Skip to content

roadmap

JJong-03 edited this page Jun 18, 2026 · 9 revisions

로드맵

기준일: 2026-06-09 이 문서는 Aegis-Pi의 제품·기술 진행 계획을 정리한다. Wiki 개편 작업 계획은 PLAN.md에서 관리한다.

현재 요약

Phase 8 통합이 완료됐다. Data Pipeline, Graph, Reporting, Dashboard, Cloud Infra, Alerting, Snapshot, RBAC 코드는 통합됐고 여러 앱 단위 테스트도 통과했다. 남은 핵심은 Terraform provider validate 재실행, state ownership 재확인, 그리고 실제 AWS/K3s smoke test다.

완료된 범위

영역 완료 내용
Factory A Safe-Edge Raspberry Pi K3s, Longhorn, InfluxDB/Grafana, AI workload, failover/failback 기준선
Factory B/C 테스트베드 VM K3s, host dummy generator, hostPath outbox, common publisher. 데이터 플레인 검증 이력은 있으나 formal M5 checklist closure는 별도
Hub EKS Hub, ArgoCD, Tailscale, AWS Load Balancer Controller, Admin UI
Delivery GitHub Actions/ECR, Helm chart, Hub ArgoCD ApplicationSet
IoT/Data Pipeline IoT Rule, S3 raw, Lambda DataProcessor, DynamoDB LATEST/HISTORY#STATE, S3 processed
Freshness/Graph DataProcessorRefresh1m, pipeline status, GraphAggregator5m, GRAPH#5M, processed_agg
Cloud Infra Fast/Slow collectors, CLOUD#infra, Cloud Infra Dashboard read path
Reporting Step Functions, daily report Lambdas, Bedrock client, S3 reports, Dashboard report 조회
Dashboard CloudFront/S3 SPA, Cognito, ALB/ECS FastAPI, RDS metadata, Redis/WebSocket
AI Chat /chat 자연어 QA, Bedrock Resolve/Explain, Evidence 패널, 보고서/이미지 증빙 조회
RBAC RDS app user/factory/access/audit model, admin users flow, can_view_system
Alerting RiskAlertDispatcher, Slack routing, warning confirmation, cooldown/dedupe
Snapshot SnapshotPresigner, snapshot-uploader, S3 image upload, MQTT metadata
운영 스크립트 guarded build/destroy, Hub-only rebuild, protected resource policy

배포 검증 범위

범위 상태
기존 Factory A Safe-Edge failover/failback 배포 검증 완료 이력 있음
Hub build/destroy와 Admin UI SESSION_STATE.md와 운영 runbook 기준 실행·복구 기록 있음
Data pipeline 원본 흐름 원본 기준 IoT -> S3/DynamoDB 검증 이력 있음
Reporting factory-b 수동 Step Functions 실행과 Bedrock/S3 산출물 검증 이력 있음. factory-a/c와 통합본 smoke는 별도
Dashboard VPC 원본 기준 Backend/Web/Cloud Infra/RBAC/report 조회 운영 배포 이력 있음
통합본 전체 smoke 아직 미실행

운영 배포 이력과 통합본 검증은 구분한다. 이 저장소 코드는 동일 기능을 담고 있고, 남은 작업은 Terraform/state 재확인과 실환경 smoke test다.

통합본 검증 잔여 사항

우선순위 항목 이유
1 Terraform validate 재실행 provider plugin schema/handshake 로컬 문제 재확인 필요
2 Terraform state ownership 확인 apply/import/destroy 전 필수 안전 조건
3 AWS/K3s smoke test 실제 Dashboard/API/IoT/report/snapshot 동작 확인
4 Hub rebuild 이후 SlowCollector access binding 확인 Hub-only rebuild 운영 안정성 검증
5 tfplan.eks-access 같은 임시 산출물 커밋 방지 운영 스크립트 실행 후 청소 필요

후속 고도화

범주 작업
보안 SnapshotPresigner token auth 강화, WAF 도입 검토, secret 주입/회전 절차 정리
비용 report token/object count 관측, NAT/ALB/RDS/Redis 비용 기준 재측정
HA RDS Multi-AZ, Redis HA, Dashboard ECS scaling 정책 운영 검증
Runtime config Risk 계산을 runtime config와 연결, 공장별 threshold/weight 관리
데이터 확장 Timestream, Kinesis, OpenSearch는 측정 임계값 도달 시 ADR로 도입
운영성 통합 smoke test 자동화, build/destroy dry-run artefact cleanup
보고서 품질 Bedrock model id/region override 기준, report validation과 backfill 관측
권한 factory_admin/super_admin 운영 절차, audit log 검토 흐름

단계별 관점

단계 현재 판단
M0 Factory A 기준선 완료
M1 Hub 기준선 완료, 비용 최적화 후 AMP/Prometheus Agent는 retired
M2 Hub-Spoke 연결 완료
M3 Delivery pipeline 완료, 운영 검증과 workflow assumption 리뷰는 지속
M4 Data plane 구현 완료, 원본 배포 검증 이력 있음, 통합본 smoke test만 남음
M5 Factory B/C testbed 데이터 플레인/운영 검증 이력 있음, formal checklist closure는 별도. dummy data는 테스트 데이터로 해석
M6 Risk Twin/Dashboard/Report 구현 통합 완료, AI Chat 포함. 실환경 smoke test만 남음
M7 통합 검증 Phase 8 로컬 검증 완료, formal checklist closure와 실환경 통합 smoke test가 남음

관련 문서

Aegis-Pi Wiki

· 대표 문서 목록은 홈의 문서 탐색 표 참조

시작하기

요구사항

핵심 개념

아키텍처

컴포넌트 (Edge → Cloud → Dashboard)

Dashboard & 운영

시나리오 · 사례 · 참조

Clone this wiki locally