本文へ移動
cccskills
無料GitHub で公開

azure-redhat-openshift

Expert knowledge for Azure Red Hat OpenShift development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when deploying ARO/HCP clusters, configuring networking/storage, securing with Entra/NSGs, or integrating ACR/Key Vault, and other Azure Red Hat OpenShift related development tasks. Not for Azure Kubernetes Service (AKS) (use azure-kubernetes-service), Azure Container Apps (use azure-container-apps), Azure Virtual Machines (use azure-virtual-machines).

インストール方法を見る

含まれるファイル(1)

  • SKILL.md13.7 KB

SKILL.md(原文)

インストールする前に、エージェントに与えられる指示の中身を確認できます。

Azure Red Hat OpenShift Skill

This skill provides expert guidance for Azure Red Hat OpenShift. Covers troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.

How to Use This Skill

IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g., L35-L120), use read_file with the specified lines. For categories with file links (e.g., [security.md](security.md)), use read_file on the linked reference file

IMPORTANT for Agent: If metadata.generated_at is more than 3 months old, suggest the user pull the latest version from the repository. If mcp_microsoftdocs tools are not available, suggest the user install it: Installation Guide

This skill requires network access to fetch documentation content:

  • Preferred: Use mcp_microsoftdocs:microsoft_docs_fetch with query string from=learn-agent-skill. Returns Markdown.
  • Fallback: Use fetch_webpage with query string from=learn-agent-skill&accept=text/markdown. Returns Markdown.

Category Index

CategoryLinesDescription
TroubleshootingL37-L43Fixing common ARO cluster issues, restoring cluster access, and manually updating or troubleshooting cluster certificates and connectivity via CLI
Best PracticesL44-L51Best practices for sizing and deploying ARO clusters and infra nodes, optimizing OpenShift Virtualization VMs, and staying within supported configurations and policies.
Decision MakingL52-L58Guidance on choosing ARO architectures and immutable settings, planning networking for hosted control planes, and understanding shared responsibilities between Microsoft, Red Hat, and customers.
Architecture & Design PatternsL59-L63Planning network topology for ARO HCP clusters, including VNet design, subnets, private endpoints, connectivity options, and required ports and dependencies.
Limits & QuotasL64-L69Scaling ARO clusters with multiple load balancer IPs and understanding built‑in service limits, quotas, and standard service definitions for Azure Red Hat OpenShift.
SecurityL70-L89Identity, access, and data protection for ARO: Entra auth, managed identities/SPs, workload identity, NSGs/egress control, disk/etcd encryption, FIPS, Front Door security, and support access control.
ConfigurationL90-L117Configuring ARO and ARO HCP clusters: networking (DNS, proxy, MTU), registries and pull secrets, storage classes, autoscaling/node pools, identities, logging, alerts, and resource policies.
Integrations & Coding PatternsL118-L127Patterns for connecting ARO apps to Azure services: workload identity, ACR, Key Vault, NetApp Files, GPU workloads, and exporting Prometheus metrics to Azure Monitor.
DeploymentL128-L139Deploying and upgrading ARO clusters and apps: private/standard clusters, ARM/Bicep, WebSphere, S2I and serverless, Velero backup/restore, SDN-to-OVN migration, and HCP control plane/node pool upgrades.

Troubleshooting

TopicURL
Regain ARO cluster access using Admin Kubeconfighttps://learn.microsoft.com/en-us/azure/openshift/howto-kubeconfig
Manually update ARO cluster certificates via CLIhttps://learn.microsoft.com/en-us/azure/openshift/howto-update-certificates
Troubleshoot common Azure Red Hat OpenShift cluster issueshttps://learn.microsoft.com/en-us/azure/openshift/troubleshoot

Best Practices

TopicURL
Optimize VM deployments on OpenShift Virtualization in AROhttps://learn.microsoft.com/en-us/azure/openshift/best-practices-openshift-virtualization
Deploy and size infrastructure nodes in AROhttps://learn.microsoft.com/en-us/azure/openshift/howto-infrastructure-nodes
Deploy and manage large OpenShift clusters on Azurehttps://learn.microsoft.com/en-us/azure/openshift/howto-large-clusters
Follow support policies for standard OpenShift clustershttps://learn.microsoft.com/en-us/azure/openshift/support-policies-v4

Decision Making

TopicURL
Choose between standard and hosted OpenShift architectureshttps://learn.microsoft.com/en-us/azure/openshift/concepts-classic-hosted-control-planes-comparison
Choose immutable settings for ARO HCP clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-choose-cluster-configuration
Understand responsibility matrix for ARO operationshttps://learn.microsoft.com/en-us/azure/openshift/responsibility-matrix

Architecture & Design Patterns

TopicURL
Plan networking for Azure Red Hat OpenShift HCP clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-plan-cluster-network

