<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
  <channel>
    <title>Sathpal-OS: Writing</title>
    <link>https://sathpal.com/articles</link>
    <description>Sathpal: AI, Cloud &amp; Observability Architect, Grafana Champion, CKAD, and community builder. Explore talks, thought leadership, community impact, and an AI profile assistant.</description>
    <language>en</language>
    <lastBuildDate>Thu, 18 Jun 2026 00:00:00 GMT</lastBuildDate>
    <item>
      <title>AKS vs EKS vs GKE: The Honest Differences That Matter</title>
      <link>https://sathpal.com/blog/aks-vs-eks-vs-gke</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-vs-eks-vs-gke</guid>
      <pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate>
      <category>AKS Fundamentals</category>
      <description>The managed-Kubernetes comparison tables miss the point. The Kubernetes is the same everywhere. What differs is the cloud it&apos;s wired into, and that&apos;s the actual decision.</description>
    </item>
    <item>
      <title>The First Three Dashboards Every AKS Cluster Needs</title>
      <link>https://sathpal.com/blog/first-three-aks-dashboards</link>
      <guid isPermaLink="true">https://sathpal.com/blog/first-three-aks-dashboards</guid>
      <pubDate>Thu, 11 Jun 2026 00:00:00 GMT</pubDate>
      <category>AKS Day-2 Ops</category>
      <description>You can drown a new AKS cluster in metrics on day one. Resist. Three dashboards answer the questions you&apos;ll actually have at 2 a.m. Start there, add the rest when you miss them.</description>
    </item>
    <item>
      <title>Node Pools Are an Architecture, Not a Setting</title>
      <link>https://sathpal.com/articles/aks-node-pools-architecture</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-node-pools-architecture</guid>
      <pubDate>Tue, 09 Jun 2026 00:00:00 GMT</pubDate>
      <category>AKS Scaling &amp; Cost</category>
      <description>Most AKS clusters run every workload on one undifferentiated pool of VMs and call it simple. It isn&apos;t simple. It&apos;s expensive, fragile, and one bad neighbor away from an outage. Node pools are where workload intent becomes infrastructure.</description>
    </item>
    <item>
      <title>Kustomize Over Helm for Cluster Config? Sometimes.</title>
      <link>https://sathpal.com/blog/kustomize-over-helm-sometimes</link>
      <guid isPermaLink="true">https://sathpal.com/blog/kustomize-over-helm-sometimes</guid>
      <pubDate>Thu, 28 May 2026 00:00:00 GMT</pubDate>
      <category>AKS GitOps &amp; CI/CD</category>
      <description>Helm became the default for everything, including jobs it&apos;s bad at. For your own cluster configuration, Kustomize is often the calmer choice, and knowing when is the whole skill.</description>
    </item>
    <item>
      <title>One Big Cluster or Many: The AKS Tenancy Decision</title>
      <link>https://sathpal.com/articles/aks-tenancy-one-cluster-or-many</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-tenancy-one-cluster-or-many</guid>
      <pubDate>Tue, 19 May 2026 00:00:00 GMT</pubDate>
      <category>AKS Fundamentals</category>
      <description>Consolidate into one cluster and you fight noisy neighbors and blast radius. Split into many and you drown in upgrade toil. The right answer isn&apos;t a number. It&apos;s an isolation boundary you can defend.</description>
    </item>
    <item>
      <title>Flux on AKS in Twenty Minutes</title>
      <link>https://sathpal.com/blog/flux-on-aks-in-20-minutes</link>
      <guid isPermaLink="true">https://sathpal.com/blog/flux-on-aks-in-20-minutes</guid>
      <pubDate>Thu, 14 May 2026 00:00:00 GMT</pubDate>
      <category>AKS GitOps &amp; CI/CD</category>
      <description>GitOps sounds like a platform project. Getting your first Flux reconciliation running on AKS is closer to a coffee break, and it changes how you think about deploys immediately.</description>
    </item>
    <item>
      <title>PodDisruptionBudgets: The Five Lines That Save Your Upgrade</title>
      <link>https://sathpal.com/blog/pdb-five-lines-that-save-upgrades</link>
      <guid isPermaLink="true">https://sathpal.com/blog/pdb-five-lines-that-save-upgrades</guid>
