| Troubleshooting | L37-L57 | Diagnosing and fixing AKS cluster issues: networking, DNS, kubelet, GPUs, security/vulns, upgrades, Windows nodes, Fleet CRDs, and agent/log-based troubleshooting. |
| Best Practices | L58-L102 | AKS reliability, performance, security, and cost best practices: cluster design, upgrades, networking, storage, scheduling, GPU/ML, PCI, and workload resiliency patterns. |
| Decision Making | L103-L149 | Guidance for planning, choosing, and migrating AKS architectures: VM/node pools, networking, upgrades, pricing, cost optimization, PCI, multi‑cloud comparisons, and Fleet Manager workflows. |
| Architecture & Design Patterns | L150-L174 | Designing AKS architectures: HA/DR patterns, multi-region and PCI designs, upgrade/rollout strategies, node pool/network isolation, virtual nodes, and Fleet-based multi-cluster management. |
| Limits & Quotas | L175-L197 | AKS limits, quotas, SLAs, and lifecycle: node/pod/identity caps, CNI/NAT/load balancer scaling, Istio performance, version support/LTS, Fleet limits, and platform support constraints. |
| Security | L198-L281 | Securing AKS clusters: identity and access (Entra, RBAC, workload identity), network and node hardening, encryption, policies, PCI compliance, and secure integrations with other Azure services. |
| Configuration | L282-L434 | Configuring AKS clusters and fleets: networking, ingress/egress, storage, GPUs, autoscaling, cost/monitoring, security, add-ons (Istio, Dapr, ACNS), and infrastructure for common data/AI workloads. |
| Integrations & Coding Patterns | L435-L459 | Patterns and how-tos for integrating AKS with AI agents, KAITO, storage, security (Key Vault/CSI), GPUs, monitoring, GitOps/Fleet, and external Azure/OSS services and tools. |
| Deployment | L460-L514 | Deploying and upgrading AKS clusters and apps, including CI/CD, service meshes, autoscaling, storage/migration, AI/ML and Wasm workloads, and production-ready infrastructure setup. |