---
sourceDocument: Brazil IT Operations Management
sourceDocumentLink: https://www.servicenow.com/docs/r/it-operations-management

 Release :

    - brazil

ft:locale :

    - en-US

ft:publication_title :

    - Brazil IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Kubernetes discovery using patterns

# Kubernetes discovery using patterns {#ariaid-title1}

Release version: Brazil  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 35 minutes to read  
The ServiceNow
ITOM Visibility finds Kubernetes and OpenShift components using patterns and creates application services containing them. Discovery also finds Kubernetes events and frequently updates the CMDB to reflect the dynamic Kubernetes environment.
Discovery uses the Kubernetes pattern and its extension sections to discover Kubernetes components:

* The Collect OpenShift info extension section of the Kubernetes pattern discovers the OpenShift components of the Kubernetes deployment. The OpenShift Build Config extension section is available from Store version 1.0.53.
* The Service Mesh extension discovers service mesh details. This information enables the pattern to create service-to-service relations, shown as Connects to::Connected. Service mesh discovery requires deploying Istio on your K8s (Kubernetes) cluster. The Service Mesh extension section is available from [Kubernetes extension classes](https://www.servicenow.com/docs/access?context=cmdb-ci-class-models-kubernetes&version=brazil&pubname=brazil-servicenow-platform&ft:locale=en-US). It's supported on the ServiceNow AI Platform using the Madrid release or later.
* The Collect Container Repository and extension section finds container registries and images in these registries.
{#kubernetes-discovery__ul_usq_qwg_ppb}

Starting from Discovery and Service Mapping Patterns version 1.35.0, the Kubernetes Cluster - Per-Namespace LP pattern is available for large cluster discovery. For more information, see the Large-payload Kubernetes discovery section.

In addition, Discovery uses the Kubernetes Event pattern to discover events for Kubernetes components.

Starting from the 1.0.68 release on ServiceNow Store, Service Mapping can use CI relationships to add the Kubernetes components to application services during tag-based discovery.  
Discovery uses the following patterns to discover the entire Kubernetes infrastructure deployed on GCP, AWS, and Azure:

* Google Cloud Platform (GCP) -- Get Kubernetes Clusters.
* Amazon AWS Cloud - Get Kubernetes Clusters.
* Microsoft Azure - Get Kubernetes Clusters.

{#kubernetes-discovery__ul_ev3_vz3_55b} These patterns query the Cloud, collect data on all Kubernetes clusters, and create a serverless schedule for each cluster. When the cluster is deleted, the schedule is marked as inactive. This feature eliminates the overhead of creating and managing multiple credentials and serverless discovery schedules per cluster. The Cloud infrastructure patterns are triggered through standard Cloud discovery.

Starting with Discovery and Service Mapping Patterns version 1.31.0, you can choose to discover Docker image CIs only, without discovering Docker container CIs. Check your entitlements to determine whether you have access to 2026 Packaging SKU. For more information, see [Disable Docker container CI discovery](https://www.servicenow.com/docs/lqWzSkQy4B7KEi6k5QPyRw "Configure Docker discovery to collect image CIs only, instead of both image and container CIs.").{#kubernetes-discovery__check-entitlements-2026-container-packaging}

## Supported versions {#kubernetes-discovery__section_ymx_p2f_g3c}

For the list of Kubernetes distribution versions validated against the Kubernetes and Kubernetes Event patterns, see [Kubernetes Versions Tested with ServiceNow Discovery \[KB3145280\]](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB3145280).

## Request apps on the Store {#kubernetes-discovery__section_y3k_3pl_rlb}

Visit the [ServiceNow Store](https://store.servicenow.com/sn_appstore_store.do#!/store/home) to view all the available apps, and for information about submitting requests to the store. For cumulative release notes information for all released apps, see the [ServiceNow Store version history release notes](https://www.servicenow.com/docs/r/store-release-notes/sn-store-release-notes.html).{#kubernetes-discovery__inline-send-to-store}

## Large-payload Kubernetes discovery {#kubernetes-discovery__section_kubernetes_lp}

By default, Discovery uses the Kubernetes pattern to discover an entire cluster in a single execution. On large clusters, this can result in incomplete discovery data in the CMDB. The Kubernetes Cluster - Per-Namespace LP pattern is available as an alternative for large cluster environments, starting from Discovery and Service Mapping Patterns version 1.35.0.

The Kubernetes Cluster - Per-Namespace LP pattern identifies the cluster and then discovers each namespace separately, improving reliability on large clusters. The data collected and the CIs populated in the CMDB are identical between the two patterns. For configuration on on-premises clusters, see the Prerequisites for on-premises Kubernetes discovery section. For cloud
clusters, see the prerequisites section for your cloud provider.

## General prerequisites for Kubernetes discovery {#kubernetes-discovery__section_smd_j3q_fdb}

Note:  
For additional prerequisites for Kubernetes Cloud infrastructure discovery, see [below](https://www.servicenow.com/docs/gkG4kMzd8LpFmjbBm8GELA#kubernetes-discovery__section_qgk_lbh_dtb).  
Note:  
Running automatic serverless Kubernetes schedules fetches the Bearer token. Adding credentials is unnecessary.  
Perform the following steps so that Discovery can use the pattern to successfully find Kubernetes.

1. Deploy the latest Discovery and Service Mapping Patterns application from ServiceNow Store.
2. On the Kubernetes platform, find the parameters to set up Kubernetes discovery:  
   * Find the URL of the kubeapi server:
     1. On the Kubernetes platform, run the following command:

        `kubectl cluster-info`
     2. In the output, find the line that states the URL of the kubeapi server. For example, Kubernetes control plane is running at

        `https://10.154.144.146:443`
     {#kubernetes-discovery__ol_ijv_hky_3db}
   * Find the namespaces of the kubeapi server:
     1. On the Kubernetes platform, run this command:

        `kubectl get namespaces`
     2. In the output, find the line that states the namespaces. For example, `kube-system`.
     {#kubernetes-discovery__ol_yh3_dqy_3db}
   * Find the Kubernetes username and password:
     1. On the Kubernetes platform, run this command:

        `kubectl config view`
     2. In the output, find the username and password.  
        Note:  
        If in a certain environment, `kubectl config view` command is not showing the expected details, use the `supported` command from the Kubernetes admin to fetch the user name and password details.
     {#kubernetes-discovery__ol_ndy_jwz_5db}
   * Find the valid Bearer token with the proper permissions:
     * If you know the default token name, use the command in the following format: `kubectl describe secret <default-token-token name>`.

       For example: `kubectl describe secret default-token-g6pwc`.
     * If you don't know the default token name, use the command: `kubectl describe secret`.
     {#kubernetes-discovery__ul_x1f_jhf_gfc}
   {#kubernetes-discovery__ul_gj5_rpy_3db}
3. Verify that the API Server is reachable from the MID Server for successful Kubernetes discovery.
4. Verify that the user configured on the Kubernetes platform has GET permissions to run the following /api/v1 elements:
   * https://\<url\>/api/v1/namespaces/
   * https://\<url\>/api/v1/namespaces/\<namespace\>
   * https://\<url\>/api/v1/namespaces/kube-system/endpoints/kube-controller-manager
   * https://\<url\>/api/v1/services
   * https://\<url\>/api/v1/pods
   * https://\<url\>/api/v1/nodes
   * https://\<url\>/api/v1/replicationcontrollers
   * https://\<url\>/apis/networking.k8s.io/v1/ingresses
   * https://\<url\>/apis/apps/v1/deployments
   * https://\<url\>/apis/apps/v1/statefulsets
   * https://\<url\>/apis/apps/v1/daemonsets
   * https://\<url\>/apis/apps/v1/replicasets
   * https://\<url\>/apis/batch/v1/cronjobs
   * https://\<url\>/apis/batch/v1/jobs

   {#kubernetes-discovery__ul_bxk_mjq_fdb}  
   Note:  
   When using the Kubernetes Cluster - Per-Namespace LP pattern, verify your RBAC setup before switching. The LP pattern requires the same permissions listed above, but lists resources per namespace instead of cluster-wide. A ClusterRole with a ClusterRoleBinding covers all namespaces automatically and requires no changes. If you use namespace-scoped Role and RoleBinding objects, verify that a binding exists in each namespace that discovery will enumerate, because missing bindings could cause incomplete discovery for that namespace.
5. To discover the OpenShift components of the Kubernetes deployment, verify that the user configured on the Kubernetes platform has GET permissions to run the following /api/v1 elements:
   * /apis/apps.openshift.io/v1/deploymentconfigs
   * /apis/build.openshift.io/v1/buildconfigs
   * /apis/route.openshift.io/v1/routes
   * /apis/user.openshift.io/v1/groups
   * /apis/user.openshift.io/v1/users
   * /apis/project.openshift.io/v1/projects
   * /apis/image.openshift.io/v1/images
   * /apis/image.openshift.io/v1/imagestreams

   {#kubernetes-discovery__ul_uq3_2cp_hjb}  
   To discover service mesh information:
   * Deploy Istio on your K8s cluster.
   * Provide the Prometheus URL.
   * Configure Prometheus to scrape metrics from Istio.
   {#kubernetes-discovery__ul_jch_n3l_tlb}
6. Activate Get Kubernetes Config Files extension to:
   * Discover configuration files.
   * Create tracked configuration files.
   * Map the configuration files workloads and services with a relationship.

   {#kubernetes-discovery__ul_x3q_p1d_x5b}  
   Note:  
   Tracked files content is in the JSON format from version 1.0.92. Tracked files content is in YAML format in version 1.0.91 and earlier.
7. Create the Kubernetes credentials on the ServiceNow platform:
   1. On the ServiceNow AI Platform, navigate to AllDiscoveryCredentials.
   2. Select New.
   3. Select Kubernetes Credentials.
   4. On the form, fill in the fields.  
      {#kubernetes-discovery__table_udg_p4h_hdb__entry__2}

      | Field | Description |
      |-|-|
      | Name | Unique and descriptive name for this credential. |
      | User name | User name associated with this credential. Leading or trailing spaces should be avoided; if any are detected, a warning will appear. Only one authentication method should be used: either a user name and password or a Bearer token. Don't use both. |
      | Password | Password associated with this credential. Only one authentication method should be used: either a user name and password or a Bearer token. Don't use both. |
      | Bearer Token Authentication | This option enables advanced authentication using a Bearer token. When the check box is selected, the Bearer Token field is displayed. |
      | Bearer Token | Discovery uses the Bearer token for advanced authentication when accessing Kubernetes. The Bearer token should be in BASE64 encoded format, using the character sequence as the token. For example: 31ada4fd-adec-460c-809a-9e56ceb75269. Only one authentication method should be used: either a user name and password or a Bearer token. Don't use both. |
      | Credential alias | An alias is configured to use the Kubernetes credential for devices and applications other than Kubernetes. This alias is also used when defining a serverless discovery schedule for discovering the Kubernetes deployment. 1. Select the padlock icon, and then select the search icon. 2. On the Connection \& Credential Aliases form, select New. 3. Specify a name for the credential alias record. 4. Define attributes for the alias. Set the Type to <kbd class="ph userinput">Credential</kbd>. 5. Select and hold (or right-click) the form header and select Save, then select Update. 6. On the Connection \& Credential Aliases form, select the newly added alias. The alias appears in the Credential alias field. {#kubernetes-discovery__ol_pwp_qgy_3db} |
      [ ]

      {#kubernetes-discovery__table_udg_p4h_hdb}
   5. On the Kubernetes credentials form, select Update.
   {#kubernetes-discovery__ul_gzt_5fy_3db}
8. Create a serverless discovery schedule for the Kubernetes pattern.
   1. Navigate to AllDiscoveryDiscovery Schedules and select New.
   2. On the form, fill in the fields. {#kubernetes-discovery__table_k8s_schedule_form__entry__2}

      | Field | Description |
      |-|-|
      | Name | Unique name for this discovery schedule. |
      | Discover | Scan type, which should be Serverless. |
      | MID Server selection method | Select the method that Discovery uses to select a MID Server: * <kbd class="ph userinput">Specific MID Cluster</kbd>: Use a preconfigured cluster of MID Servers. The MID Server can't be part of multiple clusters * <kbd class="ph userinput">Specific MID Server</kbd>: Use only one MID Server. If that MID Server is part of a cluster, only that MID Server is used. The cluster isn't used. {#kubernetes-discovery__ul_hww_kb5_gkc} |
      | MID server | Name of the MID Server to use for this schedule. This field is available if MID Server selection method is set to <kbd class="ph userinput">Specific MID Server</kbd>. |
      | MID Server cluster | Name of the MID Server cluster to use for this schedule. This field is available if MID Server selection method is set to <kbd class="ph userinput">Specific MID Cluster</kbd>. |
      [ ]

      {#kubernetes-discovery__table_k8s_schedule_form}
   3. Select Submit.
   4. In the Execution Patterns related list, select New.
   5. On the form, fill in the fields. {#kubernetes-discovery__table_k8s_execution_pattern_form__entry__2}

      | Field | Description |
      |-|-|
      | Name | Descriptive name for this record. |
      | Pattern | Pattern to use for this schedule: * Kubernetes * Kubernetes Cluster - Per-Namespace LP (starting from Discovery and Service Mapping Patterns version 1.35.0) |
      | Run Child Patterns | Enable this option if you selected Kubernetes Cluster - Per-Namespace LP as the pattern. |
      [ ]

      {#kubernetes-discovery__table_k8s_execution_pattern_form}
   6. Select Submit.
   7. In the Pattern Launcher Parameters related list, configure the parameters. {#kubernetes-discovery__table_obc_k2z_3db__entry__2}

      | Field | Description |
      |-|-|
      | url | The identifier for the hostname, IP, or FQDN and the port of the Kubernetes apiserver. Use the following format: example_hostname:example_port or example_ip:example_port. Provide the correct protocol (HTTP or HTTPS) in the URL. |
      | namespace | The namespaces that the system passes in the Kubernetes Discovery Configuration. Enter one of the following values: * Individual namespace: enter the namespace and then "kube-system". For example: <kbd class="ph userinput">dev,kube-system</kbd> * The default value: enter <kbd class="ph userinput">default, kube-system</kbd> * Multiple namespaces: enter the namespaces, use a comma (,) to separate the values, and then enter "kube-system". For example: <kbd class="ph userinput">automation,application,test,kube-system</kbd> * All namespaces: Use an asterisk (\*) to enter all namespaces {#kubernetes-discovery__ul_rq3_pry_3db} |
      | credentials alias | The alias associated with the previously created Kubernetes credentials. |
      | cluster name | The name of the Kubernetes cluster, in the following format: \<serviceaccountid\>\<space\>\<clustername\>. |
      | provider | The cloud provider or deployment type: * For cloud hosted clusters: GCP, AWS, or Azure * For on-premises clusters: <kbd class="ph userinput">OnPrem</kbd> {#kubernetes-discovery__ul_u2q_rhb_jkc} |
      | cluster_resource_id | Cluster resource ID example: * Azure Kubernetes clusters - Resource ID. * AWS - cluster ARN. * GCP - cluster global name. {#kubernetes-discovery__ul_qj5_pr5_gbc} |
      | cluster_uid_cache | Internal parameter used by the Kubernetes Cluster - Per-Namespace LP pattern. Leave this value empty. |
      [Table 1. Configuring execution pattern attributes]

      {#kubernetes-discovery__table_obc_k2z_3db}
9. Create a serverless discovery schedule for the Kubernetes Event pattern. Configure the schedule to run every 5 or 10 minutes.  
   Note:  
   When the pattern is run for the first time, it stores an event_timestamp. Later on it collects only the delta events based on the timestamp. The more often the pattern is run, the fewer updates to the CMDB IRE are needed.

   Create a serverless execution pattern for the discovery schedule and assign it to the Kubernetes Events pattern. Configure the parameters required by the Kubernetes pattern as described in [Configuring execution pattern attributes](https://www.servicenow.com/docs/gkG4kMzd8LpFmjbBm8GELA#kubernetes-discovery__table_obc_k2z_3db).
10. To include discovered components into service instances, enable CI relationships used in tag-based discovery by Service Mapping. These CI relationships are available from the 1.0.68 release on the ServiceNow Store. For operational steps, see [Tag-based discovery configuration](https://www.servicenow.com/docs/eIOd7ZdFc8jWAKQKu1dUoQ "You can refine the default configuration to control which CIs Service Mapping includes in application services during the tag-based discovery process.").
{#kubernetes-discovery__ul_jvp_4fy_3db}

## Additional prerequisites for Kubernetes Cloud infrastructure discovery {#kubernetes-discovery__section_qgk_lbh_dtb}

For the Google Cloud Platform (GCP) -- Get Kubernetes Clusters pattern, perform the following:  
1. In the ServiceNow instance, set up a Google Cloud Platform (GCP) service account with valid credentials and permissions.
2. On the GCP infrastructure, set up the MID Server with full access to all Cloud APIs: Set Cloud API access scopes to "Allow full access to all Cloud APIs". The MID Server instance can access only the Clusters specific to the project.
3. Navigate to `sys_properties.list` and, using the admin role, configure the following properties:  
   * sn_itom_pattern.k8s_midserver: Specify a valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0).  
     Note:  
     To target a specific service account or cluster, you can configure the sn_itom_pattern.k8s_\<service_account_id\>_midserver and the sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_midserver properties. The most specific property takes precedence.
   * sn_itom_pattern.k8s_create_schedule_enabled: Set the value to true.  
     Note:  
     Enabling the sn_itom_pattern.k8s_create_schedule_enabled property automatically creates a serverless schedule for your cloud clusters, eliminating the need for manual scheduling. If you have an existing manual schedule and want to convert it to an automatic one, enable the property. Your manual schedule will be updated; no additional schedule will be created. An automatically created schedule has no "Max run time" defined.
   * sn_itom_pattern.k8s_entry_pattern: To use the per-namespace large-payload (LP) discovery pattern, set the value to Kubernetes Cluster - Per-Namespace LP (starting from Discovery and Service Mapping Patterns version 1.35.0).
   {#kubernetes-discovery__ul_cjf_m1d_2tb}
4. Create and run Google Cloud Discovery  
   Note:  
   To fetch the Bearer token, while running GKE Kubernetes schedule, use the gcloud command:

   `gcloud config config-helper --format="value(credential.access_token)"`

   Configuring gcloud in the MID Server instance grants access to the GKE cluster to fetch the token.
{#kubernetes-discovery__ol_ltt_f1d_2tb}

For the Amazon Elastic Kubernetes Service (EKS) cluster discovery, perform the following:  
1. In the ServiceNow instance, set an AWS service account with valid management account credentials and permissions.  
   1. Verify that the Amazon Elastic Kubernetes Service (EKS) Cluster has a cluster role with the read-only access to all resources.
   2. Create cluster role binding between the cluster role and a Kubernetes user. For example, read-onlyuser.
   3. Create an AWS IAM role with the policy EKSReadOnly.
   4. Associate the IAM role with the Kubernetes user in one of the following ways:  
      * In the cluster, edit the aws-auth ConfigMap.
      * Run the command:`eksctl create iamidentitymapping --cluster yourClusterName --arnarn:aws:iam::yourAccountID:role/yourIAMRoleName --username read-only-user`

      {#kubernetes-discovery__ul_iqf_w5c_2tb}
   {#kubernetes-discovery__ol_e4v_ztc_2tb}
2. Run Amazon Elastic Kubernetes Service (EKS) cluster discovery in one of two ways: Using the AWS Command Line Interface (CLI) or without using the AWS CLI. First, set the system property sn_itom_pattern.k8s_aws_cli_to_generate_token to use the model you choose. This system property is set to true by
   default.

   * Set this system property to true to use AWS CLI to generate a token.

   * Set this system property to false to use Assume Roles to generate a token.

   {#kubernetes-discovery__ul_b45_1nk_pvb}
   1. Run Amazon Elastic Kubernetes Service (EKS) cluster discovery using AWS CLI:

      1. Set up the MID Server with the AWS CLI configured. Configuring AWS CLI credentials grants access to the Amazon Elastic Kubernetes Service (EKS) cluster.

         Note:  
         The user logged in to the system must be the same as the MID Server user.
      2. To generate the Bearer token, While running the Amazon Elastic Kubernetes Service (EKS) schedule, use the AWS CLI command:`aws eks get-token --cluster-name <cluster_name>`.

         Configuring the AWS CLI user/role in the MID Server instance grants access to the Amazon Elastic Kubernetes Service (EKS) cluster to generate the token.
      {#kubernetes-discovery__ol_eyg_jpk_pvb}
   2. Run Amazon Elastic Kubernetes Service (EKS) cluster discovery without using AWS CLI:

      Note:  
      This feature is supported from Discovery and Service Mapping Patterns version 1.0.96 - December 2022.

      Refer to the following KB for detailed instructions: [KB1182188: EKS cluster discovery using STS AssumeRoles (Without AWS CLI)](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB1182188)
   {#kubernetes-discovery__ol_ttk_vnk_pvb}
3. Navigate to `sys_properties.list` and, using the admin role, configure the following properties:
   * sn_itom_pattern.k8s_midserver: Specify a valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0).  
     Note:  
     To target a specific service account or cluster, you can configure the sn_itom_pattern.k8s_\<service_account_id\>_midserver and the sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_midserver properties. The most specific property takes precedence.
   * sn_itom_pattern.k8s_create_schedule_enabled: Set the value to true.  
     Note:  
     Enabling the sn_itom_pattern.k8s_create_schedule_enabled property automatically creates a serverless schedule for your cloud clusters, eliminating the need for manual scheduling. If you have an existing manual schedule and want to convert it to an automatic one, enable the property. Your manual schedule will be updated; no additional schedule will be created. An automatically created schedule has no "Max run time" defined.
   * sn_itom_pattern.k8s_entry_pattern: To use the per-namespace large-payload (LP) discovery pattern, set the value to Kubernetes Cluster - Per-Namespace LP (starting from Discovery and Service Mapping Patterns version 1.35.0).
   {#kubernetes-discovery__ul_epn_vqh_dtb}
4. Create and run an AWS
   Cloud Discovery schedule.

{#kubernetes-discovery__ol_mqx_fch_dtb} For Microsoft Azure
Kubernetes Services (AKS)- Kubernetes cluster discovery, perform the following:  
1. Update to the latest Discovery and Service Mapping Patterns version.
2. In the ServiceNow instance, configure the Azure Service Account with valid Azure credentials and permission.
3. Navigate to `sys_properties.list` and, using the admin role, configure the following properties:
   * sn_itom_pattern.k8s_midserver: Specify a valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0).  
     Note:  
     To target a specific service account or cluster, you can configure the sn_itom_pattern.k8s_\<service_account_id\>_midserver and the sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_midserver properties. The most specific property takes precedence.
   * sn_itom_pattern.k8s_create_schedule_enabled: Set the value to true.  
     Note:  
     Enabling the sn_itom_pattern.k8s_create_schedule_enabled property automatically creates a serverless schedule for your cloud clusters, eliminating the need for manual scheduling. If you have an existing manual schedule and want to convert it to an automatic one, enable the property. Your manual schedule will be updated; no additional schedule will be created. An automatically created schedule has no "Max run time" defined..
   * sn_itom_pattern.k8s_entry_pattern: To use the per-namespace large-payload (LP) discovery pattern, set the value to Kubernetes Cluster - Per-Namespace LP (starting from Discovery and Service Mapping Patterns version 1.35.0).
   {#kubernetes-discovery__ul_hv1_ctd_x5b}
4. If you don't have local accounts with Kubernetes RBAC and want to improve pattern efficiency, navigate to MID ServerProperties and set the sn_itom_pattern.aks_fetch_local_ad_token property to false.
5. Run an Azure cloud discovery schedule.
6. Configure the MID Server in the Discovery schedules according to the cluster account type. If you don't have Local accounts with RBAC, you can ignore this step.

