For the complete documentation index, see llms.txt. This page is also available as Markdown.

Responsibility Matrix (RACI)

Understand the responsibilities of CARTO vs. your organization

This page is under development. Please contact support@carto.com for assistance with deployment planning.

Overview

This page outlines the shared responsibility model between CARTO and the customer for a Self-Hosted deployment. Understanding these responsibilities helps you provision the right resources and set expectations accordingly.

Responsibility matrix

Area
CARTO
Customer
Notes

Infrastructure provisioning

Cloud account and billing

Responsible

Kubernetes cluster setup

Consulted

Responsible

DNS configuration

Consulted

Responsible

TLS certificates

Consulted

Responsible

Application

CARTO container images

Responsible

Application updates and patches

Responsible

Accountable

Helm chart / Kots configuration

Responsible

Accountable

License management

Responsible

Database

PostgreSQL metadata database

Consulted

Responsible

Database backups

Consulted

Responsible

Database updates and patching

Responsible

Networking

Firewall and network policies

Consulted

Responsible

Load balancer configuration

Consulted

Responsible

Proxy configuration

Consulted

Responsible

Security

Application security patches

Responsible

Infrastructure security

Responsible

Secret and key management

Consulted

Responsible

SSO / Identity provider

Consulted

Responsible

Monitoring and support

Application-level monitoring

Consulted

Responsible

Infrastructure monitoring

Responsible

Log collection and retention

Consulted

Responsible

CARTO services emit logs to stdout/stderr; collecting, aggregating, and retaining them is your responsibility

Incident response (application)

Responsible

Informed

Incident response (infrastructure)

Consulted

Responsible

Last updated

Was this helpful?