Skip to main content

Enterprise Architecture

Three planes.
One protocol.

CH VPN deploys as a federated hub-and-spoke with mesh bridges. The unit of administration is the tenant. The unit of trust is the certificate. The unit of operation is the plane: hub for peer sessions, mesh for inter-clinic bridges, corporate for anycast egress.

10,000+ clinics1M+ peers30 corporate gateways

Hub Plane

Where peers terminate.

Each tenant runs one or more clinic hubs (or shares a regional hub for very small tenants). Hubs accept up to 8,000 active peers per process, 64,000 per clinic server via horizontal fan-out. They route PHI to the clinic EHR, lab connectors, and tenant-local services.

8,000
Peers per hub process
Hard ceiling per process; horizontal fan-out beyond.
64,000
Peers per clinic server
Multi-process per server. Linear scale to that ceiling.
24h
Endpoint cert rotation
Patient devices, clinician laptops, provider phones rotate daily.

Mesh Plane

Bridges between clinics.

Clinics with clinical co-management, emergency overflow, or shared specialist pools establish permanent site-to-site bridges. Each bridge is authenticated peer-to-peer under CH Authority-issued certificates, configured by policy at the Authority, and audited centrally.

Corporate Plane

Anycast egress.

Every clinic maintains one or more uplinks to the CH corporate gateway mesh. Corporate handles aggregate telemetry, audit egress, authority traffic, cloud backup, and the reinsurance/claims pipeline. Gateways operate in an anycast-ready cluster so clinics never re-provision when regional load shifts.

~30
Global gateways
Geographically sharded. Anycast routing.
30d
Gateway cert rotation
HSM-backed; longer cadence than endpoints.

Six Peer Roles

Six rotation cadences.

Every peer is one of six canonical roles. Each has its own provisioning, rotation cadence, plane membership, and telemetry shape.

Role
Platform
Rotation
PatientDevice
iOS · Android consumer
24h
ProviderPhone
Android Device-Owner
24h
ClinicianLaptop
macOS · Windows
24h
ClinicHubNode
Linux (systemd)
7d
CorporateGateway
Linux (HSM cluster)
30d
SpecialistContractor
macOS · Windows
8h