<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>OffVendor, Migration Guides</title>
    <link>https://offvendor.com/guides/</link>
    <atom:link href="https://offvendor.com/guides/rss.xml" rel="self" type="application/rss+xml" />
    <description>Hand-written, in-depth IT migration guides: licensing economics, real-world gotchas, tooling, and cutover strategy.</description>
    <language>en</language>
    <item>
      <title>AI &amp; LLM migration guide</title>
      <link>https://offvendor.com/ai-llms/</link>
      <guid isPermaLink="true">https://offvendor.com/ai-llms/</guid>
      <description>Moving high-volume workloads off OpenAI, Anthropic, or Gemini to self-hosted open-weight models (Llama, Mistral, DeepSeek) behind a gateway.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Azure OpenAI to Self-Hosted Llama: Trading Per-Token Bills for GPU Ops</title>
      <link>https://offvendor.com/ai-llms/azure-openai-to-llama/</link>
      <guid isPermaLink="true">https://offvendor.com/ai-llms/azure-openai-to-llama/</guid>
      <description>A practitioner's path from Azure OpenAI's per-token API to self-hosted open-weight Llama on vLLM behind an OpenAI-compatible endpoint, covering GPU sizing, quantization, throughput, prompt-level eval, and where the break-even actually lands.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Backup &amp; DR migration guide</title>
      <link>https://offvendor.com/backup-dr/</link>
      <guid isPermaLink="true">https://offvendor.com/backup-dr/</guid>
      <description>Re-platforming off Veeam, Commvault, or NetBackup: re-protecting workloads, parallel runs, and proving restores before you switch.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>BigQuery to ClickHouse: Cutting Warehouse Cost Without Losing Parity</title>
      <link>https://offvendor.com/data-warehouse/bigquery-to-clickhouse/</link>
      <guid isPermaLink="true">https://offvendor.com/data-warehouse/bigquery-to-clickhouse/</guid>
      <description>A cost-driven move off BigQuery on-demand and slot pricing to ClickHouse, with Parquet export, dialect rewrites, and result validation.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CI/CD &amp; DevOps migration guide</title>
      <link>https://offvendor.com/cicd-devops/</link>
      <guid isPermaLink="true">https://offvendor.com/cicd-devops/</guid>
      <description>Moving off GitLab, Azure DevOps, or Bamboo to Gitea/Forgejo, Drone, Woodpecker, or Argo: repo mirroring and pipeline translation.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CircleCI to Woodpecker CI: Self-Hosting Your Pipelines</title>
      <link>https://offvendor.com/cicd-devops/circleci-to-woodpecker/</link>
      <guid isPermaLink="true">https://offvendor.com/cicd-devops/circleci-to-woodpecker/</guid>
      <description>Trade CircleCI's per-credit SaaS pricing for self-hosted, container-native Woodpecker CI, converting configs and orbs while taking on runner ops yourself.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cloud adoption &amp; repatriation guide</title>
      <link>https://offvendor.com/cloud-onprem/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud-onprem/</guid>
      <description>On-prem → cloud (adoption) and cloud → on-prem (repatriation): when each makes sense, native tooling, and the steady-state cost reality.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cloud Foundry to Kubernetes: Leaving the Opinionated PaaS</title>
      <link>https://offvendor.com/containers-paas/cloud-foundry-to-kubernetes/</link>
      <guid isPermaLink="true">https://offvendor.com/containers-paas/cloud-foundry-to-kubernetes/</guid>
      <description>Migrate off Tanzu Application Service and its Broadcom licensing to upstream Kubernetes, rebuilding cf push velocity with buildpacks, Helm, and Ingress.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cloud migration guide (cross-cloud)</title>
      <link>https://offvendor.com/cloud/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud/</guid>
      <description>Moving workloads between AWS, Azure, GCP, and OCI: native migration services, IaC re-platforming, egress, and DNS cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Containers &amp; PaaS migration guide</title>
      <link>https://offvendor.com/containers-paas/</link>
      <guid isPermaLink="true">https://offvendor.com/containers-paas/</guid>
      <description>Leaving OpenShift, Tanzu, or Docker EE for upstream Kubernetes, Rancher/RKE2, or K3s: Velero-based moves and OpenShift-ism conversion.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Cybersecurity migration guide: seven segments, seven exit problems</title>
      <link>https://offvendor.com/cybersecurity/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/</guid>
      <description>Security is not one buying decision. EDR/XDR, SIEM, SOAR, MDR/MSSP, NDR, vulnerability management, and threat intel each bill on a different meter and each fail differently at renewal. What changes per segment, and what stays constant.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Data warehouse migration guide</title>
      <link>https://offvendor.com/data-warehouse/</link>
      <guid isPermaLink="true">https://offvendor.com/data-warehouse/</guid>
      <description>Moving off Snowflake, Teradata, or BigQuery to ClickHouse, Trino, or DuckDB: open formats, SQL conversion, and reconciliation.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Database migration guide</title>
      <link>https://offvendor.com/databases/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/</guid>
      <description>Moving off Oracle, SQL Server, or other commercial databases: licensing economics, schema/SQL conversion, and low-downtime cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Firewall migration guide</title>
      <link>https://offvendor.com/firewalls/</link>
      <guid isPermaLink="true">https://offvendor.com/firewalls/</guid>
      <description>Replacing Palo Alto, Fortinet, Check Point, Cisco, or SonicWall with OPNsense or pfSense: rulebase export, VPN/IPS, and per-site cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Google Cloud to AWS: A Workload-by-Workload Migration Guide</title>
      <link>https://offvendor.com/cloud/gcp-to-aws/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud/gcp-to-aws/</guid>
      <description>Moving from GCP to AWS for consolidation, commercial terms, or ecosystem reach: service mapping, data transfer tooling, IAM and network rebuild, the egress cost gotcha, and why the savings come from commitments, not the move itself.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>HPE Alletra to Ceph: Leaving the All-Flash Appliance</title>
      <link>https://offvendor.com/storage-san/hpe-alletra-to-ceph/</link>
      <guid isPermaLink="true">https://offvendor.com/storage-san/hpe-alletra-to-ceph/</guid>
      <description>Trading a proprietary all-flash array for software-defined Ceph: the appliance-to-cluster mindset shift, OSD and replication sizing, host-level data migration, and the latency realities that decide whether this is a good idea.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>IaC &amp; secrets migration guide</title>
      <link>https://offvendor.com/iac-secrets/</link>
      <guid isPermaLink="true">https://offvendor.com/iac-secrets/</guid>
