Keep a clear public boundary
Web services receive public routes. Private services and databases are reached internally by the applications that need them.
Your web app can be public while its database and supporting services stay private. Connect Openstead services within the same environment using internal hostnames and application credentials.
Your code. Infrastructure included.
Private connections between the services in your project.
PRIVATE NETWORKING ON OPENSTEAD
A full application is more than its public URL. Give each dependency a clear role and connect it without exposing another endpoint to visitors.
Web services receive public routes. Private services and databases are reached internally by the applications that need them.
Use private connection settings for PostgreSQL, MySQL and Key Value. Keep credentials in the application environment, outside the repository.
Services in the same environment share their private network. Place the application and its dependencies together when setting up the project.
MADE FOR YOUR STACK
Use the private hostname shown in the console instead of a public domain. Your application uses its normal HTTP client or database driver to make the connection.
Internet
└─ web application :443
├─ catalog API :8080
├─ PostgreSQL :5432
└─ Key Value :6379
Worker
├─ PostgreSQL :5432
└─ Key Value :6379An example application topology. Internal service addresses and ports are shown in your console.
PUT IT TO WORK
Connect a public application to a relational database without opening a public database port.
Share a queue or cache between web services and background consumers.
Let a public service call supporting components through their internal addresses.
HOW IT WORKS
Place the application, database and supporting services in the same Openstead environment.
Copy the private hostname, port and credentials from each service into the caller’s environment settings.
Test the connection from the application and review its logs. Apply authentication and authorization to sensitive internal operations.
Application services, private services, workers and databases can communicate when they are in the same environment and configured with the correct address and credentials.
No. PostgreSQL, MySQL and Key Value use internal connection details. Custom domains are for the public web services and static sites your visitors access.
Browser JavaScript runs on the visitor’s device and cannot reach the private network. A static frontend should call an authenticated public API, which connects privately to its database.
No. Use database credentials and application authorization for sensitive operations. Private networking defines the connection path; your application controls access to its data and actions.
MAKE YOUR NEXT MOVE
Your code. Infrastructure included.