> ## Documentation Index
> Fetch the complete documentation index at: https://docs.ahmadraza.in/llms.txt
> Use this file to discover all available pages before exploring further.

# Operation (DevOps) - Guide

# 🧠 TraceMyPods – DevOps First Microservice `AI` Platform

**TraceMyPods** is a Kubernetes-native DevOps Focused (chat WITH OllamaAI) token-gated service platform that leverages a multiple microservices architecture with secure Istio service mesh, GPU acceleration, and a robust monitoring stack with full Terraform and Helm packaged to deploy on AWS EKS. It provides a seamless user experience for AI interactions, token management, and advanced analytics.

### Visit Site : `https://tracemypods.ahmadraza.in`

> Demo Video :

<iframe width="740" height="420" src="https://cdn.ahmadraza.in/demo-video1.mp4" title="Launch docs.ahmadraza in (DEVOPS / DEVSECOPS / SRE / GITOPS)" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen />

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/architecture.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=68068bda6e8cff86f607922a0e4c5803" alt="Flow" width="5548" height="2969" data-path="images/tracemypods/architecture.png" />

***

## 🛠️ InfraStack

`Istio Service Mesh` | `Jaeger` | `AWS EKS` | `GPU Nodes` | `Grafana` | `Loki` | `Prometheus`\
`HELM` | `Terraform` | `Trevy` | `Github Actions` | `Falco` (Security) | `Kyverno` (PSPolicy) | `Kube-Hunter` (CIS Benchmark) |

***

## ☸️ Kubernetes Stack

`IstioGateway/VirtualService` |  `Ingress` | `HPA` | `VPA` | `Pod Disruption Budget` | `Network Policy` | `Resource Quotas`  | `SecurityContext` | `PV, Storage Class, PVC, EBS ` | `PodSecurityPolicies` | `RBAC` |
`ConfigMaps / Secrets` | `Taints & Tolerations` | `Readiness & Liveness Probes`\
`Deployments / CronJobs` | `Affinity / Anti-Affinity` | `Kiali` | `Kube-Hunter` | `Minikube` (local)

***

## 🔗 Application Stack

`Kafka` | `Redis` | `MongoDB` | `Ollama (AI)` | `Node.js` | `Python` | `GO` |`VectorDB (qdrant)` | `Microservices` | `Payments (razorpay)` | `Invoice/Reports` | `EMAIL` | `PostmanCollection` | `LoadTesting` | `OpenTelemetry` | `Gemini_AI` | `S3` (File Browser) | `Image Generation API`

***

## 📸 UI Previews

### 📍 Landing Page

* Landing page where users can explore the platform features, chat with AI models, and access various services.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/LandingPageHeader.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=ef2ead9848dae3a8363b176ab50460a8" alt="Landing Page" width="1479" height="927" data-path="images/tracemypods/LandingPageHeader.png" />

### 🤖 Chat With Premium Models (Chat Box)

* Chat interface for users to interact with premium AI models, powered by Ollama.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/chat.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=ce4c7d185dd5c599efd3daaef70ee252" alt="Chat With Premium Models" width="1880" height="933" data-path="images/tracemypods/chat.png" />

### 🤖 Free AI Assistant (Chat Box)

* Chat interface for users to interact with free AI models, providing a seamless user experience.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/ChatBox.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=e92f4c532f7701884a226e6ed7d6651f" alt="Chat Box" width="992" height="923" data-path="images/tracemypods/ChatBox.png" />

### 🖼️ Image Generator API

* Image generation API that allows users to create images based on text prompts, integrated with Cloudflare AI Workers.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/ImageGenerator.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=05b89d952a5adc5c66055bc16f5a2023" alt="Image Generator" width="1735" height="1175" data-path="images/tracemypods/ImageGenerator.png" />

### 📜 Platform Features

* Features overview showcasing the capabilities of the TraceMyPods platform, including AI interactions, token management, and advanced analytics.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/Features.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=280b1ae70a7905684c0fe58d01571c11" alt="Platform Features" width="779" height="937" data-path="images/tracemypods/Features.png" />

### 💳 Purchase API (Model Selection)

* Model purchase interface where users can select models and proceed with payment.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/PurchaseModelSlelection.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=8383529671f5312efe4b7f04a1ad1cef" alt="Purchase Model Selection" width="1461" height="1155" data-path="images/tracemypods/PurchaseModelSlelection.png" />