      <description>After HashiCorp's BSL change: moving Terraform→OpenTofu and Vault→OpenBao with compatible state/secret backends and no-op plans.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Identity &amp; access (IAM) migration guide</title>
      <link>https://offvendor.com/iam/</link>
      <guid isPermaLink="true">https://offvendor.com/iam/</guid>
      <description>Replacing Okta, Entra ID, or Ping with Keycloak, Authentik, or Zitadel: directory sync, app re-federation, MFA, and per-app cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Leaving Arctic Wolf for an in-house SOC: what insourcing 24x7 actually costs</title>
      <link>https://offvendor.com/cybersecurity/arctic-wolf-to-in-house-soc/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/arctic-wolf-to-in-house-soc/</guid>
      <description>Ending a concierge MDR contract is a staffing decision before it is a tooling one: modelling the real cost of a 24x7 rota, extracting tuned detections while the contract is live, building the open stack, and shadowing the provider for a full quarter.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Leaving Secureworks Taegis for an in-house SOC after the Sophos acquisition</title>
      <link>https://offvendor.com/cybersecurity/secureworks-taegis-to-in-house-soc/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/secureworks-taegis-to-in-house-soc/</guid>
      <description>Insourcing from a platform-plus-service MDR: separating the Taegis platform from the analyst service, extracting investigation history before notice, rebuilding detection content on your own SIEM, and deciding whether consolidation is a reason to leave or to stay.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Load balancer / ADC migration guide</title>
      <link>https://offvendor.com/load-balancers/</link>
      <guid isPermaLink="true">https://offvendor.com/load-balancers/</guid>
      <description>Replacing F5, Citrix NetScaler, Kemp, or A10 with HAProxy, NGINX, or Traefik: translating rules, TLS, and swinging traffic safely.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Message &amp; streaming migration guide</title>
      <link>https://offvendor.com/messaging/</link>
      <guid isPermaLink="true">https://offvendor.com/messaging/</guid>
      <description>Moving off Confluent, IBM MQ, or TIBCO to Apache Kafka, RabbitMQ, NATS, or Pulsar: bridging, repointing clients, and draining safely.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating a Data-Center Fabric from Arista EOS to SONiC</title>
      <link>https://offvendor.com/networking/arista-to-sonic/</link>
      <guid isPermaLink="true">https://offvendor.com/networking/arista-to-sonic/</guid>
      <description>Move off Arista per-device and subscription costs to open-source SONiC on supported whitebox switches: validate the HCL, translate EOS BGP/EVPN-VXLAN and MLAG into config_db.json plus FRR, lab the fabric, and cut over per switch with a rollback image.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from A10 Thunder ADC to HAProxy</title>
      <link>https://offvendor.com/load-balancers/a10-thunder-to-haproxy/</link>
      <guid isPermaLink="true">https://offvendor.com/load-balancers/a10-thunder-to-haproxy/</guid>
      <description>Drop per-instance A10 Thunder ADC licensing and rebuild your virtual servers, health monitors, SSL termination, and aFleX logic as version-controlled HAProxy config with keepalived HA.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Amazon Redshift to ClickHouse: cutting query cost on analytics</title>
      <link>https://offvendor.com/data-warehouse/redshift-to-clickhouse/</link>
      <guid isPermaLink="true">https://offvendor.com/data-warehouse/redshift-to-clickhouse/</guid>
      <description>Moving analytics off provisioned Redshift to ClickHouse, UNLOAD-to-Parquet ingestion, rethinking sort/dist keys as ORDER BY, the SQL-dialect rewrite, and where Redshift still wins.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Apigee to Apache APISIX: modeling proxies as routes and upstreams</title>
      <link>https://offvendor.com/api-management/apigee-to-apisix/</link>
      <guid isPermaLink="true">https://offvendor.com/api-management/apigee-to-apisix/</guid>
      <description>Reproducing Apigee API proxies as APISIX routes and upstreams, translating Quota, Spike Arrest, OAuthV2, and transform policies to APISIX plugins, and moving the developer portal and analytics off Apigee.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Apigee to Kong Gateway OSS: proxies to routes, policies to plugins</title>
      <link>https://offvendor.com/api-management/apigee-to-kong-oss/</link>
      <guid isPermaLink="true">https://offvendor.com/api-management/apigee-to-kong-oss/</guid>
      <description>Re-implementing Apigee API proxies as Kong services and routes, mapping Quota, Spike Arrest, OAuthV2, and transform policies to Kong plugins, and replacing the Apigee portal and analytics with open equivalents.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Atlassian Bamboo to Drone CI: a forced-EOL move done right</title>
      <link>https://offvendor.com/cicd-devops/bamboo-to-drone/</link>
      <guid isPermaLink="true">https://offvendor.com/cicd-devops/bamboo-to-drone/</guid>
      <description>Leaving Bamboo (Server/Data Center EOL) for Drone CI, converting build plans to container-native pipelines, migrating repos and agents, and cutting over by project.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from AWS to Microsoft Azure: a cross-cloud move driven by motive, not mechanics</title>
      <link>https://offvendor.com/cloud/aws-to-azure/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud/aws-to-azure/</guid>
      <description>Moving workloads from AWS to Azure, why the managed-service layer (not the VMs) is the hard part, the native migration tooling, egress reality, and a landing-zone-first cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from AWS to on-premise (cloud repatriation): when bringing it back saves money</title>
      <link>https://offvendor.com/cloud-onprem/aws-to-on-premise/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud-onprem/aws-to-on-premise/</guid>
      <description>Repatriating steady-state workloads from AWS to on-prem/private cloud, the cost case, what's hard to bring back, exporting/replicating VMs and data, and DNS cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Carbon Black to Elastic Security: an open-core XDR with real prevention</title>
      <link>https://offvendor.com/cybersecurity/carbon-black-to-elastic-security/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/carbon-black-to-elastic-security/</guid>
      <description>Leaving Broadcom-era Carbon Black for Elastic Security: why Elastic Defend is one of the few open destinations with actual endpoint prevention, translating watchlists and reputation policy into detection rules, and sizing the Elasticsearch cluster you now own.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from CentOS Linux to AlmaLinux: the in-place route off EOL</title>
      <link>https://offvendor.com/operating-systems/centos-to-almalinux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/centos-to-almalinux/</guid>
      <description>AlmaLinux as the CentOS replacement, the almalinux-deploy converter, using ELevate to cross a major version from CentOS 7, and how to choose between Alma and Rocky.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from CentOS Linux to Rocky Linux: getting off an end-of-life OS</title>
