Kubernetes
586 incident problems in Kubernetes environments.
먼저 읽을 가이드
추천 문제
All problems (586)
K8S-1453A cert-manager HTTP01 challenge works on the base gateway and fails on the...A cert-manager HTTP01 challenge works on the base gateway and fails on the... focuses on certificate-rotation and asks the reader to isolate the key signal in Kubernetes. HTTP01 failures in canaries often come from mesh routing layers rat...KubernetesIntermediate11 minProK8S-1456A Gatekeeper mutation adds the default storage class and the scheduler still...A Gatekeeper mutation adds the default storage class and the scheduler... focuses on policy-as-code and asks the reader to isolate the key signal in Kubernetes. Helpful defaulting policies can create impossible scheduling combinat...KubernetesIntermediate11 minProK8S-1390A PodDisruptionBudget is respected and a maintenance drain still never...A PodDisruptionBudget is respected and a maintenance drain still never... focuses on cluster-maintenance and asks the reader to isolate the key signal in Kubernetes. Successful eviction policy does not guarantee practical drain completion within your...KubernetesIntermediate11 minProK8S-1420A rollback automation chooses the wrong StatefulSet revisionA rollback automation chooses the wrong StatefulSet revision focuses on rollback-strategy and asks the reader to isolate the key signal in Kubernetes. StatefulSet history can be deceptive when partitioned rollouts intentionally leave part...KubernetesIntermediate11 minProK8S-1410A rollback automation picks the wrong ReplicaSetA rollback automation picks the wrong ReplicaSet focuses on Deployment Governance and asks the reader to isolate the key signal in Kubernetes. Rollout helpers that depend on annotations can break when controllers prune or compact older his...KubernetesIntermediate11 minProK8S-1440A StatefulSet rollback helper chooses the wrong revisionA StatefulSet rollback helper chooses the wrong revision focuses on rollback-strategy and asks the reader to isolate the key signal in Kubernetes. StatefulSet rollbacks can be misleading when partitions intentionally preserve mixed versions...KubernetesIntermediate11 minProK8S-1430A StatefulSet rollback tool chooses the wrong revisionA StatefulSet rollback tool chooses the wrong revision focuses on rollback-strategy and asks the reader to isolate the key signal in Kubernetes. StatefulSet history is tricky when partitions preserve intentional mixed-version states insid...KubernetesIntermediate11 minProK8S-1448A Velero restore completes and workloads still failRestored custom resources fail admission until a controller restart.KubernetesIntermediate11 minProK8S-1388A cert-manager DNS01 challenge keeps creating TXT records in the wrong zoneA cert-manager DNS01 challenge keeps creating TXT records in the wrong zone focuses on Identity And Access and asks the reader to isolate the key signal in Kubernetes. DNS01 failures often come from conflicting zone normal...KubernetesIntermediate12 minProK8S-1434A cert-manager DNS01 renewal passes staging and fails productionA cert-manager DNS01 renewal passes staging and fails production focuses on runtime-isolation and asks the reader to isolate the key signal in Kubernetes. Ephemeral challenge pods are especially sensitive to hardening paths that long-lived...KubernetesIntermediate12 minProK8S-1424A cert-manager DNS01 renewal works in staging and fails in productionA cert-manager DNS01 renewal works in staging and fails in production focuses on runtime-isolation and asks the reader to isolate the key signal in Kubernetes. Hardening can break solver pods through file-path restrictions long before it break...KubernetesIntermediate12 minProK8S-1414A cert-manager renewal passes staging and fails productionA cert-manager renewal passes staging and fails production focuses on runtime-isolation and asks the reader to isolate the key signal in Kubernetes. Hardening changes on challenge pods can remove mounted credentials paths even whe...KubernetesIntermediate12 minProK8S-1393A Karpenter or autoscaler scale-from-zero path stallsA Karpenter or autoscaler scale-from-zero path stalls focuses on Deployment Governance and asks the reader to isolate the key signal in Kubernetes. Provisioning decisions can be made on an earlier pod shape than the one you inspect later.KubernetesIntermediate12 minProK8S-1360A PodDisruptionBudget looks correct and voluntary evictions still stallA PodDisruptionBudget looks correct and voluntary evictions still stall focuses on Deployment Governance and asks the reader to isolate the key signal in Kubernetes. Disruption budgets interact with rollout and autoscaling limits as one s...KubernetesIntermediate12 minProK8S-1370A PodDisruptionBudget looks safe and node drains still stallA drain or upgrade stalls after autoscaling and rollout tuning were changed independently across teams.KubernetesIntermediate12 minProK8S-1380A PodDisruptionBudget looks safe and node drains still stallA drain or upgrade stalls after autoscaling and rollout settings were changed independently across teams.KubernetesIntermediate12 minProK8S-1398A Velero restore finishes and one application never comes upA Velero restore finishes and one application never comes up focuses on cluster-maintenance and asks the reader to isolate the key signal in Kubernetes. Restore plugins can quietly alter object content even when restore status looks successful.KubernetesIntermediate12 minProK8S-1404An HTTP01 challenge solver succeeds on IPv4 and fails globallyAn HTTP01 challenge solver succeeds on IPv4 and fails globally focuses on ingress-routing and asks the reader to isolate the key signal in Kubernetes. Dual-stack rollouts can turn a healthy solver pod into a globally failing valida...KubernetesIntermediate12 minProK8S-1381Metrics Server stays ready and the HPA still shows unknownMetrics Server stays ready and the HPA still shows unknown focuses on runtime-configuration and asks the reader to isolate the key signal in Kubernetes. Autoscaling failures often come from address selection drift between components rather...KubernetesIntermediate12 minProK8S-1340A fresh cluster passes smoke tests and later loses alertingA fresh cluster passes smoke tests and later loses alerting focuses on Deployment Governance and asks the reader to isolate the key signal in Kubernetes. Copied platform examples can carry stale label contracts long after the chart has ev...KubernetesIntermediate13 minPro