Ansible Zero-to-Hero
A five-tier mastery path — Foundation to Specialist — for Ansible: automate any server, network or cloud with idempotent playbooks, roles and collections, and run the Ansible Automation Platform at enterprise scale.
Start the courseA complete, job-oriented path through Ansible: the agentless push architecture, inventory, ad-hoc commands and playbooks, variables and facts, conditionals, loops, handlers, Jinja2 templating, error handling, reusable roles and collections, and Ansible Vault — built from exhaustive, RHCE-grade lessons, with later tiers covering dynamic inventory, performance, testing, custom modules/plugins, Execution Environments, the Ansible Automation Platform, Event-Driven Ansible, and network/cloud/Windows/Kubernetes automation.
What you’ll be able to do
- Understand Ansible's agentless, push-based, idempotent model and where it fits versus Terraform/Puppet/Chef
- Write inventories, ad-hoc commands and playbooks using become and the core modules
- Master variables and the precedence rules, facts, conditionals, loops, handlers and tags
- Template configuration with Jinja2, build resilient plays with blocks and error handling, and encrypt secrets with Vault
- Build and reuse roles, and consume Ansible Galaxy collections via requirements.yml
- Be RHCE-ready and able to automate servers, networks and clouds at scale
Prerequisites
- Basic Linux command-line literacy and SSH — no prior automation experience required
- A control node (Linux/macOS/WSL) and one or two target hosts or containers for the hands-on labs
Who it’s for
Sysadmins and developers new to automation, engineers standardising configuration management, and people preparing for the Red Hat Certified Engineer (RHCE EX294) or real Ansible delivery work.
Curriculum
Tier 1 · Foundation — Ansible Basics (RHCE)
Start at zero: the agentless architecture, installation and ansible.cfg, inventory, ad-hoc commands, your first playbook, and the core modules for real work.
- 1 Ansible Fundamentals: Architecture, the Agentless Push Model & Idempotency
- 2 Installing & Configuring Ansible: the Control Node, ansible.cfg & Your First Connection
- 3 Ansible Inventory, In Depth: Static INI & YAML, Groups, Host/Group Vars & Patterns
- 4 Ansible Ad-Hoc Commands & Modules: the CLI, FQCN, ansible-doc & the Module Ecosystem
- 5 Ansible Playbooks, In Depth: Plays, Tasks, Modules, Become & Your First Playbook
- 6 Ansible Core Modules for Real Work: package, service, copy, file, template, user & lineinfile
Tier 2 · Intermediate — Playbooks, Variables, Roles & Vault (RHCE)
Write real automation: variables and the precedence rules, facts, conditionals, loops, handlers and tags, Jinja2 templating, error handling, reusable roles and collections, and encrypting secrets with Vault.
- 7 Ansible Variables & Facts, In Depth: the 22-Level Precedence, Facts, register & set_fact
- 8 Ansible Conditionals, Loops, Handlers & Tags, In Depth
- 9 Ansible Jinja2 Templating, In Depth: the template Module, Filters, Tests & Lookups
- 10 Ansible Error Handling, In Depth: Blocks, rescue/always, failed_when, changed_when & ignore_errors
- 11 Ansible Roles & Collections, In Depth: Structure, Dependencies, Galaxy & requirements.yml
- 12 Ansible Vault, In Depth: Encrypting Secrets, Vault IDs, Inline Vars & Pipeline Integration
Tier 3 · Advanced — Debugging, Scale, Plugins, Testing & AAP (EX374)
Move beyond the basics: debug and tune at fleet scale, orchestrate rolling updates, drive dynamic inventory across clouds, extend Ansible with plugins and custom modules, gate everything behind ansible-lint and Molecule, package roles into Execution Environments, and run the Ansible Automation Platform with Controller, Mesh, Hub and Event-Driven Ansible.
- 13 Debugging Ansible, In Depth: Check Mode, --diff, the Debugger, Verbosity & ansible-console
- 14 Tuning Ansible for Speed & Scale, In Depth: Pipelining, Forks, Fact Caching, Async & Mitogen
- 15 Ansible Delegation, Strategies & Rolling Updates, In Depth: delegate_to, run_once, serial & free
- 16 Dynamic Inventory and Secure Secrets for Ansible at Cloud Scale
- 17 Ansible Plugins, In Depth: Filter, Lookup, Callback, Connection & the Whole Plugin System
- 18 Writing Custom Ansible Modules, In Depth: AnsibleModule, argument_spec, Idempotency & check_mode
- 19 Linting & Testing Ansible, In Depth: ansible-lint, yamllint, Idempotence & CI Gates
- 20 Engineering Idempotent Ansible Collections with Molecule Testing
- 21 Building Ansible Collections & Execution Environments, In Depth: galaxy.yml, ansible-builder & EEs
- 22 Ansible Automation Platform Architecture, In Depth: Controller, Automation Hub & Event-Driven Ansible
Tier 4 · Expert — Network, Cloud, Container, Database, VMware & Hybrid Automation
Drive every layer of the modern stack from one playbook: network OSes (Cisco/Juniper/Arista), AWS/Azure/GCP, Windows over WinRM/Kerberos, Kubernetes via kubernetes.core + Helm, containers (Docker/Podman), Postgres/MySQL/MongoDB, VMware vSphere/NSX-T, and the AAP workflows that orchestrate them all across hybrid private + multi-cloud estates.