      <link>https://offvendor.com/operating-systems/centos-to-rocky-linux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/centos-to-rocky-linux/</guid>
      <description>CentOS Linux 7 and 8 are both EOL. Here's the realistic path to Rocky, in-place migrate2rocky for CentOS 8, why CentOS 7 is a different problem, and how to do it without an unplanned outage.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Check Point to OPNsense: rebuilding the policy, not importing it</title>
      <link>https://offvendor.com/firewalls/checkpoint-to-opnsense/</link>
      <guid isPermaLink="true">https://offvendor.com/firewalls/checkpoint-to-opnsense/</guid>
      <description>Leaving Check Point's per-gateway-plus-blades licensing for open-source OPNsense, why there's no clean importer, how to translate the rule base safely, and where OPNsense fits (and doesn't).</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Cisco Catalyst/Nexus to SONiC: open networking on whitebox hardware</title>
      <link>https://offvendor.com/networking/cisco-catalyst-to-sonic/</link>
      <guid isPermaLink="true">https://offvendor.com/networking/cisco-catalyst-to-sonic/</guid>
      <description>Moving the data-center fabric off Cisco to SONiC, the HCL gate that decides feasibility, converting IOS configs, lab validation, and a pod-by-pod cutover with rollback ready.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Cisco Catalyst/Nexus to VyOS: open routing on commodity hardware</title>
      <link>https://offvendor.com/networking/cisco-catalyst-to-vyos/</link>
      <guid isPermaLink="true">https://offvendor.com/networking/cisco-catalyst-to-vyos/</guid>
      <description>Moving routing/edge off Cisco to VyOS, where VyOS fits versus SONiC, translating IOS to set-style config, lab staging, and per-site cutover with rollback.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Citrix DaaS to Apache Guacamole: scoping a clientless gateway honestly</title>
      <link>https://offvendor.com/vdi-euc/citrix-daas-to-guacamole/</link>
      <guid isPermaLink="true">https://offvendor.com/vdi-euc/citrix-daas-to-guacamole/</guid>
      <description>When leaving Citrix DaaS for Apache Guacamole makes sense, what a clientless HTML5 gateway does and does not replace, and how to scope the move without pretending you bought a VDI broker.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Citrix DaaS to Kasm Workspaces: container-streamed apps and desktops</title>
      <link>https://offvendor.com/vdi-euc/citrix-daas-to-kasm/</link>
      <guid isPermaLink="true">https://offvendor.com/vdi-euc/citrix-daas-to-kasm/</guid>
      <description>How Kasm Workspaces streams containerized apps and desktops to the browser, where it lines up against Citrix DaaS, and how to map published apps to workspaces without overstating parity.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Citrix NetScaler ADC to NGINX: off bandwidth-tier licensing</title>
      <link>https://offvendor.com/load-balancers/citrix-adc-to-nginx/</link>
      <guid isPermaLink="true">https://offvendor.com/load-balancers/citrix-adc-to-nginx/</guid>
      <description>Replacing NetScaler ADC with NGINX, translating vServers and policies to server/upstream config, migrating TLS, sizing for SSL, and a per-VIP traffic swing.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Commvault to Bacula: open-source backup without the per-front-end bill</title>
      <link>https://offvendor.com/backup-dr/commvault-to-bacula/</link>
      <guid isPermaLink="true">https://offvendor.com/backup-dr/commvault-to-bacula/</guid>
      <description>Leaving Commvault's licensing for open-source Bacula, translating CommCell subclients into Bacula jobs, the retention-overlap rule, and why backup migrations are never a flag day.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Confluent Platform to open-source Apache Kafka: keeping the API, dropping the subscription</title>
      <link>https://offvendor.com/messaging/confluent-to-kafka/</link>
      <guid isPermaLink="true">https://offvendor.com/messaging/confluent-to-kafka/</guid>
      <description>Moving off Confluent to self-managed Apache Kafka (KRaft), what Confluent's value-add actually is, MirrorMaker 2 bridging, repointing clients, and draining lag before cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Corelight to open Zeek: dropping the sensor subscription</title>
      <link>https://offvendor.com/cybersecurity/corelight-to-zeek/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/corelight-to-zeek/</guid>
      <description>The shortest exit in security: Corelight is packaged Zeek, so the logs and scripts carry over unchanged. What you actually give up is sensor engineering, curated Suricata content, enrichment, and support, and this guide is mostly about pricing those honestly.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Cortex XSOAR to Shuffle: rewriting playbooks you cannot export</title>
      <link>https://offvendor.com/cybersecurity/xsoar-to-shuffle/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/xsoar-to-shuffle/</guid>
      <description>Leaving a per-seat, per-automation SOAR for open-source Shuffle: auditing which playbooks earn their licence, rebuilding content-pack integrations against the same vendor APIs, re-issuing every credential, and shadow-running before you grant containment permissions.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from CrowdStrike Falcon to Wazuh: open XDR/SIEM with zero coverage gaps</title>
      <link>https://offvendor.com/cybersecurity/crowdstrike-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/crowdstrike-to-wazuh/</guid>
      <description>Replacing CrowdStrike with self-hosted Wazuh, what an open XDR/SIEM does and doesn't cover, ringed agent rollout, recreating detections, and dual-running so you never lose visibility.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Darktrace to Security Onion: replacing a model you cannot inspect</title>
      <link>https://offvendor.com/cybersecurity/darktrace-to-security-onion/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/darktrace-to-security-onion/</guid>
      <description>Leaving appliance-and-subscription NDR for an open stack: why unsupervised anomaly detection has no open equivalent, rebuilding coverage as explicit Zeek scripts and Suricata signatures, reusing the existing TAP infrastructure, and comparing detections on identical traffic.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Datadog to Prometheus &amp; Grafana: cutting the observability bill</title>
      <link>https://offvendor.com/monitoring/datadog-to-prometheus/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/datadog-to-prometheus/</guid>
      <description>How to replace Datadog with a self-hosted Prometheus + Grafana stack, what maps cleanly, what doesn't, and how to run both in parallel before you cut over.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Datadog to the Grafana stack: the closest unified replacement</title>
      <link>https://offvendor.com/monitoring/datadog-to-grafana/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/datadog-to-grafana/</guid>
