Alpha may vanish, beta may change, stable is supported for a long time.
Know the maturity ladder before an upgrade, and know which port and endpoint to check when a control-plane component misbehaves.
alpha v1alpha1
Off by default, may have bugs, can be removed any time without notice.
beta v1beta1
Tested and often on by default, but the shape may still change incompatibly.
stable v1
Supported across many releases, with a formal deprecation policy before removal.
Ports to remember
| 6443 | kube-apiserver (everyone) |
| 2379 / 2380 | etcd client (API server only) / peer (Raft) |
| 10250 | kubelet API: exec, logs. Never leave it open. |
| 10259 / 10257 | scheduler / controller-manager metrics |
health and upgrade checks
$ kubectl get --raw='/readyz?verbose' [+]ping ok [+]etcd ok [+]poststarthook/start-kube-apiserver-admission-initializer ok readyz check passed $ kubectl get --raw /metrics | \ grep apiserver_requested_deprecated_apis