09Kubernetes platform

Kubernetes you own, with no way in from the internet.

We design, harden and hand over self-hosted Kubernetes — on your cloud account, your hardware, or both. The perimeter has no listening port: the cluster dials out, nothing dials in, and an external scan finds nothing to attack.

Internet
Edge
TLS · WAF · cache
Outbound tunnel
no inbound ports
Ingress
in-cluster routing
Applications
GitOps-managed
Database
replicated
Object storage
versioned backups
The perimeter has no listening port. The cluster dials out; nothing dials in.
What it covers
  • Cluster design and capacity planning
  • GitOps delivery with ArgoCD
  • Ingress, DNS and certificate automation
  • Secrets management and rotation
  • eBPF network policy between workloads
  • Continuous vulnerability scanning
  • Backup, restore and disaster-recovery drills
  • Runbooks and handover to your team
You get

A running environment you own — architecture and network design, a hardened cluster, secrets and policy in place, and the runbooks to operate it without us.

Evidence
0open ports on the on-prem perimeterIndependently verified by external port scan.
0data loss relocating a live clusterFull workload and persistent-volume migration to a new datacenter, verified against pre-move state.
50+applications under GitOps managementSync-wave ordered across 3 clusters, reconciled from Git.
758of 758 tests passing after a major runtime upgradeFull suite green post-upgrade; the number is the suite size, not a sample.
Questions we get

Does "no inbound ports" mean the cluster is unreachable?

No — it means nothing on the internet can open a connection to it. The cluster establishes an outbound tunnel to the edge, and traffic arrives back down that existing connection. A port scan of the perimeter finds nothing listening, because nothing is.

Do we have to move off our cloud provider?

No. This runs on AWS, GCP, Azure, VMware or hardware you own, and it is designed so that every layer has at least two supported homes. Portability is the point; it is not a migration to a different lock-in.

What happens when you leave?

You keep a Git repository that fully describes the platform, runbooks written for your team rather than for us, and a cluster with no dependency on our access. The handover is part of the work, not an exit event.

Book an architecture review

← Back to balticdevops.io