      <description>Replacing Datadog with Grafana + Mimir + Loki + Tempo, why this is the nearest single-pane swap, OpenTelemetry instrumentation, and self-host vs Grafana Cloud.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Dell PowerStore to Ceph: scale-out open storage off the array</title>
      <link>https://offvendor.com/storage-san/dell-powerstore-to-ceph/</link>
      <guid isPermaLink="true">https://offvendor.com/storage-san/dell-powerstore-to-ceph/</guid>
      <description>Leaving PowerStore for Ceph, when unified scale-out storage fits (and when it doesn't), the RBD/CephFS/RGW mapping, data migration, and operating-cost reality.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Dynatrace to Grafana: trading a closed APM for an open stack</title>
      <link>https://offvendor.com/monitoring/dynatrace-to-grafana/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/dynatrace-to-grafana/</guid>
      <description>Leaving Dynatrace's consumption pricing for the open Grafana stack, replacing OneAgent with OpenTelemetry, rebuilding metrics/logs/traces on Mimir/Loki/Tempo, and what Davis AI you give up.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from F5 BIG-IP to HAProxy: shedding per-instance ADC licensing</title>
      <link>https://offvendor.com/load-balancers/f5-bigip-to-haproxy/</link>
      <guid isPermaLink="true">https://offvendor.com/load-balancers/f5-bigip-to-haproxy/</guid>
      <description>Replacing F5 BIG-IP with HAProxy, translating Virtual Servers and iRules to frontends/backends and ACLs, migrating TLS and health checks, sizing for SSL TPS, and swinging traffic safely.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from ForgeRock to Keycloak: journeys to flows, and who runs the HA</title>
      <link>https://offvendor.com/iam/forgerock-to-keycloak/</link>
      <guid isPermaLink="true">https://offvendor.com/iam/forgerock-to-keycloak/</guid>
      <description>Leaving ForgeRock enterprise per-user pricing for self-hosted Keycloak, modelling realms and clients, translating journeys to authentication flows, federating the directory, and migrating password hashes without a flag day.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Fortinet FortiGate to OPNsense: off the FortiGuard bundle</title>
      <link>https://offvendor.com/firewalls/fortinet-to-opnsense/</link>
      <guid isPermaLink="true">https://offvendor.com/firewalls/fortinet-to-opnsense/</guid>
      <description>Replacing FortiGate with OPNsense, which FortiGate features map (and which don't), rebuilding policies and VPNs, sizing for inspected throughput, and per-site cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from GitLab to Gitea/Forgejo: dropping per-seat DevOps licensing</title>
      <link>https://offvendor.com/cicd-devops/gitlab-to-gitea/</link>
      <guid isPermaLink="true">https://offvendor.com/cicd-devops/gitlab-to-gitea/</guid>
      <description>Leaving GitLab Premium/Ultimate for self-hosted Gitea or Forgejo, mirroring repos, translating CI pipelines (the real work), migrating issues via API, and cutting over team by team.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from HashiCorp Terraform to OpenTofu: the near drop-in fork</title>
      <link>https://offvendor.com/iac-secrets/terraform-to-opentofu/</link>
      <guid isPermaLink="true">https://offvendor.com/iac-secrets/terraform-to-opentofu/</guid>
      <description>Why OpenTofu exists, why the switch is mostly a CI/CD and version-pinning exercise, and the state, registry, and version-drift details to get right.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from HashiCorp Vault to OpenBao: the open fork of the secrets manager</title>
      <link>https://offvendor.com/iac-secrets/vault-to-openbao/</link>
      <guid isPermaLink="true">https://offvendor.com/iac-secrets/vault-to-openbao/</guid>
      <description>Why OpenBao exists, why it's a near drop-in for Vault, and the storage-backend, unseal-key, and client-repointing details to get right.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from IBM Db2 to PostgreSQL: leaving PVU licensing behind</title>
      <link>https://offvendor.com/databases/db2-to-postgresql/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/db2-to-postgresql/</guid>
      <description>Moving off Db2's PVU-based licensing to PostgreSQL, the schema and SQL PL conversion, where AWS SCT helps, and the parallel-run cutover that keeps production safe.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from IBM MQ to RabbitMQ: modernizing off per-core messaging licensing</title>
      <link>https://offvendor.com/messaging/ibm-mq-to-rabbitmq/</link>
      <guid isPermaLink="true">https://offvendor.com/messaging/ibm-mq-to-rabbitmq/</guid>
      <description>Moving classic queueing off IBM MQ to RabbitMQ, mapping queues to exchanges, bridging during transition, repointing apps via AMQP, and preserving delivery semantics.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from IBM QRadar to Wazuh: off EPS licensing and the appliance refresh</title>
      <link>https://offvendor.com/cybersecurity/qradar-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/qradar-to-wazuh/</guid>
      <description>Replacing an appliance-based, events-per-second-licensed SIEM with self-hosted Wazuh: translating DSMs into decoders, AQL rules into rule sets, reference sets into CDB lists, and handling the flow-analytics capability QRadar has and Wazuh does not.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Jenkins to Woodpecker CI: leaving plugin sprawl behind</title>
      <link>https://offvendor.com/cicd-devops/jenkins-to-woodpecker/</link>
      <guid isPermaLink="true">https://offvendor.com/cicd-devops/jenkins-to-woodpecker/</guid>
      <description>Trading Jenkins' plugin maintenance and Groovy pipelines for container-native Woodpecker CI, converting pipelines to YAML, replacing plugins with steps, and migrating without freezing delivery.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Juniper to VyOS: routing on open software</title>
      <link>https://offvendor.com/networking/juniper-to-vyos/</link>
      <guid isPermaLink="true">https://offvendor.com/networking/juniper-to-vyos/</guid>
      <description>Moving edge and routing workloads off per-device Juniper licensing to open-source VyOS, translating Junos config, where VyOS fits (and where it does not), and a per-site cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Kemp LoadMaster to HAProxy: load balancing without per-instance fees</title>
      <link>https://offvendor.com/load-balancers/kemp-to-haproxy/</link>
      <guid isPermaLink="true">https://offvendor.com/load-balancers/kemp-to-haproxy/</guid>
      <description>Leaving Kemp's per-instance plus support licensing for open-source HAProxy, translating Virtual Services to frontends and backends, handling TLS and persistence, and a per-VIP cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Kong Enterprise to Kong Gateway OSS: same core, minus the licensed features</title>
      <link>https://offvendor.com/api-management/kong-ee-to-kong-oss/</link>
      <guid isPermaLink="true">https://offvendor.com/api-management/kong-ee-to-kong-oss/</guid>
      <description>Why moving from Kong Enterprise to Kong Gateway OSS is the lowest-effort API-management migration, and how to replace the Enterprise-only pieces, RBAC, Dev Portal, and Vitals, with open equivalents.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Microsoft Azure to AWS: a cross-cloud move scoped by motive</title>
