Documentation/Reference
ReferenceSupport matrix
Use the exact release compatibility manifest as the final authority for versions and combinations.
AudienceEvaluators, release engineers, supportReading time12 minCommands in contextNo terminal requiredReviewed source9552586 · 1 August 2026
Control-plane deployment
| Surface | Supported baseline |
|---|
| Profiles | profile-single-node · profile-split · profile-ha-ready |
| Install surfaces | Release-owned Linux/Compose entrypoint · official ClusterPilot Helm chart |
| Database | External durable PostgreSQL |
| Artifacts | Durable filesystem or S3-compatible; multi-replica filesystem must be shared |
| Secrets | Base64 32-byte master key, managed key ID, Secret/file references; no insecure fallback |
| Images | Digest-pinned clusterpilot-api and clusterpilot-agent release subjects |
| HA safety | Leader election plus durable shared dependencies when API or worker replicas exceed one |
Agent host baseline
| Dimension | Supported baseline |
|---|
| Operating systems | Ubuntu 22.04+ · Debian 12+ · RHEL/Rocky/AlmaLinux 9+ |
| Runtime | Container-first Compose; optional systemd wrapper |
| Version policy | N and N-1 accepted; N-2 rejected |
| Trust and authorization | Public/private CA server trust · bootstrap token enrollment · run-scoped expiring tokens · approved loopback placement |
| Shutdown | 5–600 seconds, default 300; container stop grace must be greater |
Cluster baseline
| Kubernetes | Helm | Calico |
|---|
| 1.32.13 | v3.20.2 | v3.31.5 |
| 1.33.13 | v3.21.1 | v3.31.5 |
| 1.34.9 | v3.21.1 | v3.32.0 |
| 1.35.6 | v3.21.1 | v3.32.0 |
| 1.36.2 | v3.21.1 | v3.32.0 |
| Node dimension | Supported baseline |
|---|
| Operating systems | Ubuntu 22.04/24.04 · Debian 11/12 · RHEL 8/9 · Rocky 8/9 · AlmaLinux 8/9 · CentOS Stream 9 |
| Kernel | 5.4 or newer |
| Upgrade | One Kubernetes minor per operation |
| Ingress endpoint | single-cp01 (non-HA) · managed-ha-vip (at least 3 control-plane nodes, L2 VRRP) |
Providers and operational features
| Capability | Status | What it provides |
|---|
| Hetzner Cloud | Available | Provider and infrastructure workflow |
| IONOS Cloud | Available | VDC, LAN, network and infrastructure workflow |
| Cluster infrastructure and lifecycle | Available | Create, scale, update, repair and delete |
| Kubernetes operations | Available | Inventory, status, logs and diagnostics |
| Built-in and custom add-ons | Available | Plan, install and verify platform services |
| Independent Kubernetes Validation | Available | Run checks and keep reports with the cluster |
| Self-hosted distribution | Self-hosted | Compose, Helm and private registry workflows |
Catalog and validation tools
| Area | Baseline |
|---|
| Conformance | Catalog 0.0.3 · supported · Sonobuoy v0.57.5 · Kubernetes v1.36.2 · quick, non-disruptive and certified modes |
| Delivery/certificates | Argo CD 2.13.1 · Flux 2.4.0 · cert-manager 1.16.2 |
| Policy | Gatekeeper 3.17.1 · Kyverno 1.12.6 |
| Ingress | ingress-nginx 1.11.3 · Traefik 3.2.1 (managed conflict) |
| Observability | Prometheus 2.55.1 · Grafana 11.3.1 · Loki 3.2.1 · OpenSearch 2.17.1 |
| Registry/storage/recovery | Harbor 2.12.2 · Rook Ceph 1.15.7 · Velero 1.15.0 |
Compatibility authority