### 💸 Payment Success

* Payment success page confirming the successful transaction and model activation.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/PaymentSuccessfullTokenPremium.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=24929311123bedd1b39c5964faa209f6" alt="Payment Success" width="1711" height="1235" data-path="images/tracemypods/PaymentSuccessfullTokenPremium.png" />

### 💸 RazorPay Checkout (Card Details)

* Card details page for entering payment information securely.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/RazorPayCheckoutCardDetails.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=b520e94261f3c48436db0c1a1b7a7bd2" alt="RazorPay Checkout Card Details" width="1711" height="1235" data-path="images/tracemypods/RazorPayCheckoutCardDetails.png" />

### 💸 RazorPay Checkout (Confirm Payment)

* Payment confirmation page for reviewing and confirming payment details.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/RazorPayCheckoutOTP.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=acc83c101fc95299808dcc19ec2947f3" alt="RazorPay Checkout OTP" width="1711" height="1235" data-path="images/tracemypods/RazorPayCheckoutOTP.png" />

### 💸 RazorPay Checkout (Payment Successful)

* Payment successful page confirming the completion of the transaction.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/RazorPayCheckoutPaymentSuccessFull.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=125506f450bef1112b505e3778aa8da8" alt="RazorPay Checkout Payment Successful" width="1711" height="1235" data-path="images/tracemypods/RazorPayCheckoutPaymentSuccessFull.png" />

### 🔍 Purchase Invoice (S3-Bucket)

* Preview of the invoice generated after a successful purchase. (sent to user email and stored in S3 bucket)

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/tracemypods-invoice.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=10159118837f9352be2e60f70dcccedf" alt="Invoice Preview" width="781" height="875" data-path="images/tracemypods/tracemypods-invoice.png" />

### 🔍 Purchase Successful Email

* Preview of the email sent to users upon successful purchase, containing invoice/token details and confirmation.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/tracemypods-email1.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=2abf49a66e68db3e3d95229ec330e8de" alt="Email Preview" width="584" height="833" data-path="images/tracemypods/tracemypods-email1.png" />

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/tracemypods-email2.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=8a4dc1cff73422ba35e2706ccfe69cb9" alt="Email Preview" width="573" height="820" data-path="images/tracemypods/tracemypods-email2.png" />

### Admin/Analytics Dashboard

Admin dashboard to view purchase history, manage free and paid tokens and earnings and export business purchase data.

* Here we can view and search invoices stored in S3 Bucket

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/podpay-s3invoices.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=8e7ec83f3793ba03c81604d54f393c9f" alt="podpays3-invoices" width="2392" height="1282" data-path="images/tracemypods/podpay-s3invoices.png" />

* Here we can view order history, earnings and export business purchase data including the active tokens and free tokens

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/AdminDashboard2.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=941118954a5126e477f809f5e9d3045b" alt="Admin Dashboard" width="1867" height="928" data-path="images/tracemypods/AdminDashboard2.png" />

### 📜 OtelAPI and Otel Dashboard

* OtelAPI for code-level tracing and AI integration debugging, providing insights into application performance.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/otelexplorer.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=9164bdd6c474e7fccb99edf8369e9d83" alt="OtelDashboard" width="1864" height="908" data-path="images/tracemypods/otelexplorer.png" />

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/oteltraceview-AI.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=819500c38a085d2f062cbf35ed72042d" alt="OtelAI" width="1866" height="919" data-path="images/tracemypods/oteltraceview-AI.png" />

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/otel-metrics.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=71515c6624cf0aa6f99da2ab10d900f4" alt="OtelAPI" width="1866" height="919" data-path="images/tracemypods/otel-metrics.png" />

### 🔍 Kiali Observability

* To view the service mesh topology, traffic flow, and health status of microservices.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/Kiali-Dark.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=75917218b8385818e3f227a07d345331" alt="Kiali Dark Mode" width="2499" height="1258" data-path="images/tracemypods/Kiali-Dark.png" />

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/Kiali-Light.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=7f74b00a22f761c1c57fccfa2df9e498" alt="Kiali Light Mode" width="1618" height="1063" data-path="images/tracemypods/Kiali-Light.png" />

### 📊 Prometheus Metrics in Grafana

* To visualize metrics collected from the Kubernetes cluster and applications.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/grafana.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=88995eab6243e25e50dc84bb98696c57" alt="Grafana Metrics" width="2509" height="1028" data-path="images/tracemypods/grafana.png" />

