<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[SysAdmin Weekly]]></title><description><![CDATA[For SysAdmins who drink coffee like RAM and troubleshoot like legends. Weekly updates, battle-tested tools, cybersecurity WTFs, and fresh tech-focused content that won’t waste your uptime.]]></description><link>https://newsletter.sysadminweekly.com</link><image><url>https://substackcdn.com/image/fetch/$s_!GEhV!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef9c2b75-70c2-44de-8aed-ee56a7d41847_1280x1280.png</url><title>SysAdmin Weekly</title><link>https://newsletter.sysadminweekly.com</link></image><generator>Substack</generator><lastBuildDate>Tue, 22 Sep 2026 13:00:22 GMT</lastBuildDate><atom:link href="https://newsletter.sysadminweekly.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Andy Syrewicze]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[sysadminweekly@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[sysadminweekly@substack.com]]></itunes:email><itunes:name><![CDATA[Andy Syrewicze]]></itunes:name></itunes:owner><itunes:author><![CDATA[Andy Syrewicze]]></itunes:author><googleplay:owner><![CDATA[sysadminweekly@substack.com]]></googleplay:owner><googleplay:email><![CDATA[sysadminweekly@substack.com]]></googleplay:email><googleplay:author><![CDATA[Andy Syrewicze]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[SysAdmin Weekly #35: ESX 3 All Over Again]]></title><description><![CDATA[AI hooked me the way vMotion did, the doom narrative overshoots, and your AI tools are holding keys]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-35-esx-3-all-over</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-35-esx-3-all-over</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Sun, 13 Sep 2026 23:39:23 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!teqq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><em><strong>TL;DR</strong></em></h2><ul><li><p>Paul Schnackenburg says AI feels like the early PC days. For me it&#8217;s the ESX 3 era all over again, and the best time to learn is now, while everybody is still figuring it out together.</p></li><li><p>AI will hurt some people in this profession. I just don&#8217;t think it&#8217;ll be as bad as the doom narrative says, because SysAdmins already know the systems and the business, and that&#8217;s the trusted advisor seat.</p></li><li><p>Episode 059: remote access is mostly risk assessment, and the protocol is the least interesting decision in it.</p></li><li><p>Community Signal: Jeff Hicks on AI as a co-pilot, and a PowerShell agent loop that prompts before Format-Volume only by accident.</p></li><li><p>Tool of the Week: ProxLB, DRS-style rebalancing for Proxmox, and where it still fits now that 9.2 balances HA guests natively.</p></li><li><p>Quick Win: find every credential your AI tools are holding, then take one away.</p></li></ul><h2><em><strong>From the Console</strong></em></h2><p>I have to preface this write-up with the statement that I do love working with tech every day and I&#8217;m wildly fortunate to be able to do that. That said&#8230; it&#8217;s been&#8230; a minute since any new tech REALLY hooked me. Agentic AI, AI harnesses, and actually seeing the power of AI outputs for myself changed that.</p><p>I had mentioned this while recording the upcoming podcast episode 060 with Paul Schnackenburg and he mentioned something that stuck with me the last few days. Paul stated that many SysAdmins seem to be dealing with the same experience right now. He stated that it reminds him of the early days of PC computing in that everything was new and people were experimenting with hardware and operating systems. That was true for me as well. I recall tinkering (to my parents&#8217; dismay) with our 486 and figuring out how to reallocate memory so that I could play TIE Fighter and Dark Forces amongst other things during the DOS \ Windows 3.1 days.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>As fond of those days as I am, however, the era of computing that said experimentation really reminds me of personally is the early days of virtualization. I remember looking over a senior administrator&#8217;s shoulder as they grew a virtual disk live&#8230;..while the machine was running. I then discovered vMotion (VM mobility between physical nodes) and DRS (Distributed Resource Scheduler) which would keep nodes load balanced. I remember the realization that updates to entire hypervisor clusters could be done with ZERO downtime if orchestrated properly.</p><p>Those early virtualization experiences were all from the ESX 3 era (think 2006-2009ish). I remember a lot of personal growth during that time frame, but I also remember that there was A LOT of shared learning happening as well. It was NOT uncommon for one of us Admins in the MSP engineering room to discover something new for the first time and for the rest of the team to gather around and excitedly &#8220;nerd-out&#8221; about how cool the discovered feature was and how it could be incorporated into existing operations.</p><p>That all brings me back to today and how the new AI craze has its hooks into me in much the same way. I know there are a lot of folks out there worried about the impact AI will have on society (more on that later).</p><blockquote><p>The fact is: AI is here to stay. That genie isn&#8217;t going back in the bottle.</p></blockquote><p>If you&#8217;re not learning how AI technologies can be used within your area of expertise, you&#8217;re doing yourself a disservice. This period of emerging AI technology is the <strong>BEST</strong> time to be learning about AI when you can learn and experiment alongside the rest of the IT community. Not only will you learn more, you&#8217;ll also be part of that community voice and help steer the use of AI within the SysAdmin community.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!teqq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!teqq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!teqq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!teqq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!teqq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!teqq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2667754,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/215573440?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!teqq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!teqq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!teqq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!teqq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4b492cc-7fe9-4e72-93ab-d6f37f6bcb04_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now&#8230; back to our regularly scheduled programming.</p><h2><em><strong>Recently on the SysAdmin Weekly Podcast</strong></em></h2><p><strong>Episode:</strong> <em>How Should SysAdmins Handle Remote Access in 2026?</em> (Episode 059) <strong>Topic:</strong> Eric and I take on the piece we deliberately cut from the tools episode, and most of it turns out to be about how long a path into your estate stays open. The protocol is the small part.</p><p>Why this one is a good listen:</p><ul><li><p>Eric lands the sharpest reframe about half an hour in: what overlay networks and their cousins buy you is a move from one-sided authentication to mutual authentication. A management port can still be reachable, and what &#8220;open&#8221; means changes completely once both ends have to prove who they are.</p></li><li><p>The RMM stretch is the one for MSP folks. One agent on every endpoint, all of them reporting to one console, makes that console the most valuable thing an attacker can take from you. It leads to the two questions worth asking before any remote tool goes in: do we need remote management at all, and do we need it all the time?</p></li><li><p>The back half turns the camera around. An attacker&#8217;s first move after a foothold is an outbound path (cloudflared is the example on air), and most SMB and mid-size shops are not watching outbound traffic closely enough to notice. Then the 3am phone call, where just-in-time access holds up right until the thing is down and nobody is awake to approve your elevation.</p></li></ul><h3><strong>Watch on YouTube</strong></h3><div id="youtube2-AAiCywSxfWM" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;AAiCywSxfWM&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/AAiCywSxfWM?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><strong>Listen on Spotify</strong></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;059 - How Should SysAdmins Handle Remote Access in 2026?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/2zw5YDC8s5WZBbTfCJE9Kl&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/2zw5YDC8s5WZBbTfCJE9Kl" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><em><strong>The Take</strong></em></h2><p>My recent obsession with Agentic AI workloads ultimately led to this week&#8217;s &#8220;take&#8221;. It could also be my affinity throughout my career for automation as well. I mean&#8230;. my very first IT mentor <strong>DID</strong> convey to me that:</p><blockquote><p>&#8220;<em>Andy, the key to IT is Laziness. If something MUST be done more than once, then it MUST be automated</em>&#8221;.</p></blockquote><p>That&#8217;s stuck with me throughout my career. Fast-forward now to the AI era and the capabilities for &#8220;automation&#8221; via Agentic AI are <em>astronomical</em>.</p><p>Let me be clear before I go further on this one. I have <strong>NO DOUBT</strong> that there are people out there that have been negatively impacted or will eventually be negatively impacted by emerging AI technologies. <a href="https://youtu.be/BuHVZ_364kc?si=h7FRM9mDSiD3eT9B">Eric and I discussed as much alongside our thoughts on the AI Doom Narrative back on episode 048 of the podcast</a>. We also discussed in that same episode the numbers from the World Economic Forum in regards to job gains (yes, gains) between now and 2030.</p><p>Here&#8217;s my take for this week&#8217;s issue of the newsletter. Again I have no doubt that AI will impact some people negatively in the SysAdmin profession, but I don&#8217;t think it&#8217;s going to be as bad as the ongoing AI doom narrative would have you think.</p><blockquote><p>SysAdmins, as a profession, are well positioned to help organizations reap the benefits of AI.</p></blockquote><p>Think about it:</p><ul><li><p>SysAdmins have deep knowledge of existing technology systems within their given environments.</p></li><li><p>SysAdmins understand many of the business processes and intended business outcomes for the organizations they are part of.</p></li><li><p>SysAdmins already have the technical background to uptake AI capabilities at an accelerated pace vs. your average business office worker.</p></li><li><p>For historical context, the VMware ESX and virtualization stuff was &#8220;going to cost IT jobs&#8221; as well. It didn&#8217;t, it just changed the profession, just like AI will.</p></li></ul><p>With all this in mind, I see the future SysAdmin as falling increasingly into the &#8220;Trusted Advisor&#8221; role. In this role SysAdmins can advocate for the best use of AI within their organizations leading to increased automation, cost-savings, and productivity gains. All of those things make you a hero as far as management is concerned (typically).</p><p>When looking at traditional IT work specifically, AI is likely only going to help us in the long run. Already, AI has the ability to interact with infrastructure systems as needed. When scoped and sandboxed <strong>PROPERLY</strong>, AI can be a valuable SysAdmin assistant. I foresee that many SysAdmins will be managing and deploying more than ever before because AI will allow us all to go faster and further.</p><p>That all said, I&#8217;m very aware of the dangers posed by AI. We MUST tread carefully as an industry as we incorporate these new technologies into existing IT stacks. For example, in the last episode of the podcast (listed above), Eric and I talked about remote access. AI is practically another remote access point into your environment. Treat it as such. Further examples aside though, being on the front lines of tech, we SysAdmins are best positioned to be enabled and uplifted by AI as opposed to being cut and thrown into a RIF (reduction in force).</p><p>I&#8217;d love to know what you all think in the comments below!</p><h2><em><strong>Community Signal</strong></em></h2><p><strong><a href="https://youtu.be/ceB-3QGbvBA?si=v1lrfghjtK7xicJs">Jeff Hicks (long-time Microsoft MVP) on The PowerShell Podcast - </a></strong><a href="https://powershellpodcast.podbean.com/e/powershell-wisdom-from-35-years-in-the-trenches-with-jeff-hicks">&#8220;</a><strong><a href="https://powershellpodcast.podbean.com/e/powershell-wisdom-from-35-years-in-the-trenches-with-jeff-hicks">PowerShell Wisdom from 35 Years in the Trenches</a></strong><a href="https://powershellpodcast.podbean.com/e/powershell-wisdom-from-35-years-in-the-trenches-with-jeff-hicks">&#8221;</a> - April 13, 2026, 45 minutes. Hicks has been teaching PowerShell since the beginning, and the show notes sum up his position on AI as &#8220;a co-pilot, not a replacement.&#8221; He uses it to get past a specific technical hurdle rather than to hand him a finished script. The worry he raises is the useful part: a generation that skips the foundational learning can&#8217;t recognize when the AI gets it wrong. His advice for anyone starting out is the old advice, and it holds up: objects, the pipeline, and managing at scale first, specific modules later. Source note: the podcast is produced by PDQ, which sells endpoint management software. Hicks is independent, and the episode is billed as a conversation about community and craft.</p><p><strong><a href="https://github.com/dfinke/PSClaudeCode/blob/main/reference/2026-01-10-Building-PowerShell-AI-Agent-From-Scratch-to-Claude-Code.md">Doug Finke (16-time Microsoft MVP) - </a></strong><a href="https://github.com/dfinke/PSClaudeCode/blob/main/reference/2026-01-10-Building-PowerShell-AI-Agent-From-Scratch-to-Claude-Code.md">&#8220;</a><strong><a href="https://github.com/dfinke/PSClaudeCode/blob/main/reference/2026-01-10-Building-PowerShell-AI-Agent-From-Scratch-to-Claude-Code.md">Building a PowerShell AI Agent: From Scratch to Claude Code</a></strong><a href="https://github.com/dfinke/PSClaudeCode/blob/main/reference/2026-01-10-Building-PowerShell-AI-Agent-From-Scratch-to-Claude-Code.md">&#8221;</a> - January 10, 2026. If &#8220;agent&#8221; still sounds like magic, read this. Finke, who created the ImportExcel module, builds one in PowerShell in three passes: a script that asks the model for one command and waits for your y/n, a loop that keeps going until the model says it&#8217;s done, and then structured tools for reading files, writing files, and running commands. </p><h2><em><strong>Tool of the Week</strong></em></h2><p><strong><a href="https://github.com/credativ/ProxLB">ProxLB</a></strong> - An open source, GPL-3.0 load balancer for Proxmox VE clusters that watches node utilization and live-migrates VMs and containers to even it out, which is DRS-style rebalancing for the hypervisor a lot of you moved to.</p><p>It pulls CPU, memory, and local disk metrics through the Proxmox API, and when the gap between your busiest and quietest nodes crosses a threshold you set (the project calls it &#8220;balanciness&#8221;), it migrates guests until the gap closes. You can balance on used resources, assigned resources, or pressure stall information. Maintenance mode drains a node before you patch it and can run on a schedule. Affinity and anti-affinity rules keep your two domain controllers off the same host. </p><p>Honest scope, and the ground just moved under this one. <a href="https://proxmox.com/en/about/company-details/press-releases/proxmox-virtual-environment-9-2">Proxmox VE 9.2 shipped on May 21, 2026 with native dynamic load balancing</a>, but only for HA-managed guests. ProxLB&#8217;s case now is everything outside that line, mainly guests that are not in the HA stack and clusters still on 7.x or 8.x. The README has a side-by-side comparison against the native balancer that is worth reading, but the ProxLB project wrote it and the scoring reads that way. The native feature is supported by Proxmox and upgrades with the platform. ProxLB is a daemon you validate yourself after every Proxmox upgrade.</p><p>Two more things before you install it. The original author, gyptazy, handed the project to his employer credativ GmbH in January 2026 after people raised concerns about a one-person project&#8217;s long-term maintainability, so the repository has moved, and credativ offers paid enterprise support for it. Oh&#8230;.  and don&#8217;t point two schedulers at the same guests on a hunch. The README still carries an older warning against running ProxLB alongside HA groups, while the 2.2.0 release in June added HA mode support. </p><p>Read the documentation for the version you install, and exclude anything the balancer should never touch before you turn on the daemon.</p><h2><em><strong>Quick Win of the Week</strong></em></h2><p>Find every credential your AI tools are holding, then take one away.</p><p>Pick the machine where you use an AI coding agent or assistant the most, and open the shell it runs in. Anything that session is logged into, the agent can use. gh auth status shows the GitHub account and its token scopes, and az account show shows which Azure subscription you&#8217;d be pointing it at.</p><p>Then read the MCP config files, the ones people paste tokens into late at night to get a server working. Claude Code keeps user and local scope servers in ~/.claude.json and project scope servers in .mcp.json at the repo root, which gets committed along with everything else. VSCode keeps workspace servers in .vscode/mcp.json. Any bearer token or API key sitting there in plain text goes on the list. Both tools&#8217; documentation tells you to use variables instead of hardcoding it.</p><p>For each entry, write down the tool, the credential, what it can reach, and when it expires. Then fix one: swap a classic GitHub token with full repo scope for a fine-grained token limited to the repositories the agent actually works in, with an expiration date on it.</p><p>Nothing revokes itself unless you build it that way. That line was about SSH keys in episode 059, and it applies just as well to whatever you hand the new tools.</p><h2><em><strong>Fun Retro SysAdmin Fact</strong></em></h2><p>The personal computer era everybody gets nostalgic about started in a garage: on March 5, 1975, <a href="https://en.wikipedia.org/wiki/Homebrew_Computer_Club">the Homebrew Computer Club held its first meeting in Gordon French&#8217;s garage in Menlo Park</a>, gathered around the first MITS Altair 8800 to reach the area (a review unit sent to People&#8217;s Computer Company), and Steve Wozniak later credited that meeting as the inspiration to design the Apple I.</p><h2><em><strong>Until Next Week</strong></em></h2><p>Enjoy the new tool, then go find out what it&#8217;s logged into.</p><p>Stay Frosty, </p><p>Andy </p><p>SysAdmin Weekly</p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-35-esx-3-all-over?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-35-esx-3-all-over?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-35-esx-3-all-over?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #34: The Firewall Moved]]></title><description><![CDATA[Overlay networks, air gaps that aren't, and the last time anyone audited your ACLs]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-34-the-firewall-moved</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-34-the-firewall-moved</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Sun, 06 Sep 2026 18:01:10 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!OWVV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><strong>TL;DR</strong></h2><ul><li><p>Five weeks on the road out of six, and the laptop never noticed it left the house.</p></li><li><p>Identities and ACLs are your firewall now, and the change control discipline never followed them there.</p></li><li><p>Episode 057: the air gap that is not an air gap, and every hole you opened for a good reason just to manage the thing.</p></li><li><p>Claude Code running on a lab VM, driven from a phone over /rc, and the access questions worth settling first.</p></li><li><p>Tool of the Week: Headscale, for when you want the mesh without the coordination plane you do not own.</p></li><li><p>Quick Win: get off your own network and walk the path you would actually use at 2am.</p></li></ul><h2><strong>From the Console</strong></h2><p>It hit me at a couple of different points over the last few weeks:</p><ul><li><p>From an Airport gate in Michigan (literally 20 minutes from my house) where my flight was drip scheduled for 12 hours before being canceled</p></li><li><p>From a hotel room at New York, New York in Vegas with a literal rollercoaster in view out my hotel window.</p></li><li><p>From a bar at a PGA resort in Frisco, Texas.</p></li><li><p>From an Airbnb that reminded me of a Hobbit hole in Minneapolis.</p></li><li><p>From a floating hotel on the Thames in London.</p></li><li><p>From 20 thousand feet on an American Airlines flight to Dallas.</p></li></ul><p>For the most part during all that travel my laptop never really thought that it existed anywhere other than my desk at home. The exception, of course, were the occasional captive portal (looking at you American Airlines) that required local-only routing. Other than that, my system blissfully thought it was sitting on my desk at home. I could access &#8220;local&#8221; systems, M365 saw me as connecting from the same GEO, and I could also troubleshoot family tech issues while not being in the room. At one point I looked up and thought to myself &#8220;This has been effortless for weeks&#8230;.&#8221;. The tool had become so easy, transparent, and had just gotten out of the way to the point where I just STOPPED thinking about it&#8230;. which is what a good tool does. It enables you, without becoming all about itself.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Maybe this wouldn&#8217;t have been noteworthy for those SysAdmins that have entered the IT industry during the cloud era, but I remember a time where persistent, secure, and transparent remote access was a legit feat of engineering. Either:</p><ol><li><p>The user would have to manually establish connectivity upon startup</p></li><li><p>3389 was just left open to a &#8220;jump box&#8221; in the target environment (YUCK!)</p></li><li><p>The user experience was impacted in some usability way</p></li></ol><p>With modern hybrid cloud technologies, work from anywhere is easier than ever and completely transparent. Yes, we&#8217;ve had VPNs for a long time, but overlay networks, like Tailscale, are on a whole new level. Never has it been easier to connect multiple geographically separated systems / networks than it is now. For example, sitting at a gate at the airport&#8230; with an overlay network, I can securely access my home network, my production management network, lab resources, as well as a hosted web server that is locked behind the vendor providing it. All of it just effortless, and secured via ACLs, routing options, and filtration.</p><p>While I&#8217;m obviously a HUGE fan of this configuration, two things do come to mind.</p><ol><li><p>Just because your current configuration has been in place and working for a period of time, it doesn&#8217;t mean that there isn&#8217;t a new solution out there that can do it better. Look up once in a while and see if the status quo is still the configuration that makes sense.</p></li><li><p>As good as new technologies are, don&#8217;t become OVER-dependent on them. You may not always have an overlay network available to abstract and automagically configure networking and routing. Those basic network skills are still important and will be needed when tools (like Tailscale) fail for any given number of reasons.</p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!OWVV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!OWVV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!OWVV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2164068,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/214456158?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!OWVV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!OWVV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1c2e95a0-8ee9-4051-b02e-1049b191c4df_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><p>And now&#8230; back to our regularly scheduled programming</p><h2><strong>Recently on the SysAdmin Weekly Podcast</strong></h2><p><strong>Episode:</strong> <em>Is Your Air Gap Actually an Air Gap? Port 22 Says No</em> (Episode 057) <strong>Topic:</strong> Almost nothing called an air gap is one. Eric and I walk the management plane hole by hole, and we land somewhere more useful than telling you that you are doing it wrong.</p><p>Why this one is a good listen:</p><ul><li><p>We go through the holes in the order they get opened, and the list is uncomfortable because none of them were mistakes: SSH and RDP so somebody can patch the thing, SMB because files have to move, DNS and NTP because nothing works without them, then license activation and telemetry because a vendor said so. Every one of those was opened by a competent person with a good reason on an ordinary Tuesday.</p></li><li><p>The iDRAC, iLO, and IPMI stretch is the one to forward to your team. Those boards get parked on a management VLAN, keep whatever firmware shipped on them, and then nobody touches them again, which quietly makes the out-of-band path the least defended road into the most privileged place you own. There is also a detour about printers that we both stand behind.</p></li><li><p>The close is the part that changed how I use the word. A real air gap is possible and it costs a great deal, most of it in operational pain rather than dollars. What actually hurts people is the term: call something an air gap and the conversation ends, and nobody re-verifies a promise. Say what you have, then defend that.</p></li></ul><h3><strong>Watch on YouTube</strong></h3><div id="youtube2-5Npypn-0puM" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;5Npypn-0puM&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/5Npypn-0puM?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><strong>Listen on Spotify</strong></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;057 - Is Your Air Gap Actually an Air Gap? Port 22 Says No&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/3GP01asJBoth14t8iqG4qx&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/3GP01asJBoth14t8iqG4qx" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><strong>The Take</strong></h2><p>While we&#8217;re speaking about painless remote network access in this issue I think it&#8217;s worth highlighting something I&#8217;ve noticed over the last few years in forum posts, conference conversations, and on social media. Identities (and ACLs) <strong>ARE</strong> your firewall now. It used to be we only had to worry about the 4 walls of our building. We&#8217;d put a firewall on the entry point and call it good, but with the cloud era and work from everywhere, that model doesn&#8217;t work so well anymore. So, that&#8217;s where ACLs, Conditional Access, Cloudflare Access rules&#8230;etc come in.</p><p>With that in mind then, I&#8217;ll pose a question: Do you remember the last time your ACLs were audited? Were those recent Conditional Access changes run through change control? As an industry we got REALLY good (mostly) at including even the simplest firewall changes in the change control process. I&#8217;ve found that the practice seems to be slipping for identity in the cloud era. Add on the fact that there are a myriad of ways SysAdmins can manage these various settings and change control becomes even MORE important in today&#8217;s world.</p><p>Why did this happen? I&#8217;m not convinced it&#8217;s laziness. It&#8217;s easy to include a firewall in that process as someone has to order that box, rack it, stack it, configure it&#8230;etc. The security model for cloud services doesn&#8217;t lend itself well to that mental model and as such, securing those services often becomes an afterthought and they get left out of change control processes.</p><p>Something to consider: Do you have any identity management workflows that go un-audited? Anything that is left out of change control? If there are, it&#8217;s time to take stock of them and start putting tools/processes in place to address those shortfalls.</p><p>None of it is exotic:</p><ul><li><p>Put the policy in version control. Tailnet ACLs, Conditional Access exports, access rules for whatever tunnel you run. If it decides who reaches what, it belongs in a repo.</p></li><li><p>Put a reviewer on the pull request. You wouldn&#8217;t let a firewall rule go in unread, and this is the same thing wearing different clothes.</p></li><li><p>Let the diff be the change record. It&#8217;s already written, already timestamped, and it already says who approved it.</p></li><li><p>Write down every console that can change these settings. That myriad (there I go using that word again!) of management options is exactly why this slips, and let&#8217;s face it... you can&#8217;t audit a surface you don&#8217;t list.</p></li></ul><h2><strong>What I Learned in AI this Week</strong></h2><p>A quick one here this week</p><p>If you haven&#8217;t looked at <a href="https://code.claude.com/docs/en/remote-control">the /rc option in Claude Code</a>, I HIGHLY recommend you take a look and determine ways you can incorporate it into your workflow. With all the travel I&#8217;ve been doing lately I made heavy use of this feature. My usage breaks down pretty simply:</p><ul><li><p>I have a VM running in my lab that acts as an agent &#8220;worker&#8221; machine.</p></li><li><p>Said VM is also used to run Claude Code against locally synced git repos when I&#8217;m remote</p></li><li><p>I launch Claude Code using Screen so it survives ssh disconnections</p></li><li><p>Enabled /rc in the Claude Code Session</p></li><li><p>Connect using the Claude app on my phone</p></li></ul><p>It seems a simple thing, but the ability to issue long running jobs and prompts remotely while I&#8217;m on the road is immensely valuable. If you also make sure that the bash session you launched code with is logged into GitHub&#8217;s CLI, Claude can even push/pull and open PRs.</p><p>That all said, there are security considerations here. Make sure your Claude account is not easily breached. Also consider the level of GitHub access you&#8217;re comfortable giving Claude. In my case, I don&#8217;t really have anything stored in GitHub that I would care about Anthropic seeing. Hardly an exhaustive list, but something to think about as you&#8217;re involving more AI tools in your standard workflow.</p><h2><strong>Community Signal</strong></h2><p><strong><a href="https://www.virtualizationhowto.com/2026/02/this-made-my-mini-pc-home-lab-feel-enterprise-grade-intel-vpro-with-amt/">Brandon Lee - &#8220;This Made My Mini PC Home Lab Feel Enterprise Grade: Intel vPro with AMT&#8221;</a></strong> - Published February 23, 2026. Out-of-band management is the layer that decides whether &#8220;I can work from anywhere&#8221; survives contact with a node that has stopped answering, and Lee walks the whole thing on hardware normal people actually own: MEBx configuration on a Minisforum MS-01, MeshCommander in Docker, remote KVM and power control and BIOS access when the OS is gone. The part worth reading twice is the operational detail he did not have to include, like the AMT NIC not supporting VLAN tagging and the HDMI dummy plug trick for keeping video alive. He is also blunt about the risk: treat it like iDRAC in production, put it on a dedicated VLAN, and never let it see the internet. Honest scope, this is mini-PC specific, so the exact steps are for that class of hardware rather than your rack.</p><h2><strong>Tool of the Week</strong></h2><p><strong><a href="https://github.com/juanfont/headscale">Headscale</a></strong> - An open source, BSD-3 licensed reimplementation of the Tailscale control server, so you can run the coordination plane for your own mesh instead of renting somebody else&#8217;s.</p><p>The tool I said got out of the way up top does that partly because somebody else runs the control plane. This is the version where that somebody is you.</p><p>The clients stay the official ones. What changes is who operates the piece that hands out keys, publishes the network map, and enforces your ACLs, which for a lot of shops is the exact objection that stopped the conversation the first time. It covers the features people actually use day to day, including MagicDNS, subnet routers, and exit nodes, and it is a single binary with a config file rather than a platform.</p><p>Honest scope, and this one matters more than usual. The project states its own goal plainly: a server suitable for self-hosters, hobbyists, and small open source organizations, built around a single tailnet. It is not trying to be a multi-tenant enterprise control plane, the maintainers explicitly say they do not support or encourage running it behind reverse proxies or in containers, and the project is not affiliated with Tailscale Inc. There is also a trade you should name out loud before you make it: the whole appeal of the managed service was that somebody else kept the coordination plane running, and self-hosting hands you that availability problem. Think through what happens to node enrollment and policy changes on the day your Headscale box is the thing that is down.</p><p>It is also still pre-1.0 and it means it. Version 0.29 changed what a wildcard resolves to in policy: * in ACL sources and destinations now covers the CGNAT and ULA ranges rather than every address. Upgrade without reading that line and your ACL file means something different than it did the day you wrote it, and nothing is going to tell you. That is this issue&#8217;s Take, delivered by the tool itself.</p><p>One more thing before you bolt a UI onto it. Headscale ships without one, so the docs point you at eleven community-built options, and the most popular of those is where this stack&#8217;s recent problem turned up: Headplane, CVE-2026-46484, scored 8.1 and patched in May 2026, which let an authenticated user rename or expire any node or user in the tailnet through a path traversal in the rename call. Headscale itself has had exactly one advisory in its entire history, back in 2023. The convenience layer is the part that needed the patch, which is worth remembering when you pick what else to bolt on.</p><h2><strong>Quick Win of the Week</strong></h2><p>Get off your own network and walk the path you would actually use at 2am.</p><p>Tether to your phone. Not your home wifi, not the office, not the coffee shop you have used a hundred times. Pick one machine you would have to fix if it stopped answering tonight, and go all the way to a working console on it. Not SSH into a jump box you already trust, the actual box. If getting there requires out-of-band, use out-of-band, because that is the path the outage will force you onto anyway.</p><p>Write down every step that fails, prompts you for something you do not have on you, or needs a second device you left at home. Time-box the whole thing to an hour.</p><p>That list is your real remote capability. The one in the policy document is a different document.</p><h2><strong>Fun Retro SysAdmin Fact</strong></h2><p>SSH exists because somebody got sniffed: in 1995 Tatu Yl&#246;nen, then a researcher at Helsinki University of Technology, <a href="https://en.wikipedia.org/wiki/Secure_Shell#Version_1">wrote the first version in response to a password-sniffing attack on the university network</a>, released it as freeware that July, and watched it reach roughly 20,000 users across fifty countries before the year was out, which means the tool that eventually untethered every SysAdmin from the server room was built as incident response rather than as a convenience feature.</p><h2><strong>Until Next Week</strong></h2><p>Your estate does not care where you are sitting, right up until the one path you never tested is the only one left.