Từ desired state đến running Pod
kubectl gửi request tới API server. API server validate/auth rồi ghi state vào etcd và phát watch; scheduler chọn node cho Pod chưa bind; controller đảm bảo resource phụ; kubelet trên node gọi runtime, cập nhật status; service datapath xử lý network. Khi debug, hỏi state dừng ở bước nào.
Failure matrix
Pending có thể do scheduler/resource/taint; NotReady do kubelet/runtime/network/condition; ImagePullBackOff do registry/image/secret; API timeout do control-plane/network/auth. Thu evidence bằng get/describe/events/logs trước khi sửa.
Bài tập
Vẽ lifecycle và lập failure matrix năm tình huống. Dùng cluster lab để đọc events/node conditions, ghi expected state và cleanup. Pass khi giải thích được “component nào biết gì” và chọn được command đầu tiên có giá trị nhất.