---
title: "Resource definitions"
description: "Reference index of the Calico Enterprise API resources covering networking, observability, threat feeds, compliance, and tiered policy custom resources."
product: "Calico Enterprise"
version: "3.23 (latest)"
section: "Reference"
canonical_url: "https://docs.tigera.io/calico-enterprise/latest/reference/resources/"
---

# Resource definitions

## [📄️Resource definitions](https://docs.tigera.io/calico-enterprise/latest/reference/resources/overview.md)

[Reference overview of the Calico Enterprise API resources, including the manifest format and how calicoctl and kubectl manage them.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/overview.md)

## [📄️BFD configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bfdconfig.md)

[Reference for the BFD configuration resource in Calico Enterprise that tunes Bidirectional Forwarding Detection on BGP-peered nodes.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bfdconfig.md)

## [📄️BGP configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgpconfig.md)

[Reference for the BGPConfiguration resource in Calico Enterprise that sets cluster-wide BGP options including route reflectors and AS number.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgpconfig.md)

## [📄️BGP peer](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgppeer.md)

[Reference for the BGPPeer resource in Calico Enterprise that defines a BGP neighbor relationship with external routers or other Calico nodes.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgppeer.md)

## [📄️BGP Filter](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgpfilter.md)

[Reference for the BGPFilter resource in Calico Enterprise that filters routes imported from or exported to BGP peers.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/bgpfilter.md)

## [📄️Block affinity](https://docs.tigera.io/calico-enterprise/latest/reference/resources/blockaffinity.md)

[Reference for the BlockAffinity resource in Calico Enterprise that records which node owns each IP address management block.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/blockaffinity.md)

## [📄️Calico node status](https://docs.tigera.io/calico-enterprise/latest/reference/resources/caliconodestatus.md)

[Reference for the CalicoNodeStatus resource in Calico Enterprise that exposes per-node agent, BGP, and routing state.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/caliconodestatus.md)

## [🗃Compliance reports](https://docs.tigera.io/calico-enterprise/latest/reference/resources/compliance-reports.md)

[5 items](https://docs.tigera.io/calico-enterprise/latest/reference/resources/compliance-reports.md)

## [📄️Deep packet inspection](https://docs.tigera.io/calico-enterprise/latest/reference/resources/deeppacketinspection.md)

[Reference for the DeepPacketInspection resource in Calico Enterprise that defines workloads to scan with the Snort-based IDS engine.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/deeppacketinspection.md)

## [📄️Early Network Configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/earlynetworkconfiguration.md)

[Reference for the EarlyNetworkConfiguration resource in Calico Enterprise that brings up BGP networking before the kubelet starts.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/earlynetworkconfiguration.md)

## [📄️Egress gateway policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/egressgatewaypolicy.md)

[Reference for the EgressGatewayPolicy resource in Calico Enterprise that selects which pods route through which egress gateways for outbound traffic.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/egressgatewaypolicy.md)

## [📄️External network](https://docs.tigera.io/calico-enterprise/latest/reference/resources/externalnetwork.md)

[Reference for the ExternalNetwork resource in Calico Enterprise that models networks outside the cluster for use with egress gateways.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/externalnetwork.md)

## [📄️Felix configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/felixconfig.md)

[Reference for the FelixConfiguration resource in Calico Enterprise that controls Felix data plane behavior cluster-wide.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/felixconfig.md)

## [📄️Global Alert](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalalert.md)

[Reference for the GlobalAlert resource in Calico Enterprise that defines an alerting query against flow, audit, or DNS logs.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalalert.md)

## [📄️Global network policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalnetworkpolicy.md)

[Reference for the GlobalNetworkPolicy resource in Calico Enterprise, a cluster-scoped tiered policy that selects endpoints across all namespaces.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalnetworkpolicy.md)

## [📄️Global network set](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalnetworkset.md)

[Reference for the GlobalNetworkSet resource in Calico Enterprise that defines a cluster-scoped set of CIDRs referenced by tiered network policy.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalnetworkset.md)

## [📄️Global report](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalreport.md)

[Reference for the GlobalReport resource in Calico Enterprise that schedules compliance reports against cluster network and policy state.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalreport.md)

## [📄️Global threat feed](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalthreatfeed.md)

[Reference for the GlobalThreatFeed resource in Calico Enterprise that pulls IP and domain indicators of compromise into Calico-managed network sets.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/globalthreatfeed.md)

## [📄️Host endpoint](https://docs.tigera.io/calico-enterprise/latest/reference/resources/hostendpoint.md)

[Reference for the HostEndpoint resource in Calico Enterprise that represents a host network interface for tiered policy enforcement.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/hostendpoint.md)

