Getting Started Overview
When you first use the Platform Center, you can follow the process shown in the figure below to quickly create a platform account, build a cluster on the platform, and create a workspace.
FAQ
The following are common questions related to the Platform Center to help you experience it more smoothly.
-
Q: What permissions does my account need to fully experience the Platform Center?
Your account needs to be bound to the system-defined role Platform Administrator, or a custom role with the following permissions:
-
View permissions for Platform Center-related views (Platform Management, Project Management, Operations Center)
-
View, create, update, and delete permissions for all functions in Platform Management, Project Management, and Operations Center
-
-
Q: How can I view the permissions that my account has?
The user permissions of the platform are implemented based on RBAC (Role-Based Access Control). By viewing the permissions of the roles that your account has, you can know the permissions that your account has.
-
After logging in to the platform with your account, click Account Name > Profile in the upper right corner of the interface to enter the personal information page.
-
In the role area, you can view the list of roles that the current account has. Please record the names of the roles.
-
Click the
in the upper left corner of the interface, and select Platform Management from the drop-down list that appears. -
In the left navigation bar, click Users > Roles to enter the role list page.
-
Find the roles that your account has. Click the Role Name to enter the role details page and scroll down to the permission area to view the permissions that the role has.
-
-
Q: How to authorize an account?
There are several ways to authorize an existing account on the platform:
-
Add roles to users : By adding existing roles on the platform to an existing account, the user account is granted the operational permissions of the role.
-
Import members to roles : By importing members to existing roles on the platform, the user accounts of the members are granted the operational permissions of the role.
-
Import members to projects: By importing existing platform users to projects or adding users to projects (only available when the platform is integrated with OIDC through IDP configuration), users can be granted operational permissions for project or namespace-related roles. For example, import project members .
-
-
Q: What are the preset roles in the system?
Role Name Description Role Level Platform Administrator Has all permissions for all business and resources on the platform. Platform level Platform Auditors Responsible for auditing the entire platform, can view all resources and operation records on the platform, but has no other operational permissions. Platform level Project Administrator Responsible for binding and unbinding namespace administrators, and managing namespace quotas. Project level namespace-admin-system Responsible for adding members to the namespace and setting roles. Namespace level Developers Responsible for developing, deploying, and maintaining custom applications within the namespace. Namespace level -
Q: Does the platform support managing existing external clusters?
The platform supports integrating with existing standard Kubernetes clusters, OpenShift clusters, and Amazon EKS clusters, and managing Kubernetes resources within the clusters.
-
Q: Does the platform support integrating with existing user systems in enterprises?
In addition to supporting the creation of local users, the platform supports importing existing user systems in enterprises by configuring IDPs (Identity Providers) to connect with LDAP (Lightweight Directory Access Protocol) and using OIDC (OpenId Connect) protocol to log in to the platform with third-party accounts recognized by the platform. For more information, please refer to IDP Configuration .
-
Q: What intelligent operation and maintenance experiences can the platform’s operation center provide?
The platform’s operation center provides real-time monitoring data, log, and event information for various resources on the platform through a visual interface. At the same time, it can configure alarm rules for resource configuration based on monitoring data, logs, and events. When an alarm is triggered, the alarm information can be pushed to you through messages sent by the platform in a timely manner, which can effectively help you avoid platform failures, reduce business risks, and improve the efficiency of platform operation and maintenance.