Security Node Pool uses n2-standard-4 shielded VMs with Secure Boot and vTPM enabled. Node auto-provisioning is disabled; all scaling events require manual approval via change management. Tainted with a dedicated security-workload taint to prevent co-scheduling of untrusted workloads.

Relationships

Served by incoming 1
Source Element Element Type
Security GKE Cluster Cloud Service

Architecture Context

Diagrams

Not yet referenced in any diagram

Properties

Type Infrastructure Node
Layer Technology
Domain Security and Compliance
Status active
Owner Security Team

Additional Metadata

Node Type container-host
Cloud Provider GCP
Serves Cloud Services Security GKE Cluster
In Network Zone Security Zone
Archimate Type node
Togaf Type Physical Technology Component
Emm Type Physical TI Component

Meta Model

Business
Organization
Application
Technology current

Actions