   {#kubernetes-discovery__table_pbp_dwy_zbc__entry__2}

   | Cluster account type | Discovery schedule MID Server |
   |-|-|
   | MS Entra ID auth with Kubernetes RBAC. | Any MID Server. |
   | MS Entra ID authentication with Azure RBAC. | Any MID Server. |
   | Local accounts with Kubernetes RBAC. | Select the MID Server with the Azure Command Line Interface (CLI) configured. Configuring the Azure CLI credentials grants access to the AKS cluster. To fetch the Bearer token while running the AKS Kubernetes schedule, use the Azure CLI command: `az aks get-credentials --name <cluster_name> --overwrite-existing --resource-group <resourceGroup_name> --file -`. |
   [ ]

   {#kubernetes-discovery__table_pbp_dwy_zbc}  
   Note:  
   * The user logged in to the system must be the same as the MID Server user.
   * For detailed information about AKS Cluster Discovery configuration, see the [AKS Cluster Discovery Configuration Details \[KB1220553\]](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB1220553) article in the Now Support Knowledge Base.
   {#kubernetes-discovery__ul_g4z_xdz_zbc}
{#kubernetes-discovery__ol_az1_fsd_x5b} {#kubernetes-discovery__table_qhn_ztd_x5b__entry__5}

|   | Property name | Property description | Type | Default value |
|-|-|-|-|-|
|   | sn_itom_pattern.manifest_digest_image_id |   | Boolean | false Note: Before setting this property to true and running discovery: avoid duplicate records from being created by deleting all Docker image records. |
|   | sn_itom_pattern.k8s_create_schedule_enabled | The feature flag that can be enabled/disabled under the system properties, which is responsible to control the pattern execution. When enabled, it creates discovery schedules despite the new property value. An automatically created schedule has no "Max run time" defined. | Boolean | false |
|   | sn_itom_k8s_run_cloud_discovery | When enabled, this property executes cloud Kubernetes patterns, discovering Kubernetes clusters without creating auto schedules. | Boolean | false |
| MID Server | sn_itom_pattern.k8s_midserver\* | \[Default\] Example- Valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0). Applies to newly created discovery schedules only; existing schedules aren't updated. | String |   |
| MID Server | sn_itom_pattern.k8s_\<service_account_id\>_midserver\* | \[Based on Service Account Level\] Example- Valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0). | String |   |
| MID Server | sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_midserver\* | \[Based on Cluster name\] Example- Valid MID Server or MID Server cluster name (MID Server cluster support starting with Discovery and Service Mapping Patterns version 1.35.0). | String |   |
| MID Server | sn_itom_pattern.kubernetes_collect_volume | When the property is set to True, the data for Kubernetes Volume \[cmdb_ci_kubernetes_volume\] gets populated. | String | false |
| MID Server | sn_itom_pattern.k8s_add_workload_to_image_relation | Starting from Discovery and Service Mapping Patterns version 1.30.2, the Kubernetes patterns create an indirect-only relationship between Docker Image and workload CIs through Kubernetes Pods. Setting the property to true also creates direct relationships between Docker Image and the following workload CI types: Deployment, DaemonSet, ReplicaSet, StatefulSet, and ReplicationController. | Boolean | false |
| Credential Alias | sn_itom_pattern.k8s_ cred_alias | \[Default\] Example- credential alias name | String |   |
| Credential Alias | sn_itom_pattern.k8s_\<service_account_id\>_alias | \[Based on Service Account Level\] Example- Valid credential alias name. | String |   |
| Credential Alias | sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_alias | \[Based on Cluster name\] Example- Valid credential alias name. | String |   |
| Prometheus Url | sn_itom_pattern.k8s_ prometheusUrl | \[Default\] Example- Valid Prometheus Url | String |   |
| Prometheus Url | sn_itom_pattern.k8s_\<service_account_id\>_prometheusUrl | \[Based on Service Account Level\] Example- Valid Prometheus Url | String |   |
| Prometheus Url | sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_prometheusUrl | \[Based on Cluster name\] Example- Valid Prometheus URL | String |   |
|   | sn_itom_pattern.k8s_ run | \[Supported Discovery Schedule run- Daily, On Demand, Weekdays, Weekends, Month Last Day, Calendar Quarter End\] Example- Daily | String |   |
|   | sn_itom_pattern.k8s_batch_count | \[Refers how many schedules to run in batch -- default set to 5\] Example- 5 (Number of schedules to run in on batch) | Integer | 5 |
|   | sn_itom_pattern.k8s_schedule_batch_delay | \[keeps tracks of the time difference between two batches value contains in sec\] Example- 300 (in seconds) | Integer |   |
|   | sn_itom_pattern.k8s_run_time | \[keeps tracks of the current time for a batch\] If this property is set, then you can use the same or you can use the dynamic timing, which will be 5 min after the system current timing. Values contains in HH:MM:SS format Example- 10:11:12 (HH:MM:SS ) | String |   |
|   | sn_itom_pattern.bring_discovery_container | Available starting with Discovery and Service Mapping Patterns version 1.31.0. This property controls whether the Kubernetes, Kubernetes Event, Docker Pattern, and Amazon AWS - ECS patterns discover both Docker container and Docker image CIs, or only Docker image CIs. Check your entitlements to determine whether you have access to 2026 Packaging SKU. | Boolean | true |
|   | sn_itom_pattern.k8s_entry_pattern | Controls which entry pattern Kubernetes cloud discovery uses. When set to Kubernetes Cluster - Per-Namespace LP, discovery identifies the cluster and then discovers each namespace separately, improving reliability on large clusters. The Kubernetes Cluster - Per-Namespace LP pattern is available starting from Discovery and Service Mapping Patterns version 1.35.0. | String | Kubernetes |
[Table 2. Other Supported System configuration]

{#kubernetes-discovery__table_qhn_ztd_x5b}\* If a MID Server and a MID Server cluster share the same name, the MID Server cluster takes precedence. sn_itom_pattern.k8s_\<service_account_id\>_midserver takes precedence over sn_itom_pattern.k8s_midserver for that account. sn_itom_pattern.k8s_\<service_account_id\>_\<clustername\>_midserver takes precedence over both for that account and cluster.  
Note:  
`<service_account_id>` is the account ID name under Cloud Service Accounts. For more information, see: [Create Discovery schedules for cloud resources](https://www.servicenow.com/docs/75D1RA0uUfz0uQupZOga5Q#discovery-manager "Create schedules for discovering cloud resources using service accounts or IP ranges.")

## Kubernetes Credential-less or mid-in-cluster discovery {#kubernetes-discovery__section_v3v_54j_x5b}

Prerequisites for Kubernetes Credentials-less discovery:

Deploy the containerized MID Server to the Kubernetes cluster. Configuring Kubernetes credentials is unnecessary since the MID Server in Kubernetes cluster automatically discovers the API server and authenticate.  
{#kubernetes-discovery__table_d3s_55j_x5b__entry__2}

| Field | Description |
|-|-|
| URL | Enter any one the of following value in URL field: https://cluster Or https://kubernetes.default.svc |
| namespace | The namespaces that the system passes in the Kubernetes Discovery Configuration. Enter one of the following values: * Individual namespace: enter the namespace and then "kube-system". For example: `dev,kube-system` * The default value. Enter:`default,kube-system` * Multipile namespaces: enter the namespaces, use a comma (,) to separate the values, and then enter "kube-system". For example: `automation,application,test,kube-system` * All namespaces: Use an asterisk (\*) to enter all namespaces. {#kubernetes-discovery__ul_yym_jvj_x5b} |
| cluster_name | Enter Unique name. |
[Table 3. Configuring execution pattern attributes for Credentials-less discovery]

{#kubernetes-discovery__table_d3s_55j_x5b}

## Data collected by Discovery during horizontal discovery {#kubernetes-discovery__section_xj5_j3q_fdb}

Kubernetes pattern
:
    {#kubernetes-discovery__table_kubernetes_cluster__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the kube-controller-manager leader. |
    | Kubernetes UID \[k8s_uid\] | The kube-system namespace UID \[supported versions: 1.0.92 and later\] |
    | IP Address \[ip_address\] | The identifier for the host IP of the Kubernetes apiserver. |
    | Port \[port\] | The identifier for the Kubernetes apiserver port. |
    | Namespace \[namespace\] | This value shows the namespaces the system passed in the Kubernetes Discovery Configuration. |
    | Event Timestamp \[event_timestamp\] | The timestamp of the latest event created on this Kubernetes cluster at the time of the discovery. |
    [Table 4. Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\]]

    {#kubernetes-discovery__table_kubernetes_cluster}

    {#kubernetes-discovery__table_kubernetes_node__entry__2}

    | Field | Description |
    |-|-|
    | The virtual aspect of the Kubernetes node. Data relating to the physical aspect of the Kubernetes node is stored under Linux server. ||
    | Name \[name\] | The name of the Kubernetes node. The format can be only the name of the machine or the full name consisting of the name and the hostname: `<name>.<hostname>`. |
    | Kubernetes UID \[k8s_uid\] | The identifier for the Kubernetes node UUID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Operational status \[operational_status\] | The operational status of the Kubernetes node. |
    [Table 5. Kubernetes Node \[cmdb_ci_kubernetes_node\]]

    {#kubernetes-discovery__table_kubernetes_node}

    {#kubernetes-discovery__table_kubernetes_service__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes service. |
    | Selector \[selector\] | A comma delimited list of the label selectors specified in the Kubernetes configuration that are used to select target pods. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes service belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes service UUID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    [Table 6. Kubernetes Service \[cmdb_ci_kubernetes_service\]]

    {#kubernetes-discovery__table_kubernetes_service}

    {#kubernetes-discovery__table_kubernetes_pod__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes pod. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes pod UUID. |
    | Resource version \[resource_version\] | The resource version of the Kubernetes pod. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes pod belongs. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | State \[state\] | The Kubernetes pod status: Pending, Running, Succeeded, Failed, and Unknown. |
    [Table 7. Kubernetes Pod \[cmdb_ci_kubernetes_pod\]]

    {#kubernetes-discovery__table_kubernetes_pod}

    {#kubernetes-discovery__table_kubernetes_cronjob__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes cronjob. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes cronjob belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes cronjob UUID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    [Table 8. Kubernetes Cronjob \[cmdb_ci_kubernetes_cronjob\]]

    {#kubernetes-discovery__table_kubernetes_cronjob}

    {#kubernetes-discovery__table_kubernetes_job__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes job. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes job belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes job UUID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    [Table 9. Kubernetes Job \[cmdb_ci_kubernetes_job\]]

    {#kubernetes-discovery__table_kubernetes_job}

    {#kubernetes-discovery__table_kubernetes_daemonset__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes daemonset. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes daemonset belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes daemonset UUID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Pods Available \[pods_avail\] | The number of available pods. |
    | Pods Failed \[pods_failed\] | The number of pods in the Failed phase. |
    | Pods Running \[pods_running\] | The number of pods in the Running phase. |
    | Pods Succeeded \[pods_succeeded\] | The number of pods in the Succeeded phase. |
    | Pods Waiting \[pods_waiting\] | The number of pods in the Waiting phase. |
    [Table 10. Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\]]

    {#kubernetes-discovery__table_kubernetes_daemonset}

    {#kubernetes-discovery__table_kubernetes_ingress__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes ingress. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes ingress belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes ingress UID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    [Table 11. Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\]]

    {#kubernetes-discovery__table_kubernetes_ingress}

    {#kubernetes-discovery__table_kubernetes_deployment__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes deployment. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes deployment belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes deployment UID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Total Replicas \[total_replicas\] | The number of replicas in this deployment. |
    | Desired Replicas \[desired_replicas\] | The number of replicas in the desired phase. |
    | Available Replicas \[available_replicas\] | The number of available replicas. |
    | Unavailable Replicas \[unavailable_replicas\] | The number of replicas in the unavailable phase. |
    | Updated Replicas \[updated_replicas\] | The number of updated replicas. |
    [Table 12. Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\]]

    {#kubernetes-discovery__table_kubernetes_deployment}

    {#kubernetes-discovery__table_kubernetes_replicaset__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes replicaset. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes replicaset belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes replicaset UID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Total Replicas \[total_replicas\] | The number of replicas in this replicaset. |
    | Desired Replicas \[desired_replicas\] | The number of replicas in the desired phase. |
    | Available Replicas \[available_replicas\] | The number of available replicas. |
    | Unavailable Replicas \[unavailable_replicas\] | The number of replicas in the unavailable phase. |
    | Updated Replicas \[updated_replicas\] | The number of updated replicas. |
    [Table 13. Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\]]

    {#kubernetes-discovery__table_kubernetes_replicaset}

    {#kubernetes-discovery__table_kubernetes_replicationcontroller__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes replication controller. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes replication controller belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes replication controller UID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Total Replicas \[total_replicas\] | The number of replicas in this replication controller. |
    | Desired Replicas \[desired_replicas\] | The number of replicas in the desired phase. |
    | Available Replicas \[available_replicas\] | The number of available replicas. |
    | Unavailable Replicas \[unavailable_replicas\] | The number of replicas in the unavailable phase. |
    | Updated Replicas \[updated_replicas\] | The number of updated replicas. |
    [Table 14. Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\]]

    {#kubernetes-discovery__table_kubernetes_replicationcontroller}

    {#kubernetes-discovery__table_kubernetes_statefulset__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes statefulset. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes statefulset belongs. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes statefulset UID. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Total Replicas \[total_replicas\] | The number of replicas in this statefulset. |
    | Desired Replicas \[desired_replicas\] | The number of replicas in the desired phase. |
    | Available Replicas \[available_replicas\] | The number of available replicas. |
    | Unavailable Replicas \[unavailable_replicas\] | The number of replicas in the unavailable phase. |
    | Updated Replicas \[updated_replicas\] | The number of updated replicas. |
    [Table 15. Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\]]

    {#kubernetes-discovery__table_kubernetes_statefulset}

    {#kubernetes-discovery__table_docker_container__entry__2}

    | Field | Description |
    |-|-|
    | The component that runs the docker image. ||
    | Container id \[container_id\] | The unique identifier for the Kubernetes docker container. In cases where duplicate records are created, deduplication tasks appear once discovery runs. For information on how to resolve these tasks, see the [Making docker container identifier independent \[KB1443042\]](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB1443042) article in the ServiceNow® Knowledge Base. |
    [Table 16. Docker Container \[cmdb_ci_docker_container\]]

    {#kubernetes-discovery__table_docker_container}

    {#kubernetes-discovery__table_docker_image__entry__2}

    | Field | Description |
    |-|-|
    | An executable package of an application and its related software that can be instantiated by a docker container. ||
    | Image id \[image_id\] | The identifier for the Kubernetes docker image. |
    | Name \[name\] | The name of the Kubernetes docker image. |
    [Table 17. Docker Image \[cmdb_ci_docker_image\]]

    {#kubernetes-discovery__table_docker_image}

    {#kubernetes-discovery__table_linux_server__entry__2}

    | Field | Description |
    |-|-|
    | The server that hosts the Kubernetes node. ||
    | Name \[name\] | The name of the Linux server powering the Kubernetes node. |
    | Host name \[host_name\] | The hostname of the Linux server. |
    | Operating System \[os\] | The operating system deployed on this Linux server. |
    | Kernel Release \[kernel_release\] | The version of the Linux kernel operating system deployed on this Linux server. |
    | RAM (MB) \[ram\] | The size of RAM installed on this Linux server. |
    | IP Address \[ip_address\] | The IP address of the Linux server. |
    | CPU type \[cpu_type\] | The CPU architecture of the Linux server hosting the Kubernetes node. |
    | CPU count \[cpu_count\] | The number of CPUs on the Linux server hosting the Kubernetes node. |
    | Serial number \[serial_number\] | The serial number of the Linux server hosting the Kubernetes node. |
    [Table 18. Linux Server \[cmdb_ci_linux_server\]]

    {#kubernetes-discovery__table_linux_server}

    {#kubernetes-discovery__table_key_value__entry__2}

    | Field | Description |
    |-|-|
    | This configuration item contains Kubernetes labels. Labels are key/value pairs that are attached to objects, such as pods. ||
    | Key \[key\] | The key of the Kubernetes pod or Kubernetes service Key Value parameter. |
    | Value \[value\] | The value of the Kubernetes pod or Kubernetes service Key Value parameter. |
    | Configuration item \[configuration_item\] | References one of the following CI tables, based on the key-value pair: * Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] * Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] * Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] * Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] * Kubernetes Node \[cmdb_ci_kubernetes_node\] * Kubernetes Pod \[cmdb_ci_kubernetes_pod\] * Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] * Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] * Kubernetes Service \[cmdb_ci_kubernetes_service\] * Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] |
    [Table 19. Key Value \[cmdb_key_value\]]

    {#kubernetes-discovery__table_key_value}

    {#kubernetes-discovery__table_kubernetes_volume__entry__2}

    | Field | Description |
    |-|-|
    | Kubernetes UID \[k8s_uid\] | The Kubernetes volume UUID. |
    | Mount Path \[mount_path\] | The path for accessing this Kubernetes volume. |
    | Name \[name\] | The name of the Kubernetes volume. |
    | Namespace \[namespace\] | The Kubernetes namespace to which this Kubernetes volume belongs. |
    | Kubernetes Cluster \[cluster\] | The name of the cluster that contains this resource. |
    | Volume ID \[volume_id\] | The ID of the Kubernetes volume. |
    [Table 20. Kubernetes Volume \[cmdb_ci_kubernetes_volume\]]

    {#kubernetes-discovery__table_kubernetes_volume}

    {#kubernetes-discovery__table_kubernetes_namespace__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the Kubernetes namespace. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | State \[state\] | The Kubernetes namespace phase: Active or Terminating. |
    [Table 21. Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\]]

    {#kubernetes-discovery__table_kubernetes_namespace}

Collect OpenShift info pattern extension
:
    {#kubernetes-discovery__table_openshift_dep_conf__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift deployment configuration. |
    | Namespace \[namespace\] | The name of the namespace containing the deployment configuration. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Url \[url\] | The URL of the OpenShift deployed configuration, available only for Kubernetes versions earlier than 1.16. |
    [Table 22. OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\]]

    {#kubernetes-discovery__table_openshift_dep_conf}

    {#kubernetes-discovery__table_openshift_build_conf__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift build configuration. |
    | Namespace \[namespace\] | The name of the OpenShift namespace containing the build configuration. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift build configuration, available only for Kubernetes versions earlier than 1.16. |
    [Table 23. OpenShift Build Config \[cmdb_ci_openshift_build_conf\]]

    {#kubernetes-discovery__table_openshift_build_conf}

    {#kubernetes-discovery__table_openshift_source_2_image__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift source image. |
    | To \[to\] | Related image. |
    | Parent ID \[parent_id\] | The ID of the OpenShift source image. |
    [Table 24. OpenShift Source2Image \[cmdb_ci_openshift_source_2_image\]]

    {#kubernetes-discovery__table_openshift_source_2_image}

    {#kubernetes-discovery__table_openshift_route__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift route. |
    | Namespace \[namespace\] | The name of the namespace containing the OpenShift route. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Kubernetes Cluster \[cluster\] | References the Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] table. |
    | Url \[url\] | The URL of the OpenShift route, available only for Kubernetes versions earlier than 1.16. |
    | Host \[host\] | The target host of the OpenShift route. |
    | Port \[port\] | The target port of the OpenShift route. |
    [Table 25. OpenShift Route \[cmdb_ci_openshift_route\]]

    {#kubernetes-discovery__table_openshift_route}

    {#kubernetes-discovery__table_openshift_group__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift group. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift group, available only for Kubernetes versions earlier than 1.16. |
    [Table 26. OpenShift Group \[cmdb_ci_openshift_group\]]

    {#kubernetes-discovery__table_openshift_group}

    {#kubernetes-discovery__table_openshift_user__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift user. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift user, available only for Kubernetes versions earlier than 1.16. |
    | Full Name \[full_name\] | The full name of the OpenShift user. |
    [Table 27. OpenShift User \[cmdb_ci_openshift_user\]]

    {#kubernetes-discovery__table_openshift_user}

    {#kubernetes-discovery__table_openshift_project__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift project. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift project, available only for Kubernetes versions earlier than 1.16. |
    [Table 28. OpenShift Project \[cmdb_ci_openshift_project\]]

    {#kubernetes-discovery__table_openshift_project}

    {#kubernetes-discovery__table_openshift_images__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift image. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift image, available only for Kubernetes versions earlier than 1.16. |
    | Docker Image Metadata ID \[docker_image_metadata_id\] | The ID of the docker image. |
    | Docker Image Metadata Parent ID \[docker_image_metadata_parent_id\] | The ID of the image parent. |
    | Architecture \[arch\] | The architecture of the image. |
    | Size \[size\] | The image size. |
    | Hostname \[hostname\] | The hostname related to the image. |
    [Table 29. OpenShift Image \[cmdb_ci_openshift_images\]]

    {#kubernetes-discovery__table_openshift_images}

    {#kubernetes-discovery__table_openshift_images_stream__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift image stream. |
    | Kubernetes UID \[k8s_uid\] | The Kubernetes UID of this resource. |
    | Url \[url\] | The URL of the OpenShift image stream, available only for Kubernetes versions earlier than 1.16. |
    | Namespace \[namespace\] | The name of the namespace containing the OpenShift image stream. |
    [Table 30. OpenShift Image Stream \[cmdb_ci_openshift_images_stream\]]

    {#kubernetes-discovery__table_openshift_images_stream}

    {#kubernetes-discovery__table_openshift_docker_images_repository__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the OpenShift docker image repository. |
    | Parent ID \[parent_id\] | The ID of the parent system. |
    [Table 31. OpenShift Docker Image Repository \[cmdb_ci_openshift_docker_images_repository\]]

    {#kubernetes-discovery__table_openshift_docker_images_repository}

    {#kubernetes-discovery__table_openshift_key_value__entry__2}

    | Field | Description |
    |-|-|
    | This configuration item contains OpenShift labels. Labels are key/value pairs that are attached to objects, such as deployed configurations and routes. ||
    | Key \[key\] | The key of the OpenShift deployed configuration or route Key Value parameter. |
    | Value \[value\] | The value of the OpenShift deployed configuration or route Key Value parameter. |
    | Configuration item \[configuration_item\] | References one of the following CI tables, based on the key-value pair: * OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] * OpenShift Route \[cmdb_ci_openshift_route\] |
    [Table 32. Key Value \[cmdb_key_value\]]

    {#kubernetes-discovery__table_openshift_key_value}

Collect Container Repository pattern extension
:
    {#kubernetes-discovery__id_ex5_3hg_pkc__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the container repository. |
    [Table 33. Container Repository \[cmdb_ci_container_repository\]]

    {#kubernetes-discovery__id_ex5_3hg_pkc}

    {#kubernetes-discovery__id_dg4_jhg_pkc__entry__2}

    | Field | Description |
    |-|-|
    | Name \[name\] | The name of the container repository entry. |
    | Category \[category\] | The category of the container repository entry. |
    [Table 34. Container Repository Entry \[cmdb_ci_container_repository_entry\]]

    {#kubernetes-discovery__id_dg4_jhg_pkc}

## Kubernetes deployment diagrams {#kubernetes-discovery__section_dxk_h3g_pkc}

The graphic illustrates CIs that are part of Kubernetes discovery.  
Note:  
This Dependency Views map was simplified for clarity. Your Kubernetes deployments may contain many more CIs.
Figure 1. Components of the Kubernetes deployment   

Figure 2. Components of the Kubernetes deployment including OpenShift   

## CI relationships and references created by the Kubernetes pattern {#kubernetes-discovery__section_xsf_fpq_fdb}

These relationships and references are created by the Kubernetes pattern. References link to records in other tables and don't appear in the CI Relationship \[cmdb_rel_ci\] table.{#kubernetes-discovery__table_ysf_fpq_f987b__entry__3}

| CI | Relationship | CI |
|-|-|-|
| Docker Container \[cmdb_ci_docker_container\] | Runs on::Runs | Linux Server \[cmdb_ci_linux_server\]\* |
| Docker Image \[cmdb_ci_docker_image\] | Instantiates::Instantiated by | Docker Container \[cmdb_ci_docker_container\]\* |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Cluster of::Cluster | Kubernetes Node \[cmdb_ci_kubernetes_node\]\* |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\]\* |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | Kubernetes Service \[cmdb_ci_kubernetes_service\]\* |
| Kubernetes Cronjob \[cmdb_ci_kubernetes_cronjob\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Cronjob \[cmdb_ci_kubernetes_cronjob\] | Owns::Owned by | Kubernetes Job \[cmdb_ci_kubernetes_job\] |
| Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] | Instantiates::Instantiated by | Docker Image \[cmdb_ci_docker_image\] |
| Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Instantiates::Instantiated by | Docker Image \[cmdb_ci_docker_image\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Owns::Owned by | Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Owns::Owned by | Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] |
| Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] | Instantiates::Instantiated by | Kubernetes Service \[cmdb_ci_kubernetes_service\] |
| Kubernetes Job \[cmdb_ci_kubernetes_job\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Job \[cmdb_ci_kubernetes_job\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes Cronjob \[cmdb_ci_kubernetes_cronjob\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes Job \[cmdb_ci_kubernetes_job\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes Service \[cmdb_ci_kubernetes_service\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] |
| Kubernetes Node \[cmdb_ci_kubernetes_node\] | Hosted on::Hosts | Linux Server \[cmdb_ci_linux_server\]\* |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Contains::Contained by | Docker Container \[cmdb_ci_docker_container\]\* |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Contains::Contained by | Docker Image \[cmdb_ci_docker_image\]\* |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Contains::Contained by | Kubernetes Volume \[cmdb_ci_kubernetes_volume\]\* |
| Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] | Instantiates::Instantiated by | Docker Image \[cmdb_ci_docker_image\] |
| Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] | Instantiates::Instantiated by | Docker Image \[cmdb_ci_docker_image\] |
| Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Kubernetes Service \[cmdb_ci_kubernetes_service\] | Provided By::Provides | Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] |
| Kubernetes Service \[cmdb_ci_kubernetes_service\] | Provided By::Provides | Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] |
| Kubernetes Service \[cmdb_ci_kubernetes_service\] | Provided By::Provides | Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] |
| Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] | Hosted on::Hosts | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] | Instantiates::Instantiated by | Docker Image \[cmdb_ci_docker_image\] |
| Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] | Instantiates::Instantiated by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\] |
| Linux Server \[cmdb_ci_linux_server\] | Contains::Contained by | Kubernetes Pod \[cmdb_ci_kubernetes_pod\]\* |
| Linux Server \[cmdb_ci_linux_server\] | Managed by::Manages | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\]\* |
[Table 35. CI relationships]

{#kubernetes-discovery__table_ysf_fpq_f987b}\* These relationships are also created by the Kubernetes Event pattern.  
{#kubernetes-discovery__table_ci_references_k8s__entry__3}

| CI | Field | Referenced CI |
|-|-|-|
| Container Environment Variables \[cmdb_container_environment_variables\] | Configuration item \[configuration_item\] | Docker Container \[cmdb_ci_docker_container\] |
| Key Value \[cmdb_key_value\] | Configuration item \[configuration_item\] | References one of the following CI tables, based on the key-value pair: * Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] * Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] * Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] * Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] * Kubernetes Node \[cmdb_ci_kubernetes_node\] * Kubernetes Pod \[cmdb_ci_kubernetes_pod\] * Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] * Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] * Kubernetes Service \[cmdb_ci_kubernetes_service\] * Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] |
| Kubernetes Cronjob \[cmdb_ci_kubernetes_cronjob\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes DaemonSet \[cmdb_ci_kubernetes_daemonset\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Deployment \[cmdb_ci_kubernetes_deployment\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Ingress \[cmdb_ci_kubernetes_ingress\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Job \[cmdb_ci_kubernetes_job\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Node \[cmdb_ci_kubernetes_node\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Service \[cmdb_ci_kubernetes_service\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes StatefulSet \[cmdb_ci_kubernetes_statefulset\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Volume \[cmdb_ci_kubernetes_volume\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Serial Number \[cmdb_serial_number\] | Configuration Item \[cmdb_ci\] | Linux Server \[cmdb_ci_linux_server\] |
[Table 36. CI references]

{#kubernetes-discovery__table_ci_references_k8s}

## CI relationships created by the Kubernetes cloud patterns {#kubernetes-discovery__section_xsf_fpq_cloud}

These additional relationships are created by the Google Cloud Platform (GCP) -- Get Kubernetes Clusters, Amazon AWS Cloud - Get Kubernetes Clusters, and Microsoft Azure - Get Kubernetes Clusters patterns.{#kubernetes-discovery__table_cloud_relationships__entry__3}

| CI | Relationship | CI |
|-|-|-|
| Azure Datacenter \[cmdb_ci_azure_datacenter\] | Hosted on::Hosts | Cloud Service Account \[cmdb_ci_cloud_service_account\] |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Hosted on::Hosts | AWS Datacenter \[cmdb_ci_aws_datacenter\] |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Hosted on::Hosts | Azure Datacenter \[cmdb_ci_azure_datacenter\] |
| Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Hosted on::Hosts | Google Datacenter \[cmdb_ci_google_datacenter\] |
| Resource Group \[cmdb_ci_resource_group\] | Contains::Contained by | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
[ ]

{#kubernetes-discovery__table_cloud_relationships}

## CI relationships and references created by the Kubernetes extension sections {#kubernetes-discovery__section_umy_kvf_pkc}

The following extension sections of the Kubernetes pattern identify additional relationships and references. References link to records in other tables and don't appear in the CI Relationship \[cmdb_rel_ci\] table.

