Most managed search products have one answer to “where does my data live”: in the vendor’s cloud. Lucenia is built the other way around. Four deployment models, one platform, one API — and in every one of them, your data stays inside your trust boundary.
Fully managed — provisioning, scaling, patching, uptime. Your data remains inside your trust boundary.
AWS, GCP, or Azure. The platform runs in your cloud account; we operate it. Data never leaves your perimeter.
Full platform on infrastructure you control. Tarball, Docker, Helm/Kubernetes, Windows.
No external endpoints, no egress required to operate. Built for disconnected and classified enclaves.
| Area | Detail |
|---|---|
| Cryptography | FIPS 140-2/3 validated module support, configured at the cluster level · TLS on transport and REST layers |
| Access control | role-based, down to index, document, and field level |
| Multi-tenancy | tenant isolation for shared clusters serving multiple programs or teams |
| Authentication | LDAP · Active Directory · SAML · OpenID Connect · client certificates · Kerberos |
| Audit | access and query audit trails, configurable by category and scope |
| Isolation | air-gap capable — no external endpoints, no telemetry, no egress required to operate |
| Resilience | snapshot/restore to object storage · cross-cluster replication for DR topologies |
| Supply chain | Apache 2.0 open core — the code your accreditors can read |
Every system that touches sensitive data carries its own security review, accreditation package, and sustainment burden. A conventional retrieval stack — search engine, vector database, spatial database, and the integration code between them — multiplies that burden by four and spreads the data across four copies.
Consolidating retrieval into one engine is a security decision as much as an architectural one: fewer copies to protect, fewer systems to authorize, one audit trail that covers the whole query path.
The fastest evaluations are the ones where security and engineering hear the same answers at the same time.