</p><p>Stay Frosty, </p><p>Andy </p><p>SysAdmin Weekly</p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-34-the-firewall-moved?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share!</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-34-the-firewall-moved?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-34-the-firewall-moved?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #33: The Battle-Hardened Blind Spot]]></title><description><![CDATA[Black Hat, two Kerberos CVEs, and what 25 years of hardening actually bought you]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-33-the-battle-hardened</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-33-the-battle-hardened</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Sun, 30 Aug 2026 03:20:20 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!mh-K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>Spoke at Black Hat for the first time, spent the run-up convinced the room would find my demo old news, and got a lesson in imposter syndrome instead.</span></p></li><li><p><span>Old and battle-tested is exactly why people stop looking, and Active Directory is the proof: 25+ years in, researchers are still pulling full domain takeover out of Kerberos.</span></p></li><li><p><span>Two AD vulnerabilities worth knowing by name: KerberLoss and ResetNightmare. Both already patched. Whether your domain controllers took those patches is a separate question.</span></p></li><li><p><span>Episode 056: Andy and Eric Siron on how they actually got into this work, the advice that held up, and the advice that did not.</span></p></li><li><p><span>RC4 enforcement went permanent with the July update, and the domain-wide rollback key went with it.</span></p></li><li><p><span>Quick Win: hunt KDCSVC enforcement errors on every DC, plus the years Kerberos spent classified as auxiliary military equipment on the US Munitions List.</span></p></li></ul><h2><span>From the Console</span></h2><p><span>I recently was able to mark something off of my bucket list&#8230;. kind of. Near the beginning of August, I had the pleasure of speaking at Black Hat for the first time. Ideally, this would have been via a CFP (call for presenters) selection, but it was part of a sponsorship deal. Still&#8230; speaking at Black Hat in a sponsored showfloor session was cool with me as well.</span></p><p><span>As regular podcast listeners will know, I speak at cybersecurity and MSP shows quite regularly and as covered in </span><a href="https://open.spotify.com/episode/0kfAonNbhJ7qTp9ZoOXrJp"><span>episode 049 of the podcast</span></a><span> I spoke at Infosecurity Europe 2026 earlier in the year about how threat actors leverage locally hosted LLMs (via tools like </span><a href="https://ollama.com/"><span>Ollama</span></a><span>) to do automated spear phishing generation at scale. I ended up doing much the same topic, but with some core changes.</span></p><p><span>See, Black Hat is known for being highly technical, almost to the point of intimidation in my opinion as a speaker. I knew that for the average SysAdmin in the trenches, the Local LLM spear-phishing demo would be a bit shocking to see on stage. With the technical crowd at Black Hat&#8230; I wasn&#8217;t so sure. In fact, I was a bit nervous about that going in.</span></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p><span>So what&#8217;d I do? I made the content more technically complex. Additional demo paths, alternate scenarios. MORE time spent in the CLI and VERY few slides. Even with all of that, I was, admittedly, still worried that the (now) known attack techniques attackers are running via local LLMs would be old news to the crowd. Pair that with the fact that many of the other show floor theater sessions were very sparsely attended and&#8230;. yeah&#8230; I was getting a bit nervous.</span></p><p><span>Despite all of that, I had excellent turnout for my technical session and was even surprised at the number of people taking pictures of the attack as it progressed with some even recording it. I don&#8217;t share all of this to brag&#8230;.no, there is a clear lesson to be had here and it centers on imposter syndrome in our industry. Tech fosters a culture that makes people hesitate to share knowledge or ask questions out of fear that they </span><em><span>SHOULD</span></em><span> already have the answer, and will, thus be seen as dumb.</span></p><p><span>In hindsight, my reaction leading up to the session was imposter syndrome. I was doing it, and I was wrong.</span></p><p><span>The part I&#8217;ll leave you with today is some advice I received from a friend working in tech education MANY years ago and it holds true today:</span></p><blockquote><p><span>Don&#8217;t be afraid to share your knowledge with others out of fear that they won&#8217;t find it interesting or that you think it&#8217;s already general knowledge and that you&#8217;re behind. Instead, remember that everyone is at different stages of their tech careers and either need the information that you&#8217;re willing to share for this stage of their professional lives, or maybe they gain a new viewpoint on something they already knew because of your unique delivery style or lived experience.</span></p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mh-K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mh-K!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mh-K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console" title="From the Console" srcset="https://substackcdn.com/image/fetch/$s_!mh-K!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!mh-K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7199855e-92f9-45d1-bcc5-1f7f2f80541c_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>And now&#8230;. back to our regularly scheduled programming.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>How People Actually Get Into SysAdmin Work</span></em><span> (Episode 056) </span><strong><span>Topic:</span></strong><span> Eric and I trade full origin stories, then put the career advice we were handed on trial. Some of it held up for thirty years. Some of it was nonsense the whole time.</span></p><p><span>Why this one is a good listen:</span></p><ul><li><p><span>The nerd hour segment is the technical companion to what I wrote up top. It walks through the Black Hat demo itself: the local models doing the spear phishing generation, the second script that made every lure Microsoft 365 specific, and the pass through an HTML parser that turns raw model output into something that lands in an inbox looking like an ordinary SharePoint share notification.</span></p></li><li><p><span>The advice audit is the part worth your time. &#8220;The key to IT is laziness&#8221; came from my first mentor, meant automate anything you do more than once, and has held up for thirty years. &#8220;Always,&#8221; &#8220;never,&#8221; and &#8220;well, this is a best practice&#8221; did not, and the reason is the useful part: chase most of those &#8220;best practices&#8221; back far enough and you find one person on the internet citing another person on the internet with no original source anywhere. Ask who decided, and ask who made them authoritative.</span></p></li><li><p><span>Both of our first real disasters were data disasters, which turns out not to be a coincidence, and the stretch after that is the one I would point a newer admin at: normalizing &#8220;I don&#8217;t know&#8221; at every stage of a career rather than only once you have enough scar tissue to say it safely. Eric&#8217;s version of that is blunter than mine. It closes on whether cheap hardware and time to break things still exist as an entry path, and we land more optimistic than you might expect.</span></p></li></ul><h3><span>Watch on YouTube</span></h3><div id="youtube2-rnWluccZFVQ" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;rnWluccZFVQ&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/rnWluccZFVQ?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;056 - How People Actually Get Into SysAdmin Work&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/6auaQVOjfVlNPdPnAFOSvj&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/6auaQVOjfVlNPdPnAFOSvj" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><span>The Take</span></h2><p><span>The tech industry moves fast. So much so that we often lump &#8220;old&#8221; and &#8220;legacy&#8221; software together. Both of those designations can byte (hah! see what I did there?) you if you&#8217;re not careful. Take &#8220;old&#8221; on-prem Active Directory for example. It&#8217;s been the bedrock of enterprise identity for 25+ years and, despite its age, is still widely used by SysAdmins around the world today.</span></p><p><span>An &#8220;old&#8221; but tried and tested piece of software like Active Directory is seen by many to have been battle-hardened over the years and while knowing that something has been hardened and secured via attrition is a good thing, it causes many to drop their guard. Many a time have I heard someone say things along the lines of:</span></p><blockquote><p><span>&#8220;AD (Active Directory) has been around for AGES&#8230; surely they&#8217;ve found all the bugs and security issues by now&#8221;</span></p></blockquote><p><span>Me denying that statement is NOT today&#8217;s &#8220;Take&#8221;, but I feel like my take for this week is that I think generalist SysAdmins have a tendency to drop their guard on older, tested, and &#8220;mature software&#8221;. I don&#8217;t think it&#8217;s from a lack of skill / knowledge, but more so the mere fact that most are so overworked with the day-to-day that the small respite from lightening the mental cybersecurity load is sorely needed and welcomed. I&#8217;m not necessarily saying that this is right or ok, but that I understand it, and would urge those admins to put systems in place to watch for vulnerabilities for ALL software in your environment, and not JUST the more modern software.</span></p><p><span>For an example of why, let&#8217;s go back to the recent Black Hat conference again. During my time at the event I was able to attend a few sessions, and one in particular caught my eye. Shai Laron from Semperis was giving a session talking about different ways that he and his team were able to abuse </span><a href="https://learn.microsoft.com/en-us/windows-server/security/kerberos/kerberos-authentication-overview"><span>Kerberos</span></a><span> tickets, mainly by </span><a href="https://en.wikipedia.org/wiki/Fuzzing"><span>fuzzing</span></a><span> UPN / SPN calls using unicode characters.</span></p><p><span>Using this method, Shai and his team surfaced two separate vulnerabilities:</span></p><p><span>1. </span><strong><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25177"><span>KerberLoss (CVE-2026-25177)</span></a></strong><span> - unicode in a Service Principal Name creates a name collision that AD&#8217;s uniqueness check does not catch. That gets you a denial of service against HOST-mapped services, SPN-jacking for constrained delegation abuse, and the ability to force any service in the forest to fall back to NTLM. Requires WriteSPN on any object. Patched March 10, 2026.</span></p><p><span>2. </span><strong><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-27912"><span>ResetNightmare (CVE-2026-27912)</span></a></strong><span> - set your own UPN to match another account&#8217;s sAMAccountName, request a ticket as them, and reset their password without ever knowing the old one. Any domain user can write their own UPN by default. This is the full domain takeover. Patched April 14, 2026.</span></p><p><span>NOTE: Both of the above CVEs have already been patched back in March and April of 2026.</span></p><p><span>Full writeup from Shai with the mechanics of both: </span><a href="https://www.semperis.com/blog/identity-crisis-novel-vulnerabilities-leading-to-kerberos-downgrade-dos-and-full-domain-takeover/"><span>Semperis - &#8220;Identity Crisis: Novel Vulnerabilities Leading to Kerberos Downgrade, DoS, and Full Domain Takeover&#8221;</span></a></p><p><span>In short, in 2026 Shai and his team were able to completely own an established AD domain by essentially confusing Kerberos.</span></p><p><span>Here is a system that has been battle-hardened over 25+ years in the industry, and people are STILL finding vulnerabilities and exploits for it today. So, that seemingly old and &#8220;bulletproof&#8221; piece of software within your environment? Don&#8217;t ignore it, because it leads to getting hit with an exploit when you least expect it.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://m365admin.handsontek.net/enforcement-phase-kerberos-rc4-protections-begins-july-2026-windows-security-update/"><span>Jo&#227;o Ferreira (Microsoft MVP) - &#8220;Enforcement phase for Kerberos RC4 protections begins with the July 2026 Windows security update&#8221;</span></a></strong><span> - Published July 15, 2026, and the timing matters more than the length. Audit mode and the RC4DefaultDisablementPhase rollback key were both removed with the July update. Ferreira&#8217;s list is short and correct: confirm your service accounts speak AES, close out the RC4 dependencies you found during the audit phases, and go read your DC event logs before someone else finds them for you.</span></p><p><strong><a href="https://techcommunity.microsoft.com/blog/coreinfrastructureandsecurityblog/active-directory-hardening-series---part-4-%E2%80%93-enforcing-aes-for-kerberos/4114965"><span>Jerry Devore (Microsoft, Core Infrastructure and Security Blog) - &#8220;Active Directory Hardening Series, Part 4: Enforcing AES for Kerberos&#8221;</span></a></strong><span> - Refreshed August 2, 2026, and it is the most practical thing written on msDS-SupportedEncryptionTypes anywhere. The trick worth stealing is using Event 4768 to find your RC4 holdouts, because the ticket encryption type field reflects the session key issued with the TGT, which tells you which clients can only do RC4 rather than which ones you assumed could. Devore also names the four usual suspects: RC4-only keytab files, non-Windows integrated devices, Windows boxes with AES turned off by GPO, and anything predating 2008. Fair warning on sourcing, this is Microsoft&#8217;s own blog rather than independent community work, but it is field-engineer material and not marketing.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Go read your domain controllers&#8217; System event logs for KDCSVC events 203, 204, 208, and 209. Those are the enforcement-mode error variants, which means they are not warnings about something that might break later, they are records of authentication that already failed since the July update landed. Their warning-mode twins are 201, 202, and 205 through 207.</span></p><p><span>Get-WinEvent -FilterHashtable @{<br> LogName = &#8216;System&#8217;<br> ProviderName = &#8216;Microsoft-Windows-Kerberos-Key-Distribution-Center&#8217;<br> ID = 201,202,203,204,205,206,207,208,209<br> StartTime = (Get-Date).AddDays(-30)<br>} | Group-Object Id | Sort-Object Count -Descending</span></p><p><span>Run it on every DC, not the one you always log into. While you are in there, confirm the box actually took the March 10 and April 14, 2026 rollups, since those are the KerberLoss and ResetNightmare fixes and nothing above will tell you if it did not.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>Because Kerberos 4 used DES, </span><a href="https://en.wikipedia.org/wiki/Kerberos_%28protocol%29#History_and_development"><span>the United States classified it as auxiliary military equipment on the Munitions List and banned its export</span></a><span>, so MIT shipped an international version with every encryption function and every call to one surgically removed, named &#8220;Bones,&#8221; until Eric Young at Bond University in Australia re-implemented DES back into it to produce &#8220;eBones,&#8221; which went on to become the ancestor of the Swedish KTH-KRB and Heimdal implementations.</span></p><h2><span>Final Item Worth Your Time</span></h2><p><strong><a href="https://www.semperis.com/blog/identity-crisis-novel-vulnerabilities-leading-to-kerberos-downgrade-dos-and-full-domain-takeover/"><span>Semperis - &#8220;Identity Crisis: Novel Vulnerabilities Leading to Kerberos Downgrade, DoS, and Full Domain Takeover&#8221;</span></a></strong><span> - Shai Laron&#8217;s writeup of the Black Hat research behind this issue&#8217;s Take, with the full mechanism for both KerberLoss (CVE-2026-25177) and ResetNightmare (CVE-2026-27912). It is a vendor blog and there is a product pitch in the detection section, so read it for the research and skip the rest; the CVEs and the patch dates stand on their own.</span></p><h2><span>Until Next Week</span></h2><p><span>Patch Tuesday is a date on a calendar, not evidence that anything actually happened. Make sure those patches get installed!</span></p><p><span>Stay Frosty, </span></p><p><span>Andy </span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-33-the-battle-hardened?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public so feel free to share it!</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-33-the-battle-hardened?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-33-the-battle-hardened?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly Special Edition: Aug 2026]]></title><description><![CDATA[The Soft Skills Episodes]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-special-edition-aug</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-special-edition-aug</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Mon, 24 Aug 2026 03:01:49 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Nbvw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hey everyone! I figured we would deviate from our standard format a bit for this edition for the week of Aug. 17th. I had authored a whole section about my thoughts around the BlackHat conference and my (very good) experiences there, but when i sat back and looked at it, I felt like it didn&#8217;t flow well (that&#8217;s the perfectionist in me). As such, instead of leaving you with nothing until this following Thursday, I figured I&#8217;d curate some content for you from the Podcast.</p><p>As regular followers of the show will know, we run the whole list of SysAdmin topics for the show including:</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><ul><li><p>Microsoft&#8217;s ecosytem (Especially Hyper-V)</p></li><li><p>M365 and Azure</p></li><li><p>Cybersecurity</p></li><li><p>Some Linux / Open Source stuff</p></li><li><p>Storage and Networking</p></li><li><p>And of course&#8230; soft skills</p></li></ul><p>Soft skills are often overlooked when viewed with a list of other SysAdmin skills, but they are some of the most important skills in any SysAdmin&#8217;s toolbelt. They help you deal with the day-to-day and stay sane and they also help you communicate to a board room and provide customer service effectively as well.</p><p>As such, I tasked Claude with parsing the full episode list of the show (all 56 episodes across our back catalog of 15 months!) and had it curate a list of soft-skill episodes that we&#8217;ve covered throughout the lifespan of the show, thus far.</p><p>If you have a SysAdmin soft-skill topic you&#8217;d like to see us cover, do let us know in the comments below!</p><p>Here is the list!</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Nbvw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Nbvw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Nbvw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2611914,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/212492232?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Nbvw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!Nbvw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe0ae2644-eaca-4138-af15-8cd692315c70_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2><strong>Getting In</strong></h2><p>The on-ramp questions. Worth reading if you are early, or if you are the one doing the hiring and wondering why the pipeline looks the way it does.</p><p><strong><a href="https://youtu.be/EzJY7T4ercc">Episode 005 - Microsoft Certification in 2025: A Microsoft Certified Trainer&#8217;s Take</a></strong> - Paul Schnackenburg is an MCT, so this is the view from inside the machine: the shift from product exams to role-based ones, why the exam names confuse everyone, what applied skills actually prove, and whether the annual renewal treadmill earns its place in your calendar. Useful if you are deciding where a training budget goes. <strong>NOTE</strong>: this one is a bit dated as far as certs go, but i still contains a TON of useful information for those navigating the Microsoft certification world.</p><p><strong><a href="https://youtu.be/IzoYALUvEJo">Episode 027 - Is University Worth It for Aspiring SysAdmins?</a></strong> - Clay Tamam is a recent IT graduate in the Netherlands who was in his first SysAdmin role when we recorded, so this is not two veterans speculating about kids these days. Where the degree held up, where it did not, and how certifications and a homelab stack against it. Includes his first real outage, which for once was not DNS.</p><p><strong><a href="https://youtu.be/cj3s8Kqt1Jc">Episode 033 - Why IT Job Postings Are Completely Broken</a></strong> - Andy solo, scrolling through real postings: unicorn requirements, role creep, and job descriptions that read like four jobs stapled together. Not a recruiter dunk session. The argument is that a posting is a small glimpse into the organization doing the posting, most of them are posting confusion, and both sides can do better.</p><p><strong><a href="https://youtu.be/rnWluccZFVQ">Episode 056 - How People Actually Get Into SysAdmin Work</a></strong> - Published this week, so it is the newest thing on this list. Andy and Eric Siron trade full origin stories, from a 486 and a VIC-20 through first paid jobs neither of them was qualified for, and land on the same first catastrophe: data gone, no idea if it was coming back. Closes on whether the cheap-hardware-and-time on-ramp that produced both of them still exists in 2026.</p><h2><strong>The Craft Nobody Tests You On</strong></h2><p>There is no exam objective for any of this, which is exactly why it separates people.</p><p><strong><a href="https://youtu.be/lhiiYpGVVtQ">Episode 009 - What Makes a Great SysAdmin?</a></strong> - The one that started this whole thread for us. Andy and Paul pull apart the technical skills from the traits that actually make someone good at this work: communication over compiling, curiosity as the real fuel, and yes, empathy. Also gets into gatekeeping, and why the best people in this field never stop learning even when they badly want to.</p><p><strong><a href="https://youtu.be/Tx4VITDb5e4">Episode 015 - The Art of Troubleshooting in Tech</a></strong> - Change one thing at a time. That is the entire discipline, and almost nobody manages it at 2am with a queue backing up behind them. Scoping a problem without panicking, when to escalate, surviving vendor support roulette, and how to stop a junior tech from chaotic-clicking their way into a production outage.</p><p><strong><a href="https://youtu.be/hhAWszwZ3KI">Episode 022 - Why IT Documentation Matters (Even if You Hate Writing It)</a></strong> - Writing is a soft skill and this episode treats it like one. War stories where future you had to clean up past you&#8217;s mess, plus the honest question of what makes documentation stay alive instead of quietly rotting in a wiki nobody has opened since the last migration.</p><h2><strong>Getting Heard</strong></h2><p>Being right is not the job. Being right where someone with budget can hear you is the job.</p><p><strong><a href="https://youtu.be/IY70SUnUMrs">Episode 014 - How SysAdmins Can Prove Their Value (Before the Next Layoff)</a></strong> - The Visibility Paradox: the better you are at this, the less anyone notices you exist. This one is about fixing that deliberately. Quantifying wins, turning automation into an ROI number somebody upstairs will repeat, and asking who is in the room before the meeting starts.</p><p><strong><a href="https://youtu.be/TavjUPSaGVo">Episode 050 - How Do You Run a Blameless Incident Postmortem?</a></strong> - A postmortem that ends with a name instead of a root cause wasted everyone&#8217;s time in the room. Blameless without sliding into unaccountable, separating root cause from contributing factors, and why the follow-through is the entire point. The discipline scales from sixty people in a war room down to you writing a summary for one nervous boss.</p><p><strong><a href="https://youtu.be/TejOdGgPB80">Episode 055 - How Do You Run IT With No Budget?</a></strong> - &#8220;No budget&#8221; is almost never no budget. It is no budget yet, and what closes the gap is your ability to attach a real dollar figure to the risk you are already carrying, because leadership does not act on fear but it does act on risk management. And if the answer is still no, get the decision in writing.</p><h2><strong>Staying in the Chair</strong></h2><p>The long game. Nobody warns you that lasting twenty years in this field is its own separate skill.</p><p><strong><a href="https://youtu.be/_JjMoVt2tsI">Episode 010 - Tips for Tech Conferences in 2025</a></strong> - Conferences are expensive and most people get them wrong. The hallway track is worth more than the session schedule, the expo hall is not purely a capitalist trap, and speaking at an event is one of the better career moves available to you. Recorded while Andy was still fighting off the conference cold that proves he was there.</p><p><strong><a href="https://youtu.be/G0ZxmZR1vCE">Episode 026 - Burnout in IT: Why So Many Tech Pros Are Struggling (and How to Cope)</a></strong> - The heaviest one we have recorded, and the one most worth forwarding to somebody. Imposter syndrome in a field that changes underneath you, always-on culture, notification overload, and what actually moves the needle: boundaries, peer support, and managers who build psychological safety rather than put it on a slide.</p><p><strong><a href="https://youtu.be/ncFBJG4DU0o">Episode 031 - How the IT Community Makes You a Better SysAdmin</a></strong> - Not the corporate version of the word. Mentors who turned up unannounced and changed a trajectory, MVP circles, open source projects that operate nothing like vendor ones, and the case that contributing small things builds a career faster than any credential on its own.</p><p><strong><a href="https://youtu.be/gk1_M38bOIw">Episode 042 - Should SysAdmins Job Hop or Stay Put?</a></strong> - Four decades of combined experience arguing that the answer is neither one. Staying long term buys institutional depth, ownership, and skill calcification you will not notice happening. Hopping buys pay jumps, breadth, and a reputation you have to manage. Secret Option C is the actual episode.</p><p><strong><a href="https://youtu.be/hmVFBiBNVEs">Episode 053 - How to Survive as a Solo SysAdmin</a></strong> - A listener request. When you are the only person between a working business and total collapse, the job stops being about doing everything and starts being about deciding what not to do this week. Triage before projects, documentation as an insurance policy, buying time back through automation, and speaking business value instead of acronyms.</p><h2><strong>One Closing Note</strong></h2><p>Line these up and a pattern shows up that none of us planned.</p><p>Every single one of these episodes is about the same thing from a different angle: the gap between doing the work and being understood doing the work. Documentation is that gap in writing. The postmortem is that gap under pressure. The budget conversation is that gap with money attached. Burnout is what happens when the gap never closes and you keep absorbing the difference yourself.</p><p>The technical skills get you in the door. This is the set that decides how long you stay and what you get paid while you are there.</p><p>Stay Frosty, </p><p>Andy </p><p>SysAdmin Weekly</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #32: Backups, Consoles, and Single Points of Failure]]></title><description><![CDATA[RAID 6, An Azure Storage Account, and why a second (or third) road into the infrastructure is a BIG deal]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-32-backups-consoles</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-32-backups-consoles</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 13 Aug 2026 15:18:25 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!kyam!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><strong>TL;DR</strong></h2><ul><li><p>Rebuilt the lab&#8217;s backup strategy on an ancient ReadyNAS and an Azure storage account, and the boring tool you know cold beats the clever one you don&#8217;t.</p></li><li><p>Your backup target and your management console have the same failure mode: one of anything is the problem.</p></li><li><p>Episode 054: Windows Admin Center is a good tool with an on-ramp that ate four hours of Andy&#8217;s time.</p></li><li><p>Hot take: Hyper-V&#8217;s pile of &#8220;disparate&#8221; management tools is a feature, and a stronger management story than it seems on the surface.</p></li><li><p>Apache Guacamole as a second road into the fleet, plus the RAID acronym&#8217;s quiet rebrand once vendors started charging for it.</p></li></ul><h2><strong>From the Console</strong></h2><p>Regular listeners of the Podcast and those who keep up with this newsletter on a regular basis know that I&#8217;ve been juggling a bunch of changes in the homelab lately. That said, I&#8217;m hoping to put homelab talk on the back burner for this publication for at least a few editions after this week&#8217;s entry. However, my &#8220;sitting at the console&#8221; work for this last week (at least in my personal time) has focused heavily on backups for the home lab.</p><p>Yes, I agree&#8230;. backup / recovery is boring. It&#8217;s the plain wheat toast of the SysAdmin world, but all of us should be in agreement when I say: <em>Backup is Critically important</em>. If you don&#8217;t agree with me on that one&#8230; we need to have a chat BTW&#8230;</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>After ripping the KVM virtualization layer out of my lab and replacing it with Hyper-V the number of backup options available to me broadened. Yes, I was using <a href="https://restic.net/">Restic</a> and <a href="https://www.proxmox.com/en/products/proxmox-backup-server/overview">Proxmox Backup Server</a> successfully, and they are GOOD tools, but for my given setup, they were both taking too much time and effort to manage.</p><p>I replaced them with <a href="https://www.hornetsecurity.com/en/services/vm-backup/">VM Backup from Hornetsecurity by Proofpoint</a> (Not a product plug, just a statement of fact).</p><p>Full disclosure: that tool and I go WAAAY back because I&#8217;ve worked for ALL of the vendors that have held that IP. I was at Altaro, the company that originally built VM Backup, and I stayed on through the Hornetsecurity acquisition. I know this product from the inside, so weigh what I say about it accordingly. That brings me to my first point. Whatever backup application you choose for your given environment <em>SHOULD</em> be boring and predictable. You should know it so well that it never surprises you.</p><p>This goes for the architecture side of the discussion as well. Example: I have an OLD ReadyNAS with 6 disks in a RAID 6. I&#8217;ve had this thing forever. I know it, and it <strong>just works</strong>. I know it so well, in fact, that I&#8217;m also deeply aware of its faults. It&#8217;s old, therefore it runs an old insecure version of SMB. So when I rearchitected the backup strategy for the lab, I planned for that. The ONLY system able to talk to that SMB share is the system the backup software is running from. Plus, that system has the <em>minimal</em> amount of permissions needed to do the job and said permissions are tied to a dedicated service account specifically for that purpose.</p><p>Overkill for a homelab? Maybe. But I&#8217;ll die on the hill of &#8220;You should treat your lab like production&#8221;.</p><p>That brings me to my final point. In the age of increasingly expensive hardware, at least make the attempt to make use of aging hardware. Backup is critical yes, but you can architect effective and safe backup storage, even with aging hardware. For example, I used RAID 6 with the understanding that yes, sometimes 2 drives fail simultaneously (and i&#8217;ve seen it happen more than once). I also paired the backups with an offsite backup location using an Azure storage account. So the solution is hardened against multiple local drive failures as well as whole NAS failure with the full offsite copies, immutability, and 1 year&#8217;s retention.</p><p>Backups are for failure situations, but make sure you architect your backup deployment for failure as well.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!kyam!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!kyam!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!kyam!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!kyam!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!kyam!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!kyam!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2465585,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/209321015?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!kyam!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!kyam!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!kyam!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!kyam!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17fc582e-32a1-46b3-9b1b-b1856946e6c3_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now, back to our regularly scheduled programming&#8230;. where, as it happens, I end up making a very similar argument about a completely different layer of the stack.</p><h2><strong>The latest on the SysAdmin Weekly Podcast</strong></h2><p><strong>Episode:</strong> <em>Windows Admin Center in 2026: Good Tool, Broken On-Ramp?</em> (Episode 054) <strong>Topic:</strong> Four hours, a from-scratch certificate authority, and a stack of error messages pointing the wrong direction, all to reach the login screen of a free Microsoft tool.</p><p>Why this one is a good listen:</p><ul><li><p>Andy and Eric Siron walk the full gauntlet: the 60-day self-signed cert trap, an ERROR_DS_RANGE_CONSTRAINT that blamed the wrong thing, a web server template that quietly refuses computer requests, and a blank SAN that kills the HTTPS binding without telling you.</p></li><li><p>The tool underneath is good. The on-ramp is where SysAdmins give up, and giving up on the on-ramp is how a useful tool ends up unused across an entire industry.</p></li><li><p>If you are moving to an all Windows Server-Core fleet, this is the install you are about to do. Also covered: Azure Arc and what Microsoft actually wants out of WAC, plus the domain-join debate that refuses to die.</p></li></ul><h3><strong>Watch on YouTube</strong></h3><div id="youtube2-y4Ze7LXKIco" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;y4Ze7LXKIco&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/y4Ze7LXKIco?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><strong>Listen on Spotify</strong></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;054 - Windows Admin Center in 2026: Good Tool, Broken On-Ramp?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/1tKbE1YMtJFT6S70CJMcKE&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/1tKbE1YMtJFT6S70CJMcKE" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><strong>The Take</strong></h2><p>This may be a hot take, but the vast number of different Hyper-V management options in Windows and the Microsoft Cloud is a strength of the platform and not a detriment (Like I used to think it was).