Let’s make it work for you 

Overview

This five-day course provides you with the knowledge, skills, and abilities to achieve competence in design, configuration, and operational management of VMware vSphere® Kubernetes Service (VKS) within VMware Cloud Foundation® (VCF) environments. You will learn vSphere Supervisor deployment models, storage topologies, and namespace architecture while gaining expertise in VKS cluster lifecycle management, workload deployment, and day-2 operations. The course covers vSphere Supervisor enablement options, VM Service deployment models, services architecture, and monitoring strategies. You will learn VKS cluster provisioning using kubectl, as well as workload deployment using YAML manifest files and Helm. Through hands-on labs and real-world scenarios, you will develop practical expertise in designing scalable Kubernetes infrastructure on VCF, operating VKS clusters, and building extensible cloud-native ecosystems for enterprise workload consumption.

Read more +

Prerequisites

Participants should have:

  • VCF Stage-1 Training
  • Working experience and knowledge of VMware vSphere®, VMware NSX®, and vSAN environments

Target Audience

This course is designed for: System Administrators, Solution Engineers, Consultants, Architects, and Support Personnel.

Read more +

Learning objectives

By the end of this course, learners will be able to:

  • Identify the key components of a Kubernetes architecture
  • Explain Volumes and persistent storage mechanisms in Kubernetes
  • Explain Kubernetes networking
  • Explain the concepts and components of vSphere Supervisor
  • Explain the vSphere Supervisor authentication workflow using vCenter Single Sign-On
  • Explain the key features of VCF Consumption CLI
  • Describe the vSphere Supervisor deployment models
  • Identify the vSphere Supervisor networking and load-balancing requirements
  • Explain the vSphere Supervisor storage options including cross Datacenter topologies
  • Outline the steps to configure vSphere Namespaces and Zones
  • Explain the VCF Cloud Services enablement options
  • Identify available Services in vSphere Supervisor including Velero and Extensible Services
  • Explain how the vSphere Supervisor is monitored and upgraded.
  • Explain the VM creation workflow with VM Service
  • Outline the VM Service deployment models for Virtual Machines with configurable OVF Properties
  • Explain how to deploy a vSphere Pod using kubectl and expose it through a Load Balancer IP
  • Describe how building an extensible ecosystem enables organizations to deploy cloud-native applications with integrated services
  • Explain how VKS Cluster monitoring functions and how standard packages are managed
  • Describe VKS Cluster provisioning using TanzuKubernetesCluster and ClusterClass
  • Describe the application deployment workflow using Helm
  • Describe the steps for creating snapshots in VKS Cluster
  • Explain the process of upgrading the VKS Version
  • Outline the steps to update VKS Cluster using VCF CLI
  • Explain how VKS cluster management enables platform engineers to manage VKS clusters at scale
  • Outline the process for installing Istio on a VKS cluster.
  • Illustrate how to visualize the Istio Service Mesh using Kiali.
  • Explain how to use the Gateway API to configure traffic routing within Istio the service mesh.
Read more +

Course Outline

Course Introduction

  • Introduction and course logistics

Course Objectives

  • Kubernetes Overview
  • Differentiate between containers and virtual machines
  • Describe Docker workflow, including the build, ship, and run processes
  • Explain Container Networking concepts
  • Describe Container Runtime Interface (CRI) and the containerd role in Kubernetes
  • Identify the key components of a Kubernetes architecture
  • Describe different Kubernetes objects and their purposes
  • Explain the functionality of Services in Kubernetes
  • Explain Volumes and persistent storage mechanisms in Kubernetes
  • Explain Kubernetes networking
  • Describe Antrea, Calico, and Multus CNI plug-ins
  • Describe the whereabouts IPAM plug-in
  • Describe Istio Service Mesh
  • Explain Helm Package Manager

