Managed Control Plane
Oten operates the control services. The customer owns endpoint rollout, resource onboarding, Gateway placement, identity integration, policy configuration, and the responsibilities defined in the service agreement.
DEPLOYMENT OPTIONS
The deployment model changes service ownership, key custody, data handling, availability engineering, and incident responsibility. Oten Access keeps those boundaries explicit before rollout begins.
System role: Customer platform team + Oten deployment owner
Evaluation depends on: Requires a responsibility matrix, data-flow review, failure-domain design, backup and restore plan, and verified component scope.
Oten operates the control services. The customer owns endpoint rollout, resource onboarding, Gateway placement, identity integration, policy configuration, and the responsibilities defined in the service agreement.
The customer owns control-service availability, state, signing and encryption keys, observability, capacity, backup, upgrades, disaster recovery, and incident response.
Gateway Data Plane Groups run near protected resources. Versioned profiles define rollout scope, while explicit Failover Sets define compatible runtime takeover.
Define the identity source, assurance requirements, role ownership, policy approvals, separation of duties, and emergency access governance.
Assign custody, rotation, backup, recovery, and compromise response for signing keys, encryption keys, device credentials, service credentials, and durable state.
Own supported versions, staged rollout, health monitoring, rollback, platform prerequisites, certificates, resource routes, and local failure behavior.
Plan regional reachability, authentication, capacity, network policy, metadata handling, and failure behavior without treating Relay as the resource enforcement point.
Define collected fields, purpose, access control, export, residency, retention, legal basis, deletion, and incident handling.
Name alert owners, escalation paths, maintenance windows, recovery objectives, compatibility windows, and the evidence required to return to service.
Next in Oten Access
Define the exact responsibility, failure, data, and recovery boundaries before selecting a rollout sequence.