🗓️ 08042026 1600
Suggested reading order for the Docker and deployment notes. Each section builds on the previous.
1. Foundations — What Docker Is
- docker_overview — containers vs VMs, core components, when to use
- docker_image — images, tags, base images, immutability
- docker_layers — how layers work, caching, union filesystem, why layer order matters
- docker_container — lifecycle, isolation, ephemeral by design
- docker_volumes — persisting data beyond container lifecycle
- docker_networking — drivers, service discovery, network isolation
- docker_healthcheck — readiness detection for containers
2. Building Images
- dockerfile_best_practices — layer ordering, .dockerignore, non-root user, COPY vs ADD
- docker_multistage_build — separating build and runtime environments
- docker_buildx — BuildKit, multi-platform builds, build secrets, caching
- oci_spec — the open standard behind container images and runtimes
- container_registries — push/pull workflow, tagging strategies, access control
3. Compose — Multi-Container Apps
- docker_compose — defining and running multi-container stacks
- docker_compose_dependencies — startup ordering, health conditions, init containers
- docker_env_management — .env vs env_file, precedence, per-client secrets
- docker_compose_profiles — activating service subsets per client
- docker_compose_extends — DRY config reuse with extends, anchors, x- fragments
- docker_resource_limits — CPU/memory limits, noisy neighbor prevention
- docker_logging — logging drivers, rotation, per-client log separation
4. Security
- container_escape — what it is, attack vectors, defenses for multi-client setups
- certificate_authorities — trust model, CAs, Let's Encrypt overview
- acme_certificate_flow — ACME protocol, challenge types, Certbot, renewal
- ocsp — certificate revocation checking, OCSP stapling
- docker_tls_termination — reverse proxy TLS pattern for Docker deployments
5. Orchestration and Deployment
- docker_orchestration — why orchestration, core capabilities, platform comparison
- docker_swarm — Docker-native clustering, rolling updates, Swarm vs K8s
- swarm_stacks — stacks as deployment units, lifecycle commands
- swarm_overlay_networking — VXLAN tunneling, service discovery, routing mesh, required ports
- swarm_secrets_and_configs — encrypted secrets and config distribution
- swarm_scheduling — desired state reconciliation, placement constraints, service modes
- deployment_strategies — overview and comparison of all strategies
- rolling_deployment — incremental instance replacement
- blue_green_deployment — two environments, instant rollback
- canary_deployment — gradual traffic shifting with monitoring
- kubernetes — architecture, concepts (for reference / future learning)
Quick Reference
- docker_commands — command cheatsheet