VCF Cloud Services Overview

  • Describe vSphere Supervisor
  • Explain the concepts and components of vSphere Supervisor
  • Explain the Services in vSphere Supervisor
  • Outline the hierarchy of vSphere Supervisor folders
  • Explain the identity providers supported by vSphere Supervisor
  • Define the roles and permissions within vSphere Namespaces
  • Explain the vSphere Supervisor authentication workflow using vCenter Single Sign-On
  • Explain the key features of VCF Consumption CLI

vSphere Supervisor Deployment Models

  • Describe vSphere Supervisor deployment model with NSX VPC networking
  • Describe vSphere Supervisor deployment model with NSX Segment networking
  • Outline vSphere Supervisor deployment model with VDS and Foundation Load Balancer
  • Outline vSphere Supervisor deployment model with NSX and Avi Load Balancer
  • Outline vSphere Supervisor deployment model with VDS and Avi Load Balancer
  • Describe the requirements for the networking stack with NSX VPC Networking
  • Outline the requirements for the networking stack with NSX Segment Networking
  • Outline the requirements for the networking stack with VDS Networking
  • Explain the Load Balancer options
  • Outline the requirements for Avi Load Balancer
  • Outline the requirements for Foundation Load Balancer
  • Explain the vSphere Supervisor Zone Deployment Models
  • Outline the vSphere Supervisor Zone Model Attributes
  • Describe the vSphere Supervisor Control Plane Availability Models

VCF Cloud Services Enablement Options

  • Explain how to activate the vSphere Supervisor when creating a Workload Domain
  • Describe the workflow for deploying a vSphere Supervisor with NSX VPC and NSX Load Balancer.
  • Explain how to connect to the vSphere Supervisor using the VCF CLI.
  • Outline the deployment process for a vSphere Supervisor using an NSX segment.
  • Explain the workflow for deploying a vSphere Supervisor with VDS and the Foundation Load Balancer.
  • Describe the deployment process for a vSphere Supervisor with NSX and Avi Load Balancer.
  • Explain how to deploy a vSphere Supervisor using VDS and Avi Load Balancer.
  • Illustrate how to deploy a vSphere Supervisor from an exported configuration.

vSphere Supervisor Storage Topologies

  • Describe the Storage Options for vSphere Supervisor in VCF
  • Explain the concepts and components of the Storage Topologies for vSphere Zones and vSphere Supervisor
  • Describe the integration of vSphere Storage and vSphere Supervisor
  • Outline the Data Persistence for vSphere Supervisor in vSphere Zones
  • Identify the supported topologies when running vSphere Supervisor on top of vSAN clusters

Configuring and Managing vSphere Namespaces and Zones

  • Explain the steps to create a vSphere Namespace on the vSphere Supervisor
  • Explain the steps to set Resource and Object Limits to a vSphere Namespace
  • Outline the steps to add Security Policies to an NSX vSphere Namespace
  • Outline the procedure to add a cluster as a vSphere Zone to a vSphere Supervisor
  • Describe the steps required to associate a vSphere Zone with a vSphere Namespace
  • Explain the workflow for removing a vSphere Zone from a vSphere Namespace and vSphere Supervisor

Services in vSphere Supervisor

  • Define vSphere Kubernetes Service (VKS) and its key features
  • Explain the architecture of VKS
  • Explain the VKS Cluster topology with vSphere Zones
  • Identify networking and load-balancing options for VKS clusters
  • Explain storage policy configurations for VKS clusters
  • Outline the VKS Core and Standard packages
  • Describe the integrated backup and restore solution
  • Identify considerations for vSphere Supervisor protection (backup and restore)
  • Describe the process of protecting the vSphere Supervisor Control Plane
  • Outline the design considerations for protecting VKS service clusters with Velero
  • Outline the design considerations for protecting VM service VMs with Velero
  • Identify the extensible services you can run on top of vSphere Supervisor
  • Outline the requirements for the extensible services

