VMSA CTI platformos architektūrinių sprendimų indeksas.
Sprendimų sąrašas
| ADR | Pavadinimas | Statusas | Sritis |
|---|---|---|---|
| ADR-0001 | Windmill, ne n8n | Accepted | Orchestration |
| ADR-0002 | llama.cpp, ne Ollama | Accepted | Inference |
| ADR-0003 | Azure OpenAI tik EU | Accepted | Compliance |
| ADR-0004 | AI-native OpenCTI | Accepted | CTI Platform |
| ADR-0005 | Confidence: LLM 5%, deterministiniai 95% | Accepted | AI / Security |
| ADR-0006 | Thin LLM gateway kontraktas | Accepted | Architecture |
| ADR-0007 | TenableOne per OpenCTI STIX | Accepted | Vuln Mgmt |
| ADR-0008 | Cyberint tik per vietinį LLM | Accepted | Data Classification |
| ADR-0009 | KSKC per OpenCTI Organizations | Accepted | Governance |
| ADR-0010 | D3 sanitize gateway privalomas | Accepted | Trust Domains |
| ADR-0011 | Shadow mode prieš write-back | Accepted | Operations |
| ADR-0012 | GPU procurement atidėtas | Deferred | Infrastructure |
| ADR-0013 | Du repo, ne monorepo | Accepted | Governance |
| ADR-0014 | Security Copilot 60d trial | In Progress | SOC |
| ADR-0015 | Roles & responsibilities | Accepted | Governance |
Absoliutūs draudimai
- NE n8n darbo kryptyje (ADR-0001) — CVSS 9.9/10.0 RCE
- NE Ollama suvereniai inferencijai (ADR-0002) — proceso izoliacijos stoka
- NE debesijos LLM TLP:AMBER+ duomenims (ADR-0003, ADR-0008)
- NE D5 write-back be shadow mode periodo (ADR-0011)