4SO Platform Factory flow: Discover, Model, Compose, Build, Deploy, Operate.

PLATFORM ENGINEERING / PRIVATE CLOUD

4SO Platform FactoryBuild, import and operate application platforms

Turns raw servers or existing Kubernetes environments into standardized RKE2, OKD or imported Kubernetes platforms with catalog, fleet, release, policy, disconnected delivery and Day‑2 operations.

RKE2OKDExisting KubernetesCatalog & Fleet

4SO Platform Factory components: from raw infrastructure to target platforms

  1. 1Raw infrastructureRaw servers or existing Kubernetes environments enter the product lifecycle as targets.
  2. 2Management PlaneSelf-contained on RKE2; the Factory never migrates itself into a target distribution.
  3. 3PostgreSQL + Platform APIProduct authority for org/project, catalog, fleet, release, durable operations and audit.
  4. 4Forgejo + Argo CDForgejo carries desired state; Argo CD reconciles it and detects drift.
  5. 5zot OCI registryThe canonical artifact plane, including disconnected delivery with oc-mirror v2 and zot.
  6. 6Reconciliation loopObserved state is compared with desired state; UI success never replaces runtime evidence.
  7. 7Managed RKE2A standard application platform the Factory builds and keeps under lifecycle.
  8. 8OKDDistribution-aware builds with openshift-install and oc; native OKD behavior is preserved.
  9. 9Existing KubernetesImport and capability discovery without installing duplicate platform stacks.
01PROBLEM & OUTCOME

Product problem

A private platform is not the sum of disconnected tools.

Kubernetes, registry, identity, policy, monitoring, upgrades and recovery become another operations burden if they are assembled without one product lifecycle.

01STANDARDIZATION

Repeatable platforms

Blueprints and profiles replace environment-specific assembly.

02MULTI-DISTRIBUTION

Keep native behavior

RKE2, OKD and imported clusters share a product boundary without fake symmetry.

03FLEET

Day‑2 after install

Health, drift, node lifecycle and upgrade stay under fleet operations.

04SUPPLY CHAIN

Trace releases

Desired state and artifacts retain identity and provenance.

02CAPABILITY SNAPSHOT

Capabilities

From infrastructure admission to workload delivery.

Factory owns platform lifecycle while target distributions keep their native capabilities.

01CREATE / IMPORT

Target lifecycle

Build a managed platform or enroll an existing cluster.

02CATALOG

Profiles and blueprints

Versioned platform capabilities and templates.

03FLEET

Health and drift

Operate many targets through one product model.

04GITOPS

Desired state

Forgejo records intent; Argo CD reconciles it.

05REGISTRY / DISCONNECTED

Artifact plane and offline delivery

zot keeps canonical OCI identity; oc-mirror v2 + zot provide sealed acquisition.

06WORKLOAD

Workload delivery

Application release and environment binding on observed platform capabilities.

07BACKUP / RESTORE

Data protection

Policy, backup run, restore and drill for managed targets.

08DAY‑2

Node and upgrade

Drain, replace, maintenance and distribution-aware upgrade.

03TOPOLOGY / DEPLOYMENT MODEL

Deployment model

Management Plane and target distributions remain separate.

The Factory does not migrate itself into the target distribution. RKE2 management stays self-contained while RKE2, OKD and imported Kubernetes are distinct target identities.

TargetEntry pathOwnershipUse
Managed RKE2Factory buildPlatform lifecycle under Product Control PlaneStandard private application platform
Existing KubernetesImport + discoveryExisting runtime + 4SO lifecycle boundaryBring existing clusters under management
Managed OKDDistribution-aware buildOKD owns CVO/MCO/OVN/OLM/SCC behaviorOpenShift-compatible target
Existing OKDImport + capability discoveryNative OKD + 4SO product workflowsManage without duplicate platform stacks
04ARCHITECTURE

Architecture

Product authority, desired state, reconciliation and runtime are different layers.

The architecture avoids making Git, Argo or the target cluster an accidental second product source of truth.

AUTHORITYPostgreSQL + Platform APIOrg/Project, catalog, fleet, release, durable operations and audit.
DESIRED STATEForgejoVersioned desired configuration and release inputs.
RECONCILIATIONArgo CDApply desired state and detect drift.
RUNTIMERKE2 / OKD / existing KubernetesDistribution-native serving behavior and observed capability state.
BoundaryMechanismOperational contract
Artifact planezotCanonical OCI registry for connected and disconnected delivery.
Managed OKD installopenshift-install / oc + scoped Redfish boot mediaBare-metal bootstrap follows the distribution contract.
Disconnected OKDoc-mirror v2 → zotAcquisition, inventory and mirror identity are sealed before install.
DaprOptional application runtime traitNever replaces 4SO state/workflow/lock/secret authority.
DomainComponent / MechanismBehavior
Product authorityPostgreSQL + Platform APIOrg/Project, Catalog, Blueprint, Fleet, Release and Durable Operation remain product authority.
Desired stateForgejoDesired configuration and release inputs are versioned; Git does not become Runtime Truth.
ReconciliationArgo CDApplies desired state and observes drift without creating an independent state authority.
05LIFECYCLE

Lifecycle

Platform lifecycle extends past cluster creation.

