Skip to main content

Infrastructure

This section covers the infrastructure layer of the DEUSS platform.

Sections

  • DevOps & CI/CD DevSecOps governance, GitOps deployment pipeline, environment matrix, secrets management, and operational runbook. Sub-pages cover each subsystem in detail:

  • Traffic Management Istio service mesh, ingress gateway, Cloudflare tunnel integration, mTLS configuration, external API gateway, and blockchain gateway.

  • Istio Configuration Operational Istio deployment configuration — ArgoCD project structure, App manifests, Helm values, TLS options, Cloudflare tunnel, mTLS setup, and troubleshooting.

  • High Availability Dual-site AKS deployment, global load balancing (F5), and HA configuration for PostgreSQL (CloudNativePG), Kafka (Strimzi), S3 object storage (Ceph), and Keycloak. Includes RTO/RPO summary.