Skip to content
LEF Docs
My LEF
Kanban
Vault
GitHub
Editors
Search
Ctrl
K
Cancel
GitHub
LinkedIn
LEF Knowledge Hub
Start here
Overview
How to use the docs
Onboarding
Overview
Trainee onboarding
Deep dives
Overview
Why LEF
What we deliver
How we work
Overview
LEF
collaborators
Overview
Solution Engineer
Trainees
How we work
Policies
Overview
access
Overview
Access Control Policy
continuity
Overview
Business Continuity and Disaster Recovery Plan
Backup and Recovery Policy
data
Overview
Information Classification Policy
Data Retention and Deletion Policy
governance
Overview
ISMS scope (draft)
Information security policy (draft)
Information security objectives (draft)
Document control (draft)
ISMS internal audit (draft)
ISMS management review (draft)
Nonconformity and corrective action (draft)
people
Overview
NDA Defaults
risk
Overview
Risk management methodology (draft)
Risk register (template)
Statement of Applicability (SoA) (template)
suppliers
Overview
Supplier security policy (draft)
iso-27001
ISO 27001 readiness
compliance
Compliance & alignment
operations
Overview
Engineering
Overview
Manifesto
guidelines
Guidelines
Coding guidelines
Reusable functions and views
Secure development (draft)
reference
Reference
Change management (draft)
Table history (auditing)
Architecture
Overview
Principles & Guidelines
System archetypes
Overview
Sales enablement
Thinkwise environment
Report App environment
Container archetypes
Overview
GUI
Middleware
Database
Storage
Connector
Infra enablers
Overview
Identity & authentication
Network access (VPN)
DNS
TLS & certificates
Reverse proxy
DB endpoints
Storage endpoints
Aspects
Overview
Service aspect
Development aspect
Delivery aspect
Operational management aspect
Security aspect
Platforms & services
Overview
Services
Overview
engineering
Uptime Monitoring
Overview
GitHub (repos)
Reporting
Workflow Automation
office
Overview
Vault
Analytics
ChatGPT
Kanban
Microsoft 365
Wiki
Platforms
Overview
thinkwise
Overview
klippa
Overview
report-app
Overview
Infrastructure
Overview
proxy
Overview
API proxy (development)
CORS proxy
TCP proxy (DB endpoints)
services
Overview
Entra Connect (AD sync)
Certificate authority (CA)
Container Registry
Domain controller (Active Directory)
S3 (object storage)
PROD
Shared Assets
VPN
Help & support
Overview
Infrastructure
Overview
access
Overview
vpn-access
VPN access (support)
proxy
tcp-proxy
TCP proxy connectivity (support)
Overview
sql
restore-from-s3
Restore SQL Server from S3 (support)
Overview
troubleshooting
Troubleshooting
Security
Overview
Information Security Incident Response Procedure
Run & maintenance
Overview
Infrastructure
Overview
access
Overview
Firewall & public ingress
Identity & server access
VPN access (platform)
app-tiers
Overview
platform
Overview
Runtime: Wiki
Runtime: Kanban
Runtime: Workflow Automation
Runtime: Vault
Runtime: Uptime Monitoring
Runtime: Analytics
Runtime: CORS proxy
Runtime: Reporting
S3
Runtime: Container Registry
thinkwise
Overview
Runtime: Trainee platform
Runtime: Concepts
Runtime: Pivoted
Runtime: Pivot
Runtime: Solutions (dev)
Runtime: Tokio (dev)
Runtime: Credit Hub
Runtime: TokioCred
Runtime: Unimed
Runtime: Sapore
operations
Maintenance
certificates
Overview
LEF Root CA (internal)
Remote Desktop SSL
SSL certificates for web servers
containers
Overview
Containers as a Service
dns
Overview
DNS split horizon
monitoring
Overview
Uptime Kuma push monitoring (VM stats)
sql
Overview
SQL Monitoring
SQL Server → S3 backup
SQL Server on Linux performance
storage
Overview
MinIO S3 (bucket creation and access)
proxy
Overview
CORS proxy operations
NGINX ingress (public vs internal)
NGINX vhost templates
Provision a web ingress proxy (NGINX)
TCP proxy (HAProxy) operations
Virtual IPs (VIPs)
networks
Overview
Domains
Domains (run & support)
Change workflow (domains and hostnames)
Platforms
Overview
thinkwise
Overview
installation
Installation (FAQ)
upgrades
Upgrades
Security
Vulnerability Management Procedure
Overview
Reference
Overview
Glossary
Domains
Environments
Overview
clients
Overview
Solutions
DEV
Unimed
TEST
Sapore
TEST
internal
Overview
Pivot
DEV
Trainee environment
Pivoted
PROD
pre-sales
Overview
Concepts
DEV
Experience
TEST
tokio-marine
Overview
Tokio
DEV
Credit Hub
ACC
TokioCred
PROD
Infrastructure
Overview
access
Overview
Firewall & public ingress (reference)
databases
Overview
concepts.db.lef
LAB
EVEO DBaaS (SQL Server)
PROD
pivot.db.lef
DEV
pivoted.db.lef
PROD
sapore.db.lef
TEST
sicoob.db.lef
LAB
solutions.db.lef
DEV
tokio.db.lef
DEV
tokio-prod.db.lef
PROD
tools.db.lef
PROD
trainee.db.lef
DEV
unimed.db.lef
TEST
networks
Overview
Core LAN (192.168.20.0/24)
VLAN 2061 (192.168.50.0/24)
VPN client addressing (reference)
proxy
Overview
TCP proxy
servers
Overview
bare-metal
Overview
Lab
RH
external
Overview
ext.sapore.lef
Hostinger
private-cloud
Overview
Private cloud hypervisor
Alma
AL
Coragem
AL
web.core.lef (reverse proxy)
DEB
DNS
DEB
Domain Controller
WIN
Remote Desktop
WIN
Proxy (TCP)
DEB
Storage
AL
Tooling
AL
Ritmo
DEB
Tokio Marine
AL
Templates
Proxy & routing
Help & support
›
Infrastructure
›
Proxy & routing
TCP proxy connectivity
Diagnose *.db.lef connectivity via HAProxy/VIPs/DNS.