Skip to content
CBN data localisation deadline, 1 Jan 2027: 99d 00h 31m left.Talk to us
NuxFamily

Give your developers the cloud experience without giving away your data.

On-premises PaaS and developer platforms for Nigerian banks

Tanzu Platform for Cloud Foundry, Cloud Foundry OSS, Korifi and Backstage, running on your Kubernetes and private cloud. Developers push code; the platform handles builds, routing, scaling and compliance inside Nigeria.

  • Tanzu Platform for Cloud Foundry
  • Cloud Foundry OSS
  • Korifi
  • Backstage

The technologies we cover

Products in this family

  • Tanzu Platform for Cloud Foundry

    Commercial Cloud Foundry distribution with buildpacks, service brokers and lifecycle tooling for regulated estates.

    Private cloudAir-gapped

    Official support

  • Cloud Foundry OSS

    The open-source application platform behind cf push, deployed with BOSH on vSphere, OpenStack or KVM.

    Private cloudAir-gapped

    Official support

  • Korifi

    Cloud Foundry developer experience implemented natively on Kubernetes, without BOSH.

    Private cloudAir-gapped

    Official support

  • Backstage

    Open-source developer portal: software catalogue, golden-path templates and documentation in one place.

    Private cloudAir-gapped

    Official support

  • Cloud Native Buildpacks

    Reproducible container images built from source, with patched base layers and an SBOM for every build.

    Private cloudAir-gapped

    Official support

Why it matters for data localisation

Where this family meets the CBN directive

When a bank moves its payment applications out of a foreign cloud to comply with the CBN directive before 1 January 2027, the risk is not only technical but organisational. Developers who have grown used to a platform-as-a-service on a hyperscaler will resist a return to tickets and hand-built servers, and shadow deployments abroad become a compliance exposure.

The journey with NuxFamily

  1. 01Assess
  2. 02Design
  3. 03Build
  4. 04Migrate
  5. 05Operate
  6. 06Evolve

Every family is delivered through the same six-stage journey, with official 24×7 support and knowledge transfer built in.

Our expertise

Credentials, not adjectives

This team has run Cloud Foundry foundations for European banks and insurers since Pivotal Cloud Foundry, through the transition to Tanzu and to Kubernetes-native Korifi. We have operated platforms serving hundreds of developers with thousands of application instances, integrated them with HSM-backed credential stores and regulated CI/CD, and built Backstage portals that became the system of record for application ownership. The same platform engineering practice is now available in Nigeria.

Sectors

  • Banking
  • Insurance
  • Retail
  • Industry

10+

Years with these technologies

25+

Production deployments

2,500+ application instances on one Cloud Foundry foundation

Largest scale delivered

Official vendor support

Support tiers for this family

Essential

Coverage
8×5, Nigeria business hours
P1 response
4 h
  • Corrective support for the Cloud Foundry or Korifi control plane, routers, cells and service brokers
  • Access to the NuxFamily knowledge base and buildpack guidance
  • Security patches for platform components, stemcells and buildpacks

Business

Coverage
24×7
P1 response
1 h
  • Everything in Essential
  • Proactive monitoring of platform health, capacity and application error rates
  • Quarterly health checks including quota, broker and buildpack currency review
  • Managed version lifecycle for the platform, buildpacks and Backstage plugins

Mission Critical

Most chosen
Coverage
24×7 with a named engineer
P1 response
15 min
  • Everything in Business
  • Named platform engineer who knows your foundations and developer teams
  • Architecture review and platform roadmap alignment
  • Major upgrade support (for example Tanzu Platform major releases, Korifi and Kubernetes version steps)
  • Support during CBN audits with platform logs and catalogue exports

CVE commitment

Version policy

Response times and tier names are indicative and confirmed contractually.

Use cases

How it is used in a regulated bank

Use case 01

Self-service for the bank's development teams

A bank with twenty application teams wants each team to deploy without waiting on infrastructure tickets, while security keeps control of what runs in production. The path from cf push to a running service must be the same for every team, with quotas that stop one team from starving another and isolation that keeps the payment perimeter separate.

Technologies

  • Tanzu Platform for Cloud Foundry
  • Korifi
  • Cloud Native Buildpacks
  • Open Service Broker API

Expected outcome

Teams deploy in minutes without infrastructure tickets, and security keeps a single control point for images, credentials and routes. Platform quotas and isolation segments make the tenancy model visible to auditors.

Metric: Time from cf push to a running service under 5 minutes; onboarding of a new team in one day

Self-service for the bank's development teamsA bank with twenty application teams wants each team to deploy without waiting on infrastructure tickets, while security keeps control of what runs in production. The path from cf push to a running service must be the same for every team, with quotas that stop one team from starving another and isolation that keeps the payment perimeter separate. Teams deploy in minutes without infrastructure tickets, and security keeps a single control point for images, credentials and routes. Platform quotas and isolation segments make the tenancy model visible to auditors.1Onboard the teamOrgs & spaces2cf pushcf CLI3Build the imageBuildpacks4Bind servicesService brokers5Route and scaleRouter + autoscaler6Isolate the payment tierIsolation segments7Log and auditAudit events
  1. 1Onboard the team. Create the org and spaces with quotas and map the team's directory group to platform roles.
  2. 2cf push. The developer pushes source code; the platform detects the language and selects a buildpack.
  3. 3Build the image. A reproducible image is built from a patched base layer, with an SBOM recorded for the build.
  4. 4Bind services. The app binds to a database and a queue provisioned by brokers on the local data layer.
  5. 5Route and scale. The platform assigns a route, health-checks the instances and scales on demand within the quota.
  6. 6Isolate the payment tier. Payment apps land on an isolation segment with dedicated cells and network egress rules.
  7. 7Log and audit. Every push, scale and bind event is written to the audit stream and the SIEM.

Use case 02

Modernising core applications without a rewrite

Use case 03

Internal service catalogue

Reference architecture

What a compliant deployment looks like

Developer platform on Kubernetes and private cloud, with brokered data servicesSovereign core componentsPlatform servicesLegacy, being retired

Migration path

From where you are to a compliant platform

  1. 01

    2-3 weeks

    Assess

    Activities

    • Inventory of applications, languages, frameworks and their cloud PaaS dependencies
    • Developer workflow interviews and measurement of current lead time
    • Choice between Tanzu Platform, Cloud Foundry OSS and Korifi based on estate and skills
    • Classification of applications against the CBN scope
  2. 02

    3-4 weeks

    Design

    Activities

    • Foundation topology, isolation segments and quota model per org
    • Buildpack set, base images and image signing policy
    • Service broker catalogue and integration with the data platform
    • Identity, secrets and audit log integration
  3. 03

    4-6 weeks

    Build

    Activities

    • Deploy the platform on the Kubernetes and virtualization foundation, including the air-gapped variant where required
    • Deploy Backstage with the catalogue, golden-path templates and documentation
    • Register brokers, configure isolation segments and integrate CI/CD
    • Platform hardening, load test and developer pilot with two teams
  4. 04

    6-10 weeks

    Migrate

    Activities

    • Onboard teams in waves with training and templates
    • Push applications, bind local services and run in parallel with the cloud PaaS
    • Traffic switch per application and decommissioning of the foreign platform
  5. 05

    Ongoing

    Operate

    Activities

    • 24×7 support, patching, buildpack and platform lifecycle
    • Quarterly platform reviews with developer feedback
    • Knowledge transfer to the bank's platform engineering team

FAQ

Questions architects ask us

Cloud Foundry remains the most complete cf push experience for teams that want to deploy code without managing containers, and it is maintained by the Cloud Foundry Foundation with commercial backing from Broadcom through Tanzu Platform. Korifi brings that same developer contract onto Kubernetes, so an institution can standardise on Kubernetes underneath while keeping the platform workflow. We support both paths and help you choose based on your estate.

Over two decades

Built by the team behind the platforms of Santander, ING, Bankinter, Mapfre and Inditex

More than twenty years designing, building and operating private clouds for institutions that cannot afford to fail, and a delivery model where we stay with you from assessment to operation.

See our track record

20+

Years building private clouds

40+

Private clouds delivered

Talk to an architect about this family

Tell us where you are today and we will come back with a first view of the target architecture and the migration path.

No mailing lists, no automated follow-ups. We reply personally within one working day.