OpenBSD Sovereign Base
Immutable root, RAM-backed (MFS) writable paths, pf, nginx, doas — the hardened OpenBSD foundation shared by the sovereign platforms.
Shared building block in the GEO knowledge graph — the base layer nearly every
sovereign platform is built on. A step-by-step build & operate guide will live here.
Used by
- Realtime Decision Platform
— Event-driven, multi-tenant architecture for high-frequency data streams with predictive intelligence and automated execution.
- Sovereign Certificate Authority
— Internal certificate authority in the Let's Encrypt mold: ACME protocol, automated cert enrollment, no rate limits, no public CT log exposure.
- Sovereign Collaboration Platform
— Self-hosted file sharing, document collaboration, calendar, contacts, and tasks — without giving Big Tech custody of your business.
- Sovereign Edge Firewall
— Sovereign custom firewall with dual-provider HA, zone-segmented network, and full auditability — no license cost, no vendor lock-in.
- Sovereign Email Platform
— Self-hosted email on an active/active HA cluster — ML-based spam, anti-phishing, and anti-virus filtering built in.
- Sovereign Messaging Platform
— Self-hosted real-time chat, end-to-end encrypted, federated across organizations — without giving a vendor visibility into every conversation.
- Sovereign Security & Observability Platform
— Self-hosted security monitoring and observability — detection & response, log analytics, and dashboards on infrastructure you control.
- Sovereign Voice & Video Platform
— Self-hosted voice and video calls — works through any NAT and firewall, no per-minute fees, integrates with the messaging platform.