Ortelius Blog

Topics include Supply Chain Security, Vulnerability Management, Neat Tricks, and Contributor insights.

Posts in 2025
  • Enhance Jenkins with Post-Deployment CVE Exposure

    Thursday, May 08, 2025 in Ortelius Committer Insights

    Ortelius for Post-Deployment Security to Jenkins As software supply chains grow more complex and vulnerabilities emerge faster than ever, Jenkins users face a critical challenge: “How do you keep your deployed applications secure after the …

    Read more

Posts in 2024
  • The Ortelius OpenSSF Dashboard

    Saturday, December 21, 2024 in Ortelius Committer Insights

    Introduction The OpenSSF Scorecard is an essential security metrics tool incubating at the Linux Foundation’s OpenSSF. OpenSSF Scorecard is designed to expose an open-source project or package adherence to security best practices. It assigns …

    Read more

  • How do you Track and Report Security Compliance?

    Tuesday, December 17, 2024 in Ortelius Committer Insights

    Introduction Ensuring a robust IT security compliance strategy is more critical than ever. For organizations, the ability to track and report security compliance effectively is not just a regulatory necessity but also a vital component of …

    Read more

  • How Ortelius Integrates with OSV.dev for Real-Time Vulnerability Detection

    Tuesday, October 29, 2024 in Ortelius Committer Insights

    Introduction The importance of Software Bill of Materials (SBOMs) in modern software development cannot be ignored. High-profile security incidents, like the SolarWinds attack or Log4J, underscore the critical need for greater transparency within …

    Read more

  • How Ortelius Integrates and Consumes SPDX and CycloneDX SBOMs for Enhanced Software Visibility

    Monday, October 28, 2024 in Ortelius Committer Insights

    Introduction Software Bill of Materials (SBOMs) in modern software development is critical for managing software security, compliance, and supply chain integrity. Security breaches like the SolarWinds attack have underlined the need for transparency …

    Read more

  • How to Bake an Ortelius Pi Part 8 | OS Upgrades, Microk8s Upgrades and Adding Worker Nodes

    Thursday, October 24, 2024 in Ortelius Committer Insights

    Introduction Raspberry Pi 5s Features Storage Master Node Preparation Steps Upgrading Microk8s Microk8s drain Microk8s uncordon Upgrading Ubuntu Deploy the worker nodes Using the Raspberry Pi Imager CHOOSE DEVICE CHOOSE OS CHOOSE STORAGE OS …

    Read more

  • How to Bake an Ortelius Pi Part 7 | Observability with Netdata

    Tuesday, October 22, 2024 in Ortelius Committer Insights

    Introduction Gimlet GitOps Infrastructure Netdata Netdata Database Engine Deploy Netdata Helm-Repository | Netdata Helm-Release | Netdata Helm Chart Configuration Highlights Fluxcd is doing the following under the hood | Netdata Kubernetes check | …

    Read more

  • How to Bake an Ortelius Pi Part 5 | Ortelius Marries Jenkins

    Tuesday, October 22, 2024 in Ortelius Committer Insights

    Introduction Jenkins Gimlet GitOps Infrastructure Deploy Jenkins Plugins Helm-Repository | Jenkins Helm-Release | Jenkins Helm Chart Configuration Highlights Fluxcd is doing the following under the hood | Jenkins Kubernetes check | Jenkins How do we …

    Read more

  • Gleaming The FinOps Void

    Thursday, October 10, 2024 in Ortelius Committer Insights

    The Story BlueArch Education Conclusion The Story A while back, I was contracted to do migrations and conversions of legacy applications into microservices on AWS for a very large financial services company. During this time, there was a lot of …

    Read more

  • How to Bake an Ortelius Pi Part 6 | Cloud Dev At Home With Localstack

    Saturday, September 14, 2024 in Ortelius Committer Insights

    Introduction Gimlet GitOps Infrastructure Localstack Deploy Localstack Helm-Repository | Localstack Helm-Release | Localstack Helm Chart Configuration Highlights Fluxcd is doing the following under the hood | Localstack Kubernetes check | Localstack …

    Read more