormation scripts, built microservices, worked with AWS services and serverless platforms, has managed a team, does salary and performance reviews
 
 My gut feeling is when someone claims to have knowledge and experience across multiple specialities, they’re skills in any of those domains are only skin deep8
- 
				    					
					
					Well paid java dev. But the HW/SW-Stack is awful.
 
 Monitor: single 1600x1024
 5yr old notebook, old i5, magnetic hdd
 Forced to use windows 7
 No maven server
 No CI server
 SVN but no git
 Eclipse, no intelliJ
 No sonar server
 
 There are days where I just can't take it anymore.11
- 
				    					
					
					Was talking about how I implemented CI/CD in one of our projects as a starting point to others and how it worked by running tests and deploying to the server and one of my colleagues laughed about having to have tests at all, I explained and asked him what was he gonna do that morning, his answer:
 
 "Well, I'm gonna test the system X and fix some bugs"
 
 To what I replied:
 
 "If you have automated tests you could have those tests automatic(?!) and they also help you finding bugs early"
 
 Wtf do ppl have in mind that they prefer remediation over prevention and they end up wasting their time with shit that could be fully automated?2
- 
				    					
					
					Too many to count, but this one useless meeting stands out the most.
 
 I was working as an outside dev for software corporation. I was hired as an UI dev although my skill set was UI/engineer/devops at the time.
 
 we wrote a big chunk of 'documentation' (read word files explaining features) before the project even started, I had 2 sprints of just meetings. Everybody does nothing, while I set up the project, tuned configs, added testing libraries, linters, environments, instances, CI/CD etc.
 
 When we started actual project we had at least 2 meetings that were 2-3 hours long on a daily basis, then I said : look guys, you are paying me just to sit here and listen to you, I would rather be working as we are behind the schedule and long meetings don't help us at all.
 
 ok, but there is that one more meeting i have to be on.
 
 So some senior architect(just a senior backend engineer as I found out later) who is really some kind of manager and didn't wrote code for like 10 years starts to roast devs from the team about documentation and architectural decisions. I was like second one that he attacked.
 
 I explained why I think his opinion doesn't matter to me as he is explaining server side related issues and I'm on the client-side and if he wants to argue we can argue on actual client-side decisions I made.
 
 He tried to discuss thinking that he is far superior to some noob UI developer (Which I wasn't, but he didn't know that).
 
 I started asking some questions and soon he felt lost and offended. We ended that discussion with conclusion that I made my own decisions on the client-side. That lasted less than 10 minutes.
 
 So I just sit there and eat popcorn for next 4 and half hours listening to their unnecessary discussions where some angry manager that did programing decades ago wanted to show that we are all noobs and stupid.
 
 what a sad human being.
 what a waste of time, but hey I got payed for this 5 hour meeting.1
- 
				    					
					
					So I handed in my official resignation last week as I will be changing to a new job next month. So one of the last big things that I have been working on is a Jenkins server for the rest of the team to use and currently writing up the documentation for it.
 
 However I haven't been told who I will be handing over my work to, but the bigger thing I feel is that even if I write all the documentation, no one will actually read it. Reason I think this is because I doubt anyone else in the team will even use the Jenkins server. The major issues are that no one writes unit tests and don't even understand what CI is!
 
 So right now it feels like my final month of work will all be for nothing and makes me wonder if I should even bother writing documentation, especially if it isn't going to be handed over to anyone.5
- 
				    					
					
					An area of my company hired a new director who directed his “DevOps” team to implement a process that would prevent the CI server from running tests on a PR unless the code was reviewed first. He was worried that there would be too many tests executing with 400 developers committing code frequently.
 
 He’s from Yahoo.12
- 
				    					
					
					Just spent the *entire* afternoon trying to figure out why the hell my code runs fine locally, but doesn't when our CI server builds & deploys it on AWS.
 
 ...and I've now, finally, figured out it was all because I forgot to check a damn file into Git 🤦♂️
 
 I'm simultaneously relieved, annoyed & embarassed.5
- 
				    					
					
					I think I'm getting crazy...
 Yesterday evening I finally thought it was a great idea to set up Gitlab CI to let the server build (ng cli) and deploy (via FTP) an Angular5 SPA on commits on the master branch.
 
 BUT...
 
 The npm package "vinyl-ftp" thinks it is pretty fucking funny to just randomly stop in the middle of uploading files or just upload some files with 0 bytes in size.
 
 WHAT THE HELL?
 