### 📜 Logs from Loki

* Viewing and searching logs from various microservices using Loki.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/loki.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=769363be1c3a43a99f25227e1135535c" alt="Loki Logs" width="2527" height="1256" data-path="images/tracemypods/loki.png" />

### 📜 Jaeger Tracing (OTEL + GenAI)

* Distributed tracing for microservices using Jaeger.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/oteltraceview-AI.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=819500c38a085d2f062cbf35ed72042d" alt="OtelAI" width="1866" height="919" data-path="images/tracemypods/oteltraceview-AI.png" />

### 📜 Trivy Vulnerability Scanning

* Scanning container images and Kubernetes clusters for vulnerabilities using Trivy.

<img src="https://mintlify.s3.us-west-1.amazonaws.com/ahmadrazalab/images/tracemypods/trivy.png" alt="Trivy Vulnerability Scanning" />

### 📜 Falco Runtime Security Monitoring

* Real-time monitoring and detection of security threats in running containers using Falco.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/falco.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=ac0395b37c8ca86960b5471947744624" alt="Falco Runtime Security Monitoring" width="1864" height="933" data-path="images/tracemypods/falco.png" />

### 📜 Kube-Hunter Vulnerability Scanning

* Active reconnaissance tool for Kubernetes clusters to identify potential security issues.

<img src="https://mintlify.s3.us-west-1.amazonaws.com/ahmadrazalab/images/tracemypods/kube-hunter.png" alt="Kube-Hunter Vulnerability Scanning" />

### 📜 Kyverno PodSecurityPolicy Enforcement

* Enforcing security policies for Kubernetes pods using Kyverno.

<img src="https://mintlify.s3.us-west-1.amazonaws.com/ahmadrazalab/images/tracemypods/kyverno.png" alt="Kyverno PodSecurityPolicy Enforcement" />

### 📜 ArgoCD

* GitOps to deploy tracemypods and kafka in Kubernetes.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/argocd-tracemypods.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=726649143a3e773f00e65caadc481fbd" alt="ArgoCD" width="1705" height="959" data-path="images/tracemypods/argocd-tracemypods.png" />

### 📜 CloudWatch GPU Monitoring

* Monitoring GPU utilization and performance metrics using CloudWatch.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/CloudwatchGPU.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=bf6431338935710c1bd51249f891ce26" alt="CloudWatch GPU Monitoring" width="1640" height="1139" data-path="images/tracemypods/CloudwatchGPU.png" />

### 📜 HashiCorp Vault

* Secrets management and data protection for sensitive information.

<img src="https://mintlify.s3.us-west-1.amazonaws.com/ahmadrazalab/images/tracemypods/vault.png" alt="HashiCorp Vault" />

# 📸 Infra Architecture

***

## ☸️ EKS APP Architecture

This architecture diagram illustrates the deployment of the TraceMyPods application on AWS EKS, showcasing the integration of Istio service mesh, GPU nodes, and various microservices communication and workflows. It highlights the use of Istio for secure service communication, Jaeger for distributed tracing, and the overall infrastructure setup including monitoring and security components.

> ### Key Components:

* **EKS Cluster**: The Kubernetes cluster where the TraceMyPods application is deployed. This cluster is configured with GPU nodes for AI workloads.
* **Istio Gateway**: Manages ingress traffic, routing to different APIs and load balancing. [IstioGateway.yaml](APP_Deployments/app-deploy-K/istio-gateway.yaml)
* **Istio Service Mesh**: Enables secure, observable communication between microservices, with features like mutual TLS, traffic management, and telemetry. [Istio](ToolsGuide/ISTIOD.md)
* **Kiali**: Visualizes and manages the service mesh.
* **Jaeger**: Jaeger with Otelapi used to display distributed traces for microservices, helping to identify performance bottlenecks and trace requests across services with `AI` integration. [Jaeger](https://tracemypods.ahmadraza.in/otel)
* **Kubecost**: Integrates for real-time cost monitoring and optimization. (inprogress)
* **ALB Ingress Controller**: Handles external traffic routing via AWS Application Load Balancer. [Ingress.tf](terraform/modules/eks/Ingress.tf)
* **HPA & VPA**: Horizontal and Vertical Pod Autoscalers for dynamic scaling based on resource usage.
* **PodDisruptionBudget**: Maintains application availability during node updates or disruptions.
* **Resource Quotas**: Enforces resource limits per namespace.
* **SecurityContext**: Applies security settings at the pod and container level.
* **ConfigMaps & Secrets**: Manages configuration and sensitive data.
* **Taints & Tolerations**: Controls pod scheduling on specific nodes.
* **Readiness & Liveness Probes**: Ensures pod health and availability.
* **NetworkPolicy**: Restricts and controls pod-to-pod communication.
* **Affinity & Anti-Affinity**: Optimizes pod placement for reliability and performance.
* **Persistent Storage**: Uses `StorageClass` to dynamically provision EBS volumes for PVCs.
* **IRSA**: Implements IAM Roles for Service Accounts for secure AWS service access (e.g., S3).
* **GPU Nodes**: Supports AI workloads with NVIDIA T4 GPUs (`g4dn.xlarge`).
  ```yaml theme={null}
  tolerations:
    - key: "gpu"
      operator: "Equal"
      value: "true"
      effect: "NoSchedule"
  ```

