Projects we support
Open-source tools for reliable computer systems that the association supports and showcases. Built by Vid Košir; the code is public on GitHub.
What others charge for, here it's open and free
Comparable commercial solutions for these tasks typically cost this much per year. These tools are open source.
Figures are market ranges for comparable tasks, not any single product's price. The tools cover a focused subset without support or SLA.
Example: what you'd pay elsewhere
What these tasks would cost elsewhere per year.
Calculated at ≈ €200 per server per year — the midpoint of the €100–300 range.
Linux Fleet Toolkit — agentless SSH tools for Linux fleets
Overview of the whole agentless SSH toolkit for Linux fleets. Every tool runs without an agent, over plain SSH, and produces clear reports.
Audit an entire Linux fleet over SSH into a single Excel report. Collects inventory, packages and settings without installing anything on the servers.
Interactive system hardening with human approval of each step and full rollback. It shows every change before applying it.
Staged dnf patching with serialized, batched reboots. The fleet updates in a controlled way, without taking every server down at once.
Fleet-wide scan of TLS/PKI certificate expiry. Flags certificates that are about to expire before they cause an outage.
Account and access lifecycle audit. Finds forgotten, inactive and risky accounts across every server.
Configuration drift detection across the fleet. Shows what has changed since the last known-good state.
firewalld audit and reconciliation across the fleet. It won't let you accidentally firewall off your own SSH access.
Disk and inode reclaim over SSH. Safely clears what's surplus, and truncates rather than deletes.
Live login banners (MOTD) across the fleet. Every server tells you clearly what it actually is at login.
The shared executor that runs every plan and re-checks state before each action. The heart of the whole toolkit.
Kubernetes & OpenShift
OpenShift subscription right-sizing and honest cost cases. Shows where you overpay, and by how much.
Diagnose stuck Kubernetes PersistentVolumes safely. Tells you why something is stuck Pending, without risky changes.
Trace who can actually do what in Kubernetes RBAC. Reveals the real paths to dangerous permissions, like who can delete prod.
Reconcile cluster certificates with the public edge. Catches the case where the dashboard is green but the edge cert has already expired.
Legacy & end-of-life
Patch End-of-Life CentOS safely, with an audit trail. Keeps systems secure until you can migrate, and documents every fix.
All tools are open source. Code: github.com/vikozs.