Simplified Kubernetes management

Tanzu Mission Control is a centralized hub for simplified, multi-cloud, multi-cluster Kubernetes management.

Talk to an expert See how it works
Supporting icon

Control & security for operators

Centralized policies and data protection can be applied to Kubernetes clusters in any environment.

Supporting icon

Consistency & speed for DevOps

Use templates and/or GitOps for consistent and faster cluster deployments including needed guardrails.

Supporting icon

Flexibility & autonomy for developers

Choice and self-service access to clusters increases developer productivity and unlocks innovation.

Key Capabilities


Policies via CLI
Policies via console

Unified policy engine simplifies Kubernetes management

Expand control with templating and resource grouping by clusters, namespaces, and provisioners.

Improve efficiency with cascading policies at organization, cluster group (cluster), or workspace (namespace) levels.

Increase security with out-of-the-box security policies and data-protection, including restore to different clusters.

Plans & features Solution brief

Simplified Cluster Lifecycle Management

Create, update, upgrade, and delete Tanzu Kubernetes Grid, Amazon EKS*, and Azure AKS* clusters in many environments or adopt existing clusters.

Multi-cluster management of attached clusters

Attach any conformant Kubernetes clusters running in other environments—either on-prem or in public clouds—for central management.

Unified and centralized policy management

Utilize a robust policy engine with out-of-the-box access policies, image registry policies, network traffic policies, and quota policies.

Data Protection & business continuity

Create and schedule backups and restore to the same or different cluster, in different clouds if you so choose.

VMware portfolio and open source integrations

Open/extensible approach so users can leverage the tools (Tanzu, third party, open source, in-house) of their choice.

Baseline observability and diagnostics

Gain global observability of the health of clusters and workloads across clouds through integration with Tanzu Observability*.

Security for distributed applications

Easily deploy infrastructure and enable routing across environments with always-on mTLS using Tanzu Service Mesh*.

Cluster inspection

Cluster conformance and Center for Internet Security (CIS) Benchmark Inspection available for configuration and security issues.

Identity and access management

Implement centralized authentication and authorization and federated identity from multiple sources, such as AD, LDAP, and SAML.

* Amazon EKS and Azure AKS lifecycle management, the Tanzu Observability integration, and the Tanzu Service Mesh integration are not currently available for Tanzu Mission Control Self-Managed.

One control plane, your preferred Kubernetes, any or all clouds

Manage your clusters consistently across clouds through cluster attach and centralized policy management. Create clusters targeting on-premises locations, vSphere, VMware Cloud, or cloud providers.

Supporting image

Billion-dollar automotive company reduces hundreds of VMs and CPU cores while moving from monthly to daily deployments

Read the full story
Supporting image

America First Credit Union modernizes platform with automated, multi-cloud infrastructure

Read the full story
Supporting image

Chitale Dairy transforms farmers into entrepreneurs with operational excellence and innovation

Read the full story
“We’re increasing productivity, enhancing our skills and doing a lot more with less effort, to higher quality, and we have the inherent benefit of reuse.”

Mark Leonard, Director of Global Business Development at Drax Group

Use Cases

Supporting icon Take control of your Kubernetes clusters

Attach existing CNCF-conformant clusters across multiple cloud, on-premises, and edge environments for centralized management. Efficiently provision and lifecycle manage Tanzu Kubernetes Grid (and also Amazon EKS and Azure AKS clusters on the SaaS version). Configure clusters via GitOps for increased consistency.

Supporting icon Centrally manage cluster policies

Out-of-the-box policies such as access, network, image registry, quota, security, custom OPA, and mutation are available and increase control and security of Kubernetes clusters. Resource hierarchy enforces inheritance across cluster groups or collections of namespaces and baseline observability helps teams review cluster health and adapt quickly as needed.

Supporting icon Provide self-serve cluster access to multiple teams

Offer a reliable path to production for internal development teams or external customers so they can deploy workloads easily and avoid wrestling with infrastructure. In the SaaS version, you can apply Helm charts from public git repositories or software packages from the Tanzu Application Catalog or Bitnami Catalog to support multiple requirements.

Supporting icon Future proof your infrastructure management

Use the Tanzu Mission Control Terraform Provider for infrastructure as code configuration and GitOps capabilities enabled by FluxCD. In the SaaS version, you can extend the value of your Kubernetes control plane through integrations with VMware Aria Automation, Tanzu Observability (offering observability), and Tanzu Service Mesh.

Supporting icon Protect your workloads with application mobility

Ensure data is protected and recovery point objectives can be met with cross-cluster restore, across environments and clouds. Compliance needs are supported with infrastructure-agnostic data portability while network costs can be reduced with flexible target locations (e.g. AWS S3 and Azure Blob Storage). For the backup of volumes on stateful apps, users have the choice of CSI Snapshot or File System Backup.

Supporting icon Deploy a Kubernetes control plane to air-gapped environments

For regulated industries the ability to standardize security policies, ensure data protection with fine-grained control, and automate Kubernetes operations at scale is essential. With Tanzu Mission Control Self-Managed, organizations can manage IAM and other policies for all CNCF-conformant clusters including Rancher and OpenShift.

Frequently Asked Questions

What is Tanzu Mission Control?

What are the key capabilities of Tanzu Mission Control?

What are the benefits of Tanzu Mission Control?

Who uses Tanzu Mission Control?

Can I provision clusters directly in Tanzu Mission Control?

What Kubernetes clusters can be attached to Tanzu Mission Control?

Will there be a documented API that a customer could use for automation purposes?

Is Tanzu Mission Control available on-premises?

Does Tanzu Mission Control integrate with and/or leverage open source tools?

How does Tanzu Mission Control integrate with other VMware products?

How can I purchase Tanzu Mission Control?

Down arrow

Talk to a Tanzu Expert

Contact us about Tanzu Mission Control.

Thank you for your interest!

We will get back to you shortly.