Ana içeriğe atla

Kurs

Manage Scalable Workloads in GKE

İleri7 sa 20 dk

Scale and manage multi-cluster GKE environments. Master fleets, Cloud Service Mesh, identity management, CI/CD at scale, and GKE Enterprise capabilities.

R7 sa 20 dk77 video176 Alıştırma9,250 XP52Başarı belgesi

Ücretsiz Hesap Oluşturun

Google ile devam edin
veya
Devam ederek şu belgeleri kabul etmiş olursunuz: Kullanım Şartları, bizim Gizlilik Politikası ve verilerinizin ABD'de depolandığını.

Binlerce şirketteki öğrenciler tarafından seviliyor

Bir Ekibi mi Eğitiyorsunuz?

İşletmeler için Dene

Kurs Açıklaması

Discover how to modernize, manage, and observe applications at scale using Google Kubernetes Engine Enterprise. This course uses lectures and hands-on labs to help you explore and deploy using Google Kubernetes Engine (GKE), GKE Fleets, Cloud Service Mesh, and Config Controller capabilities that will enable you to work with modern applications, even when they are split among multiple clusters hosted by multiple providers.

Ön Koşullar

Bu kurs için ön koşul yok

Müfredat

Kurs içeriği

1

Introduction

In this introduction, you'll explore the course goals and preview each section.
Bölüme Başla
2

Introduction to GKE at Scale

In the first section of this course titled, “Introduction to GKE at Scale,” you’ll learn to recognize the challenges of designing and building multi-environment solutions. Explain how GKE uses fleets to streamline operations. Describe the concepts of sameness and trust and use them to manage fleets. Finally you'll be able to identify the features and components used to manage GKE fleets.
Bölüme Başla
3

Multi-cluster GKE Architecture

In this section of this course titled “Multi-cluster GKE Architecture”, you’ll learn to recognize how GKE can be used to centralize cluster management. Examine the architecture of GKE mulit-cluster clusters. Learn how to create, connect, and manage GKE fleets. You'll also learn how to securely access GKE fleet clusters.
Bölüme Başla
4

Fleets and Teams

This section is about fleets and teams in GKE. You’ll learn how to define GKE fleets. Describe how GKE fleets can solve common cluster management problems. How to manage fleets and teams in GKE. You'll also be able to detail the elements of Fleet management.
Bölüme Başla
5

Managing GKE configuration at Scale

In this section of the course, titled “Managing GKE configuration at Scale,” you’ll learn to recognize the challenges of scaling multi-cluster, multi-tenant configurations. Configure a centralized configuration management using GitOps model. Describe the benefits and architecture of Config Sync. Use Policy Controller to enforce security and compliance in GKE. Extend GitOps principles to Google Cloud resources. Finally you will learn how to create a standardized, reusable, and policy-driven foundation for Kubernetes deployments.
Bölüme Başla
6

Fleet Networking

In this section of the course, you’ll learn how to explain how fleet networking works. Describe how Pods in a Kubernetes cluster communicate with each other. Enable multi-cluster Services. Configure multi-cluster Services. Detail the elements of fleet management. Outline the role of a multi-cluster gateway. You'll also learn how to configure a multicluster gateway.
Bölüme Başla
7

Cloud Service Mesh

In this section, titled, you learn to list and describe the benefits of using Cloud Service Mesh. Install and configure Cloud Service Mesh on different clusters. Trace the path of a request through the mesh, correctly identifying and explaining the role of key components like Envoy proxies, Mesh CA, and extensions in handling the request. Finally you'll learn to create Service Mesh Dashboards from workload telemetry including metrics, traces, and logs.
Bölüme Başla
8

Cloud Service Mesh routing

In this section, titled, you learn to explain how Cloud Service Mesh learns the network from Kubernetes. Deploy mesh API resources such as the VirtualService, DestinationRule, Gateway, Service Entry, and the Sidecar to configure the mesh. Describe how to harden the mesh network by introducing new functionality such as request retries, request timeouts, and circuit breakers. You'll also learn how to explore Service Mesh resilience by creating failures and delays on specific services.
Bölüme Başla
9

Service mesh security

In this section, you learn how to encrypt traffic between microservices to prevent anyone in the network from gaining access to private information. Authorize services and requests, ensuring that services only access the information that is allowed access from other services. Authenticate and authorize services and requests to verify trust among services in the mesh and among end users. You will also see how to limit service access in the network so that granular controls over the communication can be established.
Bölüme Başla
10

Multi-cluster Networking with Cloud Service Mesh

In this section, you learn to set up a multi-cluster mesh with a single subnet in a single VPC network and account for variations like multi-region clusters, multiple projects, shared VPC, and private clusters. You'll also learn to enable communication between GKE clusters on different networks using an east-west gateway and attached clusters.
Bölüme Başla
11

Manage Identity in GKE with Authentication

In this section, you learn to summarize the differences between authentication methods for GKE clusters and explain when to use each. Summarize the key features of connect gateway and explain how it simplifies and secures connections to GKE Enterprise fleet member clusters. Configuring connect gateway for authentication and authorization. Securely access clusters and provide authentication using OpenID Connect (OIDC) and third-party identity providers (IdPs).Finally you'll learn to configure GKE Identity Service to enable authentication and authorization for users when given a GKE cluster and a third-party identity provider (IdP).
Bölüme Başla
12

Security Posture, Compliance, and Preventative Controls

In this section, you learn to describe GKE security posture. Navigate and interpret the GKE security posture dashboard to identify security issues. Implement node security measures to protect GKE worker nodes from potential threats. Describe the process of vulnerability scanning in GKE. Finally you will be able to explain the roles and capabilities of Google Cloud's Artifact Analysis and Security Command Center in enhancing GKE security.
Bölüme Başla
13

CI/CD at scale in GKE

In this section, you learn to describe the core components of Google Cloud's CI/CD pipeline and how they address common challenges in application modernization. Analyze how Cloud Deploy integrates with GKE to manage Kubernetes manifests and control deployments. Compare and contrast the deployment strategies for Knative Serving within GKE Enterprise. Explain the steps required to establish a peered VPC connection for secure CI/CD in a private network. You will also learn how to evaluate the various security measures and tools available within Google Cloud for securing the software supply chain.
Bölüme Başla
14

GKE and AI

In this section, you learn to explain how GKE serves as a suitable platform for large language models and the increasing demand for hardware accelerators. Describe the high-level architecture of a GKE-based training platform for AI models. Outline the architecture for a GKE-based model serving platform. You will also learn to outline different cost management strategies available when using GKE for AI/ML workloads.
Bölüme Başla
R

Manage Scalable Workloads in GKE

Kurs
Tamamlandı

Başarı Belgesi Kazanın

Hemen Kaydolun

DataCamp for Mobile ile veri becerilerinizi geliştirin

Mobil kurslarımız ve günde 5 dakikalık kodlama görevlerimizle hareket halindeyken ilerleme kaydedin.