Files
NexaFabric/docs/firewall-orchestration.md
nessi 14e7710120
CI / backend (push) Failing after 15s
CI / frontend (push) Failing after 39s
chore: initial project setup with backend, frontend, CI/CD, and documentation
Add complete NexaFabric project structure including:
- FastAPI backend with SQLAlchemy models, JWT auth, RBAC, audit logging, and provider interfaces
- React + TypeScript frontend with Vite, Tailwind CSS, TanStack Query, and Zustand
- Docker Compose configuration for PostgreSQL, Redis, API, worker, frontend, and nginx
- GitHub Actions and GitLab CI workflows for testing, linting, building, and security scanning
- Environment
2026-07-09 12:10:35 +02:00

17 lines
411 B
Markdown

# Firewall Orchestration
NexaFabric must never overwrite productive firewall state without operator intent.
Required lifecycle:
1. Compile policy.
2. Generate preview.
3. Detect warnings and conflicts.
4. Persist audit record.
5. Require approval for apply.
6. Acquire a cluster/node lock.
7. Apply provider-specific rules.
8. Detect drift after apply.
9. Support rollback using previous compiled versions.