📚 Your 14-Chapter Journey

Here is every chapter you mastered — 100 lessons, from first principles to production operations:

Ch 1 · Lessons 1–5

Architecture Overview

Control plane, data plane, etcd, API server, scheduler, kubelet, kube-proxy

Ch 2 · Lessons 6–12

Workloads

Pod, Deployment, StatefulSet, DaemonSet, Job, CronJob, ReplicaSet lifecycle

Ch 3 · Lessons 13–18

Configuration

ConfigMaps, Secrets, environment variables, projected volumes, downward API

Ch 4 · Lessons 19–25

Networking

Services, DNS, Ingress, Gateway API, NetworkPolicy, CNI fundamentals

Ch 5 · Lessons 26–29

Storage

PV, PVC, StorageClass, CSI drivers, volume modes, access modes

Ch 6 · Lessons 30–37

Scheduling

Requests/limits, QoS, taints/tolerations, node/pod affinity, topology spread, priority

Ch 7 · Lessons 38–41

Security Basics

RBAC, ServiceAccounts, Pod Security Standards, SecurityContext

Ch 8 · Lessons 42–48

Advanced Security

Admission controllers, OPA/Kyverno, supply chain, runtime security, sandboxing

Ch 9 · Lessons 49–54

Observability

Health probes, logging, metrics, tracing, kubectl debug, troubleshooting patterns

Ch 10 · Lessons 55–61

Advanced Patterns

CRDs, Operator pattern, admission webhooks, API aggregation, finalizers, leader election

Ch 11 · Lessons 82–87

Deep Internals

API server lifecycle, etcd/Raft, scheduler framework, controller-manager, kubelet, kube-proxy

Ch 12 · Lessons 62–71

Manifest Management

Helm deep dive, Kustomize, hybrid patterns, env promotion, CI/CD integration

Ch 13 · Lessons 72–81

Cloud-Native Ecosystem

Istio, Linkerd, KEDA, Karpenter, cert-manager, ExternalDNS, Velero, Rook, Harbor, Crossplane

Ch 14 · Lessons 88–100

Production Operations

HA setup, upgrades, incident response, cost optimisation, multi-tenancy, GitOps, security, DR, capacity, platform engineering

🏆 Skills You Have Now Mastered

Having completed this curriculum you can now confidently do all of the following in a production environment:

Design HA Kubernetes clusters Write production-grade Helm charts Debug any pod/node failure Implement zero-trust networking Build custom Operators Run etcd backup & restore Secure supply chains with Cosign Operate Istio/Linkerd in production Implement multi-tenancy with vcluster Optimise cluster costs 30–70% Design DR plans with tested runbooks Build Internal Developer Platforms Write PromQL for any cluster metric Trace requests with OpenTelemetry + Tempo Forecast capacity with predict_linear Implement GitOps with ArgoCD Configure Karpenter for dynamic node provisioning Run CIS benchmarks with kube-bench Detect runtime threats with Falco Understand the API server request lifecycle

CNCF Certifications — You Are Ready

This curriculum covers the full body of knowledge for all three CNCF Kubernetes certifications. You are ready to sit them:

👨‍💻

CKAD

Certified Kubernetes Application Developer — Chapters 1–10 fully cover the CKAD exam domains. Focus: workloads, configuration, networking, observability.

⚙️

CKA

Certified Kubernetes Administrator — Chapters 1, 4, 5, 6, 11 + all of Chapter 14 cover the CKA exam. Focus: cluster setup, networking, storage, troubleshooting.

🔒

CKS

Certified Kubernetes Security Specialist — Chapters 7, 8, 11, and 96–97 of Chapter 14 cover CKS. Focus: supply chain, runtime security, hardening, audit.

🎯 Exam Tip All three exams are performance-based (hands-on terminal) — not multiple choice. Practice with killer.sh simulators and kubernetes.io/docs (the only reference allowed). Speed matters — practice kubectl shortcuts and imperative commands.

What to Do Next

🚀 Go Deeper — Specialise

  • Build a real Operator with controller-runtime
  • Contribute to an open-source CNCF project
  • Run a full Istio ambient-mode cluster
  • Build a complete IDP with Backstage + custom CRDs
  • Implement Crossplane compositions for your team

📖 Related Series to Explore

  • CI/CD & GitOps (ArgoCD, Flux, Tekton deep dive)
  • Cloud Native Security (SLSA, SBOM, Sigstore)
  • eBPF Engineering (Cilium internals, bpftrace)
  • SRE Practices (SLOs, error budgets, toil reduction)
  • Infrastructure as Code (Terraform, Pulumi, Crossplane)

🏗️ Build Something Real

  • Set up a 3-node HA kubeadm cluster from scratch
  • Deploy a full observability stack (LGTM) to it
  • Write a custom Operator for a real use case
  • Build a golden path template for your team
  • Run a full DR drill — restore from etcd snapshot

🤝 Community & Keeping Current

  • Follow the Kubernetes blog for each release
  • Join the Kubernetes Slack (#kubernetes-users, #sig-*)
  • Attend KubeCon (in person or virtual)
  • Read CNCF TOC proposals to see what's coming
  • Watch SIG meetings on YouTube for deep dives

🔗 Essential Bookmarks

These are the references you will return to throughout your career as a Kubernetes engineer:

kubernetes.io/docs

The official reference — allowed in all CNCF exams. The API reference and concept docs are authoritative.

CNCF Landscape

landscape.cncf.io — map of every tool in the cloud-native ecosystem. Updated constantly.

Kubernetes Release Notes

github.com/kubernetes/kubernetes/releases — read CHANGELOG.md for every minor version before upgrading.

k8s.io/blog

Official blog with feature announcements, deep dives, and community posts for each release cycle.

killer.sh

The best CKA/CKAD/CKS exam simulators. Harder than the real exam — if you pass here, you pass the exam.

Prometheus Docs

prometheus.io/docs — PromQL reference, configuration, and alerting rules documentation.

Istio Docs

istio.io/docs — VirtualService, DestinationRule, PeerAuthentication reference. Clear examples.

Helm Docs

helm.sh/docs — chart authoring, template functions reference, OCI registry support.

💡 The best way to learn is to teach Write blog posts about what confused you. Answer questions in the Kubernetes Slack. Give a talk at your local DevOps meetup. Teaching forces you to fill the gaps in your own understanding — and it gives back to the community that created these tools.