Delivery & operations

One week from bare metal to production

Every engagement runs the same scripted sequence, so the timeline, the scope and the outcome are known before we start.

  • 21 nodes minimum
  • 27 nodes recommended
  • Fixed one-week schedule
  • Full handover
Delivery timeline

A fixed seven-day build sequence

From a fresh server rack to production handoff in exactly one week, executed with automated shell scripts and GitOps pipelines.

Day 1Hardware & OS

Server OS preparation

Provision every node with Ubuntu, assign static IPs and increase the kernel limits. Generate wildcard TLS certificates for each cluster and update nodes with the latest security patches.

Linux · Bash · OpenSSL

Day 2Networking & K8s

HA infrastructure & Kubernetes

Deploy the Bind9 DNS cluster with Keepalived and build the HAProxy load balancer cluster with VRRP failover. Bootstrap the Admin, Workload and Storage Kubernetes clusters via kubeadm.

Bind9 · HAProxy · kubeadm

Day 3GitOps platform

GitLab & GitOps setup

Setup GitLab CE and enable automated backups of the GitLab instace. Import the platform repositories, deploy Argo CD and configure each control plane to pull manifests from Git.

GitLab CE · Docker · Argo CD

Day 4Storage & mesh

Rook-Ceph & Istio Ambient

Deploy the Gateway API and Istio Ambient mode for mTLS. Build the Rook-Ceph storage cluster on dedicated OSD nodes and connect the the clusters to shared persistent volumes.

Rook-Ceph · Istio Ambient

Day 5CI/CD & registry

Harbor & Jenkins pipelines

Install the Harbor OCI registry on the Admin cluster, then deploy Jenkins with dynamic Agents on the Workload cluster and create CI/CD pipelines with Cosign image signing.

Harbor · Cosign · Jenkins

Day 6Telemetry

Observability stack

Roll out Prometheus with Thanos sidecars, add Grafana, Loki and Tempo. Federate metrics, logs and traces from all clusters into the Admin cluster for observability and monitoring.

Prometheus · Thanos · Loki · Tempo

Day 7 · Handoff

Demo application & HA failover drills

We deploy a Spring MVC reference application, run failover drills across DNS, load balancer and control plane VIPs, then hand over the GitOps repositories and operational documentation.

Deliverable

Production-ready platform

Before day one

The hardware we start from

The recommended number of nodes for the platform is 27, to enable full high availability and better performance.

RoleNodes
Load balancers3 nodes
DNS servers3 nodes
Admin cluster7 nodes
Workload cluster7 nodes
Storage cluster6 nodes
GitLab server1 node
Day 7 · Proof

High availability, demonstrated live

We do not claim resilience — we break the platform in front of you and show it staying up.

DNS failover

The Keepalived VIP is moved between Bind9 nodes while resolution is under load — queries continue to answer without a dropped lookup.

Load balancer failover

The active HAProxy node is taken offline; the standby claims the VIP and ingress traffic keeps flowing to the workload cluster.

Control plane node loss

A control plane member is drained, etcd keeps quorum, the API server stays reachable through the VIP and workloads are untouched.

Storage resilience

A Ceph OSD node is removed to demonstrate replication, automatic rebalancing and uninterrupted persistent volume access.

GitOps repositories

Every cluster manifest, Helm value and pipeline definition, in GitLab, reconciled by Argo CD applications.

Operational runbooks

Step-by-step procedures for upgrades, certificate rotation, GitLab backup and restore, and node replacement.

Credentials & access

Kubeconfigs, registry robot accounts, Cosign keys and dashboard access transferred to your team.

Ready to run your own cloud?

Send us your server inventory and target workloads. We'll come back with a topology, a fixed quote and a start date — usually within one business day.

Review pricing