</p><p>Many SysAdmins in the industry started their virtualization management journey with VMware vSphere. vSphere is known for its powerful management story in that much (if not all) of the day to day management can be done from one central console. Microsoft&#8217;s Hyper-V has long been criticized for its use of multiple disparate management tools. The list, which is extensive, includes:</p><ul><li><p>Hyper-V Manager</p></li><li><p>Failover Cluster Manager</p></li><li><p>System Center Virtual Machine Manager (SCVMM)</p></li><li><p>PowerShell</p></li><li><p>Windows Admin Center</p></li><li><p>Management from Azure via Azure Arc</p></li><li><p><a href="https://learn.microsoft.com/en-us/windows-server/manage/windows-admin-center/virtualization-mode-overview">Windows Admin Center vMode (New and in Public Preview)</a></p></li></ul><p>Even though I&#8217;ve spent many years as a <a href="https://mvp.microsoft.com/en-US/mvp/profile/b59107f9-3c9a-e411-93f2-9cb65495d3c4">Microsoft MVP in the Cloud and Datacenter management category</a>, I used to be on the &#8220;VMware&#8217;s management story is better&#8221; side of the discussion, even though I was of the opinion that, overall, Hyper-V was the better solution. Over the last few years my stance has changed and I&#8217;ve come to appreciate the management options with Hyper-V.</p><p>Do I think there could be a better &#8220;single-pane-of-glass&#8221; management solution for Hyper-V? Sure, and <em>maybe</em> Windows Admin Center Virtualization Mode is it. It&#8217;s still early days on that particular tool and system requirements for it are&#8230; intense, but time will tell. Outside of WAC vMode though there are a number of seemingly disparate tools that I&#8217;ve come to appreciate their individualness. Each tool has it&#8217;s own strength and together they present a whole management story that does NOT have a single point of failure. For example:</p><ul><li><p>If I need to manage a stand alone box - Hyper-V Manager.</p></li><li><p>Managing a small cluster? - Failover Cluster Manager</p></li><li><p>Large Cluster? - Use SCVMM</p></li><li><p>Automation task - Call PowerShell</p></li><li><p>Someone needs a simple webUI and hates MMC? - Windows Admin Center (<a href="https://open.spotify.com/episode/1tKbE1YMtJFT6S70CJMcKE?si=2_JoQP-HTcus-TKWdt_RLA">if you can get it installed =/</a>)</p></li><li><p>Manage things from the same control plane as Azure Services? - Azure Arc</p></li></ul><p>Again, the choice and the flexibility <strong>IS THE POINT</strong>. I guess that&#8217;s the part that I&#8217;ve been stuck on all these years. I was spoiled by the single tool in my VMware days and never stopped to think about the advantages outside of that management model. What happens if that single tool breaks? Sure, I have PowerCLI as a backup on the VMware side, and I can think of <em>maybe</em> 3 times in my career that the vSphere UI was unusable, so unlikely. But, as a SysAdmin who&#8217;s been doing this for 24 years, I&#8217;ve learned that shit will hit the fan when you least expect it.</p><p>This is also not to mention the fact that Broadcom has been throwing around <a href="https://www.reddit.com/r/sysadmin/comments/1pu7upy/anyone_else_been_getting_threatening_letters_from/">legal threats</a> and generally making vSphere too expensive to operate for some organizations. Do I want a company like that, who uses relicensing and contract scares, to have a potential hold over the limited management avenues into my virtualization ecosystem? Probably not&#8230;. At least with Hyper-V I have multiple management frameworks and paths to get the job done, even in the worst of circumstances.</p><p>Hot take? Maybe, but that&#8217;s where I find myself these days on this particular debate.</p><p>What about you? Let me know in the comments!</p><h2><strong>Community Signal</strong></h2><p><strong><a href="https://thisismydemo.cloud/post/hyper-v-powershell-automation-2026/">Kristopher Turner - &#8220;PowerShell Automation Patterns (2026 Edition)&#8221;</a></strong> - A multi-layer approach to driving Hyper-V without touching a console: config files, modules, declarative DSC v3, and a CI/CD pipeline on top. The useful detail that Kristopher lays out is that, to quote the article: &#8220;the Hyper-V module (roughly 245 cmdlets) and FailoverClusters (roughly 90) now run natively under PowerShell 7 with no compatibility shim&#8221;. This used to drive admins BONKERS. Turner frames the whole stack as the free, version-controlled answer to VMware Host Profiles and Update Manager, meaning the road into your fleet that survives a broken GUI is the one you scripted. A GREAT read overall!</p><h2><strong>Tool of the Week</strong></h2><p><strong><a href="https://guacamole.apache.org/">Apache Guacamole</a></strong> - A clientless remote desktop gateway that serves RDP, VNC, and SSH sessions to a plain browser tab, with nothing installed on the machine you are sitting at.</p><p>The reason it earns the slot this week is that it is a second road in. When your primary console is broken, relicensed, or waiting on a certificate you cannot mint, a gateway that speaks the native protocols directly does not care. It handles LDAP, SAML, OAuth, and TOTP for auth, and file transfer is drag-and-drop into the session.</p><p>Honest scope: this is a real deployment, not an appliance. You are running the web app, the guacd proxy daemon, and a database, and Docker Compose is the sane way to do it. And be clear-eyed about the irony, because a gateway everything routes through is itself a single point of failure. Guacamole is worth running as an <em>additional</em> path to your infrastructure, SHOULD YOU NEED IT (not everyone does). Put it behind a VPN and keep your direct RDP and SSH paths working. Remember though, this could potentially be another attack surface for the given environment, so secure it and treat it as such.</p><h2><strong>Quick Win of the Week</strong></h2><p>Pick the console you reach for most, then go do one routine task without it.</p><p>Not a hard task. A boring one you did last week. Check a VM&#8217;s memory assignment, restart a service on a member server, pull the last ten failed logons. Do it from PowerShell, or the MMC snap-in, or whatever your second road happens to be, and time yourself.</p><p>If it takes ten minutes, you have a working fallback. If you find yourself opening the primary console to look up how to do it without the primary console, you just found out how much of your operational capability lives in one UI. That is the number worth knowing before the bad day, not during it.</p><h2><strong>Fun Retro SysAdmin Fact</strong></h2><p>The <a href="https://www.computerhistory.org/storageengine/u-c-berkeley-paper-catalyses-interest-in-raid/">1988 Berkeley paper that gave us the word RAID</a>, by Patterson, Gibson, and Katz, defined exactly five levels and RAID 6 was not one of them; dual parity came later, and the industry also quietly swapped the &#8220;I&#8221; from &#8220;Inexpensive&#8221; to &#8220;Independent&#8221; once vendors started charging real money for the arrays.</p><h2><strong>Until Next Week</strong></h2><p>Go find out which single thing in your stack everything else is quietly leaning on, because it already knows and you don&#8217;t.</p><p>Stay Frosty,</p><p>Andy</p><p>SysAdmin Weekly</p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-32-backups-consoles?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-32-backups-consoles?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-32-backups-consoles?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #31: The "Supported" Install That Ate My Evening]]></title><description><![CDATA["Supported" is a claim a vendor makes, not a promise the software keeps]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-31-the-supported</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-31-the-supported</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Fri, 24 Jul 2026 19:57:59 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!dUPe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>Rebuilt damned-near the whole lab on Windows Server 2025: WS2025 Hyper-V host, Debian guests, plus DC, CA, and fileserver VMs (all 2025).</span></p></li><li><p><span>Homelabs are how you meet the newest version of the thing, and its rough edges, before a change window forces the introduction.</span></p></li><li><p><span>The Take: &#8220;supported&#8221; is a claim a vendor makes, not a promise the software keeps; test the mainline path in the lab from time to time, not just the weird edge cases.</span></p></li><li><p><span>Podcast episode 053: how to survive as a solo SysAdmin, with Eric Siron.</span></p></li><li><p><span>Tool of the Week is Smallstep step-ca, an open-source internal CA that makes lab certificates a lot less painful than they were this month.</span></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div></li></ul><h2><span>From the Console</span></h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!dUPe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!dUPe!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!dUPe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console" title="From the Console" srcset="https://substackcdn.com/image/fetch/$s_!dUPe!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!dUPe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F30cec567-f69c-4b8b-b4c1-eda4ad4a7a17_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>I spent the last few weeks tearing my lab down to the studs and rebuilding (again) on Windows Server 2025. Hyper-V now runs the virtualization layer, and the part that still makes me grin is what sits on top: a stack of Debian VMs, right alongside a domain controller, a certificate authority, and a file server, all three of those on Server 2025 as well. Windows hosting Linux guests alongside the AD estate. That is the lab for now.</span></p><p><span>This is the whole reason any of us run homelabs. Not the rack lights. It is the one place you get to meet the newest version of the thing on your own terms, before a customer or a change window makes the introduction for you. Staying current is not a nice-to-have in this job; it </span><em><span>is</span></em><span> the job.</span></p><p><span>What do the &#8220;what&#8217;s new in Server 2025&#8221; posts skip? Labbing the new stuff does not just show you the new capabilities. It shows you which of the vendor&#8217;s own instructions (and docs) quietly do not hold. I went to stand up Windows Admin Center on that fresh fleet, </span><strong><span>the documented and supported way</span></strong><span>, and lost most of an afternoon to it. The supported installer walked right up to the certificate step and silently failed to bind the cert to HTTPS (amongst many other issues), on a clean box, following the official docs to the letter. Four hours, and about ten minutes of that was genuinely my fault. I am writing the full autopsy up as a blog post for </span><a href="https://www.andyontech.com"><span>AndyOnTech.com</span></a><span>, so I will not spoil the ending here. The short version is the thread running through this whole issue: &#8220;supported&#8221; is a claim a vendor makes, not a promise the software keeps, and the lab is where you find that out on your own time instead of in production.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>How to Survive as a Solo SysAdmin: Where to Start When You&#8217;re the Only One</span></em><span> </span><strong><span>Topic:</span></strong><span> When you are the only person between a working business and total collapse, the job stops being about doing everything and starts being about deciding what not to do this week.</span></p><p><span>Why SysAdmin&#8217;s should tune in:</span></p><ul><li><p><span>It is a survival guide for the team of one: triage before projects, documentation as insurance, and buying your time back with automation and the right managed services partner.</span></p></li><li><p><span>Ignore it and you burn out, or you get hit by a bus and the business finds out the hard way that everything important lived in your head.</span></p></li><li><p><span>For anyone who got hired into, downsized into, or promoted into owning the whole environment</span></p></li><li><p><span>Plus a News React on Windows Server hot patching and a Nerd Hour on Debian 13.6 Secure Boot certs.</span></p></li></ul><h3><span>Watch on YouTube</span></h3><div id="youtube2-hmVFBiBNVEs" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;hmVFBiBNVEs&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/hmVFBiBNVEs?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;053 - How to Survive as a Solo SysAdmin: Where to Start When You're the Only One&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/6dyZVTrLoCAmHEWxLLutoo&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/6dyZVTrLoCAmHEWxLLutoo" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><span>The Take</span></h2><p><span>Vendors publish a &#8220;supported path&#8221; for a reason, and we lean on it for a reason. It is meant to be the route that has been tested, documented, and blessed, the one you can trust when you do not have time to reverse-engineer the product. So here is the uncomfortable thing I got reminded of this week. Supported is a claim, not a guarantee. The documented, supported way to do a routine thing with Windows Admin Center quietly failed multiple ways throughout the installation / setup, and nothing in the process warned me or provided meaningful error messages.</span></p><p><span>When you are the solo or lean-team admin like the theoretical solo SysAdmin we discussed in this week&#8217;s featured podcast episode, you plan your maintenance windows around the assumption that the supported path works. You do not budget four hours to install a management tool the vendor says installs in twenty minutes. The exotic edge cases you already distrust, so you test those. It is the boring, supported, &#8220;this obviously works&#8221; step that sometimes surprisingly wrecks your evening, precisely because you had no reason to give it a second look.</span></p><p><span>So test the happy path, not just the weird one. The install everyone says just works, the migration the docs call routine, the failover you assume is fine because the vendor says &#8220;</span><em><span>It&#8217;s fine&#8230; trust me bro</span></em><span>&#8221;. Run it once in the lab before you run it live. Not because you are paranoid, but because &#8220;supported&#8221; and &#8220;actually works in your environment&#8221; are two different sentences, and the gap between them is your outage. I would rather find that gap in my basement or test/dec environment than in a change window with someone waiting on me.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://mountainss.wordpress.com/2025/11/27/windows-admin-center-2511-build-2-5-1-49-preview-and-security-of-windows-server/"><span>James van den Berg - &#8220;Windows Admin Center 2511 and the Security of Windows Server&#8221;</span></a></strong><span> - Van den Berg is a long-running Microsoft MVP for Cloud and Datacenter Management, and this is a clean walkthrough of using Windows Admin Center to drive the Server 2025 security surface: OSConfig baselines for CIS and DISA STIG, Secured-core, TPM attestation, and VBS. What earns it the slot this week is that he tells you to test it in a lab before you point it at production. That is the exact reason my own lab exists, and it is a reminder that WAC, on-ramp gripes aside, is a genuinely useful console once it is running.</span></p><p><strong><a href="https://www.it-connect.tech/debian-13-6-is-out-here-are-the-key-changes/"><span>Florian Burnel / IT-Connect - &#8220;Debian 13.6 Is Out: Here Are the Key Changes&#8221;</span></a></strong><span> - Burnel is a Microsoft MVP for Cloud and Datacenter Management, and his rundown of the Debian 13.6 point release is a near-perfect illustration of this week&#8217;s whole point. Microsoft&#8217;s old UEFI Secure Boot certificate authority, the one that has quietly signed bootloaders for well over a decade, expired in June 2026, and Debian 13.6 ships the fwupd 2.0.20 update that rotates affected machines onto the Microsoft UEFI CA 2023 certificate before a future bootloader update leaves a Secure Boot box unable to start. Nobody signed up for &#8220;my certificate expired, so my server will not boot,&#8221; and yet here we are. If you run Debian anywhere in the estate, read this before your next kernel or shim update makes the decision for you; it is the exact terrain Eric and I walk through at Nerd Hour this week.</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://github.com/smallstep/certificates"><span>Smallstep step-ca</span></a></strong><span> - An open-source, online certificate authority with a built-in private ACME server, so your internal boxes can automate certificate issuance and renewal the same way the public web does with Let&#8217;s Encrypt.</span></p><p><span>If you have ever wanted TLS everywhere in the lab without hand-rolling OpenSSL commands or standing up a full ADCS deployment, this is the lighter path. It speaks ACME, so certbot, Caddy, Traefik, nginx, and cert-manager all just work against it, and it issues short-lived certs with automated renewal so you are not babysitting expirations. Honest scope: it is Apache-licensed and actively maintained, and it is aimed at DevOps and homelab use, not at replacing an AD-integrated enterprise PKI. There is no OCSP or CRL and no Active Directory Certificate Services integration, so if you need GPO autoenrollment and AD-authenticated templates, that is still ADCS territory. One caution: it has patched a run of provisioner authorization CVEs over the past year, so run a current release (0.30.0 or newer) and do not expose the SCEP endpoint if you are not using it. For a lab, or for internal service certs on a private network, it removes a lot of pain.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Take the last thing that cost you half a day of troubleshooting and write the ten-minute version of it. Not a polished KB article; the terse &#8220;here is what was actually wrong and here is the command that fixed it&#8221; note that your future self, or the next admin, will be desperate for at 2am. Drop it wherever your hit-by-a-bus documentation lives. The four hours are already spent; the only question is whether anyone, including you, ever gets those hours back.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>Windows Admin Center did not start life with that name. Microsoft </span><a href="https://en.wikipedia.org/wiki/Windows_Admin_Center"><span>unveiled it at Ignite in September 2017 under the codename &#8220;Project Honolulu&#8221;</span></a><span>. I was there and remember it! Microsoft pitched as the browser-based console that would finally pull the scattered MMC snap-ins into one pane of glass, and it ran under that codename all through the preview. It did not pick up the Windows Admin Center name until it went generally available on April 12, 2018. So the tool that ate my afternoon this week is only about eight years into carrying its real name, and apparently still working a few of the install-day kinks out of its system.</span></p><h2><span>Until Next Week</span></h2><p><span>Run the boring supported step in the lab once before you trust it in production. Remember&#8230;. supported and working are not the same sentence.</span></p><p><span>Stay Frosty,</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-31-the-supported?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-31-the-supported?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-31-the-supported?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #30: The Translation Layer]]></title><description><![CDATA[Hardware got expensive in the worst budget climate in years, so learn to make the business case.]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-30-the-translation</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-30-the-translation</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Fri, 17 Jul 2026 18:01:12 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!xfMH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>The most valuable skill I saw at a security conference this week had nothing to do with security: it was the ability to say what a technical control does in a sentence a CFO can repeat.</span></p></li><li><p><span>Highlighting 052 of the podcast: Andy and Eric Siron dig into why homelab and server hardware went vertical in 2026, who is eating the supply, and why the prices probably do not come all the way back.</span></p></li><li><p><span>The Take: hardware just got expensive in the worst budget climate in years, and &#8220;DDR5 is up 125%&#8221; is not a sentence that funds a refresh; the business-outcome version is.</span></p></li><li><p><span>Community Signal: Packet Protector&#8217;s episode on translating security work into business outcomes, with concrete moves like reading your company&#8217;s own earnings call before you ask for money.</span></p></li><li><p><span>Tool of the Week is Netdata, because the fastest way to win a hardware argument is to walk in with the utilization data instead of a vibe.</span></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div></li></ul><h2><span>From the Console</span></h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xfMH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xfMH!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xfMH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console - the translation layer&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console - the translation layer" title="From the Console - the translation layer" srcset="https://substackcdn.com/image/fetch/$s_!xfMH!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!xfMH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0cf5fe80-f3e7-4c19-85fe-54cae8eed169_1536x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>I spent this week at a security conference in the Dallas area, and the most useful thing I heard all week had nothing to do with security.</span></p><p><span>It was at XChange Security, a room full of MSPs and MSSPs who run other people&#8217;s infrastructure for a living. These are not people who need convincing that email authentication matters. And yet the conversation that kept surfacing, over and over again, was not about attack surface or detection coverage. It was about how to keep a security practice funded when the person signing the checks does not understand a single thing you do.</span></p><p><span>One thing I&#8217;ve learned after being in tech as long as I have&#8230;. No executive has EVER cared how your DMARC, DKIM, and SPF records are configured. That is a genuinely interesting conversation to have with me, at nerd hour, over a beer. Like&#8230;seriously. I&#8217;ll geek out over DMARC with all the other techs. That said, it&#8217;s a terrible conversation to have with your CFO. What the CFO wants to know is whether someone can impersonate the company to its customers, its vendors, and its bank. That is the whole question. Same three records, completely different sentence.</span></p><p><span>We are in a stretch where a lot of IT departments are under a microscope on both budget and headcount. In that climate, the ability to do the technical work is table stakes; it is assumed, and it does not save your seat. The thing that saves your seat is being the person who can stand in front of leadership and translate the work into an outcome they can act on. Not &#8220;we deployed the thing.&#8221; Instead: &#8220;we closed the gap that lets someone pretend to be us.&#8221;</span></p><p><span>Call it the translation layer. It sits between what you actually did and what the business heard, and most technical people never build it. The ones who do are the ones who are still employed when the spreadsheet gets tight.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>Why Is Homelab Hardware So Expensive in 2026 (and When Will It Get Cheaper)?</span></em></p><p><strong><span>Topic:</span></strong><span> Andy and co-host Eric Siron get into why memory, NAND, and storage prices went vertical in 2026, who is actually absorbing the supply, and what practitioners should do about a hardware market that stopped making sense.</span></p><p><span>Why it&#8217;s worth your time:</span></p><ul><li><p><span>It puts real numbers on the pain: a Raspberry Pi board that was $120 is now $305, write-hardened NVMe drives are priced into orbit or flat out of stock, and Andy admits to pricing used flash storage on eBay before he pumped the brakes and re-architected his whole lab.</span></p></li><li><p><span>It explains the mechanics you will be quoting to your own boss soon: the AI buildout is eating memory and NAND capacity, three companies control roughly 95% of DRAM, a new fab takes three to five years, and Gartner has prices settling permanently above pre-shortage levels.</span></p></li><li><p><span>It lands on the skill this crunch is quietly reviving: right-sizing hardware to the workload instead of reflexively throwing spec at the problem, which is the discipline the cheap-hardware era let atrophy.</span></p></li></ul><h3><span>Watch on YouTube</span></h3><div id="youtube2-EdqJng0bj4g" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;EdqJng0bj4g&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/EdqJng0bj4g?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;052 - Why is Homelab Hardware So Expensive in 2026 (and When Will It Get Cheaper)?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/1Gr2Q9JkCNjD6HxitFYfD1&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/1Gr2Q9JkCNjD6HxitFYfD1" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><span>The Take</span></h2><p><span>Your next hardware refresh got a lot more expensive, and you are going to have to go ask someone for the money. In this budget climate&#8230;.. Good luck.</span></p><p><span>The episode above explains why the prices are what they are, and the short version is bleak: this is structural, not a blip, and it may not fully reverse for years. That is the part you already feel every time you open a vendor quote. Now&#8230;what happens next is that you have to walk into a room and justify a bigger number than last year to someone who was already looking for reasons to cut. And the way most of us instinctively make that case is exactly the way that fails.</span></p><p><span>Here is the failure mode. You lead with the mechanics, because the mechanics are true and you find them compelling. &#8220;DDR5 is up 125%, NAND is worse, the drives I need are on three-month lead times, and the refresh I scoped at forty grand is now closer to sixty.&#8221; Every word of that is correct. None of it funds anything. The person across the table heard &#8220;prices went up and IT wants more money,&#8221; which is the least persuasive sentence in the building.</span></p><p><span>Now translate it. &#8220;The storage under our billing system is past warranty and out of spare capacity. If it fails, we cannot invoice customers until it is replaced, and replacement parts are now measured in months, not next-day. I want to refresh it while we can still choose the timing instead of having the timing chosen for us.&#8221; Same request. Same dollars. But now it is a business-continuity decision with a clock on it, not a line item that went up. That is a sentence a CFO can carry into their own meeting and repeat.</span></p><p><span>That is the whole game right now, and it is the same muscle from up top in a different room. The hardware crunch did not just make gear expensive. It made the budget conversation harder at the exact moment the budget conversation got more hostile. The admins who get their refreshes approved this year will not be the ones with the best spec sheets. They will be the ones who showed up with the utilization data and the business consequence, and left the part numbers in their back pocket unless someone asked.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://packetpushers.net/podcasts/packet-protector/pp029-translating-security-objectives-into-business-outcomes/"><span>Packet Protector - &#8220;Translating Security Objectives into Business Outcomes&#8221;</span></a></strong><span> - Hosts JJ Minella and Drew Conry-Murray sit down with Eyvonne Sharp, who spent twenty-plus years going from technical IC to leadership, and the whole thing is a practical manual for the translation layer I keep going on about. The moves are concrete and a little uncomfortable in a good way: read your own company&#8217;s earnings call or 10-K to find out what leadership actually cares about before you ask for a dime, quantify your work in revenue or mission terms instead of hours saved, and drop the fear-based &#8220;reputational damage&#8221; pitch because seasoned executives have heard it a hundred times and tuned it out. If The Take this week resonated, this is the long-form version from people who have sat on both sides of the table.</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://www.netdata.cloud"><span>Netdata</span></a></strong><span> - a free, open source (GPLv3+) monitoring agent that gives you per-second CPU, memory, disk, and network metrics on every node, with real-time dashboards and zero configuration to get started.</span></p><p><span>I am putting it here for a specific reason tied to The Take: the fastest way to win a hardware argument is to stop arguing and show the graph. Netdata is how you find out that the database server everyone swears is &#8220;maxed out&#8221; is sitting at 11% memory utilization, or that the box you were about to leave alone is genuinely out of headroom. That is the difference between right-sizing on data and right-sizing on a hunch, and it is the receipt you bring to the budget conversation. Honest scope: the agent is free and open source and runs comfortably on a homelab node at around 5% of a core and 150MB of RAM, and it scales up to real infrastructure. The catch is retention and the single-pane view across many machines. Long local history and a unified dashboard across a fleet lean on Netdata Cloud, which has a usable free tier for individuals and paid tiers once you are a team, or on self-hosting parent nodes if you want to keep everything in-house. For a homelab or a small shop that just needs to see what is actually happening right now, the free agent alone earns its keep.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Take the last status update or upgrade request you sent up the chain, the real one, and rewrite the opening sentence so a non-technical executive could repeat it out loud without you in the room. Cut every acronym and every part number from that first line. If you cannot state the business outcome or the business risk in one sentence, that is not a writing problem, it is a sign you have not figured out why the work matters to anyone holding a budget, and better to learn that at your desk than in the meeting. Fifteen minutes, one sentence, and you will use the skill again within the month.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>Hardware sticker shock is not new: </span><a href="https://www.computerhistory.org/storageengine/first-commercial-hard-disk-drive-shipped/"><span>in 1956, IBM&#8217;s 305 RAMAC, the first computer to ship with a moving-head hard disk, stored a whopping 5 million characters (about 5MB) across fifty 24-inch platters</span></a><span> and leased for roughly $3,200 a month, which is north of $36,000 in today&#8217;s money, so the next time a NAND quote makes you wince, remember your homelab holds a few million times that for the price of a nice dinner.</span></p><h2><span>Until Next Week</span></h2><p><span>The technical work is the part you already know how to do; the sentence you say to the person holding the budget is the part that keeps you employed.</span></p><p><span>Stay Frosty,</span></p><p><span>Andy</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-30-the-translation?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-30-the-translation?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-30-the-translation?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #29: Back From the Graveyard]]></title><description><![CDATA[The tools you wrote off deserve a revisit; sometimes the reason you quit them got fixed]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-29-back-from-the</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-29-back-from-the</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Fri, 10 Jul 2026 19:48:10 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!SrPA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>Thunderbird 145 now speaks native Exchange (EWS with modern OAuth2), which means an open source mail client that finally works with Microsoft 365 without legacy auth or IMAP duct tape.</span></p></li><li><p><span>New episode 051: Andy and returning guest Clay Tamam tour what actually runs in their labs, hardware to hypervisors to the Graveyard of gear they powered off.</span></p></li><li><p><span>The Take: &#8220;end of life&#8221; is often a status you assigned, not a permanent fact; the tools you wrote off deserve a revisit cadence, because the reason you quit them sometimes gets fixed.</span></p></li><li><p><span>Community Signal: Brandon Lee on the popular homelab advice he no longer follows, which is the same right-size-the-lab discipline the episode is built on.</span></p></li><li><p><span>Tool of the Week is Jellyfin, the open source answer to the latest round of Plex price and paywall changes.</span></p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2><span>From the Console</span></h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!SrPA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!SrPA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!SrPA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console - back from the graveyard&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console - back from the graveyard" title="From the Console - back from the graveyard" srcset="https://substackcdn.com/image/fetch/$s_!SrPA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!SrPA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6c7f9ea1-625a-411f-93a7-037c198af343_1536x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>I did not expect to feel anything about an email client in 2026. Then Thunderbird went and surprised me.</span></p><p><span>For years, Thunderbird was effectively dead to me for anything touching Microsoft 365. If you wanted it to talk to Exchange Online, you were bolting on a paid add-on or falling back to IMAP and legacy authentication, which is to say the exact protocols Microsoft has spent years trying to kill off, and for good security reasons. So on my Debian box, the machine I actually enjoy working on, I had no real open source mail client for my M365 mail. I lived in a browser tab and told myself that was fine.</span></p><p><span>Version 145 changed that. Thunderbird now speaks Exchange Web Services natively, uses the standard Microsoft OAuth2 sign-in, and detects the account settings for you. No add-on. No legacy auth. No pretending IMAP is a plan. I set it up, it just worked&#8230; mostly (after I accounted for bug 1847846 due to my large mailbox size). After that, I sat there mildly stunned that a piece of software I had mentally filed under &#8220;lost cause&#8221; had quietly clawed its way back into my daily driver rotation.</span></p><p><span>We wrote a whole issue about this once. </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-22-the-open-source"><span>Issue #22 was about open source as a lifeline</span></a><span>: the exit door you keep unlocked for when a vendor changes the terms on you. This is the other half of that same coin. Sometimes the lifeline is not a new tool at all; it is one you already knew, left for dead, that got picked back up and reworked to fit the modern world. More on that below.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>What I Actually Run in My Homelab (and Why)</span></em></p><p><strong><span>Topic:</span></strong><span> Andy is joined by returning guest Clay Tamam, a working SysAdmin in the Netherlands, for an honest tour of what is really sitting in their labs: the hardware, the hypervisors, the services they use every day, and the reasoning behind each choice.