Demonstrated end to end with a current operational result.
Implemented and used with documented controls and constraints.
Implemented behind policy, approval, or environment enablement.
Reusable architecture that still earns proof in each new environment.
Proof chain
“Proven” means the action survives contact with reality.
A route existing is not enough. The correct authority, safe execution, observable result, and recovery posture all matter.
IntentPolicyExecuteObserveProve
Detailed record
The executive atlas is backed by the full technical matrix.
Every row preserves the exact status, operating boundary, and proof requirement behind the visual summary.
| Domain | Current capability | Status | Proof and boundary |
|---|---|---|---|
| SCIM users | Discovery, create, read, replace, patch, active-state disable, filters, paging, structured errors, and replay-safe behavior. | Proven | Standard SCIM transactions backed by FreeIPA-aware mapping and correlated evidence. |
| Password convergence | Authorized password delivery in memory, policy checks, guarded FreeIPA write, and downstream Linux login validation. | Proven | Plaintext is never persisted, echoed, or logged. |
| SAML SSO | Authentication, MFA handoff, ACS validation, role mapping, sessions, logout, readiness, and diagnostics. | Proven | Human login remains distinct from machine provisioning. |
| OIDC | RP and broker integration, discovery, JWKS, authorization-code security controls, role mapping, and session evidence. | Operational | Environment policy decides which path is enabled. |
| FreeIPA control | Users, groups, HBAC, host groups, directory health, bounded operations, and Linux enforcement evidence. | Proven | FreeIPA remains the Linux authorization and Kerberos/POSIX authority. |
| Foreman and Puppet | Host/interface inventory, MAC enrichment, Puppet facts, host groups, fleet readiness, dry-run import, and backups. | Operational | Reviewed enrichment never silently overwrites workstation truth. |
| Classroom operations | Room and seat views, health, per-seat WoL, reboot, power-off, reasons, probes, and policy gates. | Proven | Power paths are scoped per workstation and relay authority. |
| Remote console | Guacamole SSH/VNC plans, tokenized launch URLs, dedicated jump relays, VNC activation, and audit trails. | Operational | Launchability is evaluated from the actual jump vantage point. |
| Topology | Living graph for identity, directory, Foreman, storage, relays, rooms, workstations, protocols, health, and evidence. | Proven | Configured, inferred, cached, and live states remain labeled. |
| Living ERD | Runtime schema inventory and relationship visualization tied to the active platform model. | Operational | Operators are not dependent on a stale static diagram. |
| Observability and security | Application, SSO, OIDC, login, SSH, host, remote-session, threat, system, and error evidence with remediation. | Proven | Secrets, assertions, cookies, keys, and plaintext credentials are excluded or redacted. |
| Database control | Health, schema audit, migration preview, approvals, backups, retention, guarded pruning, vacuum/analyze, and survivability. | Operational | Destructive SQL is blocked from the safe apply path. |
Move from status to experience
Choose the control plane you want to inspect.
Trace identity convergence, walk the topology, operate a workstation path, investigate security evidence, or examine governed database maintenance.