Data sovereignty
Alarms, telemetry, topology, incident history — all of it stays on your servers, in your country. The only thing that may cross the border, if you enable it, is an anonymous health heartbeat so we can honor the support SLA.
The self-hosted operations console
MODERAN Console is the operations screen for Open RAN networks — installed inside your own infrastructure, watching every vendor's equipment at once, and turning alarm floods into one explained incident with a probable root cause. Every screenshot below is the real product, photographed during a live fault.
The problem this buys out of
At 2:14 a.m. a single processing unit (a DU) stops responding at one of your sites. Every radio hanging off it loses its link and starts alarming. Every vendor's own tool shows its own slice, in its own format. Your NOC sees a wall of red and starts guessing. In Open RAN — where you deliberately mix vendors — nobody's tool sees the whole picture. That gap is what you are buying closed.
These are not marketing numbers — they are the live values from the fault captured in the screenshots below: element du-1, incident fg_79083f45af6e2a91.
How it does that
The console is the visible tip of a pipeline that runs entirely on your servers:
This is the screen on the NOC wall. Not 96 rows. One card.
One open incident: severity CRITICAL, domain RADIO, probable root cause du-1, 96 member alarms folded inside. The yellow bar is the correlator's confidence — 95%.
The line underneath is the part no competitor shows: the reasoning. "Ancestor of other affected elements · carries highest-severity alarm in group · multiple alarms on same element." Your operator knows why the system blamed du-1, not just that it did.
Mean-time-to-understand collapses from an hour of cross-referencing vendor tools to seconds. When the fault clears, the card clears. New alarms attach to the existing incident live — no refresh, no re-triage.
An explained root cause is also leverage in vendor disputes: "your DU took down twelve radios, here is the evidence chain" is a very different call than "something is wrong."
Click the card and the incident opens into everything the correlator folded together.
The header repeats the verdict — when the incident opened, when it last changed, why this root cause. Below it, every member alarm as a timestamped row: the CRITICAL DU_PROCESS_DEAD on du-1, and the chain of RU_LINK_DOWN majors it dragged down on ru-1a, ru-1b, ru-1c, second by second.
This is your audit and post-mortem record. Regulators, insurers, and vendor SLA claims all ask the same question — what happened, in what order? This table is the answer, retained with the incident.
Engineers use the timeline to confirm the failure direction: the DU died first, the radios followed. That ordering is exactly what's invisible when alarms live in four different vendor tools.
Your whole multi-vendor estate as one parent/child tree — the same map the root-cause engine reasons over.
Every element with its type, vendor, software version, and site: the RIC controller, cloud nodes, the CU, both DUs with their radios indented beneath them, and the transport ring with everything that depends on it. VendorA and VendorB sit in the same tree — that's the vendor-neutral promise made visible.
Indentation is causality: siblings sharing a parent get grouped under one fault when that parent fails. When an incident names du-1, this page shows you at a glance what else is at risk beneath it.
It's also the fastest inventory answer in the building: "which sites still run VendorA v5.2.1?" is a glance, not a spreadsheet exercise.
Every fault family ships with a step-by-step repair procedure, owned by a named team.
The starter library: "DU down or unreachable" (isolate the fault to radio, cloud or transport before paging anyone), "RIC policy ingestion lag", "transport degraded" — each with numbered steps, tags, and an owning team.
Runbooks are plain versioned files. Your engineers add their own; the console picks them up on reload — no vendor ticket, no rebuild.
The transport runbook encodes the classic Open RAN trap in its opening line: transport faults masquerade as radio faults because symptoms surface on the DU first. The procedure proves where the fault belongs before your team escalates to the wrong supplier.
This is how senior engineers' knowledge stops living in their heads and starts living in the console — your night shift inherits your best people's judgment.
A safe fault-injection panel: press a button, watch the whole pipeline respond.
Four realistic failure patterns — a DU hard-down, a RIC policy queue stall, a lone radio temperature WARNING, a transport jitter storm. Inject drives the synthetic network to emit exactly that alarm pattern; the faults screen lights up seconds later.
Three jobs in one screen: acceptance — verify your installation end-to-end before trusting it with live traffic; training — new NOC hires triage realistic incidents with zero risk; demonstration — show your own leadership the alarm-flood-to-one-card story on demand.
Et en français
Every screen ships in English and French — Incidents en cours, same data, same second. Built for teams that operate across Lagos, Accra, Dakar and Abidjan; Yoruba, Hausa and Wolof are on the roadmap.
What “self-hosted” buys you
The console and its entire pipeline install into your own Kubernetes cluster (Helm charts, or fully GitOps via Argo CD). ARGILETTE never operates a copy of your network data.
Alarms, telemetry, topology, incident history — all of it stays on your servers, in your country. The only thing that may cross the border, if you enable it, is an anonymous health heartbeat so we can honor the support SLA.
Operators sign in with your own SSO (OpenID Connect — Keycloak, Azure AD, and similar). Roles separate viewers from operators from admins; every privileged action is written to a tamper-evident audit trail.
Incidents push to Slack, Webex, or PagerDuty with per-incident cooldowns, so the on-call phone buzzes once per problem — not 96 times.
Ships with Grafana dashboards and Prometheus alert rules. If you already run a metrics stack, MODERAN joins it rather than replacing it.
If you are a bank, not a telco
Regulated enterprises (banks, insurers, hospitals, government) come into this platform through the Sovereign Edge-AI Appliance — an in-country machine that runs AI models on data that legally cannot leave the country.
A tenant view: your usage against your quota, your models, your inference calls — metered and invoiced per month. Provisioning and disabling of tenants is the operator's job, not yours.
The appliance produces a signed sovereignty attestation — cryptographic evidence that no regulated data crossed the border. Not a policy PDF; a verifiable artifact.
The appliance software refuses to start if cross-border egress is switched on without a written override reason — and if overridden, it warns loudly in the logs on every startup. Quiet exceptions are impossible by construction.
The same operations discipline you just read about — correlated incidents, runbooks, audit trails — is what keeps the appliance's host infrastructure honest. You inherit the telco-grade operational floor.
Where the console sits in the platform
The console and everything in this briefing is Layer 0 — included in the base platform fee, together with Layer 1. Layers 2 and 3 are expansion lines you switch on when ready.
| Layer | What it is | What your teams get | Commercial model |
|---|---|---|---|
| L0 Observability & fault correlation |
Everything in this briefing: the console, the correlation pipeline, runbooks, alerts, dashboards. | One screen for the whole multi-vendor network; incidents instead of alarm floods. | Included in base fee Flat annual platform fee — unlimited cells and regions in the contracted country. No per-cell metering. |
| L1 Interop assurance |
Conformance runs against specific vendor combinations, with approved baselines guarded against regressions. | Proof a vendor mix works before deployment; instant detection when a supplier's update breaks the mix. | Included in base fee |
| L2 Compute broker |
Sells your idle edge-compute capacity to paying tenants; pre-empts them the instant radio demand returns. Radio always wins. | A new revenue line from hardware you already paid for, with SLO-tracked safety. | $0 upfront — 15–25% revenue share on brokered compute. |
| L3 Sovereign edge-AI appliance |
In-country AI inference for regulated tenants, with per-tenant metering and signed sovereignty attestations. | AI revenue from banks, insurers, hospitals and government — data never leaves the country. | Per appliance one-time + per tenant per month. |
In the box
Next step
A 30-minute walkthrough: we inject the DU failure you saw above and you watch 96 alarms become one explained incident, in real time. Bring your NOC lead.
Write to sales@argilette.com or visit moderan.org