System Design Roadmap 08 - Reliability and Security Patterns

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/16

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 1:34 AM on 7/23/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

17 Terms

1
New cards
Reliability pattern goal
Keep the system correct and useful despite partial failure, overload, dependency outages, bugs, and deploy mistakes.
2
New cards
Deployment stamps
Deploy identical isolated copies of an app stack for tenants/regions/scale units. Limits blast radius and simplifies repeated rollout.
3
New cards
Geodes
Deploy active workloads across geographic regions so users route to nearby healthy regions and regional failures do not take down the whole service.
4
New cards
Health endpoint monitoring pattern
Expose endpoints that report service and dependency readiness. Load balancers and orchestrators use them to remove unhealthy instances.
5
New cards
Throttling
Limit request rate or concurrency to protect services. Can be per user, tenant, IP, API key, endpoint, or global.
6
New cards
Bulkhead
Partition resources so one failing area cannot consume everything. Examples: separate thread pools, connection pools, queues, tenants, or regions.
7
New cards
Circuit breaker
Stop calling a failing dependency temporarily after error thresholds. Prevents cascading failure and gives dependencies time to recover.
8
New cards
Compensating transaction
Undo or counteract earlier steps when a distributed workflow cannot use a single transaction. Example: refund after failed booking fulfillment.
9
New cards
Retry pattern
Repeat failed transient operations with limits, exponential backoff, and jitter. Use only for retryable errors and idempotent operations.
10
New cards
Scheduler Agent Supervisor
Coordinate scheduled/distributed work with an agent and supervisor that track progress, retries, and failure handling.
11
New cards
Leader election
Choose one active coordinator among replicas for work that must happen once. Needs leases/timeouts to avoid split-brain leaders.
12
New cards
High availability vs resiliency
High availability focuses on staying up. Resiliency focuses on absorbing and recovering from failures gracefully. They overlap but are not identical.
13
New cards
Federated identity
Trust an external identity provider so users authenticate once and apps rely on tokens/claims. Requires token validation and least privilege.
14
New cards
Gatekeeper pattern
A protected component validates, sanitizes, and controls access before requests reach sensitive services. Useful at boundaries.
15
New cards
Security design basics
Authenticate users/services, authorize least privilege, encrypt in transit/at rest, validate input, audit critical actions, and isolate blast radius.
16
New cards
Secrets management
Store secrets outside code, rotate them, restrict access, audit use, and avoid exposing them in logs, builds, client bundles, or configs.
17
New cards
Rate limiting for abuse control
Limits brute force, scraping, spam, and accidental overload. Combine limits with authentication, reputation, quotas, and monitoring.