Monitoring and Lifecycle Management of vSphere Supervisor

  • Explain monitoring and managing resources in a vSphere Namespace from vCenter
  • Describe how vSphere Supervisor monitoring works
  • Explain monitoring of vSphere Supervisor from VCF Operations
  • Explain the vSphere Supervisor update Options
  • Outline the steps to configure a Subscribed Content Library for Supervisor Images
  • Outline the steps for updating the vSphere Supervisor
  • Outline the steps for setting the Default CNI for VKS Clusters
  • Explain the process of registering a Supervisor Service to vCenter Server
  • Explain the process of installing a Supervisor Service to vCenter Server
  • Explain the process of upgrading a Supervisor Service to vCenter Server
  • Explain the process of deactivating a Supervisor Service to vCenter Server
  • Outline the backup and restore methods for vSphere Supervisor

Managing Virtual Machines with VM Service

  • Differentiate between traditional VMs and API-driven declarative VMs
  • Explain the features of VM Service
  • Explain the architecture of VM Service
  • Explain the VM creation workflow with VM Service
  • Explain the VM deployment process
  • Explain the process of deploying a VM with configurable OVF properties in vSphere Supervisor
  • Describe vSphere Pod storage and networking
  • Outline the steps to create a vSphere Namespace and configure resource limits
  • Explain the steps for creating VM Classes
  • Explain how to deploy a vSphere Pod using kubectl and expose it through a Load Balancer IP

Multi-Tenancy in VCF

  • Describe Multi-Tenancy in VCF
  • Explain the VCF Private Cloud experience for each persona
  • Explain the relationship between vSphere Supervisor instances, Regions, and Zones
  • Describe the different types of Organizations in VCF Automation
  • Outline the steps to create an Organization
  • Explain the steps to create Content Libraries
  • Describe how to set up Projects and Namespaces within an Organization

Consuming VCF Cloud Services for building an Extensible Ecosystem

  • Describe how building an extensible ecosystem enables organizations to deploy cloud-native applications with integrated services
  • Explain the steps for deploying Contour Ingress Controller to manage external access
  • Explain the steps for deploying Harbor Image Registry for managing container images
  • Outline the steps for deploying Argo CD service on Supervisor for GitOps continuous delivery
  • Outline the deployment and management of Virtual Machines using VCF Automation
  • Describe the deployment and management of VKS Clusters through VCF Automation
  • Describe management of Harbor image repositories via projects
  • Explain various ways to connect to VKS Clusters
  • Explain the steps for deploying and consuming container-based applications using VCF Automation

VKS Cluster Deployment using Kubectl

  • Explain how Kubernetes software distribution for VKS clusters is managed using vSphere Kubernetes releases (VKrs)
  • Describe VKS Cluster provisioning using TanzuKubernetesCluster
  • Describe VKS Cluster provisioning using ClusterClass
  • Outline the steps to create a Subscribed Content Library
  • Outline the steps for publishing a Local Content Library
  • Outline the steps for VKS Cluster Provisioning with Calico CNI
  • Explain the process of fetching the VKS Cluster admin kubeconfig from vSphere Supervisor
  • Explain the process of connecting to the VKS Cluster using VCF CLI
  • Explain the process of integrating VKS Clusters with Private Container Registry
  • Outline the steps to integrate Harbor with a v1beta1 API cluster

Monitoring and Lifecycle Management of VKS Clusters

  • List the supported Standard Packages for VKS Clusters
  • Outline the requirements for Installing Packages on VKS Clusters
  • Explain the process of Managing VKS Standard Packages
  • Describe how VKS Cluster monitoring works
  • Outline the step for Enabling Monitoring for VKS Clusters
  • Explain monitoring of VKS Cluster from VCF Operations
  • Explain monitoring and managing resources in a vSphere Namespace from vCenter
  • Explain monitoring of VKS Cluster from VCF Automation
  • Explain monitoring of VKS Cluster using kubectl

Deploying Workloads on VKS Clusters using Helm

  • Describe the application deployment workflow using Helm
  • Explain how Docker images and Helm charts are managed in OCI registry on Harbor
  • Outline the steps for deploying an application using Helm
  • Outline the steps for upgrading an application using Helm

