Home > Supported Replication Data Types (Private Preview)

Download this article

Supported Replication Data Types (Private Preview)

Microsoft Azure

Application gateway

ClassificationPropertiesSupported
Access control(IAM)Access control(IAM)No
TagTagYes
ConfigurationTier – Standard V2/Basic/WAF V2Yes
ConfigurationCapacity type- AutoscaleYes
ConfigurationCapacity type- ManualYes
ConfigurationMinimum instance countYes
ConfigurationMaximum instance countYes
ConfigurationHTTP/2-disbaledYes
ConfigurationHTTP/2-enabledYes
ConfigurationFIPS (Federal Information Processing Standard) mode 140-2(disabled)Yes
ConfigurationFIPS (Federal Information Processing Standard) mode 140-2(enabled)No
Web application firewallWAF Policy(need WAF V2 tier)Yes
Backend poolscheck add a poolYes
Backend settingscheck add a settingYes
Frontend IP configurationsPublic typeYes
Frontend IP configurationsPrivate typeYes
Private linkcheck add a configurationYes
JWT validation configurations (Preview)check add a profileYes
Listenersadd ListenersYes
Listenersadd Listener TLS certificatesNo
Ruleadd a routing ruleYes
Rewritesadd a rewritesYes
Health probescheck add a profileYes
LockNo

Azure Kubernetes service

Property CategoryPropertiesValueSupported
BasicSubscriptionYes
BasicResource groupYes
BasicPower stateRunningYes
BasicPower stateStoppedNo
BasicCluster preset configurationYes
BasicKubernetes cluster nameYes
BasicRegionYes
BasicFleet ManagerNo
BasicAvailability zonesYes
BasicAKS pricing tierYes
BasicEnable long-term supportYes
BasicKubernetes versionYes
BasicAutomatic upgradeYes
BasicAutomatic upgrade schedulerYes
BasicNode security channel typeYes
BasicSecurity channel schedulerYes
BasicAuthentication and AuthorizationYes
Node poolsNode auto provisioningYes
Node poolsEnable virtual nodesNo
Node poolsEncryption typeYes
Node poolsNode pool nameYes
Node poolsModeYes
Node poolsOS SKUYes
Node poolsAvailability zonesYes
Node poolsEnable Azure Spot instancesYes
Node poolsNode sizeYes
Node poolsScale methodYes
Node poolsNode countYes
Node poolsMax pods per nodeYes
Node poolsEnable public IP per nodeYes
Node poolsLabelsYes
Node poolsTaintsYes
NetworkingEnable private clusterNo
NetworkingSet authorized IP rangesYes
NetworkingNetwork configurationYes
NetworkingBring your own Azure virtual networkYes
NetworkingDNS name prefixYes
NetworkingEnable Cilium dataplane and network policyYes
NetworkingNetwork policyYes
NetworkingLoad balancerYes
IntegrationContainer registryNo
IntegrationService mesh - IstioYes
IntegrationAzure PolicyNo
MonitoringEnable Container LogsNo
MonitoringLog Analytics workspaceNo
MonitoringManaged PrometheusNo
MonitoringEnable Prometheus metricsNo
MonitoringAzure Monitor workspaceYes
MonitoringEnable GrafanaYes
MonitoringGrafana workspaceYes
MonitoringEnable recommended alert rulesYes
MonitoringAlert rulesYes
SecurityEnable OIDCYes
SecurityEnable Workload IdentityYes
SecurityEnable Image CleanerYes
SecurityEnable secret store CSI driverYes
Name SpaceName SpaceYes
StoragePersistent volume claimsYes
StoragePersistent volumesYes
StorageStorage classesYes
ConfigurationConfig mapsYes
ConfigurationSecretsYes
AdvanceInfrastructure resource groupNo
TagTagYes
SettingGitOpsNo
SettingBackupNo
SettingService ConnectorNo
SettingPolicyNo
SettingApplication scalingNo
SettingExtensions + applicationsNo
SettingOpen Service MeshNo

Container registry

ClassificationPropertiesSupported
TagTagYes
EncryptionIdentityYes
EncryptionKey URLYes
EncryptionVersionYes
IdentitySystem assignedYes
IdentityUser assignedYes
Networkingvirtual networkYes
NetworkingNAT gatewaysYes
NetworkingRoute tablesYes
NetworkingNetwork security groupsYes
NetworkingApplication security groupsYes
NetworkingPublic addressesYes
NetworkingPublic IP prefixesYes
NetworkingPrivate DNS zonesYes
NetworkingPrivate linksYes
Access keysAdmin user SettingsYes
PropertiesAdmin user SettingsYes
PropertiesPricing planYes
PropertiesSoft deleteNo
PropertiesRole assignment permissions modeYes
ServicesGeo-replicationsYes
ServicesConnected registriesYes
ServicesCacheYes
Repository permissionTokenYes
Repository permissionScope mapsYes
policiesRetentionYes
policiesContent trustYes

MySQL flexible server

ClassificationPropertiesValueSupported
BasicSubscriptionYes
BasicResource groupYes
BasicServer nameYes
BasicRegionYes
BasicMysql versionYes
BasicCompute + storageBurstable (1-20 vCores) - Best for workloads that don't need the full CPU continuouslyNo
BasicCompute + storageGeneral Purpose (2-96 vCores) - Balanced configuration for most common workloadsYes
BasicCompute + storageBusiness Critical (2-96 vCores) - Best for Tier 1 workloads that require optimized performanceYes
BasicCompute processorYes
BasicCompute sizeYes
BasicEnable high availabilityYes
BasicStorage size (GiB)Yes
BasicIOPSYes
BasicAccelerated LogsYes
BasicStorage autogrowYes
BasicBackupsZone redundantYes
BasicBackupsGeo-RedundantYes
BasicAvailability zoneYes
BasicAuthentication methodYes
NetworkingPublic access (allowed IP addresses) and Private endpointYes
NetworkingPrivate access (VNet Integration)Yes
NetworkingPublic accessYes
NetworkingFirewall rulesYes
NetworkingPrivate endpointsYes
SecurityService-managed keyService-managed keyYes
SecurityCustomer-managed keyCustomer-managed keyYes
SecurityMicrosoft Defender for CloudNo
TagsTagsYes
SettingsServer parametersYes
SettingsReplicationNo
AutomationNo
Microsoft Defender for CloudNo

PostgreSQL flexible server

ClassificationPropertiesValueSupported
BasicSame subscriptionYes
BasicServer nameYes
BasicSame regionYes
BasicSame resource groupYes
BasicPostgreSQL versionYes
BasicCluster optionsServerYes
BasicCluster optionsElastic cluster (preview)No
BasicCompute tierBurstable (1-20 vCores) - Best for workloads that don't need the full CPU continuouslyNo
BasicCompute tierGeneral Purpose (2-96 vCores) - Balanced configuration for most common workloadsYes
BasicCompute tierMemory Optimized (2-96 vCores) - Best for workloads that require a high memory to CPU ratioYes
BasicCompute processorYes
BasicCompute sizeYes
BasicStorage typeYes
BasicStorage sizeYes
BasicPerformance tierYes
BasicStorage autogrowYes
BasicHigh availabilityDisabled (99.9% SLA)Yes
BasicHigh availabilitySame zone - a standby server is available within the same zone (99.95% SLA). Provides lower transactional latency than zone-redundant.Yes
BasicHigh availabilityZone redundant - a standby server is available in a different zone within the same region. Provides the best availability (99.99% SLA).Yes
BasicBackupsZone redundantYes
BasicBackupsGeo-RedundantYes
BasicAvailability zoneYes
BasicAuthentication methodYes
NetworkingPublic access (allowed IP addresses) and Private endpointYes
NetworkingPrivate access (VNet Integration)Yes
NetworkingNAT gatewaysYes
NetworkingRoute tableYes
NetworkingPublic accessYes
Networkingnetwork security groupYes
NetworkingApplication security groupYes
NetworkingPublic IP addressYes
NetworkingPublic IP prefixYes
NetworkingFirewall rulesYes
NetworkingPrivate endpointsSubscriptionYes
NetworkingPrivate endpointsResource groupYes
NetworkingPrivate endpointsLocationYes
NetworkingPrivate endpointsNameYes
NetworkingPrivate endpointsTarget sub-resourceYes
NetworkingPrivate endpointsVirtual networkYes
NetworkingPrivate endpointsSubnetYes
NetworkingPrivate endpointsIntegrate with private DNS zoneYes
NetworkingPrivate endpointsPrivate DNS ZoneYes
Virtual endpointNo
Security
Service-managed key
Service-managed keyYes
SecurityCustomer-managed keyCustomer-managed keyYes
SecurityMicrosoft Defender for CloudNo
TagsTagsYes
SettingsServer parametersYes
SettingsReplicationNo
AutomationNo

