# Kubernetes — Daily DevOps & .NET > Learn Kubernetes orchestration, AKS, container management, deployments, services, networking, security, and best practices for K8s clusters. Source: https://daily-devops.net/tags/kubernetes/ Generated: 2026-06-04 ## About this topic - [Topic landing page](https://daily-devops.net/tags/kubernetes/): Learn Kubernetes orchestration, AKS, container management, deployments, services, networking, security, and best practices for K8s clusters. - [Back to all topics](https://daily-devops.net/tags/) - [Site index](https://daily-devops.net/llms.txt) ## Articles tagged "Kubernetes" (14) - [AKS at Scale: Hard-Won Lessons from 1000+ Node Clusters](https://daily-devops.net/posts/aks-at-scale-mega-cluster-lessons/): Real-world lessons from operating 1000+ node AKS clusters: etcd limits, network saturation, observability overhead, and cost spirals you need to know. - [Hybrid AKS: Bridging Cloud and On-Prem with Azure Arc](https://daily-devops.net/posts/hybrid-aks-on-prem-azure-arc/): Practical patterns for connecting AKS to on-prem: ExpressRoute, VPN connectivity, Azure Arc management, DNS resolution, and identity federation. - [AKS Disaster Recovery: Why Your Untested Backup Will Fail](https://daily-devops.net/posts/disaster-recovery-business-continuity-aks/): AKS outages happen. Build a tested DR plan with Velero, realistic RTO/RPO targets, and multi-region failover steps your team can run under pressure. - [Container Registry & Image Security in AKS Deployments](https://daily-devops.net/posts/container-registry-image-security-aks/): ACR security is foundational. Learn practical hardening: image scanning, signing, RBAC, private endpoints, and policy enforcement for AKS clusters. - [Multi-AKS Cluster Networking & Hub-Spoke Topology](https://daily-devops.net/posts/multi-aks-cluster-networking-hub-spoke/): Practical multi-cluster AKS networking with VNet peering, hub-spoke routing, DNS, shared ingress, and clear criteria to keep mesh complexity in check. - [Observability in AKS CNI Overlay: When Pod IPs Hide Behind Nodes](https://daily-devops.net/posts/observability-logging-aks-cni-overlay/): CNI Overlay hides pod IPs behind nodes, breaking observability. Practical patterns for log aggregation, network flows, and debugging at scale. - [AKS Cost Optimization: Resource Governance That Actually Works](https://daily-devops.net/posts/cost-optimization-resource-governance-aks/): How to control AKS costs with pod density, node-pool design, spot VMs, and FinOps tagging—without sacrificing reliability or operational control. - [Storage Architecture & Stateful Workloads in AKS](https://daily-devops.net/posts/storage-architecture-stateful-workloads-aks/): PVC/PV patterns, Azure Disk vs Files trade-offs, Velero backup strategies, and cross-cluster replication for production stateful workloads in AKS. - [AKS Cluster Upgrades: Zero-Downtime Operations That Actually Work](https://daily-devops.net/posts/cluster-upgrades-zero-downtime-aks/): Master AKS upgrades with cordon/drain mechanics, Pod Disruption Budgets, multi-node-pool rollouts, and automation for zero-downtime operations. - [Pod Identity & Access Control in AKS: What Actually Breaks](https://daily-devops.net/posts/pod-identity-access-control-aks/): Workload Identity Federation changed how AKS handles authentication. Credential leaks, RBAC failures, identity drift: what breaks and how to fix it. - [AKS Architecture & Operations — The Complete Series](https://daily-devops.net/posts/aks-architecture-operations/): Nine articles on production AKS—identity, storage, multi-cluster networking, cost governance, DR, and running 1000-node clusters in practice. - [Kubernetes Is Not a Platform Strategy](https://daily-devops.net/posts/kubernetes-not-platform-strategy/): Kubernetes orchestrates containers brilliantly. But governance, identity, and recovery live elsewhere—and ignoring those boundaries breaks production. - [AKS Network Policies: The Security Layer Your Cluster Is Missing](https://daily-devops.net/posts/aks-network-policies-zero-trust/): Learn why AKS Network Policies are essential for Zero Trust, pod isolation, and Kubernetes security—plus how to implement them the right way. - [AKS Networking Clash: kubenet vs. CNI vs. CNI Overlay](https://daily-devops.net/posts/aks-networking-clash/): Azure CNI Overlay beats kubenet's 400-node ceiling and classic CNI's IP exhaustion. Compare all three AKS network models before the cluster locks in. ## Optional - [Full site index for LLMs](https://daily-devops.net/llms.txt) - [Full content of all articles](https://daily-devops.net/llms-full.txt) - [RSS for this tag](https://daily-devops.net/tags/kubernetes/feed.rss) - [Atom for this tag](https://daily-devops.net/tags/kubernetes/feed.atom) - [JSON Feed for this tag](https://daily-devops.net/tags/kubernetes/feed.json)