All skills
microsoft avatar

/azure-kubernetes

@a8f19b4
by microsoftmicrosoft/skills3.1k stars
351

Plan, create, and configure production-ready Azure Kubernetes Service (AKS) clusters. Covers Day-0 checklist, SKU selection (Automatic vs Standard), networking options (private API server, Azure CNI Overlay, egress configuration), security, and operations (autoscaling, upgrade strategy, cost analysis). WHEN: create AKS environment, provision AKS, enable AKS observability, design AKS networking, choose AKS SKU, secure AKS, optimize AKS, AKS spot nodes, AKS cluster-autoscaler, rightsize AKS pod, pod rightsizing, over-provisioned AKS pod, pod resource requests and limits, Vertical Pod Autoscaler, VPA recommendations.

Use this Skill: https://skilld.dev/gh/microsoft/skills/azure-kubernetes

This session only. Nothing lands on disk.

azure-kubernetes-app-deploytemplatesmermaidarchitecture-diagram.md

≈416 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Architecture Diagram Template

Render this mermaid diagram in the terminal, replacing all {{PLACEHOLDER}} tokens with detected values from Section 1 (Detection) and the chosen backing services.

Diagram

flowchart LR
    Users([Users]) -->|HTTPS| GW

    subgraph AKS["AKS Cluster: {{AKS_CLUSTER_NAME}}"]
        direction LR
        GW[{{INGRESS_TYPE}}] --> SVC[Service\n{{APP_NAME}}:{{PORT}}]
        SVC --> DEP[Deployment\n{{REPLICA_COUNT}} replicas]
    end

    DEP -.->|Workload Identity| MI[Managed Identity\n{{IDENTITY_NAME}}]
    ACR[ACR\n{{ACR_NAME}}.azurecr.io] -->|pull| AKS
    CICD[GitHub Actions] -->|push| ACR

    %% Backing services — include only those in the architecture contract
    %% Delete lines for services not selected
    DEP -.->|Workload Identity| PG[(PostgreSQL\n{{PG_SERVER_NAME}})]
    DEP -.->|Workload Identity| REDIS[(Redis\n{{REDIS_NAME}})]
    DEP -.->|Workload Identity| KV[Key Vault\n{{KV_NAME}}]

    MON[Log Analytics\n{{LAW_NAME}}] -..- AKS

    style AKS fill:#e8f5e9,stroke:#107C10,stroke-width:2px
    style ACR fill:#e3f2fd,stroke:#0078D4
    style PG fill:#fff3e0,stroke:#f57c00
    style REDIS fill:#fce4ec,stroke:#c62828
    style KV fill:#f3e5f5,stroke:#7b1fa2
    style MON fill:#f5f5f5,stroke:#757575

Rendering instructions

Output this diagram as a fenced mermaid code block in the terminal. The developer will see it rendered if their terminal/tool supports mermaid, or as readable text if not.

After the diagram, output a cost estimate table listing each Azure resource with its SKU/tier and approximate monthly cost. Use your knowledge of Azure pricing to provide estimates.

Source: SKILL.md on GitHub

No alerts9d3 checks · Risk SAFE
  • Gen Agent Trust Hub9d

    This skill provides comprehensive, production-grade guidance for Azure Kubernetes Service (AKS) with a strong emphasis on security best practices, including Workload Identity, hardened container configurations, and automated readiness assessments.

  • Socket9d

    No alerts

  • Snyk9d

    Risk: LOW · No issues

Signed by skilld at a8f19b4. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated 2 months ago
metadata
{
  "author": "Microsoft",
  "version": "1.2.2"
}

README badge

README badge for microsoft/skills/azure-kubernetes