      <link>https://offvendor.com/cloud/azure-to-aws/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud/azure-to-aws/</guid>
      <description>Moving workloads from Azure to AWS, why managed services (not VMs) are the hard part, AWS MGN/DMS tooling, egress and licensing reality, and a landing-zone-first cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Microsoft Entra ID to Keycloak: self-hosted identity off the M365 tax</title>
      <link>https://offvendor.com/iam/entra-id-to-keycloak/</link>
      <guid isPermaLink="true">https://offvendor.com/iam/entra-id-to-keycloak/</guid>
      <description>Moving app SSO from Entra ID to Keycloak, what you can and can't replace, AD federation, conditional-access-to-auth-flow mapping, and a per-app cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Microsoft Sentinel to Graylog: cutting the per-gigabyte bill</title>
      <link>https://offvendor.com/cybersecurity/microsoft-sentinel-to-graylog/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/microsoft-sentinel-to-graylog/</guid>
      <description>Why the answer to a Sentinel bill is usually tiering rather than leaving: splitting log sources by value, moving high-volume low-signal data to self-hosted Graylog, rebuilding KQL analytics as pipeline rules, and keeping the Microsoft-native telemetry where it is cheapest.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Microsoft SQL Server to PostgreSQL: T-SQL, Babelfish, and the real effort</title>
      <link>https://offvendor.com/databases/sql-server-to-postgresql/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/sql-server-to-postgresql/</guid>
      <description>What it takes to move SQL Server to PostgreSQL, the licensing economics, T-SQL conversion, where Babelfish removes the app rewrite, and how to cut over safely.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Mirantis Kubernetes Engine (Docker EE) to upstream Kubernetes</title>
      <link>https://offvendor.com/containers-paas/docker-ee-to-kubernetes/</link>
      <guid isPermaLink="true">https://offvendor.com/containers-paas/docker-ee-to-kubernetes/</guid>
      <description>Leaving the per-node MKE/UCP subscription for vanilla Kubernetes, converting Swarm and compose workloads, and standing up a conformant cluster without a delivery freeze.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from MuleSoft to Kong Gateway OSS: separating the gateway from the integration layer</title>
      <link>https://offvendor.com/api-management/mulesoft-to-kong-oss/</link>
      <guid isPermaLink="true">https://offvendor.com/api-management/mulesoft-to-kong-oss/</guid>
      <description>Why only the API-management layer of MuleSoft Anypoint maps to Kong Gateway OSS, how to keep Mule integration flows on their own track, and how to re-implement the gateway with Kong plugins.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from NetApp ONTAP to TrueNAS: software-defined ZFS storage without the per-TB tax</title>
      <link>https://offvendor.com/storage-san/netapp-ontap-to-truenas/</link>
      <guid isPermaLink="true">https://offvendor.com/storage-san/netapp-ontap-to-truenas/</guid>
      <description>Leaving ONTAP for TrueNAS, mapping SVMs, volumes, and snapshots to ZFS, sizing for IOPS not just capacity, and migrating LUNs and shares without data loss.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from New Relic to Prometheus: escaping per-user APM pricing</title>
      <link>https://offvendor.com/monitoring/new-relic-to-prometheus/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/new-relic-to-prometheus/</guid>
      <description>Moving New Relic APM to Prometheus + OpenTelemetry + Tempo, why per-user pricing drives the move, re-instrumentation, NRQL-to-PromQL, and dual-running.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Okta to Keycloak: self-hosted identity, and the password problem</title>
      <link>https://offvendor.com/iam/okta-to-keycloak/</link>
      <guid isPermaLink="true">https://offvendor.com/iam/okta-to-keycloak/</guid>
      <description>Replacing Okta with self-hosted Keycloak, realm and client mapping, directory federation, and the password and MFA migration realities that make or break the cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Omnissa Horizon to Apache Guacamole: swapping the broker for a browser front door</title>
      <link>https://offvendor.com/vdi-euc/vmware-horizon-to-guacamole/</link>
      <guid isPermaLink="true">https://offvendor.com/vdi-euc/vmware-horizon-to-guacamole/</guid>
      <description>Replacing the Horizon broker and clients with Apache Guacamole's HTML5 gateway to existing RDP hosts, what carries over, what does not, and how to plan image and profile work separately.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from on-premise to AWS: adoption that pays off (and when it doesn't)</title>
      <link>https://offvendor.com/cloud-onprem/on-premise-to-aws/</link>
      <guid isPermaLink="true">https://offvendor.com/cloud-onprem/on-premise-to-aws/</guid>
      <description>Moving on-prem workloads to AWS, the 6 Rs decision, landing zone and connectivity, AWS MGN/DMS replication, and the steady-state cost reality that sometimes argues for staying put.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from OpenAI GPT to Mistral: open-weight models with a managed option</title>
      <link>https://offvendor.com/ai-llms/openai-gpt-to-mistral/</link>
      <guid isPermaLink="true">https://offvendor.com/ai-llms/openai-gpt-to-mistral/</guid>
      <description>Moving LLM workloads from OpenAI to Mistral, self-host open weights or use Mistral's API, the OpenAI-compatible gateway, eval-driven A/B, and the European data angle.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from OpenAI GPT to self-hosted Llama: when owning inference pays off</title>
      <link>https://offvendor.com/ai-llms/openai-gpt-to-llama/</link>
      <guid isPermaLink="true">https://offvendor.com/ai-llms/openai-gpt-to-llama/</guid>
      <description>Moving high-volume LLM workloads off the OpenAI API to self-hosted Llama, the OpenAI-compatible gateway that keeps app code stable, GPU sizing, eval-driven A/B, and gradual traffic shift.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from OpenText ArcSight to Graylog: retiring the SmartConnector estate</title>
      <link>https://offvendor.com/cybersecurity/arcsight-to-graylog/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/arcsight-to-graylog/</guid>
      <description>Leaving a legacy correlation SIEM: mining ESM rules that still fire, replacing SmartConnectors with native inputs, reading CEF directly into Graylog, converting active lists to lookup tables, and handling the institutional knowledge nobody documented.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Oracle Database to Amazon Aurora: dropping the license for a managed engine</title>
      <link>https://offvendor.com/databases/oracle-to-aurora/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/oracle-to-aurora/</guid>
      <description>Moving Oracle to Aurora (PostgreSQL-compatible), what AWS SCT and DMS automate, the PL/SQL conversion that remains, and the managed-vs-lock-in trade-off.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Oracle Database to MySQL: a lighter open-source target for the right workloads</title>