Collect OpenShift info
:
    {#kubernetes-discovery__table_openshift_relationships__entry__3}

    | CI | Relationship | CI |
    |-|-|-|
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift Docker Image Repository \[cmdb_ci_openshift_docker_images_repository\] |
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift Group \[cmdb_ci_openshift_group\] |
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift Image \[cmdb_ci_openshift_images\] |
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift Project \[cmdb_ci_openshift_project\] |
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift Source2Image \[cmdb_ci_openshift_source_2_image\] |
    | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] | Contains::Contained by | OpenShift User \[cmdb_ci_openshift_user\] |
    | Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | OpenShift Build Config \[cmdb_ci_openshift_build_conf\] |
    | Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] |
    | Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | OpenShift Image Stream \[cmdb_ci_openshift_images_stream\] |
    | Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\] | Contains::Contained by | OpenShift Route \[cmdb_ci_openshift_route\] |
    | Kubernetes Service \[cmdb_ci_kubernetes_service\] | Provided By::Provides | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] |
    | OpenShift Build Config \[cmdb_ci_openshift_build_conf\] | Contains::Contained by | Tracked Configuration file \[cmdb_ci_config_file_tracked\] |
    | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] | Contains::Contained by | Tracked Configuration file \[cmdb_ci_config_file_tracked\] |
    | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] | Owns::Owned by | Kubernetes ReplicaSet \[cmdb_ci_kubernetes_replicaset\] |
    | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] | Owns::Owned by | Kubernetes ReplicationController \[cmdb_ci_kubernetes_replicationcontroller\] |
    [Table 37. CI relationships]

    {#kubernetes-discovery__table_openshift_relationships}

    {#kubernetes-discovery__table_sjm_vyf_pkc__entry__3}

    | CI | Field | Referenced CI |
    |-|-|-|
    | Key Value \[cmdb_key_value\] | Configuration item \[configuration_item\] | References one of the following CI tables, based on the key-value pair: * OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] * OpenShift Route \[cmdb_ci_openshift_route\] {#kubernetes-discovery__ul_bb5_gcg_pkc} |
    | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
    | OpenShift Route \[cmdb_ci_openshift_route\] | Kubernetes Cluster \[cluster\] | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
    [Table 38. CI references]

    {#kubernetes-discovery__table_sjm_vyf_pkc}

Collect Container Repository
:
    {#kubernetes-discovery__id_pdy_bw3_lrb__entry__3}

    | CI | Relationship | CI |
    |-|-|-|
    | Docker Image \[cmdb_ci_docker_image\] | Provisioned From::Provisioned | Container Repository Entry \[cmdb_ci_container_repository_entry\] |
    | Container Repository Entry \[cmdb_ci_container_repository_entry\] | Hosted on::Hosts | Container Repository \[cmdb_ci_container_repository\] |
    [ ]

    {#kubernetes-discovery__id_pdy_bw3_lrb}

Istio Service Mesh
:
    Prerequisites for Istio Service Mesh extension:

    * Verify that Istio Service Mesh and Prometheus components are configured on the Kubernetes cluster.
    * Verify that Prometheus discovers the service connection information using the `queryistio_requests_total` command.
    * Verify that the application services are connected, and verify service-to-service traffic flow in Kiali graph.

    {#kubernetes-discovery__ul_ip4_ldn_x5b}For more information on the Bookinfo application, see: <https://istio.io/latest/docs/examples/bookinfo/>

    {#kubernetes-discovery__table_qfb_d2n_x5b__entry__3}

    | CI | Relationship | CI |
    |-|-|-|
    | Kubernetes Service \[cmdb_ci_kubernetes_servi ce\] | Connects to::Connected by | Kubernetes Service \[cmdb_ci_kubernetes_servi ce\] |
    [ ]

    {#kubernetes-discovery__table_qfb_d2n_x5b}

## Data collected by Service Mapping during tag-based discovery {#kubernetes-discovery__section_evz_ld1_ppb}

Service Mapping uses tag-based discovery to create application service maps including the Kubernetes components. Service Mapping comes with the following preconfigured CI relationships used for tag-based discovery. These CI relationships are available from the 1.0.68 release on ServiceNow Store. {#kubernetes-discovery__table_oqn_wd1_ppb__entry__3}

| CI | Relationship | CI |
|-|-|-|
| Kubernetes Service \[cmdb_ci_kubernetes_service\] | Contained By::Contains | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| OpenShift Project \[cmdb_ci_openshift_project\] | Contained by::Contains | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Contained by::Contains | Kubernetes Cluster \[cmdb_ci_kubernetes_cluster\] |
| Kubernetes Pod \[cmdb_ci_kubernetes_pod\] | Cluster::Cluster of | Kubernetes Service \[cmdb_ci_kubernetes_service\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\]​ | Contains::Contained By | OpenShift Deployed Config \[cmdb_ci_openshift_dep_conf​\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\]​ | Contains::Contained By | OpenShift Build Config \[cmdb_ci_openshift_build_conf\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\]​ | Contains::Contained By | OpenShift Route \[cmdb_ci_openshift_route\] |
| Kubernetes Namespace \[cmdb_ci_kubernetes_namespace\]​ | Contains::Contained By | OpenShift Image Stream \[cmdb_ci_openshift_images_stream\] |
[ ]

{#kubernetes-discovery__table_oqn_wd1_ppb}

## Kubernetes dashboard {#kubernetes-discovery__section_ypj_n1c_jmb}

After Discovery finishes discovering components of the Kubernetes deployment, you can navigate to WorkspacesDiscovery Admin WorkspaceInsights and use the Kubernetes Explorer dashboard to view the Kubernetes environments and resources of your organization. To use the enhanced Kubernetes dashboard, verify you have Discovery Admin Workspace starting from version 1.3.1 (August 2024 Store). For more information about Kubernetes Explorer, see [Kubernetes Explorer](https://www.servicenow.com/docs/RcolssS_WV4A9RnQopY1Vw "Use the ServiceNow Kubernetes Explorer to drill-down and view the Kubernetes environments and resources of your organization.").

## Troubleshooting {#kubernetes-discovery__section_ntv_2mm_wjb}

If the mapping process does not proceed as you expected, follow the following suggestions.{#kubernetes-discovery__table_ggn_ypj_yhb__entry__3}

| Symptom | Cause | Solution |
|-|-|-|
| Discovery fails. The discovery message contains the information about an error caused by the REST timeout. | There are many CIs sending the REST call response in the deployment. The MID Server cannot process the REST call response without exceeding the time limit controlled by the mid.sa.cloud.request_timeout parameter. | By default, the mid.sa.cloud.request_timeout parameter is set to 30000 milliseconds. Increase the value of this parameter on the relevant MID Server and run discovery again. Note: If the Configuration Parameters related list for the relevant MID Server does not show this parameter, you may need to add it. |
| Pattern Designer fails during a debug session. The Pattern Designer message contains information about an error caused by a timeout. | The Pattern Designer fails because of a timeout during pattern debugging (and not during discovery). | By default, the sa.debugger.max_timeoutparameter is set to 240 seconds. Increase the value of this parameter on the relevant MID Server. |
[ ]

{#kubernetes-discovery__table_ggn_ypj_yhb}

To run the Kubernetes pattern in Debug mode, refer to [KB0832567](https://support.servicenow.com/kb?id=kb_article_view&sysparm_article=KB0832567) for operational information.
* **[Container image scanning for software decomposition](https://www.servicenow.com/docs/zb3cQIakhyf47PHP6PoyTQ)**   
  The ITOM Visibility apps, Discovery and Service Mapping Patterns and Kubernetes Visibility Agent integrate with Aqua Trivy to collect data on container images and OS packages. You can increase your control over container deployment by having visibility to the container components.
* **[Disable Docker container CI discovery](https://www.servicenow.com/docs/lqWzSkQy4B7KEi6k5QPyRw)**   
  Configure Docker discovery to collect image CIs only, instead of both image and container CIs.

*[\>]: and then


