WHITEPAPER

Tessell Architecture Guide

A technical reference to the foundational architecture of the Tessell DBaaS platform, covering control and data plane design, security, cloud onboarding, and built-in data management.

DBaaSArchitectureSecurity
Tessell Architecture Guide

Any engine, any cloud

Oracle, SQL Server, PostgreSQL, MySQL, MongoDB, and Milvus, on AWS or Azure

Three deployment models

Business Edition, Virtual Private Tessell, and VPT at Customer, to balance isolation and cost

Dedicated data plane

Each customer's data stays in an isolated network and never leaves their perimeter

Availability Machine

Built-in snapshots, continuous log backups, data sanitization, and point-in-time recovery

What's Inside

  • Control and data plane design: how Tessell separates the orchestration layer from customer data, with dedicated and shared options for each.

  • Deployment models compared: Business Edition, Virtual Private Tessell, and VPT at Customer, mapped to isolation, control, and cost requirements.

  • Security architecture: least-privilege IAM roles, tag-based access control, TLS-encrypted communication, and a pull-based model where the data plane initiates every request.

  • Cloud onboarding walkthroughs: bring-your-own-account setup for AWS using cross-account IAM and CloudFormation, and for Azure using a dedicated resource group, operator role, and service principal.

  • High availability and disaster recovery: single-instance and HA/DR topologies built from a primary database, a same-region HA replica, and a cross-region DR replica.

  • Availability Machine and Dataflix: SLA-driven snapshots, log backups, sanitized snapshots, native backups, and data access policies that govern what data reaches secondary environments.

Download the Whitepaper

Tessell Architecture Guide
Share
Ready to move?

Start with a free estate assessment