Redis

ClassificationPropertiesSupported
Performance tierData tierYes
Performance tierCache sizeYes
Performance tierPerformanceYes
Performance tierSizeYes
Advanced settingsHigh availabilityYes
Advanced settingsRedis versionYes
Advanced settingsClustering PolicyYes
Advanced settingsCustomer-managed keyYes
Active geo-replicationMethodYes
Active geo-replicationGroup NameNo
Active geo-replicationLinked DatabaseNo
TagsTagsYes
NetworkingPublic network accessYes
NetworkingPrivate EndpointYes

Service Bus

ClassificationPropertiesValueSupported
Access Control(IAM)Access Control(IAM)No
TagTagYes
Geo-replicationGeo-replicationYes
Shared access policiesShared access policiesYes
ScaleManual scaleYes
ScaleCustom autoscaleYes
Networkingpublic network accesDisableYes
Networkingpublic network accesSelected networksYes
Networkingall networksYes
EncryptionMicrosoft-managed keyYes
EncryptionCustomer-managed keyYes
IdentitySystem assigned StatusOnYes
IdentitySystem assigned StatusOffYes
IdentityUser assignedYes
ConfigurationSecurityYes
LocksLocksNo
EntitiesQueuesYes
EntitiesTopicYes

SQL database

ClassificationPropertiesSupported
BasicSubscriptionYes
BasicResource groupNo
BasicDatabase nameYes
BasicServer nameYes
BasicLocationYes
BasicSQL Elastic poolYes
BasicPricing tierYes
BasicBackup storage redundancyYes
BasicConnection stringYes
BasicAuthentication methodYes
BasicSet Microsoft Entra adminYes
NetworkFirewall rulesYes
NetworkPrivate accessYes
NetworkPublic accessYes
NetworkConnection policyYes
NetworkEncrypted connectionsYes
SecurityMicrosoft defender for SQLNo
SecurityLedgerYes
SecurityIdentityYes
SecurityTransparent data encryptionYes
SecurityAuditingNo
Additional settingsDatabase collationYes
Additional settingsMaintenance windowYes
TagsTagsYes
Compute + storageService tierYes
Compute + storageCompute tierYes
Compute + storageDTUsYes
Compute + storageMax storageYes
BackupsDifferential backup frequencyYes
BackupsPITR retentionYes
BackupsRetention policyYes

Storage account

Property CategoryPropertiesValueSupported
Data storageContainersYes
Data storageFile sharesNo
Data storageQueuesNo
Data storageTablesNo
BasicSubscriptionYes
BasicResource GroupYes
BasicStorage account nameYes
BasicRegionYes
BasicPrimary ServiceYes
BasicPerformanceStandardYes
BasicPerformancePremiumYes
BasicPremium account typeBlock blobsYes
BasicPremium account typeFile sharesNo
BasicPremium account typePage BlobsNo
BasicRedundancyYes
NetworkingPublic accessYes
NetworkingVirtual networksYes
NetworkingPrivate endpointNo
NetworkingNetwork routingYes
NetworkingCustom domainNo
Data protectionRecoveryAzure Backup for blobsNo
Data protectionRecoveryPoint-in-time restore for containersYes
Data protectionRecoverySoft delete for blobsYes
Data protectionRecoverySoft delete for containersYes
Data protectionRecoveryPermanent delete for soft deleted itemsYes
Data protectionTrackingYes
Data protectionAccess controlYes
Data managementBlob inventoryNo
Data managementLifecycle ManagementYes
Encryption typeMicrosoft-managed keysYes
Encryption typeCustomer-managed keysUser-assignedYes
Encryption typeCustomer-managed keysSystem-assignedNo
EncryptionEnable support for customer-managed keysYes
EncryptionInfrastructure encryptionYes
TagsTagsYes
SettingsConfigurationYes
SettingsResource SharingBlob serviceYes
SettingsResource SharingFile serviceNo
SettingsResource SharingQueue serviceNo
SettingsResource SharingTable serviceNo

Virtual machine

Property CategoryPropertiesValueSupported
BasicSubscriptionYes
BasicVirtual machine nameYes
BasicRegionYes
BasicAvailability zoneYes
BasicZone optionsSelf-selected zoneYes
BasicAvailability setYes
BasicSecurity typeStandardYes
BasicSecurity typeTrusted launch virtual machinesYes
BasicImageYes
BasicVM architectureYes
BasicRun with Azure Spot discountYes
BasicEviction typeYes
BasicEviction policyYes
BasicMaximum price you want to pay per hourYes
BasicSizeYes
BasicEnable HibernationYes
BasicAuthentication typeYes
BasicAdministrator accountYes
BasicInbound port rulesYes
BasicLicensingYes
DiskEncryption at hostYes
DiskOS disk sizeYes
DiskOS disk typeYes
DiskDelete with VMYes
DiskKey managementPlatform-managed keyYes
DiskKey managementCustom-managed keyYes
DiskKey managementPlatform-managed and custom managedYes
DiskEnable Ultra Disk compatibilityYes
DiskData disksYes
DiskUse managed disksYes
DiskEphemeral OS diskOS cache placementYes
DiskEphemeral OS diskTemp disk placementYes
NetworkingVirtual networkYes
NetworkingPublic IPYes
NetworkingPrivate IP addressYes
NetworkingNIC network security groupYes
NetworkingInbound port rulesYes
NetworkingOutbound port rulesYes
NetworkingDelete public IP and NIC when VM is deletedYes
NetworkingAccelerated networkingYes
NetworkingAzure load balancerYes
NetworkingApplication security groupYes
ManagementIdentityYes
ManagementMicrosoft Entra IDYes
MonitoringBoot diagnosticsEnable with managed storage accountYes
MonitoringBoot diagnosticsEnable with custom storage accountYes
AdvancedCustom dataYes
AdvancedUser dataYes
SecuritySecurity typeYes
SecurityEnable secure bootYes
SecurityEnable vTPMYes
TagsYes

Virtual machine scale set

Property CategoryPropertiesValueSupported
BasicSubscriptionYes
BasicVMSS nameYes
BasicRegionYes
BasicAvailability zoneYes
BasicOrchestration modeYes
BasicSecurity typeYes
BasicScaling modeYes
BasicInstance countYes
BasicScaling configuration_Scaling conditionsYes
BasicScaling configuration_Predictive autoscalingYes
BasicScaling configuration_Scale-In policyYes
BasicScaling configuration_Apply force delete to scale-in operationsYes
BasicImageYes
BasicVM architectureYes
BasicSizeYes
BasicHibernationYes
BasicAuthentication typeYes
BasicLicensingYes
SpotTurn off SpotYes
SpotTurn on SpotYes
SpotEviction typeYes
SpotMaximum price you want to pay per hourYes
SpotEviction policyYes
SpotTry to restore instancesYes
SpotRestore timeoutYes
SpotScale with VMs and Spot VMsYes
SpotBase VM (uninterruptible) countYes
SpotInstance distributionYes
DisksEncryption at hostYes
DisksOS disk sizeYes
DisksOS disk typeYes
DisksKey managementYes
DisksUltra Disk compatibilityYes
DisksData disks_Key managementYes
DisksUse managed disksEnableYes
DisksEphemeral OS diskNoneYes
DisksEphemeral OS diskEphemeral OS disk_OS cache placementYes
DisksEphemeral OS diskEphemeral OS disk_Temp disk placementYes
NetworkingVirtual networkYes
NetworkingSubnetYes
NetworkingNetwork interfaceYes
NetworkingApplication security groupYes
NetworkingLoad balancingNoneYes
NetworkingLoad balancingAzure load balancerYes
ManagementUpgrade modeYes
ManagementBoot diagnostics_Enable with managed storage account (recommended)Yes
ManagementBoot diagnostics_Enable with custom storage accountYes
ManagementBoot diagnostics_DisableYes
ManagementNotifications for instance terminationYes
ManagementNotifications for OS image upgrades or re-imageYes
ManagementSystem assigned managed identityYes
ManagementLogin with Microsoft Entra IDYes
ManagementUser assigned identityYes
ManagementOverprovisioningYes
ManagementAutomatic OS upgradesYes
ManagementEnable hotpatchYes
ManagementPatch orchestration optionsYes
HealthAutomatic instance repairsYes
HealthRepair actionsYes
HealthGrace period (min)Yes
AdvancedScaling beyond 100 instancesYes
AdvancedForce strictly even balance across zonesYes
AdvancedSpreading algorithm_Max spreadingYes
AdvancedUser dataYes
TagsTag Name + Tag valueYes
VMSS_overviewOperating systemYes
VMSS_overviewPrimary NIC public IP addressYes
VMSS_overviewFault domain countYes
VMSS_overviewBase VM countYes
VMSS_overviewSingle placement groupFALSEYes
VMSS_overviewPower stateYes
VMSS_overviewPublic IP addressYes
VMSS_overviewSource image detailsYes
VMSS_InstanceNameYes
VMSS_InstanceComputer nameYes
VMSS_InstanceStatusYes
VMSS_InstanceTypeYes
VMSS_InstanceProvisioning stateYes
VMSS_InstanceSizeYes
VMSS_NetworkingNetwork security groupYes
VMSS_NetworkingAccelerated networkingYes
VMSS_NetworkingInbound port rulesYes
VMSS_NetworkingOutbound port rulesYes
VMSS_security typeSecure bootYes
VMSS_security typevTPMYes
VMSS_security typeIntegrity monitoringYes

