# Architecture > How KubeLB separates the control plane from the data plane across a management cluster and tenant clusters. > Last updated: 2026-08-18 > Version: v1.5 > Pages: 3 ## About this section - [Architecture — Full Content](https://docs.kubermatic.com/kubelb/v1.5/architecture/llms-full.txt) ## Pages - [Layer 4 Load Balancing](https://docs.kubermatic.com/kubelb/v1.5/architecture/layer-4-load-balancing/llms-full.txt): How KubeLB provisions centralized TCP and UDP load balancing for tenant-cluster Services. - [Application Load Balancing](https://docs.kubermatic.com/kubelb/v1.5/architecture/application-load-balancing/llms-full.txt): How KubeLB provides centralized Layer 7 routing, DNS, and TLS for tenant-cluster applications. - [Tenant Isolation](https://docs.kubermatic.com/kubelb/v1.5/architecture/tenant-isolation/llms-full.txt): How KubeLB keeps tenant clusters apart from each other, and from the management cluster they share.