Skip to content

Operator guide

For the person who installs Kosmos and keeps it running for a firm.

A new server goes in this order: install, configure outgoing email (nobody can sign in without it), then add the integrations the firm uses, then set up backups and monitoring before real work begins.

Install

  • Install with the script: one command for a development machine or a production server, and what it changes on the machine.
  • Install by hand: every step the script performs, for other platforms or for repairing a partial install.
  • Configuration: the config/.env file and its two templates.

The systemd, nginx and gunicorn templates are documented beside the files themselves, in deploy/README.md.

Integrations

Each integration stays off until it is configured.

Operate

Access and security

  • Users and permissions: sign-in, roles, the permission switches and what each one gates.
  • Security checklist: what to check before the server holds real client data, and what the code does and does not do for you.

Reference

Environment variables, management commands and scheduled jobs are generated from the code. The permissions matrix lists every access check and where it lives.