Operate OpenClaw Enterprise
Use these guides to install and run OpenClaw Enterprise on Kubernetes. They are for operators responsible for the OpenClaw Control Plane (OCC), tenant Namespaces, networking, and runtime credentials. If you want to try the platform on your own machine, start with Local Setup.
Install the platform
- Choose standard Kubernetes or Amazon EKS to prepare the cluster, storage, and network.
- Install the control plane and make an authenticated API request. Helm readiness alone does not verify API access.
- Deploy a production Agent and verify the selected runtime. An active revision alone does not prove a model can answer; use the model response verification for trusted-proxy gateways.
- Prepare the production handoff to record who responds to failures and who owns credentials and access.
The installation overview lists shared prerequisites and explains which resources Helm leaves behind when you uninstall it.
Run the platform
| Task | Start here |
|---|---|
| Diagnose a failed installation, blocked Namespace, or unavailable control plane | Troubleshoot the platform |
| Configure or verify operational logs | Observability |
| Scrape application metrics | OCC metrics and production scraping |
| Connect the control plane to private Agent workspace files | Agent workspace routing |
| Set up and verify the trusted-operator native admin pilot | Agent native admin UI |
| Renew or revoke a credential | Credential rotation |
| Issue or revoke keys for scripts and services | Service API Keys |
For a failure isolated to one Agent, start with Agent troubleshooting.
