Outils incontournables du DevOps
5 familles : Versioning, CI/CD, Monitoring & Logging, Secrets, Collaboration. Inclut bonnes pratiques, anti-patterns, matrices comparatives, snippets & KPIs opérationnels.
Git/GitHub/GitLab/Bitbucket Jenkins · ArgoCD · Spinnaker Grafana · Kibana · Loki · NewRelic Vault · SOPS · AWS KMS Jira · Confluence · Slack/Teams
Cheat-sheet — capacité → outil → livrable → KPI
| Capacité | Outils | Livrables | KPIs | Guardrails |
|---|---|---|---|---|
| Versioning & PR | Git, GitHub/GitLab, CODEOWNERS | Branch protections, PR template, commit conv. | Lead-time < 48h, PR < 300 lignes | Scan secrets, reviews requises, signed commits |
| CI/CD & GitOps | Jenkins, Actions/GitLab CI, ArgoCD, Spinnaker | Pipeline YAML, artefacts signés, app GitOps | Déploiements quotidiens, échec < 10%, MTTR < 60m | Gates SAST/DAST/SBOM, OIDC→cloud, approvals |
| Observabilité | Prometheus, Grafana, Loki/ELK, OTel, NR | Dash SLO, alertes symptomatiques, runbooks | p95, erreurs, uptime (SLO), bruit < 2% | PII masquée, budgets log/traces, ownership dashboards |
| Secrets | Vault, SOPS, KMS, CSI | Policies, rotation, plans break-glass | Taux secrets exposés = 0, rotation < 90j | No long-lived keys, audit immuable, mTLS |
| Collaboration | Jira, Confluence, Slack/Teams | Templates incidents, ADR, post-mortems | Temps tri incident < 10m, action items soldés > 90% | SSoT, canaux standardisés, RACI on-call |
Astuce : imprimer cette matrice pour les revues mensuelles SLO/plateforme.
