Skip to content

Sovereign Cloud - MetalLB and AKS additions - #539

Merged
Jan Egil Ring (janegilring) merged 5 commits into
microsoft:mainfrom
janegilring:sov-cloud-localbox-post-automation
Oct 4, 2026
Merged

Jan Egil Ring (janegilring) merged 5 commits into
microsoft:mainfrom
janegilring:sov-cloud-localbox-post-automation

Conversation

@janegilring

Copy link
Copy Markdown
Collaborator

This pull request makes several important updates to the Sovereign Cloud lab setup, deployment automation, and challenge instructions. The main goals are to improve the clarity and accuracy of lab guidance, align region defaults and policy allowlists with current requirements, and ensure robust automation for MetalLB and AKS preparation. The changes also clarify the hybrid cloud challenge steps and prerequisites for participants.

Lab automation and region alignment:

  • Changed the default AzureLocalInstanceLocation parameter in deployment scripts from australiaeast to westeurope to match the updated European region allowlist and current Azure Local region support. The hosted deployment script now also explicitly passes westeurope for new environments. [1] [2]
  • Updated documentation and challenge instructions to clarify that West Europe is now included in the lab-approved regions and is required for Azure Local registration, with details on how this affects policy assignments and resource creation. [1] [2]

MetalLB and Kubernetes Runtime automation:

  • Automated the registration check and tagging for the Microsoft.KubernetesRuntime resource provider, ensuring MetalLB preparation only proceeds if registration is complete and the correct service principal is resolved and tagged. This prevents setup errors and ensures consistent lab state. [1] [2]
  • Updated documentation to clarify the organizer's responsibility for AKS and MetalLB preparation, and the participant's read-only inspection role. Added detailed troubleshooting and validation steps for region and policy issues. [1] [2]

Challenge and walkthrough improvements:

  • Expanded Challenge 6 to include deploying a container app to a unique namespace on the shared AKS cluster, accessing it privately from Codespaces, and verifying MetalLB and network extension health. Added prerequisites and explicit steps for using az connectedk8s proxy and port-forwarding. [1] [2]
  • Improved Codespaces setup instructions with screenshots and detailed navigation steps, making it easier for participants to select the correct devcontainer and avoid common pitfalls.

These changes collectively improve lab reliability, participant experience, and alignment with current Azure capabilities and policies.

…on to include West Europe

Signed-off-by: Jan Egil Ring <janegilring@microsoft.com>
…tions

Signed-off-by: Jan Egil Ring <janegilring@microsoft.com>
- Added MetalLB preparation steps to the manual preparation documentation.
- Updated README to include requirements for KubernetesRuntime service principal.
- Registered Microsoft.KubernetesRuntime resource provider in subscription preparations.
- Implemented MetalLB extension and ARP pool installation in prepare-localbox.ps1.
- Introduced functions for MetalLB plan retrieval and synchronization.
- Enhanced health tests to validate MetalLB extension and address pool configurations.
- Updated tests to ensure proper API versioning for MetalLB resources.
- Added checks for MetalLB preparation and health evidence in test suite.

Signed-off-by: Jan Egil Ring <janegilring@microsoft.com>
…ployment tasks

Signed-off-by: Jan Egil Ring <janegilring@microsoft.com>
@janegilring
Jan Egil Ring (janegilring) merged commit 17f3002 into microsoft:main Oct 4, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant