Security and reliability
- Last UpdatedApr 17, 2024
- 2 minute read
AVEVA manages, operates, and maintains all aspects of the CONNECT data services platform. CONNECT data services is built and deployed on Microsoft Azure and operates outside the AVEVA corporate firewall. Currently, CONNECT data services runs in three Azure regions: West US, West Europe, and Australia. By housing the platform in multiple regions, CONNECT data services accommodates regulations that mandate where data must be stored.
Secure and robust data infrastructure
CONNECT data services is built from the ground up to ensure security. The CONNECT data services platform is based on industry standard techniques to ensure the strongest possible data integrity. User authentication is handled through CONNECT. Authenticated users can only perform actions for which their role is authorized. Machine access to CONNECT data services is controlled through a variety of defensive strategies. All data in CONNECT data services is fully encrypted in transit and at rest.
Elastic resource allocation
Due to its microservice-based architecture, CONNECT data services dynamically adapts to workload changes by automatically provisioning and de-provisioning resources. Each microservice performs a subset of the system's overall capabilities, and when orchestrated together, they function as a complete platform.
When CONNECT data services is turned on in a folder for a tenant in CONNECT, a new set of microservices and all the necessary data storage is provisioned for that folder/namespace. As the tenant's needs for the namespace grow, CONNECT data services automatically provisions additional microservices and storage so the namespace can expand horizontally. Similarly, if requirements shrink, CONNECT data services can reduce the number of required microservices and de-allocate storage.
Interruption resilience
To prevent data interruptions or loss, CONNECT data services incorporates many safeguards and is designed for high availability. You are not required to perform any specific actions to ensure continuous access to reliable, distributed data storage.
CONNECT data services is continuously tested to ensure the platform is performing reliably. Both the platform and the underlying operating systems are updated regularly. In addition, frequent threat analyses are conducted to thwart potential exploitations. Load balancing precludes distributed denial of service attacks. A gateway prevents unauthorized access to resources.
Service description
For more information on operational topics relating to CONNECT data services, such as data ownership, data privacy, database backup and redundancy, see the CONNECT data services Service Description.