Case studyPublic sector · Digital identity — Romania
Digital Identity Platform
The infrastructure behind a national digital-identity platform — designed rack to cluster and delivered with firewalling, traffic visibility and network threat detection built in from the first cable.

01The challenge
Infrastructure worthy of
a national identity.
A digital-identity platform is only as trustworthy as the ground it runs on. It needs perimeter and segmentation to keep environments apart, storage and compute sized for a high-availability service, and — above all — the ability to see and reason about every packet on the network.
We produced the low-level design and delivered the estate end to end: racks, cabling, LAN and SAN, security, virtualisation and storage — with visibility and threat detection engineered in, not bolted on.
02At a glance
Built for trust,
watched end to end.
03The architecture
Edge, compute and storage, kept apart on purpose
The model below is the reference architecture, not the actual implementation. Traffic is firewalled and delivered at the edge, served by segregated virtualisation clusters, and held on a tiered SAN-and-NAS storage estate.
High-throughput next-generation firewall cluster.
Application delivery & load balancing.
Three isolated clusters across the estate.
Security and visibility workloads, kept apart.
Separate PROD and TEST clusters, no crossover.
Data-centre switching backbone.
Fibre Channel SAN fabric.
Tier-1 mission-critical SAN.
Scale-out NAS, deduplicating backup and a tape library.
04Visibility & threat detection
Every packet mirrored, every flow watched
05Confidentiality note
This is a security-sensitive engagement. We do not disclose specific addressing, locations, rack layouts, or the actual internal configuration of the platform.
The figures and the architecture on this page describe the reference model and the publicly communicable scope of the work.