Real-world platforms
Rancher
72 / 82

Rancher manages the lifecycle, access and policy of a fleet, while each cluster stays a normal Kubernetes cluster.

Rancher management serverUI, API, authentication, RBACruns in its own (local) Kubernetes clusterProvisioned: RKE2data-centre clustercreated from RancherProvisioned: k3s x3warehouse edge clustersoutbound agent connectionImported: GKEkeeps being run by GoogleRancher adds access and policyImported: EKSkeeps being run by AWSsame UI and RBACFleet (GitOps): the same Git repository is applied to every downstream cluster by Fleet agents

Provision and upgrade

Create RKE2 or k3s clusters on your machines or VMs, and upgrade them from one place.

Centralised access

Plug in your identity provider once; map groups to roles across all clusters.

Not a lock-in

Downstream clusters remain standard Kubernetes. Removing Rancher does not break them.