Web app

Property CategoryPropertiesValueSupported
Web App typeWeb APPYes
Web App typeStatic Web AppNo
Web App typeWeb App + DatabaseNo
Web App typeWordPress on App ServiceNo
BasicSubscriptionYes
BasicResource groupNo
BasicNameYes
BasicPublishCodeNo
BasicPublishContainerYes
BasicRegionYes
DatabaseCreate a DatabaseYes
DatabaseDisable creating a databaseYes
TagTagYes
EventsEventsNo
DeploymentDeployment slotsNo
Deployment CenterSourceContainer RegistryYes
Deployment CenterSourceGitHub ActionNo
Deployment CenterSourceAzure PipelinesNo
NetworkingVirtual NetworkYes
NetworkingPublic accessYes
NetworkingNAT gatewaysYes
NetworkingNetwork security groupsYes
NetworkingPrivate dns zonesYes
NetworkingPrivate LinkYes
NetworkingPrivate EndpointsYes
NetworkingAzure Front DoorNo
NetworkingHybrid connectionsNo
NetworkingInbound addressesYes
NetworkingOutbound subnetYes
ConfigurationSCM Basic Auth Publishing CredentialsYes
ConfigurationFTP Basic Auth Publishing CredentialsYes
ConfigurationFTP stateYes
ConfigurationHTTP versionYes
ConfigurationHTTP 2.0 Proxy_offoffYes
ConfigurationHTTP 2.0 Proxy_offOnYes
ConfigurationHTTP 2.0 Proxy_offgRPC OnlyNo
ConfigurationSSHOnYes
ConfigurationSSHOffNo
ConfigurationAlways onYes
ConfigurationSession affinityYes
ConfigurationSession affinity proxyYes
ConfigurationHTTPS OnlyYes
ConfigurationMinimum Inbound TLS VersionYes
ConfigurationClient certificate modeYes
ConfigurationCertificate exclusion pathsYes
ConfigurationMount StorageNo
SettingsEnvironment variablesYes
SettingsIdentityYes
SettingsAuthenticationNo
SettingsEventsNo
SettingsBackupNo
SettingsCustom DomainsNo
SettingsCertificatesNo
SettingsWeb JobsNo
SettingsService ConnectorNo
SettingsLocksNo
Monitor+secureApplication InsightsDisableYes
Monitor+secureApplication InsightsEnableNo
Monitor+secureDefender for App ServiceDisableYes
Monitor+secureDefender for App ServiceEnableNo
Monitor+secureHealth checkHealth checkYes
Monitor+secureHealth checkInstanceNo
PerformanceLoad TestingNo
App Service planNameYes
App Service planResource GroupYes
App Service planLocationYes
App Service planPricing planYes
App Service planInstance CountYes
App Service planApp(s)/SlotsNo
App Service planOperating SystemYes
App Service planZone redundantYes
APIAPI ManagementYes
APIAPI definitionYes
APICORSYes
AutomationTasksNo
AutomationExport templateYes

Amazon Web Services

Aurora and RDS database

Aurora MySQL

Property CategoryPropertiesValueSupported
Engine optionsEngine version Yes
Engine optionsEnable RDS Extended Support Yes
TemplatesProduction Yes
TemplatesDev/Test Yes
SettingsDB cluster identifier Yes
SettingsMaster username Yes
SettingsCredentials managementManaged in AWS Secrets ManagerNo
SettingsCredentials managementSelf managedYes
Cluster storage configurationConfiguration optionsAurora I/O-OptimizedYes
Cluster storage configurationConfiguration optionsAurora StandardYes
Instance configurationDB instance classServerless v2Yes
Instance configurationDB instance classMemory optimized classes (includes r classes)Yes
Instance configurationDB instance classBurstable classes (includes t classes)Yes
Instance configurationCapacity rangeMinimum capacity (ACUs)Yes
Instance configurationCapacity rangeMaximum capacity (ACUs)Yes
Instance configurationPause after inactivity Yes
Availability & durabilityMulti-AZ deploymentCreate an Aurora Replica or Reader node in a different AZ (recommended for scaled availability)Yes
Availability & durabilityMulti-AZ deploymentDon't create an Aurora ReplicaYes
ConnectivityCompute resourceConnect EC2No
ConnectivityCompute resourceDon't connect EC2Yes
ConnectivityVirtual private cloud (VPC) Yes
ConnectivityDB subnet group Yes
ConnectivityPublic accessYesYes
ConnectivityPublic accessNoYes
ConnectivityVPC security group (firewall) Yes
ConnectivityRDS Proxy No
ConnectivityCertificate authority - optional Yes
ConnectivityRDS Data API Yes
ConnectivityDatabase port Yes
Read replica write forwardingTurn on local write forwarding Yes
Tags  Yes
Database authenticationIAM database authentication Yes
Database authenticationKerberos authentication No
MonitoringDatabase InsightsAdvancedYes
MonitoringDatabase InsightsStandardYes
MonitoringPerformance InsightsEnableYes
MonitoringPerformance InsightsDisableYes
MonitoringRetention period Yes
MonitoringAWS KMS keyCustomYes
MonitoringAWS KMS keyDefaultYes
MonitoringEnhanced MonitoringEnableYes
MonitoringEnhanced MonitoringDisableYes
MonitoringOS metrics granularity Yes
MonitoringMonitoring role for OS metrics Yes
MonitoringLog exportsAudit logYes
MonitoringLog exportsError logYes
MonitoringLog exportsGeneral logYes
MonitoringLog exportsiam-db-auth-error logYes
MonitoringLog exportsinstance logYes
MonitoringLog exportsSlow query logYes
MonitoringIAM role Yes
Additional configuration_Database optionsInitial database name Yes
Additional configuration_Database optionsDB cluster parameter group Yes
Additional configuration_Database optionsDB parameter group Yes
Additional configuration_Database optionsOption group Yes
Additional configuration_Database optionsFailover priority Yes
Additional configuration_BackupBackup retention period Yes
Additional configuration_BackupCopy tags to snapshots Yes
Additional configuration_BackupEnable encryptionDisableYes
Additional configuration_BackupEnable encryptionEnableYes
Additional configuration_BackupAWS KMS keyDefaultYes
Additional configuration_BackupAWS KMS keyCustomYes
Additional configuration_BacktrackBacktrackEnableYes
Additional configuration_BacktrackBacktrackDisableYes
Additional configuration_BacktrackTarget Backtrack window Yes
Additional configuration_MaintenanceAuto minor version upgradeEnableYes
Additional configuration_MaintenanceAuto minor version upgradeDisableYes
Additional configuration_MaintenanceMaintenance window Yes
Additional configuration_MaintenanceDeletion protectionEnableYes
Additional configuration_MaintenanceDeletion protectionDisableYes
Cluster_Connectivity & securityEndpoints Yes
Cluster_Connectivity & securityCustom endpoints Yes
Cluster_Connectivity & securityManage IAM rolesIAM rolesYes
Cluster_Connectivity & securityManage IAM rolesService to connect to this clusterNo
Cluster_Connectivity & securityShare DB cluster with other AWS accounts No
Cluster_Connectivity & securityProxies No
Cluster_MonitoringCloudWatch No
Cluster_Logs&EventsAuto scaling policies No
Cluster_Logs&EventsAuto scaling activities No
Cluster_ConfigurationDB cluster role Yes
Cluster_ConfigurationResource ID Yes
Cluster_ConfigurationAmazon Resource Name (ARN) Yes
Cluster_ConfigurationCapacity type Yes
Cluster_ConfigurationDB cluster ID Yes
Cluster_ConfigurationLimitless Database No
Cluster_ConfigurationDatabase activity stream Yes
Cluster_ConfigurationKMS keyDefaultYes
Cluster_ConfigurationKMS keyCustomYes
Cluster_Zero-ETL integrationsZero-ETL integrations No
Cluster_Maintenance&BackupsMaintenance window Yes
Cluster_Maintenance&BackupsPending maintenance Yes
Cluster_Maintenance&BackupsPending modifications Yes
Cluster_Maintenance&BackupsSnapshots No
Cluster_Maintenance&BackupsExports In Amazon S3 No
Cluster_Data migrationsAssociated data migrations No
Cluster_RecommendationsRecommendations No
Instance_Connectivity & securityEndpoint Yes
Instance_Connectivity & securityPort Yes
Instance_Connectivity & securityAvailability Zone Yes
Instance_Connectivity & securityVPC Yes
Instance_Connectivity & securitySubnet group Yes
Instance_Connectivity & securitySubnets Yes
Instance_Connectivity & securityNetwork typeIPV4Yes
Instance_Connectivity & securityNetwork typeDual-stack modeYes
Instance_Connectivity & securityVPC security groups Yes
Instance_Connectivity & securityPublicly accessible Yes
Instance_Connectivity & securityCertificate authority Yes
Instance_Connectivity & securityCertificate authority date No
Instance_Connectivity & securityDB instance certificate expiration date No
Instance_Connectivity & securitySecurity group rules Yes
Instance_MonitoringCloudWatch No
Instance_Logs&EventsCloudWatch alarms No
Instance_Logs&EventsLogs No
Instance_ConfigurationDB instance ID Yes
Instance_ConfigurationAmazon Resource Name (ARN) Yes
Instance_ConfigurationResource ID Yes
Instance_ConfigurationArchitecture settings Yes
Instance_ConfigurationDevOps Guru No
Instance_Maintenance&BackupsMaintenance window Yes
Instance_Maintenance&BackupsPending maintenance Yes
Instance_Maintenance&BackupsPending modifications Yes
Instance_Tags  Yes
Instance_Recommendations  No