 After some hate infested trial and error, it seems that the more parallel channels I set up, the more chance I get that all files are correctly uploaded, but never all.
 
 If anybody here happens to be some kind of mighty byte bender and knows what to do, I'd be thankful. But I will probably try out a different client in the docker image...1
- 
				    					
					
					Hi everyone,
 I got an hardware question. Im planning on getting a personal home server. I want to use it as a small gitlab server, continues integration, and the like for personal projects.
 It has to be power efficient otherwise my dad will start crying.
 I want it to be relatively cheap and running linux.
 Ive got no clue what the best thing todo is. Should I get a prebuild one or build one myself.
 For prebuild ones, what brands should I look at?
 For a custom built what hardware do you recommend me?10
- 
				    					
					
					I'm starting to feel super frustrated with my job.
 Sometimes I feel like people who work for large tech companies must have it easy. My company is trying to do this digital transformation thing. Modern development practices Scrum, agile, CI/CD etc. So I was put on a team to work on a project with this new methodology. The idea was we would build the front end and interface with the core systems via service calls. Of course it didn't work out that simple and we had to add our own server side stuff but whatever. It's really hard without a point of reference for any of this stuff. We don't have established coding standards, the data we are working with is a mess, incompetent vendors, the infrastructure team supporting the environments can be such arrogant fucks when we need their help to get shit done. The team also doesn't have any members who really know the core systems well. I am the only developer on the team who is an employee of the company the rest are contractors who are in and out. Last week it was literally just me. This is my first job out of school btw I've been here a year now. I guess I just feel frustrated that I have to figure out so much on my own I don't really have many senior devs at the company I can look to. And on the team I've sorta ended up in an unofficial leadership position. Feels like a lot on my shoulders. I feel like if i could have worked for a bigger company I could learn to do a lot of things better. I feel like there's too much on me for the amount of experience I have or am I wrong ?5
- 
				    					
					
					A new currency is emerging in our industry. It is called "blame".
 Who is to blame if we don't meet the deadline?
 Who is to blame if the rushed release has x bugs?
 Who is to blame if nightly build breaks, because our CI-Server is an old hunk of junk and "management" didn't approve the upgrade?
 Our customer blames the delay in HIS infrastructure on us, because our system requirements are too high.
 
 Blame blame blame. This currency is the new idol of our management team. Everyone gets blamed. They manage their "blame" ledgers instead of approving the tools we need or give us reasonable deadlines. Why Lord, oh why are there SO MANY MORONS in managment? You know what, dear "managers"? FUCK YOU., FUCK YOU SO HARD YOUR MOM WON'T RECOGNIZE YOU. YOU COULDN'T POUR PISS OUT OF A BOOT WITH INSTRUCTIONS ON THE HEEL.4
- 
				    					
					
					Going through the conversation for xxxxth time with my business partner, why we will not launch a new product on top of pre-made PHP script / plugin.
 
 Just got our company into TDD, and automated QA via CI server & code checks etc, PLEASE stop trying to drag us back into the land of spaghetti code & bug legions in production. That's all thxbye.
- 
				    					
					
					I just joined a new company.
 Their CI pipeline is to give root access to staging and prod servers to every developer in the company and the manually git pull each repository (8-10 repos per server) and manually set nginx and port configurations. And if this wasn't enough, all of the 30 sites they have are basically the same site and they make the changes manually for each tenant (no env file). I'm amazed at how hard some people are willing to work.5
- 
				    					
					
					To me this is one of the most interesting topics. I always dream about creating the perfect programming class (not aimed at absolute beginners though, in the end there should be some usable software artifact), because I had to teach myself at least half of the skills I need everyday.
 
 The goal of the class, which has at least to be a semester long, is to be able to create industry-ready software projects with a distributed architecture (i.e. client-server).
 
 The important thing is to have a central theme over the whole class. Which means you should go through the software lifecycle at least once.
 
 Let's say the class consists of 10 Units à ~3 hours (with breaks ofc) and takes place once a week, because that is the absolute minimum time to enable the students to do their homework.
 
 1. Project setup, explanation of the whole toolchain. Init repositories, create SSH keys for github/bitbucket, git crash course (provide a cheat sheet).
 Create a hello world web app with $framework. Run the web server, let the students poke around with it. Let them push their projects to their repositories.
 The remainder of the lesson is for Q&A, technical problems and so on.
 
 Homework: Read the docs of $framework. Do some commits, just alter the HTML & CSS a bit, give them your personal touch.
 For the homework, provide a $chat channel/forum/mailing list or whatever for questions where not only the the teacher should help, but also the students help each other.
 
 2. Setup of CI/Build automation. This is one of the hardest parts for the teacher/uni because the university must provide the necessary hardware for it, which costs money. But the students faces when they see that a push to master automatically triggers a build and deploys it to the right place where they can reach it from the web is priceless.
 This is one recurring point over the whole course, as there will be more software artifacts beside the web app, which need to be added to the build process. I do not want to go deeper here, whether you use Jenkins, or Travis or whatev and Ansible or Puppet or whatev for automation. You probably have some docker container set up for this, because this is a very tedious task for initial setup, probably way out of proportion. But in the end there needs to be a running web service for every student which they can reach over a personal URL. Depending on the students interest on the topic it may be also better to setup this already before the first class starts and only introduce them to all the concepts in a theory block and do some more coding in the second half.
 
 Homework: Use $framework to extend your web app. Make it a bit more user interactive with buttons, forms or the like. As we still have no backend here, you can output to alert or something.
 
 3. Create a minimal backend with $backendFramework. Only to have something which speaks with the frontend so you can create API calls going back and forth. Also create a DB, relational or not. Discuss DB schema/model and answer student questions.
 
 Homework: Create a form which gets transformed into JSON and sent to the backend, backend stores the user information in the DB and should also provide a query to view the entry.
 
 4. Introduce mobile apps. As it would probably too much to introduce them both to iOS and Android, something like React Native (or whatever the most popular platform-agnostic framework is then) may come in handy. Do the same as with the minimal web app and add the build artifacts to CI. Also talk about getting software to the app/play store (a common question) and signing apps.
 
 Homework: Use the view API call from the backend to show the data on the mobile. Play around with the mobile project to display it in a nice way.
 
 5. Introduction to refactoring (yes, really), if we are really talking about JS here, mention things like typescript, flow, elm, reason and everything with types which compiles to JS. Types make it so much easier to refactor growing codebases and imho everybody should use it.
 Flowtype would make it probably easier to get gradually introduced in the already existing codebase (and it plays nice with react native) but I want to be abstract here, so that is just a suggestion (and 100% typed languages such as ELM or Reason have so much nicer errors).
 Also discuss other helpful tools like linters, formatters.
 
 Homework: Introduce types to all your API calls and some important functions.
 
 6. Introduction to (unit) tests. Similar as above.
 Homework: Write a unit test for your form.
 
 (TBC)4
- 
				    					
					
					When the ops team needs to go through a 5 step "protocol" over a couple of days, just to open a damn port in the firewall, so that our CI server can access the local GitLab server..
 Seems like the migration of the last couple of projects from SVN to Git is going to take a little longer than I expected..
- 
				    					
					
					After a couple of days reading bout CI/CD i find it really compilated for my usecase. Server for jankins server for rancher server for anything and a lot of configurations to make it work. So i gave up and decided to build my own CI tool which turned out to be easiear than all of this. So i wrote a simple cli tool in go which listens on master branch of every directory specified in a .yml file and everytime a new commit is done it pulls the repo and rebuilds the container. Pretty easy without having to deal with all the bullshit15
- 
				    					
					
					Counted it out... 100k LoC frontend & backend... Not a single automated test. No unit testing, no integration testing, nothing. I've been asked to implement a CI server.
 
 Halp5
- 
				    					
					
					I currently use Github as my git server and have worked a little bit with Travis. Sadly Travis can't deploy to local network targets and that's why I had the idea to create my own basic CI for the local network: It will be a simple nodejs-app and listens to pushes via Github Webhooks. Then it fetches the code from Github and runs a task runner like Gulp over it and tests it with any nodejs testing framework. Then it deploys the compiled, tested and linted app to the local network. What do you think of this idea?8
- 
				    					
					
					I started working for a startup as Server Administrator/ System Integrator beside university to get some dollars with easy work and nice people.
 ((I Know two of the C*Os so I got a had feeling with this. Besides the upcoming story I'm still really happy with my position and career chances here. God bless my Department which has the most funny/rude guys, love you.))
 
 tl;dr:
 Guy fakes his Skillset and fuckup whole department, can´t do most of his basic tasks. I had my first and hopefully last interaction with this bastard.
 
 Heres how everything started:
 I was more and more involved in the leading processes and decisions.
 
 Heard about a story where and why the whole dev-department was kicked out of his position because they were crappy developers. And cant just believe the stories they told me about the former Dev-Lead
 
 Now I met the former "Development Lead"
 I was brought in because we in the IT wondered why he would like to share his local machine password with colleges. After some questions he came out with the Reason.
 He is doing home-office for some days a week now and wants his colleges to be able to start his "software". (already confused by that)
 
 The "better IT-guy" in me offered help for automatic deployment CI/CD stuff so that they can use it as an inhouse service.
 
 BIG OOF incoming:
 "The code is not in git because I wanted to clean it up before"
 "My IDE is the only place where my PHP crap work is running"
 "The 'PHP-software' is to complex for this"
 
 My Lead and I were completely speechless,
 I understand the decision to kick this "dev-Lead" from the lead position down to a code monkey/ script kid.
 
 Now I´m thinking about getting my Hands on the Lead position after my exams because if such bastards with no clue about basic stuff, no clue about leading, no clue about ci/cd, no clue about generic software stuff get the job I would easily be the "good IT-guy" with more responsibility/ skill.
 
 Now I sit here, hate people that fake their skills and set back work of colleges for multiple months and never asked for help or advice.
 And the little "Bastard Operator from Hell" in my just wants to delete all his files, emails account during a migration to completely demotivate the person who failed to be responsible for a team nor their projects.rant ci/cd php administrator startup script-kid i hate people unskilled skill faker lead developer devops5
- 
				    					
					
					A home hosted build server for continuous integration is always crap and a blocker for everyone. If you don’t have 5(yes, five) full time admins/devops to support that, forget about building the infrastucture yourself. There are companies whose business is to provide CI as a service, why do you think you can beat them with your crappy Jenkins installation?
 
 I’ve seen a 200 company failing with 2 people. I’ve seen another one completely failing, because the admins didn’t know what CI meant, and a small one failing with 0.5. The only place where it kind of worked used Gitlab.
- 
				    					
					
					Last weekend I was working on a small project for a friend of mine: a dockerized webapp, plus API backend and DB. I had some problems with the installation on the vps and had to try out different images and never really did a complete setup of my usual dotfiles. Got it running on an Ubuntu distro. Everything great.
 It was the first release so I still had to check that every configuration worked ok, like letsencrypt companion container, the reverse proxy and all that stuff, so I decided to clone the whole project on the server tho make the changes there and then commit them from there.
 Docker compose, 10 lines of code, change the hosts and password. Boom everything working. Great... Except for the images in the webapp.
 
 WTF? Check the repo, here they are, all ok. I try different build tactics. Nothing. Even building the app on another docker always the same. Checked browser cache, all the correct ports are open. I even though that maybe react was still using some weird websocket I didn't know, but no.
 Damn, I spent 5 hours checking why the f*** the server wouldn't make it out.
 
 Then, finally, the realization...
 
 I didn't install the f******* git-lfs plugin and all I was working with were stupid symbolics links! Webpack never even throw an error for any of the stupid images and the browser would only show a corrupted image, when decoding the base64 string.
 
 Literally the solution took 5 minutes.
 F*** changes on production, now I do everything on a fully automated CI.
- 
				    					
					
					Dahhhh. Pay for a damn hosted CI server please, like Circle or Travis, so I don't have to maintain this crappy Jenkins instance. More "plugin" updates by default than a crappy wordpress site.
 
 Talking of which. Circle CI has come on leaps and bounds since I last looked at it. So much nicer than Travis. Think this is going to be my de-facto CI solution for open source stuff from now on.10
- 
				    					
					
					Soo.. over the span of 1 month, x2 MAC servers have died (hardware failure). I'm in progress of setting up the third one.
 
 What a dumb fucking system MacOS is!!! wtf...
 
 I've spent 4+ hours trying to figure out why the fuck `git clone` is getting stuck and timing out our CI runs.
 
 Turns out, on MacOS you cannot run git clone via ssh IF you have that user logged in via GUI (e.g. VNC). Git is getting stuck at
 
 11:51:26.084245 run-command.c:759 trace: start_command: /opt/homebrew/opt/git/libexec/git-core/git-credential-osxkeychain store
 
 and just chilling there doing nothing, waiting for the user to click on a Cancel button in GUI.
 Logged out my VNC session and git magically started working.
 
 What a dumb system... Or perhaps I'm misunderstanding this "security" feature...?8
- 
				    					
					
					This week has been a good week, work wise at least.
 
