Operations
Run MAQPNA in production: install, high availability, upgrades, backups, monitoring and air-gapped clusters.
Production install with HelmInstall MAQPNA on your own Kubernetes cluster with the Helm chart, from preflight checks to a smoke-tested, OIDC-protected installation.Upgrade and rollbackUpgrade MAQPNA one minor version at a time with upgrade check and a dry-run diff, and roll back safely when CRDs and schemas stay newer.Air-gapped installBuild a signed offline bundle on a connected host, carry it across, verify it, mirror the images into a private registry and install MAQPNA with no internet access.Backup, restore and DR drillBack up the audit ledger, MAQPNA resources, sealed signing keys and PostgreSQL state, restore them, prove it with a disaster-recovery drill, and rotate keys without downtime.Monitoring, alerts and runbooksScrape MAQPNA's metrics, turn on the shipped Prometheus alerts and Grafana dashboards, and follow the runbook for each alert and incident.Scaling and high availabilityRun several gateway, identity and attestation replicas on shared PostgreSQL state, size them from measured latency, and keep session start fast with warm pools.Security hardening checklistEvery posture check maqpna doctor runs, what it protects against and the value that fixes it, plus the hardening steps outside the checks.Verify releasesCheck MAQPNA binaries, images and the Helm chart before you run them, with SHA-256 checksums, cosign keyless signatures and SBOM attestations.UninstallRemove MAQPNA from a cluster or a laptop, keep the evidence first, and decide what to keep for a reinstall.TroubleshootingRead MAQPNA's error messages, find the cause of common failures from a symptom table, and collect diagnostics with doctor, status and support-bundle.FAQShort answers to the questions platform teams ask most often about running MAQPNA in production.