      <link>https://offvendor.com/databases/oracle-to-mysql/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/oracle-to-mysql/</guid>
      <description>When MySQL (not PostgreSQL) is the right Oracle exit, the workload fit, PL/SQL-to-stored-procedure conversion, tooling, and the ownership caveat.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Oracle Database to PostgreSQL: scope, effort, and the parts that bite</title>
      <link>https://offvendor.com/databases/oracle-to-postgresql/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/oracle-to-postgresql/</guid>
      <description>A realistic look at Oracle→PostgreSQL: licensing economics, what ora2pg does and doesn't automate, PL/SQL conversion, and how to de-risk cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Oracle Linux to AlmaLinux: a RHEL rebuild without the Oracle relationship</title>
      <link>https://offvendor.com/operating-systems/oracle-linux-to-almalinux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/oracle-linux-to-almalinux/</guid>
      <description>Oracle Linux to AlmaLinux is a near-mechanical move between RHEL rebuilds. The almalinux-deploy converter, the UEK kernel switch, ELevate for OL7, and choosing Alma over Rocky.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Oracle Linux to Rocky Linux: dropping the Oracle support subscription</title>
      <link>https://offvendor.com/operating-systems/oracle-linux-to-rocky-linux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/oracle-linux-to-rocky-linux/</guid>
      <description>Oracle Linux is already a RHEL rebuild, so moving to Rocky is low-effort. The catch is the UEK kernel and the support-subscription dependencies, here is how to leave cleanly.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Palo Alto Cortex XDR to Wazuh: two meters, one open replacement</title>
      <link>https://offvendor.com/cybersecurity/cortex-xdr-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/cortex-xdr-to-wazuh/</guid>
      <description>Leaving an XDR billed on endpoints and ingested data at the same time: unpicking which telemetry earns its cost, re-expressing BIOCs and XQL as Wazuh rules, keeping a prevention layer Wazuh does not provide, and running rings without a coverage gap.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Palo Alto Networks to OPNsense: open NGFW for edge and segmentation</title>
      <link>https://offvendor.com/firewalls/palo-alto-to-opnsense/</link>
      <guid isPermaLink="true">https://offvendor.com/firewalls/palo-alto-to-opnsense/</guid>
      <description>Replacing Palo Alto with OPNsense, where an open firewall fits (and where App-ID/WildFire don't translate), rebuilding the rulebase and VPNs, sizing with TLS inspection in mind, and per-site cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Ping Identity to Keycloak: self-hosting your IdP</title>
      <link>https://offvendor.com/iam/ping-identity-to-keycloak/</link>
      <guid isPermaLink="true">https://offvendor.com/iam/ping-identity-to-keycloak/</guid>
      <description>Moving off Ping's per-user-plus-modules pricing to open-source Keycloak, realm and client modelling, the password-hash problem, and how to migrate relying parties without a flag-day cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Pure Storage FlashArray to Ceph: trading an appliance for software-defined storage</title>
      <link>https://offvendor.com/storage-san/pure-flasharray-to-ceph/</link>
      <guid isPermaLink="true">https://offvendor.com/storage-san/pure-flasharray-to-ceph/</guid>
      <description>Moving off Pure's FlashArray appliances to open-source Ceph, the appliance-vs-cluster mindset shift, host-level data migration, performance realities, and where Pure is still the right call.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Qualys VMDR to Greenbone: unwinding the cloud-agent estate</title>
      <link>https://offvendor.com/cybersecurity/qualys-vmdr-to-greenbone/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/qualys-vmdr-to-greenbone/</guid>
      <description>Leaving a per-asset, per-module platform: why the agent estate is the migration rather than the scanner, translating QID findings to CVEs, exporting the history that does not travel, and deciding which VMDR modules you were actually using.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Red Hat Enterprise Linux to AlmaLinux: the other 1:1 rebuild</title>
      <link>https://offvendor.com/operating-systems/rhel-to-almalinux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/rhel-to-almalinux/</guid>
      <description>RHEL to AlmaLinux, how AlmaLinux differs from Rocky in governance, the almalinux-deploy in-place conversion, and what you trade in support.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Red Hat Enterprise Linux to Rocky Linux: a clean, low-risk exit</title>
      <link>https://offvendor.com/operating-systems/rhel-to-rocky-linux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/rhel-to-rocky-linux/</guid>
      <description>RHEL to Rocky Linux without drama, why the rebuilds exist, the in-place migrate2rocky path vs reprovisioning, and what you actually trade away in support.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Red Hat OpenShift to upstream Kubernetes: what the platform was doing for you</title>
      <link>https://offvendor.com/containers-paas/openshift-to-kubernetes/</link>
      <guid isPermaLink="true">https://offvendor.com/containers-paas/openshift-to-kubernetes/</guid>
      <description>Leaving OpenShift's per-core subscription for vanilla Kubernetes, mapping Routes, BuildConfigs, and SCCs to CNCF equivalents, and the security-model shift to plan for.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from SentinelOne to Wazuh: open XDR/SIEM with a ringed rollout</title>
      <link>https://offvendor.com/cybersecurity/sentinelone-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/sentinelone-to-wazuh/</guid>
      <description>Replacing SentinelOne with self-hosted Wazuh, the autonomous-EDR capability gap to plan for, ringed agent rollout, recreating detections, and dual-running.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Snowflake to ClickHouse: trading credits for columnar control</title>
      <link>https://offvendor.com/data-warehouse/snowflake-to-clickhouse/</link>
      <guid isPermaLink="true">https://offvendor.com/data-warehouse/snowflake-to-clickhouse/</guid>
      <description>Moving analytical workloads off Snowflake to ClickHouse, where ClickHouse wins (and where it doesn't), Parquet as the bridge, SQL-dialect conversion, and reconciliation-based cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from SolarWinds to Zabbix: per-node licensing out, open-source polling in</title>
      <link>https://offvendor.com/monitoring/solarwinds-to-zabbix/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/solarwinds-to-zabbix/</guid>
      <description>Leaving SolarWinds module licensing and post-SUNBURST trust concerns for Zabbix, mapping nodes and interfaces to hosts and templates, recreating triggers and dashboards, and scaling distributed sites with proxies.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from SonicWall to OPNsense</title>
      <link>https://offvendor.com/firewalls/sonicwall-to-opnsense/</link>
      <guid isPermaLink="true">https://offvendor.com/firewalls/sonicwall-to-opnsense/</guid>