 My projects are coming along, I’m getting a CI-CD server spun up so we can start making use of Gitlab runners for builds and testing (deployment is next on my list)
 
 The boss gave good feed back in the gitlab issues I raised after a demo yesterday (new features, nothing major but it’s nice to have positive feed back)
 
 My focus has very much been on the technical side of things, testing and de-bugging web services,
 
 The boss is very keen for me to start implementing apis, starting with one of the apps I’m working on, so we can start writing apis for other systems which integrate with third parties.
 
 I’m actually excited about my work again, and I think it shows, which is why they’re steering me this way.
 
 I’m going to give it 6 months and then ask for a pay review, as I think my responsibilities have increased enough to warrant at least asking about a pay rise
- 
				    					
					
					Testing builds remotely with pushes before testing them locally because I'm too lazy to bring up the local CI server.
 Ending up with over 9000 "Testing build" commits.1
- 
				    					
					
					Having code review with static code analysis and running unit tests on every commit is super useful. Except when you are commiting stuff in a biggest repo in company that goes through CI in ~20min+ and if you try to additionally deploy it to dev server... you'd better brace yourself...1
- 
				    					
					
					Went through 60 python packages to see which fails installing on the serve. Took hrs as I have no terminal access but just via jenkins pipeline. So "edit/gitpush requirements.txt and wait" many times. Eventually looped them 1 by 1 in shell. By end of day got the list that installs.
 Finally sent the whole list....with confidence
 -Takes full 10 mins & Fails......
 (panic mode starts)
 +Changed the sequence = fails, somewhere else
 +1 by 1 again = installs.....
 +few random without the culprit =works
 +again, whole list = fails, somewhere else
 
 Need to sleep, brain's thinking of eagles1
- 
				    					
					
					Question for NextJS/JS developers: I had a "it works on my machine" argument with a frontend dev. We were both hired separately, him doing frontend/backend dev and me doing the AWS dev to prod ci/cd stuff. The setup is that once he pushed code, my Github Actions setup will compile the nextjs app, and push it to dev or prod depending on which branch he pushes it to. His nextjs app was unable to read the .env file on the server but the python/fastapi one can. He kept pointing the finger at me so I had to look it up. Apparently, env values are inlined at build time and he didn't know. What the philosophy behind this design? If there's any changes to env file, you'll have to go to the process of rebuilding.10
- 
				    					
					
					Work Pc is windows xp.... Dev board requires a Linux tool chain... The PC falls over trying to run a VM, so end up needing to run a VM on our CI server (beefiest bit of kit I have access to) , I have to deal with laggy eclipse, over RDP to the VM. On top of that the dev board comes with around 10k pages of documentation.... Most of which either doesn't work, or is missing vital bits of information.... Oh and PM has promised a working product to customers in less than 3 months l, despite us not actually managing to get the desired platform to even boot correctly yet.... *screams *2
- 
				    					
					
					Only when the latest feature is implemented, the last bugfix and the last workaround are found, the last unit test is written, the latest CI/CD pipeline done, the customer guy does manual testing and acceptance tests on the staging server and let's them pass and a few days later it's pushed to production...
 You will be reminded (again) that shitty customers do exist! A customer is the least capable person to tell you what the customer actually wants and is also the least trustworthy person to test the features he requested...
 Holy fuck come on! Just test that shit on the staging Server! One Look could have already shown you that that's Not what you expected!
 
 I checked the logs after that and yup you guessed correctly... The said endpoints weren't even used on staging, only on production...1
- 
				    					
					
					The timing for this weekly rant is quite perftect, as I have actually just finished rewriting JavaRant! :D I redid a lot of work tried to make it very easy to use, and I think it has improved a lot.
 
 This was also a nice occasion for me to set up Jenkins on my personal server to use that as a CI server (not that it's really necessary, but it is fun).
 
 If you like it, check it out on github: https://github.com/LucaScorpion/...
 And feedback/help is of course always welcome!
- 
				    					
					
					I just seen github's new pricing model. Does it make sense to switch from a self hosted gitblit server? And what free-cheap ci servers do they have?3
- 
				    					
					
					I spent 2-3 days on debugging code written in assembly script. Apparently, you need to initialise an array using new method otherwise it re-uses the previous array from the same scope and it has created infinitely large array. Just wtf.
 And I got error like "wasm blah blah blah blah blah blah".Just give proper error.
 
