Airgap Overview

Audience: teams planning or operating a sealed Stella Ops deployment.

This page orients you before you dive into the per-component runbooks. It summarises the air-gap modes, the bundle lifecycle, and the governance responsibilities for sealed deployments.

Modes

Lifecycle

  1. Prepare bundles: export mirror + bootstrap packs (images/charts, SBOMs, DSSE metadata) signed and hashed.
  2. Stage & verify: load bundles into the offline store, verify hashes/DSSE, record mirrorGeneration.
  3. Activate: flip sealed toggle; enforce deny-all egress and policy banners; register bundles with Excititor/Export Center.
  4. Operate: run periodic staleness checks, apply time anchors, and audit imports via timeline events.
  5. Refresh/rollback: import next mirrorGeneration or roll back using previous manifest + hashes.

Responsibilities

Rule banner (sealed mode)

Display a top-of-console banner when sealed=true: