DevOps Classroom notes 03/Nov/2024

Elastic Kubernetes Services (EKS)

  • Refer Here for eksctl and Refer Here for installation
  • Refer Here for schema of eksctl
  • Ensure AWS CLI is installed and user is configured
  • To store data in persistent volume ensure you have configured proper iam roles Refer Here
  • Refer Here for helm charts
  • Find helm charts for setting up
    • storage classes
    • use aws secrets manager mounting secrets
  • AWS Service Integrations
    • Network based resources
      • Examples
        • RDS
        • EC2
        • ECS
      • either create the resources and eks in same network or create a peering connection (private)
    • Non network based resources
      • Examples
        • S3
        • Dynamodb
      • Create vpc endpoints
    • IAM Roles: Ensure you create necessary iam roles to k8s cluster
  • Refer Here for EKS cluster config
  • Cluster Autoscaling: Increasing number of nodes
    • AWS provides two options
      • cluster autoscaler: is autoscaling (like asg)
      • karpenter: it automatically increases number of nodes with fast provisioning Refer Here and Refer Here for steps
  • Backups:
  • Upgrades:

Storing Secrets in K8s

  • K8s secrets are just encoded values, so we need vaults
  • Popular vaults
    • Hashicorp vault
    • aws secrets manager
    • azure key vault
  • All the secrets can be mounted with the help of
    • CSI Driver
    • SecretProvider

AKS


Service Mesh

  • Consider this architecture
    Preview
  • Refer Here for service mesh
  • Features
    • mTLS
    • Circuit breaker
    • Traffic Splitting
    • A/B Testing
    • Retry logic
    • Fault injections
    • Network Observability
  • Tools
    • Istio: installation (Refer Here) Custom Resources (Virtual Service, Destination Rules, Gateway)
      Preview
    • linkerd
  • Istio on Azure Refer Here and on AWS Refer Here

Published
Categorized as Uncategorized Tagged

By continuous learner

devops & cloud enthusiastic learner

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Please turn AdBlock off
Customized Social Media Icons from Acurax Digital Marketing Agency

Discover more from Direct DevOps from Quality Thought

Subscribe now to keep reading and get access to the full archive.

Continue reading

Visit Us On FacebookVisit Us On LinkedinVisit Us On Youtube