STRAZAdocs

Run Straza

Deploy, expose, back up, upgrade and debug strazad in every supported shape, and stop an identity or every agent when you must.

Requirements and sizing gives the processors, memory and disk for each shape below, and Install compares the shapes in one table.

  • Standalone host runs strazad as one binary on one host with the standalone profile.

  • Docker runs a standalone server in a container with persistent storage.

  • The enterprise shape runs strazad as stateless replicas behind a load balancer with a shared database, event bus and key file.

  • Kubernetes with Helm installs strazad on Kubernetes with the Helm chart and the values that matter.

  • TLS and exposure configures HTTPS and chooses which server routes each network can reach, before clients connect from another machine.

  • Backup and upgrade backs up the state that matters, upgrades strazad without logging anyone out, and rolls back.

  • Kill-switch runbook stops one identity or every session now, and confirms the stop landed.

  • Doctor and logs diagnoses a hook or session problem from the agent machine, and a boot or endpoint problem from the server log.

  • Delegated admin gives someone admin rights over one area of Straza without handing out the root role.

  • Delegate one MCP server lets the people who own one MCP server administer it, and nothing else.

  • Metrics and alerts lists what /metrics counts and what to alert on.

Search documentation

Search page titles, commands, and article text.

↑ ↓ Choose resultEnter OpenEsc Close