## AWS Architecture

This architecture diagram illustrates the AWS infrastructure setup for the TraceMyPods application, including EKS, VPC with Public and Private Subnets, NAT Gateway, S3, SES, Nodes and other AWS services. It highlights the use of Terraform for Infrastructure as Code (IAC) to provision and manage resources.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/aws-vpc.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=635b5a190f5ddb413459b75a579b1d0c" alt="VPC" width="2992" height="1895" data-path="images/tracemypods/aws-vpc.png" />

## IAC Stack | [TF](terraform)

Terraform to provision AWS resources for the TraceMyPods application, including EKS, VPC, IAM roles, S3 buckets, and more. This support reusable modules to provision infrastructure components.

> Terraform modules include:

* EKS Cluster with GPU nodes
* VPC with Public and Private Subnets
* IAM roles for EKS and IRSA
* S3 bucket for file storage
* NAT Gateway for internet access in private subnets
* Cloudflare for DNS and CDN
* Security Groups for network access control
* ALB Ingress Controller for traffic routing
* Global Accelerator for improved application availability and performance
* Helm Installation of (Istio, Kiali, Prometheus, Loki, Grafana, falco, Kafka)

## Monitoring Stack

This Stack includes Prometheus for metrics collection, Loki for log aggregation, and Grafana for visualization. It provides comprehensive monitoring and alerting capabilities for the TraceMyPods application.
[Monitoring](ToolsGuide/MONITORING.md)

## Security Stack

This Stack includes security measures such as Kube-Hunter for vulnerability scanning, Falco for runtime security monitoring, Kyverno for PodSecurityPolicy enforcement and Trivy for container image vulnerability scanning and Code Scanning. It ensures the TraceMyPods application is secure and compliant with best practices.

> Tools used:

* Kube-Hunter for vulnerability scanning | [docs](ToolsGuide/CIS-BenchMark.md)
* Falco for runtime security monitoring | [docs](ToolsGuide/FALCO.md)
* Kyverno for PodSecurityPolicy enforcement | [docs](ToolsGuide/KyernoPSP.md)
* GitHub Actions for CI to automate Trivy for container image vulnerability scanning and code scanning | [docs](ToolsGuide/CIS-BenchMark.md) | [CI](.github/workflows/TrevyImageScan.yaml) | [Code Scanning](.github/workflows/TrevyFSScan.yaml)
* Kube-Bench for CIS Benchmark compliance | [docs](ToolsGuide/CIS-BenchMark.md)
* Vault and Kubernetes Secrets for sensitive data management | [docs](ToolsGuide/Vault-Dev.md)
* Network Policies for pod communication control | [NP](APP_Deployments/app-deploy-K/NetworkPolicy.yaml)

## Deployment Strategy

This Stack includes ArgoCD for GitOps, Helm for package management, and Terraform for Infrastructure as Code (IAC). It supports canary and blue-green deployments and provides a robust deployment strategy for the TraceMyPods application.

> Tools used:

* ArgoCD for GitOps | [docs](ToolsGuide/ARGO.md)
* Helm for package management | [HELM](terraform/modules/kubernetes)
* IAC with Terraform | [TF](terraform)
* Canary, Rolling, and Blue-Green deployments in YAML files
* PriorityClass for pod priority scheduling | [PriorityClass](APP_Deployments/app-deploy-K/namespace.yaml)

***

# Devops Stack

This Stack includes various tools and technologies used in the TraceMyPods application, such as Istio for service mesh, Jaeger for distributed tracing, Prometheus for metrics collection, Loki for log aggregation, and Grafana for visualization. It provides a comprehensive DevOps stack for the TraceMyPods application.