      <pubDate>Thu, 07 May 2026 00:00:00 GMT</pubDate>
      <category>AKS Day-2 Ops</category>
      <description>Most AKS upgrade outages aren&apos;t upgrade bugs. They&apos;re a missing PodDisruptionBudget: five lines of YAML standing between a rolling node drain and all your replicas dying at once.</description>
    </item>
    <item>
      <title>GitOps on AKS: Why Your Cluster Should Pull, Not Be Pushed</title>
      <link>https://sathpal.com/articles/gitops-on-aks-pull-not-push</link>
      <guid isPermaLink="true">https://sathpal.com/articles/gitops-on-aks-pull-not-push</guid>
      <pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate>
      <category>AKS GitOps &amp; CI/CD</category>
      <description>CI pipelines that push kubectl into your cluster feel fast and quietly rot your reliability. GitOps inverts the arrow: the cluster pulls its own desired state, and &apos;what&apos;s deployed&apos; stops being a mystery.</description>
    </item>
    <item>
      <title>Your AKS Cluster Is One Version From a Bad Weekend</title>
      <link>https://sathpal.com/blog/aks-version-support-window</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-version-support-window</guid>
      <pubDate>Thu, 16 Apr 2026 00:00:00 GMT</pubDate>
      <category>AKS Day-2 Ops</category>
      <description>Kubernetes versions age out on a schedule, and AKS only supports a rolling window. Fall off the back of it and you&apos;re running unsupported infrastructure under production, usually discovered at the worst moment.</description>
    </item>
    <item>
      <title>Upgrades Are a Feature: Designing AKS Clusters That Survive Day 2</title>
      <link>https://sathpal.com/articles/aks-upgrades-are-a-feature</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-upgrades-are-a-feature</guid>
      <pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate>
      <category>AKS Day-2 Ops</category>
      <description>A cluster that can&apos;t be upgraded calmly isn&apos;t finished. It&apos;s a liability with a countdown. Treat upgradability as a design goal and the scariest part of running AKS becomes routine.</description>
    </item>
    <item>
      <title>The Cluster Autoscaler Won&apos;t Save Bad Requests and Limits</title>
      <link>https://sathpal.com/blog/autoscaler-wont-fix-bad-limits</link>
      <guid isPermaLink="true">https://sathpal.com/blog/autoscaler-wont-fix-bad-limits</guid>
      <pubDate>Thu, 02 Apr 2026 00:00:00 GMT</pubDate>
      <category>AKS Scaling &amp; Cost</category>
      <description>Teams add the cluster autoscaler hoping it fixes capacity pain. It can&apos;t, because the autoscaler trusts your resource requests, and most resource requests are fiction.</description>
    </item>
    <item>
      <title>Spot Node Pools: Cheap Compute With a Catch</title>
      <link>https://sathpal.com/blog/aks-spot-node-pools</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-spot-node-pools</guid>
      <pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate>
      <category>AKS Scaling &amp; Cost</category>
      <description>Spot nodes can cut a chunk of your AKS bill for the right workloads. The catch is in the word &apos;right&apos;: put the wrong thing there and you&apos;ve architected a flaky outage.</description>
    </item>
    <item>
      <title>The AKS Bill Nobody Forecast: Architecting for Cost from Day Zero</title>
      <link>https://sathpal.com/articles/aks-cost-architecture</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-cost-architecture</guid>
      <pubDate>Tue, 17 Mar 2026 00:00:00 GMT</pubDate>
      <category>AKS Scaling &amp; Cost</category>
      <description>AKS makes it trivial to spend money and hard to see where it went. Cost on Kubernetes isn&apos;t a billing problem you fix later. It&apos;s an architecture property you design in, or pay for forever.</description>
    </item>
    <item>
      <title>Private AKS Clusters: What You Gain and What Breaks</title>
      <link>https://sathpal.com/blog/aks-private-clusters-tradeoffs</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-private-clusters-tradeoffs</guid>
      <pubDate>Thu, 05 Mar 2026 00:00:00 GMT</pubDate>
