The question is not whether a managed service is better. It is which
responsibilities move and which do not, because the ones that do not are
most of this course.
What moves
Responsibility
Covered in
Managed service
Installation, packaging
Part II
Theirs
Minor version patching
Lesson XVII-05
Theirs, on their schedule
Hardware and storage failure
Part XVIII
Theirs
Replication mechanics
Part XIV
Theirs
Failover automation
Part XV
Theirs
Taking backups
Part XIII
Theirs
OS-level configuration
Parts II, XI
Theirs
That is a genuinely large amount of work, and for most teams it is worth
paying for.
What does not move
Responsibility
Covered in
Still yours
Schema design and indexing
Part X
Yours
Query performance
Parts X, XVI
Yours
Lock contention and DDL
Parts IX, XVII
Yours
Vacuum behaviour and bloat
Parts VII, VIII
Yours
Connection management
Part IV
Yours
Knowing your RPO and RTO
Lesson XV-08
Yours
Testing that restores work
Lesson XIII-08
Yours
Deciding what to monitor
Part XVI
Yours
Security model and roles
Part V
Yours
Capacity planning
Lesson XVII-01
Yours
What you lose
Not disadvantages exactly; things this course used that you will not
have.
No superuser. You get a role with a subset of privileges. Some
extensions cannot be installed, some settings cannot be changed, and
some diagnostic functions are unavailable.
No shell. Everything in lesson XVI-06 — ps, /proc, vmstat,
iostat — is gone. You lose the ability to distinguish “the database is
slow” from “the host is swapping”, and lesson XI-06’s OOM investigation
is not available to you.
No direct file access. No pg_checksums against a stopped cluster,
no examining pg_wal, no du on a data directory.
Restricted configuration. Restart parameters are frequently fixed,
and shared_preload_libraries may be a supported list rather than a
setting.
Their upgrade schedule. Minor upgrades happen in their window.
Major upgrades are available when they choose.
Logs through their interface, with their retention, and often
without log_line_prefix under your control.
Applying this course to a managed cluster
Most of it still applies, because most of it is about PostgreSQL rather
than about the host.
Parts VI to XII — storage, MVCC, vacuum, locks, planner, memory, WAL
— are unchanged. Every measurement in them was about PostgreSQL’s
behaviour.
Part XIII’s concepts apply; the mechanics are the provider’s.
Part XVI’s statistics views are available; the OS correlation in
lesson XVI-06 is not.
Part XVII’s DDL and capacity lessons apply exactly.
What changes is the toolbox, not the subject.
What to take from this
Managed services take installation, patching, hardware, replication
mechanics, failover and backup execution.
They do not take schema, queries, locks, vacuum, connections, RPO/RTO,
restore testing, monitoring choices, security or capacity.
They take backups. Only you can know they restore. Restore to a
scratch instance on a schedule.
You lose superuser, shell access, file access, some configuration and
control of the upgrade schedule.
Parts VI to XII apply unchanged; the OS correlation does not.
The failures measured in this course are almost all above the line a
provider draws.
Cross-course references
Kubernetes for Production Sysadmins — Part CII (Managed versus
self-managed Kubernetes) covers the identical decision one layer up,
including the responsibilities that never transfer.
Linux for Production Sysadmins — Part LXXVII (Linux in the
cloud) covers what the provider operates and what remains yours.
Observability for Production Sysadmins — Part LIX (Database
observability) covers the instruments a managed service exposes, which
is usually a subset and is the constraint that matters most.
Quiz
Knowledge check · 6 questions
Q1. A managed provider reports nightly backups succeeding for a year. What has not been established?
Q2. Which diagnostic capability from this course is unavailable on a typical managed service?
Q3. Why do teams on managed services sometimes handle database incidents worse than teams running their own?
Q4. Which responsibilities remain yours on a managed service? Select all that apply.
Q5. The material on storage, MVCC, vacuum, locks, the planner and WAL applies unchanged to a managed service.
Q6. Which questions distinguish managed database providers, and why are the usual ones useless?
Passing score: 75%. Answers are checked in this browser.