Aurora PostgreSQL

Property CategoryPropertiesValueSupported
Special engineAurora Limitless DatabaseNo
Engine optionsEngine version Yes
Engine optionsEnable RDS Extended Support Yes
TemplatesProduction Yes
TemplatesDev/Test Yes
SettingsDB cluster identifier Yes
SettingsMaster username Yes
SettingsCredentials managementManaged in AWS Secrets ManagerNo
SettingsCredentials managementSelf managed-Auto generate passwordYes
SettingsCredentials managementSelf managed-Master passwordYes
Cluster storage configurationConfiguration optionsAurora I/O-OptimizedYes
Cluster storage configurationConfiguration optionsAurora StandardYes
Instance configurationDB instance classServerless v2Yes
Instance configurationDB instance classMemory optimized classes (includes r classes)Yes
Instance configurationDB instance classBurstable classes (includes t classes)Yes
Instance configurationDB instance classOptimized Reads classes - newYes
Instance configurationCapacity rangeMinimum capacity (ACUs)Yes
Instance configurationCapacity rangeMaximum capacity (ACUs)Yes
Instance configurationPause after inactivity Yes
Availability & durabilityMulti-AZ deploymentCreate an Aurora Replica or Reader node in a different AZ (recommended for scaled availability)Yes
Availability & durabilityMulti-AZ deploymentDon't create an Aurora ReplicaYes
ConnectivityCompute resourceConnect EC2No
ConnectivityCompute resourceDon't connect EC2Yes
ConnectivityNetwork typeIpv4Yes
ConnectivityNetwork typeDualYes
ConnectivityVirtual private cloud (VPC) Yes
ConnectivityDB subnet group Yes
ConnectivityPublic accessYesYes
ConnectivityPublic accessNoYes
ConnectivityVPC security group (firewall) Yes
ConnectivityRoute tablesYes
ConnectivityInternet gatewayYes
ConnectivityEgress-only internet gatewayYes
ConnectivityNetwork Access Control Lists (ACLs)Yes
ConnectivityDHCP options setsYes
ConnectivityNetwork address translation (NAT) gatewaysYes
ConnectivityRoute 53Yes
ConnectivityVPC endpointsYes
ConnectivityRDS Proxy No
ConnectivityCertificate authority - optional Yes
ConnectivityRDS Data API Yes
ConnectivityDatabase port Yes
Read replica write forwardingTurn on local write forwarding Yes
Tags  Yes
Database authenticationIAM database authentication Yes
Database authenticationKerberos authentication No
MonitoringDatabase InsightsAdvancedYes
MonitoringDatabase InsightsStandardYes
MonitoringPerformance InsightsEnableYes
MonitoringPerformance InsightsDisableYes
MonitoringRetention period Yes
MonitoringAWS KMS keyCustomYes
MonitoringAWS KMS keyDefaultYes
MonitoringEnhanced MonitoringEnableYes
MonitoringEnhanced MonitoringDisableYes
MonitoringOS metrics granularity Yes
MonitoringMonitoring role for OS metrics Yes
MonitoringLog exportsAudit logYes
MonitoringLog exportsError logYes
MonitoringLog exportsGeneral logYes
MonitoringLog exportsiam-db-auth-error logYes
MonitoringLog exportsinstance logYes
MonitoringLog exportsSlow query logYes
MonitoringIAM role No
MonitoringDevops GuruNo
Additional configuration_Database optionsInitial database name Yes
Additional configuration_Database optionsDB cluster parameter group Yes
Additional configuration_Database optionsDB (instance) parameter group Yes
Additional configuration_Database optionsOption group Yes
Additional configuration_Database optionsFailover priority Yes
Additional configuration_BackupBackup retention period Yes
Additional configuration_BackupCopy tags to snapshots Yes
Additional configuration_BackupEnable encryptionYes
Additional configuration_BackupAWS KMS keyDefaultYes
Additional configuration_BackupAWS KMS keyCustomYes
Additional configuration_MaintenanceAuto minor version upgradeYes
Additional configuration_MaintenanceMaintenance window Yes
Additional configuration_MaintenanceDeletion protectionYes
Cluster_Connectivity & securityEndpoints Yes
Cluster_Connectivity & securityCustom endpoints Yes
Cluster_Connectivity & securityManage IAM rolesIAM rolesYes
Cluster_Connectivity & securityManage IAM rolesService to connect to this clusterNo
Cluster_Connectivity & securityShare DB cluster with other AWS accounts No
Cluster_Connectivity & securityConnected compute resourcesNo
Cluster_Connectivity & securityProxies No
Cluster_Connectivity & securityRDS APIYes
Cluster_MonitoringCloudWatch No
Cluster_Logs&EventsAuto scaling policies No
Cluster_Logs&EventsAuto scaling activities No
Cluster_ConfigurationDB cluster role Yes
Cluster_ConfigurationResource ID No
Cluster_ConfigurationAmazon Resource Name (ARN) Yes
Cluster_ConfigurationBabelfish_Database migration modeYes
Cluster_ConfigurationBabelfish_Default collation localeYes
Cluster_ConfigurationBabelfish_Collation nameYes
Cluster_ConfigurationCapacity type Yes
Cluster_ConfigurationEncryption_KMS keyDefaultYes
Cluster_ConfigurationEncryption_KMS keyCustomYes
Cluster_ConfigurationDatabase activity stream Yes
Cluster_ConfigurationDatabase activity stream_KMS keyDefaultYes
Cluster_ConfigurationDatabase activity stream_KMS keyCustomYes
Cluster_Zero-ETL integrationsZero-ETL integrations No
Cluster_Maintenance&BackupsMaintenance window Yes
Cluster_Maintenance&BackupsPending maintenance Yes
Cluster_Maintenance&BackupsPending modifications No
Cluster_Maintenance&BackupsSnapshots No
Cluster_Maintenance&BackupsExports In Amazon S3 No
Cluster_Data migrationsAssociated data migrations No
Cluster_RecommendationsRecommendations No
Instance_Connectivity & securityEndpoint Yes
Instance_Connectivity & securityPortAurora PostgreSQL portYes
Instance_Connectivity & securityPortBabelfish TDS portYes
Instance_Connectivity & securityAvailability Zone Yes
Instance_Connectivity & securityVPC Yes
Instance_Connectivity & securitySubnet group Yes
Instance_Connectivity & securitySubnets Yes
Instance_Connectivity & securityNetwork typeIPV4Yes
Instance_Connectivity & securityNetwork typeDual-stack modeYes
Instance_Connectivity & securityVPC security groups Yes
Instance_Connectivity & securityPublicly accessible Yes
Instance_Connectivity & securityCertificate authority Yes
Instance_Connectivity & securityCertificate authority date No
Instance_Connectivity & securityDB instance certificate expiration date No
Instance_Connectivity & securitySecurity group rules Yes
Instance_MonitoringCloudWatch No
Instance_Logs&EventsCloudWatch alarms No
Instance_Logs&EventsLogs No
Instance_ConfigurationDB instance ID No
Instance_ConfigurationAmazon Resource Name (ARN) Yes
Instance_ConfigurationResource ID No
Instance_ConfigurationArchitecture settings No
Instance_ConfigurationDevOps Guru No
Instance_Maintenance&BackupsMaintenance window Yes
Instance_Maintenance&BackupsPending maintenance Yes
Instance_Maintenance&BackupsPending modifications Yes
Instance_Tags  Yes
Instance_Recommendations  No

