Foundation Stack¶
The foundation is what makes TAPPaaS a platform rather than a pile of VMs. Like everything else it is built from modules — see the Module Model; here is the module catalog:
| Module | Role |
|---|---|
| Cluster | Proxmox nodes, storage pools, HA — the ground everything stands on |
| Network | OPNsense firewall: zones, DNS, DHCP, reverse proxy, rules |
| Templates | The prebuilt VM templates modules deploy from |
| TAPPaaS CICD | The mothership: managers and controllers that run the platform |
| Backup | Proxmox Backup Server: scheduled, verified, off-site capable |
| Identity | Authentik: SSO, users, groups, organisations |
| Logging | Loki / Grafana / Promtail: central logs |
| Satellite | Optional VPS: public ingress, off-site backup, admin VPN |
Architecture view¶
The layered ArchiMate view — capabilities at the top, through services and the realizing components, down to the cluster nodes: