Home → Architecture
How Ironmark installs, how it's isolated, and what your security team will want to know. Written for the people reviewing the deployment before it lands on their network.
Offline install from a signed bundle, offline updates through the admin panel, no outbound network calls in normal operation.
Read →Shared-responsibility split: application controls (auth, RBAC, audit chain, elevation, integrity) inside the platform; infrastructure controls stay with the deployment environment.
Read →REST endpoints for automation. Personal access tokens, admin-issued service tokens, scoped by role.
Read →Single-server on-premise, airgap, or hosted. Bundle installer, systemd unit, MySQL, nginx, Let's Encrypt or customer-supplied cert.
Read →Named immutable snapshots of content, configuration, and packaging. What's captured, what isn't, and how baselines carry a manual through 20-year sustainment.
Read →