By the end
What you'll build
- Describe the responsibilities of the control plane and worker nodes and trace how a declared change is reconciled
- Deploy, roll out and roll back a workload, and configure probes and resource requests appropriately
- Trace how an external request reaches a running container through services, ingress and cluster DNS
- Separate configuration from secrets and attach persistent storage to a workload
- Read a role-based access control configuration end to end and identify what a given identity may do
- Triage a failing workload using events, logs and object descriptions in a repeatable order
Curriculum
What's inside
8 modules · 40 lessons
- 01
Cloud-native foundations
5 lessons- Containers, images and the isolation they actually provide
- Images, layers and registries in principle
- Declarative orchestration and control loops
- Cloud-native architecture described without the marketing
- What is doing the work under a containermatch pairs
- 02
Cluster architecture
5 lessons- Control plane and worker nodes: who decides what
- The API server as the single front door
- Scheduling and the node lifecycle
- Cluster components and their failure modes
- Which half of the cluster owns thisfill blank
- 03
Workloads
5 lessons- Pods, deployments and the reconciliation you are relying on
- Replica sets, rollouts and rollbacks
- Jobs, scheduled jobs and node-wide workloads
- Probes, resource requests and quality of service
- Rolling out a new version, in ordersequence order
- 04
Networking and service exposure
5 lessons- How an external request reaches a pod
- Services, endpoints and cluster DNS
- Ingress and gateway patterns
- Network policy basics
- The hostname returns nothingscenario
- 05
Configuration and storage
5 lessons- Configuration and secrets: the difference and why it matters
- Volumes, persistent claims and storage classes
- Stateful workloads in outline
- Configuration hygiene across multiple environments
- Config and storage, sortedmatch pairs
- 06
Access control and workload security
5 lessons- Reading a role-based access control configuration end to end
- Service accounts and workload identity
- Pod security standards and their intent
- Admission control as a policy enforcement point
- Who may, and what it may befill blank
- 07
Troubleshooting and external exam readiness
5 lessons- A repeatable triage routine for a failing workload
- Reading events, logs and object descriptions in order
- Practising common tasks under time pressure
- Checking the current external syllabus and exam conditions yourself
- Where the answer livesmatch pairs
- 08
Practice and check
5 lessons- Who owns which decision in a clustermatch pairs
- Replacing a broad permission without locking anyone outsequence order
- What the cluster is really doingfill blank
- The service that gets no trafficscenario
- Course quizquiz
The shape of it
How this course works
Short lessons
40 lessons across 8 modules, each small enough to finish in one sitting.
Practice as you go
Every lesson ends with a small space for what you noticed — the doing is the learning.
Progress you can see
Your progress is saved lesson by lesson, ready whenever you come back.
Ready when you are.
Make an account and this course opens up — your progress is saved from the very first lesson.
