Tag: TKGI
-
Decommissioning TKGI and Ops Manager, and What Comes Next (TKGI to OpenShift Series, Part 26)
A ten step teardown runbook for retiring a TKGI estate after the OpenShift cutover, covering cluster deletion, the TKGI tile, Ops Manager, BOSH, and the NSX-T and vSphere objects that survive every documented step.
-
Day-2 on OpenShift, Operators, Upgrades and Scaling vs BOSH (TKGI to OpenShift Series, Part 24)
Production traffic is on OpenShift, so now you own a platform that updates itself. Here is the runbook we use for a minor update, Operator channels, MachineSet scaling and health checks, with the timings and the two failures that cost us a window.
-
Pilot Migration, One Non-Prod Cluster End to End (TKGI to OpenShift Series, Part 22)
A pilot that passes proves nothing unless the app team runs it. Here is how I moved one non production TKGI cluster onto OpenShift 4 end to end, with the exit criteria scorecard, the real timings and the rollback.
-
Secrets, Config and CI/CD Pipeline Migration to OpenShift (TKGI to OpenShift Series, Part 21)
Credentials and build pipelines are the last things to follow your workloads off TKGI, and the obvious move, restoring secrets from a Velero backup, is the wrong one. Here is how to rotate at the platform boundary, wire External Secrets, and rebuild Jenkins jobs as OpenShift Pipelines.
-
Migration Toolchain, Velero on TKGI and OADP on OpenShift (TKGI to OpenShift Series, Part 17)
Velero on the TKGI side writes to object storage and OADP restores on OpenShift. Here is the install, the version pin that keeps both ends compatible, and the read only backup location that stops OpenShift deleting your source backups.
-
Network Policy and Microsegmentation, NSX-T DFW to OVN-Kubernetes (TKGI to OpenShift Series, Part 16)
Your NSX-T distributed firewall holds far more rules than kubectl will ever show you. Here is the DFW to OVN-Kubernetes mapping, a namespace baseline that does not break DNS, and where AdminNetworkPolicy actually belongs.
-
OpenShift OAuth, LDAP Group Sync and Registry Setup (TKGI to OpenShift Series, Part 15)
Login proves identity, and group membership does not arrive with it. Here is how to wire OpenShift OAuth to the directory behind TKGI, sync groups on a schedule, bind roles, and decide whether the internal image registry or Harbor serves your migration waves.
-
OpenShift Projects, Quotas and MachineSet Scaling (TKGI to OpenShift Series, Part 14)
TKGI gave every team a cluster and a plan. OpenShift gives them a Project, a quota and a share of one node pool. Here is the runbook that makes that swap, with the project request template, the vSphere MachineSet, the autoscaler pair and the quota rejection that took out a whole migration wave.
-
Cluster Networking, OVN-Kubernetes, Routes and Load Balancing (TKGI to OpenShift Series, Part 13)
On TKGI the NSX Container Plugin handed every LoadBalancer service a virtual server. OpenShift on vSphere does not. This Part wires Routes, ingress shards, MetalLB address pools and EgressIP on the cluster Part 12 installed.
-
Installing OpenShift 4 on vSphere, IPI and UPI Compared (TKGI to OpenShift Series, Part 12)
IPI or UPI for the first OpenShift cluster beside your TKGI estate. A working install-config for vSphere, the three DNS records that decide the install, and the bootstrap failure that costs most teams two attempts.
-
Target Reference Architecture, OpenShift 4 on vSphere (TKGI to OpenShift Series, Part 11)
A concrete OpenShift 4 target for our reference TKGI estate: two clusters instead of three, three vSphere failure domains declared on day zero, and a mapping table from every TKGI component to whatever replaces it.
-
Identity, RBAC and Multi-Tenancy, TKGI Plans to OpenShift Projects (TKGI to OpenShift Series, Part 10)
TKGI put tenancy at the cluster boundary and OpenShift puts it at the Project. This part maps UAA scopes, LDAP groups and Plans onto OpenShift RBAC, project templates and ClusterResourceQuota, including the group sync step that silently breaks every binding if you skip it.
Architect’s Toolkit
PJ’s Tools
- Infra 360 Hub – All Series
- VCF 9 Interactive Walkthroughs
- VCF Design Cheatsheet
- VCF Upgrade Planner
- VCF 9 Series Hub
- VCF Deployment Hub
- AI Stack Hub
- AI Infra Sizing & Cost Calculator
- LLM & RAG Cost Calculator
- DrJhaGPT – Ask Pranay
VMware Cloud Foundation
- VCF Documentation
- VCF 9 Planning & Preparation Workbook
- VCF Bill of Materials (BoM)
- VMware Compatibility Guide
- VMware Interoperability Matrix
- VMware Configuration Maximums
- VMware Ports & Protocols
- VMware Hands-on Labs
- RVTools Download
Nutanix
AI & Cloud-Native Platform
- NVIDIA Build (Model Catalog)
- NVIDIA AI Enterprise Reference Architecture
- NVIDIA NIM Performance Benchmarking
- NVIDIA NGC Catalog
- NeMo Microservices Helm Chart
- Helm Charts Repository
- Hugging Face Models
Architecture & Design
About the Author

Dr Pranay Jha
Dr. Pranay Jha is a Cloud and AI Consultant with 18+ years of experience in hybrid cloud, virtualization, and enterprise infrastructure transformation. He specializes in VMware technologies, multi-cloud strategy, and Generative AI solutions. He holds a PhD in Computer Applications with research focused on Cloud and AI, has published multiple research papers, and has been a VMware vExpert since 2016 and a VMUG Community Leader.
You May Have Missed




DrJha