Yandex Cloud
Search
Discuss with expertTry it for free
  • Customer Stories
  • Documentation
  • Blog
  • All Services
    • Cloud Interconnect
    • Cloud Backup
    • Cloud Registry
    • Yandex AI Studio
    • Compute Cloud
    • Object Storage
    • Managed Service for Kubernetes®
    • Yandex BareMetal
    • Smart Web Security
    • Security Deck
    • Managed Service for PostgreSQL
    • Managed Service for ClickHouse®
    • Monium
    • Cloud CDN
    • Network Load Balancer
    • Virtual Private Cloud
    • Cloud DNS
    • Application Load Balancer
    • Yandex Cloud Video
    • Stackland
    • Yandex Cloud Router
    • Yandex Managed Service for Trino
    • Managed Service for MySQL®
    • Managed Service for Valkey™
    • Managed Service for Apache Spark™
    • Yandex StoreDoc
    • Managed Service for OpenSearch
    • Managed Service for Apache Kafka®
    • Data Transfer
    • Yandex MPP Analytics Engine for PostgreSQL
    • Yandex Managed Service for Apache Airflow®
    • Data Processing
    • Yandex MetaData Hub
    • Managed Service for YDB
    • Managed Service for Sharded PostgreSQL
    • Managed Service for YTsaurus
    • Yandex WebSQL
    • DataLens
    • Yandex Search API
    • SpeechSense
    • SpeechKit
    • DataSphere
    • Vision OCR
    • Translate
    • Yandex Identity Hub
    • Key Management Service
    • Certificate Manager
    • Yandex Lockbox
    • Audit Trails
    • SmartCaptcha
    • Cloud Desktop
    • SourceCraft Code Assistant
    • Container Registry
    • Managed Service for GitLab
    • Managed Service for Prometheus®
    • Cloud Functions
    • API Gateway
    • Yandex Cloud Postbox
    • Message Queue
    • Serverless Integrations
    • IoT Core
    • Data Streams
    • Serverless Containers
    • Cloud Notification Service
    • Yandex Query
    • Identity and Access Management
    • Yandex Cloud Console
    • Resource Manager
    • Yandex Cloud Billing
    • Yandex Cloud Quota Manager
    • Cloud Apps
  • System Status
  • Marketplace
    • Featured
    • Infrastructure & Network
    • Data Platform
    • AI for business
    • Security
    • DevOps tools
    • Serverless
    • Monitoring & Resources
  • All Solutions
    • By industry
    • By use case
    • Economics and Pricing
    • Security
    • Technical Support
    • Start testing with double trial credits
    • Cloud credits to scale your IT product
    • Gateway to Russia
    • Cloud for Startups
    • Center for Technologies and Society
    • Yandex Cloud Partner program
    • Price calculator
    • Pricing plans
  • Customer Stories
  • Documentation
  • Blog
© 2026 Direct Cursus Technology L.L.C.
Yandex Cloud Stackland
  • What's new
  • Installation
    • All tutorials
    • Installing Stackland on Yandex BareMetal
    • Installing Stackland on Yandex BareMetal via PXE
    • Installing Stackland on Yandex Cloud VMs
    • Setting up external access to a pod in a cluster
    • All guides
    • Projects
    • Resource model
    • Scaling a cluster
  • Access management
  • Pricing policy
  • Diagnostics and troubleshooting

In this article:

  • Resource hierarchy
  • Cluster
  • Project
  • Namespace
  • Services with a custom resource model
  • Access management
  • Quotas
  1. Concepts
  2. Resource model

Resource model

Written by
Yandex Cloud
Updated at July 24, 2026
View in Markdown
  • Resource hierarchy
    • Cluster
    • Project
    • Namespace
  • Services with a custom resource model
  • Access management
  • Quotas

Stackland uses a hierarchical resource model allowing you to group the resources, perform access management, and apply consumption quotas at different levels.

Resource hierarchyResource hierarchy

ClusterCluster

A cluster is a root Stackland entity. At the cluster level, you can manage the following:

  • Cluster nodes (StacklandHostConfig).
  • Platform configuration (PlatformConfig).
  • Components (ComponentInstallation).
  • Cluster roles and role bindings (ClusterRole, ClusterRoleBinding).
  • Federations with external IdPs.

For more information about changing the cluster node composition, see Scaling a cluster.

ProjectProject

A project is a logical grouping of namespaces for a team or application. At the project level, you can manage the following:

  • Project namespaces.
  • Project roles and role bindings (ProjectRole, ProjectRoleBinding).
  • Project resource quotas.
  • IAM access bindings (ProjectAccessBinding).

For more information, see Projects.

NamespaceNamespace

A namespace is a standard resource isolation unit in Kubernetes. A namespace contains the following:

  • Workloads (Pod, Deployment, StatefulSet).
  • Services (Service, Ingress).
  • Resources of the platform services (PostgreSQL and Apache Kafka® clusters, Object Storage buckets).
  • Roles and role bindings (Role, RoleBinding).
  • Access bindings (AccessBinding).

Services with a custom resource modelServices with a custom resource model

Some services have a resource model of their own, different from the Stackland hierarchy. Such services are deployed as stand-alone installations with their own UI. Within these services, access management uses their native mechanisms.

Access managementAccess management

You can grant access at any hierarchy level:

  • At the cluster level, via ClusterRoleBinding or ClusterAccessBinding. Access to all resources of the cluster.
  • At the project level, via ProjectRoleBinding or ProjectAccessBinding. Access to all namespaces within a project.
  • At the namespace level, via RoleBinding or AccessBinding. Access limited to a particular namespace.

To learn more, see Access management.

QuotasQuotas

You can set quotas at these two levels:

  • At the project level, which limits the total consumption of resources for all the project's namespaces. This quota is set by a cluster administrator.
  • At the namespace level, which is the standard Kubernetes mechanism called ResourceQuota. A project administrator sets this quota.

For more information, see Setting project quotas.

Was the article helpful?

Previous
Projects
Next
Scaling a cluster
© 2026 Direct Cursus Technology L.L.C.