DevOps Professional · Module 1: Platform design and tenancy · Lab
Build an App Delivery Template with Safe Defaults
55 min hands-on · Advanced
A local machine with templating tools plus a local cluster for the proving deploy; one fictional service as the template consumer.
Local guide: run the steps below on your own machine in order, then check the validation list.
Objectives
- Scaffold a service template with safe defaults wired in
- Prove the defaults (probes, resources, policy, secrets by reference)
- Ship the fictional service through checkpoints with zero tickets
Step 1
Build the template
Create the scaffold: deployment shape with true-path probes, measured resource requests, deny-by-default network policy, secrets by reference, standard pipeline stages. Each default carries its reason in comments.
Step 2
Prove every default
Deploy the fictional service from the template and verify each default holds: probe paths answer, requests match profile, policy denies unlisted flows, no secret bytes in the rendered output.
Step 3
Ship through checkpoints
Run the ship path: tests on the digest, policy admission, quota coverage, budget check. Record zero tickets with the full log, plus one staged violation with its exception review.
How to confirm it worked
- Template with reasoned defaults for every safety axis
- Each default verified live on the proving deploy
- Zero-ticket ship recorded with the full checkpoint log
- Staged violation with recorded exception decision