</span></p><p><span>Why it&#8217;s worth your time:</span></p><ul><li><p><span>It is the antidote to homelab-flex culture: two practitioners talking about what earns its place and what got powered off, not what looks impressive in a rack photo.</span></p></li><li><p><span>Andy walks through tearing a four-node Kubernetes cluster down to five VMs on a single Debian box, and Clay builds a rack from scratch on a real budget, so you get both ends of the spectrum with the tradeoffs spelled out.</span></p></li><li><p><span>It closes with the Graveyard: the gear and services that got shut off and why pruning is part of the discipline, not a failure of it.</span></p></li></ul><h3><span>Watch on YouTube</span></h3><div id="youtube2-S7SjdxoieNs" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;S7SjdxoieNs&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/S7SjdxoieNs?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;051 - What's Actually in Our Homelabs (and Why)&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/3vt7XhFIJldVvWJLFWsh7l&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/3vt7XhFIJldVvWJLFWsh7l" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><span>The Take</span></h2><p><span>&#8220;End of life&#8221; is a status you assign as often as one a vendor declares. And the two are not the same thing.</span></p><p><span>The podcast episode (above) closes on the Graveyard, the pile of gear and services you power off because they stopped earning their place. That discipline is correct. Most labs, and most production stacks, are carrying dead weight that nobody has had the nerve to switch off. Don&#8217;t get me wrong, removing technical debt is a good thing (in most cases) but the graveyard is not a one-way door. Sometimes a tool you buried was not actually dead. It was just dead </span><em><span>to you</span></em><span>, because the specific thing that made it unusable had not been fixed yet.</span></p><p><span>Thunderbird is my case in point this week. I wrote it off for M365 work years ago, for a completely valid reason at the time, and then I stopped tracking it. That is the trap. &#8220;I wrote it off&#8221; quietly turns into &#8220;I stopped paying attention,&#8221; and the two feel identical right up until the day the project ships the exact fix you gave up waiting for. </span><a href="https://blog.thunderbird.net/2025/11/thunderbird-adds-native-microsoft-exchange-email-support/"><span>Thunderbird 145 added native Exchange support over EWS with modern authentication</span></a><span>, and </span><a href="https://www.theregister.com/2025/11/20/thunderbird_microsoft_exchange_support/"><span>the coverage was blunt about how long people had wanted it</span></a><span>. The reason I quit it got fixed. I just was not looking.</span></p><p><span>Let&#8217;s be specific about the discipline, though, because this is not nostalgia. A tool earns its way back on current merits, not sentiment. Is it actively maintained? Does it meet your real requirements </span><em><span>today</span></em><span>? What is the catch? Thunderbird bet on EWS, a protocol Microsoft is slowly phasing out in favor of Graph, so the honest read is that email works now, calendar and contacts are still in progress, and the team is already building toward Graph for when EWS finally sunsets. That is a tool worth adopting with eyes open, not a fairy tale. The point is the cadence: put the tools you wrote off on a revisit schedule instead of treating a one-time verdict as a life sentence. The graveyard occasionally coughs one back up, and you want to be the admin who noticed.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://www.virtualizationhowto.com/2026/06/i-no-longer-follow-this-popular-home-lab-advice/"><span>Brandon Lee - &#8220;I No Longer Follow This Popular Home Lab Advice&#8221;</span></a></strong><span> - Brandon has decades in the field, and this is the same right-size-your-lab thesis Episode 051 of the podcast (with a mention in 052!) is built on. He makes the case for using Kubernetes only when orchestration actually solves a problem, applying high availability selectively instead of everywhere, and treating a couple of services (email and password managers among them) as reasonable exceptions where managed reliability beats self-hosting. It is a rare homelab piece that argues for running less, and it pairs directly with my Kubernetes-to-VMs teardown in episode 051.</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://jellyfin.org"><span>Jellyfin</span></a></strong><span> - a fully open source, self-hosted media server for your movies, shows, and music, with no accounts to create, no cloud dependency, and no feature you rely on sitting one pricing update away from a paywall.</span></p><p><span>The reason it earns the slot this week: Plex just </span><a href="https://www.plex.tv/blog/new-lifetime-plex-pass-pricing/"><span>tripled the price of a new lifetime Plex Pass to $749.99, effective July 1</span></a><span>, on top of already gating remote streaming behind a paid pass, which is exactly the vendor-changes-the-terms moment that sends people looking for the exit. Jellyfin is that exit, and it is genuinely free with no premium tier gating the core experience. Honest scope, though. This is not a turnkey Plex clone. Hardware transcoding takes real configuration to get right, the client apps across smart TVs and streaming boxes are less polished than Plex&#8217;s, and Jellyfin ships no built-in remote-access magic, so getting to your library from outside the house means you bring your own reverse proxy or a mesh VPN like Tailscale (which came up in the episode for exactly this reason). For a homelab that already runs a hypervisor and a bit of networking, that is a comfortable weekend project. For a non-technical household that just wants to press play, Plex is still the smoother ride, and it is fair to say so.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Pick one tool you wrote off more than two years ago, one you filed under &#8220;dead&#8221; and stopped tracking, and spend thirty minutes with its current changelog and release notes. Not to adopt it. Just to find out whether the specific thing that made you quit it has been fixed. Thunderbird and Microsoft 365 was mine this week; you almost certainly have your own candidate sitting in your mental graveyard. The goal is to make &#8220;I wrote it off&#8221; a decision you revisit on a schedule, not a verdict you handed down once and never appealed.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>Thunderbird 1.0 shipped on December 7, 2004, which makes Mozilla&#8217;s mail client older than most of the &#8220;modern&#8221; SaaS platforms built to replace it; it was very nearly left to rot when Mozilla stepped back from active development in 2012, and here it is twenty-one years later adding native Exchange support and quietly having a renaissance.</span></p><h2><span>From My Other Corner of the Internet</span></h2><h3><span>AndyOnTech</span></h3><p><span>The reconstruct-project-history piece I had been sitting on is finally live: </span><a href="https://www.andyontech.com/posts/claude_code_reconstruct_project_history/"><span>Can Claude Code Reconstruct a Project History You Never Documented?</span></a><span>. It walks through pointing Claude Code at nothing but a repo&#8217;s git history and having it rebuild the changelog and decision trail that no human ever sat down to write. If you have a months-old project you no longer fully understand and you&#8217;re asking yourself the question &#8220;how did I get here?&#8221;, this is the practical, boring-value use case for the tooling, not the hype one.</span></p><h2><span>Until Next Week</span></h2><p><span>Prune what stopped earning its place, but keep a list of the tools you buried; a few of them are going to knock.</span></p><p><span>Stay Frosty,</span></p><p><span>Andy</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-29-back-from-the?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-29-back-from-the?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-29-back-from-the?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #28: The Right Tool, The Real Cause]]></title><description><![CDATA[Right-size your tech, then go read your vendors' postmortems]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-28-the-right-tool</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-28-the-right-tool</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 02 Jul 2026 16:24:58 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Rgzj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>Right tool for the right job is a discipline, not a budget line: stop sizing your tech to your ego and start sizing it to the task.</span></p></li><li><p><span>New episode 050: how to run a blameless incident postmortem that ends with a root cause instead of a name, whether you&#8217;re a war room of sixty or a shop of one.</span></p></li><li><p><span>The Take: your own postmortem is half the skill; reading everyone else&#8217;s, including your vendors&#8217;, is the other half, and their transparency is a procurement signal.</span></p></li><li><p><span>Tool of the Week is OneUptime, an open-source stack that captures the incident timeline automatically so your postmortem has real material to work from.</span></p></li><li><p><span>Quick Win: steal the show&#8217;s free postmortem template and fill in the boilerplate now, before the pager goes off.</span></p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2><span>From the Console</span></h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Rgzj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Rgzj!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Rgzj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console - the right tool&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console - the right tool" title="From the Console - the right tool" srcset="https://substackcdn.com/image/fetch/$s_!Rgzj!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Rgzj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F048ca3cc-767f-4e97-bc28-4f5ddb32a57b_1536x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>One of the most expensive habits in tech has LONG been reaching for the biggest thing on the shelf just because it happens to be sitting there.</span></p><p><span>I caught myself doing it last week. I had a two-paragraph text file that needed summarizing, and my hand instinctively went straight for the largest, most capable AI model I had access to (because i&#8217;ve been doing a lot of complex work lately). Had I not caught myself, that&#8217;d be like renting a semi to move a bag of groceries. </span><a href="https://www.anthropic.com/claude/opus"><span>Opus</span></a><span> does not need to summarize your grep output. </span><a href="https://www.anthropic.com/claude/haiku"><span>Haiku</span></a><span> is not going to architect your app. The skill is not knowing which model is &#8220;best,&#8221; it&#8217;s knowing which one fits the job in front of you, and most jobs are small.</span></p><p><span>The lab version of this is worse, because the lab version has blinking lights. Nobody needs a half-rack SAN to hold a few text files and a 2GB media library, and yet the homelab channels are full of gear that exists mostly because it was available and the owner </span><em><span>could</span></em><span>. I have been guilty of this too. Right tool for the right job is not a spending rule, </span><em><span>it&#8217;s a discipline</span></em><span> and arguably </span><strong><span>MORE</span></strong><span> important in today&#8217;s world of insane hardware prices that it used to be. The moment you size the tech to the task instead of to your ego, everything gets cheaper, quieter, and easier to reason about.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>How Do You Run a Blameless Incident Postmortem?</span></em></p><p><strong><span>Topic:</span></strong><span> Andy and Eric Siron pull from combined decades of incident reviews to break down what a postmortem actually is, what kind of outage earns one, who belongs in the room, and why the follow-through is the whole point.</span></p><p><span>Why this one matters:</span></p><ul><li><p><span>An effective postmortem turns an outage into tangible fixes instead of finger-pointing, which is the difference between an incident you learn from and one you repeat.</span></p></li><li><p><span>Skip it and the same failure comes back, because nobody wrote down the contributing factors and nobody owned the action items.</span></p></li><li><p><span>It&#8217;s for anyone who owns uptime (which is MOST SysAdmins), and the discipline scales: sixty people in a war room or just you writing a summary for one nervous boss.</span></p></li></ul><h3><span>Watch on YouTube</span></h3><div id="youtube2-TavjUPSaGVo" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;TavjUPSaGVo&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/TavjUPSaGVo?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;050 - How Do You Run a Blameless Incident Postmortem?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/0Tm381OfFRjdWGlTidtscT&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/0Tm381OfFRjdWGlTidtscT" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2><span>The Take</span></h2><p><span>Running your own postmortem is half the skill. Reading everyone else&#8217;s is the other half, and almost nobody treats it that way.</span></p><p><span>Every vendor you depend on has a track record of how they behave when they break. Some of them tell you. In February, </span><a href="https://clerk.com/blog/2026-02-19-system-outage-postmortem"><span>Clerk put out a postmortem</span></a><span> that named the actual root cause: a Postgres auto-analyze flipped a query plan because the planner&#8217;s sample size was too low, the bad plan strangled the database, and roughly ninety minutes later a manual re-analyze brought it back. That is a real root cause, with the communication failures owned in the same document. You read it and you know exactly what happened and what they changed.</span></p><p><span>Now, that willingness to publish a specific cause is itself a signal, and it correlates almost perfectly with how a vendor treats you at 2am. When </span><a href="https://github.blog/news-insights/company-news/addressing-githubs-recent-availability-issues-2/"><span>GitHub&#8217;s own engineering leadership publicly attributes</span></a><span> a run of outages to tightly coupled architecture that let local problems cascade, and to systems that couldn&#8217;t shed load from misbehaving clients, that is a company telling you how it actually failed. Compare that to the outfits whose entire public record is &#8220;we experienced elevated error rates&#8221; followed by silence. One of those is a partner. The other is a liability you haven&#8217;t been billed for yet.</span></p><p><span>So make it part of procurement. Before you take a hard dependency, go read the vendor&#8217;s status history and their last two or three postmortems. Not the marketing uptime number, the writeups. If they don&#8217;t publish any, or if every one is corporate mush with no named cause, you already know how the next outage conversation goes. The postmortem discipline Episode 050 is about does not stop at your own perimeter.</span></p><h2><span>Community Signal</span></h2><p><em><span>Awesome community work worth your attention.</span></em></p><p><strong><a href="https://surfingcomplexity.blog/2026/03/12/quick-thoughts-on-github-ctos-post-on-availability/"><span>Lorin Hochstein - &#8220;Quick thoughts on GitHub CTO&#8217;s post on availability&#8221;</span></a></strong><span> - Hochstein is a resilience-engineering practitioner (ex-Netflix SRE) who writes some of the clearest incident analysis on the internet, and here he picks apart GitHub&#8217;s own writeup on its recent outages. It&#8217;s the perfect companion to this issue&#8217;s Take: this is what it looks like when a working engineer reads someone else&#8217;s postmortem and pulls the real lessons out of it.</span></p><p><strong><a href="https://sre.google/sre-book/postmortem-culture/"><span>Google SRE - &#8220;Postmortem Culture: Learning from Failure&#8221;</span></a></strong><span> - Chapter 15 of the free SRE book, and still the clearest articulation of blameless-not-unaccountable in print. If Episode 050 had you nodding, this is the reference to hand the skeptic on your team who thinks &#8220;blameless&#8221; means &#8220;nobody is responsible.&#8221;</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://oneuptime.com"><span>OneUptime</span></a></strong><span> - an open-source, self-hostable reliability stack that rolls monitoring, on-call scheduling, status pages, and blameless postmortems into one platform.</span></p><p><span>The reason it earns the slot this week: it captures the incident timeline automatically while the fire is still burning, which is exactly the raw material a good postmortem needs and exactly what nobody remembers to collect by hand at 2am. Honest scope, though. This is a full platform, not a single container you set and forget. Self-hosting it is real infrastructure with a database and the works, so for a homelab it&#8217;s a weekend project, not a five-minute one; if you just want uptime checks, </span><a href="https://github.com/louislam/uptime-kuma"><span>Uptime Kuma</span></a><span> is the lighter tool. And to be straight with you: this is a smaller, less grassroots-proven community than a darling like Uptime Kuma, and it&#8217;s an all-in-one bet rather than a best-of-breed one. What earns it the slot is that it&#8217;s </span><a href="https://github.com/OneUptime/oneuptime"><span>genuinely fully open on GitHub</span></a><span> (Apache 2.0, not open-core), actively maintained, and its postmortem tooling actually exists instead of being bolted on.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Drop a real postmortem template into your team wiki or repo today, before you need it. We linked a markdown postmortem template that i&#8217;ve used over the years in the resources section of the last podcast episode. That version is free, CC BY 4.0, and version-tracked in </span><a href="https://github.com/ProjectRunspace/sysadmin-weekly/blob/main/resources/postmortem_markdown_process_template.md"><span>the SysAdmin Weekly community repo here</span></a><span>.</span></p><p><span>Pre-fill the parts that never change (your severity levels, escalation contacts, and the timeline table headers) so that when something does break, you&#8217;re filling in facts instead of formatting a document while the help-desk phone screams.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>On January 15, 1990, AT&amp;T&#8217;s long-distance network collapsed for about nine hours and blocked roughly half of all calls placed through it, an estimated $60 million in lost connections, and the root cause was </span><a href="https://read.engineerscodex.com/p/how-one-line-of-code-caused-a-60"><span>a single misplaced break statement</span></a><span> in the C recovery code running on its 4ESS switches: proof, 36 years early, that &#8220;blameless&#8221; exists because the cause is almost never a person.</span></p><h2><span>Question I Got Asked (and the Real Answer)</span></h2><p><strong><span>The question:</span></strong><span> &#8220;I&#8217;m a one-person shop. Do postmortems even apply to me?&#8221;</span></p><p><strong><span>The common (wrong) answer:</span></strong><span> &#8220;No, that&#8217;s enterprise process overhead. You already know what broke.&#8221;</span></p><p><strong><span>The real answer:</span></strong><span> The document scales down to a paragraph; the discipline does not. You will not remember, three months from now, the exact order you tried things at 2am or why the obvious fix didn&#8217;t work. A five-minute writeup with a timeline, a root cause, and two action items you actually close is worth more to a solo admin than a forty-page template is to a team that files it and forgets it. Blameless is easy when the only name in the room is yours. The hard part, same as everywhere, is the follow-through.</span></p><h2><span>Until Next Week</span></h2><p><span>Size the tool to the task, write down what broke, and close the action item you keep meaning to close.</span></p><p><span>Stay Frosty,</span></p><p><span>Andy</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-28-the-right-tool?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-28-the-right-tool?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-28-the-right-tool?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #27: The Boring Wins]]></title><description><![CDATA[I rebuilt a four-month-old project's entire changelog from nothing but git diffs in twenty minutes. The scoping is the whole game.]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-27-the-boring-wins</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-27-the-boring-wins</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 25 Jun 2026 20:57:48 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!A9yp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><ul><li><p><span>After a few issues of me telling you not to trust the machine, here is the other half of the ledger: the tangible, boring AI wins that are actually worth your time.</span></p></li><li><p><span>Episode 049 is out: how attackers run local LLMs on their own hardware to generate spear phishing at scale, why &#8220;spot the typo&#8221; training is dead, and where the real defensive line sits, with Eric Siron.</span></p></li><li><p><span>The Take: the same accessible AI that attackers point at scaling the bad stuff can be pointed at the valuable, well-scoped work you never had hours for, including understanding the threat landscape itself.</span></p></li><li><p><span>I rebuilt a four-month-old project&#8217;s entire changelog from nothing but the git diffs in about twenty minutes. The scoping that made it cheap is the same scoping that made it good.</span></p></li><li><p><span>Tool of the Week: Fabric, reusable AI &#8220;patterns&#8221; you run from the command line against hosted or local models.</span></p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2><span>From the Console</span></h2><p><span>I have spent the last several issues being the guy telling you not to trust the machine. </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted"><span>Doom Discounted</span></a><span>, </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch"><span>The Off-Switch You Don&#8217;t Own</span></a><span>, the whole local-inference drum. I stand by every word of it. But that is one half of the ledger, and this week I want to read you the other half.</span></p><p><span>Because here is the thing I do not say enough when I am busy being skeptical: lately the boring AI wins have been quietly piling up, and they are real. The one that got me this week&#8230;. I pointed Claude Code at a four-month-old project of mine that had grown from a single throwaway script into a full workflow, and asked it to reconstruct the changelog I never bothered to keep, from nothing but the git diffs. About twenty minutes later I had an accurate, dated history of a project I could no longer fully trace in my own head. Not magic. Just a tedious, genuinely useful job that was never worth a human afternoon, suddenly worth twenty minutes.</span></p><p><span>That is the whole theme this week. Not &#8220;AI is amazing.&#8221; The lesson this week is that the floor on boring-but-valuable work just dropped, and we should go use that&#8230;..</span></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!A9yp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!A9yp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 424w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 848w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 1272w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!A9yp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png" width="1456" height="792" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:792,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console - the boring wins&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console - the boring wins" title="From the Console - the boring wins" srcset="https://substackcdn.com/image/fetch/$s_!A9yp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 424w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 848w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 1272w, https://substackcdn.com/image/fetch/$s_!A9yp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff11026d9-47b6-4bb2-81f3-d570b2e7f46c_1701x925.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>And now, back to our regularly scheduled programming.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>049 - How Do Attackers Use Local LLMs to Phish at Scale?</span></em><span> </span></p><p><strong><span>Topic:</span></strong><span> Andy brings his InfoSecurity Europe session to the show, and Eric Siron joins to walk through how threat actors run open-weight models on their own hardware to generate targeted spear phishing at scale, in any language, with no internet and no guardrails, and where the real defensive line actually sits.</span></p><p><span>Why this one matters:</span></p><ul><li><p><span>The guardrail gap, made concrete: ask a hosted model to write a phishing lure and it refuses; pull the right open-weight model onto a laptop and that refusal layer simply is not there. The demo is several tailored spear-phishing lures in ninety seconds.</span></p></li><li><p><span>Why &#8220;spot the typo&#8221; awareness training is dead, and why verification culture plus strong email authentication (SPF, DKIM, DMARC) is what actually carries the load now</span></p></li><li><p><span>Plus the nerd hour and news react: Washington pumping the brakes on Fable, the New York ghost-gun-printing law, and the Google AI liability question</span></p></li></ul><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;049 - How Do Attackers Use Local LLMs to Phish At Scale?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/0kfAonNbhJ7qTp9ZoOXrJp&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/0kfAonNbhJ7qTp9ZoOXrJp" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h3><span>Watch on YouTube</span></h3><div id="youtube2-R8sPO_cXdfo" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;R8sPO_cXdfo&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/R8sPO_cXdfo?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h2><span>The Take</span></h2><p><span>This week&#8217;s episode (above) is about attackers pointing cheap, ungoverned AI at the one thing they care about: scaling the bad stuff. Fifteen tailored spear-phishing lures in ninety seconds, no guardrails, no internet connection required. That is the threat, and it is real. Remember though, that the exact same accessibility cuts the other way, and most of us are barely using it.</span></p><p><span>Earlier this month I built a small tool that reads the places SysAdmins actually congregate, the subreddits, the forums, the threads nobody has time to keep up with, and correlates what people keep struggling with. Not vibes. The recurring, in-their-own-words pain that gets buried under a thousand individual posts. I built it to find things worth covering on the show. It turned into something more useful than that: a standing read on what is actually breaking in the field, and an early-warning lens on how the ground is shifting under us.</span></p><p><span>That second part matters more after recording Episode 049. The same engine that surfaces &#8220;everyone is fighting the same Intune policy bug this month&#8221; will also surface &#8220;attackers are openly comparing which local model writes the cleanest lures.&#8221; Pointing AI at understanding the field, including how the bad actors are using it against you, is not a gimmick. It is one of the highest-value things a defensive team can do with this technology right now, and A LOT of orgs aren&#8217;t doing it.</span></p><p><span>Here is the part that ties the changelog and the community tool together, and it is the whole game: both worked because I scoped them hard. Tell the model exactly what to look at, exactly what to ignore, and exactly what good output looks like, and it earns its keep. Hand it a vague &#8220;go figure out my industry&#8221; and you get expensive mush. The tangible AI wins are not the demos. They are the narrow, well-scoped, deeply boring jobs you never had the hours for. If you want the longer version of that argument grounded in day-to-day IT work, I </span><a href="https://www.andyontech.com/posts/can_claude_code_help_sysadmins/"><span>wrote it up here</span></a><span>.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://simonw.substack.com/p/large-language-models-can-run-tools"><span>Simon Willison - &#8220;Large Language Models can run tools in your terminal with LLM 0.26&#8221;</span></a></strong><span> - If The Take is the argument that well-scoped AI is the real win, this is the reference implementation of that idea from a credible independent voice in the space. Willison&#8217;s llm is the opposite of the chat-window-you-babysit: a command-line tool that pipes input in, logs every prompt to a queryable SQLite database, and now hands models controlled access to tools you define as plain functions, against hosted models or local ones through Ollama. The post is about a year old now, but it is the cleanest articulation of the Unix-philosophy approach to AI that the GUI hype keeps drowning out, and it pairs directly with Fabric below.</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://github.com/danielmiessler/Fabric"><span>Fabric</span></a></strong><span> - an open-source framework that turns AI into a set of reusable command-line &#8220;patterns&#8221; you pipe text through, instead of a chat window you have to babysit.</span></p><p><span>Fabric is the tool that makes the &#8220;scope it hard&#8221; lesson above repeatable. Each pattern is a saved, version-controlled prompt for exactly one job: summarize this, extract the action items, analyze this log, and you run it from the terminal with Unix pipes like any other command. It talks to hosted models (Claude, GPT, Gemini) and to local ones through Ollama, so sensitive input can stay on hardware you own. Honest scope: it is genuinely useful for a solo practitioner or a small shop today, but it is not an enterprise platform with RBAC and audit trails, so treat it as power tooling for you, not a sanctioned production service for the org. MIT licensed, north of 40,000 stars, and actively developed as of this month.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Pick one repository you actually rely on that has no changelog, or one where you started the changelog too late, and have an AI backfill its history from the git diffs. The trick is entirely in the scope. Hand it the short list of files that define how the thing works, the modules, the pipeline definitions, the runbooks, not every variable tweak, and tell it to read only the diffs touching those paths. Tell it to leave any existing entries untouched, and give it the exact output format you want. Then read the result against the diffs before you trust it, because the history is the authority and the summary is not. Twenty minutes, and a project nobody on the team could explain end to end suddenly has a paper trail.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>The AI that fools people is not new; it is sixty years old. In 1966, MIT&#8217;s Joseph Weizenbaum wrote ELIZA, a simple pattern-matching script that imitated a therapist by turning your own statements back into questions, and it was so convincing that his secretary, who knew exactly how trivial the program was, reportedly asked him to leave the room so she could talk to it in private. Weizenbaum spent much of the rest of his career unsettled by how readily people projected real understanding onto a machine that had none, a reaction we now call the ELIZA effect.</span></p><p><span>Source: </span><strong><a href="https://www.smithsonianmag.com/history/why-the-computer-scientist-behind-the-worlds-first-chatbot-dedicated-his-life-to-publicizing-the-threat-posed-by-ai-180987971/"><span>Smithsonian Magazine - &#8220;Why Joseph Weizenbaum, Creator of the World&#8217;s First Chatbot, Turned Against AI&#8221;</span></a></strong></p><h2><span>Until Next Week</span></h2><p><span>The skeptic in me is not going anywhere, but it&#8217;s important to state that the boring wins are real, and the only way you will believe that is to point the machine at one tedious, valuable job this week and watch it work.</span></p><p><span>Stay Frosty,</span></p><p><span>Andy</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-27-the-boring-wins?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-27-the-boring-wins?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-27-the-boring-wins?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #26: The Off-Switch You Don't Own]]></title><description><![CDATA[A frontier model went dark worldwide in 72 hours this month. Here is why that is an argument for owning your hardware...]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 18 Jun 2026 15:12:57 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!tw7C!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><span>TL;DR</span></h2><p><span>&#183; A frontier AI model can be switched off worldwide in 72 hours, and not by you. Anthropic&#8217;s Fable 5 and Mythos 5 proved it this month.</span></p><p><span>&#183; Clearly it&#8217;s not a Claude problem. It is a dependency problem, and it is the strongest case yet for owning the hardware your inference runs on.</span></p><p><span>&#183; SysAdmin Weekly Podcast Episode 048 is out: the AI doom narrative held up against the actual data with Eric Siron.</span></p><p><span>&#183; The WEF Future of Jobs numbers say net +78 million jobs by 2030, and the fastest-growing skill categories behind AI and big data are networks and cybersecurity. The work that keeps infrastructure running is on the growth side.</span></p><p><span>&#183; Tool of the Week: Ollama, the second time around. Same recommendation as Issue 24, sharper reason to act on it now.</span></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2><span>From the Console</span></h2><p><span>I stripped my lab down a few weeks ago. Pulled the always-on gear I was not really using, consolidated a couple of roles onto hardware I trust to keep running, and rebuilt the rest with longevity in mind instead of raw horsepower. I expected to give something up for that.</span></p><p><span>Turns out&#8230;..I have not, in fact, given up something for those changes&#8230;. Everything I actually depend on is running as well as it ever did, and my power bill came back noticeably lighter. Turns out a lot of what I was running was running because it was already on, not because I needed it on.</span></p><p><span>Given the recent news about Anthropic&#8230; it makes me thing about something. Every box in that pared-down lab is one </span><em><span>I</span></em><span> control. It does not get a worse model pushed to it overnight. It does not get switched off because of a directive passed down from three companies upstream of me (or the US Government for that matter&#8230;). Those cases sounded like a philosophical point a month ago. This week it stopped being philosophical.</span></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tw7C!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tw7C!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tw7C!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png" width="1402" height="1122" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1122,&quot;width&quot;:1402,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;From the Console - the off-switch you don&#8217;t own&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="From the Console - the off-switch you don&#8217;t own" title="From the Console - the off-switch you don&#8217;t own" srcset="https://substackcdn.com/image/fetch/$s_!tw7C!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!tw7C!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1943eac1-a6b0-4c76-9387-a50501d9fb5c_1402x1122.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><span>And now, back to our regularly scheduled programming.