diff --git a/docs/hosted.md b/docs/hosted.md new file mode 100644 index 0000000..1b8de0e --- /dev/null +++ b/docs/hosted.md @@ -0,0 +1,29 @@ +--- +sidebar_position: 5 +--- + +# Hosted CDR Link FAQ + +CDR offers hosted Link helpdesk instances managed by our deployment partner [SR2 Communications](https://www.sr2.uk/), +a trusted team within the digital rights community, with a proven track record of securely handling sensitive data. + +## Where do our hosted instances run? + +Hosted instances run on SR2's public cloud, which in turn is hosted on servers rented from Hetzner Online GmbH. +The datacenter runs on 100% green electricity +([certificate](https://cdn.hetzner.com/assets/Uploads/oekostrom-zertifikat-2025.pdf)) +and has [stringent security measures](https://www.hetzner.com/assets/Uploads/downloads/Sicherheit-en.pdf) in place +to prevent unauthorised access. +Hetzner holds an ISO 27001 certification ([certificate](https://www.hetzner.com/assets/downloads/ISO-Certificate.pdf)) +relating to the security measures in place, and there are no exclusions from the scope in regard to measures mentioned +in Annex A of ISO/IEC 27001:2022. + +
+ +
+ +SR2 exclusively and manages the servers from Scotland via mutually authenticated, end-to-end encrypted channels. +All CDR Link helpdesk data is stored on a +[LUKS-encrypted](https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/security_hardening/encrypting-block-devices-using-luks_security-hardening) +volume with a per-instance key to protect the data at rest. +Hetzner staff have physical server access, but strict controls are in place to prevent unauthorised access. diff --git a/static/img/hetzner_iso.webp b/static/img/hetzner_iso.webp new file mode 100644 index 0000000..5e64265 Binary files /dev/null and b/static/img/hetzner_iso.webp differ diff --git a/static/img/sr2_hetzner_iso.webp b/static/img/sr2_hetzner_iso.webp new file mode 100644 index 0000000..a64af78 Binary files /dev/null and b/static/img/sr2_hetzner_iso.webp differ