RBAC Rules
Virtual cluster Role configuration for the host cluster namespace.
Virtual cluster ClusterRole configuration.
Enable RBAC rules for volume snapshots.
Service Accounts
vCluster control plane service account.
Service account for workloads running in the virtual cluster.
Resource Quotas
Resource quota for the virtual cluster.
Limit Range
LimitRange for the virtual cluster.
Network Policies
NetworkPolicy configuration for isolating virtual cluster traffic.
Central Admission
Define validating or mutating webhooks to enforce within the virtual cluster (PRO feature).
Security Context
Security context for the control plane.
Example: Custom RBAC Rules
Example: Resource Quotas and Limits
Example: Network Isolation
Example: Service Account with AWS IAM
Example: Pod Security Standards
Use Cases
Multi-Tenant Resource Isolation
Enforce resource limits per virtual cluster:Strict Network Isolation
Isolate virtual cluster traffic:Cluster-Wide Resource Access
Grant ClusterRole permissions:Related Configuration
- See Control Plane for security context configuration
- See Networking Options for network policies
- See Values Reference for all options