VKS Cluster Day-2 Operations

  • Describe Volume Snapshots
  • Describe the lifecycle of a Volume Snapshot and Volume Snapshot Content
  • Outline the steps to Install and Deploy vSphere pvCSI Webhook
  • Outline the steps to Install and Deploy External CSI Snapshot Webhook
  • Outline the steps to Restore a Volume Snapshot
  • Explain the process of registering a New VKS Version
  • Explain the process of upgrading the VKS Version
  • Outline the steps to update VKS Cluster using VCF CLI

VKS Cluster Management and Istio Service Mesh

  • Explain how VKS cluster management enables platform engineers to manage VKS clusters at scale
  • Describe VKS cluster management architecture
  • Describe how VKS cluster management delivers centralized visibility across the entire VKS cluster fleet
  • Explain how consistent policies are enforced across clusters through VKS cluster management
  • Explain how VKS clusters can be backed up using VKS cluster management
  • Describe how VKS standard packages are deployed and managed through VKS cluster management
  • Describe the functionality and key components of the Istio Service Mesh
  • Outline the steps required to install Istio on a VKS cluster
  • Explain the process for deploying the Kiali dashboard
  • Illustrate how to visualize the Istio Service Mesh using Kiali
  • Explain how to use the Gateway API to configure traffic routing within Istio the service mesh
  • Describe the steps for collecting Istio support bundle files

Exams and Assessments

There is no certification or exam associated with this course.

Hands-On Learning

This course is comprised of a series of Lessons, demonstrations and hands on labs.

Read more +

Free 6-Month Access: Learning Platform Discovery plan

Included FREE with every instructor‑led course

Get free guided access to the QA Learning Platform. Assess your skills, explore in-demand topics, and understand which areas to focus on.

Find out more

Why choose QA

Yellow
Need to know

Frequently asked questions

How can I create an account on myQA.com?

There are a number of ways to create an account. If you are a self-funder, simply select the "Create account" option on the login page.

If you have been booked onto a course by your company, you will receive a confirmation email. From this email, select "Sign into myQA" and you will be taken to the "Create account" page. Complete all of the details and select "Create account".

If you have the booking number you can also go here and select the "I have a booking number" option. Enter the booking reference and your surname. If the details match, you will be taken to the "Create account" page from where you can enter your details and confirm your account.

Find more answers to frequently asked questions in our FAQs: Bookings & Cancellations page.

How do QA’s virtual classroom courses work?

Our virtual classroom courses allow you to access award-winning classroom training, without leaving your home or office. Our learning professionals are specially trained on how to interact with remote attendees and our remote labs ensure all participants can take part in hands-on exercises wherever they are.

We use the WebEx video conferencing platform by Cisco. Before you book, check that you meet the WebEx system requirements and run a test meeting to ensure the software is compatible with your firewall settings. If it doesn’t work, try adjusting your settings or contact your IT department about permitting the website.

How do QA’s online courses work?

QA online courses, also commonly known as distance learning courses or elearning courses, take the form of interactive software designed for individual learning, but you will also have access to full support from our subject-matter experts for the duration of your course.

Once you have purchased the Online course and have completed your registration, you will receive the necessary details to enable you to immediately access it through our e-learning platform and you can start to learn straight away, from any compatible device. Access to the online learning platform is valid for one year from the booking date.

All courses are built around case studies and presented in an engaging format, which includes storytelling elements, video, audio and humour. Every case study is supported by sample documents and a collection of Knowledge Nuggets that provide more in-depth detail on the wider processes.

When will I receive my joining instructions?

Joining instructions for QA courses are sent two weeks prior to the course start date, or immediately if the booking is confirmed within this timeframe. For course bookings made via QA but delivered by a third-party supplier, joining instructions are sent to attendees prior to the training course, but timescales vary depending on each supplier’s terms. Read more FAQs.

When will I receive my certificate?

Certificates of Achievement are issued at the end the course, either as a hard copy or via email. Read more here.

Let's talk

A member of the team will contact you within 4 working hours after submitting the form.

By submitting this form, you agree to QA processing your data in accordance with our Privacy Policy.