</span></p><h2><span>The latest on the SysAdmin Weekly Podcast</span></h2><p><strong><span>Episode:</span></strong><span> </span><em><span>048 - The AI Doom Narrative vs the Data: Layoffs, Energy, and Jobs in 2026</span></em><span> </span><strong><span>Topic:</span></strong><span> Andy and Eric Siron take the AI fear stories one at a time, the layoffs, the data center energy and water panic, the &#8220;office workers are gone in eighteen months&#8221; predictions, and put each one next to what the actual data says.</span></p><p><span>Why this one matters:</span></p><p><span>&#183; The WEF Future of Jobs numbers, the post-COVID overhiring correction, and the hyperscaler nuclear and cooling commitments, read against the headlines instead of in place of them</span></p><p><span>&#183; What AI actually looks like at a SysAdmin&#8217;s keyboard versus what the press would have you believe it looks like</span></p><p><span>&#183; Plus the nerd hour: Linus Torvalds on AI-generated bug reports drowning the kernel security list, Edge caught storing passwords in clear text, and a Forgejo and Restic lab cleanup</span></p><h3><span>Listen on Spotify</span></h3><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;048 - The AI Doom Narrative vs the Data: Layoffs, Energy, and Jobs in 2026&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/29psde4dEzq1cpiQJwOaux&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/29psde4dEzq1cpiQJwOaux" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h3><span>Watch on YouTube</span></h3><div id="youtube2-BuHVZ_364kc" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;BuHVZ_364kc&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/BuHVZ_364kc?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h2><span>The Take</span></h2><p><span>A model you build your work around can be turned off in three days, worldwide, and you will not be the one who decides it.</span></p><p><span>That is not a hypothetical. Anthropic released Claude Fable 5 to the public on June 9, with the wider Mythos 5 class going to a narrow set of partners the same week. By the evening of June 12, both were dark. Not deprecated, not rate-limited; switched off for every customer on the planet. The trigger was a US export-control directive barring access by any foreign national, and because nationality cannot be filtered on a live API in real time, the only way to comply was to pull the models for everyone. Anthropic&#8217;s own foreign-born staff included.</span></p><p><span>The part relevant for us mere-mortal SysAdmins? None of that had anything to do with how we were using the model. You could have had a clean, paid, well-behaved workflow built on it, and it would still have gone dark on Friday night because of a conversation between an executive and a cabinet secretary that you were not in.</span></p><p><span>And that conversation is its own story. The reporting says Amazon CEO Andy Jassy is the one who flagged the concern to Treasury Secretary Scott Bessent, citing Amazon researchers who got Fable 5 to cough up cyberattack-useful output. Amazon is Anthropic&#8217;s investor. Amazon is Anthropic&#8217;s cloud host. And Amazon, this week, is the party that walked a competitor&#8217;s three-day-old model release into a regulator. I am not going to tell you what to read into that. I am going to tell you those three roles sitting in one company is exactly the kind of thing you want to know about when it comes to the supply chain under your tooling.</span></p><p><span>To be fair to Anthropic, they pushed back on the severity, noting the same capabilities are already reachable through other public models, and Opus 4.8 and Sonnet kept running the whole time. So this is not me telling you Claude is the problem. Claude is not the problem. The dependency is the problem.</span></p><p><span>We have been building this case in different shapes for a while. </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-21-the-great-compute"><span>Issue 21</span></a><span> was about compute consolidating into a handful of hands. </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze"><span>Issue 25</span></a><span> was about the hardware squeeze landing on your doorstep. Both of those were about cost and supply. This adds a third axis, and it is the sharpest one: availability you do not govern. A model running on hardware you own cannot be revoked by a directive you never saw. That is the whole pitch for local inference, and it just got handed the cleanest example it has ever had. </span><a href="https://techcrunch.com/2026/06/13/amazon-ceo-reportedly-raised-anthropic-model-concerns-before-government-crackdown/"><span>The full timeline is here</span></a><span> if you want to read it cold.</span></p><p><span>None of this means rip the hosted models out of your stack. They are still better than what most of us can run at home, and that gap is real. It means know which of your workflows would simply stop if a model went dark on a Friday, and have an answer that does not require anyone&#8217;s permission to switch on.</span></p><h2><span>Question I Got Asked (and the Real Answer)</span></h2><p><strong><span>The question:</span></strong><span> &#8220;Be honest, is AI going to delete my job?&#8221;</span></p><p><strong><span>The common answer:</span></strong><span> Some executive&#8217;s eighteen-month countdown, repeated back with the serial numbers filed off. Half the room nodding, the other half quietly updating their resume.</span></p><p><strong><span>The real answer:</span></strong><span> The most-cited primary source on this is the WEF Future of Jobs Report, and the people repeating the doom number rarely seem to have read it. The report projects 170 million jobs created and 92 million displaced by 2030, for a net gain of roughly 78 million. That is real churn, about 22% of the jobs studied, and it is going to </span><strong><span>HURT</span></strong><span> in specific places; clerical and administrative roles, cashiers, and data entry are on the wrong side of it.</span></p><p><span>The more useful number in that same report is the </span><a href="https://www.weforum.org/publications/the-future-of-jobs-report-2025/in-full/3-skills-outlook/"><span>skills outlook</span></a><span>: the fastest-growing skill categories through 2030 are AI and big data, networks and cybersecurity, and technological literacy. Those are not the skills of a job being deleted. Those are the skills of the work that keeps the rest of it running.</span></p><p><span>The displacement is real and worth taking seriously. The version where it deletes the people who keep systems running is not what the data says. Again, Eric Siron and I spend a full episode of the podcast (above) on this distinction, and it is worth the listen, because the gap between the headline and the report is wide enough to drive a career decision through.</span></p><h2><span>Community Signal</span></h2><p><strong><a href="https://jameskilby.co.uk/2024/10/self-hosting-ai-stack-using-vsphere-docker-and-nvidia-gpu/"><span>James Kilby - &#8220;Self-Hosting an AI Stack Using vSphere, Docker and NVIDIA GPU&#8221;</span></a></strong><span> - The practical version of everything above. Kilby walks through standing up a containerized inference stack on a single NVIDIA Tesla P4 inside vSphere, with the install commands and, the part I appreciated, the real power numbers: roughly 7 watts idle, 50 to 60 under active inference. If you read From the Console and wondered what &#8220;own your inference&#8221; actually costs to run, this is a concrete answer from someone who measured it. Updated June 2026.</span></p><h2><span>Tool of the Week</span></h2><p><strong><a href="https://ollama.com"><span>Ollama</span></a></strong><span> - Open-source local LLM runtime. Pull a model, run it on hardware you own, expose an OpenAI-compatible endpoint any existing tool can talk to.</span></p><p><span>If you read </span><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted"><span>Issue 24</span></a><span> you have already heard this pitch. The reason it earns the slot a second time is that the argument for it just got sharper. For issues 24, the case was privacy, cost, and not being told you cannot use AI at all. The Fable 5 takedown adds the axis I did not have a clean example for in May: availability you govern. Again&#8230;. </span><em><span>a model running on hardware you own cannot be pulled by a directive you never saw.</span></em></p><p><span>Honest scope has not changed since Issue 24. Local model quality at consumer hardware tiers still trails the frontier hosted models, and for greenfield engineering work you will still reach for the hosted option more often than not. For the workflows that actually need to keep running no matter what happens upstream, this is the fallback The Take is asking you to have. The Quick Win below is &#8220;stand it up and prove it works.&#8221; An hour of your time, a permission slip from nobody.</span></p><h2><span>Quick Win of the Week</span></h2><p><span>Make a one-page list of every tool and workflow in your shop that calls a hosted AI model, and mark which ones would simply stop if that model went dark on a Friday night. For the one that matters most, pull an open-weight model in Ollama, point the tool at the local OpenAI-compatible endpoint, and confirm it actually runs. You are not switching off the cloud. You are proving you have a fallback that needs nobody&#8217;s permission to turn on, before the week you actually need it.</span></p><h2><span>Fun Retro SysAdmin Fact</span></h2><p><span>This is not the first time Washington export-controlled software. Through the 1990s, strong encryption was classified as a munition under the same export rules as weapons, and PGP author Phil Zimmermann spent roughly three years under federal criminal investigation for &#8220;exporting munitions without a license&#8221; after his code spread overseas; the </span><a href="http://www.philzimmermann.com/EN/news/PRZ_case_dropped.html"><span>case was dropped in 1996</span></a><span>, and the idea that publishing software could be an arms-export crime has felt absurd ever since. Felt.</span></p><h2><span>Until Next Week</span></h2><p><span>Know which of your systems would keep running if the company upstream of you had a bad Friday.</span></p><p><span>Stay Frosty,</span></p><p><span>Andy</span></p><p><span>SysAdmin Weekly</span></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-26-the-off-switch?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #25: The Silicon Squeeze]]></title><description><![CDATA[When hyperscalers buy the fab capacity, you can't buy the parts...]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 11 Jun 2026 20:43:05 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!aCdt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>TL;DR</h2><ul><li><p>The compute consolidation I flagged back in Issue 21 isn&#8217;t a forecast anymore; it&#8217;s sitting in your parts bin.</p></li><li><p>DRAM contract prices jumped roughly 90% in a single quarter, consumer SSDs climbed 147%, and a 16GB Raspberry Pi 5 that launched at $120 now runs $305.</p></li><li><p>The hyperscalers didn&#8217;t just rent you the cloud; they bought up the fab capacity that makes the parts you&#8217;d use to avoid it.</p></li><li><p>We pulled an older episode of the podcast to highlight this week &gt; Episode 023 with Eric Siron from the vault: building a real lab without selling a kidney, more relevant now than the day we recorded it.</p></li><li><p>This week&#8217;s moves: pool mismatched disks with SnapRAID, and actually measure how much write life your NVMe has left.</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>From the Console</h2><p>I went looking for a couple of high-endurance NVMe drives last week. Not the bargain-bin kind; the write-tolerant drives you put under a workload that actually does sustained writes. I didn&#8217;t find them at a good price. I didn&#8217;t find them at a bad price either. They simply weren&#8217;t there.</p><p>Same story when I priced out more RAM for an existing box. Same story again when I looked at what a Raspberry Pi costs now versus a year ago. Somewhere in the last few months the math quietly flipped: buying new capacity stopped being a line item and turned into a project with a budget meeting attached.</p><p>So I&#8217;ve stopped trying to buy my way forward. I&#8217;m re-architecting what I already own, with longevity as the goal instead of raw horsepower. Make the gear I have last, instead of betting on a parts market that clearly isn&#8217;t betting on me.</p><p>This is a rant you&#8217;re going to be hearing about on SysAdmin Weekly for&#8230;.. a while&#8230; I apologize in advance. =D</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!aCdt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!aCdt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!aCdt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png" width="1402" height="1122" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1122,&quot;width&quot;:1402,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Empty PC Parts Bin&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Empty PC Parts Bin" title="Empty PC Parts Bin" srcset="https://substackcdn.com/image/fetch/$s_!aCdt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!aCdt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01a133c9-3fcc-4e87-a622-cb46e77904f6_1402x1122.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now, back to our regularly scheduled programming&#8230;..</p><h2>From the SysAdmin Weekly Vault</h2><p>Instead of reaching for the latest episode of the SysAdmin Weekly podcast, we&#8217;re reaching for an older episode that fits with this week&#8217;s theme around PC hardware and homelabs.</p><p><strong>Episode:</strong> <em>SysAdmin Weekly 023 - Budget Home Lab Setup for IT Pros</em> (with Eric Siron) <strong>Topic:</strong> Building a genuinely useful home lab without torching your budget, across five segments: hardware, software, virtualization, networking, and cloud.</p><p>Why this one still holds up, and matters more now:</p><ul><li><p>The hardware advice was always practical: don&#8217;t underestimate an old desktop or laptop with enough RAM, and lean on mini PCs as the modern budget chassis. For example, Eric stood up his entire lab on four 32GB nodes for around $4,000 (When we recorded that episode) The underlying logic used? &gt; &#8220;cutting edge, not bleeding edge&#8221; (skip DDR5, stick with DDR4), reads less like budget tinkering and more like a 2026 survival guide today.</p></li><li><p>Eric&#8217;s rule of thumb, brick a $100 box, not a $20,000 one, was about learning safely on cheap hardware. In a market where you can no longer reliably buy the $100 box either, it lands as an argument for defending what you already own and being patient with the gear that still works.</p></li><li><p>The virtualization tour is still the cheapest path off the VMware tax: Hyper-V on Windows Server&#8217;s 180-day evaluation (re-arm it three times for roughly two years of runway), Proxmox if you miss the vSphere feel, libvirt and KVM for the Linux native route. Containers via Docker, Podman, or a small Kubernetes cluster cover the workloads where full VMs are overkill.</p></li><li><p>Bonus reality check we did not plan for: Eric flagged in the recording that VMware trial licenses are now gated behind enterprise customer designation. If you ever wondered why I started talking about &#8220;the VMware tax&#8221; as a thing, that gate is where it started.</p></li></ul><div id="youtube2-2zLue8ldtR0" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;2zLue8ldtR0&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/2zLue8ldtR0?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><h2>The Take</h2><p>Back in <a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-21-the-great-compute">Issue 21</a>, I ran a thought experiment and landed on an uncomfortable answer: the consolidation of compute into a handful of hyperscalers would, eventually, take choice and independent operation away from the rest of us. I framed it as a question and said I thought the answer was yes. I did not expect the proof to arrive this fast, and I did not expect it to come through the supply chain instead of through policy.</p><p>So the ugly truth&#8230;.. The three companies that make the world&#8217;s memory have pivoted their fab capacity toward high-bandwidth memory and enterprise parts for AI buildouts, because that&#8217;s where the margin is&#8230;.  it&#8217;s simple capitalism. <a href="https://www.trendforce.com/news/2025/12/26/news-ai-reportedly-to-consume-20-of-global-dram-wafer-capacity-in-2026-hbm-gddr7-lead-demand/">AI is on track to consume roughly a fifth of all DRAM production this year</a>, per TrendForce. The downstream effect isn&#8217;t subtle: <a href="https://www.trendforce.com/presscenter/news/20260202-12911.html">DRAM contract prices jumped around 90% in a single quarter</a>, <a href="https://www.idc.com/resource-center/blog/global-memory-shortage-crisis-market-analysis-and-the-potential-impact-on-the-smartphone-and-pc-markets-in-2026/">consumer SSDs climbed 147%</a>, <a href="https://www.tomshardware.com/pc-components/ssds/vdura-sharply-revises-its-enterprise-ssd-pricing-figures">a 30TB enterprise SSD went from about $3,000 to $17,500</a>, and <a href="https://www.raspberrypi.com/news/more-memory-driven-price-rises/">that 16GB Raspberry Pi 5 went from $120 at launch to $305</a>.</p><p>That&#8217;s the consolidation thesis, except it isn&#8217;t an abstraction about cloud strategy anymore. It&#8217;s the reason you can&#8217;t buy a stick of RAM or a decent NVMe drive at a price that makes sense. The same demand that&#8217;s building hyperscale AI capacity is the demand that&#8217;s pricing you out of building anything for yourself.</p><p>And that&#8217;s the quiet move now&#8230;&#8230;. When the entities building the cloud also control who gets the silicon to build off the cloud, &#8220;just rent compute from us&#8221; stops being a sales pitch and becomes the path of least resistance, because every other path got more expensive on purpose. I&#8217;m not telling you to panic. I&#8217;m telling you to notice, and to make the gear you already own last, because owning your own compute is starting to look less like a preference and more like a position you have to defend.</p><h2>Community Signal</h2><p>One item this week, and fits right in with these week&#8217;s discussion.</p><p><strong><a href="https://www.jeffgeerling.com/blog/2026/dram-pricing-is-killing-the-hobbyist-sbc-market/">Jeff Geerling - &#8220;DRAM pricing is killing the hobbyist SBC market&#8221;</a></strong> - Geerling lays out how LPDDR memory now makes up the majority of a single-board computer&#8217;s cost, which is why anything past 4GB of RAM has drifted out of hobbyist reach. His read lines up with mine: the theme of 2026 is repurposing what you already have, not buying new. If you want the hardware-level receipts behind everything I argued above, this is the post to read.</p><h2>Tool of the Week</h2><p><strong><a href="https://www.snapraid.it">SnapRAID</a></strong> - parity-based protection for an array of ordinary, mismatched disks, which is exactly what you end up with when you can&#8217;t buy a matched set of new drives.</p><p>Full disclosure before I describe it: I haven&#8217;t run this one in production myself yet. It&#8217;s on the shortlist for the re-architecting work I&#8217;m doing now, and I&#8217;m flagging it here because it&#8217;s the community-tested answer (Perfect Media Server, r/DataHoarder, the Self-Hosted podcast crowd) for exactly the mismatched-disk world we&#8217;re heading into. I want it on your radar before you need it, not after.</p><p>SnapRAID computes parity across drives of different sizes and ages, so you can add whatever disk you scrounged this month and still survive a failure or two (it scales up to six parity disks if you want the headroom). Pair it with <a href="https://github.com/trapexit/mergerfs">mergerfs</a> and those odd-sized disks present as a single pool. Honest scope: this is snapshot-style parity synced on a schedule, not real-time RAID, so it&#8217;s built for data that doesn&#8217;t change by the second; media, backups, and archives are the sweet spot. Don&#8217;t drop a busy database or a hot VM datastore on it and expect RAID behavior. For bulk storage you want to keep alive for years on hardware you already own, it&#8217;s hard to beat. It also pairs cleanly with the eBay-and-government-surplus path Eric recommended on the Vault episode, since the whole point of that path is ending up with a stack of drives nothing else can pool.</p><h2>Quick Win of the Week</h2><p>Find out how much life your SSDs and NVMe drives actually have left, before the market forces the decision for you. On Linux, install smartmontools and run sudo smartctl -a /dev/nvme0 (swap in your device); read Percentage Used and Data Units Written for NVMe, or the Wear_Leveling_Count and Media_Wearout_Indicator attributes on SATA SSDs. On Windows, CrystalDiskInfo shows the same health and total-bytes-written data in a couple of clicks. Five minutes per box tells you which drives have years left and which ones you should quietly start planning around while you still can.</p><h2>Fun Retro SysAdmin Fact</h2><p>The RAM in 1960s mainframes was literally woven by hand: tiny magnetic ferrite rings threaded onto crisscrossing wires, often assembled by women hired for the fine motor skills the work demanded, and it&#8217;s why we still say a crashed program wrote a &#8220;core dump&#8221; and why some old-timers still call memory &#8220;core.&#8221;</p><h2>Until Next Week</h2><p>The cheapest compute you&#8217;ll own for the foreseeable future is whatever is already humming in your rack; treat it accordingly.</p><p>Stay Frosty,</p><p>Andy</p><p>SysAdmin Weekly</p><p></p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-25-the-silicon-squeeze?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #24: Doom, Discounted]]></title><description><![CDATA[When the Headline Says Layoff, the Press Release Says Capex]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 21 May 2026 19:46:17 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!f9J3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>TL;DR</h2><ul><li><p>The AI doom narrative has hit saturation. Some of the doom is warranted. A lot of it is marketing.</p></li><li><p>&#8220;AI&#8221; is doing PR work for layoffs that were really overhiring corrections. The investor signal is the point.</p></li><li><p>Episode 046 of the podcast is out: the honest case for Claude Code in SysAdmin workflows, plus three fresh Linux LPE CVEs.</p></li><li><p>Tool of the Week: Ollama. Run open-weight models locally, no data leaves your network.</p></li><li><p>A full data breakdown of the doom narrative is coming on SysAdmin Weekly Podcast Episode 047 with Eric Siron in a day or two.</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><h2>From the Console</h2><p>The AI doom narrative has hit saturation. You feel it on LinkedIn. You see it in every other headline. Microsoft&#8217;s AI chief telling lawyers, accountants, and marketers they have eighteen months. Big tech CEOs floating that AI will replace half of white-collar work by 2030. Investors clapping. The rest of us reading the room.</p><p>Some of the doom is real. The transition is going to be painful for real people. Data center water usage today is a problem. Real jobs have been cut and real households are absorbing that. I am not minimizing any of it.</p><p>The rest of the doom is marketing dressed up as inevitability. And it is loud enough that even people who already do this work for a living are starting to second-guess themselves. That is the part that bothers me.</p><p>So I went looking at the actual data. Layoff numbers. The WEF Future of Jobs Report. Energy and water projections. What the hyperscalers are actually doing about it versus what the headlines say they are doing. There is a full breakdown coming on <a href="https://www.sysadminweekly.com">the podcast</a> with co-host Eric Siron in the next day or two. Until then, the short version: the data does not say what the headlines say it says.</p><p>The rest of this issue is about the part of the doom narrative that does not get enough scrutiny in our circles: how it is being used.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!f9J3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!f9J3!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!f9J3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png" width="1402" height="1122" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/eb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1122,&quot;width&quot;:1402,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1936762,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/198751141?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!f9J3!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 424w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 848w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 1272w, https://substackcdn.com/image/fetch/$s_!f9J3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Feb5dcfad-00fa-4608-9bd4-e95e6c98402e_1402x1122.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now, back to our regularly scheduled programming.</p><div><hr></div><h2>The Latest on the SysAdmin Weekly Podcast</h2><p><strong>Episode:</strong> <em>046 - Can Claude Code Help SysAdmins? Scripting, Log Analysis, and the CLAUDE.md Workflow</em> </p><p><strong>Topic:</strong> Andy makes the honest case for Claude Code in SysAdmin workflows, with the caveats and the parts that still fall short. Plus three recent Linux kernel local-privilege escalation vulnerabilities and what they mean for your patch cycle.</p><p>Reasons to tune in:</p><ul><li><p>Most AI demos are built for developers. This is a long-time SysAdmin walking through what actually helps and what does not</p></li><li><p>The CLAUDE.md workflow is the single biggest thing most folks are missing when they try AI in their day job</p></li><li><p>Three Linux LPE vulnerabilities (Fragnesia, DirtyFrag, CopyFail) dropped in quick succession. Local-only, but still on the patch list</p></li></ul><p>If you prefer to <strong>read</strong> about my experiences with Claude Code instead of the podcast episode, I did a write-up over on <a href="https://www.andyontech.com/posts/can_claude_code_help_sysadmins/">my blog at andyontech.com</a></p><p>All Links For the Show: <a href="https://www.sysadminweekly.com">https://www.sysadminweekly.com</a> or watch / listen below!</p><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;046 - Can Claude Code Help SysAdmins? Scripting, Log Analysis, and the Claude.md workflow&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/6FY6uK5LqYzpYO7Fjq6MWY&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/6FY6uK5LqYzpYO7Fjq6MWY" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><div id="youtube2-vahacDBn47k" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;vahacDBn47k&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/vahacDBn47k?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><div><hr></div><h2>The Take</h2><p>The piece of the AI layoff story that does not get enough airtime is the part where AI is the excuse and not the reason. Again, not downplaying those jobs that were legit replaced by AI, but <a href="https://www.cnbc.com/2025/10/19/firms-are-blaming-ai-for-job-cuts-critics-say-its-a-good-excuse.html">the enterprise space seems to love making AI the scapegoat</a>, warranted or not.</p><p>The early wave of 2023 tech layoffs had a different reason on the slide deck. IBM and a few others actually said it: we over-hired during COVID by something close to thirty percent, the demand correction hit, and we cut. That is not a comfortable thing for an executive to say in public. It also is not an investor-friendly thing to say at an earnings call. So the language quietly changed.</p><p>By 2024 and into 2025, the same kinds of layoffs were getting a different label. &#8220;Restructuring around AI.&#8221; &#8220;Reallocating capital toward AI initiatives.&#8221; &#8220;Aligning our workforce with the AI-first future.&#8221; Conveniently, that wording does two things at once: it makes layoffs feel like strategy instead of correction, and it signals to investors that the company is an AI play, which moves the stock.</p><p>We are not just speculating here. <a href="https://www.inc.com/moses-jeanfrancois/cisco-lays-off-thousands-despite-strong-earnings-the-reason-will-sound-familiar/91345145">Cisco cut roughly 4,000 people</a> on the back of strong earnings. Oracle is reportedly cutting up to 30,000 jobs (about 18% of its headcount) while standing up a massive data center buildout. <a href="https://finance.yahoo.com/markets/stocks/articles/everyone-unhappy-meta-employees-mood-151500619.html">Meta announced 8,000 more cuts</a> in May while telegraphing $115B to $135B in 2026 capital expenditure, almost all of it AI infrastructure. Read those press releases against each other and the pattern is consistent: trim the headcount line, route the savings into AI capex, take the investor bump for being &#8220;AI-first.&#8221;</p><p>Again, that doesn&#8217;t mean AI is NOT displacing some jobs. It is, in specific roles, at specific companies, on a real timeline. It does mean, though, that &#8220;we cut X people because of AI&#8221; is doing a lot more PR work in 2026 than it is doing operational work. And if you are a SysAdmin, an MSP operator, or an IT manager trying to read the temperature in your own organization, that distinction matters. The internal memo and the external press release are not telling the same story for the same reason.</p><p>The piece I keep coming back to is something Eric Siron mentioned in a recent recording of the podcast&#8230;.. when an executive who has never been an accountant tells accountants they have eighteen months, ask that executive what THIER numbers actually need to look like by then. Eighteen months is often less about when the technology will be ready and more about when the latest AI bet has to start showing returns.</p><p>We will get into the data side, the WEF Future of Jobs numbers, the historical tech wave precedents, the water and power question, in detail when Episode 047 drops with Eric Siron. For now: if your CIO walks in citing the eighteen-month deadline, ask them to source it. Real conversations get easier from there.</p><div><hr></div><h2>Community Signal</h2><p><em>High-signal community work worth your attention this week.</em></p><p><strong><a href="https://www.virtualizationhowto.com/2026/05/i-built-a-local-ai-coding-agent-home-lab-setup-with-opencode-and-ollama/">Brandon Lee (VMware vExpert) - &#8220;I Built a Local AI Coding Agent Home Lab Setup With OpenCode and Ollama&#8221;</a></strong> - The practical antidote to the doom narrative&#8230; practical use of AI systems! In this post Brandon Lee walks through standing up OpenCode against a local Ollama instance, with the model running on his own hardware and no data leaving the lab. The part worth the read is the honest scoping: where the local setup actually competes with the cloud offerings, where it does not yet, and what hardware you need to make it usable. Practitioner work, no vendor influence.</p><div><hr></div><h2>Tool of the Week</h2><p><strong><a href="https://ollama.com">Ollama</a></strong> - Run open-weight LLMs locally. Single binary, simple model pull syntax, OpenAI-compatible API surface for any tooling that already speaks that protocol.</p><p>The pitch in 2026: if you are tired of either feeding sensitive data to a hosted model or being told you are not allowed to use AI at all, Ollama is the third option. Pull a model (Llama, Qwen, Mistral, DeepSeek, Codestral, others), point your client at the local endpoint, and run inference on your own hardware. Pairs cleanly with OpenCode, Continue, and any IDE plugin or CLI tool that supports a custom OpenAI-compatible base URL.</p><p>To be straight: the local model quality at consumer hardware tiers is not the frontier-model quality you get from Anthropic or OpenAI. For privacy-sensitive workflows, internal-only use cases, log triage, and scripting against data you cannot ship outside the network, the gap closes considerably. For greenfield engineering work, you will still reach for the hosted option more often than not based on my experience. Either way, nice to have the options.</p><div><hr></div><h2>Quick Win of the Week</h2><p>Pick one &#8220;AI is replacing X&#8221; headline you have seen this month. Trace it back to the primary source. Is it a CEO quote, a press release, a paper, or a survey? Whose survey? How were the numbers gathered? You will be surprised how often the headline number does not survive the trip back to where it came from. Sourcing your own claims is one of the most useful skills a SysAdmin can keep sharp in 2026.</p><div><hr></div><h2>Fun Retro SysAdmin Fact</h2><p>The first &#8220;AI is coming for your job&#8221; panic in IT was not in 2023. It was in the late 1980s, during the expert systems boom, when symbolic-reasoning platforms running on Lisp machines were supposed to replace whole categories of decision-making work. By the early 1990s the entire commercial expert systems market had collapsed into what historians of computing now call the second AI Winter. The Lisp machines went to museums, the panic dissipated, and the next wave of IT growth (the consumer internet) created more jobs than the AI Winter ever displaced.</p><div><hr></div><h2>From My Other Corner of the Internet</h2><h3>AndyOnTech</h3><p><strong><a href="https://www.andyontech.com/posts/can_claude_code_help_sysadmins/">Can Claude Code Help SysAdmins? Real Use Cases for IT Pros</a></strong> - The companion write-up to Episode 046. Covers the CLAUDE.md workflow, scope-based settings, and where to stay skeptical with sensitive data and production-adjacent prompts. If the episode landed, the post is the version you can hand to a teammate who prefers reading to listening.</p><div><hr></div><h2>Thing I&#8217;m Re-Thinking</h2><p><strong>The assumption:</strong> When a major tech CEO makes a specific timeline claim about AI displacement, I should weigh it as informed analysis from someone close to the technology.</p><p><strong>Why it no longer holds up:</strong> After a few iterations, it REALLY seems like a lot of those claims are not predictions, they are deadlines. Eighteen months is a number that lines up with when AI infrastructure spend has to start producing returns. The person saying it has a financial reason for that number, and that reason is not &#8220;this is the date the technology will be ready.&#8221;</p><p><strong>What I am testing instead:</strong> Treating those statements as investor communications, not as forecasts. If the same claim comes from someone who has actually done the job being replaced, who is working at the keyboard with the tools, and who has no AI-adjacent stock price to defend, that is the version I weigh.</p><div><hr></div><h2>Until Next Week</h2><p>If the doom is loud enough that you are starting to repeat it without checking, that is the moment to go check.</p><p>Stay Frosty, </p><p>Andy </p><p>SysAdmin Weekly</p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! This post is public (and free!) so feel free to share it.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-24-doom-discounted?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #23: Build Something Nobody Asked For]]></title><description><![CDATA[The queue will be there Monday. Your curiosity might not be.]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-23-build-something</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-23-build-something</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Fri, 15 May 2026 14:19:40 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!44kN!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>TL;DR</h2><ul><li><p>Was at a conference recently. Half the room was on their phones. That&#8217;s not a people problem.