Docker: run and diagnose containers
Six lessons, 30 questions, and six cases on Docker processes, images, builds, networking, data, Compose, privileges, and diagnosis.
Objectives and progression
A six-module technical course with original container execution and support exercises. Learn to identify processes and images, control builds, diagnose connections, preserve data, and distinguish readiness from startup. Includes decisions about privileges, resources, logs, recovery, Docker primary references, and an internal assessment of 24 decisions in 60 minutes.
Audience: APS L2/L3, infrastructure, SRE, systems administration teams, and technical managers.
Prerequisites: Application, monitoring, and production-support fundamentals; no bank-specific internal process assumed.
300 estimated study minutes
- Connect image, main process, and container lifecycle.
- Build identifiable images with controlled context and dependencies.
- Separate application listening, host publication, and internal communication.
- Choose persistence and interpret mounts without losing data provenance.
- Define useful dependencies and grant only necessary operational access.
- Use state, logs, and resources to recover service with evidence.
Modules
- Processes and images
- Build and distribution
- Networking and access
- Data and mounts
- Compose and privileges
- Diagnosis and recovery
Continue learning
References and version
Docker Engine Linux containers, BuildKit and Compose; official documentation consulted 2026-09-30; version-dependent behavior explicitly scoped
- Containers and shared kernel · 2026-09-30
- Image immutability and layers · 2026-09-30
- Container execution and runtime configuration · 2026-09-30
- Volume lifecycle and mount behavior · 2026-09-30
- Bind mounts and daemon host paths · 2026-09-30
- Published ports and network scope · 2026-09-30
- Build secrets and temporary mounts · 2026-09-30
- Selective artifacts across build stages · 2026-09-30
- Compose dependency readiness · 2026-09-30
- Memory and CPU constraints · 2026-09-30
- Container logs and output streams · 2026-09-30
- Docker group privileges · 2026-09-30
- Dockerfile instructions and process signals · 2026-09-30
- Build context and ignore rules · 2026-09-30
- Rootless daemon and user namespaces · 2026-09-30
- Detailed container inspection · 2026-09-30
- Stop signals and grace periods · 2026-09-30
- User-defined bridge networking · 2026-09-30
What you will explore
0 / 6Processes and images
Connect image, main process, and container lifecycle.
Build and distribution
Build identifiable images with controlled context and dependencies.
Networking and access
Separate application listening, host publication, and internal communication.
Data and mounts
Choose persistence and interpret mounts without losing data provenance.
Compose and privileges
Define useful dependencies and grant only necessary operational access.
Diagnosis and recovery
Use state, logs, and resources to recover service with evidence.