social.dk-libre.fr is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Puppet Core 9.0.0 is now available, alongside Puppet Core 8.21.0.
If you're planning upgrades, the big areas to review are:
- Ruby 4.0 compatibility
- OpenSSL 3.5 updates
- JDK 21 requirements for Puppet Server
- PSON removal
- Deferred functions reverting to Puppet 7 default behavior
- Supported platform changes and agent OS removals
Jason St-Cyr has put together a breakdown of the release notes and upgrade considerations:
Hey #PDX #Puppet people (or any coming into town for @DevOpsDaysPDX) I'm starting this month's #LastWednesday notifications a bit early because we have THREE special guests here for it! Charlie Sharpsteen, Brian Call, and Nana will all be here! I hope you are too.
We'll be at the Bye and Bye on August 26th at 6pm.
RE: https://hachyderm.io/@binford2k/117044818382765410
Hey #PDX #Puppet folk. Just a reminder that #LastWednesday is coming up soon. Annie will be there too!
Hey #PDX #Puppet people (or any coming into town for @DevOpsDaysPDX) I'm starting this month's #LastWednesday notifications a bit early because we have THREE special guests here for it! Charlie Sharpsteen, Brian Call, and Nana will all be here! I hope you are too.
We'll be at the Bye and Bye on August 26th at 6pm.
Getting ready for Puppet Core 9 and Ruby 4? This latest release of PDK 3.8.0 adds new `pdk validate` checks.
- Code that uses legacy Ruby Hash#inspect formatting, for example {:x=>1, "baz"=>3} .
- Ruby 4 syntax compatibility checks.
- The Security/Open Rubocop flags Ruby patterns associated with Kernel#open and IO.open invocation that are no longer valid in Ruby 4.
Full release notes: https://help.puppet.com/pdk/current/topics/release_notes_pdk.htm#PDK380
Download PDK: https://forge.puppet.com/resources/pdk
The July Puppetlabs modules roundup is live!
A new month means a look at the latest releases across the modules in the puppetlabs namespace, including community contributions and ongoing compatibility updates across the ecosystem.
Some things to highlight:
- A few CD4PE modules with big updates
- A new SCM 3.8.1 release
- More modules dropped Puppet 7
- Windows Server 2025 added to 3 modules
Read about those and the other module updates here:
https://dev.to/puppet/puppetlabs-modules-roundup-july-2026-3325
Hey #PDX #Puppet people (or any coming into town for @DevOpsDaysPDX) I'm starting this month's #LastWednesday notifications a bit early because we have THREE special guests here for it! Charlie Sharpsteen, Brian Call, and Nana will all be here! I hope you are too.
We'll be at the Bye and Bye on August 26th at 6pm.
ℹ️ Puppet SCE for Linux has a new version 2.8.0 to download! What you get:
- Updated CIS Benchmark coverage for RHEL 8, AlmaLinux 8, Oracle Linux 8, and Rocky Linux 8
- Updated puppetlabs-stdlib support
- Resolved issues for firewall zone enforcement, AIDE initialization, and log forwarding controls.
(... some other stuff too, check the release notes: https://help.puppet.com/sce/current/linux/scel_relnotes_280.htm)
If you're using SCE to automate CIS compliance and Linux hardening, take a look!
As AI and coding agents become part of open source development, being transparent about how AI is used is becoming more important than ever.
Jason St-Cyr wrote about how the Puppet team approaches AI-assisted development with governance, human review, validation, transparency, and contributor choice built into the process.
📖👉 https://www.puppet.com/blog/ai-open-source
Are you using coding agents when working on open source repos? What do you want to see in the Puppet ecosystem?
Security findings are only useful if they lead to action.
System hardening isn't just about finding security gaps, it's about fixing them and keeping them fixed. How can Puppet help? This walkthrough takes security assessment results into enforceable policies, reducing configuration drift, and maintaining secure configurations over time.
Did you miss the Audit Readiness webinar with Robin Tatam and @betadots CEO @tuxmea ? Not to worry, it's now posted to YouTube and you can catch up on some great infrastructure governance advice!
It’s very cool to be at the VoxConf 2026. I just came by briefly to say hi.
I did a quick summary of what my goals were when I started Puppet, back in2005:
- Sysadmins should use software written by sysadmins
- Sysadmins should have a seat at the table, not just have code thrown over the wall
- The job of system administration should change from manual, one-off work to strategic, high level, automated work
It’s great to see the community working to build a strong, viable community around a truly open project and toolchain
It's almost time to get ready for Puppet 9! 👀
Join Jason St-Cyr and Gavin Patton as they cover:
- What's new in Puppet 9? (and what didn't change)
- The new product lifecycles (when versions will go EOL)
- Impact to custom, community, and puppetlabs modules
- Upgrade guidance from PE 2023, PE 2025, or Puppet Core 8
If you're running Puppet Enterprise or Puppet Core, this will help you plan out your upgrades for the coming year!