- 23 Ansible Network Automation, In Depth: Cisco IOS/NX-OS, Juniper Junos & Arista EOS with ansible.netcommon
- 24 Ansible for AWS, In Depth: amazon.aws & community.aws, IAM Auth, Multi-Account & Tagging at Scale
- 25 Ansible for Azure, In Depth: azure.azcollection, Service Principal vs Managed Identity, Multi-Subscription & Tag-Driven Inventory
- 26 Ansible for GCP, In Depth: google.cloud, Application Default Credentials, Workload Identity Federation & Project-Scoped Automation
- 27 Ansible for Windows, In Depth: WinRM, Kerberos, ansible.windows, community.windows & win_dsc
- 28 Ansible for Kubernetes, In Depth: kubernetes.core, k8s, Helm Charts, Manifests & Operator-Style Workflows
- 29 Ansible for Containers, In Depth: community.docker, containers.podman, Compose, Image Builds & Registry Lifecycle
- 30 Ansible for Databases, In Depth: PostgreSQL, MySQL, MongoDB Lifecycle, Replication, Backups & Schema Management
- 31 Ansible for VMware vSphere & NSX, In Depth: community.vmware, vCenter Automation, VM Templates & Software-Defined Networking
- 32 Ansible for Hybrid & Multi-Cloud Orchestration: Coordinating On-Prem, AWS, Azure, GCP, and Kubernetes from a Single Workflow
Tier 5 · Specialist — Compliance, DR, Migrations, Air-Gap, SAP, Edge, ITSM, Backup, DBs & Observability
Run regulated, audited, mission-critical Ansible at enterprise scale: STIG/CIS hardening with OpenSCAP and signed evidence, hybrid disaster recovery and DR drills, P2V/V2V and RHEL major upgrades for fleets, three air-gap archetypes (soft, sneakernet, data-diode), SAP HANA + NetWeaver via the redhat.sap collections, edge/IoT fleet management at scale (pull-mode, bootc, k3s+fleet), ServiceNow ITSM gating with CHG-ticket-as-prerequisite and Slack/Teams ChatOps, backup automation (Veeam/Rubrik/Cohesity/Commvault) with object-lock immutability and tested restore drills, zero-downtime database migrations (online DDL, blue-green, expand-contract), and the observability capstone that closes the loop with Prometheus + Loki + Tempo + OTel + AAP metrics.
- 33 Ansible for Security Compliance, In Depth: STIG, CIS Benchmarks, OpenSCAP & Policy-as-Code
- 34 Ansible for Disaster Recovery, In Depth: RPO/RTO Engineering, Site Failover & Cross-Region Runbooks
- 35 Ansible for OS Migrations, In Depth: P2V, V2V, RHEL Major-Version Upgrades & Windows Server Upgrades
- 36 Ansible in Air-Gapped Environments, In Depth: Sealed Networks, Internal Mirrors, Signed EEs & Cross-Boundary Workflows
- 37 Ansible for SAP, In Depth: HANA System Replication, NetWeaver, Kernel Patching & Landscape Automation
- 38 Ansible for Edge & IoT Fleet Management, In Depth: Pull-Mode, Signed Manifests, Constrained Devices & Intermittent Networks
- 39 Ansible × ITSM & ChatOps, In Depth: ServiceNow CMDB Inventory, Change-Gated Job Templates, Event-Driven Approvals & Slack/Teams Bidirectional Flows
- 40 Ansible × Backup & Storage Automation, In Depth: Veeam, Rubrik, Commvault, NetApp ONTAP, Pure & the 3-2-1-1-0 Rule as Code
- 41 Ansible × Database Migrations & Zero-Downtime Schema Changes, In Depth: Online DDL, Blue-Green Cutovers, Logical Replication & Expand-Contract
- 42 Ansible × Observability Capstone, In Depth: Prometheus, Grafana, Loki, OpenTelemetry, AAP Metrics & the Closed Automation Feedback Loop