Red Hat OpenShift Administration II: Operating a Production Kubernetes Cluster (OCP v4.14)

Inquire now

Duration 5 days – 35 hrs

 

Overview

 

This 5-day, hands-on course focuses on operating and securing a production-grade Red Hat OpenShift (OCP v4.14) cluster. Participants learn to manage Kubernetes resources declaratively, deploy packaged applications (Templates/Helm), implement authentication and RBAC, secure cluster networking with TLS and Network Policies, expose non-HTTP workloads, enable developer self-service through quotas and templates, manage Operators with OLM, harden workloads with SCCs and API access controls, and perform cluster updates while detecting deprecated Kubernetes APIs.

 

Objectives 

  • Manage Kubernetes/OpenShift resources using declarative manifests and Kustomize overlays
  • Deploy packaged workloads using OpenShift Templates and Helm charts
  • Configure identity providers (IdP) and enforce access control using RBAC
  • Secure ingress/egress and service-to-service traffic using TLS and NetworkPolicies
  • Expose non-HTTP / non-SNI applications using LoadBalancer Services and Multus secondary networks
  • Enable developer self-service with quotas, limit ranges, project templates, and self-provisioning controls
  • Install and manage cluster add-ons using Operators and the Operator Lifecycle Manager (OLM) via console and CLI
  • Strengthen workload security using Security Context Constraints (SCCs) and controlled access to Kubernetes APIs
  • Perform cluster and operator updates safely; identify and remediate deprecated API usage
  • Apply best practices through scenario-based labs (self-service setup, secure apps, packaged app deployments)

Audience

 

  • OpenShift/Kubernetes administrators and platform operations teams
  • DevOps / SRE / Platform engineering teams managing production clusters
  • Infrastructure and cloud engineers responsible for container platforms
  • Security engineers supporting cluster hardening and policy enforcement
  • Technical leads responsible for operating OpenShift at scale

 

Pre-requisites

  • Basic Kubernetes/OpenShift familiarity (pods, services, deployments, namespaces/projects)
  • Command-line proficiency (Linux shell) and comfort using YAML
  • Basic networking fundamentals (DNS, ports, TLS concepts)
  • Recommended: completion of OpenShift Administration I (or equivalent experience)

Course Content

 

Day 1 — Declarative Operations + Kustomize

 

Chapter 1: Declarative Resource Management

  • Resource manifests (YAML) and declarative workflows
  • Kustomize overlays for environment-specific configurations
  • Lab: Declarative Resource Management

 

Day 2 — Deploy Packaged Applications (Templates + Helm)

 

Chapter 2: Deploy Packaged Applications

  • OpenShift Templates: parameters and reuse patterns
  • Helm charts: install/upgrade basics and release management concepts
  • Lab: Deploy Packaged Applications

 

Day 3 — Identity, RBAC, and Network Security

 

Chapter 3: Authentication and Authorization

  • Configure identity providers (IdP)
  • Define/apply permissions with RBAC (roles, rolebindings, clusterroles)
  • Lab: Authentication and Authorization

 

Chapter 4 (Part 1): Network Security

 

  • Protect external traffic with TLS
  • Configure NetworkPolicies
  • Guided exercises

 

Day 4 — Advanced Networking + Developer Self-Service

 

Chapter 4 (Part 2): Network Security

 

  • Protect internal traffic with TLS (service-to-service)
  • Lab: Network Security

 

Chapter 5: Expose non-HTTP/SNI Applications

 

  • LoadBalancer services for L4 workloads
  • Multus secondary networks (multi-homed pods use cases)
  • Lab: Expose non-HTTP/SNI Applications

 

Chapter 6 (Part 1): Enable Developer Self-Service

 

  • Project and cluster quotas
  • Limit ranges
  • Guided exercises

 

Day 5 — Operators, App Security, and Production Updates + Capstone

 

Chapter 6 (Part 2): Enable Developer Self-Service

 

  • Project templates and self-provisioner role
  • Lab: Enable Developer Self-Service

 

Chapter 7: Manage Kubernetes Operators

 

  • Operators + OLM overview
  • Install Operators via Web Console and CLI
  • Lab: Manage Kubernetes Operators

 

Chapter 8: Application Security

 

  • SCCs to control app permissions
  • Allow application access to Kubernetes APIs
  • Cluster/node maintenance with Kubernetes CronJobs
  • Lab: Application Security

 

Chapter 9: OpenShift Updates

 

  • Cluster update process
  • Detect deprecated Kubernetes API usage
  • Update Operators with OLM
  • Quizzes + summary

 

Chapter 10: Comprehensive Review

 

  • Lab: Cluster Self-service Setup
  • Lab: Secure Applications
  • Lab: Deploy Packaged Applications

 

Inquire now

Best selling courses

Duration: 5 days – 35 hrs   Overview The “SOC Network and Threat Detection and Analysis” training course is designed to equip Security Operations Center (SOC) analysts and IT security professionals with the skills and knowledge required to detect, analyze, and respond to network threats effectively. This comprehensive course covers essential topics such as threat...

Duration 1 day – 7 hrs   Overview   This 1-day training builds upon basic warehouse operations knowledge and introduces key logistics concepts involved in the movement and coordination of goods—especially wet and dry food items—within and outside the warehouse. Participants will explore transport logistics, inbound and outbound coordination, documentation practices, and cold chain considerations,...

Duration 2 days – 14 hrs   Overview   This hands-on course provides an introduction to Splunk, a powerful platform for searching, monitoring, and analyzing machine-generated data. The training focuses on how developers and QA professionals can leverage Splunk to gain insights from logs and metrics, improve application observability, detect anomalies, and support test validation....

Duration 3 days – 21 hrs   Overview.   This course is designed for fresh graduates aspiring to build a career in Data Science. It introduces the fundamentals of data science, focusing on data analysis, visualization, and basic machine learning concepts using Python. The course provides hands-on practice with real-world datasets, equipping participants with the...

Among the most popular and widely implemented NoSQL databases is MongoDB. Its scalability, robustness, and flexibility have made it extremely popular among the Fortune 500 and Global 500 companies who use it to implement a variety of activities including social communications, analytics, content management, archiving, and other activities.

PROGRAMMING / CODING

ASP.NET

SP.NET is a framework for developing dynamic web applications. It supports languages like VB.Net, C#, Jscript.Net, etc. The programming logic and content can be developed separately in Microsoft Asp.Net.

CYBER SECURITY

Physical Security

Duration 3 days – 21 hrs   Overview   This course provides a comprehensive introduction to physical security principles, policies, technologies, and practices. It covers methods to assess physical risks, implement protective measures, and respond to security incidents. Participants will gain knowledge on access control, surveillance systems, perimeter security, emergency planning, and security audits.  ...

Course Customization Options To request a customized training for this course, please contact us to arrange.

We use cookies on our website to personalize your experience by storing your preferences and recognizing repeat visits. By clicking “Accept”, you agree to the use of all cookies. You can also select “Cookie Settings” to adjust your preferences and provide more specific consent. Cookie Policy