</p></li><li><p>The culture of IT quietly starves curiosity. And we as SysAdmins let it happen.</p></li><li><p>I stood up Forgejo in my lab out of curiosity. It ended up replacing every GitHub component of my workflow. Zero regrets.</p></li><li><p>Lab work isn&#8217;t a hobby. It&#8217;s how you stay dangerous.</p></li><li><p>This week: do something that doesn&#8217;t have a ticket number.</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>From the Console</h2><p>I attended a recent tech event in Texas which turned out to be a good event, had decent content, and a strong sense of community. At one point, I&#8217;m sitting there looking around the room&#8230;.observing people as I&#8217;m want to do at times to gauge interest in a particular topic. I noticed lots of phones out, laptops open, heads down and my initial reaction was frustration, because I&#8217;ve been the guy up on stage talking, many times. Then I caught myself.</p><p>These aren&#8217;t checked-out people. These are DEPLETED people. The queue never stops. The alerts never stop. And somewhere in all that noise the thing that made most of us good at this job (the curiosity), the &#8220;I wonder what happens if I press this button&#8221; instinct, just quietly gets starved out.</p><p>That&#8217;s the thing worth talking about this week.</p><p>Folks that are regulars of the <a href="https://www.sysadminweekly.com/">SysAdmin Weekly Podcast</a> have likely heard me talk about the importance of curiosity for SysAdmins. I&#8217;ve been in the industry long enough now to know that SysAdmins used to have more time to be curious. We used to have more time for training. In fact, we&#8217;ve done our jobs so well over the last decade or two that tech and &#8220;digital transformation&#8221; have become core to many businesses. So much so, that the many businesses simply cease to function when tech systems are offline or impacted in some way.</p><p>Pair that with the fact that many organizations still view IT as a cost center. I still run into accounting heads that see IT as a black hole for money, and I still see leadership teams not giving IT teams the resources or the time needed to get the job done while leaving room for self-improvement or self-care. SysAdmins are overworked, and understaffed / underfunded, and it shows.</p><p>That all said, I would urge all of you to maintain that curiosity. Tinker in the lab. Check out that new community tool. Spin up that new game server. Most of us got into this industry because we have a deep love for the technology. Sometimes experimenting with new tech for no reason other than curiosity is all that&#8217;s needed to keep the bad parts of the job from overwhelming you and in the process it helps you keep your skills current and growing.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!44kN!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!44kN!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 424w, https://substackcdn.com/image/fetch/$s_!44kN!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 848w, https://substackcdn.com/image/fetch/$s_!44kN!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 1272w, https://substackcdn.com/image/fetch/$s_!44kN!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!44kN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png" width="1456" height="1132" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1132,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:5429592,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/197772745?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!44kN!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 424w, https://substackcdn.com/image/fetch/$s_!44kN!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 848w, https://substackcdn.com/image/fetch/$s_!44kN!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 1272w, https://substackcdn.com/image/fetch/$s_!44kN!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5fd30d2-75ba-4a81-b434-839519a3f7cf_2304x1792.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><p>And now, back to our regularly scheduled programming.</p><h2>The latest on the SysAdmin Weekly Podcast</h2><p><strong>Episode:</strong> <em>045 - Why Is It Always DNS? How DNS Actually Works, Breaks, and Gets Exploited</em> <strong>Topic:</strong> Andy and Eric pull apart the full DNS resolution chain, Active Directory DNS integration, DNS security threats, and two war stories that will make you go check your fourth domain controller.</p><p>Why this one matters: - Most SysAdmins work with DNS every day without actually understanding how it works. This is the episode that fixes that - If you&#8217;ve ever said &#8220;have you tried flushing the DNS cache?&#8221; and quietly hoped it worked, this one is for you - DNS is also how attackers move data and talk to compromised machines. Understanding the protocol means understanding the threat</p><h3>Episode Links</h3><p>All Links: </p><p><a href="https://www.sysadminweekly.com">https://www.sysadminweekly.com</a></p><p>YouTube: </p><div id="youtube2-g7ISbTCjDJo" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;g7ISbTCjDJo&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/g7ISbTCjDJo?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><p>Spotify: </p><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;045 - Why is It ALWAYS DNS?!?&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/2oAh0KzE7J2o7NQFJK8Mza&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/2oAh0KzE7J2o7NQFJK8Mza" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><h2>The Take</h2><p>I stood up <a href="https://forgejo.org/">Forgejo</a> in my homelab recently. Self-hosted git forge, two-class repo model, nginx reverse proxy, internal HTTPS with mkcert. Did I plan for this to become my full git workflow? No. It started as curiosity. It ended up replacing every GitHub component of my day-to-day. GitHub no longer has a seat at the table, unless a repo has to be public and in that case I use repo mirroring so I still only have to interact with Forgejo at the end of the day.</p><p>On top of those benefits the curiosity that drove me to test out Forgejo to begin with enabled me to learn things I wouldn&#8217;t have learned any other way.</p><p>That&#8217;s the whole point. The lab isn&#8217;t always about the output. It&#8217;s about keeping the instinct alive. The instinct to dig in, break something on purpose, and figure out why it works. That muscle atrophies when you stop using it&#8230; and the environment most of us work in is perfectly designed to let it atrophy. Tickets, queues, SLAs, &#8220;what did you close today.&#8221;</p><p>It&#8217;s become a sad reality that the people who think lab work is a waste of time are usually measuring the wrong thing. They want deliverables. The lab doesn&#8217;t produce deliverables. It produces practitioners who don&#8217;t panic when something breaks outside the documentation.</p><p>This isn&#8217;t a generational thing either. I&#8217;ve seen 20-year veterans lose the curiosity instinct just as fast as someone two years in. It&#8217;s a culture problem. The fix is the same regardless of time in the chair: build something this week that nobody asked you to build. I&#8217;ll be money that two things will happen:</p><ol><li><p>You&#8217;ll learn something new</p></li><li><p>You&#8217;ll enjoy the time spent doing so</p></li></ol><p>So that said, what personal tech project are you interested in that you&#8217;ve been putting off? Maybe today is the day to start?</p><h2>Community Signal</h2><p><em>High-signal community work worth your attention.</em></p><p><strong><a href="https://mrlokans.work/posts/state-of-homelab-2026/">mrlokans.work - &#8220;State of Homelab 2026&#8221;</a></strong> - A personal, opinionated stack writeup from someone who documents their gaps honestly: no backups, single NVMe, running costs under $10/month. The part worth reading is the SOPS with age encryption section as an upgrade over Ansible Vault for version-controlled secret management. Good real-talk energy, no vendor influence, highly recommend!</p><p><strong><a href="https://www.virtualizationhowto.com/2025/10/how-i-built-a-self-healing-home-lab-that-fixes-itself/">Brandon Lee  - &#8220;How I Built a Self-Healing Home Lab That Fixes Itself&#8221;</a></strong> - Brandon Lee documents building an n8n automation pipeline that monitors CI/CD via Discord, uses an AI agent to identify failures, and automatically re-triggers failed pipelines without human intervention. Proxmox, Prometheus, Grafana, Docker restart policies. The interesting angle here isn&#8217;t the specific stack; it&#8217;s the idea that the lab itself can model the same automation discipline you&#8217;d want in production. Also a good read for this week!</p><h2>Tool of the Week</h2><p><strong><a href="https://beszel.dev/">Beszel</a></strong> - Lightweight infrastructure monitoring with a hub-and-agent model that actually fits the way homelabs and small shops are built.</p><p>Lightweight single binary, hub-and-agent model. Monitors CPU, memory, disk, network, and Docker/Podman container stats. The web dashboard is clean, alerting is configured with sliders and toggles instead of a rule language, and it doesn&#8217;t require standing up a full Prometheus stack to get meaningful visibility. </p><p>To be straight with you: this is a homelab and small fleet tool. No SNMP, no custom metrics, no HA, SQLite-backed. It is not a Zabbix or Prometheus replacement for enterprise environments with SLA requirements. For everything else, it&#8217;s the current community default for a reason.</p><h2>Quick Win of the Week</h2><p>Pick one service you interact with every day and actually read how it works this week. Not a tutorial. Not a YouTube walkthrough. The documentation or the RFC. Twenty-five minutes. The goal isn&#8217;t to become an expert; it&#8217;s to make contact with the actual thing instead of just operating the surface of it.</p><h2>Fun Retro SysAdmin Fact</h2><p>Before DNS existed, every host on the ARPANET was tracked in a single HOSTS.TXT file maintained by one person at the Stanford Research Institute and distributed via FTP. By 1983, the growth of the network had made manual updates impossible, which is what prompted Paul Mockapetris to design DNS. The specs he wrote in RFC 1034 and RFC 1035 are still the foundation of every DNS lookup happening right now.</p><h2>Worth Your Time</h2><p><strong><a href="https://forgejo.org/docs/latest/user/">Forgejo - User Documentation</a></strong> - If The Take in this week&#8217;s edition landed and you want to actually spin up your own git forge, the docs are legitimately good. The user docs index includes a getting started section.</p><p><strong><a href="https://github.com/louislam/uptime-kuma">Uptime Kuma</a></strong> - If you spin up Beszel, pair it with this. Beszel watches internal resource metrics; Uptime Kuma watches external service availability (HTTP, TCP, DNS, SSL). They cover different failure modes and the community runs them together for that reason. Worth mentioning that it also has a large number of GitHub stars&#8230;.. meaning this one has been around long enough to trust.</p><h2>Thing I&#8217;m Re-Thinking</h2><p><strong>The assumption:</strong> Staying current means following the news cycle.</p><p><strong>Why it no longer holds up:</strong> Reading about technology and understanding technology are not the same thing. You can follow every CVE, every product announcement, every LinkedIn hot take&#8230; and still be completely lost the first time you have to operate something unfamiliar under pressure.</p><p><strong>What I&#8217;m testing instead:</strong> One new thing in the lab per month. Doesn&#8217;t have to be big. Doesn&#8217;t have to be relevant to the day job. Just has to be something I haven&#8217;t run before.</p><h2>Until Next Week</h2><p>The queue will be there Monday. Your curiosity might not be if you keep telling it to wait.</p><p>Stay Frosty,</p><p>Andy</p><p>SysAdmin Weekly</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #22: The Open Source Lifeline]]></title><description><![CDATA[When Big Tech Tightens Its Grip, Open Source Holds the Keys]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-22-the-open-source</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-22-the-open-source</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 05 Mar 2026 20:33:28 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!u5xT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>TL;DR &#8211; This Week in SysAdmin Land</h2><p>&#183; Big Tech is consolidating compute, cloud, and client hardware at an unprecedented pace and open source is increasingly the only viable counterweight.</p><p>&#183; The Steam Deck is the clearest mainstream proof that open source can compete on quality, flexibility, and user freedom, even in a consumer market dominated by locked ecosystems.</p><p>&#183; Open source isn&#8217;t just idealism. It&#8217;s a practical, career-relevant strategy for SysAdmins managing costs, avoiding lock-in, and maintaining operational control.</p><p>&#183; This week&#8217;s Community Signal highlights open source tools worth building into your stack right now.</p><p>&#183; Tool of the Week: A self-hosted alternative that punches well above its weight class.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>From the Console</h2><h3><em>The Locked Room Problem</em></h3><p>I want you to think back to a time&#8230; maybe recent, maybe not, where a vendor changed something fundamental about a tool you depended on. Maybe it was a licensing model. Maybe it was a feature that got paywalled. Maybe it was an acquisition that turned your go-to platform into a product roadmap you no longer recognized.</p><p>The most recent example for me, was Firefox. And if you&#8217;ve been listening to <a href="https://www.sysadminweekly.com/">the podcast</a> or have read my <a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/">lengthy blog post on the subject</a>, you already know how I feel about that particular saga.</p><p>That thing I keep coming back to: that feeling of helplessness&#8230;.of being locked in a room where someone else controls the door, isn&#8217;t unique to Mozilla. It&#8217;s, sadly becoming the <em>default state</em> of modern enterprise IT, for a number of reasons.</p><p><a href="https://newsletter.sysadminweekly.com/p/sysadmin-weekly-21-the-great-compute">In issue #21, we talked about the Great Compute Divide</a>. Big Tech is hoarding GPUs, cloud vendors are pitching you on renting your own PC BACK from them, and RAM prices have quadrupled because the market for on-prem compute is being systematically starved (whether that&#8217;s the intention or not remains to be seen). That said, the consolidation is real, it&#8217;s accelerating, and it has consequences.</p><p>So what&#8217;s the counterweight? Despite my example above being Mozilla / Firefox (<a href="https://www.windowscentral.com/software-apps/mozilla-says-firefox-will-evolve-into-an-ai-browser-and-nobody-is-happy-about-it-ive-never-seen-a-company-so-astoundingly-out-of-touch">which has started catering to market demands</a>) I&#8217;d argue that the long-term counterweight is in fact open source. It&#8217;s also worth noting that I don&#8217;t mean that in the idealistic, &#8220;free software should be free&#8221; sense (though that argument has merit). I mean open source as a <em>practical, professional survival strategy</em> for SysAdmins.</p><p>And if you want the clearest mainstream proof that this strategy works, look no further than Valve&#8217;s Steam Deck.</p><p>Here&#8217;s a <strong>consumer device</strong> running a <a href="https://store.steampowered.com/steamos">custom Arch Linux distribution called SteamOS</a> that ships with full terminal access, supports arbitrary software installation, and lets you configure, break, and rebuild it however you see fit. Valve didn&#8217;t lock it down. They handed you the keys. And the result? A device with one of the most enthusiastic and capable user communities in consumer tech, running games and workloads that &#8220;shouldn&#8217;t&#8221; work because the platform respects user freedom.</p><p>That&#8217;s the open source promise made tangible&#8230;. And it&#8217;s exactly the philosophy SysAdmins need to be applying to their own stacks right now.</p><p>This is the part where you all come at me with torches and pitchforks&#8230; &#8220;But, Andy! What about support&#8221;? I would make the argument that the support question can be worked around while vendor lock-in, hardware scarcity, planned obsolesence, and adversarial behaviour towards customers are much more difficult to contend with. At least with the support question you can:</p><p>&#183; Train up internally</p><p>&#183; Partner with a third party</p><p>&#183; Some Linux distros have their own support mechanisms</p><p>The other issues I laid out above have more difficult solutions for the most part.</p><p>Whatever your stance on this issue is, I would urge you, at the <em>very least</em>, to conduct an audit of all functions within your environment where you depend solely on a single vendor. Which of those vendors have you locked in, in some way? Those are the areas you need to at least have a fallback plan in mind in the event that things go south.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!u5xT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!u5xT!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!u5xT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;A SysAdmin Clinging to an Open Source life preserver&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A SysAdmin Clinging to an Open Source life preserver" title="A SysAdmin Clinging to an Open Source life preserver" srcset="https://substackcdn.com/image/fetch/$s_!u5xT!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!u5xT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef743e5e-9ab2-43f0-b3eb-e7cf04880992_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>A SysAdmin Clinging to an Open Source life preserver</em></p><p>And now, back to our regularly scheduled programming.</p><h2>&#127897; Recently on the SysAdmin Weekly Podcast</h2><p><strong><a href="https://youtu.be/g0KmvK5WxaE?si=Gsva3BAiJH8-_m3Q">SysAdmin Weekly - 039 - BitLocker, Key Escrow, and the Microsoft Trust Question</a></strong></p><p>All the relevant links for this episode can be found below:</p><p>&#183; <a href="https://www.sysadminweekly.com">SysAdmin Weekly Website </a></p><p>&#183; <a href="https://github.com/ProjectRunspace/sysadmin-weekly/discussions">SysAdmin Weekly Github Discussions Board</a></p><div id="youtube2-g0KmvK5WxaE" class="youtube-wrap" data-attrs="{&quot;videoId&quot;:&quot;g0KmvK5WxaE&quot;,&quot;startTime&quot;:null,&quot;endTime&quot;:null}" data-component-name="Youtube2ToDOM"><div class="youtube-inner"><iframe src="https://www.youtube-nocookie.com/embed/g0KmvK5WxaE?rel=0&amp;autoplay=0&amp;showinfo=0&amp;enablejsapi=0" frameborder="0" loading="lazy" gesture="media" allow="autoplay; fullscreen" allowautoplay="true" allowfullscreen="true" width="728" height="409"></iframe></div></div><iframe class="spotify-wrap podcast" data-attrs="{&quot;image&quot;:&quot;https://i.scdn.co/image/ab6765630000ba8aceca8e68ccb0951e38c2a3e0&quot;,&quot;title&quot;:&quot;039 - BitLocker, Key Escrow, and the Microsoft Trust Question&quot;,&quot;subtitle&quot;:&quot;Andy Syrewicze and Eric Siron&quot;,&quot;description&quot;:&quot;Episode&quot;,&quot;url&quot;:&quot;https://open.spotify.com/episode/1gJ8BrHZhn2hvxUATxiwvq&quot;,&quot;belowTheFold&quot;:true,&quot;noScroll&quot;:false}" src="https://open.spotify.com/embed/episode/1gJ8BrHZhn2hvxUATxiwvq" frameborder="0" gesture="media" allowfullscreen="true" allow="encrypted-media" loading="lazy" data-component-name="Spotify2ToDOM"></iframe><div class="apple-podcast-container" data-component-name="ApplePodcastToDom"><iframe class="apple-podcast " data-attrs="{&quot;url&quot;:&quot;https://embed.podcasts.apple.com/us/podcast/sysadmin-weekly/id1809209683?i=1000749772863&quot;,&quot;isEpisode&quot;:true,&quot;imageUrl&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/podcast-episode_1000749772863.jpg&quot;,&quot;title&quot;:&quot;039 - BitLocker, Key Escrow, and the Microsoft Trust Question&quot;,&quot;podcastTitle&quot;:&quot;SysAdmin Weekly&quot;,&quot;podcastByline&quot;:&quot;&quot;,&quot;duration&quot;:4413000,&quot;numEpisodes&quot;:&quot;&quot;,&quot;targetUrl&quot;:&quot;https://podcasts.apple.com/us/podcast/039-bitlocker-key-escrow-and-the-microsoft-trust-question/id1809209683?i=1000749772863&amp;uo=4&quot;,&quot;releaseDate&quot;:&quot;2026-02-14T22:53:38Z&quot;}" src="https://embed.podcasts.apple.com/us/podcast/sysadmin-weekly/id1809209683?i=1000749772863" frameborder="0" allow="autoplay *; encrypted-media *;" allowfullscreen="true"></iframe></div><h2>The Case for Open Source in 2026 - Beyond the Ideology</h2><p>I&#8217;ve been on a practicality kick lately with my content. So, let&#8217;s get practical for a second. Building on the &#8220;From the Console&#8221; section in this week&#8217;s issue of the newsletter, here&#8217;s why open source deserves a strategic seat at the table for every SysAdmin today:</p><h3>1. You Own the Exit</h3><p>Proprietary software comes with a quiet hostage clause, which is sometimes spelled out (and sometimes not). When the vendor raises prices, discontinues a feature, gets acquired, or simply decides your use case no longer aligns with their roadmap, you are stuck&#8230;.full stop. Open source breaks that clause. You can fork it, self-host it, freeze it at a version that works, or migrate on your terms.</p><p>This isn&#8217;t hypothetical. Looking at a few examples:</p><p>&#183; <a href="https://github.com/BookStackApp/BookStack">BookStack</a> - Open Source Wiki / Documentation App</p><p>&#183; <a href="https://about.gitea.com/products/gitea/">Gitea</a> - Self Hosted Open Source Code Repo Software (Note: owned by a for-profit org)</p><p>&#183; <a href="https://forgejo.org">Forgejo</a> - Self Hosted Open Source Code Repo Software</p><p>&#183; <a href="https://github.com/nextcloud">Nextcloud</a> - Self hosted cloud filestorage</p><p>&#183; <a href="https://github.com/restic/restic">Restic</a> - Awesome CLI-based backup application</p><p>These are all tools that we&#8217;ve mentioned in this newsletter before and they exist <em>because</em> the proprietary alternatives became untenable for a meaningful number of organizations. The community voted with their forks.</p><h3>2. Auditability Is a Security Feature</h3><p>Putting my security brain in place for a second, I would also make the claim that, in general, you cannot fully trust what you cannot inspect. There are some exceptions to that rule for certain software suites, sure, but I feel it&#8217;s true when speaking generalities. The fact is, that with proprietary tooling, you&#8217;re accepting a black box at the foundation of your infrastructure. With open source, the code is accessible and viewable. Security researchers can (and do) find and fix vulnerabilities more quickly because the surface is visible. Now, it&#8217;s worth noting that this isn&#8217;t always comfortable. Visibility cuts both ways, but at least it&#8217;s honest, open, and everyone can see things for what they are, warts and all.</p><h3>3. Cost Control in a World of Subscription Creep</h3><p>SaaS subscriptions compound quietly. Open source tools, even with self-hosting overhead, frequently deliver better TCO at scale, especially for non-glamorous infrastructure services: documentation platforms, backup tools, monitoring stacks, identity providers.</p><h3>4. The Talent Pipeline Recognizes It</h3><p>The next wave of SysAdmins grew up on GitHub, Linux, and Docker. Open source fluency is increasingly a hiring signal, and building an open-source-forward environment makes your org more attractive to the people you want to retain.</p><h2>Core Fundamentals: Reading an Open Source Project Before You Commit</h2><p>Not all open source is created equal. Before you adopt a tool and build workflow around it, here&#8217;s a quick due diligence checklist:</p><p>&#183; <strong>Commit frequency:</strong> Is the project actively maintained? When was the last commit?</p><p>&#183; <strong>Issue response time:</strong> Are maintainers engaged with bug reports? Or are issues piling up unanswered?</p><p>&#183; <strong>License:</strong> MIT, Apache 2.0, and GPL all have different implications for commercial use and modification. Know which one you&#8217;re working with.</p><p>&#183; <strong>Community size:</strong> A project with thousands of GitHub stars and an active Discord/forum is less likely to be abandoned than a solo maintainer&#8217;s side project.</p><p>&#183; <strong>Commercial backing:</strong> Projects with a company behind them (HashiCorp, Grafana Labs, Canonical, Gitea) have longevity. That said, watch for the &#8220;open core&#8221; model that some of them offer. Open core is where the good stuff is still generally paywalled.</p><p>&#183; <strong>Documentation quality:</strong> Poor docs are a maintenance burden. Great docs are a force multiplier.</p><h2>Community Signal</h2><p><em>High-signal community content worth your attention this week &gt; open source edition.</em></p><p><strong><a href="https://github.com/awesome-selfhosted/awesome-selfhosted">awesome-selfhosted &#8211; The Community&#8217;s Master List</a></strong> If you only bookmark one link from this edition, make it this one! Awesome-selfhosted is a community-maintained GitHub repository cataloging hundreds of free, open source network services and web applications you can host on your own infrastructure. Organized by category, it includes stuff like: analytics and backup tools to document management, monitoring, and identity providers&#8230;etc..etc. It&#8217;s the definitive reference for SysAdmins evaluating self-hosted alternatives to SaaS platforms. Think of it as the antidote to vendor lock-in, one category at a time.</p><p><strong><a href="https://docs.gitea.com/usage/migration">Gitea Official Migration Documentation</a></strong> Full disclosure: There have been some community concerns around <a href="https://about.gitea.com/">Gitea</a> now existing under a for-profit company (See further down re: Forgejo). That said, Gitea remains a solid git repo hosting option that still retains the open source label. This documentation is a great resource for getting started if you&#8217;ve never used Gitea before. The official documentation covers installation, systemd service configuration, access, etc. That migration angle is the key differentiator here. It&#8217;s not just &#8220;here&#8217;s how to install a thing.&#8221; It&#8217;s &#8220;here&#8217;s how to actually move the thing.&#8221; If you&#8217;ve been meaning to get your repos off a platform you don&#8217;t control, this is your starting point.</p><p><strong><a href="https://www.techreviewer.com/tech-news/2025-10-28-linux-hits-90-windows-game-compatibility-milestone/">TechReviewer &#8211; Linux Hits 90% Windows Game Compatibility Milestone</a></strong> The Steam Deck and Proton keep coming up in this edition for good reason. They&#8217;re the clearest mainstream proof that open source can compete at scale without compromising on user experience. This piece puts hard numbers to that argument: over 5.6 million Steam Decks sold by mid-2025, 21,694 Deck Verified games, and nearly 90% of Windows titles now running on Linux via Proton. The story here really shows what happens when a platform holder commits to openness and invests in the community infrastructure to back it up. Sound familiar?</p><h2>Tool of the Week</h2><p><strong><a href="https://forgejo.org/">Forgejo</a></strong> - A community-driven fork of Gitea, born after concerns about Gitea&#8217;s governance direction under a new for-profit organization. Forgejo is a fully self-hosted Git service. Like Gitea, you can think of it like GitHub, but it&#8217;s yours and it lives in your environment. Lightweight, fast, and increasingly the preferred choice for SysAdmins who want source control without handing data to Microsoft.</p><h2>Quick Win of the Week</h2><p>Audit one proprietary tool in your current stack this week. Ask these three questions:</p><p>1. What does it cost annually (licensing + admin overhead)?</p><p>2. Is there a credible open source alternative?</p><p>3. What would migration realistically take?</p><p>You don&#8217;t have to move anything. Just know your options. Because the time to evaluate alternatives is <em>before</em> your vendor sends you a renewal notice with a 40% price increase.</p><h2>Fun Retro SysAdmin Fact</h2><p>The GNU Project, which is the foundation of modern open source as we know it, was announced by Richard Stallman in September 1983. That means the open source movement is older than most of the Windows Server versions you&#8217;ve probably had to decommission. And unlike those servers, it&#8217;s not going anywhere.</p><h2>Until Next Week</h2><p>The tools to stay independent already exist. They&#8217;re battle-tested, community-supported, and increasingly production-ready. The question isn&#8217;t whether open source is viable, the Steam Deck is one project proved that argument is over, in my opinion. The question is whether you&#8217;re building your stack in a way that keeps the exit door unlocked.</p><p>Thanks for reading and stay frosty out there!</p><p>Andy @ <span class="mention-wrap" data-attrs="{&quot;name&quot;:&quot;SysAdmin Weekly&quot;,&quot;id&quot;:5117965,&quot;type&quot;:&quot;pub&quot;,&quot;url&quot;:&quot;https://open.substack.com/pub/sysadminweekly&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ef9c2b75-70c2-44de-8aed-ee56a7d41847_1280x1280.png&quot;,&quot;uuid&quot;:&quot;3a6c60d5-b865-4af5-a264-935a3a50492d&quot;}" data-component-name="MentionToDOM"></span></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #21: The Great Compute Divide]]></title><description><![CDATA[When Big Tech Buys the GPUs and You&#8217;re Left With a Raspberry Pi]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-21-the-great-compute</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-21-the-great-compute</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 12 Feb 2026 20:38:07 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!ZKxA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>&#9654; TL;DR &#8211; This Week in SysAdmin Land</p><p>&#8226; Big Tech is consolidating massive amounts of compute while AI workloads continue driving unprecedented demand for GPUs and memory.</p><p>&#8226; Major cloud vendors are openly advocating for a future where you rent your PC and infrastructure instead of owning it.</p><p>&#8226; RAM prices have exploded, with some configurations quadrupling in cost, effectively pricing out homelabs and even certain enterprise deployments.</p><p>&#8226; The more workloads move to centralized cloud platforms, the less independent control organizations retain over their own compute.</p><p>&#8226; This week&#8217;s From the Console asks a hard question: does compute consolidation ultimately reduce flexibility, choice, and long-term autonomy?</p><p>&#8226; Community signal worth your time: a practical guide to estimating and managing Azure costs before they spiral out of control.</p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><h2>From the Console</h2><p>I think it finally happened&#8230;.. I&#8217;ve finally circled back to the portion of the industry that prefers to run (most) workloads locally as opposed to &#8220;cloud-first&#8221;.</p><p>Trust me&#8230; this comes as much as a surprise to myself as it does you (or maybe not?). It was a very specific line of thinking and industry events that led me back down this path&#8230; events which we plan to cover in a future podcast episode. That said, I thought articulating them here would make for an interesting &#8220;From the Console&#8221; opener for this week&#8217;s Newsletter.</p><p>So what led me down this path? A number of different news stories over the past couple of months eventually led to a thought experiment&#8230; which, in turn, led to my new stance, I suppose.</p><p>So, what were those news stories, you ask?</p><h3><a href="https://www.washingtonpost.com/technology/2025/12/19/tech-super-pacs-midterms-ai/">Big Tech Helping Trump &amp; GOP in the 2026 Midterm Elections</a></h3><p><a href="https://www.washingtonpost.com/technology/2025/12/19/tech-super-pacs-midterms-ai/">https://www.washingtonpost.com/technology/2025/12/19/tech-super-pacs-midterms-ai/</a></p><p>Now, first off, this newsletter is <strong>NOT</strong> a political newsletter. That said, we have mentioned politics on the podcast from time to time <em>as it relates to the technical topics of the day</em>. Regardless of your stance on the current state of US politics, the important and relevant bit for this discussion, is this personal take I put together re: the article:</p><blockquote><p>There are a group of individuals with direct or indirect ties to &#8220;Big Tech&#8221; that are using their resources to influence a specific result(s) in the US 2026 Midterm election. When the same entities that control massive compute resources also shape political outcomes, it raises questions about long-term digital independence.</p></blockquote><p>Political activism by big tech isn&#8217;t a new thing. It&#8217;s been going on for years now, but it&#8217;s an important item to point out as <em>currently happening</em> in our industry and it&#8217;s important to take into account for this editions &#8220;From the Console&#8221; discussion.</p><h3><a href="https://www.windowscentral.com/artificial-intelligence/jeff-bezos-says-the-quiet-part-out-loud-bezos-envisions-that-youll-give-up-your-pc-for-an-ai-cloud-version">Quote from Jeff Bezos on Local Compute</a></h3><p><a href="https://www.windowscentral.com/artificial-intelligence/jeff-bezos-says-the-quiet-part-out-loud-bezos-envisions-that-youll-give-up-your-pc-for-an-ai-cloud-version">https://www.windowscentral.com/artificial-intelligence/jeff-bezos-says-the-quiet-part-out-loud-bezos-envisions-that-youll-give-up-your-pc-for-an-ai-cloud-version</a></p><p>I came across this article from <a href="https://www.windowscentral.com/">Windows Central</a> in my usual RSS meanderings and Bezos&#8217;s stance on local compute is what caught my eye. This section of the article specifically.</p><blockquote><p>So, what prediction did Bezos make back then, that seems particularly poignant right now? Bezos thinks that local PC hardware is antiquated, and that the future will revolve around cloud computing scenarios, where you rent your compute from companies like Amazon Web Services or Microsoft Azure.</p></blockquote><p>There has been talk for some time now from the major cloud vendors talking about the &#8220;benefits&#8221; to &#8220;renting&#8221; a PC in the cloud. In fact Microsoft has even produced a line of endpoints (which are basically <a href="https://en.wikipedia.org/wiki/Thin_client">thin-clients</a>) called <a href="https://www.microsoft.com/en-us/windows-365/link">Windows 365 Link</a> who&#8217;s sole purpose is to connect to a cloud-hosted PC in Azure.</p><p>We&#8217;ve seen the massive consolidation of server-related workloads being pushed into large cloud environments for the last 10 to 15 years. Now, it seems, there is a renewed push to get a percentage of client market share hosted in large cloud providers as well.</p><h3><a href="https://tech.yahoo.com/computing/articles/ram-prices-exploding-heres-why-111115489.html">Well Known and Ongoing Industry Memory Scarcity</a></h3><p><a href="https://tech.yahoo.com/computing/articles/ram-prices-exploding-heres-why-111115489.html">https://tech.yahoo.com/computing/articles/ram-prices-exploding-heres-why-111115489.html</a></p><p>It&#8217;s become well known throughout our industry (and amongst the gaming community as well) that if you need to buy memory, do it <em>NOW</em>. Prices have been rising for some time and I can speak from personal experience on this one. About a year ago, I had built a decent box for some homelab workloads that has 96GB of memory in it. Out of curiosity, I checked what that same 96GB of memory would cost me today and I discovered that the cost for that given configuration has <strong>QUADRUPLED</strong> in price. I&#8217;ve even heard stories from fellow enterprise admins that their organizations have been effectively priced out of certain configurations due to the massive cost increase of memory.