RDS database - PostgreSQL

Property CategoryPropertiesValueSupported
Basic informationDeployment optionsMulti-AZ DB cluster deployment (3 instances)No
Basic informationCredentials managementManaged in AWS Secrets Manager - most secureNo
Basic informationCompute resourceConnect to an EC2 compute resourceNo
Basic informationCertificate authorityNo
Basic informationRDS ProxyNo
Basic informationDatabase authenticationPassword and Kerberos authenticationNo
Basic informationBackupBackup replicationNo
Basic informationDevops GuruNo

RDS database - MySQL

Property CategoryPropertiesValueSupported
Basic informationEngine versionYes
Basic informationEnable RDS Extended SupportYes
Basic informationDeployment optionsMulti-AZ DB instance deployment (2 instances)Yes
Basic informationDeployment optionsSingle-AZ DB instance deployment (1 instance)Yes
Basic informationDeployment optionsMulti-AZ DB cluster deployment (3 instances)No
Basic informationDB instance identifieYes
Basic informationMaster usernameYes
Basic informationCredentials managementManaged in AWS Secrets Manager - most secureNo
Basic informationCredentials managementSelf managedYes
Basic informationDB instance classYes
Basic informationStorageYes
Basic informationEnable storage autoscalingYes
Basic informationCompute resourceDon’t connect to an EC2 compute resourceYes
Basic informationCompute resourceConnect to an EC2 compute resourceNo
Basic informationVPCYes
Basic informationDB subnet groupYes
Basic informationPublic accessYes
Basic informationVPC security group (firewall)Yes
Basic informationCertificate authorityNo
Basic informationRDS ProxyNo
Basic informationDatabase portYes
Basic informationTagYes
Basic informationDatabase authenticationPassword authenticationYes
Basic informationDatabase authenticationPassword and IAM database authenticationYes
Basic informationDatabase authenticationPassword and Kerberos authenticationNo
Basic informationMonitoringYes
Basic informationMonitoringKMS keyYes
Basic informationIAM roleYes
Basic informationInitial database nameYes
Basic informationDB parameter groupsOld name + suffixYes
Basic informationOption groupOld name + suffixYes
Basic informationBackupYes
Basic informationBackupAWS KMS keyYes
Basic informationBackupBackup replicationNo
Basic informationMaintenanceYes
Basic informationEnable deletion protectionYes
NetworkingNetwork typeIPv4Yes
NetworkingNetwork typeDualYes
NetworkingAvailability ZoneYes

RDS database - SQL Server

Property CategoryPropertiesValueSupported
Database typeAmazon RDSYes
Database typeAmazon RDS CustomNo
DHCP options setsVPCYes
DHCP options setsSubnet groupYes
DHCP options setsNetwork typeYes
DHCP options setsVPC security groupsYes
DHCP options setsRoute tablesYes
DHCP options setsinternet gatewayYes
DHCP options setsEgress-only internet gatewayYes
DHCP options setsNetwork Access Control ListsYes
DHCP options setsDHCP options setsYes
DHCP options setsNetwork address translation (NAT) gatewaysYes
DHCP options setsRoute 53Yes
DHCP options setsVPC endpointsYes
DHCP options setsPublicly accessibleYes
DHCP options setsCertificate authorityNo
DHCP options setsEC2 connectionNo
DHCP options setsLambda functionNo
DHCP options setsProxiesNo
DHCP options setsSecurity group rulesYes
DHCP options setsReplicationNo
DHCP options setsIAM rolesYes
Logs&eventsCloudWatch alarmsNo
ConfigurationDB instance IDYes
ConfigurationEngine versionYes
ConfigurationDB nameNo
ConfigurationCollationNo
ConfigurationOption groupsYes
ConfigurationDB instance parameter groupYes
ConfigurationDeletion protectionYes
ConfigurationArchitecture settingsNo
ConfigurationInstance classYes
ConfigurationvCPUYes
ConfigurationRAMYes
ConfigurationCredentials managementManaged in AWS Secrets ManagerNo
ConfigurationCredentials managementSelf managedYes
ConfigurationMaster usernameYes
ConfigurationMaster passwordYes
ConfigurationMicrosoft SQL Server Windows AuthenticationNo
ConfigurationMulti-AZYes
ConfigurationAvalability zoneYes
ConfigurationDatabase portYes
ConfigurationEncryptionYes
ConfigurationStorage_AWS KMS keycustomYes
ConfigurationStorage_AWS KMS keydefaultYes
ConfigurationStorage typeYes
ConfigurationStorageYes
ConfigurationProvisioned IOPSYes
ConfigurationStorage throughputYes
ConfigurationStorage autoscalingYes
ConfigurationMaximum storage thresholdYes
ConfigurationMonitoring typeYes
ConfigurationPerformance InsightsYes
ConfigurationRetention periodYes
ConfigurationMonitoring _KMS keycustomYes
ConfigurationMonitoring _KMS keydefaultYes
ConfigurationEnhanced MonitoringYes
ConfigurationMonitoring roleYes
ConfigurationDevOps GuruNo
ConfigurationGranularityYes
ConfigurationDatabase activity streamYes
Maintainance & backupsAuto minor version upgradeYes
Maintainance & backupsMaintenance windowYes
Maintainance & backupsPending modificationsNo
Maintainance & backupsAutomated backupsYes
Maintainance & backupsCopy tags to snapshotsYes
Maintainance & backupsBackup windowYes
Maintainance & backupsSnapshotsNo
TagsYes

DynamoDB

Property CategoryPropertiesValueSupported
Table settingsTable nameYes
Table settingsPartition keyYes
Table settingsSort key - optionalYes
Table settingsTable classYes
Table settingsCapacity modeOn-demandYes
Table settingsCapacity modeProvisionedYes
Table settingsWarm throughputYes
Table settingsSecondary indexesYes
Table settingsEncryption at restAWS owned keyYes
Table settingsEncryption at restAWS managed keyYes
Table settingsEncryption at restCustomer managed keyYes
Table settingsDeletion protectionYes
Table settingsResource-based policyYes
Table settingsTagsYes
Table settingsMRSC global tableNo
Property after created DBPoint-in-time recovery (PITR)Yes
Property after created DBDynamoDB streamYes
Property after created DBTime to Live (TTLYes
Property after created DBDAXNo
Property after created DBBackupsNo
Property after created DBTriggerNo
Property after created DBAmazon Kinesis data streamNo
Property after created DBExports to S3No
Property after created DBResource-based policy for active streamNo
Property after created DBReplicasNo

