Zakaria EL BAZI

Zakaria EL BAZI

aka. Z4ck404

Senior SRE/DevOps Engineer with 7+ years of experience in cloud infrastructure, Kubernetes, and observability. Passionate about building scalable systems and sharing knowledge with the community.

35 articles
Kubernetes

A Practical Guide to NUMA Affinity in Kubernetes

NUMA effects are one of those problems that don’t show up in dashboards, but will happily show up in your p99 latency and in “why is this box slower than the …

· 11 min readkubernetes
A Practical Guide to NUMA Affinity in Kubernetes
Terraform

A Practical Guide to CPU Pinning in Kubernetes

I recently attended the Cloud Native Days France 2026 conference in Paris, where Ricardo Rocha (Head of Infrastructure at CERN) opened the session with a talk …

· 7 min readkubernetes
A Practical Guide to CPU Pinning in Kubernetes
Kubernetes

Deploying an OpenTelemetry-Native LGTM Stack on Kubernetes

In my previous article on Observability 2.0, I talked about how ClickStack and unified platforms solve the fragmented three-pillar problem by storing everything …

· 7 min readobservability
Deploying an OpenTelemetry-Native LGTM Stack on Kubernetes
Kubernetes

Kubernetes Resource Lifecycle Management with CronJob-Scale-Down-Operator

A practical guide to Kubernetes operators with the CronJob-Scale-Down-Operator - automate resource scaling and cleanup to optimize cloud costs.

· 9 min readKubernetes
Kubernetes Resource Lifecycle Management with CronJob-Scale-Down-Operator
Observability

Observability 2.0: Breaking the Three-Pillar Silos for Good

Managing observability at scale has really changed with the rise of distributed systems, and the traditional three-pillar approach (metrics, logs, traces) has …

· 8 min readMonitoring
Observability 2.0: Breaking the Three-Pillar Silos for Good
AWS

AWS PrivateLink Native Cross‑Region Connectivity

AWS PrivateLink has long been the go-to solution for private connectivity of services within a region. Until recently, sharing services across regions required …

· 4 min readAWS
AWS PrivateLink Native Cross‑Region Connectivity
AWS

Terraform Infrastructure as Code: Essential Tools for Clean, Maintainable Production Environments

Managing cloud resources has really changed with the Infrastructure as Code (IaC) approach, and Terraform has become one of the best tools for the job.

· 8 min readAWS
Terraform Infrastructure as Code: Essential Tools for Clean, Maintainable Production Environments
Kubernetes

Helm Charts in Production: Essential Plugins and Features for Reliable Kubernetes Deployments

Kubernetes has revolutionized the way we deploy applications, but managing numerous Kubernetes resources for complex applications can quickly grow to become a …

· 10 min readHelm
Helm Charts in Production: Essential Plugins and Features for Reliable Kubernetes Deployments
AWS Secrets Manager

Secure Secrets Management in Terraform — Part2: AWS Secret Manager

Following our previous tutorial about using AWS KMS for secrets management, this second part explores how to

· 7 min readAWS Secrets Manager
Secure Secrets Management in Terraform — Part2: AWS Secret Manager
AWS KMS

Secure Secrets Management in Terraform Part1: Leveraging AWS KMS

One of the key principles of modern Infrastructure as Code is the secure management of sensitive information. In thins first part of our series about secure …

· 4 min readAWS KMS
Secure Secrets Management in Terraform Part1: Leveraging AWS KMS
AWS

Thanos Deep Dive: Addressing Prometheus Limitations at Scale

Prometheus has clearly established itself as the benchmark solution for metrics collection and alerting in cloud-native environments. Its pull-based …

· 6 min readAWS
Thanos Deep Dive: Addressing Prometheus Limitations at Scale
AWS

AWS Client VPN: A Practical Guide to Secure Infrastructure Access

Providing secure access to cloud infrastructure is one of the biggest challenges facing IT professionals today. AWS Client VPN offers a robust solution to this …

· 8 min readAWS
AWS Client VPN: A Practical Guide to Secure Infrastructure Access
AWS

EKS Pod Identity or IAM Roles for Service Accounts (IRSA) ?

Himu](https://unsplash.com/@isfakulhemal?utm_source=medium&utm_medium=referral) on Unsplash

· 5 min readAWS
EKS Pod Identity or IAM Roles for Service Accounts (IRSA) ?
AWS

Exposing Ports in Kubernetes: What You Should to Know

Kubernetes is a popular tool for managing containerized applications. However, there are a few misunderstandings about how it works. One of the most common

· 5 min readAWS
Exposing Ports in Kubernetes: What You Should to Know
AWS

AWS EKS Required Add-Ons: A Comprehensive Guide

Amazon Elastic Kubernetes Service (EKS) is a managed Kubernetes service that simplifies the process of deploying, managing, and scaling containerized …

· 5 min readAWS
AWS EKS Required Add-Ons: A Comprehensive Guide
AWS

AWS VPC Endpoints: Balancing Security, Performance, and Cost

In the world of AWS networking, securing and optimizing communication between your VPC resources and AWS services is crucial. This is where AWS VPC Endpoints …

· 7 min readAWS
AWS VPC Endpoints: Balancing Security, Performance, and Cost
AWS

AWS IAM Roles For Kubernetes Service Accounts (IRSA)

In the world of Kubernetes and AWS, managing access to AWS resources from your Kubernetes cluster can be tricky. That’s where AWS IAM Roles for Service

· 6 min readAWS
AWS IAM Roles For Kubernetes Service Accounts (IRSA)
AWS

Getting Started With OpenTofu (v1.7.0) on AWS — State Encryption.

