Infrastructure Concentration & Resilience

Resilience and compliance in one view. This grades how concentrated an organisation's infrastructure is — too much riding on one provider, one region, one data centre, one cable landing — surfacing the single points of failure that matter for resilience planning and for fourth-party risk rules like DORA and NIS2.

How it uses the graph

Traverses the DNS, BGP, physical layers of the graph, in 8 steps:

How it walks the graph8 steps
01Infrastructure spread

Resolving the hosting footprint (provider, ASN, region, country)…

DNSBGPphysical
02Physical presence: facilities & internet exchanges

Physical presence: facilities & internet exchanges…

DNSBGPphysical
03Facility co-tenancy concentration

Facility co-tenancy concentration…

DNSBGPphysical
04Estate hosting diversity (subdomain fan-out)

Estate hosting diversity (subdomain fan-out)…

DNSBGPphysical
05Data-sovereignty jurisdiction map

Data-sovereignty jurisdiction map…

DNSBGPphysical
06CDN PoP footprint roll-up

CDN PoP footprint roll-up…

DNSBGPphysical
07CDN PoPs by country

CDN PoPs by country…

DNSBGPphysical
08CDN hosting ASNs

CDN hosting ASNs…

DNSBGPphysical

Why each step runs

  1. 01Infrastructure spread. The concentration aggregator reads provider/asn/region/country to grade dependency.
  2. 02Physical presence: facilities & internet exchanges. Where the network physically sits and which exchanges it peers at; few facilities or IXes is a physical single-point-of-failure.
  3. 03Facility co-tenancy concentration. How many other networks share each of the org's buildings; high co-tenancy concentrates physical blast radius in one facility.
  4. 04Estate hosting diversity (subdomain fan-out). Distinct hosting providers and countries seen across the whole subdomain estate measures hosting fragmentation vs single-provider concentration.
  5. 05Data-sovereignty jurisdiction map. Country-of-hosting per resolved IP is the core data-sovereignty / jurisdiction signal for DORA/NIS2 review.
  6. 06CDN PoP footprint roll-up. For a CDN operator input (akamai, cloudflare, cloudfront, fastly, google-cdn, microsoft-cdn) the headline edge-footprint counts: PoPs, countries, cities, facilities and hosting ASNs.
  7. 07CDN PoPs by country. Groups the operator's PoPs by country so a few top countries holding most PoPs (thin edge across whole regions) shows as a ranked distribution.
  8. 08CDN hosting ASNs. Which autonomous systems carry the operator's PoPs and whether each resolves to a routed ASN node; a single hosting ASN is itself a concentration signal.