Register: https://www.puppet.com/resources/events/webinar/puppet-9
The modules in the Puppetlabs namespace are now going to have priority tiers.
Jason St-Cyr writes about the structuring of which modules have been placed in Tier 1, Tier 2, and Tier 3 to help give the Puppet team focus on which modules matter most to customers and community.
The goal is to help with prioritizing work across these modules and to set expectations around responsiveness on certain modules.
Learn more in the full write-up: ⬇️
The monthly recap of new Puppetlabs modules is out! In June there were 24 modules that got releases (a few got two) including stdlib v10, several community contributions, and a lot of updates to dependency bounds to use the stdlib 10.x version!
https://dev.to/puppet/puppetlabs-modules-roundup-june-2026-23da
Puppet Core 8.20 is here with security and platform updates:
- Ubuntu 26.04 support added for Puppet agents (x86_64, ARM)
- OpenSSL, net-imap, concurrent-Ruby updates addressing 13 CVEs
- Correct handling of sensitive values in transactionstore.yaml
- Atomic plist writes on macOS to prevent partial or zero-length reads
- Safer PXP agent temp files on Windows to resolve file-rename race conditions
The full release notes: https://help.puppet.com/core/current/Content/PuppetCore/PuppetReleaseNotes/release_notes_puppet_x-8-20-0.htm
Puppet Enterprise 2025.11 is now available!
Highlights:
- Optional PostgreSQL-backed CA storage
- PostgreSQL 17 support (upgrade from 14)
- Advanced patching updates
- New Classifier & Activity Service API endpoints
- macOS 26 added; Ubuntu 18/20 removed
- ~60 CVEs addressed
(NOTE: PE 2023.8.10 LTS also released with key fixes)
2025.11 Release notes: ⬇️
https://help.puppet.com/pe/current/topics/release-notes-pe-x-11.htm
Did you know Puppet 9 is coming? 👀
Join Jason St-Cyr and Gavin Patton to understand what’s changing and how to prepare for a smooth upgrade.
- What's new in Puppet 9?
- The new product lifecycles
- Impact to modules?
- Upgrade guidance
If you're running Puppet Enterprise or Puppet Core, this will help you plan out your upgrades for the coming year!
Register: https://www.puppet.com/resources/events/webinar/puppet-9
The Audits are coming! The Audits are coming!
Get ready with this webinar featuring Martin Alfke (@tuxmea) of betadots GmbH where the focus is on making audit/compliance workflows less painful and more repeatable using Puppet and the tools you already use today.
If you care about:
- traceability in your infra changes
- reducing manual audit prep
- building compliance into your pipelines instead of bolting it on later
It’s worth a look 👇
https://www.puppet.com/resources/events/webinar/audit-ready
ℹ️ RHEL 10 support now available in Puppet Security Compliance Enforcement (SCE) for Linux.
You can now enforce CIS benchmarks (v1.0.1, Levels 1 & 2) on RHEL 10, along with additional improvements for logging issues with the rsyslog configuration file and intrusion detection on RHEL 9.
See release notes for the full details! ⬇️
https://help.puppet.com/sce/current/linux/scel_relnotes_270.htm
SCM 3.8.0 is out and the license expiry part is the most important one to act on: 👀
- CIS-CAT Pro Assessor license in 3.7.1 expires June 21, 2026
- 3.8.0 extends it to June 2027
- SCM 3.8.0 also introduces a way to update the license without a full upgrade
Also in this release:
- Auto cleanup for stuck scans
- New scan timeout control
- Updated benchmarks
- 40 security fixes
If you’re running SCM, worth upgrading soon.
OpenSSL advisories are nothing new… but this latest drop is a reminder of what “at scale” means. 18 CVEs, including RCE.
The challenge isn’t patching, it’s knowing where you're exposed.
Great write-up from Paul Reed on using PuppetDB queries to get your *actual* blast radius before acting.
Start with visibility, not patching.
https://dev.to/puppet/remediating-18-openssl-cves-at-scale-with-puppet-1abo
Heads up for anyone working with Puppet modules referencing stdlib 👀
puppetlabs-stdlib 10 is coming for Puppet users, targeting June 30, 2026.
This major release drops Puppet 7 (EOL Feb 2025) and requires Ruby 3.1+, alongside ~18 months of accumulated changes across CI, tooling, platform support, fixes, and enhancements.