## [📄️IP pool](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ippool.md)

[Reference for the IPPool resource in Calico Enterprise that defines CIDRs available for pod IP address allocation.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ippool.md)

## [📄️IP reservation](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ipreservation.md)

[Reference for the IPReservation resource in Calico Enterprise that excludes specific addresses or ranges from automatic allocation.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ipreservation.md)

## [📄️IPAM configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ipamconfig.md)

[Reference for the IP address management configuration resource in Calico Enterprise that sets cluster-wide options such as strict affinity.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/ipamconfig.md)

## [📄️License key](https://docs.tigera.io/calico-enterprise/latest/reference/resources/licensekey.md)

[Reference for the LicenseKey resource in Calico Enterprise that activates entitled enterprise features in the cluster.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/licensekey.md)

## [📄️Kubernetes controllers configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/kubecontrollersconfig.md)

[Reference for the KubeControllersConfiguration resource in Calico Enterprise that controls behavior of the kube-controllers component.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/kubecontrollersconfig.md)

## [📄️Managed Cluster](https://docs.tigera.io/calico-enterprise/latest/reference/resources/managedcluster.md)

[Reference for the ManagedCluster resource in Calico Enterprise that registers a workload cluster with a management cluster for centralized observability.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/managedcluster.md)

## [📄️Network](https://docs.tigera.io/calico-enterprise/latest/reference/resources/network.md)

[API for this Calico Enterprise resource.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/network.md)

## [📄️Network policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/networkpolicy.md)

[Reference for the NetworkPolicy resource in Calico Enterprise, a namespaced tiered policy that selects pods within a single namespace.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/networkpolicy.md)

## [📄️Network set](https://docs.tigera.io/calico-enterprise/latest/reference/resources/networkset.md)

[Reference for the NetworkSet resource in Calico Enterprise that defines a namespaced set of CIDRs referenced by tiered network policy.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/networkset.md)

## [📄️Node](https://docs.tigera.io/calico-enterprise/latest/reference/resources/node.md)

[Reference for the Node resource in Calico Enterprise that represents a host running the cnx-node agent.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/node.md)

## [📄️Packet capture](https://docs.tigera.io/calico-enterprise/latest/reference/resources/packetcapture.md)

[Reference for the PacketCapture resource in Calico Enterprise that captures pcap files from selected workloads for offline analysis.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/packetcapture.md)

## [📄️Policy recommendation scope](https://docs.tigera.io/calico-enterprise/latest/reference/resources/policyrecommendations.md)

[Reference for the PolicyRecommendation resource in Calico Enterprise that drives policy recommendations generated from observed namespace flows.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/policyrecommendations.md)

## [📄️Profile](https://docs.tigera.io/calico-enterprise/latest/reference/resources/profile.md)

[Reference for the Profile resource in Calico Enterprise that groups labels and rules applied to endpoints.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/profile.md)

## [📄️Remote cluster configuration](https://docs.tigera.io/calico-enterprise/latest/reference/resources/remoteclusterconfiguration.md)

[Reference for the RemoteClusterConfiguration resource in Calico Enterprise that federates resources between clusters for shared identity.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/remoteclusterconfiguration.md)

## [📄️Security event webhook](https://docs.tigera.io/calico-enterprise/latest/reference/resources/securityeventwebhook.md)

[Reference for the SecurityEventWebhook resource in Calico Enterprise that forwards security events to external systems such as Slack or Jira.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/securityeventwebhook.md)

## [📄️Staged global network policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagedglobalnetworkpolicy.md)

[Reference for the StagedGlobalNetworkPolicy resource in Calico Enterprise that previews cluster-scoped tiered policy without enforcing it.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagedglobalnetworkpolicy.md)

## [📄️Staged Kubernetes network policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagedkubernetesnetworkpolicy.md)

[Reference for the StagedKubernetesNetworkPolicy resource in Calico Enterprise that previews Kubernetes network policy without enforcing it.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagedkubernetesnetworkpolicy.md)

## [📄️Staged network policy](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagednetworkpolicy.md)

[Reference for the StagedNetworkPolicy resource in Calico Enterprise that previews namespaced tiered policy without enforcing it.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/stagednetworkpolicy.md)

## [📄️Tier](https://docs.tigera.io/calico-enterprise/latest/reference/resources/tier.md)

[Reference for the Tier resource in Calico Enterprise that groups tiered policies into ordered evaluation buckets.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/tier.md)

## [📄️Workload endpoint](https://docs.tigera.io/calico-enterprise/latest/reference/resources/workloadendpoint.md)

[Reference for the WorkloadEndpoint resource in Calico Enterprise that represents a pod or VM interface for policy and IPAM.](https://docs.tigera.io/calico-enterprise/latest/reference/resources/workloadendpoint.md)
