DEPLOYMENT // KURULUM

Deployment

Your infrastructure, your rules. From a fully air-gapped install to hybrid storage, the same platform and the same seal.

01DEPLOYMENT

KURULUM VE ENTEGRASYON

Your infrastructure, your rules.

From a fully air-gapped install to a multi-region cluster: the same platform, the same seal.

On-premises

ON-PREM · AIR-GAP

Runs fully isolated; complete functionality on air-gapped networks.

Hybrid cloud

S3 · AZURE · GCS

The cloud sees only encrypted objects; the keys stay within your organisation.

Multi-region

MULTI-REGION · REDUNDANT

Redundant operation across regions; if one region fails, the others carry on.

INTEGRATIONS
AD / LDAP
SIEM
SOAR
DLP
CLAMAV
SANDBOX
OFFICE 365
COLLABORA
JITSI
OFFLINE LLM
REST API

Antivirus (ClamAV + Sandbox) and DLP work with the encrypted flow. Document editing via Office 365 and Collabora, meetings via Jitsi.

02COMMISSIONING

DEVREYE ALMA

The security posture is fixed at installation and cannot be loosened later. Commissioning runs through a one-time, guided, browser-based wizard.

WIZARDSYSTEM CONSTANTSLICENSING
HOW IT WORKS

Setup wizard

Licensing, security constants, document viewing, external links and password policy are configured through guided steps; install-only steps lock permanently once setup completes.

Immutable system constants

The LPS Key login mode and the work-area recovery policy are chosen once at installation; the posture set at commissioning is fixed by design.

Machine-bound licensing

Each installation generates its own validation code, and the licence file is specific to that machine, with visible start and end dates and a defined user limit.

03DAY-2 OPERATIONS

İŞLETİM

Day-2 operations belong to the institution's own IT staff; routine maintenance does not depend on vendor remote access.

CONSOLELIVE EXPANSIONCONTROLLED UPDATES
HOW IT WORKS

On-appliance maintenance console

A console on the appliance shows version, licence, active sessions and resource health on one screen. Network settings, service restarts and certificate operations happen locally.

Zero-downtime storage expansion

System, data and temporary volumes expand independently while the system is running; newly added disk space comes online without a reboot.

Controlled updates

There are no unattended auto-updates. Every release is applied by authorised engineers in a planned maintenance window; the previous build is backed up, and certificates, configuration and branding are preserved.

04INTEGRATIONS

ENTEGRASYONLAR

The platform joins the existing enterprise stack, talking to the identity, monitoring, content-security and file-transfer layers.

AD / LDAPSSOSIEMDLP · AV · SANDBOXSFTP · WEBDAV
HOW IT WORKS

Corporate identity

Accounts synchronise with Active Directory/LDAP and sign in through corporate SSO; directories on closed networks are supported via a collector running on the customer side.

SOC and monitoring

Audit events stream to SIEM targets in CEF or LEEF 2.0 format; authentication, project, file and admin streams switch on and off independently.

Content security

Uploads can pass DLP, antivirus and sandbox inspection; every detection lands in the record as a high-severity event.

Protocol access

Work areas open to SFTP and mount as an operating-system drive; access is enabled per project and written to dedicated login logs.