Cloud Platform Topology & Core Concepts
Understand how Vyntech Cloud orchestrates multi-tenant workloads, physical Kubernetes clusters, Knative serverless engines, and storage volumes.
1. Multi-Tier Resource Hierarchy
Tenant Organization
Top-level isolation boundary. Manages aggregate billing, payment methods, team IAM permissions, and spending quotas.
Projects & Namespaces
Mapped directly to Kubernetes namespaces with dedicated ResourceQuotas, LimitRanges, and network security policies.
Workloads & Serverless Functions
Long-running container Deployments with replica sets, or Knative event-driven serverless functions with scale-to-zero capability.
Storage & Network Endpoints
NVMe PersistentVolumeClaims (PVCs), Let's Encrypt TLS certificates, and Anycast ingress routing.
2. Kubernetes Infrastructure Mechanics
Vyntech Cloud communicates with managed clusters using encrypted kubeconfig credentials stored with AES-256-GCM envelope encryption. Background workers continuously reconcile:
- Capacity Reconciler (5m cron): Polls cluster node metrics, allocatable vCPU/RAM, and pod scheduling density.
- Ingress IP Sync (3m cron): Discovers public LoadBalancer IP changes and syncs DNS A records in Cloudflare.
- Hourly Usage Collector: Aggregates pod core-hours and gigabyte-hours for precise usage-based billing.