1. Content Delivery Networks advanced

    A design platform's shared template suddenly goes viral, and one asset receives millions of requests within minutes. How should CDN caching, origin shielding, request collapsing, stale-while-revalidate and cache warming work together?

    3 min answer cdnorigin-shieldrequest-collapsingstale-while-revalidate
  2. Content Delivery Networks advanced

    A media company plans a global live event and its CDN partner cannot guarantee capacity in one region. How should multi-CDN steering, origin shielding and per-region bitrate caps combine — and how do you prevent steering oscillation?

    2 min answer multi-cdnlive-streamingsteeringorigin-shield
  3. Content Delivery Networks advanced

    A video platform receives a viral upload generating millions of playback requests within minutes. How should edge caching, origin shielding, cache warming, request collapsing, transcoding priority and storage access interact?

    2 min answer vimeoloomcdnorigin-shield
  4. Content Delivery Networks advanced

    After a content purge, your origin receives 400× normal traffic and falls over. The CDN is working as configured. What is missing and how do you fix it?

    2 min answer cdnorigin-shieldcachingthundering-herd
  5. Content Delivery Networks advanced

    Design the playback path for a global video streaming service. What are the architecturally significant decisions?

    2 min answer netflixcdndesigninterview
  6. Content Delivery Networks advanced

    Netflix places Open Connect appliances inside ISP networks and pre-positions content onto them during off-peak hours. Why is this fundamentally different from a conventional pull-through CDN, and what does it require from the content catalogue?

    2 min answer netflixopen-connectcdnpre-positioning
  7. DNS advanced

    A globally distributed API experiences a regional networking failure. How should DNS, health checks, traffic steering, connection draining, failover and consistency interact?

    2 min answer flyioanycastdnsfailover
  8. DNS advanced

    Your DR plan assumes a 60-second DNS TTL gives 60-second failover. Traffic to the failed region continues for 20 minutes. Explain and design something better.

    2 min answer dnsfailoverttlanycast
  9. Firewalls & Security Groups advanced

    An attacker compromises one container in your cluster. What should your network controls prevent, and what can they not help with?

    2 min answer securitysegmentationzero-trustlateral-movement
  10. Firewalls & Security Groups advanced

    Security requires default-deny egress across the estate. Engineering says it will cause constant outages. How do you deliver it?

    2 min answer egresszero-trustflow-logssecurity
  11. gRPC Transport advanced Multiple choice

    A gRPC service sits behind a layer 4 load balancer. One backend receives most of the traffic and adding instances does not help. Why?

    2 min answer grpchttp2load-balancingmultiplexing
  12. HTTP/1.1, HTTP/2 & HTTP/3 advanced

    A video platform moves from HTTP/2 over TCP to HTTP/3 over QUIC. Which specific problems does this solve for video delivery, and what new operational costs appear?

    2 min answer http3quichead-of-line-blockingmobile