Skip to content
Documentation

Extra capabilities

Need extra connectivity, edge protection or a dedicated mail service? We can help you.


VPN tunnel

The hosting infrastructure can also be connected to the client's managed network or services via an IPSec VPN tunnel (normal or redundant/HA mode).
This may be necessary to exchange data with existing external services that are currently not provided to be opened directly over public internet. These tunnels are directly connected to the Platform network set up for the client so that data can be exchanged in a secure and efficient way.

Mail service

If you require a more advanced setup with DKIM and DMARC authentication and validation or need to send larger volumes, but don't want to configure and maintain it yourself, then then dedicated mail service of the Dropsolid Experience Platform can help you.

This service provides:

  • Fully managed and maintained by Dropsolid
  • Dedicated IP address only used for your application(s) and domain(s)
  • DKIM and DMARC validation of the domain names of your application
  • 30 days retention of mail logs

Edge protection: CDN, DDoS and WAF

Edge caching, DDoS protection and a managed Web Application Firewall are delivered by Dropsolid Edge Shield, a separate managed service that sits in front of your platform and screens and accelerates traffic before it reaches your application.

The edge caching layer keeps your pages close to your visitors, supports tag based invalidation that is fully compatible with Drupal, and shields your origin during traffic spikes through request collapsing. The managed Web Application Firewall detects and mitigates advanced Layer 7 attacks, and bot management separates real visitors and trusted crawlers from malicious automation. Dropsolid designs, tunes and operates all of it for you. Ask your Dropsolid contact person for details.

Redundancy

Within our Professional tier, we foresee the option1 to host your application in a fully redundant way.

This means that there are at least 2 underlying components for each component (2 proxy servers, 2 web servers, ...).
Specifically, this means that no physical or logical component of the proposed solution should be a single point of failure.

These components of a component are also located in different zones ( = a separate data center, e.g. server 1 is in zone A, server 2 is in zone B) so a complete zone is allowed to fail without complete downtime (though possibly a load impact and slower application). This way, we can avoid the website being unavailable for a long time due to a technical failure, cyber attack, ...

In addition, this also entails the following features:

  • A higher SLA can be offered on the infrastructure and application.
  • planned maintenance at infrastructure level can almost always take place without complete downtime of the application.
  • temporary scaling up or down of the infrastructure can therefore take place without complete application downtime.

Footnotes

  1. This is the default mode in our Enterprise tier.