Notes from the racks

Cloud Insights for teams running production workloads

Cloud migration playbooks, managed Kubernetes practice, infrastructure cost control, backup and disaster recovery, and EU data residency — written by the engineers who operate the Antyxsoft platform, not by a content agency.

Written by platform engineers Field-tested, not theoretical New analysis every month

Latest articles

40 articles
Adding an offsite cloud repository to Veeam Backup/ 3 min read Adding an offsite cloud repository to Veeam Sizing the first backup copy job, throttling the link so it does not saturate the office, and verifying the chain once it lands offsite. Sep 6, 2026 The 3-2-1-1-0 rule, and where most estates fail it Backup/ 3 min read The 3-2-1-1-0 rule, and where most estates fail it What each digit of 3-2-1-1-0 actually requires, and the two gaps auditors and insurers find first in otherwise well-run backup estates. Sep 6, 2026 Writing a health check that tells the truth Networking/ 4 min read Writing a health check that tells the truth Why /ping is not enough, what a readiness endpoint should actually verify, and how to set intervals and thresholds so a load balancer reacts correctly. Sep 6, 2026 From one web server to a load-balanced pair Networking/ 4 min read From one web server to a load-balanced pair Sessions, uploads and cron jobs: the three things that break when you put a second server behind a load balancer, and how to fix each one. Sep 6, 2026 Rolling deployments behind a load balancer Networking/ 4 min read Rolling deployments behind a load balancer How to roll a release through a backend pool without cutting off in-flight requests: draining, keep-alive, migrations and when to go blue-green instead. Sep 6, 2026 A baseline firewall policy for a three-tier application security/ 5 min read A baseline firewall policy for a three-tier application The inbound and outbound rules to start from for web, application and data tiers — and the two that are almost always too permissive. Sep 4, 2026 Locking down SSH without locking yourself out security/ 4 min read Locking down SSH without locking yourself out Bastion patterns, break-glass access and the order to apply firewall changes in so you keep a way back into your own servers. Sep 4, 2026 Egress filtering: why outbound rules matter more than you think compliance/ 4 min read Egress filtering: why outbound rules matter more than you think Inbound rules stop an intrusion starting. Outbound rules decide how much it costs you once one already has. Sep 4, 2026 Designing a VPC: address ranges and subnet layout Networking/ 5 min read Designing a VPC: address ranges and subnet layout How to size cloud address space once — and lay out subnets so you never have to renumber a production network later. Sep 3, 2026

Infrastructure notes, once a month

Release notes, capacity updates and the occasional deep dive. No fluff, unsubscribe any time.