</p><p>We&#8217;ve seen the industry&#8217;s push to leverage cloud compute more and more. That said, there has always been a cohort of SysAdmins that have either been unable, or simply do NOT want the loss of control that using someone else&#8217;s hardware entails.</p><h3>What Concerns Does This Raise?</h3><p>Having consumed all three of these news stories in close succession, my brain started something of a thought experiment with some key points:</p><p>&#183; The current industry (and arguably geopolitical) line of thought is: <em>AI = Inferencing = Power</em></p><p>&#183; We know that AI workloads require a gargantuan amount of compute resources</p><p>&#183; There has been increasing market inertia to move workloads to the cloud</p><p>&#183; Increased cloud dependence REMOVES the need for on-prem / owned compute hardware</p><p>This pattern ultimately takes us to one place, and that is a world where the hardware needed for massive compute workloads (like large-scale AI) is largely in the hands of a few major players.</p><p>The question I leave you with today is this:</p><blockquote><p>Does the consolidation of compute, and by extension, the ability to run compute-heavy workloads (like AI), eventually take away choice, flexibility, and independent operation absent influence from big-tech &amp; politics? And, does this sequence of events take away power from individuals by extension?</p></blockquote><p>Also worth asking:</p><blockquote><p>What happens when access to high-performance compute becomes a subscription privilege instead of an owned capability?</p></blockquote><p>We&#8217;ll be sure to cover this in a future episode of the podcast with more discussion. However, for now, I&#8217;d LOVE to hear what your thoughts are on this! Feel free to comment below!</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ZKxA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ZKxA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ZKxA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Big Tech Hording All the Compute&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Big Tech Hording All the Compute" title="Big Tech Hording All the Compute" srcset="https://substackcdn.com/image/fetch/$s_!ZKxA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!ZKxA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb2e5f2d1-9852-4eb3-9abd-da4cb6b2c646_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>Big Tech Hording All the Compute</em></p><p>And now, back to our regularly scheduled programming</p><div><hr></div><h2>&#127897; Last Time on the SysAdmin Weekly Podcast</h2><p><strong>Episode:</strong> <a href="https://www.youtube.com/watch?v=_mdi_LsUZBE&amp;t=15s">SysAdmin Weekly - 038 - Making Security Decisions Based on Data, Not Fear</a></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://youtu.be/_mdi_LsUZBE" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!X4fU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!X4fU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;SysAdmin Weekly - 038 - Thumbnail Image&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:&quot;https://youtu.be/_mdi_LsUZBE&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="SysAdmin Weekly - 038 - Thumbnail Image" title="SysAdmin Weekly - 038 - Thumbnail Image" srcset="https://substackcdn.com/image/fetch/$s_!X4fU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!X4fU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd74e304b-6c0a-4860-b59c-4c0b178044e0_1280x720.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>SysAdmin Weekly - 038 - Thumbnail Image</em></p><p><strong>Topic:</strong> Given the state of tech marketing and the Cybersecurity news-cycle currently in the industry, this topic is increasingly important for today&#8217;s SysAdmins. It&#8217;s easy to fall into the trap of FUD (Fear, Uncertainty, Doubt) when it comes to Cybersecurity. The reasoning is rather simple. While we SysAdmins know that security is a necessary component of any modern network, the psychology behind the <em>NEED</em> for security comes from a place of danger and uncertainty. We must protect our networks against threats both real and suspect, so when a vendor comes knocking, saying &#8220;What if?&#8221;, it&#8217;s easy to to fall down that rabbit-hole.</p><p>In this episode Paul and Andy discuss steps you can take to make sure that you&#8217;re making these choices from a place of data and setting the fear and emotion to the side. Links to the applicable platforms can be found below:</p><p>&#183; <a href="https://www.sysadminweekly.com/">SysAdmin Weekly Website</a></p><p>&#183; <a href="https://www.youtube.com/watch?v=_mdi_LsUZBE&amp;t=15s">SysAdmin Weekly - 038 - on YouTube</a></p><p>&#183; <a href="https://open.spotify.com/episode/1O2Rn0jfgYQvCfl5ZHYWBF?si=bS8h4IV7QQ6zIj6LwVioJw">SysAdmin Weekly - 038 - on Spotify</a></p><p>&#183; <a href="https://podcasts.apple.com/us/podcast/038-making-security-decisions-based-on-data-not-fear/id1809209683?i=1000747395039">SysAdmin Weekly - 038 - on Apple Podcasts</a></p><p>Also, if you&#8217;ve got thoughts to share on this episode be sure to join the <a href="https://www.github.com/ProjectRunspace/sysadmin-weekly">SysAdmin Weekly GitHub Discussion Boards!</a></p><div><hr></div><h2>Community Signal</h2><p>I&#8217;ve got one Community Signal item for readers this week, and it&#8217;s high quality.</p><p><strong><a href="https://www.thomasmaurer.ch/2026/01/azure-cost-estimation-your-strategic-guide-to-cloud-pricing/">Thomas Maurer - Azure Cost Estimation</a></strong></p><p>Beings compute consolidation and big public cloud platforms were a big discussion earlier in today&#8217;s edition, this resources felt applicable. I know <em>MANY</em> SysAdmins that are dealing with cost management on public cloud platforms and it can be really difficult to get an accurate estimation of your cloud-spend, especially when rolling out new services.</p><p>Thomas Maurer always provides fantastic resources and this post is no exception. I highly suggest you check it out!</p><h2>A Backup Tool Worth Your Time</h2><p><a href="https://www.restic.net/">Restic</a> is an open-source, cross-platform backup tool designed for simplicity, security, and efficiency. It performs fast, incremental backups using content-defined chunking and deduplication, meaning only new or changed data is stored after the first run. All backups are encrypted by default using strong cryptography before leaving your system, so even the storage provider cannot read your data. </p><p>Restic supports a wide range of backends including local disks, SFTP, SMB, and cloud object storage such as S3-compatible services, Azure Blob, and Backblaze B2. It is lightweight, script-friendly, and reliable, meaning it&#8217;s AWESOME for SysAdmins and homelab enthusiasts.</p><p>Official documentation is available <a href="https://restic.readthedocs.io/en/stable/">HERE</a></p><div><hr></div><h2>From AndyOnTech</h2><p><a href="https://www.andyontech.com/posts/debian_sid_in_2025/">Why You Should Consider Debian Linux in 2025</a></p><p>I&#8217;ve spoke about this particular post in the newsletter in the past, but I&#8217;ve seen a number of &#8220;Why Debian&#8221; related posts on Reddit as of late, and even ran into the question on social media in the last week or so as well.</p><p>I wrote this article last year, so it&#8217;s a bit dated, but all the reasons why you might want to consider Debian Linux all stand in 2026. If you want the gritty details (and a YouTube video!), you can check out the link. Otherwise the short list is here:</p><p>&#183; Stability</p><p>&#183; Customizability</p><p>&#183; Free and Open Source</p><p>&#183; Highly Secure</p><p>&#183; Fantastic Community</p><p>&#183; Excellent Server Performance</p><p>&#183; Wide Hardware compatibility</p><p>&#183; Long-Term Servicing Options</p><p>If you find yourself currently hopping around and testing distros, I highly suggest you consider Debian. New features to do lag from time to time, but Debian can&#8217;t be beat in terms of rock-solid stability!</p><div><hr></div><h2>Until Next Week</h2><p>I want to make sure I say it again. We here at SysAdmin Weekly <em>REALLY</em> appreciate all of you that partake in our content and community. As this weekend brings us the Superbowl in the US, I wish you a quiet weekend and may all your systems stay running, at least until the big game is over.</p><p>Until next week, stay frosty!</p><p>&#8212; Andy @ <span class="mention-wrap" data-attrs="{&quot;name&quot;:&quot;SysAdmin Weekly&quot;,&quot;id&quot;:5117965,&quot;type&quot;:&quot;pub&quot;,&quot;url&quot;:&quot;https://open.substack.com/pub/sysadminweekly&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ef9c2b75-70c2-44de-8aed-ee56a7d41847_1280x1280.png&quot;,&quot;uuid&quot;:&quot;f2eb2996-6be1-478b-a7f6-a5df26c8796d&quot;}" data-component-name="MentionToDOM"></span> </p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #20: Managed Chaos Beats No Plan at All]]></title><description><![CDATA[Why incident response, backups, and curiosity still separate professionals from IT fire-fighters]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-20-managed-chaos</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-20-managed-chaos</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 29 Jan 2026 17:27:55 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!FiDU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2><strong>&#9193; TL;DR &#8211; This Week in SysAdmin Land</strong></h2><p>&#8226; Incident response plans and backup / DR strategies are boring, neglected, and absolutely career-saving when things go sideways. Review them <em>before</em> you need them.</p><p>&#8226; New podcast episode out: <strong>When Incident Response Plans Meet Reality</strong>, covering what actually belongs in an IR plan, who should be involved, and how tabletop exercises should work in practice.</p><p>&#8226; Curiosity isn&#8217;t optional for SysAdmins. Using short, intentional learning sessions can help you keep skills sharp even when motivation is low.</p><p>&#8226; Community signal worth your time: strong arguments for using Markdown and the CLI to improve focus, consistency, and long-term maintainability of technical documentation.</p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><h2>From the Console</h2><p>With it still being somewhat near the start of the year, we&#8217;ve been reminding our listeners that it&#8217;s a good time to take a look at those&#8230;. foundational SysAdmin things that we tend to neglect. This would be things like Backup &amp; DR planning, incident response plans&#8230;. recovery testing&#8230;etc.</p><p>Now to preface this opening section of this week&#8217;s newsletter I&#8217;m not judging anyone here. I get it. End-users are pounding on your door, mail services went offline <em>AGAIN</em>, and you&#8217;ve got a project list as long as the help output for ffmpeg. The last thing you want to think about are incident response plans that <em>should</em> still be good.</p><p>Also relevant along these lines and interesting, is our watch / listen metrics for last week&#8217;s episode aligns with this mindset as well. In our episode last week Eric and I discussed <a href="https://youtu.be/n_AvIKPoM7g?si=O3x0w0r3m5gTflff">Incident Response Plans in the Real World</a> and the consumption of that episode was noticeably less than normal. Again, I&#8217;m not knocking anyone, it&#8217;s just an interesting data point that supports my theory that the average SysAdmin either doesn&#8217;t have time for incident response / backup &amp; DR planning or its boring and / or overdone in terms of content, or everyone assumes existing plans are&#8230;. fine.</p><p>I have to say, that in terms of interest and <em>&#8220;general IT priorities&#8221;</em>, incident response planning isn&#8217;t the sexiest topic, but it is a critical and foundational one. As SysAdmins, it&#8217;s our job to insure systems uptime and data safety whether that (thankless) work is visible to the organization or not. An (at minimum) annual review of your incident response and backup &amp; DR plans does a couple things:</p><p>&#183; Highlights technical gaps or limitations within critical business infrastructure</p><p>&#183; Informs key stakeholders within the business that may have moved / changed / forgot about these initiatives</p><p>&#183; Helps prevent overly long outages</p><p>&#183; Safeguards company data</p><p>&#183; Makes you look like the superhero and <em>INSTANTLY</em> validates your salary the second something happens and you&#8217;ve got the magic plan that saves everything</p><p>What&#8217;s the saying?</p><blockquote><p><em>&#8220;An ounce of prevention is worth a pound of cure.&#8221;</em></p></blockquote><p>Block some time off in the calendar, and soon. Again, I know these items aren&#8217;t interesting. They aren&#8217;t some shiny new tech that needs to be installed. They aren&#8217;t business transforming things, <em>but</em> you&#8217;ll be <strong>much</strong> better served to have them ready (and updated) and not need them, than the other way around. Chaos without a plan is just chaos. Chaos <em>with </em>a plan is still chaos, but at least it&#8217;s <strong>managed chaos</strong> where you come out the hero, and your organization stays out of news.</p><p>If you&#8217;d like some real world guidance on the review of your incident response plan and backup / DR plan, be sure to check out last week&#8217;s episode of the SysAdmin Weekly Podcast listed below!</p><p>Also, if you&#8217;d like to chime in with your incident response / backup &amp; DR success (or horror) stories, check out this <a href="https://github.com/ProjectRunspace/sysadmin-weekly/discussions/8#discussioncomment-15641864">thread on the SysAdmin Weekly GitHub Discussions Board</a>!</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!FiDU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!FiDU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!FiDU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;A SysAdmin ignoring the incident response plan in favor of cool infrastructure projects&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A SysAdmin ignoring the incident response plan in favor of cool infrastructure projects" title="A SysAdmin ignoring the incident response plan in favor of cool infrastructure projects" srcset="https://substackcdn.com/image/fetch/$s_!FiDU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!FiDU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F574fbf67-0de2-4aca-859f-50f37fb08651_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>A SysAdmin ignoring the incident response plan in favor of cool infrastructure projects</em></p><p>And now&#8230;. back to our regularly scheduled programming.</p><div><hr></div><h2>&#127897; The latest on the SysAdmin Weekly Podcast</h2><p><strong><a href="https://youtu.be/n_AvIKPoM7g?si=O3x0w0r3m5gTflff">SysAdmin Weekly - 037 - When Incident Response Plans Meet Reality</a></strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4ALF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4ALF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4ALF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;SysAdmin Weekly - 037 - When Incident Response Plans Meet Reality&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="SysAdmin Weekly - 037 - When Incident Response Plans Meet Reality" title="SysAdmin Weekly - 037 - When Incident Response Plans Meet Reality" srcset="https://substackcdn.com/image/fetch/$s_!4ALF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!4ALF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe8bf8bf7-69a8-4483-8678-b1487fcab71c_1280x720.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>SysAdmin Weekly - 037 - When Incident Response Plans Meet Reality</em></p><p><strong>Topic:</strong> In this week&#8217;s episode Andy and Eric discuss one of the most groan-inducing and seemingly boring SysAdmin Topics on the planet: Incident response plans. While many SysAdmins dislike the documentational nature of building (and maintaining) incident response plans, they are one of the most critical components to ongoing operations. To put it shortly, when you need it, you <em>NEED</em> it.</p><p>This episode gives you the details on:</p><p>&#183; What to include in your incident response plan</p><p>&#183; What stakeholders within your organization to involve</p><p>&#183; Frequency and details covered during table-top exercises</p><p>&#183; Lots more!</p><p>The episode also includes the usual nerd-hour talk, VMware / Broadcom gripes&#8230;etc.</p><h3>Episode Links Here!</h3><p>&#183; <a href="https://www.sysadminweekly.com/">All platform links</a></p><p>&#183; <a href="https://youtu.be/n_AvIKPoM7g?si=NpY-Vt0Ql_tuNtKE">SysAdmin Weekly - 037 - On YouTube</a></p><p>&#183; <a href="https://open.spotify.com/episode/0MNGmYiGlGk6l9v8HrpZit?si=96EouuzsS1a2i6hi1QWMjA">SysAdmin Weekly - 037 - On Spotify</a></p><p>&#183; <a href="https://podcasts.apple.com/us/podcast/037-when-incident-response-plans-meet-reality/id1809209683?i=1000746393743">SysAdmin Weekly - 037 - On Apple Podcasts</a></p><div><hr></div><h2>The Take - Curiosity Should be a Weekly Mandate for SysAdmins</h2><p>I wanted to make a short take this week to continue some commentary on the importance of curiosity as a <a href="https://youtu.be/lhiiYpGVVtQ?si=jQT5E3dk4M99MJ-b">core trait(s) needed by SysAdmins</a>.</p><p>It&#8217;s easy in this industry to rest on your existing knowledge, but you&#8217;ll find that you fall behind pretty quickly. It can be difficult to focus on learning new skills on the regular, especially when it&#8217;s (maybe) a technical skill that you&#8217;re really not interested in, but is required due to things you have to support during your day job. I find that curiosity helps with the resistance in this situation.</p><p>There are certain technical skills that I&#8217;ve committed to training myself on over the course of 2026, but they aren&#8217;t always the most interesting (I&#8217;ll plan a future blog post on this). What I find works well for me is to spend a little time digging into something that I AM highly interested in prior to tackling the &#8220;un-interesting&#8221; skill. For example, I&#8217;ve long been curious about <a href="https://unity.com/">Unity</a>. While I&#8217;m not officially a programmer, I dabble. On top of that, I&#8217;ve been playing video games now for nearly 40 years, which is basically how long I&#8217;ve been able to properly use a controller. As such, I&#8217;ve always had an interest in tinkering with game engines and maybe someday building my own game.</p><p>With that said, the sequence I&#8217;ve found that works well for learning those &#8220;un-interesting&#8221; skills is the following:</p><p>&#183; Define a training time period</p><p>&#183; Start with a short session tinkering / training on something that actively interests you. (Unity in my case)</p><p>&#183; Actively work on the training / tech that you&#8217;re obligated to work on</p><p>&#183; Repeat sequence as needed</p><p>Is this context switching? Yes&#8230; to a degree, and yes, I do hate context switching. But, session lengths should be long enough to where it doesn&#8217;t really have an impact. For example, I follow the pomodoro method for just about everything. In this context, I&#8217;ll tinker with unity for 25 minutes (one pomodoro) and then commit 2 pomodoros to the other training need.</p><p>This method helps make sure that I learn the skills that I need to learn for external reasons, while also keeping my brain engaged and in &#8220;learning mode&#8221;.</p><p>Hopefully this will be as helpful to you as it is to me!</p><div><hr></div><h2>Community Signal</h2><p><em>High-signal community work worth your attention.</em></p><p><strong><a href="https://www.linkedin.com/in/elstonryan/">Ryan Elston</a> &#8211; <a href="https://relston.github.io/markdown/writing/2024/07/31/why-use-markdown.html?utm_source=chatgpt.com">Why I Use Markdown and Why You Should Too</a></strong></p><p>As I&#8217;ll shortly be singing the praises of Markdown later in this newsletter, this article by Ryan Elston seemed to be highly relevant. In this post Ryan covers why Markdown is a highly valuable documentational language and even provides a great argument for why you <em>SHOULD</em> be using markdown along with some markdown authoring tools to get started!</p><p><strong><a href="https://www.mikefrobbins.com/">Mike Robbins</a> - <a href="https://mikefrobbins.com/2025/09/18/write-clear-step-by-step-instructions-using-markdown/">Write clear step-by-step Instructions Using Markdown</a></strong></p><p>Mike Robbins is also a fantastic source of information about markdown as well as how to properly use it in a how-to format. It&#8217;s worth noting that Mike is also a great source of PowerShell scripting knowledge as well! His blog is highly recommended!</p><div><hr></div><h3>Question I Got Asked (and the Real Answer): &#8220;Why are you obsessed with the CLI and markdown?&#8221;</h3><p>Boy, it&#8217;s been a <em>very</em> commentary heavy week for me throughout this edition, but I feel like this will all provide some value (at least I hope it does).</p><p>Those that watch / listen to <a href="https://www.sysadminweekly.com/">The SysAdmin Weekly Podcast</a> know that I am an absolute CLI and Markdown nerd. My co-hosts have even made fun of me during certain episodes, which is warranted if I&#8217;m honest about it.</p><p>It so happens that I have had this question levied at me several times over the past couple of weeks:</p><blockquote><p>*&#8220;Why are you obsessed with the CLI and markdown?&#8221;</p></blockquote><p>First, valid question. Second, I&#8217;ll plan on a long form blog post or YouTube video (maybe both?) that explains my method and the &#8220;Why?&#8221; behind it.</p><p>In short I author <strong>ALL</strong> of my content using the following tools:</p><p>&#183; <a href="https://github.com/kovidgoyal/kitty">Kitty (A terminal emulator)</a></p><p>&#183; <a href="https://www.vim.org/">vim (A CLI-based text editor)</a></p><p>&#183; <a href="https://git-scm.com/">Git</a>, <a href="https://www.github.com/">GitHub</a>, &amp; <a href="https://about.gitea.com/">Gitea</a> (to act as change tracking methods &amp; content repositories)</p><p>&#183; <a href="https://en.wikipedia.org/wiki/Markdown">Markdown (my documentational language of choice)</a></p><p>&#183; <a href="https://github.com/jgm/pandoc">Pandoc (for converting markdown content to finalized formats)</a></p><p>To keep it short and straight to the point here, the core reasons &#8220;Why?&#8221; are as follows:</p><p>&#183; I&#8217;m an easily distracted person, and CLI UIs are clean, focused, and purpose-built.</p><p>&#183; Markdown is a defined and rule-driven documentational language that should output in concise formatting regardless of the author, assuming markdown principals are followed.</p><p>&#183; As part of my job and my tech community efforts I spend <em>A LOT</em> of time authoring content of various types.</p><p>&#183; A CLI environment paired with markdown prevents context switching, enables focus, and insures unified and consistent output.</p><p>&#183; By using Git and Git-compatible repos I get the full benefit of code-review, pull requests, and commit history through the lifespan of the content</p><p>I&#8217;ll plan on covering this in a future blog post in more depth or via a podcast episode, but if you have questions you can reach out to me <a href="https://www.linkedin.com/in/asyrewicze">on LinkedIn</a> or feel free to start a thread on the <a href="https://www.github.com/ProjectRunspace/sysadmin-weekly">SysAdmin Weekly GitHub Discussion Board</a>!</p><div><hr></div><h2>Until Next Week</h2><p>Thanks for hanging out with us for another week! May you remain curious in your SysAdmin journey, and may your packets continue to flow as planned throughout the weekend!</p><p>Stay frosty!</p><p>Andy @ <span class="mention-wrap" data-attrs="{&quot;name&quot;:&quot;SysAdmin Weekly&quot;,&quot;id&quot;:5117965,&quot;type&quot;:&quot;pub&quot;,&quot;url&quot;:&quot;https://open.substack.com/pub/sysadminweekly&quot;,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ef9c2b75-70c2-44de-8aed-ee56a7d41847_1280x1280.png&quot;,&quot;uuid&quot;:&quot;8481fc10-1fb4-434b-b717-9f0f87aef215&quot;}" data-component-name="MentionToDOM"></span> </p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading! New Here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #19: Trust, But Verify the Abstraction]]></title><description><![CDATA[Why understanding what's under the hood still matters]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-19-trust-but-verify</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-19-trust-but-verify</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 22 Jan 2026 17:30:01 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!w6B-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Welcome back to your regular SysAdmin Weekly Newsletter! After a few weeks off for the holidays plus some time to get our bank of Podcast episodes built back up, here is your first weekly newsletter of 2026!</p><div><hr></div><h2>&#9193; TL;DR &#8211; This Week in SysAdmin Land</h2><p>&#8226; Abstraction is great&#8230; until the dashboard lies to you. A real-world Kubernetes + Longhorn storage lesson on why &#8220;schedulable&#8221; doesn&#8217;t always mean usable.</p><p>&#8226; Running stateful workloads on Kubernetes still requires understanding the underlying storage mechanics, replicas, disk sizing, and node-level constraints matter.</p><p>&#8226; SysAdmin Weekly now has an official GitHub Discussions home for announcements, technical discussions, polls, and general sysadmin banter.</p><p>&#8226; New podcast episode out: <em>The Hidden Dangers of Abstraction in Modern IT</em>  that covers why deep technical understanding still matters in 2026.</p><p>&#8226; Community signal worth your time: a grounded take on why you probably don&#8217;t need 10 Gbps home fiber, and a smart rethink of how GitHub Copilot should actually be used.</p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><h2>From the Console</h2><p><em>I was reminded to embrace curiosity in IT again this past weekend</em></p><p>In perfect timing with our episode regarding abstraction in modern IT (more on that below), I was reminded to embrace curiosity and not blindly trust / follow abstraction layers in modern software.</p><p>As many who watch the podcast know, I&#8217;ve been slowly converting many of the workloads in my homelab into containers running on a (now) 4-node <a href="https://github.com/k3s-io/k3s">K3S (Kubernetes Lite)</a> cluster. This project was brought on by a number of things:</p><p>&#183; I&#8217;ve always leveraged platforms like <a href="https://learn.microsoft.com/en-us/azure/aks/what-is-aks">Azure Kubernetes Service</a> and wanted to get up to speed on running local Kubernetes</p><p>&#183; I&#8217;ve got aging hardware in my homelab and getting everything to follow Hyper-V best practices is&#8230;. difficult</p><p>&#183; Distributed Architecture has always been highly interesting to me</p><p>&#183; Many of the workloads I run benefit from being stateless</p><p>&#183; I&#8217;ve rediscovered my love of all things open-source recently, and have taken steps to start using more stuff from the FOSS ecosystem</p><p>While, yes, many of the workloads I run can benefit from being stateless, I have several workloads that <em>MUST</em> be persistent, and as such, require persistent storage for data, state, etc&#8230;etc. To facilitate this in a clustered and highly-available fashion, I&#8217;ve deployed <a href="https://longhorn.io/">Longhorn</a> to the cluster to provide distributed block storage across the cluster.</p><p>It&#8217;s an amazing system really. Unlike hypervisor clusters that require high degrees of compatibility checks, fabric deployment &amp; management, etc, Longhorn makes storage configuration STUPID easy. Once setup and configured on the cluster, anytime a new node is added to the existing cluster, Longhorn will automagically ingest the available storage. Storage is spread in a redundant fashion across all the available nodes and fault domains are automatically defined and configured. Abstraction at it&#8217;s finest. This is where some of my assumptions caught me by surprise. Here is my high-level storage status for the cluster:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CuVv!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CuVv!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 424w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 848w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 1272w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CuVv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png" width="1456" height="690" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:690,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Longhorn Storage Dashboard on K3S&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Longhorn Storage Dashboard on K3S" title="Longhorn Storage Dashboard on K3S" srcset="https://substackcdn.com/image/fetch/$s_!CuVv!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 424w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 848w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 1272w, https://substackcdn.com/image/fetch/$s_!CuVv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6e828e63-90ec-4d6a-ae78-d48949e46a94_3826x1812.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>Longhorn Storage Dashboard on K3S</em></p><p>At first glance you could make the (reasonable) assumption that:</p><p>&#183; 459Gi Schedulable = Storage I Can Use</p><p>&#183; 226Gi Reserved = Reserved Storage for Data Parity and Safety</p><p>&#183; 68.3Gi Used = Storage that the cluster is actively using</p><p>Imagine my surprise then when I carved off 100Gi for a persistent Debian <a href="https://wiki.debian.org/AptCacherNg">Apt-Cacher</a> container that the volume would fail to mount or do anything meaningful. See, on the surface, everything seems to work. It seems like I would have PLENTY of room for this workload. However, this is where abstraction was lying to me.</p><p>To make a long story short, my limitation is <strong>NOT</strong> the 459Gi number. The <em>REAL</em> limitation is the smallest available schedulable disk on any node that must hold a replica after accounting for:</p><p>&#183; Replica count</p><p>&#183; Reserved space</p><p>&#183; Disk pressure thresholds</p><p>This is information that which had not been presented to me on the dashboard. A 100Gi volume with three replicas needs ~300Gi total and each replica <em>MUST</em> fit entirely on a single disk. If one node can&#8217;t fit said 100Gi replica&#8230;. game over. No volume attachment for you.</p><p>Once I put my assumptions aside, <a href="https://youtu.be/lhiiYpGVVtQ?si=CJM73_z-p4rKPGcV">got curious</a>, and acknowledged that this was a case where an abstraction layer was hiding the truth from me, I got the manual out and really dug into how Longhorn handles it&#8217;s underlying storage. Once I had that deep technical understanding of the underlying storage system, I was able to make informed decisions without solely relying on the abstraction layer, and ultimately get my workload up and off the ground after making different architectural decisions.</p><p>It was sobering to run into the very dangers of abstraction that we had JUST gotten done talking about on SysAdmin Weekly so quickly after posting that episode (last week - see below). Also, to be fair to Longhorn, that information is surfaced within the dashboard, just not in <em>THAT</em> particular view. This is, again, how abstraction (and assumptions) can get you into trouble.</p><p>So remember, when you run into a situation where things seem one way, but you have that gut feeling that not all appears as it should, ask yourself if you have all the information. Do you truly understand everything under the hood? You&#8217;ll be a better SysAdmin for it.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!w6B-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!w6B-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!w6B-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;A person pointing at a large box\n\nAI-generated content may be incorrect.&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A person pointing at a large box

AI-generated content may be incorrect." title="A person pointing at a large box

