public inbox for gentoo-user@lists.gentoo.org
 help / color / mirror / Atom feed
From: "J. Roeleveld" <joost@antarean.org>
To: gentoo-user@lists.gentoo.org
Subject: Re: [gentoo-user] Ansible, puppet and chef
Date: Wed, 17 Sep 2014 11:34:26 +0200	[thread overview]
Message-ID: <8205442.Nksu7FaMec@andromeda> (raw)
In-Reply-To: <20140917091937.GB31413@angelfall>


On Wednesday, September 17, 2014 12:19:37 PM Eray Aslan wrote:
> On Tue, Sep 16, 2014 at 10:43:18PM +0200, Alan McKinnon wrote:
> > Puppet seems to me a good product for a large site with 1000 hosts.
> > Not so much for ~20 or so.
> 
> I find that for a few machines, puppet is overkill.  For a lot of
> machines, puppet can become unmanageable - with puppet master and
> security being the culprit.
> 
> We have used puppet a lot but recently settled on salt (strictly
> speaking not my decision so cannot really compare it with ansible) and
> we are happy with the outcome.  You might want to consider
> app-admin/salt as well.

Looks good (had a really quick look).
From what I read (and please correct me if I'm wrong), a difference between 
salt and ansible is:

Salt Requires a daemon to be installed and running on all machines
and the versions need to be (mostly) in sync

For Alan, this might work, but for my situation it wouldn't, as I'd need to 
keep various VMs in sync with the rest where I'd prefer to simply clone them 
and then enforce changes. Relying on SSH and powershell makes that simpler.

But, it does mean that all nodes need to have incoming ports open. With Salt, 
all nodes connect back to the master. This allows a tighter security.

--
Joost


  reply	other threads:[~2014-09-17  9:34 UTC|newest]

Thread overview: 17+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2014-09-16 20:43 [gentoo-user] Ansible, puppet and chef Alan McKinnon
2014-09-17  1:30 ` Alec Ten Harmsel
2014-09-17  2:56   ` [gentoo-user] " James
2014-09-17  7:07   ` [gentoo-user] " Alan McKinnon
2014-09-17  5:46 ` [gentoo-user] " Hans de Graaff
2014-09-17  8:06   ` Alan McKinnon
2014-09-17  7:07 ` [gentoo-user] " Tomas Mozes
2014-09-17  8:08   ` Alan McKinnon
2014-09-17 12:46     ` Tomas Mozes
2014-09-17 13:24       ` Alan McKinnon
2014-09-17  7:34 ` J. Roeleveld
2014-09-17  8:12   ` Alan McKinnon
2014-09-17  8:55     ` J. Roeleveld
2014-09-17  9:19 ` Eray Aslan
2014-09-17  9:34   ` J. Roeleveld [this message]
2014-09-17 12:07     ` Alan McKinnon
2014-09-17 12:36       ` Tomas Mozes

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=8205442.Nksu7FaMec@andromeda \
    --to=joost@antarean.org \
    --cc=gentoo-user@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox