QuestionQ41

Conduct NKP Fleet Management

A company has formed a new DevOps team that must be given cloud-native computing resources. The team needs access to multiple NKP clusters for developing, testing, and validating an in-house application. It must, however, be limited to a specific namespace and have a consistent level of access across the clusters in that namespace so that it does not negatively affect other user groups’ environments or the clusters themselves.

As part of this requirement, the new team must also be restricted in the storage, CPU, and memory it can consume on the clusters. A Platform Engineer is responsible for providing the appropriate access level to the team across these multiple NKP clusters.

How should the engineer best complete this task?

Explanation

An NKP workspace is the appropriate multi-cluster tenancy boundary for a team. Assigning the relevant clusters to the workspace, applying workspace quotas, and binding the DevOps group to the required workspace-scoped RBAC roles provides consistent restricted access while limiting aggregate storage, CPU, and memory consumption. NKP documentation describes workspaces as logical cluster groupings that support team or tenant management and centrally managed access across clusters.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!