> ## Documentation Index
> Fetch the complete documentation index at: https://docs.superblocks.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Optional configurations

A Cloud-Prem deployment works without any of the configurations on this page. Each one is opt-in: turn it on when your organization needs it, either during your initial deployment or later.

| Configuration | What it does | How it's applied |
| - | - | - |
| [Observability destinations](/enterprise/cloud-prem/configure/observability-destinations) | Sends logs, metrics, and traces to Datadog or to OpenTelemetry and Prometheus endpoints, configured per signal | You store settings in AWS Secrets Manager; Superblocks applies them at the next deployment |
| Custom WAF rule groups | Attaches your own AWS WAF rule groups to the regional and global WAFs that Cloud-Prem deploys to protect inbound traffic | Contact your deployment team |
| AWS Network Firewall | Inspects and filters outbound traffic from the Cloud-Prem account | Contact your deployment team |
| Image mirroring and scanning | Superblocks copies Cloud-Prem container images into your own registry so you can scan them; your scan results can block a deployment | Contact your deployment team |
| Custom resource tags | Applies your organization's tags to the AWS resources Cloud-Prem creates | Contact your deployment team |

## Request a configuration

To add or change a configuration, follow the steps on its page if it has one, then contact your Superblocks deployment team. If you are still preparing your initial deployment, share your choices with them before the deployment starts so they are included from day one. The [deployment guide](/enterprise/cloud-prem/deployment-guide) shows where each step fits.
