Lakekeeper

Iceberg REST catalog for tenant-scoped lakehouse projects and warehouses.

Agentic Friendly

Component Category

Lakehouse catalog

Component Description

Lakekeeper provides an Apache Iceberg REST Catalog for data-engineering and analytics workloads. BullSequana AI creates a separate Lakekeeper project with a default warehouse for each tenant. The Kubeflow profile bucket provisioner creates additional warehouses for personal user buckets and shared-space buckets within that tenant project.

Why It Is Used

In BullSequana AI, Lakekeeper gives Spark and other Iceberg clients one governed catalog rather than coupling table metadata to a specific processing engine. Keycloak authenticates users and OpenFGA enforces project and warehouse access.

Learn More

Deployment notes

BullSequana AI 1.3.0 deploys Lakekeeper 0.12.2 with chart 0.11.0. Table data is stored in the configured S3-compatible object store; catalog metadata uses PostgreSQL. Tenant resolution determines the project used when the provisioner creates a user or space warehouse.

Interacts With

  • Spark Operator, whose jobs read and write Iceberg tables through the REST catalog.
  • Keycloak, which authenticates users and services.
  • OpenFGA, which authorizes projects and warehouses.
  • Kubeflow, whose profile bucket provisioner creates user- and space-bucket warehouses in the tenant project.
  • PostgreSQL, which stores catalog state.
  • Rook-Ceph or external S3-compatible storage, which stores table data.

On this page