Help improve this page
Want to contribute to this user guide? Scroll to the bottom of this page and select Edit this page on GitHub. Your contributions will help make our user guide better for everyone.
Organize workloads with Amazon EKS clusters
An Amazon EKS cluster consists of two primary components:
-
The Amazon EKS control plane
-
Amazon EKS nodes that are registered with the control plane
The Amazon EKS control plane consists of control plane nodes that run the Kubernetes software,
such as etcd
and the Kubernetes API server. The control plane runs in an
account managed by AWS, and the Kubernetes API is exposed via the Amazon EKS endpoint
associated with your cluster. Each Amazon EKS cluster control plane is single-tenant and unique, and
runs on its own set of Amazon EC2 instances.
All of the data stored by the etcd
nodes and associated Amazon EBS volumes is
encrypted using AWS KMS. The cluster control plane is provisioned across multiple Availability Zones and
fronted by an Elastic Load Balancing Network Load Balancer. Amazon EKS also provisions elastic network interfaces in your VPC
subnets to provide connectivity from the control plane instances to the nodes (for example,
to support
kubectl exec
logs
proxy
data flows).
Important
In the Amazon EKS
environment, etcd
storage is limited to 8 GiB as per upstream1.28
, replace
with the
following:apiserver_storage_size_bytes
-
Kubernetes version
1.27
and1.26
–apiserver_storage_db_total_size_in_bytes
-
Kubernetes version
1.25
and below –etcd_db_total_size_in_bytes
kubectl get --raw=/metrics | grep "
apiserver_storage_size_bytes
"
Amazon EKS nodes run in your AWS account and connect to your cluster's control plane via the API server endpoint and a certificate file that is created for your cluster.
Note
-
You can find out how the different components of Amazon EKS work in Configure networking for Amazon EKS clusters.
-
For connected clusters, see Connect a Kubernetes cluster to an Amazon EKS Management Console with Amazon EKS Connector.
Topics
- Create an Amazon EKS cluster
- Prepare for Kubernetes version upgrades with cluster insights
- Update existing cluster to new Kubernetes version
- Delete a cluster
- Control network access to cluster API server endpoint
- Deploy Windows nodes on EKS clusters
- Disable Windows support
- Deploy private clusters with limited internet access
- Understand the Kubernetes version lifecycle on EKS
- View Amazon EKS platform versions for each Kubernetes version
- Scale cluster compute with Karpenter and Cluster Autoscaler