Skip to main content
Version: 2.2.0

Astran's deployment flexibility and advantages

As a Cloud Native platform, Astran offers a flexible deployment approach, providing an unchanged API while offering varying levels of resiliency, confidentiality, and compliance.

To enhance identity verification and validation, Astran seamlessly integrates with your Identity Management system through Enterprise Connect (EC). By connecting the two, Astran inherits your configuration, strengthening the overall identity management process and Astran platform while keeping the overall usage simple.

With Astran, you have the flexibility to define the threshold for Secret Sharing (TSS) in your instance. This allows you to adjust the minimum number of fragments required (k) to reconstruct the AONT package and retrieve the original data, providing you with granular control over the level of confidentiality.

Compliance considerations are also addressed by Astran. You have the freedom to choose your underlying cloud providers based on their geographies or nationalities, as these factors can impact the applicable laws. Astran enables you to select your primary and secondary cloud providers, ensuring adherence to specific compliance requirements. For example, you can configure Astran S5 storage to be GDPR compliant by choosing AONT-TSS processing within a European cloud provider with specific thresholds and storing fragments across multiple cloud providers, including European and non European ones. This configuration has been confirmed as a standard deployment by CNIL, the independent French administrative regulatory organization responsible for data privacy, as an effective supplementary measure (EDPB recommendations 01/2020) to provide GDPR compliance.

In addition to the standard Zero Trust Server Side deployment, described previously, Astran offers additional options to meet internal validation or usage requirements. Astran can be utilized in an End-to-End Zero Trust scenario or by leveraging the "Bring Your Own Cloud" approach for fragments storage. These configurations can be combined as per your specific needs, all while keeping the API exposure unchanged. The different deployment configurations are visually represented in the accompanying figures.

Figure 1: Zero Trust Server Side or End-to-EndFigure 1: Zero Trust Server Side or End-to-End
Figure 2: Bring Your Own CloudFigure 2: Bring Your Own Cloud

By providing such flexible deployment options, Astran ensures that your data remains secure, compliant, and adaptable to your unique business requirements.