Access Type Legend
AI & Machine Learning 3 Services
ClearML Platform
clearmlComplete MLOps platform for experiment tracking, model versioning, orchestration, and deployment automation
ClearML API
clearmlRESTful API endpoint for programmatic access to MLOps platform features and automation workflows
ClearML File Server
clearmlCentralized storage for ML artifacts, training datasets, model checkpoints, and experiment outputs
DevOps & CI/CD 5 Services
Jenkins CI/CD
devsecopsEnterprise automation server for continuous integration, delivery pipelines, and deployment workflows
SonarQube
securityCode quality analysis and security vulnerability detection with continuous inspection capabilities
Nexus Repository
artifactsUniversal artifact repository managing packages, Docker images, npm modules, and binary dependencies
Docker Registry
artifactsPrivate container image registry for secure storage and distribution of Docker images across environments
Docker Group Registry
artifactsAggregated repository group combining multiple Docker registries with unified access and caching
Monitoring & Observability 5 Services
Grafana
monitoringEnterprise observability platform with real-time dashboards, visualizations, and alerting capabilities
Prometheus
monitoringTime-series database for metrics collection, storage, and powerful query language (PromQL) capabilities
Alertmanager
monitoringIntelligent alert routing with deduplication, grouping, silencing, and multi-channel notification delivery
Falco Sidekick
falcoRuntime security event processing engine detecting anomalous behavior and policy violations in real-time
Falco Dashboard
falcoVisual interface for security event analysis, threat investigation, and runtime protection monitoring
Infrastructure & Storage 1 Service
Project Management 2 Services
Standalone Enterprise Services 3 Services
Keycloak SSO
all-environmentsEnterprise identity and access management with Single Sign-On, OAuth2, SAML, and LDAP integration
HashiCorp Vault
all-environmentsCentralized secrets management for API keys, passwords, certificates, and encryption key distribution
OTOBO ITSM
all-environmentsIT Service Management platform for ticket tracking, incident management, and service desk operations with Keycloak SSO
Internal Cluster Services 20 Services
Accessing Internal Services
These services run within the Kubernetes cluster and are not directly accessible from external networks. Use one of the following methods:
Port Forwarding: kubectl port-forward -n <namespace> svc/<service-name> <local-port>:<service-port>
Example: kubectl port-forward -n security-scanning svc/grype 8080:8080
NodePort: Services marked with NodePort are accessible via <node-ip>:<nodeport>
For access assistance, contact the DevSecOps team
🛡️ Security Scanning & Vulnerability Assessment
Anchore Grype
security-scanningVulnerability scanner for container images and filesystems with comprehensive CVE database coverage
OWASP ZAP
security-scanningWeb application security testing tool for finding vulnerabilities through automated and manual penetration testing
Trivy Operator
security-scanningKubernetes-native security scanner continuously monitoring containers, configurations, and compliance
⚙️ Infrastructure & Cluster Management
Cert Manager
cert-managerAutomated X.509 certificate management for Kubernetes with support for Let's Encrypt, HashiCorp Vault, and custom CAs
Metrics Server
kube-systemCluster-wide aggregator of resource usage metrics providing CPU and memory data for autoscaling decisions
K8sGPT
k8sgpt-operatorAI-powered Kubernetes cluster diagnostics using natural language processing for troubleshooting and analysis
Internal Docker Registry
container-registryPrivate container registry for internal builds and testing with NodePort access for development workflows
💾 Data & Storage Services
Elasticsearch
clearmlDistributed search and analytics engine powering ClearML experiment tracking and log aggregation
MongoDB
clearmlNoSQL document database storing ClearML metadata, experiments, and model information
Redis Master
clearmlIn-memory data store providing caching and message brokering for ClearML platform services
PostgreSQL (SonarQube)
security-scanningRelational database backend for SonarQube code analysis results and configuration data
PostgreSQL (ADAI)
adai-appDedicated database instance for ADAI application data persistence and transactional operations
PostgreSQL (Plane)
plane-stgDatabase backend for Plane project management platform storing issues, projects, and user data
🌐 Network & Proxy Services
NGINX Ingress Controller
ingress-nginxKubernetes ingress controller managing external access to services with SSL/TLS termination and routing
OAuth2 Proxy (Nexus)
artifact-managementAuthentication proxy providing Keycloak SSO integration for Nexus Repository Manager
OAuth2 Proxy (K8s Dashboard)
kubernetes-dashboardAuthentication proxy securing Kubernetes Dashboard access through Keycloak SSO integration
Hubble (Cilium)
kube-systemNetwork observability platform providing visibility into service communications and network policies
Cloud Service Providers 4 Providers
Microsoft Azure
Enterprise cloud platform with comprehensive IaaS, PaaS, and SaaS solutions
Amazon Web Services
Leading cloud infrastructure with extensive compute, storage, and AI services
Google Cloud Platform
Modern cloud infrastructure with advanced data analytics and machine learning
Oracle Cloud
Enterprise cloud with best-in-class database, autonomous services, and hybrid capabilities