3. 3
DevOps
● 소프트웨어 공학
● Centralised vs Distributed
● 애자일 선언 (Agile Manifesto)
○ Individuals and interactions
○ Working Software
○ Customer collaboration
○ Responding to change
인문학
● 정치 철학
● 기준을 세우고 그것을 따르려는 자 vs 끝임없이 그
기준을 무너뜨리려 자
● The Communist Manifesto
4. 4
DevOps 도덕경 17장.
● 太上下知有之 其次親而譽之 其次畏之 其次侮之
● 가장 좋은 나라는 그 나라에 임금이 있다는 것만 알고 있다.
● 두번째로 좋은 나라는 사람들이 임금을 칭찬 한다.
● 그 다음 좋은 나라는 사람들이 임금을 두려워 한다.
● 그 다음은 사람들이 임금을 무시 한다.
이상적인 메니지먼트 시스템
이상적인 방법론
5. 5
너무 많고 복잡한 툴체인들
배포 사이클과 팀원들 간의 불필요한 충돌을 줄이 십시오.
Manage Plan Create Verify Package Secure Release Configure Monitor Defend
6. 6
Manage Plan Create. Verify. Package Secure. Release. Configure. Monitor. Defend
Since 2016 Since 2011 Since 2011 Since 2012 Since 2016 Since 2017 Since 2016 Since 2018 Since 2016 Coming soon:
Cycle
Analytics
DevOps Score
Audit
Management
Authentication
and
Authorization
Kanban
Boards
Project
Management
Agile Portfolio
Management
Service Desk
Source Code
Management
Code Review
Wiki
Snippets
Web IDE
Continuous
Integration
(CI)
Code Quality
Performance
Testing
Container
Registry
Maven
Repository
NPM Registry
SAST
DAST
Dependency
Scanning
Container
Scanning
License
Management
Continuous
Delivery (CD)
Release
Orchestration
Pages
Review Apps
Incremental
Rollout
Feature Flags
Auto DevOps
Kubernetes
Configuration
ChatOps
Serverless
Metrics
Logging
Cluster
Monitoring
Runtime
Application
Security
IDS/IPS
Honeypots
Storage
Security
SIEM
Data loss
prevention
Cyber Threat
Hunting
UEBA
전체 DevSecOps lifecycle을 모두 지원하는 Single Application
7. 7
오픈소스 모델을 따르는 GitLab의 진정한 힘
Leader in the Forrester CI Tools WaveTM
The Forrester Wave™ is copyrighted by Forrester Research, Inc. Forrester and Forrester Wave™ are
trademarks of Forrester Research, Inc. The Forrester Wave™ is a graphical representation of Forrester's call on
a market and is plotted using a detailed spreadsheet with exposed scores, weightings, and comments. Forrester
does not endorse any vendor, product, or service depicted in the Forrester Wave. Information is based on best
available resources. Opinions reflect judgment at the time and are subject to change.
CONTINUOUS INNOVATION
매달 22일에 신규 버젼 출시
Everyone can contribute
2200+ code 기여자 확보 - 코어팀
CO-CREATION WITH USERS &
CUSTOMERS
제품에 관련된 모든 개발 현황들이 GitLab issue로 공개
OPEN ECOSYSTEM
내제된 모든 기능들이 오픈소스 기술
A LARGE USER BASE
수백만명의 사용자
10. 10
GitLab Auto DevOps
Create MonitorVerify Package Release Configure
Just commit. GitLab Auto DevOps does the rest.
Merge
Build
Code Quality
Test
Secure
Container
Registry
Review App
Deploy
SAST
Dependency
Container
License
DAST
Infra Config
Scale
Response
System
Custom
Perf Testing
+ +
11. 11
Manage Plan Create. Verify. Package Secure. Release. Configure. Monitor. Defend
Since 2016 Since 2011 Since 2011 Since 2012 Since 2016 Since 2017 Since 2016 Since 2018 Since 2016 Coming soon:
Cycle
Analytics
DevOps Score
Audit
Management
Authentication
and
Authorization
Kanban
Boards
Project
Management
Agile Portfolio
Management
Service Desk
Source Code
Management
Code Review
Wiki
Snippets
Web IDE
Continuous
Integration
(CI)
Code Quality
Performance
Testing
Container
Registry
Maven
Repository
NPM Registry
SAST
DAST
Dependency
Scanning
Container
Scanning
License
Management
Continuous
Delivery (CD)
Release
Orchestration
Pages
Review Apps
Incremental
Rollout
Feature Flags
Auto DevOps
Kubernetes
Configuration
ChatOps
Serverless
Metrics
Logging
Cluster
Monitoring
Runtime
Application
Security
IDS/IPS
Honeypots
Storage
Security
SIEM
Data loss
prevention
Cyber Threat
Hunting
UEBA
A single application for the entire DevSecOps lifecycle
Auto DevOps
12. 12
New Trends - DevSecOps
• Dev is already consuming Ops and is likely to consume Security.
• 개발은 이미 운영을 집어 삼켜 버렸고, 세큐리티까지 집어 삼키려고 하고
있다.
13. 13
Continuous security = Iterative app sec to match iterative
dev
Merge to
Master
GitLab security testing
In pipeline report
Security Dashboard
View
Security
team
52. 53
모든 Kubernetes를 지원하는 Auto DevOps 템플렛
https://gitlab.com/gitlab-org/gitlab-foss/blob/master/lib/gitlab/ci/templates/Auto-DevOps.gitlab-ci.yml