A target remains a managed product resource through capability discovery, releases, node change, upgrade and recovery.

01Discoverprovider / cluster identity
02Planprofile · blueprint · capability
03Provision / Importcreate or enroll target
04Verifyobserved capability state
05Delivercatalog · release · reconcile
06Operatehealth · drift · maintenance
07Upgradedistribution-aware edges
08Recoverretry · rollback where valid · operator action
06PLATFORM PROFILES

Platform profiles

Factory turns distribution, capability and delivery contracts into Platform Profiles.

Each profile combines distribution identity, capability discovery, policy, supply chain and lifecycle. OKD and RKE2 are deliberately not forced into artificial implementation symmetry.

RKE2 PlatformMANAGED

A lightweight, self-contained Kubernetes platform.

  • Managed lifecycle
  • Catalog-driven add-ons
  • Fleet operations
OKD PlatformDISTRIBUTION-AWARE

Uses OKD-native capabilities rather than duplicating them.

  • OVN / OLM / SCC awareness
  • No duplicate platform stacks
  • Managed or imported
Imported KubernetesADOPT

Adopt an existing cluster without rebuilding it.

  • Identity discovery
  • Capability assessment
  • Lifecycle admission
Application PlatformWORKLOAD

Application delivery over a managed target.

  • Application Release
  • Environment Binding
  • Observed deployment evidence
DisconnectedSOVEREIGN

Acquire, mirror and install without runtime Internet dependency.

  • Controlled acquisition
  • Local registry
  • Verified inventory
FleetDAY-2

Operate targets after creation.

  • Node lifecycle
  • Upgrade / maintenance
  • Diagnostics / recovery
07ACTION & WORKFLOW CONTRACT

State and flows

Operations have explicit planning and recovery states.

Risk, approval, retry policy and runtime verification belong to the operation model rather than an informal runbook.

01PlanDRAFT → PLANNING
02ApprovalAWAITING_APPROVAL
03QueueAPPROVED → QUEUED
04ExecuteRUNNING
05RetryRETRY_WAIT
06VerifyVERIFYING
07SuccessSUCCEEDED
08RecoveryROLLING_BACK / NEEDS_OPERATOR
APPROVAL GATE

Deploy through plan and human approval

High-risk actions never reach execution without an independent approval boundary.

REQUEST
↓
PLAN
↓
APPROVAL?
EXECUTE
↙ ↘
BLOCKED
VERIFY
RECONCILIATION LOOP

Desired state ↔ observed runtime

Forgejo intent and Argo reconciliation do not create a second product authority.

FORGEJO
→
ARGO CD
↓
OBSERVE
↑
TARGET
←
DRIFT
DISCONNECTED SUPPLY CHAIN

Acquire → verify → mirror → admit

Artifact identity is sealed before target installation.

ACQUIRE
↓
DIGEST VERIFY
↓
OC-MIRROR V2
ZOT
TARGET ADMIT
ADDITIONAL OPERATIONAL FLOWS

Additional operational flows

Drift and data protection deserve visible lifecycle paths too.

ActionAdmission / PreconditionsExecution ownerSuccess criterionFailure / recovery
Create PlatformResolvable profile + provider/target inputsFactory operation executorObserved target matches desired profilePLAN_FAILED / retry / recovery path
Import ClusterIdentity + access + capability discoveryImport workflowRegistered target with observed capabilitiesConflict requires operator resolution
Deploy ApplicationImmutable release + binding + policyForgejo/Argo + bounded executorObserved deployment/service evidenceUnknown result is not blindly retried
Replace NodeExact node identity + safety admissionLeased/fenced operationReplacement ready; old node safely removedLease loss → retry wait or operator
UpgradeCompatibility + health + evidence gateDistribution-aware workflowObserved version/capability healthRollback only where real
Disconnected DeliverySource lock + digest + inventoryacquire/mirror workflowTarget artifact identity matches sealed inventoryMismatch fails closed
FLOW

Failure states: PLAN_FAILED / FAILED / ROLLBACK_FAILED / NEEDS_OPERATOR / CANCELLED. Retry applies only to allowed failure classes; rollback is claimed only where the workflow supports it.

08OPERATIONS CATALOG

Operator surface

Platform engineering becomes a controlled product surface.

The operator works with targets, fleet, releases and lifecycle actions rather than per-cluster tribal procedures.

01 · TARGET

Create / import platform

Managed RKE2, OKD or existing Kubernetes.

02 · DISCOVER

Capability discovery

Read distribution identity and native capabilities.

03 · CATALOG

Publish profile

Version reusable platform capability.

04 · RELEASE

Deploy application

Bind immutable release to an environment.

05 · NODE

Drain / replace

Change infrastructure membership safely.

06 · UPGRADE

Upgrade target

Use distribution-aware admission and verification.

07 · DISCONNECTED

Mirror artifacts

Seal acquisition through zot and oc-mirror v2.

08 · PROTECT

Backup / Restore

Policy, run, drill and restore on the target.

09 · RECOVER

Repair target

Reconcile observed state and surface operator-required cases.

Standardize the platform without erasing the distribution.

4SO owns the product lifecycle; the target keeps the native semantics that make it trustworthy.

All 4SO products →