EC2 instance

Property CategoryPropertiesValueSupported
Advanced network configurationInterface typeEFA with ENANo
Advanced network configurationInterface typeEFA onlyNo
Advanced network configurationNetwork card indexNo
Advanced network configurationENA ExpressNo
Advanced network configurationENA Express UDPNo
Advanced network configurationENA queuesNo
Configure storageVolume initialization rate - new, optionalNo
Configure storageFile systemsNo
Advanced detailsDomain join directoryNo
Advanced detailsStop - Hibernate behaviorEnableNo
Advanced detailsInstance bandwidth configurationDefaultNo
Advanced detailsInstance bandwidth configurationHigher networking bandwidthNo
Advanced detailsInstance bandwidth configurationHigher EBS bandwidthNo
Advanced detailsPurchasing option(Lifecycle)Spot instancesYes
Advanced detailsMaximum priceYes
Advanced detailsRequest typeOne-timeYes
Advanced detailsRequest typePersistentYes
Advanced detailsValid toYes
Advanced detailsRequest expiry dateYes
Advanced detailsInterruption behaviorHibernateYes
Advanced detailsInterruption behaviorStopYes
Advanced detailsInterruption behaviorTerminateYes
Advanced detailsCapacity reservationSpecified valueNo
Advanced detailsRAM disk IDNo
Advanced detailsKernel IDNo
Advanced detailsLicense configurationsNo
Instance_OverallInstance stateYes
Instance_OverallAWS Compute Optimizer findingNo
Instance_OverallAuto Scaling Group nameNo
Instance_OverallManagedTrueNo
Instance_OverallOperatorNo
Instance_detailsInstance reboot migrationDisableNo
Instance_detailsHost IDNo
Instance_detailsHost resource group nameNo
Instance_detailsVirtualization typepvNo
Instance_detailsAffinityNo
Instance_detailsReservationNo
Instance_detailsPartition numberNo
Instance_detailsCapacity Reservation IDNo
Instance_networkingCarrier IP addresses (ephemeral)No
Instance_networkingOutpost IDNo
Instance_networkingNetwork interfaceENA ExpressNo
Instance_networkingNetwork interfaceENA Express UDPNo

Elastic Beanstalk

Property CategoryPropertiesValueSupported
Configure environmentEnvironment tierYes
Configure environmentDomainYes
Configure environmentApplication nameYes
Configure environmentApplication tagsYes
Configure environmentEnvironment nameYes
Configure environmentEnvironment descriptionYes
Configure environmentPlatformDockerYes
Configure environmentPlatform branchYes
Configure environmentPlatform versionYes
Configure environmentApplication codeYes
Configure environmentPresetsYes
Service accessService roleYes
Service accessEC2 instance profileYes
Service accessEC2 key pairYes
Modify workerWorker queue (SQS)StandardYes
Modify workerWorker queue (SQS)FIFONo
Modify workerHTTP pathYes
Modify workerMIME typeYes
Modify workerHTTP connectionsYes
Modify workerVisibility timeoutYes
Modify workerError visibility timeoutYes
Modify workerMax retriesYes
Modify workerConnection timeoutYes
Modify workerInactivity timeoutYes
Modify workerRetention periodYes
NetworkingVPCYes
NetworkingPublic IP addressYes
NetworkingInstance subnetYes
DatabaseDatabaseNo
TagsTagsYes
Instance traffic and scalingRoot volume typeYes
Instance traffic and scalingAmazon CloudWatch monitoringYes
Instance traffic and scalingInstance metadata serviceYes
Instance traffic and scalingEC2 security groupYes
Instance traffic and scalingEnvironment typeSingle instanceYes
Instance traffic and scalingEnvironment typeLoad balancedNo
Instance traffic and scalingFleet compositionYes
Instance traffic and scalingArchitectureYes
Instance traffic and scalingInstance typesYes
Instance traffic and scalingAMI IDYes
Instance traffic and scalingAvailability ZonesYes
Instance traffic and scalingPlacementYes
Instance traffic and scalingScaling triggersYes
Instance traffic and scalingLoad balancer typesYes
Configure updates, monitoring and loggingHealth reportingYes
Configure updates, monitoring and loggingHealth monitoring rule customizationYes
Configure updates, monitoring and loggingHealth event streaming to CloudWatch LogsYes
Configure updates, monitoring and loggingManaged platform updatesYes
Configure updates, monitoring and loggingEmail notificationsYes
Configure updates, monitoring and loggingRolling updates and deploymentsYes
Configure updates, monitoring and loggingPlatform softwareYes

Elastic Kubernetes Service

Property CategoryPropertiesValueSupported
Configuration optionsQuick configuration (with EKS Auto Mode)Yes
Configuration optionsCustom configurationYes
Cluster configurationNameYes
Cluster configurationKubernetes versionYes
Cluster configurationCluster IAM roleYes
Cluster configurationNode IAM roleYes
Cluster configurationVPCYes
Cluster configurationSubnetsYes
Cluster infoStatusYes
Cluster infoSupport periodYes
Cluster infoProviderYes
Cluster infoCluster healthNo
Cluster infoUpgrade insightsNo
Cluster infoNode health issuesNo
OverviewAPI server endpointNo
OverviewCertificate authorityNo
OverviewOpenID Connect provider URLNo
OverviewCluster IAM role ARNYes
OverviewCluster ARNYes
OverviewPlatform versionYes
OverviewEKS Auto ModeYes
OverviewNode IAM roleYes
OverviewUpgrade policyYes
OverviewARC Zonal shiftYes
OverviewEncryption keyAWS ownedYes
OverviewEncryption keyCustom managedYes
OverviewKMS key IDYes
ResourceWorkloadsNo
ResourceClusterNodesNo
ResourceClusterNamespacesYes
ResourceClusterAPIServicesNo
ResourceClusterLeasesNo
ResourceClusterRuntimeClassesNo
ResourceClusterFlowSchemasNo
ResourceClusterPriorityLevelConfigurationsNo
ResourceService and networkingNo
ResourceConfig and secretsConfigMapsYes
ResourceConfig and secretsSecretsYes
ResourceStoragePersistentVolumeClaims(PVC)Yes
ResourceStoragePersistentVolumes(PV)Yes
ResourceStorageStorageClassesNo
ResourceStorageVolumeAttachmentNo
ResourceStorageCSIDriversNo
ResourceStorageCSINodesNo
ResourceStorageCSIStorageCapacitiesNo
ResourceAuthenticationNo
ResourceAuthorizationNo
ResourcePolicyNo
ResourceExtensionsNo
ComputeNodesNo
ComputeBuilt-in node poolsYes
ComputeNode groupsNo
ComputeFargate profilesNo
NetworkingVPCYes
NetworkingCluster IP address family & Service IP rangeIPv4Yes
NetworkingCluster IP address family & Service IP rangeIPv6No
NetworkingSubnetsYes
NetworkingCluster security groupYes
NetworkingAdditional security groupsYes
NetworkingAPI server endpoint accessPublic and privateYes
NetworkingAPI server endpoint accessPublicYes
NetworkingAPI server endpoint accessPrivateNo
NetworkingRemote node networksNo
NetworkingRemote pod networksNo
NetworkingPublic access source allowlistYes
Add-onsYes
AccessAuthentication modeEKS APIYes
AccessAuthentication modeEKS API and ConfigMapNo
AccessIAM access entriesStandardYes
AccessIAM access entriesEC2No
AccessIAM access entriesEC2 LinuxNo
AccessIAM access entriesEC2 WindowsNo
AccessIAM access entriesFargate LinuXNo
AccessIAM access entriesHybrid LinuxNo
AccessIAM access entriesHyperPod LinuxNo
AccessPod Identity associationsYes
AccessOIDC identity providersYes
ObservabilityScrapersNo
ObservabilityCloudWatchNo
ObservabilityControl plane logsNo
Update historyNo
TagsYes
DeployDeploy applicationYes
Configuration optionsCustom configurationYes
Cluster configurationNameYes
Cluster configurationCluster IAM roleYes
Cluster configurationKubernetes versionYes
Cluster configurationUpgrade policyYes
Cluster configurationCluster accessYes
Cluster configurationCluster authentication modeYes
Cluster configurationEnvelope encryptionAWS DefaultYes
Cluster configurationEnvelope encryptionUse your own AWS KMS keyYes
Cluster configurationARC Zonal shiftYes
Cluster configurationTagsYes
NetworkingVPCYes
NetworkingSubnetsYes

