Kloud with Kasun Kloud with Kasun
  • Home
  • Blog
  • Tags
  • AKS Updates
  • About

Blog

Practical guides and insights on cloud infrastructure, DevOps, and modern engineering practices.

10 articles
Scaling AKS Workloads on Custom Metrics with KEDA and Azure Managed Prometheus
AzureAKSKubernetes

Scaling AKS Workloads on Custom Metrics with KEDA and Azure Managed Prometheus

A hands-on demo using the AKS KEDA add-on and Azure Managed Prometheus to autoscale a Deployment on HTTP request rate. Covers the Prometheus scaler, ServiceMonitor scraping, Workload Identity authentication, and watching pods scale out and back in.

Kasun Rajapakse Jun 17, 2026
Migrating AKS Ingress to Istio-Based Gateway API: Moving Beyond NGINX
AzureAKSKubernetes

Migrating AKS Ingress to Istio-Based Gateway API: Moving Beyond NGINX

NGINX Ingress is retired. This guide walks through migrating AKS workloads to the App Routing add-on with Istio-based Gateway API, including GatewayClass, HTTPRoute, TLS from Key Vault, canary traffic splits, and header-based routing.

Kasun Rajapakse Jun 5, 2026
Deploying the AKS Argo CD Extension with App Routing Ingress and Entra ID SSO
AzureAKSKubernetes

Deploying the AKS Argo CD Extension with App Routing Ingress and Entra ID SSO

A complete walkthrough of the Argo CD cluster extension for AKS — what Argo CD is, the components behind it, and how to wire up App Routing ingress, TLS from Key Vault, and Microsoft Entra ID single sign-on with workload identity and group-based RBAC.

Kasun Rajapakse May 31, 2026
When Good Policies Break Monitoring: How an Azure Policy Silently Broke Our AKS Pipeline
AzureAKSKubernetes

When Good Policies Break Monitoring: How an Azure Policy Silently Broke Our AKS Pipeline

An AKS incident from our deployment pipeline: Azure Monitor addons moved to a cluster extension-based backend — and a sensible Azure Policy that blocked extensions suddenly broke our AKS provisioning with no warning.

Kasun Rajapakse May 26, 2026
Why You Should Never Lock AKS-Managed Resources: A Volume Outage Story
AzureAKSKubernetes

Why You Should Never Lock AKS-Managed Resources: A Volume Outage Story

A real incident from our AKS platform: resource locks on AKS-managed Azure disks silently broke the CSI driver during a node drain, leaving pods stuck without volumes. Here's what went wrong and what we should have done instead.

Kasun Rajapakse May 13, 2026
Runtime Threat Detection on AKS with Falco and Microsoft Sentinel
AzureAKSKubernetes

Runtime Threat Detection on AKS with Falco and Microsoft Sentinel

A practical walkthrough of wiring open-source Falco to Microsoft Sentinel for real-time Kubernetes runtime security: install, configure, ingest, and investigate threats — all with Infrastructure as Code.

Kasun Rajapakse May 5, 2026
Page 1 of 2
← Previous 1 2 Next →

Browse by Tag

AKS 9 Kubernetes 9 Azure 8 Security 3 Troubleshooting 3 Workload Identity 2 Gateway API 2 App Routing 2 Bicep 2 KEDA 1 Prometheus 1 Autoscaling 1 Observability 1 Istio 1 Networking 1 Argo CD 1 GitOps 1 Entra ID 1 Terraform 1 Azure Policy 1 Azure Monitor 1 Container Insights 1 Resource Locks 1 CSI 1 Persistent Volumes 1 Falco 1 Microsoft Sentinel 1 eBPF 1 Docker 1 Containers 1 Book Review 1 Cloud 1 EKS 1 GKE 1 Namespaces 1 Finalizers 1 Application Gateway for Containers 1 GitHub Copilot 1 GitHub Pages 1 Writing 1 Productivity 1 AI 1

About the Author

Kasun Rajapakse

Kasun Rajapakse

Cloud Architect & DevOps Engineer with expertise in Azure, Kubernetes, and modern infrastructure.

Read more →
Kloud with Kasun Kloud with Kasun

Cloud Architect & DevOps Engineer sharing knowledge about Azure, Kubernetes, and modern infrastructure.

Navigation

  • Home
  • Blog
  • Tags
  • About

Topics

  • Azure
  • Kubernetes
  • DevOps
  • Infrastructure as Code

Credentials

  • Credly Profile
  • Microsoft Learn Transcript

© 2026 Kasun Rajapakse. All rights reserved.

Built with Astro

Search

↑ ↓ to navigate · esc to close