<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>运维 on BvBeJ的小站</title><link>https://www.bvbej.com/tags/%E8%BF%90%E7%BB%B4/</link><description>Recent content in 运维 on BvBeJ的小站</description><generator>Hugo</generator><language>zh-CN</language><lastBuildDate>Wed, 27 May 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://www.bvbej.com/tags/%E8%BF%90%E7%BB%B4/feed.xml" rel="self" type="application/rss+xml"/><item><title>Docker Rootless 模式：落地路径与限制</title><link>https://www.bvbej.com/posts/docker-rootless-mode-practice/</link><pubDate>Wed, 27 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/docker-rootless-mode-practice/</guid><description>最小权限运行可以提升安全性，但要评估网络和存储差异</description></item><item><title>Docker 镜像保留策略：存储成本与回滚能力平衡</title><link>https://www.bvbej.com/posts/docker-image-retention-policy/</link><pubDate>Sun, 24 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/docker-image-retention-policy/</guid><description>保留太少影响回滚，保留太多拖垮仓库成本</description></item><item><title>Kubernetes etcd 碎片整理与维护窗口设计</title><link>https://www.bvbej.com/posts/k8s-etcd-defrag-maintenance-window/</link><pubDate>Sun, 24 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/k8s-etcd-defrag-maintenance-window/</guid><description>控制面稳定性依赖 etcd 健康，碎片整理要纳入常规运维节奏。</description></item><item><title>Kubernetes Secret 轮换：不中断更新实践</title><link>https://www.bvbej.com/posts/kubernetes-secret-rotation/</link><pubDate>Fri, 22 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/kubernetes-secret-rotation/</guid><description>密钥轮换要设计双版本兼容窗口，避免瞬时全量失败</description></item><item><title>PostgreSQL 表膨胀治理：VACUUM、索引重建与窗口规划</title><link>https://www.bvbej.com/posts/postgres-vacuum-bloat-control/</link><pubDate>Sat, 16 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/postgres-vacuum-bloat-control/</guid><description>写多读多场景下，膨胀管理决定了查询稳定性与存储成本。</description></item><item><title>Docker 运行时安全：Seccomp 与 AppArmor 基线</title><link>https://www.bvbej.com/posts/docker-runtime-security-profiles/</link><pubDate>Tue, 12 May 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/docker-runtime-security-profiles/</guid><description>镜像安全只是第一层，运行时策略才是最后防线</description></item><item><title>Go 服务优雅重启：systemd 配合实践</title><link>https://www.bvbej.com/posts/go-graceful-restart-systemd/</link><pubDate>Thu, 23 Apr 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/go-graceful-restart-systemd/</guid><description>不丢连接、不打断在途请求的发布方案</description></item><item><title>Kubernetes 探针与优雅退出：避免滚动发布抖动</title><link>https://www.bvbej.com/posts/kubernetes-probe-and-graceful-exit/</link><pubDate>Tue, 21 Apr 2026 00:00:00 +0000</pubDate><guid>https://www.bvbej.com/posts/kubernetes-probe-and-graceful-exit/</guid><description>把 readiness、liveness、startup 与终止流程串起来，发布更平滑</description></item></channel></rss>