<img src="https://mintcdn.com/ahmadrazalab/fYADWGjhf6CxMcAy/images/tracemypods/tools.png?fit=max&auto=format&n=fYADWGjhf6CxMcAy&q=85&s=07d823708836fa988f385a69c324a912" alt="Tools" width="922" height="379" data-path="images/tracemypods/tools.png" />

### Istio Service Mesh & Istio Gateway

* Service mesh for secure, observable microservices | [docs](ToolsGuide/ISTIO.md)
* Istio Gateway for traffic routing | [IstioConfig.yaml](APP_Deployments/app-deploy-K/istio-gateway.yaml)
* Kiali for service mesh observability

### Jaeger

* Distributed tracing for microservices | [Jaeger.yaml](APP_Deployments/app-deploy-K/jaeger.yaml)
* Otelapi for code level tracing and AI integration debugging| [otelapi](appcode/otelapi) | [oteldashboard](https://otel.ahmadraza.in)

### Kube-Hunter

* Cluster Security scanning for vulnerabilities | [text](ToolsGuide/CIS-BenchMark.md)

### falco

* Runtime security monitoring | [text](ToolsGuide/FALCO.md)

### kyerno

* PodSecurityPolicy enforcement | [Policy](ToolsGuide/PSP) | [docs](ToolsGuide/KyernoPSP.md)

### Trivy

* Container image vulnerability scanning. [text](.github/workflows/TrevyImageScan.yaml)
* Cluster security checks  [text](ToolsGuide/CIS-BenchMark.md)
* Github Actions for CI/CD for trivy code scanning ( [text](.github/workflows/TrevyFSScan.yaml) )

### Github Actions

* CI pipeline to build docker image (x86 and ARM) and push to hub.docker.com | [CI](.github/workflows/ProdBuildMultiArch.yaml)

### Helm

* Kubernetes package management for deployments | [HelM](APP_Deployments/AWS-Helm)

***

### PostMan Collection

* Postman collection for API testing and interaction with the TraceMyPods application.
  [LoadTest/postman\_collection.js](LoadTest/postman_collection.js)

### Load Testing `Grafana K6`

* Load testing the application using Grafana K6 to ensure performance and scalability.
  [LoadTest/k6\_API-test.js](LoadTest/k6_API-test.js)

## Inprogress Features

* KubeCost for cost monitoring
* Spot Intance for cost optimization
* AWS API Gateway for API management
* EKS RBAC for fine-grained access control
* Litmus chaos engineering
* EFK stack (Elasticsearch, Fluentbit, Kibana) or AWS OpenSearch (Remove loki logs and use EFK stack)

***

## 📘 Learning Resources

| Topic              | Resource                                                                                                          |
| ------------------ | ----------------------------------------------------------------------------------------------------------------- |
| CKA                | [Kubernetes Official Docs](https://kubernetes.io/docs/), [Killer.sh CKA](https://killer.sh/)                      |
| CKAD               | [KodeKloud CKAD](https://kodekloud.com/p/ckad), [Katacoda Scenarios](https://www.katacoda.com/courses/kubernetes) |
| CKS                | [Practical CKS Guide](https://github.com/bmuschko/cks-prep), [Sysdig Threat Hunting](https://sysdig.com/)         |
| Istio              | [Istio.io Docs](https://istio.io/latest/docs/)                                                                    |
| Monitoring         | [Awesome Prometheus Alerts](https://github.com/samber/awesome-prometheus-alerts)                                  |
| GitOps             | [ArgoCD Docs](https://argo-cd.readthedocs.io/en/stable/), [Weave GitOps](https://www.weave.works/)                |
| EKS Best Practices | [AWS EKS Workshop](https://www.eksworkshop.com/)                                                                  |

***

## 📌 Author

**Ahmad Raza**\
Sr. DevOps Engineer | Cloud Infra Specialist\
🔗 [ahmadraza.in](https://ahmadraza.in)\
🔗 [linkedin.com/in/ahmad-raza-devops](https://linkedin.com/in/ahmad-raza-devops)

***

> For more, visit [ahmadraza.in](https://ahmadraza.in)\
> *Detailed commands, manifests, and guides are available on my blog.*