      <category>AKS Security</category>
      <description>A private cluster takes your API server off the public internet, a real security win that quietly breaks half your tooling. Go in knowing both halves.</description>
    </item>
    <item>
      <title>Workload Identity: Killing the Last Long-Lived Secret in AKS</title>
      <link>https://sathpal.com/articles/aks-workload-identity</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-workload-identity</guid>
      <pubDate>Tue, 24 Feb 2026 00:00:00 GMT</pubDate>
      <category>AKS Security</category>
      <description>Every static credential in your cluster is a small bet that it never leaks. Workload Identity lets your AKS pods talk to Azure with no secret to leak at all, and the migration is more about discipline than difficulty.</description>
    </item>
    <item>
      <title>Stop Using the AKS Admin Kubeconfig</title>
      <link>https://sathpal.com/blog/stop-using-aks-admin-kubeconfig</link>
      <guid isPermaLink="true">https://sathpal.com/blog/stop-using-aks-admin-kubeconfig</guid>
      <pubDate>Thu, 19 Feb 2026 00:00:00 GMT</pubDate>
      <category>AKS Security</category>
      <description>`az aks get-credentials --admin` is the handiest command in AKS and the one most likely to end up in an incident report. There&apos;s a better default, and switching costs nothing.</description>
    </item>
    <item>
      <title>Ingress on AKS: App Gateway, NGINX, or Both?</title>
      <link>https://sathpal.com/blog/aks-ingress-appgw-or-nginx</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-ingress-appgw-or-nginx</guid>
      <pubDate>Thu, 12 Feb 2026 00:00:00 GMT</pubDate>
      <category>AKS Networking</category>
      <description>The AKS ingress debate isn&apos;t about which is better. It&apos;s about where you want your routing logic to live: in Azure, or in your cluster.</description>
    </item>
    <item>
      <title>Azure CNI or Kubenet: The AKS Networking Decision You Can&apos;t Walk Back</title>
      <link>https://sathpal.com/articles/azure-cni-vs-kubenet</link>
      <guid isPermaLink="true">https://sathpal.com/articles/azure-cni-vs-kubenet</guid>
      <pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate>
      <category>AKS Networking</category>
      <description>Most AKS networking choices are tunable later. The CNI is not. Pick wrong and you&apos;re rebuilding the cluster, so make this one with the next three years in view, not the next sprint.</description>
    </item>
    <item>
      <title>Why Your AKS Pod Can&apos;t Reach the Internet</title>
      <link>https://sathpal.com/blog/aks-pod-no-internet</link>
      <guid isPermaLink="true">https://sathpal.com/blog/aks-pod-no-internet</guid>
      <pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate>
      <category>AKS Networking</category>
      <description>A pod that can&apos;t curl the outside world is an AKS rite of passage. It&apos;s almost always one of three things, and none of them are the pod&apos;s fault.</description>
    </item>
    <item>
      <title>AKS Without the Hand-Waving: A Mental Model for the Control Plane</title>
      <link>https://sathpal.com/articles/aks-control-plane-mental-model</link>
      <guid isPermaLink="true">https://sathpal.com/articles/aks-control-plane-mental-model</guid>
      <pubDate>Thu, 15 Jan 2026 00:00:00 GMT</pubDate>
      <category>AKS Fundamentals</category>
      <description>AKS hides the control plane so well that teams forget it exists, until an upgrade, an outage, or a bill reminds them. Here&apos;s the mental model that makes the managed boundary obvious.</description>
    </item>
    <item>
      <title>What &apos;Managed&apos; Actually Means in AKS</title>
      <link>https://sathpal.com/blog/what-managed-means-in-aks</link>
      <guid isPermaLink="true">https://sathpal.com/blog/what-managed-means-in-aks</guid>
      <pubDate>Fri, 09 Jan 2026 00:00:00 GMT</pubDate>
      <category>AKS Fundamentals</category>
      <description>Managed Kubernetes doesn&apos;t mean Azure runs your cluster. It means Azure runs the part you&apos;d most like to ignore, and quietly hands you the rest.</description>
    </item>
  </channel>
</rss>