 Running the environment locally wasn't an option because well it doesn't fucking work locally. So, I have to forcibly test on CI and they have created a site that can show you logs because you can't access or query data directly from server and while debugging you try to log something it randomly works sometimes and sometimes you get output from god knows which deployment. Just create a fucking API for displaying log or build a proper docker so that we test it locally.1
- 
				    					
					
					Me: Code checked in, CI and tests passed, deployment kicked off. Huh maybe I won't have to stay late after all!
 
 Production Web Server:  
- 
				    					
					
					I was setting up a CI build machine. Builds were supposed to be ran in disposable containers, but I needed a way to trigger a task on the host from inside the container. I didn't want to give containers shell access to host - kinda misses the point.
 
 Solution: a server running on the host and listening for predefined commands on a named pipe. The pipe was bound into containers which would simply echo commands into it. Very simple and effective.
 
 The hacky part? The server was an 8-line bash script.1
- 
				    					
					
					My build is failing on the CI server
 you are the DevOps engineer please fix it
 
 this is not how this works, this is not how any of this works
- 
				    					
					
					@Work: Every new project, we need a new server for CI/CD...
 Whiteboard + bets on how many weeks it will take to get some servers provided.undefined java python network continues delivery servers networking migration continues integration integration
- 
				    					
					
					Bit of a stupid oopsie I had today that someone might appreciate.
 
 We’re working on a microservice project in Spring Boot, running in a docker swarm. Past few days I get a Spring Cloud config server going in separate stack, create an overlay network, and get CI deployments to use the right profiles etc. It’s looking great, and the first component is working spectacularly.
 
 Now just to do the other 6. Move config files to the Git repo, tweak CI, all the other faffing and hoohas; and deploy. Health checks keep failing, the containers are murdering themselves and resurrecting ad infinitum. They’re doing this so quickly that by the time I get the container ID to exec in and curl health, it’s no longer running. Cue frustration, increased caffeine and nicotine consumption; my sanity is slipping.
 
 No errors in the logs, because from experience the Cloud Config errors ar at debug level. Whhhyyyy?? Some time later (way longer than it should have been) I realize I had never actually included the Spring Cloud Config starter. Boot 101, get your starter!
 Since config client is just additional setup in properties.yml, there’s no issue of the dep isn’t there, it just doesn’t try to get the config.
 
 The containers are still unhealthy, I can hear them screaming. But now at least it’s about something else...
- 
				    					
					
					Most satisfying was reducing the time my ci/cd did to build,test,verify complance and deploy of virtually anything i want in lrss then 10 minutes. From code to running appliance fully configured and being absolute certain it will work without any other modificatio . it used to be an hour.
 Achieved this to do lots of caching and parallell test runs.
 The downside is that my development server is feeling like a unvoluntary black person from ghana moving to the newfound united states 400 years ago...
- 
				    					
					
					Exploring Salesforce: More Than Just a CRM
 
 If you’ve only heard of Salesforce as “that CRM thing sales teams use,” you’re missing out on the full picture. As I recently found out, Salesforce is way more than just a CRM—it’s practically an entire ecosystem for building enterprise-grade applications.
 
 What is Salesforce?
 At its core, Salesforce is a cloud-based platform for managing customer data. But beyond the CRM features, it provides a full-stack development environment through its Salesforce Platform.
 
 Languages & Tools
 
 Apex: Proprietary, Java-like language for server-side logic
 
 Visualforce: Old-school templating for UI (mostly replaced now)
 
 Lightning Web Components (LWC): Modern JavaScript framework—actually pretty slick
 
 SOQL: Salesforce’s own query language for working with data
 
 Customization
 Salesforce lets you build custom apps, workflows, and automations without spinning up your own backend. Think of it like low-code meets full-code, with tight integration to built-in security, databases, and APIs.
 
 Limits to Watch Out For
 
 Governor limits: To protect shared resources, Salesforce enforces strict limits on how much CPU, DB queries, etc., you can use per transaction.
 
 Deployment can be weird: Changes are deployed using metadata, and you’ll probably need a tool like SFDX or a CI/CD pipeline to stay sane.
 
 Happy to chat with anyone else diving into the ecosystem—bonus points if you’ve got tips for dealing with sandbox madness or deployment XML nightmares.
 
 #Salesforce #Apex #LWC #EnterpriseDev #DevRant #DeveloperLife2
- 
				    					
					
					this afternoon, we got email from our pentester. He said that he got some security vulnerability in our project. He found .git/ folder in project directory in production server. He considered it as security vulnerability because user can see all git branch on remote repo. He recommend us to remove that folder but the problem is, we using CI/CD so we need that .git/ folder. My question is it bad practice to use git on production server?10


















































