Kubernetes Agent Overview

The Ennote Kubernetes Secret Sync Agent is a headless synchronization worker. Learn how it works and how to manage its lifecycle directly from the Ennote Cloud UI.

How the Agent Works

  • Zero-Ingress Worker:The agent operates entirely via outbound connections to the Ennote API. No inbound ports are exposed to the public internet. 

  • Native Synchronization:It securely pulls secrets from your Ennote Cloud and synchronizes them directly into Kubernetes native Secret objects within its deployed namespace. 

Managing Agents via UI

You have full control over your deployed agents directly from your workspace dashboard:

  • Add an Agent:From the Ennote Cloud UI, you can add a new agent and specify a custom name to identify it within your cluster. This will generate a short-lived bootstrap token for deployment. 
    Add an Agent:

  • Monitor Status:Once connected, the UI displays real-time telemetry, allowing you to see the specific pod name and the current agent version running in your cluster. 
    Monitor Status:

  • Revoke Access:If an agent is compromised or no longer needed, you can instantly revoke the agent from the UI, severing its connection to the Ennote Cloud. 

Need Help?

If you encounter any issues or have questions, don’t hesitate to contact support. Our team is here to assist you with any challenges you might face.

Was this page helpful?

© 2026 Ennote.io. All Rights Reserved.