Skip to content

Instantly share code, notes, and snippets.

apiVersion: extensions/v1beta1
kind: Deployment
metadata:
name: sysdigcloud-elasticsearch-1 # Elasticsearch node number
spec:
replicas: 1
template:
metadata:
labels:
instance: "1" # Elasticsearch node number
apiVersion: v1
kind: ConfigMap
metadata:
name: sysdigcloud-mysql-config
labels:
app: sysdigcloud
data:
my.cnf: |-
[client]
port = 3306
kind: StorageClass
apiVersion: storage.k8s.io/v1
metadata:
name: sio-small
provisioner: kubernetes.io/scaleio
parameters:
gateway: https://localhost:443/api
system: scaleio
protectionDomain: default
secretRef: sio-secret
{
"volumes": null,
"id": "/sysdig-agent",
"cmd": null,
"args": null,
"user": null,
"env": {
"ACCESS_KEY": "",
"COLLECTOR": "",
"COLLECTOR_PORT": "",
app_checks:
- name: snmp
pattern:
comm: python
arg: /opt/draios/bin/sdchecks
interval: 30
conf:
mibs_folder: /usr/share/mibs/ietf/
ip_address: 52.53.158.103
port: 161
@ceizner
ceizner / OpenShift all-in-one
Created October 8, 2017 16:22
Create OpenShift all-in-one
1. wget -O docker.deb https://apt.dockerproject.org/repo/pool/main/d/docker-engine/docker-engine_1.10.3-0~jessie_amd64.deb && dpkg -i docker.deb
2. vi /lib/systemd/system/docker.service and add "--insecure-registry 172.30.0.0/16" to the docker command line
3. wget https://github.com/openshift/origin/releases/download/v1.4.1/openshift-origin-server-v1.4.1-3f9807a-linux-64bit.tar.gz
tar -xzvf openshift-origin-server-v1.4.1-3f9807a-linux-64bit.tar.gz
cd openshift-origin-server-v1.4.1+3f9807a-linux-64bit
cp * /usr/local/bin/
metadata_endpoint="http://169.254.169.254/latest/meta-data"
public_hostname="$( curl "${metadata_endpoint}/public-hostname" )"
public_ip="$( curl "${metadata_endpoint}/public-ipv4" )"

Challenge #1

Credentials: IP: 13.57.56.81 User: ec2-user

-----BEGIN RSA PRIVATE KEY-----
MIICXAIBAAKBgQCixgbYOv8q+rMfUHaMTjKYk1N+jGmRQzEDYGO+eD/VTICKGcWn
SMO86MRE0anqzyl7Umk/l6pUOv+1lEttebpmtKnFUqrrbmycOTcVLay4cRY/p6pn
XGAPfL6jd98QFbgh+Rz85g6DSEutfdHP48NEPDEDYPTu+ura6LXEzAOheQIDAQAB

Make sure ICC is not disabled

Make sure user-land proxy is not enabled

RedHat/CentOS

service firewalld stop 
systemctl disable firewalld
sysctl -w net.ipv4.ip_forward=1
iptables -F
#!/bin/bash
set -euxo pipefail
K8S_VERSION=1.4.1
PROXY_MODE="iptables" #allowed values: userspace, iptables
ETH0=$(hostname -I | cut -d" " -f1)
if [ ! -f $(pwd)/kubectl ]; then
wget https://storage.googleapis.com/kubernetes-release/release/v${K8S_VERSION}/bin/linux/amd64/kubectl
chmod +x kubectl
fi
#!/bin/bash
sudo service replicated stop
sudo service replicated-ui stop
sudo service replicated-operator stop
sudo docker rm -f replicated replicated-ui replicated-operator
sudo docker images | grep "quay\.io/replicated" | awk '{print $3}' | xargs sudo docker rmi -f
sudo systemctl disable replicated
sudo systemctl disable replicated-ui
sudo systemctl disable replicated-operator
sudo docker rm -f $(docker ps -aq)