      <description>Leave SonicWall appliance plus security-service subscriptions behind and rebuild the policy by hand in OPNsense: address and service objects, ordered rules, NAT, VPNs to IPsec/OpenVPN/WireGuard, VLANs, and Suricata IDS, with a parallel-run cutover per segment.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Splunk Enterprise Security to Wazuh: escaping the ingest meter</title>
      <link>https://offvendor.com/cybersecurity/splunk-es-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/splunk-es-to-wazuh/</guid>
      <description>Leaving an ingest-priced SIEM for a self-hosted one: auditing which sourcetypes actually earn their keep, rewriting SPL correlation searches as Wazuh rules, sizing the indexer, and parallel-ingesting until detection coverage is proven.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Splunk SOAR to StackStorm: off per-action metering</title>
      <link>https://offvendor.com/cybersecurity/splunk-soar-to-stackstorm/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/splunk-soar-to-stackstorm/</guid>
      <description>Replacing Phantom-lineage SOAR with event-driven StackStorm: converting visual playbooks to Orquesta workflows, rebuilding apps as packs, replacing prompts with inquiries, and accepting that StackStorm is an automation engine with no security opinions.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Splunk to Grafana &amp; Loki: taming the ingest bill</title>
      <link>https://offvendor.com/monitoring/splunk-to-grafana/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/splunk-to-grafana/</guid>
      <description>Replacing Splunk with Grafana + Loki, the index-light cost model, the SPL-to-LogQL mindset shift, label-cardinality discipline, and the premium apps with no OSS equal.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from SUSE Linux Enterprise to Rocky Linux: a cross-family rebuild</title>
      <link>https://offvendor.com/operating-systems/suse-linux-to-rocky-linux/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/suse-linux-to-rocky-linux/</guid>
      <description>Unlike the RHEL-rebuild migrations, SUSE to Rocky is a genuine distro-family change, no in-place converter, zypper to dnf, AutoYaST to kickstart. Here is how to do it without surprises.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Symantec Endpoint Security to Wazuh: an open SOC stack</title>
      <link>https://offvendor.com/cybersecurity/symantec-endpoint-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/symantec-endpoint-to-wazuh/</guid>
      <description>Leaving Broadcom-owned Symantec endpoint licensing for open-source Wazuh, what Wazuh does and does not replace, mapping policies to rulesets, and a parallel-agent rollout.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Tenable Vulnerability Management to Greenbone: scanning without the per-asset meter</title>
      <link>https://offvendor.com/cybersecurity/tenable-io-to-greenbone/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/tenable-io-to-greenbone/</guid>
      <description>Replacing a per-asset commercial scanner with Greenbone: why the community feed lag is the real decision, recreating credentialed scan configs, mapping plugin IDs to CVEs rather than OIDs, and reconciling both scanners before compliance evidence depends on the new numbers.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Teradata to ClickHouse: off legacy MPP licensing</title>
      <link>https://offvendor.com/data-warehouse/teradata-to-clickhouse/</link>
      <guid isPermaLink="true">https://offvendor.com/data-warehouse/teradata-to-clickhouse/</guid>
      <description>Modernizing off Teradata to ClickHouse, extracting with TPT to open formats, converting BTEQ/SQL, the workload fit, and reconciliation-based cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from ThreatConnect to OpenCTI: the one security segment with real portability</title>
      <link>https://offvendor.com/cybersecurity/threatconnect-to-opencti/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/threatconnect-to-opencti/</guid>
      <description>STIX 2.1 makes threat intel the most portable part of security: exporting indicators and relationships, re-subscribing TAXII feeds directly, rebuilding playbooks as connectors, and being honest about the scoring history and analyst annotations that do not survive.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from TIBCO EMS to RabbitMQ: moving enterprise JMS to open messaging</title>
      <link>https://offvendor.com/messaging/tibco-ems-to-rabbitmq/</link>
      <guid isPermaLink="true">https://offvendor.com/messaging/tibco-ems-to-rabbitmq/</guid>
      <description>Leaving TIBCO EMS licensing for open-source RabbitMQ, the JMS-to-AMQP mapping, the JMS-client shortcut vs a clean refactor, and bridging both brokers during cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Trend Micro to Wazuh: visibility is not prevention</title>
      <link>https://offvendor.com/cybersecurity/trendmicro-to-wazuh/</link>
      <guid isPermaLink="true">https://offvendor.com/cybersecurity/trendmicro-to-wazuh/</guid>
      <description>Leaving Trend Micro Apex One licensing for open-source Wazuh, with the honest caveat that Wazuh is detection and XDR, not signature AV, so you pair it with OS-native prevention and plan indexer capacity before you scale.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Veeam to Proxmox Backup Server: re-protecting without a coverage gap</title>
      <link>https://offvendor.com/backup-dr/veeam-to-proxmox-backup-server/</link>
      <guid isPermaLink="true">https://offvendor.com/backup-dr/veeam-to-proxmox-backup-server/</guid>
      <description>Moving VM backups from Veeam to Proxmox Backup Server, why backups are re-baselined rather than copied, the dedup/immutability story, and how to prove restores before you switch.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Veritas NetBackup to Bacula: shedding front-end-TB licensing</title>
      <link>https://offvendor.com/backup-dr/veritas-netbackup-to-bacula/</link>
      <guid isPermaLink="true">https://offvendor.com/backup-dr/veritas-netbackup-to-bacula/</guid>
      <description>Replacing NetBackup with open-source Bacula, translating policies to Bacula jobs, the daemon architecture, re-baselining, and proving restores before you cut over.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from VMware Tanzu to upstream Kubernetes: off the Broadcom bundle</title>
      <link>https://offvendor.com/containers-paas/tanzu-to-kubernetes/</link>
      <guid isPermaLink="true">https://offvendor.com/containers-paas/tanzu-to-kubernetes/</guid>
      <description>Leaving Tanzu for vanilla Kubernetes, what Tanzu layered on top, picking a distribution, Velero-based workload migration, and the vSphere-coupling to unwind.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from VMware vSphere to Microsoft Hyper-V: a practical field guide</title>
      <link>https://offvendor.com/virtualization/vmware-to-hyper-v/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/vmware-to-hyper-v/</guid>
      <description>Leaving vSphere for Hyper-V, the Windows Server Datacenter licensing angle, vCenter-to-SCVMM mapping, the Gen1/Gen2 trap, and how to run the V2V without a blue screen.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from VMware vSphere to Nutanix AHV: turnkey HCI without a hypervisor license</title>
      <link>https://offvendor.com/virtualization/vmware-to-nutanix-ahv/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/vmware-to-nutanix-ahv/</guid>
      <description>Leaving vSphere for Nutanix AHV, why the hypervisor is free, the Prism/vSAN mapping, the agentless Nutanix Move V2V, and the hardware reality to plan for.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from VMware vSphere to Proxmox VE: a practical field guide</title>
      <link>https://offvendor.com/virtualization/vmware-to-proxmox/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/vmware-to-proxmox/</guid>
      <description>What actually changes when you leave vSphere for Proxmox VE, licensing, storage, networking, HA, backup, and the migration mechanics that trip teams up.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from VMware vSphere to XCP-ng: centralized management without the license</title>
      <link>https://offvendor.com/virtualization/vmware-to-xcp-ng/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/vmware-to-xcp-ng/</guid>
      <description>XCP-ng + Xen Orchestra as a vCenter-style alternative to vSphere, pool and storage mapping, the built-in warm V2V import, and where Vates support fits.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from Windows Server to Ubuntu: a workload-by-workload re-platform</title>
      <link>https://offvendor.com/operating-systems/windows-server-to-ubuntu/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/windows-server-to-ubuntu/</guid>
      <description>Windows Server to Ubuntu removes per-core licensing and CALs, but it is a re-platform, not an OS swap. Which workloads move cleanly, which do not, and how to map the dependencies.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Migrating from XenServer (Citrix Hypervisor) to XCP-ng: a fork you can almost slide into</title>
      <link>https://offvendor.com/virtualization/xenserver-to-xcp-ng/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/xenserver-to-xcp-ng/</guid>
      <description>XCP-ng is an open-source fork of the same Xen platform, so this is one of the gentlest hypervisor migrations, Xen Orchestra warm migration, XVA export, and what you give up leaving Citrix.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>MongoDB to PostgreSQL: A Migration Guide for IT Teams</title>
      <link>https://offvendor.com/databases/mongodb-to-postgresql/</link>
      <guid isPermaLink="true">https://offvendor.com/databases/mongodb-to-postgresql/</guid>
      <description>Why teams leave MongoDB for PostgreSQL, how to model documents into relational tables or JSONB, and where Mongo still wins.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Monitoring &amp; observability migration guide</title>
      <link>https://offvendor.com/monitoring/</link>
      <guid isPermaLink="true">https://offvendor.com/monitoring/</guid>
      <description>Replacing Datadog, Splunk, New Relic, or SolarWinds with open stacks (Prometheus/Grafana/Loki), what maps, what doesn't, and how to dual-run.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Operating system migration guide</title>
      <link>https://offvendor.com/operating-systems/</link>
      <guid isPermaLink="true">https://offvendor.com/operating-systems/</guid>
      <description>Moving off RHEL, Windows Server, or SUSE to Rocky, AlmaLinux, Ubuntu, or Debian: in-place conversion vs reprovision, and validation.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Puppet Enterprise to Ansible: An Agentless Migration</title>
      <link>https://offvendor.com/iac-secrets/puppet-to-ansible/</link>
      <guid isPermaLink="true">https://offvendor.com/iac-secrets/puppet-to-ansible/</guid>
      <description>Move off per-node Puppet Enterprise licensing to agentless Ansible, translating manifests and Hiera to playbooks and group_vars without losing enforcement.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Replacing commercial API management: moving the gateway layer to open source</title>
      <link>https://offvendor.com/api-management/</link>
      <guid isPermaLink="true">https://offvendor.com/api-management/</guid>
      <description>How to think about leaving Apigee, MuleSoft, or Kong Enterprise for an open gateway, what maps cleanly, and the one distinction that decides how hard the migration is.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Rubrik to Bacula: Leaving the Appliance for Open-Source Backup</title>
      <link>https://offvendor.com/backup-dr/rubrik-to-bacula/</link>
      <guid isPermaLink="true">https://offvendor.com/backup-dr/rubrik-to-bacula/</guid>
      <description>How to migrate from Rubrik subscription appliances to open-source Bacula, run both through the full retention window, and protect the catalog.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Solace PubSub+ to RabbitMQ: A Broker Migration Playbook</title>
      <link>https://offvendor.com/messaging/solace-to-rabbitmq/</link>
      <guid isPermaLink="true">https://offvendor.com/messaging/solace-to-rabbitmq/</guid>
      <description>How to move queue and topic workloads off Solace PubSub+ onto open-source RabbitMQ, mapping topic hierarchies to exchanges and bindings, repointing apps over AMQP or JMS, and validating ordering, persistence, and HA before cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Storage &amp; SAN migration guide</title>
      <link>https://offvendor.com/storage-san/</link>
      <guid isPermaLink="true">https://offvendor.com/storage-san/</guid>
      <description>Moving off Dell, NetApp, or Pure to software-defined/open storage (TrueNAS, Ceph, MinIO): data migration, performance, and cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Switches &amp; routers migration guide</title>
      <link>https://offvendor.com/networking/</link>
      <guid isPermaLink="true">https://offvendor.com/networking/</guid>
      <description>Moving off Cisco, Juniper, or Arista to open network OSes (SONiC, VyOS, FRRouting): HCL validation, config conversion, and pod-by-pod cutover.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>VDI and end-user computing: what to weigh before you leave Citrix or Horizon</title>
      <link>https://offvendor.com/vdi-euc/</link>
      <guid isPermaLink="true">https://offvendor.com/vdi-euc/</guid>
      <description>How to think about replacing per-user VDI licensing with open remote-access and workspace-streaming tools, and where those tools genuinely fit versus where they don't.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Virtualization migration guide</title>
      <link>https://offvendor.com/virtualization/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/</guid>
      <description>Leaving VMware (or any hypervisor): how to choose a target, map vSphere concepts, and migrate VMs without surprises.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>VMware vSphere to OpenStack: A Private-Cloud Migration Guide</title>
      <link>https://offvendor.com/virtualization/vmware-to-openstack/</link>
      <guid isPermaLink="true">https://offvendor.com/virtualization/vmware-to-openstack/</guid>
      <description>How a large enterprise moves off Broadcom-era VMware vSphere onto self-run OpenStack: virt-v2v conversions, Neutron and Cinder mapping, flavors, and the operational reality of running an IaaS.</description>
      <pubDate>Thu, 01 Jan 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>