OpenTofu is a new open source tool for Infrastructure-as-Code (IaC) management across multiple cloud providers, created by the community following the …

· 5 min readAWS
Getting Started With OpenTofu (v1.7.0) on AWS — State Encryption.
AWS

Low-Cost, Unlimited Metrics Storage with Thanos: Monitor All Your K8s Clusters Anywhere and More.

Monitoring large-scale, multi-cloud Kubernetes environments can be a hard task, especially when dealing with high-cardinality metrics and long-term data

· 8 min readAWS
Low-Cost, Unlimited Metrics Storage with Thanos: Monitor All Your K8s Clusters Anywhere and More.
AWS

Chat With Your AWS Resources Using ChatGPT

In the ever-evolving world of cloud computing, where efficiency and productivity are paramount, developers and DevOps engineers often find themselves navigating …

· 2 min readAWS
Chat With Your AWS Resources Using ChatGPT
AWS

Do Pods Really Get Evicted Due to CPU Pressure?

As Kubernetes administrators and developers, we’ve all heard the notion that pods can get evicted due to high CPU pressure on a node. But is this really

· 6 min readAWS
Do Pods Really Get Evicted Due to CPU Pressure?
AWS

Exploring Steampipe for Terraform Drift Detection

In Terraform, drift detection helps spot any mismatches between the infrastructure you’ve outlined in your code and what’s actually out there running in your …

· 5 min readAWS
Exploring Steampipe for Terraform Drift Detection
AWS

Welcome to AWS Morocco’s first newsletter!

Dear AWS Enthusiasts,

· 2 min readAWS
Welcome to AWS Morocco’s first newsletter!
AWS

How Does AWS PrivateLink Work ?

In the world of cloud networks, security and confidentiality are crucial. [AWS PrivateLink](https://docs.aws.amazon.com/vpc/latest/privatelink/what-is-

· 8 min readAWS
How Does AWS PrivateLink Work ?
AWS

AWS Inter-Region PrivateLink using Terraform

AWS PrivateLink provides a secure and reliable way to connect VPCs within the same region, but it doesn’t directly support connections between VPCs in different …

· 6 min readAWS
AWS Inter-Region PrivateLink using Terraform
AWS

CSI Drivers (EBS, EFS, S3) on EKS And How To Use Them

Container Storage Interface (CSI) drivers play a crucial role in managing persistent storage for containerized applications. When working with Amazon Elastic …

· 6 min readAWS
CSI Drivers (EBS, EFS, S3) on EKS And How To Use Them
AWS

Lessons Learned From Mounting Secrets to Pods on Kubernetes

Kubernetes secrets are objects conceived to hold sensitive information such as passwords, tokens and certificates that can be used by pods without the need

· 5 min readAWS
Lessons Learned From Mounting Secrets to Pods on Kubernetes
AWS

Getting Started With Terraform on AWS — State backend & State Locking

Getting started with Terraform is an exciting journey, but as the complexity of your infrastructure increases, so does the importance of managing its state. In …

· 4 min readAWS
Getting Started With Terraform on AWS — State backend & State Locking
AWS

Enhancing Efficiency with KMS Cache in Amazon S3 Buckets

In the realm of cloud computing and data storage, the integration of Amazon Simple Storage Service (S3) with AWS Key Management Service (KMS) represents a

· 3 min readAWS
Enhancing Efficiency with KMS Cache in Amazon S3 Buckets
AWS

Monitoring Kubernetes with Prometheus and Alertmanager: Setting Up Alerts with Slack Integration

In this tutorial, we will learn how to set up Prometheus rules and configure Alertmanager to send alerts to a Slack channel. Prometheus is a popular monitoring …

· 5 min readAWS
Monitoring Kubernetes with Prometheus and Alertmanager: Setting Up Alerts with Slack Integration
AWS

All you need to know about Terraform provisioners and why you should avoid them.

As defined in the Terraform documentation, provisioners can be used to model specific actions on the local machine running the

· 6 min readAWS
All you need to know about Terraform provisioners and why you should avoid them.
AWS

Submit your articles to Aws Morocco

AWS Morocco Medium publication is dedicated to providing insightful articles and tutorials on AWS products, services, and the latest news and updates. If …

· 1 min readaws-morocco
Submit your articles to Aws Morocco
ELK Stack

How hackers can find your exposed Elasticsearch clusters using Shodan!

For the last couple of months, I have been exploring Elasticsearch and I even shared some articles about it talking about how impressive the technology behind …

· 5 min readELK Stack
How hackers can find your exposed Elasticsearch clusters using Shodan!
ELK Stack

Machine learning on Elastic Search using Apache Spark and ES-Hadoop — Part 2

In the previous article (Part1), we installed the ELK stack along with the ES-Hadoop connector and spark, then we did some visualizations in Kibana with the …

· 5 min readELK Stack
Machine learning on Elastic Search using Apache Spark and ES-Hadoop — Part 2
ELK Stack

Machine learning on Elastic Search using Apache Spark and ES-Hadoop — Part 1

Before digging into any technical details, I will start with brief descriptions of the tools that I will be using for the tutorials (this part and the coming …

· 9 min readELK Stack
Machine learning on Elastic Search using Apache Spark and ES-Hadoop — Part 1

Certifications

  • AWS Solutions Architect
  • Terraform Associate
  • Kubernetes CKA, CKAD, KCNA, CGOA
  • Azure Certifications

Connect