Skip to content

Latest commit

 

History

History

AKS-Secure-Baseline-PrivateCluster

Folders and files

NameName
Last commit message
Last commit date

parent directory

..
 
 
 
 
 
 

Windows Secure Baseline Private Cluster

This folder contains Windows AKS secure baseline private cluster creation process. The architecture of the final deployment will look like the diagram below:

architecture diagram

For more information about private clusters and why they are recommended, check out the Private cluster scenario in AKS Landing Zone Accelerator.

Core architecture components

  • AKS Private Cluster
  • Azure Virtual Networks (hub-spoke)
  • Azure Firewall managed egress
  • AKS-managed Internal Load Balancer
  • Azure CNI
  • Azure Keyvault
  • Azure Container Registry
  • Azure Bastion
  • Azure Monitor for Containers
  • Azure Firewall
  • Azure Front Door
  • Azure Application Proxy
  • Group managed service accounts (GMSA)
  • Secret store CSI driver

Next

Follow the instructions below to deploy the AKS reference implementation.

▶️ Terraform