Skip to main content

Orchestration / K8S

CCC Managed Kubernetes Container Orchestration Capabilities

Version: DEV

IDTitleDescriptionThreat Mappings
CCC.ContOrch.F07Storage IntegrationSupports attaching ephemeral or persistent storage volumes to running containers in the Kubernetes cluster.
0
CCC.ContOrch.F09Cluster Auto ScalingAbility to automatically scale the number of worker nodes in the cluster based on workload demand, ensuring efficient resource utilization.
0
CCC.K8S.F01Managed Kubernetes Control PlaneProvides a fully managed Kubernetes control plane that has high availability, with automatic updates and patching.
0
CCC.K8S.F02Managed Node PoolProvides fully managed Kubernetes worker nodes (compute resources). These nodes are provisioned, updated, patched, and monitored for you by the service.
0
CCC.K8S.F03Virtual NodesAbility to have fully managed virtual compute resources to power Kubernetes worker nodes. This will eliminate the need to manage underlying nodes.
0
CCC.K8S.F04GPU SupportSupport for GPU-accelerated workloads through integration of GPUs, enabling high-performance computing.
0
CCC.K8S.F05OCI Container Image ExecutionSupports running containerized workloads using OCI-compliant images, providing an isolated execution environment for applications.
0
CCC.K8S.F06Container Registry IntegrationEnables integration with public or private container registries to retrieve container images for execution.
0
CCC.K8S.F08Built-in Ingress Load BalancingBuilt-in support for distributes incoming traffic across running container instances to optimize resource usage and availability.
0
CCC.K8S.F10Private Cluster EndpointsAbility to restrict access to the Kubernetes API server to private networks, ensuring the control plane is only accessible within your VPC.
0
CCC.K8S.F11Service Mesh IntegrationAbility to integrate with managed service mesh offering by the cloud service provider for service discovery, traffic routing, observability, and security.
0
CCC.K8S.F12Secrets IntegrationAbility to seamlessly integrate with cloud native secret manager service to securely manage and access secrets, such as API keys, database credentials, or certificates, within Kubernetes workloads.
0
CCC.K8S.F13Observability Tooling IntegrationAbility integrate with Observability tooling such as Prometheus and Grafana to provide comprehensive monitoring, and visualization for Kubernetes clusters.
0

Imports

IDRemarks
CCC.Core.CP01Encryption in Transit Enabled by Default
CCC.Core.CP02Encryption at Rest Enabled by Default
CCC.Core.CP06Access Control
CCC.Core.CP14API Access
CCC.Core.CP19Child Resource Scaling
CCC.Core.CP22Location Lock-In
CCC.Core.CP23Network Access Rules
CCC.Core.CP24Core Processing Units
CCC.Core.CP25Random Access Memory Allocation
CCC.Core.CP26Persistent Storage
CCC.Core.CP27Configurable Network Ports
CCC.Core.CP28Command-line Interface
CCC.Core.CP29Active Ingestion
CCC.Core.CP30Passive Ingestion