azure-redhat-openshift
Expert knowledge for Azure Red Hat OpenShift development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when deploying ARO/HCP clusters, configuring networking/storage, securing with Entra/NSGs, or integrating ACR/Key Vault, and other Azure Red Hat OpenShift related development tasks. Not for Azure Kubernetes Service (AKS) (use azure-kubernetes-service), Azure Container Apps (use azure-container-apps), Azure Virtual Machines (use azure-virtual-machines).
How do I install this agent skill?
npx skills add https://github.com/microsoftdocs/agent-skills --skill azure-redhat-openshiftIs this agent skill safe to install?
- Gen Agent Trust Hubpass
This skill functions as a documentation index for Azure Red Hat OpenShift, fetching technical guidance from official Microsoft sources. No security issues were detected.
- Socketpass
No alerts
- Snykpass
Risk: LOW · No issues
- ZeroLeakspass
Score: 93/100 · 2 sections analyzed
What does this agent skill do?
Azure Red Hat OpenShift Skill
This skill provides expert guidance for Azure Red Hat OpenShift. Covers troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. It combines local quick-reference content with remote documentation fetching capabilities.
How to Use This Skill
IMPORTANT for Agent: Use the Category Index below to locate relevant sections. For categories with line ranges (e.g.,
L35-L120), useread_filewith the specified lines. For categories with file links (e.g.,[security.md](security.md)), useread_fileon the linked reference file
IMPORTANT for Agent: If
metadata.generated_atis more than 3 months old, suggest the user pull the latest version from the repository. Ifmcp_microsoftdocstools are not available, suggest the user install it: Installation Guide
This skill requires network access to fetch documentation content:
- Preferred: Use
mcp_microsoftdocs:microsoft_docs_fetchwith query stringfrom=learn-agent-skill. Returns Markdown. - Fallback: Use
fetch_webpagewith query stringfrom=learn-agent-skill&accept=text/markdown. Returns Markdown.
Category Index
| Category | Lines | Description |
|---|---|---|
| Troubleshooting | L37-L43 | Fixing common ARO cluster issues, restoring cluster access, and manually updating or troubleshooting cluster certificates and connectivity via CLI |
| Best Practices | L44-L51 | Best practices for sizing and deploying ARO clusters and infra nodes, optimizing OpenShift Virtualization VMs, and staying within supported configurations and policies. |
| Decision Making | L52-L58 | Guidance on choosing ARO architectures and immutable settings, planning networking for hosted control planes, and understanding shared responsibilities between Microsoft, Red Hat, and customers. |
| Architecture & Design Patterns | L59-L63 | Planning network topology for ARO HCP clusters, including VNet design, subnets, private endpoints, connectivity options, and required ports and dependencies. |
| Limits & Quotas | L64-L69 | Scaling ARO clusters with multiple load balancer IPs and understanding built‑in service limits, quotas, and standard service definitions for Azure Red Hat OpenShift. |
| Security | L70-L89 | Identity, access, and data protection for ARO: Entra auth, managed identities/SPs, workload identity, NSGs/egress control, disk/etcd encryption, FIPS, Front Door security, and support access control. |
| Configuration | L90-L117 | Configuring ARO and ARO HCP clusters: networking (DNS, proxy, MTU), registries and pull secrets, storage classes, autoscaling/node pools, identities, logging, alerts, and resource policies. |
| Integrations & Coding Patterns | L118-L127 | Patterns for connecting ARO apps to Azure services: workload identity, ACR, Key Vault, NetApp Files, GPU workloads, and exporting Prometheus metrics to Azure Monitor. |
| Deployment | L128-L139 | Deploying and upgrading ARO clusters and apps: private/standard clusters, ARM/Bicep, WebSphere, S2I and serverless, Velero backup/restore, SDN-to-OVN migration, and HCP control plane/node pool upgrades. |
Troubleshooting
| Topic | URL |
|---|---|
| Regain ARO cluster access using Admin Kubeconfig | https://learn.microsoft.com/en-us/azure/openshift/howto-kubeconfig |
| Manually update ARO cluster certificates via CLI | https://learn.microsoft.com/en-us/azure/openshift/howto-update-certificates |
| Troubleshoot common Azure Red Hat OpenShift cluster issues | https://learn.microsoft.com/en-us/azure/openshift/troubleshoot |
Best Practices
| Topic | URL |
|---|---|
| Optimize VM deployments on OpenShift Virtualization in ARO | https://learn.microsoft.com/en-us/azure/openshift/best-practices-openshift-virtualization |
| Deploy and size infrastructure nodes in ARO | https://learn.microsoft.com/en-us/azure/openshift/howto-infrastructure-nodes |
| Deploy and manage large OpenShift clusters on Azure | https://learn.microsoft.com/en-us/azure/openshift/howto-large-clusters |
| Follow support policies for standard OpenShift clusters | https://learn.microsoft.com/en-us/azure/openshift/support-policies-v4 |
Decision Making
| Topic | URL |
|---|---|
| Choose between standard and hosted OpenShift architectures | https://learn.microsoft.com/en-us/azure/openshift/concepts-classic-hosted-control-planes-comparison |
| Choose immutable settings for ARO HCP clusters | https://learn.microsoft.com/en-us/azure/openshift/howto-choose-cluster-configuration |
| Understand responsibility matrix for ARO operations | https://learn.microsoft.com/en-us/azure/openshift/responsibility-matrix |
Architecture & Design Patterns
| Topic | URL |
|---|---|
| Plan networking for Azure Red Hat OpenShift HCP clusters | https://learn.microsoft.com/en-us/azure/openshift/howto-plan-cluster-network |
Limits & Quotas
| Topic | URL |
|---|---|
| Configure multiple load balancer IPs to scale ARO clusters | https://learn.microsoft.com/en-us/azure/openshift/howto-multiple-ips |
| Understand Azure Red Hat OpenShift standard service definitions | https://learn.microsoft.com/en-us/azure/openshift/openshift-service-definitions |
Security
Configuration
Integrations & Coding Patterns
| Topic | URL |
|---|---|
| Use Azure Workload Identity in ARO HCP applications | https://learn.microsoft.com/en-us/azure/openshift/howto-deploy-configure-application-with-workload-identity |
| Run NVIDIA GPU workloads on Azure Red Hat OpenShift | https://learn.microsoft.com/en-us/azure/openshift/howto-gpu-workloads |
| Configure Azure NetApp Files storage for ARO | https://learn.microsoft.com/en-us/azure/openshift/howto-netapp-files |
| Send ARO Prometheus metrics to Azure Monitor via remote write | https://learn.microsoft.com/en-us/azure/openshift/howto-remotewrite-prometheus |
| Integrate Azure Container Registry with Azure Red Hat OpenShift | https://learn.microsoft.com/en-us/azure/openshift/howto-use-acr-with-aro |
| Integrate Azure Key Vault secrets with Azure Red Hat OpenShift | https://learn.microsoft.com/en-us/azure/openshift/howto-use-key-vault-secrets |
Deployment
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/microsoftdocs/agent-skills/azure-redhat-openshift">View azure-redhat-openshift on skillZs</a>