A recommended four-day workshop for restricted environments
This proposed agenda uses agreed artifact and access constraints in a lab. The exercises connect Kubernetes delivery behavior to the customer's documented operating requirements.
Day 1
Images, workloads, and restricted startup
We connect container packaging to Pods, Deployments, Services, and probes. You will inspect which artifacts and configuration the application needs to start.
Hands-on exercises
- Deploy a sample workload using an approved image source.
- Diagnose an unavailable artifact without assuming public-registry access.
Day 2
Templates and complete dependency records
You will use Helm and compare Kustomize while identifying chart and image dependencies. We trace controllers and node behavior to expose requirements hidden by the original lab environment.
Hands-on exercises
- Review a release bundle for undeclared dependencies.
- Rehearse replacement on capacity that lacks the original node's cached image.
Day 3
Constrained network paths and observations
We examine DNS, ingress, policies, mesh interactions, and placement. The exercise distinguishes a product requirement from an investigation requiring customer-controlled access.
Hands-on exercises
- Trace a required connection through the permitted network path.
- Prepare a bounded diagnostic request for a customer engineer to execute.
Day 4
State, credentials, capacity, and updates
You will examine storage, secrets, metrics, authentication, and RBAC under the selected restrictions. We connect those mechanisms to update and recovery verification.
Hands-on exercises
- Verify data and credential availability after replacement.
- Review an update procedure and its remaining customer-owned prerequisites.
Your customer restrictions, artifact processes, and support boundaries can shape the agenda. Get in touch to tailor the workshop to your air-gapped delivery work.