Skip to content

Choose a Cloud Profile

Caracal does not ship provider resources or a managed-cloud service. Use this page to connect services you operate to standard Helm interfaces.

Proceed only when the platform provides Kubernetes, TLS ingress, Postgres, Redis with Streams, secret projection, replay storage, and metrics collection. Provider product names are examples, not certifications.

DependencyRequired behavior
PostgresTLS connection, migration privileges, capacity, and operator-owned backup/restore
RedisStreams, authentication, persistence, noeviction, and observable pending entries
SecretsComplete runtime Secret; no plaintext in Git or plans
IngressHTTPS, exact origins and paths, explicit NetworkPolicy ingress
MonitoringAuthenticated metrics scraping and actionable alert routing
  1. Provision dependencies with platform tooling.
  2. Project runtime credentials into the namespace.
  3. Set external hosts and internal URLs in environment values.
  4. Allow only required DNS, storage, identity-provider, upstream, and export egress.
  5. Render and review the chart before installation.

Confirm secret synchronization, TLS, network reachability, migrations, /ready, metrics auth, canary authorization, revocation, and audit capture. Test provider-native backup restore. Retain the prior values and release; never rely on provider marketing or chart defaults for recovery behavior.

Use Deploy on Managed Kubernetes for the repository examples and their limits.