S3 bucket

ClassificationPropertiesValueSupported
ObjectObject overviewYes
ObjectObject management overviewYes
ObjectStorage classStandardYes
ObjectStorage classIntelligent-TieringYes
ObjectStorage classStandard-IAYes
ObjectStorage classOne Zone-IAYes
ObjectStorage classGlacier instant retrievalYes
ObjectStorage classGlacier flexible retrievalNo
ObjectStorage classGlacier deep archiveNo
ObjectStorage classReduced redundancyYes
ObjectServer-side encryption settingsYes
ObjectChecksumsYes
ObjectTagsYes
ObjectMetadataYes
ObjectObject lockYes
PropertiesBucket overviewYes
PropertiesBucket versioningYes
PropertiesTagsYes
PropertiesDefault encryptionYes
PropertiesIntelligent-Tiering Archive configurationsNo
PropertiesServer access loggingNo
PropertiesAmazon EventBridgeNo
PropertiesTransfer accelerationYes
PropertiesObject lockYes
PropertiesRequester paysNo
PropertiesStatic website hostingYes
PermissionsPermissions overviewYes
PermissionsBlock public accessYes
PermissionsBucket policyYes
PermissionsObject ownershipYes
PermissionsAccess control listNo
PermissionsCross-origin resource sharingYes
MetricsStorage class analysisNo
ManagementLifecycle configurationYes
ManagementReplication rulesYes
ManagementInventory configurationsNo
Access pointPropertiesYes
Access pointPermissionsYes
Access pointAccess point policyNo

Google Cloud

Cloud Storage

ClassificationPropertiesValueSupported
ObjectSizeYes
ObjectTypeYes
ObjectStorage classYes
ObjectPublic accessYes
ObjectVersion historyNo
ObjectEncryptionYes
ConfigurationHierarchical namespaceNo
ConfigurationLocation typeRegionYes
ConfigurationLocation typeDual regionNo
ConfigurationLocation typeMultiple regionNo
ConfigurationDefault storage classYes
ConfigurationRequester PaysNo
ConfigurationTagsNo
ConfigurationLabelsYes
ConfigurationCloud console URLYes
Configurationgsutil URLYes
PermissionAccess controlYes
PermissionPublic access preventionYes
PermissionPublic access statusYes
ProtectionReplicationNo
ProtectionSoft delete policyYes
ProtectionObject versioningYes
ProtectionBucket retention policyYes
ProtectionObject retentionYes
ProtectionEncryption typeYes
ProtectionLifecycle rulesYes

Kubernetes engine

Property CategoryPropertiesSupported
Cluster basicNameYes
Cluster basicTierYes
Cluster basicModeYes
Cluster basicLocation typeYes
Cluster basicRegionYes
Cluster basicDefault node zoneYes
Cluster basicRelease channelYes
Cluster basicVersionYes
Cluster basicCurrent COS versionYes
Cluster basicEnd of standard supportYes
Cluster basicEnd of extended supportYes
Cluster basicRollout sequenceYes
UpgradesAuto-upgrade statusNo
UpgradesMinor version auto-upgrade targetYes
UpgradesPatch version auto-upgrade targetYes
UpgradesUpgrade historyNo
AutomationMaintenance windowYes
AutomationMaintenance exclusionsYes
AutomationNotificationYes
AutomationVertical pod autoscalingYes
AutomationNode auto-provisioningYes
AutomationAuto-provisioning network tagsYes
AutomationAutoscaling profileYes
Control plane networkingDNS endpointYes
Control plane networkingControl plane access using IPv4 addressesYes
Control plane networkingPublic endpointYes
Control plane networkingPrivate endpointYes
Control plane networkingAccess using control plane's internal IP address from any regionYes
Control plane networkingAuthorized networksYes
Control plane networkingEnforce authorized networks on control plane's internal endpointYes
Control plane networkingAdd Google Cloud external IP addresses to authorized networksYes
Cluster networkingNetworkYes
Cluster networkingSubnetYes
Cluster networkingStack typeYes
Cluster networkingPrivate control plane's endpoint subnetYes
Cluster networkingVPC-native traffic routingYes
Cluster networkingCluster Pod IPv4 range (default)Yes
Cluster networkingCluster Pod IPv4 ranges (additional)No
Cluster networkingIPv4 service rangeYes
Cluster networkingIntranode visibilityYes
Cluster networkingHTTP Load balancingYes
Cluster networkingSubsetting for L4 Internal load balancersYes
Cluster networkingCalico autopilot network policyYes
Cluster networkingDataplane V2Yes
Cluster networkingDataplane V2 metricsYes
Cluster networkingDataplane V2 observabilityYes
Cluster networkingDNS providerYes
Cluster networkingNodeLocal DNScacheYes
Cluster networkingGateway APIYes
Cluster networkingMulti-networkingYes
Cluster networkingInter-Node transparent encryptionYes
Cluster networkingFQDN Network policyYes
Cluster networkingVPC firewall rule auto-creation for LoadBalancer servicesNo
Default New Node-Pool ConfigurationPrivate NodeYes
SecurityBinary authorizationNo
SecuritySecret managerYes
SecurityShielded GKE nodesYes
SecurityConfidential GKE NodesYes
SecurityService accountYes
SecurityCloud API access scopeYes
SecurityApplication-layer secret encryptionYes
SecurityBoot disk encryptionYes
SecurityWorkload identityYes
SecurityWorkload identity namespaceYes
SecurityGoogle groups for RBACNo
SecurityLegacy authorizationYes
SecurityBasic authenticationNo
SecurityClient certificateYes
SecuritySecurity posttureYes
SecurityWorkload vulnerability scanningYes
MetadataDescriptionYes
MetadataLabelsYes
MetadataTagsNo
MetadataTags firewallNo
FeaturesRay operatorYes
FeaturesLoggingYes
FeaturesCloud monitoringYes
FeaturesManaged service for PrometheusYes
FeaturesAutomatic application monitoringNo
FeaturesKubernetes alpha featuresYes
FeaturesCost allocationYes
FeaturesGKE usage meteringYes
FeaturesBackup for GKENo
FeaturesConfig connectorYes
FeaturesCompute engine persistent disk CSI driverYes
FeaturesImage streamingYes
FeaturesFilestore CSI driverYes
FeaturesCloud storage fuse CSI driverYes
FeaturesService meshNo
StorageStorage classesYes
StoragePersistent volumesYes
ConnectPVCYes
Connectconfig mapYes
ConnectnamespaceYes
ConnectsecretYes
FleetRegister fleetNo

SQL instance

MySQL instance

Property CategoryPropertiesValueSupported
OverviewDatabase versionYes
OverviewInstance IDYes
OverviewPassword policyYes
OverviewRegionYes
OverviewZoneYes
OverviewMachine configurationYes
OverviewStorageYes
OverviewMaintenanceYes
OverviewFlagsYes
OverviewQuery insightsYes
OverviewLabelsYes
UsersYes
DatabasesYes
BackupsAutomated backupsYes
BackupsBackups windowYes
BackupsAutomated backups retainedYes
BackupsPoint-in-time recoveryYes
BackupsDays of logs retainedYes
BackupsLocationYes
ConnectionsConnection nameYes
ConnectionsPrivate IPNo
ConnectionsPublic IPYes
SecuritySSL modeYes
SecurityServer certificate authority modeGoogle managed internal certificate authorityYes
SecurityServer certificate authority modeGoogle managed CAS certificate authorityYes
SecurityServer certificate authority modeCustomer managed CAS certificate authorityNo

PostgreSQL instance

Property CategoryPropertiesValueSupported
OverviewDatabase versionYes
OverviewInstance IDYes
OverviewPassword policyYes
OverviewRegionYes
OverviewZoneYes
OverviewMachine configurationYes
OverviewStorageYes
OverviewMaintenanceYes
OverviewFlagsYes
OverviewQuery insightsYes
OverviewLabelsYes
UsersYes
DatabasesYes
BackupsAutomated backupsYes
BackupsBackups windowYes
BackupsAutomated backups retainedYes
BackupsPoint-in-time recoveryYes
BackupsDays of logs retainedYes
BackupsLocationYes
ConnectionsConnection nameYes
ConnectionsPrivate IPNo
ConnectionsPublic IPYes
SecuritySSL modeYes
SecurityServer certificate authority modeGoogle managed internal certificate authorityYes
SecurityServer certificate authority modeGoogle managed CAS certificate authorityYes
SecurityServer certificate authority modeCustomer managed CAS certificate authorityNo

