Get in Touch
 Duration 21 hours

Course Outline

CentOS Stream Architecture and Release Approach

  • Distinguishing the CentOS Stream rolling-release model from point-release distributions.
  • Exploring the link between CentOS Stream and Red Hat Enterprise Linux upstream development.
  • Reviewing naming conventions, stream repositories, and content versioning strategies.
  • Selecting and switching between multiple streams to ensure application compatibility.

Installation and Automated Deployment

  • Guided walkthrough of the interactive Anaconda graphical and text-based installers.
  • Using Kickstart files to facilitate fully automated unattended installations.
  • Implementing PXE network boot and TFTP-based network installation workflows.
  • Provisioning via containers and cloud-init for cloud-based deployments.
  • Defining partitioning strategies and selecting filesystems, including Btrfs and XFS defaults.

Package Management and Module Streams

  • Performing advanced DNF operations, managing transactions, and resolving dependencies.
  • Leveraging module streams for flexible software versions and language runtimes.
  • Configuring repositories, verifying GPG signatures, and creating custom repositories.
  • Utilizing content views and tracking errata for enterprise update management.

System Service Management with systemd

  • Grasping systemd targets, units, and the dependency graph structure.
  • Creating, enabling, and debugging custom service units.
  • Managing journal logging, log rotation, and persistent log storage.
  • Controlling resources using systemd slices and resource manager policies.
  • Configuring kdump for crash dumps and handling kernel panics.

Modern Network Configuration

  • Essential NetworkManager CLI and CUI configuration practices.
  • Configuring interface bonding, bridges, VLANs, and teaming.
  • Implementing Firewalld rich rules, zones, services, and port forwarding.
  • Managing IPv6 routing, firewall rules, and DNS resolution through systemd-resolved.
  • Employing network debugging tools and packet capture techniques.

Container and Pod Infrastructure

  • Comparing Podman and Docker to understand daemonless container workflows.
  • Creating container images with Buildah without relying on a Dockerfile or daemon.
  • Deploying rootless containers and mapping user namespaces.
  • Utilizing Red Hat Universal Base Images and Alpine-based lightweight containers.
  • Managing storage drivers, volume mounts, and network inter-container communication.
  • Overseeing container lifecycle management and monitoring using skopeo and crun.

Security Hardening

  • Configuring SELinux enforcing mode, managing policies, and troubleshooting audits.
  • Designing hardened Firewalld zones and composing effective rules.
  • Hardening SSH, implementing key-based authentication, and setting up bastion hosts.
  • Establishing password policies, configuring PAM modules, and managing privilege escalation via sudo.
  • Configuring and validating FIPS 140-2/140-3 compliance.
  • Implementing kernel live patching and workflows for CVE remediation.

Storage and Filesystem Management

  • Utilizing LVM2 logical volume management for dynamic capacity planning.
  • Managing Btrfs snapshots, subvolumes, and auto-decompression features.
  • Configuring NFS and Samba file sharing services.
  • Implementing Multipath I/O for SAN storage redundancy and failover capabilities.
  • Encrypting disks with LUKS and automating unlock processes via initramfs.

System Monitoring and Kernel Management

  • Monitoring performance using sar, top, and perf profiling tools.
  • Debugging system services with strace, ltrace, and GDB.
  • Managing kernel updates, bootloader configuration, and GRUB2 customization.
  • Handling system state management and conducting crash analysis.

Automation and Infrastructure as Code

  • Designing Ansible inventories for managing CentOS Stream hosts.
  • Automating patching processes and detecting compliance drift.
  • Developing IaC modules for large-scale configuration management.
  • Crafting provisioning playbooks and orchestrating deployment strategies.

Requirements

  • Practical experience with Linux system administration and command-line operations
  • Understanding of networking fundamentals and TCP/IP concepts
  • Proficiency in Linux package management and system service oversight

Target Audience

  • System administrators responsible for enterprise Linux infrastructure
  • DevOps engineers developing cloud-native deployment environments
  • SysOps professionals transitioning from legacy Linux distributions

Number of participants


Price per participant

Upcoming Courses

Related Categories