AI-generated content may be incorrect." srcset="https://substackcdn.com/image/fetch/$s_!w6B-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!w6B-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd0d1800a-4bcf-40d9-93ee-a8aba004fcf7_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now&#8230;. on to our regularly scheduled programming!</p><h2>SysAdmin Weekly Announcements</h2><p>As I&#8217;ve mentioned in several episodes of the podcast, we&#8217;ve been working on a defined community &#8220;hangout&#8221; spot that we can use for announcements, community conversations, knowledge sharing, questions, polls&#8230;etc&#8230;etc. Well I&#8217;m happy to announce that said initiative is complete and we now have an official GitHub Discussions repository setup specifically for this purpose.</p><p>You can <a href="https://www.github.com/ProjectRunspace/sysadmin-weekly">find the SysAdmin Weekly GitHub Discussions Repository Here!</a></p><h3>Why GitHub Discussions?</h3><p>My one hard requirement for any community gathering place was low barrier of entry. Applications like Discord / Slack, while good, require users to download an app and / or setup an account. MOST SysAdmins will already have a GitHub account and GitHub is widely supported in both desktop web browsers as well as on mobile.</p><p>The notifications system is simple as well. For example:</p><p>&#183; If you just want a quick shortcut to the SysAdmin Weekly discussions repo, just star it.</p><p>&#183; If you want granular notifications based on activity, &#8220;watch&#8221; the repo instead.</p><h3>What Type of Content Can We Expect There?</h3><p>You can expect to find:</p><p>&#183; Show / Newsletter Announcements</p><p>&#183; Discussion Posts for the latest episode / edition of both the podcast AND the newsletter</p><p>&#183; Polls about content you&#8217;d like to see more of on the show</p><p>&#183; Technical Discussions</p><p>&#183; Q &amp; A</p><p>&#183; Helpful scripts / tools <a href="https://github.com/ProjectRunspace/sysadmin-weekly/discussions/4">like I posted here</a></p><p>&#183; Friendly Banter</p><p>&#183; Etc&#8230;</p><h3>What Do I Need to Do to Get Started?</h3><p>Outside of setting up a GitHub account in the off chance you don&#8217;t have one? Nothing! Feel free to check it out and <a href="https://github.com/ProjectRunspace/sysadmin-weekly/discussions/5">Introduce yourself, if you&#8217;d like! (optional)</a></p><div><hr></div><h2>&#127897; The Latest on the SysAdmin Weekly Podcast</h2><p><strong><a href="https://youtu.be/5ic4Pozot44?si=4Pg2htD4qVbd0rTt">SysAdmin Weekly - 036:</a></strong><a href="https://youtu.be/5ic4Pozot44?si=4Pg2htD4qVbd0rTt"> The Hidden Dangers of Abstraction in Modern IT</a></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://youtu.be/5ic4Pozot44" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6BRe!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6BRe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;SysAdmin Weekly Podcast Episode 036&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:&quot;https://youtu.be/5ic4Pozot44&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="SysAdmin Weekly Podcast Episode 036" title="SysAdmin Weekly Podcast Episode 036" srcset="https://substackcdn.com/image/fetch/$s_!6BRe!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!6BRe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d9aa12d-5bc6-4963-a9a0-8be9acf9c097_1280x720.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>SysAdmin Weekly Podcast Episode 036</em></p><p><strong>Topic:</strong> In our first episode of 2026, Andy and Eric dive into the topic of rampant abstraction in modern IT. While yes, abstraction layers have solved many scaling issues over the last decade, there <em>IS</em> a hidden cost. Do SysAdmins still have that deep technical understanding of the entire stack? This episode explores that question in depth!</p><p>Why this one matters:</p><p>&#183; This episode highlights the dangers of relying heavily on abstracted features &amp; deployments without deep understanding</p><p>&#183; Should something break under abstraction layers, SysAdmins are often at the mercy of a vendor to solve the issue.</p><p>&#183; This epsiode contains some tips and tricks to help you ensure that your skills are at a point where you can benefit from abstraction layers, but NOT be dependent on them.</p><div><hr></div><h2>Community Signal</h2><p>Here are some super-cool community links I&#8217;ve stumbled upon recently. Highly recommended!</p><p><strong><a href="https://blog.workinghardinit.work/2026/01/04/do-i-really-need-10gbps-fiber-to-the-home/">Didier Van Hoye &#8211; Do I really need 10 Gbps fiber to the home?</a></strong></p><p>Didier cuts through the marketing noise around ultra-fast residential fiber and lands on a conclusion most practicing SysAdmins already know: raw bandwidth is rarely the real bottleneck. Using his own home setup as an example, he shows how a relatively modest fiber connection is more than sufficient for remote work, lab access, and day-to-day operations, especially when most heavy lifting stays local. The real value here is the reminder that stability, latency, and realistic workload analysis matter far more than chasing headline speeds, and that blindly upgrading capacity without a matching use case is just another form of abstraction-driven decision making.</p><p><strong><a href="https://www.m365princess.com/blogs/lego-copilot-wrong1/">Luise Freese &#8211; Stop using GitHub Copilot as a chatbot!</a></strong></p><p>Luise takes a hard look at the common pattern of treating GitHub Copilot like a chat-based coding partner and explains why that workflow almost always feels fragile and slow. This is not because the model is dumb, but because the interaction model is unstable. Rather than prompt, re-prompt, and steer in chat until something sticks, the article argues that you get far better results by encoding <strong>stable constraints and task definitions in files</strong> before ever calling Copilot, so the model can actually execute against known invariants instead of chasing shifting context. This post reframes Copilot from a reactive autocomplete toy into a <strong>tool that thrives within explicit structure</strong>, which is a valuable shift in mindset for anyone trying to use AI in software development.</p><div><hr></div><h2>From <a href="https://www.andyontech.com/">AndyOnTech</a> and <a href="https://www.projectrunspace.org/">Project Runspace</a></h2><h3><a href="https://www.andyontech.com/">AndyOnTech</a></h3><p>Regular listeners of the podcast will know I went on something of a&#8230;. &#8220;rant&#8221; during the last podcast episode of the year. In said rant, I explained how there are no longer any <em>good</em> web browsers available in the marketing today. I recently posted a lengthy blog post along the same lines if you&#8217;re interested. I&#8217;ve linked that below, along with the Podcast episode from late last year on the same topic:</p><p>&#183; <a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/">There Are No </a><em><a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/">Good</a></em><a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/"> Web Browsers Left (and It Is a </a><strong><a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/">BIG</a></strong><a href="https://www.andyontech.com/posts/there_are_no_good_web_browsers_left_and_thats_a_problem/"> Problem)</a></p><p>&#183; <a href="https://youtu.be/M5iNEIV7jIM?si=SgJF-0P0Bgw0h5fv">SysAdmin Weekly - 035 - AI Browsers, Chromium Monoculture, and the Future of Browser Security</a></p><div><hr></div><h2>Handy Tool - <a href="https://www.github.com/asyrewicze/pomocli">Pomocli</a></h2><p>Full disclosure: This week I am selfishly promoting my own tool. That said, I can hardly call it a &#8220;tool&#8221; and more of a &#8220;anti-context switcher&#8221;. Folks that know me know I&#8217;m a BIG markdown guy and love to create my content within the terminal. Context switching is <em>highly</em> impactful on my output, so I go to great lengths to prevent it if possible.</p><p>Awhile back I had released a very simple cli tool called Pomocli that acted as a terminal-based <a href="https://en.wikipedia.org/wiki/Pomodoro_Technique">pomodoro timer</a>. It would ask what you planned on working on, log that to a text file, then start a timer. I always liked it&#8217;s lightness&#8230;. but hated how it looked. I recently started tinkering with building basic UIs using <a href="https://en.wikipedia.org/wiki/Ncurses">Ncurses</a> and Python. As a result, I decided to rebuild Pomocli with a curses-based UI that still fills the same role with the added feature of allowing you to browse previous work sprints.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://www.github.com/asyrewicze/pomocli" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!aWEC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 424w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 848w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 1272w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!aWEC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png" width="906" height="584" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:584,&quot;width&quot;:906,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Pomocli image&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:&quot;https://www.github.com/asyrewicze/pomocli&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Pomocli image" title="Pomocli image" srcset="https://substackcdn.com/image/fetch/$s_!aWEC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 424w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 848w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 1272w, https://substackcdn.com/image/fetch/$s_!aWEC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc312e63e-73c9-4b67-b80e-21f9ca535005_906x584.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>Pomocli image</em></p><p>You can find Pomocli <strong><a href="https://www.github.com/asyrewicze/pomocli">HERE</a></strong></p><p>I hope you all find it as useful as I do!</p><div><hr></div><h2>Until Next Week</h2><p>Thanks for reading this week&#8217;s edition! I really hope everyone is enjoying the new, more conversational format! If you have any feedback or would like to see a specific topic discussed, be sure to let us know on the <a href="https://www.github.com/ProjectRunspace/sysadmin-weekly">SysAdmin Weekly GitHub Discussions Board</a>!</p><p>May your systems stay running, and may you avoid maintenance at 5pm on a Friday!</p><p>Stay Frosty!</p><p>--Andy @ SysAdmin Weekly </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #18: Craft, Shovelware, and the Cost of "Good Enough"]]></title><description><![CDATA[Why modern software keeps failing operators and why SysAdmins pay the price]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-18-craft-shovelware</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-18-craft-shovelware</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Wed, 17 Dec 2025 13:28:23 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!onl_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>&#9193; TL;DR &#8211; This Week in SysAdmin Land</h2><p>&#183; The newsletter is evolving! This means fewer link dumps, more opinion, commentary, and real-world SysAdmin pain from the trenches.</p><p>&#183; Theme of the week: <strong>Craft vs. Shovelware</strong> and why modern software feels more brittle, less thoughtful, and far more hostile to operators.</p><p>&#183; A real-world rant with receipts: Microsoft Authenticator quietly falling over once you manage <em>a lot</em> of accounts&#8230; and the only fix being &#8220;nuke from orbit and start over.&#8221;</p><p>&#183; The latest SysAdmin Weekly Podcast digs deeper into &#8220;good enough&#8221; software and why SysAdmins are the ones paying the price for it.</p><p>&#183; Community Signal highlights thoughtful takes on whether software is actually getting worse. Plus practical Azure Local update guidance you&#8217;ll actually need.</p><p>&#183; Other links worth your time this week include one rock-solid security podcast and one non-technical sanity-preserver (because balance matters).</p><p>&#183; Looking ahead: plans to spin up <strong>GitHub Discussions</strong> as a low-friction, SysAdmin-friendly place to keep conversations going beyond the podcast and newsletter.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>An Update on the Newsletter</h2><p>First off, I&#8217;m sensitive to the fact that we&#8217;ve been away on this newsletter for quite sometime (4 weeks?) and I&#8217;m also very aware that I&#8217;ve provided MANY &#8220;Updates on the Newsletter&#8221; like this over the last month or two. The fact of the matter comes down to two things:</p><p>1. With the day job, the podcast, and a VERY time intensive side-project I&#8217;ve been working on, getting to this newsletter has been inconsistent and difficult.</p><p>2. I haven&#8217;t been 100% feeling the &#8220;vibe&#8221; of the newsletter format we&#8217;ve been using up until this point. Statistically &#8220;Link-dump&#8221; newsletter are one of the most common and while, yes, they can provide some value depending on the quality of the links, dumping a collection of links each an every week just to provide a collection of links doesn&#8217;t produce CONSISTENT value that I personally find worthy of your time.</p><p>Moving forward this newsletter will serve as much more of a commentary and opinion-based newsletter remaining laser-focused on SysAdmins and the challenges they face in the trenches every day. Will there still be some links? Sure, but the format will change to content that is much more conversational in style which provides a better backdrop for me to produce that CONSISTENT value that I want to provide this community.</p><p>If you have comments or concerns about the new direction, do let me know in the discussion section below!</p><div><hr></div><h2>From the Console</h2><p>Our theme for this week&#8217;s edition of the newsletter focuses on &#8220;Craft vs. Shovelware&#8221;. I&#8217;ve been in the industry long enough now to recognize that software <em>seems</em> to be more brittle and problematic now than it used to. The amount of times that I&#8217;ve had to employ some sort of workaround to a seemingly simple-to-solve bug in order to keep production live has certainly increased over the years. And yes, our environments are wildly more complex than they used to be what with cloud and hybrid deployments and yes, that introduces EXTRA chances for breakage. This does not however account for cases where applications operate in a way that is woefully unhelpful to the user.</p><p>I&#8217;ll provide my own example on this one. I have been a LONG time user of the Microsoft Authenticator app for MFA and Identity services across a number of tenants in Entra ID and various 3rd party accounts. As of this writing I have around 43 different accounts managed within the Microsoft authenticator app. One day, I tried to add account number 44 to the app and I get hit with a big nasty &#8220;device token error&#8221;. Long story short, it seems I&#8217;ve hit a community-experienced, but non-Microsoft documented issue with the authenticator app where either there is a some soft-limit on number of accounts or there is underlying token corruption. Either way, I am unable to add any more accounts until I rip and restore ALL 43 accounts currently in my authenticator app&#8230;.. needless to say&#8230; I was NOT impressed.</p><p>As mentioned, Microsoft has never documented a maximum number of accounts supported by the Microsoft Authenticator app (that I&#8217;ve been able to find). However, there is substantial real-world community evidence that the app does not scale reliably for users managing dozens of tenants / accounts. Admins frequently report that once they reach a high number of accounts, Authenticator begins failing to add new accounts or register push notifications, often producing vague registration failures or &#8220;device token errors&#8221;. One commonly cited message states: <em>&#8220;Error changing device token. You must delete and reactivate your accounts to correct the issue,&#8221;</em> effectively forcing a full MFA re-registration across all accounts.</p><p>Microsoft&#8217;s public documentation focuses instead on per-user Entra ID limits (such as the five registered authenticator devices limit), while offering little guidance on app-level scalability or token exhaustion. <a href="https://learn.microsoft.com/en-us/answers/questions/349821/microsoft-authenticator-app-stop-receiving-push-no">Community discussions on Microsoft Q&amp;A</a> and <a href="https://www.reddit.com/r/entra/comments/1m37q4r/microsoft_authenticator_issues_failed_to_register/">Reddit</a> consistently describe these token-related failures and the same recommended remediation of &#8220;delete and re-register&#8221; suggesting an undocumented Authenticator scalability or push token management issue rather than isolated user misconfiguration.</p><p>Which brings me to my point of this whole rant about software quality in the modern day and user-expected app behavior. I&#8217;m completely fine with imposed limitations on software (such as max number of supported accounts) as that is something that I, as a SysAdmin, can plan and architect for. What I would have expected in this situation, if my suspicions about scalability and token issues are correct, is a warning at ~30 accounts &#8220;Max number of accounts reached&#8221;. Instead we get silent breakage, and to quote Ultron from Avengers: Age of Ultron,&#8230;&#8220;Boom&#8230; the end&#8230; start again&#8221;.</p><p>All this is to say, software development needs to once again be given the time and consideration to be a &#8220;Craft&#8221; again. What we currently seem to have is a hastily built software &#8220;content-pipeline&#8221; that is designed to push features extra-fast and squeeze maximum revenue from every byte. Something&#8217;s got to give.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!onl_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!onl_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!onl_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!onl_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!onl_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!onl_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;SysAdmin And Developer Rush to Make Software while Business Exec Greedily Watches&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="SysAdmin And Developer Rush to Make Software while Business Exec Greedily Watches" title="SysAdmin And Developer Rush to Make Software while Business Exec Greedily Watches" srcset="https://substackcdn.com/image/fetch/$s_!onl_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!onl_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!onl_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!onl_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2b288abe-a083-4e82-86ac-b808291ebf03_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now, back to our regularly scheduled programming.</p><div><hr></div><h2>&#127897; The Latest on the SysAdmin Weekly Podcast</h2><p>This week I had regular co-host <a href="https://www.linkedin.com/in/ericsiron/">Eric Siron</a> back on the show to discuss the very issue of &#8220;Good Enough&#8221; software mentioned above. You&#8217;ll find that it&#8217;s deeply attuned to this week&#8217;s theme.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Oy7l!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Oy7l!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Oy7l!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;SysAdmin Weekly Episode 034 Thumbnail Image&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="SysAdmin Weekly Episode 034 Thumbnail Image" title="SysAdmin Weekly Episode 034 Thumbnail Image" srcset="https://substackcdn.com/image/fetch/$s_!Oy7l!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!Oy7l!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3925b7e1-7b87-402e-baec-b056119e4823_1280x720.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>SysAdmin Weekly Episode 034 Thumbnail Image</p><p><strong>Episode:</strong> &#8220;Good Enough&#8221; Software is Ruining IT (and SysAdmins are Paying the Price)</p><p><strong>Topic:</strong> Software enshitification has been a real issue in the industry lately and there are real consequences (both spoken and not) of that fact. One of those consequences is the fact that SysAdmins are usually the ones that are facing the full brunt of poorly written software that was deemed &#8220;good enough&#8221; at some point. In this episode Eric and I (Andy) discuss the state of software in our industry while lamenting a time when software was a craft, and NOT just a content pipeline.</p><p>Episode links below:</p><p>&#183; <a href="https://youtu.be/61-jOdlsFyA?si=fZdN0-sEhxFPuA7f">SysAdmin Weekly on YouTube</a></p><p>&#183; <a href="https://open.spotify.com/episode/6uUdRBvUHpo15x6h2dXpEO?si=2DfSdfkuSoiTtXfwYAkwRw">SysAdmin Weekly on Spotify</a></p><p>&#183; <a href="https://podcasts.apple.com/us/podcast/sysadmin-weekly/id1809209683?i=1000741035753">SysAdmin Weekly on Apple Podcasts</a></p><p>&#183; <a href="https://www.sysadminweekly.com">SysAdmin Weekly Website</a></p><div><hr></div><h2>Community Signal</h2><p>While researching the aforementioned issues regarding this week&#8217;s theme. I did happen upon some useful community posts along the same vein or similar:</p><ul><li><p><a href="https://stackoverflow.blog/2023/12/25/is-software-getting-worse/">This older post on the Stackoverflow Blog</a> by <a href="https://stackoverflow.blog/author/isaac-lyman/">Issac Lyman</a> that asks the question &#8220;Is software getting worse?&#8221; Issac has a very fair and reasoned look at the question, and even though I&#8217;m not a developer, I greatly enjoyed reading it. I highly suggest you check it out.</p></li><li><p>I also wanted to include some practical SysAdmin help from the community this week, starting with <a href="https://www.thomasmaurer.ch/2025/12/manage-azure-local-updates/">How to Keep your Azure Local Instances Up to Date</a> by <a href="https://www.thomasmaurer.ch">Thomas Maurer</a>! More SysAdmin&#8217;s are finding themselves in a situation where they&#8217;re starting to rollout Azure Local, so this knowledge is a MUST have.</p></li></ul><div><hr></div><h2>Other Links Worth Your Time</h2><p>As I&#8217;m a regular podcaster, I often get asked which podcasts do I regularly listen too. I&#8217;ll provide one of my favorite technical podcasts, and one more&#8230;. hobby related.</p><ul><li><p>My technical podcast recommendation is very security related, and I&#8217;ve mentioned it on <a href="https://www.sysadminweekly.com">SysAdmin Weekly</a> several times. That is the <a href="https://twit.tv/shows/security-now">Security Now Podcast</a> featuring <a href="https://www.grc.com">Steve Gibson</a>. Steve does an AMAZING job of explaining cybersecurity topics and when you listen to an episode of this show, you&#8217;ll learn more about the given topic then you ever thought possible! Highly recommended!</p></li><li><p>My NON-technical choice has to do with my long-standing gaming addiction. I&#8217;ve been playing video games since I was old enough to hold a controller and I love listening to <a href="https://www.rememberthegamepodcast.com/">Remember the Game</a>. Adam (the host) does an amazing job of keeping things interesting and funny. If you&#8217;re a long time gamer like me, you won&#8217;t regret putting this one on your list.</p></li></ul><div><hr></div><h2>Building the SysAdmin Weekly Community</h2><p>A final closing note on my efforts to continue developing our growing community. It&#8217;s come to our attention that we need a place that is quicker when it comes to communications. Something that can be used for announcements as well ongoing discussion. While we could certainly comment on each episode posting as well as the newsletter comment sections here, the goal is to have a centralized location where most of the community conversation happens.</p><p>As it stands, I&#8217;m currently looking at using <a href="https://github.com/features/discussions">Github Discussions</a> for this purpose. Most SysAdmins will already have a Github account, and it doesn&#8217;t require a new app to be installed, so the barrier to entry is low. Be on the lookout for this new hangout in the coming weeks.</p><div><hr></div><h2>Retro SysAdmin Fact of the Week</h2><p>Don&#8217;t forget. For years, many enterprise systems treated a two-digit year as &#8220;good enough&#8221; and it could have taken down the world.</p><p>The <a href="https://en.wikipedia.org/wiki/Year_2000_problem">Y2K problem</a> wasn&#8217;t a mysterious bug or media hysteria; it was the logical outcome of early storage constraints and yes, short-term thinking. To be fair, saving two bytes per record mattered when memory and disk were measured in kilobytes. Meaning developers stored years as YY instead of YYYY. This &#8220;temporary workaround&#8221; quietly became the norm. When that calendar rolled to 2000, systems didn&#8217;t fail because they were old, they failed because, let&#8217;s face it, no one expected them to still be mission-critical 10, 20 or 30 years later. Y2K remains one of the most successful IT and SysAdmin remediation efforts in history.</p><p>See? The concept of &#8220;we&#8217;ll fix it later&#8221; has been around for a VERY long time.</p><h2>Until Next Week</h2><p>Thanks for reading this week&#8217;s edition! If you haven&#8217;t yet, be sure to hit that subscribe button. It&#8217;s free and you&#8217;ll get useful, maximum-uptime quality content in your mailbox every week to help you in the SysAdmin trenches. Also feel free to share with another SysAdmin. For real&#8230;. we want to help as many people out of unintended systems outages as possible.</p><p>Additionally you can always find all the links associated with this newsletter and the podcast at <a href="https://www.sysadminweekly.com">www.sysadminweekly.com</a>.</p><p>Until next week! Stay Frosty!</p><p>-Andy<br>SysAdmin Weekly</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p></p>]]></content:encoded></item><item><title><![CDATA[SysAdmin Weekly #17: Patch, Pivot, and the Path to Cyber Know-How]]></title><description><![CDATA[Bridging the gap between routine maintenance and real security mastery.]]></description><link>https://newsletter.sysadminweekly.com/p/sysadmin-weekly-17-patch-pivot-and</link><guid isPermaLink="false">https://newsletter.sysadminweekly.com/p/sysadmin-weekly-17-patch-pivot-and</guid><dc:creator><![CDATA[Andy Syrewicze]]></dc:creator><pubDate>Thu, 30 Oct 2025 18:02:39 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!L_y0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<h2>&#9193; TL;DR - This Week in SysAdmin Land</h2><p>&#183; We&#8217;ve got a truly spooky Halloween-themed podcast this week (because who doesn&#8217;t like horror stories with servers?).</p><p>&#183; Major critical patch alert: CVE&#8209;2025&#8209;59287 in Windows Server Update Services (WSUS) is actively exploited - if you run WSUS, patch <em>now</em>.</p><p>&#183; We&#8217;re revisiting network fundamentals with the OSI model - yes, dust off your layer cake, we&#8217;re serving up layer 1 to 7 for your next troubleshooting session.</p><p>&#183; Strong community content this week: Linux stress-testing, Azure Local overview, a data-driven look at Apple Silicon CPU core frequencies.</p><p>&#183; Tool of the Week: a slick terminal app that could become your new favourite toy.</p><p>&#183; Quick Win &amp; Retro Fact - because even infrastructure nerds deserve a little snack.</p><p>&#183; Wrap-up with a plug for next week&#8217;s podcast (you know you&#8217;ll listen).</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">&#128075; New here? Subscribe to SysAdmin Weekly for great IT content, and SysAdmin therapy.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>An Update on the Publication</h2><p>I greatly appreciate all the readers of this newsletter and you may have noticed an absence of the publication for the edition that was to come out two weeks ago. As folks that watch the podcast know, there has been A LOT of projects (both personal and professional) on my plate over the last month or two. This time of year is typically my busiest time of year and sadly something had to give. That said, I&#8217;m through my backlog, and looking forward to continue providing regular editions of this newsletter once again!</p><h2>This Week&#8217;s Insight(s) from Andy</h2><p><strong>Theme for this edition:</strong> <em>&#8220;Patch &amp; Pivot: From Fundamental Layers to Active Threats&#8221;</em><br>In this issue, we&#8217;re straddling both ends of the SysAdmin spectrum: going back to the bedrock with the OSI model (don&#8217;t roll your eyes yet) and facing forward into the very real, very active world of exploited vulnerabilities (yes, the WSUS one). The juxtaposition is intentional: whether you&#8217;re explaining Layer 3 routing to a junior or scrambling to fix a critical RCE in your update infrastructure, the mindset of &#8220;understand deep; act fast&#8221; is what differentiates the average from the excellent.</p><p>When it comes to cybersecurity, and more importantly achieving real security outcomes, the mantra &#8220;understand deep; act fast&#8221; can feel intimidating for those pivoting into the security space. But here&#8217;s the truth: cybersecurity pros are often the ones in the room who understand their tech stack *most* deeply.</p><p>Why? Because to truly secure something, you have to understand it from the kernel up. Every layer, every dependency, every quirk. Yet, in a world obsessed with abstraction, we&#8217;ve drifted away from the underlying mechanics that keep our systems alive. That blind spot? It&#8217;s exactly where threat actors love to play.</p><p>So how does that tie into this week&#8217;s theme Patch and Pivot? Patching is easy. Anyone can apply an update and move on. But pivoting? That&#8217;s where the real challenge lies. SysAdmins are now standing at the crossroads of IT and security, and the ones who thrive will be those who dig deeper the ones who move beyond &#8220;apply patch&#8221; and into &#8220;understand why it matters.&#8221; Because real defense starts where surface-level understanding stops.</p><p>So if you&#8217;re a SysAdmin today, don&#8217;t wait to be handed a security title, start learning the internals your tools hide. You can&#8217;t protect what you don&#8217;t understand.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!L_y0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!L_y0!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 424w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 848w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 1272w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!L_y0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png" width="1456" height="1425" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1425,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2841430,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://newsletter.sysadminweekly.com/i/177577492?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!L_y0!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 424w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 848w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 1272w, https://substackcdn.com/image/fetch/$s_!L_y0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7c5d7ba-87c8-407a-9e05-f6d9ecaafea4_2038x1994.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>And now, back to our regularly scheduled programming&#8230;..</p><h2>Latest on the SysAdmin Weekly Podcast</h2><p><a href="https://www.youtube.com/watch?v=uiLPBbkjuro">This week&#8217;s episode: Halloween &#8220;SysAdmin Horror Stories&#8221;</a> - join Andy as he and guests spin real-world tales where things went terrifyingly wrong in infrastructure, cloud, and on-prem. Yes, there&#8217;s ghosting, haunted servers, and maybe even a spectre of unmanaged firmware creeping through the data centre.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://www.youtube.com/watch?v=uiLPBbkjuro" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!WVKg!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 424w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 848w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 1272w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!WVKg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:&quot;https://www.youtube.com/watch?v=uiLPBbkjuro&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!WVKg!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 424w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 848w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 1272w, https://substackcdn.com/image/fetch/$s_!WVKg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d2cb5ae-3b15-4c3d-b26a-ebfecac0f899_1280x720.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2>What You Missed on Last Week&#8217;s Episode of SysAdmin Weekly</h2><p><a href="https://www.youtube.com/watch?v=IzoYALUvEJo">Last week&#8217;s episode: University IT training vs real-world readiness</a> - Andy and guest <a href="https://www.linkedin.com/in/clay-tamam-00b6441b3/">Clay Tamam</a> dove into whether formal IT degrees truly prepare sysadmins for the trenches, or if bootcamps, on-the-job hacks, and real mistakes carry more weight.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://www.youtube.com/watch?v=IzoYALUvEJo" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!IEsQ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!IEsQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:&quot;https://www.youtube.com/watch?v=IzoYALUvEJo&quot;,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!IEsQ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 424w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 848w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!IEsQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4760ee5f-fc20-4210-965f-0bd608145e5f_1280x720.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image buttonBase-GK1x3M"><svg aria-hidden="true" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg" class="icon-noB79L"><g><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image buttonBase-GK1x3M"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2 icon-noB79L"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2>Sneak Peek of an Upcoming Episode</h2><p>Next week: Andy and Eric talk about the &#8220;enshitification&#8221; of tech vendors and how vendor behavior has shifted from partner to parasite, what happens when the vendor plays you more than you play the tech, and what SysAdmins can do about it.</p><h2>From AndyOnTech</h2><p><a href="https://www.andyontech.com/posts/how_to_stress_test_linux/">How to stress-test Linux</a> - A clean, practical walkthrough on putting your Linux boxes through controlled chaos. Covers CPU, memory, GPU, and I/O stress testing with just enough explanation to understand what&#8217;s actually happening under the hood. It&#8217;s the kind of test you&#8217;ll wish you ran *before* production went sideways. Perfect weekend lab project for anyone running a home server or validating hardware stability.</p><h2>Core Fundamentals</h2><p><a href="https://en.wikipedia.org/wiki/OSI_model">The OSI model explained</a> - It&#8217;s old-school, yes, but still gold. Understanding each of the seven layers gives you the lens to pinpoint where things go sideways: from physical cabling (Layer 1) to application behavior (Layer 7).</p><h2>Helpful Community Content</h2><ul><li><p><a href="https://janbakker.tech/how-to-restore-deleted-entra-id-conditional-access-policies-and-named-locations/">How to restore deleted Entra ID conditional access policies and named locations</a> - From <a href="https://www.linkedin.com/in/jan-bakker/">Jan Bakker</a>: a lifesaver when someone nukes your conditional access by accident.</p></li><li><p><a href="https://www.thomasmaurer.ch/2025/10/new-video-azure-local-overview/">Azure Local overview video</a> - From <a href="https://www.linkedin.com/in/thomasmaurer2/">Thomas Maurer</a>: what Azure Local is, why you might need it, and how it fits with edge/distributed stuff.</p></li><li><p><a href="https://eclecticlight.co/2025/10/30/updated-cpu-core-frequencies-for-all-current-apple-silicon-macs/">Updated CPU core frequencies for Apple Silicon Macs</a> - Data-driven deep dive for the Apple side of the house. Cool geek reading.</p></li></ul><h2>Other SysAdmin Content from Vendors and Official Publications</h2><p>&#183; <a href="https://fedoramagazine.org/announcing-fedora-linux-43/">Fedora Linux 43 has been released</a> - New features, new kernel, new life for test labs maybe.</p><p>&#183; <a href="https://blogs.windows.com/windows-insider/2025/10/24/announcing-windows-11-insider-preview-build-26120-6982-beta-channel/">Windows 11 Insider Preview Build 26120.6982 (Beta Channel) announced</a> - If you&#8217;re running lab machines or poking at future client OS behavior: heads up.</p><h2>Security Headlines for SysAdmins</h2><p>&#183; <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-59287">Critical WSUS vulnerability: CVE-2025-59287 &#8211; patch immediately</a> - This one is <em>massive</em>. A remote, unauthenticated RCE in WSUS, CVSS 9.8, active exploits. If you have a WSUS server role enabled: stop reading, go patch. </p><p>&#183; <a href="https://www.cisa.gov/news-events/alerts/2025/10/14/cisa-adds-five-known-exploited-vulnerabilities-catalog?utm_source=chatgpt.com">Cybersecurity and Infrastructure Security Agency (CISA) updates their Known Exploited Vulnerabilities catalog</a> - They&#8217;ve flagged the WSUS vuln among others; this isn&#8217;t hypothetical anymore.</p><h2>Tool of the Week</h2><p><a href="https://ghostty.org/">Ghostty</a> - A slick terminal-application you&#8217;ll want to try: for those nights when typing at 3 AM and wondering whether your shell can be cooler. Go ahead, indulge your inner penguin.</p><h2>Quick Win of the Week</h2><p>Check your inventory/CMDB and ask the question: <strong>&#8220;Which servers have the WSUS Server role enabled and are listening on ports 8530 or 8531?&#8221;</strong> If you find any, prioritize patching or isolating them immediately. You might just win this week before the next alert hits.</p><h2>Fun Retro SysAdmin Fact</h2><p>Back in the day, the architecture for the mainframe and minicomputer era relied on multi-user terminals connected via RS-232 lines (often at 9600 bps). That meant many sysadmins were night-shift heroes with endless string lights of terminal screens. Integrity of those lights vs. modern dust-filled racks? It&#8217;s evolution, baby.</p><h2>&#9749; Wrap-Up</h2><p>Thanks for riding shotgun with me through this week&#8217;s edition of SysAdmin Weekly remember: &#8220;Fundamentals + Vigilance = Survival.&#8221; If you only take one thing from this newsletter, make it <strong>patch early, understand deeply</strong>.</p><p>Don&#8217;t forget to tune into the podcast over at <a href="https://www.sysadminweekly.com">www.sysadminweekly.com</a> and drop us a rating or share your own horror story (especially around midnight). Until next week: stay sharp, stay curious, and yes&#8230; stay spooky.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://newsletter.sysadminweekly.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading SysAdmin Weekly! Subscribe for free for new posts every week!</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item></channel></rss>