Limits & Quotas

TopicURL
Configure multiple load balancer IPs to scale ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-multiple-ips
Understand Azure Red Hat OpenShift standard service definitionshttps://learn.microsoft.com/en-us/azure/openshift/openshift-service-definitions

Security

TopicURL
Configure managed identities and roles for ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/concepts-managed-identities
Configure Microsoft Entra auth for ARO via CLIhttps://learn.microsoft.com/en-us/azure/openshift/configure-azure-ad-cli
Configure Microsoft Entra auth for ARO via portalhttps://learn.microsoft.com/en-us/azure/openshift/configure-azure-ad-ui
Use custom Network Security Groups with Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-bring-nsg
Encrypt ARO OS disks with customer-managed keyshttps://learn.microsoft.com/en-us/azure/openshift/howto-byok
Configure external OIDC authentication for ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-configure-external-authentication
Create service principal for Azure Red Hat OpenShift deploymenthttps://learn.microsoft.com/en-us/azure/openshift/howto-create-service-principal
Configure applications with ARO workload identityhttps://learn.microsoft.com/en-us/azure/openshift/howto-deploy-configure-application
Enable FIPS-compliant cryptography on Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-enable-fips-openshift
Reconcile federated identity credentials for ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-reconcile-federated-identity-credentials
Restrict and allow egress traffic for ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-restrict-egress
Rotate customer-managed etcd KMS keys in ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-rotate-encryption-key
Secure Azure Red Hat OpenShift apps with Azure Front Doorhttps://learn.microsoft.com/en-us/azure/openshift/howto-secure-openshift-with-front-door
Rotate Microsoft Entra service principal credentials for AROhttps://learn.microsoft.com/en-us/azure/openshift/howto-service-principal-credential-rotation
Configure and use managed identities in Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-understand-managed-identities
Control Microsoft support access to ARO with Azure Lockboxhttps://learn.microsoft.com/en-us/azure/openshift/howto-use-lockbox

Configuration

TopicURL
Configure built-in container registry for Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/built-in-container-registry
Configure cluster-wide HTTP/HTTPS proxy in AROhttps://learn.microsoft.com/en-us/azure/openshift/cluster-wide-proxy-configure
Set up DNS forwarding for Azure Red Hat OpenShift 4https://learn.microsoft.com/en-us/azure/openshift/dns-forwarding
Add pull secrets for private registries on ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/how-to-add-pull-secrets
Manage Red Hat pull secrets on ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-add-update-pull-secret
Configure capacity reservations with ARO machine setshttps://learn.microsoft.com/en-us/azure/openshift/howto-capacity-reservations
Enable jumbo MTU for ARO cluster networkshttps://learn.microsoft.com/en-us/azure/openshift/howto-change-maximum-transmission-unit
Configure cluster autoscaling for ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-cluster-auto-scaling
Configure Azure File StorageClass on ARO with managed identityhttps://learn.microsoft.com/en-us/azure/openshift/howto-configure-azure-file-storageclass
Configure Azure Files StorageClass on ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-configure-azure-files-hosted-cluster
Configure image digest mirrors for immutable images on AROhttps://learn.microsoft.com/en-us/azure/openshift/howto-configure-cluster-immutable-images
Create Azure Files storage class on ARO 4https://learn.microsoft.com/en-us/azure/openshift/howto-create-a-storageclass
Configure and create Azure Red Hat OpenShift HCP clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-create-custom-hosted-cluster
Configure node pools for Azure Red Hat OpenShift HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-create-hosted-node-pool
Configure managed identities for standard OpenShift clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-create-openshift-cluster
Configure custom DNS resolvers for ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-custom-dns
Enable and route ARO HCP control plane logshttps://learn.microsoft.com/en-us/azure/openshift/howto-enable-control-plane-logs
Scale and configure ARO HCP node poolshttps://learn.microsoft.com/en-us/azure/openshift/howto-manage-hosted-node-pools
Configure Azure Resource Health alerts for Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-monitor-alerts
Configure Prometheus persistent storage on ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-prometheus-persistence
Update workload and cluster identities in Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-replace-cluster-identity
Segregate ARO worker nodes into subnet groupshttps://learn.microsoft.com/en-us/azure/openshift/howto-segregate-machinesets
Configure Azure Spot VMs in ARO clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-spot-nodes
Tag ARO managed resources using Azure Policyhttps://learn.microsoft.com/en-us/azure/openshift/howto-tag-resources

