Overview
Each change follows one outbound path. Every platform read is controlled.
Changes flow from the core system into the ODS. Applications and people read through MDDV. CAM limits each request to permitted rows and fields. CAM keeps the audit trail of the decision; LogSink keeps the activity log.
Already on site
Core system
The system of record. Its code and processes are not modified. Read workloads move away from its database.
Data foundation · built with the client
Kafka
Carries every captured change as an ordered event from the core system to the ODS. Existing open-source technology, installed and configured.
Data foundation · built with the client
ODS
PostgreSQL operational data store. A near real-time replica of the core system data that consumers need. Built jointly with the client's team.
ODS page →
Perikle product · access rights
CAM
Decides which rows and which fields each user may read. Rules are managed in one place and applied to every read, including totals and exports.
CAM page →
Perikle product · access API and application
MDDV
Publishes ODS tables as a REST API and as a web application. Resources and screens are defined in configuration, not developed one by one.
MDDV page →
Perikle product · activity log
LogSink
Central, searchable record of what each component did, including the ODS replication process. Best-effort by design: it never blocks a response. The audit trail of access decisions is CAM’s and has the opposite rule.
LogSink page →
Already on site
External identity
Users sign in with Windows (Active Directory) or OAuth2. The platform does not introduce a separate user directory.
Already on site
Consumers
Internal applications, integrations and reporting tools use the REST API. Business users work in the browser. Both see the same data under the same rights.
Built with the client
Kafka and the PostgreSQL ODS. Existing open-source technology, installed and configured together with the client's team. Nothing proprietary in this layer.
Perikle products
MDDV, CAM and LogSink. Installed on top of the ODS. Together with it they form the complete platform.
Already on site
The core system, the identity provider and the consumers. None of them is replaced.