Infrastructure

A live cloud deployment with documented operational boundaries.

The public website and associated mail hostname are hosted on the same Kamatera infrastructure and form a controlled environment for administration, protocol testing, documentation, and security review.

Environment status: Public website live over HTTPS
Last public-site update: 3 August 2026
Public infrastructure inventory
ComponentCurrent roleStatus
emailinfralab.comMain public website and project identityLive
mail.emailinfralab.comPrimary mail hostname for controlled lab operationLive
114.29.239.206Kamatera server IPv4 addressActive
UbuntuServer operating environmentDeployed
NginxHTTPS website delivery and web-server layerDeployed
Stalwart Mail ServerMail-system research and controlled service testingDeployed
TLS certificatesEncrypted web and service transportInstalled
Reverse DNS / PTRIP-to-hostname identity alignmentProvider review
Expanded monitoringMetrics, logs, alerting, and capacity visibilityPlanned
Extended recovery automationRepeatable restore and disaster-recovery workflowsPlanned

Architecture layers

How the public environment is organized

01Domain and DNS

Public identity, address records, mail routing, authentication records, and reverse-DNS alignment.

02Cloud and network

Kamatera compute, public IPv4 connectivity, host firewall policy, and controlled administrative access.

03Operating system

Ubuntu service management, security updates, user permissions, logs, storage, and time synchronization.

04Web layer

Nginx serves the public website over TLS and separates public content from administrative interfaces.

05Mail layer

Stalwart supports controlled study of SMTP, mailbox services, authentication, queues, and operational behavior.

06Operations

Documentation, validation, backup, security review, monitoring, incident response, and change control.

Operational boundaries

Designed for controlled administration and research

The infrastructure is not an open relay and is not offered for anonymous or third-party sending. Administrative access is restricted, public-facing services are intentionally limited, and changes are expected to be documented and validated.

Boundary controls

  • No public SMTP relay access
  • No sale or rental of server credentials
  • No unauthorized bulk messaging
  • No phishing, malware, or credential harvesting
  • Abuse and security contacts published
  • Provider requirements and applicable law respected