Integrations & Coding Patterns

TopicURL
Use Azure Workload Identity in ARO HCP applicationshttps://learn.microsoft.com/en-us/azure/openshift/howto-deploy-configure-application-with-workload-identity
Run NVIDIA GPU workloads on Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-gpu-workloads
Configure Azure NetApp Files storage for AROhttps://learn.microsoft.com/en-us/azure/openshift/howto-netapp-files
Send ARO Prometheus metrics to Azure Monitor via remote writehttps://learn.microsoft.com/en-us/azure/openshift/howto-remotewrite-prometheus
Integrate Azure Container Registry with Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-use-acr-with-aro
Integrate Azure Key Vault secrets with Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-use-key-vault-secrets

Deployment

TopicURL
Back up Azure Red Hat OpenShift apps with Velerohttps://learn.microsoft.com/en-us/azure/openshift/howto-create-a-backup
Restore Azure Red Hat OpenShift apps with Velerohttps://learn.microsoft.com/en-us/azure/openshift/howto-create-a-restore
Deploy private Azure Red Hat OpenShift standard clustershttps://learn.microsoft.com/en-us/azure/openshift/howto-create-private-cluster-4x
Deploy WebSphere Liberty on Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-deploy-java-liberty-app
Deploy applications from source to ARO using S2Ihttps://learn.microsoft.com/en-us/azure/openshift/howto-deploy-with-s2i
Deploy serverless applications on Azure Red Hat OpenShifthttps://learn.microsoft.com/en-us/azure/openshift/howto-deploy-with-serverless
Migrate ARO networking from OpenShift SDN to OVN-Kuberneteshttps://learn.microsoft.com/en-us/azure/openshift/howto-sdn-to-ovn
Upgrade control plane and node pools in ARO HCPhttps://learn.microsoft.com/en-us/azure/openshift/howto-upgrade-cluster
Deploy standard OpenShift clusters with ARM or Bicephttps://learn.microsoft.com/en-us/azure/openshift/quickstart-openshift-arm-bicep-template

レビュー

まだレビューはありません。使ってみた感想をお寄せください。

同じリポジトリのスキル

概要と使いどころ

Expert knowledge for Azure Active Directory B2C development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when building B2C user flows/custom policies, configuring IdPs/MFA, securing APIs, automating CI/CD, or monitoring with Sentinel, and other Azure Active Directory B2C related development tasks. Not for Azure Role-based access control (use azure-rbac), Azure Information Protection (use azure-information-protection), Azure Security (use azure-security), Azure Sentinel (use azure-sentinel).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

Expert knowledge for Azure Advisor development including best practices, decision making, limits & quotas, security, configuration, and integrations & coding patterns. Use when configuring Advisor alerts/digests, managing rec states, using workbooks, Resource Graph, or RBAC for access, and other Azure Advisor related development tasks. Not for Cost Management (use azure-cost-management), Azure Monitor (use azure-monitor), Azure Policy (use azure-policy), Azure Security (use azure-security).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

Expert knowledge for Azure AI Vision development including decision making, limits & quotas, configuration, integrations & coding patterns, and deployment. Use when using Image Analysis, Read OCR containers, smart-crop thumbnails, background removal, or video frame analysis, and other Azure AI Vision related development tasks. Not for Azure AI Custom Vision (use azure-custom-vision), Azure AI Video Indexer (use azure-video-indexer), Azure AI Document Intelligence (use azure-document-intelligence), Azure AI Immersive Reader (use azure-immersive-reader).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

Expert knowledge for Azure Kubernetes Service Edge Essentials development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when managing AKS Edge/Hybrid with Arc, GitOps, IoT/OPC/ONVIF, TPM/Key Vault secrets, or AI model workloads, and other Azure Kubernetes Service Edge Essentials related development tasks. Not for Azure Kubernetes Service (AKS) (use azure-kubernetes-service), Azure IoT Edge (use azure-iot-edge), Azure Stack Edge (use azure-stack-edge), Azure Container Apps (use azure-container-apps).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

Expert knowledge for Azure Analysis Services development including troubleshooting. Use when resolving server connectivity, firewall/VNet, DNS, client connection, or network error issues, and other Azure Analysis Services related development tasks. Not for Azure Synapse Analytics (use azure-synapse-analytics), Azure SQL Database (use azure-sql-database), Azure SQL Managed Instance (use azure-sql-managed-instance), SQL Server on Azure Virtual Machines (use azure-sql-virtual-machines).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

Expert knowledge for Azure AI Anomaly Detector development including troubleshooting, best practices, limits & quotas, configuration, and deployment. Use when tuning Docker-based Anomaly Detector, ACI or IoT Edge deployments, univariate/multivariate APIs, or service limits, and other Azure AI Anomaly Detector related development tasks. Not for Azure AI Metrics Advisor (use azure-metrics-advisor), Azure Monitor (use azure-monitor), Azure Machine Learning (use azure-machine-learning).

日本語の概要は準備中です。原文の説明を表示しています。

MicrosoftDocs/Agent-Skills7772026年10月11日 更新

MicrosoftDocs のスキルをすべて見る

このスキルの問題を報告する