SQLServer instance

Property CategoryPropertiesValueSupported
OverviewDatabase versionYes
OverviewInstance IDYes
OverviewRegionYes
OverviewZoneYes
OverviewMachine configurationYes
OverviewStorageYes
OverviewMaintenanceYes
OverviewFlagsYes
OverviewQuery insightsYes
OverviewLabelsYes
UsersYes
DatabasesYes
BackupsAutomated backupsYes
BackupsBackups windowYes
BackupsAutomated backups retainedYes
BackupsPoint-in-time recoveryYes
BackupsDays of logs retainedYes
BackupsLocationYes
ConnectionsConnection nameYes
ConnectionsPrivate IPNo
ConnectionsPublic IPYes
SecuritySSL modeYes
SecurityServer certificate authority modeGoogle managed internal certificate authorityYes
SecurityServer certificate authority modeGoogle managed CAS certificate authorityYes
SecurityServer certificate authority modeCustomer managed CAS certificate authorityNo

VM instance

Property CategoryPropertiesValueSupported
Machine configurationNameYes
Machine configurationRegionYes
Machine configurationZoneYes
Machine configurationMachine typeYes
Machine configurationvCPUYes
Machine configurationMemoryYes
Machine configurationvCPUs to core ratioYes
Machine configurationVisible core countYes
Machine configurationLimit the VM's CPU frequency to all-core turboYes
Machine configurationGPU typeYes
Machine configurationNumber of GPUsYes
Machine configurationEnable Virtual Workstation (NVIDIA GRID)Need to choose target region is Europe-west4Yes
OS and storageOperating systemDebianYes
OS and storageOperating systemUbuntuYes
OS and storageOperating systemWindows serverYes
OS and storageVersionYes
OS and storageBoot disk typeHyperdisk balancedYes
OS and storageBoot disk typeBalanced persistent diskYes
OS and storageBoot disk typeExtreme persistent diskYes
OS and storageBoot disk typeSSD persistent diskYes
OS and storageBoot disk typeStandard persistent diskYes
OS and storageSizeYes
OS and storageDeletion ruleKeep boot diskYes
OS and storageDeletion ruleDelete boot diskYes
OS and storageStorage poolEnableNo
OS and storageStorage poolDisableYes
OS and storageEncryptionGoogle-managed encryption keyYes
OS and storageEncryptionCloud KMS keyYes
OS and storageEncryptionCustomer-supplied encryption key (CSEK)No
OS and storageDevice nameAutoYes
OS and storageDevice nameCustom device nameYes
OS and storageAdditional disksYes
OS and storageContainer imageYes
OS and storageRestart policyAlwaysYes
OS and storageRestart policyOn failureYes
OS and storageRestart policyNeverYes
OS and storageRun as privilegedYes
OS and storageAllocate a buffer for STDINYes
OS and storageAllocate a pseudo-TTYYes
OS and storageCommandYes
OS and storageArgumentsYes
OS and storageEnvironment variablesYes
OS and storageVolume mountsYes
Data protectionBack up your dataBackup planNo
Data protectionBack up your dataSnapshot schedulesNo
Data protectionBack up your dataNo backupsYes
Data protectionCross-zone synchronous replicationRegional disksYes
Data protectionSecondary zoneYes
Data protectionCross-region asynchronous replicationAsynchronous replicationNo
Data protectionExclude boot disksNo
NetworkingFirewallAllow HTTP trafficYes
NetworkingFirewallAllow HTTPS trafficYes
NetworkingFirewallAllow Load Balancer Health ChecksYes
NetworkingNetwork tagsYes
NetworkingHostnameYes
NetworkingIP forwardingEnableYes
NetworkingIP forwardingDisableYes
NetworkingNetwork bandwidthYes
NetworkingNetwork interfacesYes
NetworkingNetworkYes
NetworkingSubnetworkYes
NetworkingNetwork interface card(NIC type)VirtIOYes
NetworkingNetwork interface card(NIC type)gVNICYes
NetworkingIP stack typeIPv4 (single-stack)Yes
NetworkingIP stack typeIPv4 and IPv6 (dual-stack)Yes
NetworkingIP stack typeIPv6 (single-stack)Yes
NetworkingPrimary internal IPv4 addressEphemeral (Automatic)Yes
NetworkingPrimary internal IPv4 addressEphemeral (Custom)Yes
NetworkingCustom ephemeral IP addressYes
NetworkingAlias IP rangesPrimary subnet range & Alias IP range 1No
NetworkingAlias IP rangesSecondary subnet range & Alias IP range 2No
NetworkingExternal IPv4 addressYes
NetworkingNetwork Service TierPremiumYes
NetworkingNetwork Service TierStandardYes
NetworkingPublic DNS PTR RecordNo
ObservabilityInstall Ops Agent for Monitoring and LoggingYes
ObservabilityEnable display deviceYes
SecurityService accountsNo service accountsYes
SecurityService accountsSelect service accountYes
SecurityAccess scopesAllow default accessYes
SecurityAccess scopesAllow full access to all Cloud APIsYes
SecurityAccess scopesSet access for each APIYes
SecurityConfidential VM service(Confidential computing service)Yes
SecurityShielded VMTurn on Secure BootYes
SecurityShielded VMTurn on vTPMYes
SecurityShielded VMTurn on Integrity MonitoringYes
SecurityVM accessControl VM access through IAM permissionsYes
SecurityVM accessRequire 2-step verificationYes
SecurityVM accessBlock project-wide SSH keysYes
SecurityAdd manually generated SSH keysSSH keysYes
AdvancedDescriptionYes
AdvancedDeletion protectionEnableYes
AdvancedDeletion protectionDisableYes
AdvancedReservationsChoose a reservationNo
AdvancedReservationsDon't use a reservationYes
AdvancedAutomationStartup scriptYes
AdvancedMetadataKey 1Yes
AdvancedMetadataValue 1Yes
AdvancedData encryptionGoogle-managed encryption keyYes
AdvancedData encryptionCloud KMS keyYes
AdvancedData encryptionCustomer-supplied encryption key (CSEK).No
AdvancedEnable loggingYes
AdvancedEnable monitoringYes
AdvancedProvisioning modelStandardYes
AdvancedProvisioning modelSpot (Preemptibility = On)Yes
AdvancedTime limit for the VMYes
AdvancedGracefully shut down the VMMaximum durationNo
AdvancedOn VM terminationStopYes
AdvancedOn VM terminationDeleteYes
AdvancedOn host maintenanceMigrate VM instanceYes
AdvancedOn host maintenanceTerminate VM instanceYes
AdvancedHost error timeoutUnspecified (default)Yes
AdvancedHost error timeoutSpecified timeYes
AdvancedAutomatic restartOn(Default)Yes
AdvancedAutomatic restartOffYes
AdvancedCustomer Managed Encryption Key (CMEK) revocation policyShut down (recommended)Yes
AdvancedCustomer Managed Encryption Key (CMEK) revocation policyDo nothingYes
AdvancedSole-tenancyNo
Instance_detailsInstance templateYes
Instance_detailsIn-use byNo
Instance_detailsPhysical hostNo
Instance_detailsMaintenance statusNo
Instance_detailsLabelsYes
Instance_detailsTagsNo
Instance_detailsPreserved state sizeNo
Instance_Machine configurationCPU platformYes
Instance_Machine configurationMinimum CPU platformYes
Instance_Machine configurationArchitectureYes
Instance_Machine configurationCustom visible coresYes
Instance_Machine configurationResource policiesNo
Instance_Network interfaceInterface typeVPCYes
Instance_Network interfaceInterface typePrivate service connectNo
Instance_Network interfacePrimary internal IP addressYes
Instance_Boot diskNameYes
Instance_Boot diskImageYes
Instance_Boot diskInterface typeNVMEYes
Instance_Boot diskInterface typeSCSIYes
Instance_Boot diskProvisioned IOPSYes
Instance_Boot diskProvisioned throughputYes
Instance_Boot diskProvisional IOPSYes
Instance_Boot diskArchitectureYes
Instance_Boot diskZoneYes
Instance_Boot diskLabelsYes
Instance_Boot diskTagsNo
Instance_Boot diskIn-use byYes
Instance_Boot diskSource imageNo
Instance_Boot diskAccess modeYes