If your module is pinned to <10, it will stay on 9.x, no immediate action required, but worth planning ahead.
If you want to trust your VM configurations, you need to automate variability and consistency, even when you get to enterprise scale. Puppet experts Stephen K Potter and Matthew Stone put together a solid breakdown of what makes VM configuration so challenging:
➡️ https://www.puppet.com/blog/vm-configuration
- You need to enforce state beyond day 0
- “Almost identical” VMs are where drift really start to show up
- Misconfiguration impacts performance and DevEx too
The monthly recap of new Puppetlabs modules is out! This month there were 11 modules getting releases (some more than once!) including some community contributions on the apt module, some CentOS9 support added to a few modules, and a new Windows DSC module for audit policy management!
https://dev.to/puppet/puppetlabs-modules-roundup-may-2026-2gp2
Did you know that #Puppet Bolt 5.1.0 is now released?
- puppet-agent module updated to 4.27.0 (via Bolt Puppetfile)
- Puppet Core 8.17.0 and Facter 4.17.0 now bundled
- Bundled + internal modules updated to latest releases
- Ruby 3 and 4 now supported
- Debian 13 packages now available (validate inventories + transport plugins before prod)
- Fix: issue adding Bolt for RHEL 10 to your repository resolved
Good release If you’re tracking distro and Ruby compatibility.
➡️ https://help.puppet.com/bolt/current/topics/changelog.htm#Bolt51020260526
Guess what? Once again I've almost let it slip by me that today is #LastWednesday for the #PDX #Puppet folk! Hope to see you at the Bye & Bye this evening around 6pm or so!
New Puppet Core 8.19 is out!
Highlights:
- Security updates for bundled components (Ruby, OpenSSL, libxml2, curl, net-imap, erb)
- CSV Ruby gem dependency removed
- Windows user passwords now allow colons (:), avoiding unnecessary failures
- Installation now blocks unsupported Ruby versions (max supported is Ruby 3.x)
If you use net-imap directly, definitely read the release notes carefully as the new version is stricter.
Full details + CVEs:
https://help.puppet.com/core/current/Content/PuppetCore/PuppetReleaseNotes/release_notes_puppet_x-8-19-0.htm
Been dealing with Copy Fail and Dirty Frag vulnerabilities on Linux? Long-time Puppet expert Tony Green has published some open source modules to help you detect what is impacted in your Puppet estate and mitigate!
https://dev.to/puppet/handling-dirty-frag-and-copy-fail-with-puppet-6ff
April’s Puppetlabs Modules Roundup is live!
This month covers updates to 8 puppetlabs modules:
- cd4peadm
- comply
- complyadm
- lvm
- pe_event_forwarding
- peadm
- sce_linux
- splunk_hec
If you manage Puppet at scale, this is a quick way to spot changes worth a closer look.
Read the April 2026 roundup: https://dev.to/puppet/puppetlabs-modules-roundup-april-2026-358
“Migrations fail when visibility is stale, drift grows, and cutovers go manual.”
Migrating Puppet environments doesn’t have to be painful.
Tony Green shares hard‑won lessons from real-world migrations and how to stay in control when things get messy.
If you’re planning a Puppet migration (or already in the middle of one), this is well worth a read:
A lot of teams are being told to “use AI in ops” right now. The harder part is figuring out *where it actually helps* day to day without adding risk, noise, or another thing to babysit.
If you’re curious (or skeptical 👀) about AI in ops, join Robin Tatam and Jason St-Cyr as they share their thoughts on where AI can realistically fit into infrastructure operations today. No magic, just using good tools to do better.
📢 Puppet Continuous Delivery 5.15.0 available with improvements for stability, security, integrations, and usability.
Highlights include:
- New external_webhook_url support for proxy-based deployments
- Impact Analysis updates for Pipelines as Code
- Clearer GitLab commit status reporting
- Amazon Linux 2023 support for Docker-based installs
- Security and dependency updates addressing reported CVEs
Full release notes:
https://help.puppet.com/cdpe/current/Content/UserGuide/CDPE/ReleaseNotes/cd_release_notes.htm#Version5150
Puppet Security Compliance Management 3.7.0 is out!
This release focuses on keeping compliance stable as environments scale:
- New CIS benchmarks for modern Linux, macOS, and Windows 11
- More predictable scan performance with tunable JVM memory
- Stronger session and GraphQL API controls
- Security fixes and dependency updates (CVE items in the release notes!)
👇Check out the Release notes:
https://help.puppet.com/scm/current/Content/UserGuide/SCM/Release_notes/release_notes.htm#SecurityComplianceManagement370