Deployment
Your infrastructure, your rules. From a fully air-gapped install to hybrid storage, the same platform and the same seal.
01DEPLOYMENT
KURULUM VE ENTEGRASYONYour infrastructure, your rules.
From a fully air-gapped install to a multi-region cluster: the same platform, the same seal.
On-premises
ON-PREM · AIR-GAPRuns fully isolated; complete functionality on air-gapped networks.
Hybrid cloud
S3 · AZURE · GCSThe cloud sees only encrypted objects; the keys stay within your organisation.
Multi-region
MULTI-REGION · REDUNDANTRedundant operation across regions; if one region fails, the others carry on.
Antivirus (ClamAV + Sandbox) and DLP work with the encrypted flow. Document editing via Office 365 and Collabora, meetings via Jitsi.
02COMMISSIONING
DEVREYE ALMAThe security posture is fixed at installation and cannot be loosened later. Commissioning runs through a one-time, guided, browser-based wizard.
Setup wizard
Licensing, security constants, document viewing, external links and password policy are configured through guided steps; install-only steps lock permanently once setup completes.
Immutable system constants
The LPS Key login mode and the work-area recovery policy are chosen once at installation; the posture set at commissioning is fixed by design.
Machine-bound licensing
Each installation generates its own validation code, and the licence file is specific to that machine, with visible start and end dates and a defined user limit.
03DAY-2 OPERATIONS
İŞLETİMDay-2 operations belong to the institution's own IT staff; routine maintenance does not depend on vendor remote access.
On-appliance maintenance console
A console on the appliance shows version, licence, active sessions and resource health on one screen. Network settings, service restarts and certificate operations happen locally.
Zero-downtime storage expansion
System, data and temporary volumes expand independently while the system is running; newly added disk space comes online without a reboot.
Controlled updates
There are no unattended auto-updates. Every release is applied by authorised engineers in a planned maintenance window; the previous build is backed up, and certificates, configuration and branding are preserved.
04INTEGRATIONS
ENTEGRASYONLARThe platform joins the existing enterprise stack, talking to the identity, monitoring, content-security and file-transfer layers.
Corporate identity
Accounts synchronise with Active Directory/LDAP and sign in through corporate SSO; directories on closed networks are supported via a collector running on the customer side.
SOC and monitoring
Audit events stream to SIEM targets in CEF or LEEF 2.0 format; authentication, project, file and admin streams switch on and off independently.
Content security
Uploads can pass DLP, antivirus and sandbox inspection; every detection lands in the record as a high-severity event.
Protocol access
Work areas open to SFTP and mount as an operating-system drive; access is enabled per project and written to dedicated login logs.