Compute
High-performance, scalable computing resources for your critical workloads. Orchestrate your cloud-native applications with our modern container solutions.
Discover the Calcul offer
Dedicated servers
VM Instances
An on-demand, flexible and secure virtual machine solution on a shared infrastructure.
OpenSource IaaS
Open source virtualised infrastructure in a trusted SecNumCloud-qualified cloud environment for complete technological sovereignty.
VMWare IaaS
Your VMware virtual machines in a trusted SecNumCloud-qualified and HDS-certified cloud environment.
Containers
Openshift PaaS
The unified platform for creating, modernising and deploying your large-scale applications in a sovereign cloud.
Managed Kubernetes
Managed container orchestration solution offering security, resilience and advanced automation on sovereign infrastructure.
Bare Metal
Bare Metal
Dedicated, fully customisable servers for total autonomy over your sovereign infrastructure.
Storage
Adaptable, high-performance storage solutions for all your needs. Optimise your data with our highly available block and object solutions.
Discover our Storage offer
Storage
Block storage
The adaptable block storage solution for optimum storage performance in a sovereign cloud.
Object storage
The scalable, cost-effective storage solution for your unstructured data in a sovereign cloud.
Backup
Backup solutions
Differentiated backup solutions tailored to your challenges and environments
Network
Advanced network solutions to connect and secure your infrastructures. Deploy your private networks automatically and securely.
Discover the Network offer
Network
Virtual Private Cloud
Deploy and manage your private networks 100% automatically and securely.
Private Backbone
Take full control of your network with extended Layer 2 connectivity, designed for hybrid architectures and bespoke configurations.
Firewall
Managed Firewall
Advanced security solutions for complete insulation and enhanced protection
Accommodation Dry
Housing - Dedicated space
Secure hosting for your equipment in a dedicated or shared environment, depending on your needs.
Security
Advanced security solutions to protect your critical infrastructures. Control access and defend against online threats.
Discover the Security offer
Security
Anti DDoS
The shield against online attacks
Bastion host
Transparent, centralised access control for robust protection of your infrastructure
Managed KMS
Sovereign cryptographic key management, with HSM hardware root of trust, to protect your most sensitive data on SecNumCloud infrastructure.
Managed SIEM
A centralised platform for collecting and correlating security logs, combining AI-based automation and advanced detection rules (MITRE ATT&CK).
IA
Artificial intelligence solutions to transform your data into insights and accelerate your business processes.
Discover the IA offer
IA
LLMaaS
Access cutting-edge language models on a sovereign, SecNumCloud-qualified and HDS-certified infrastructure for high-performance, secure AI applications.
GPU
NVIDIA GPU instances to accelerate your artificial intelligence and high-performance computing in a sovereign cloud.
Data
Data solutions to manage, analyse and exploit your critical data.
Discover the Data offer
Databases
Managed MariaDB
A fully managed MariaDB relational database and PITR backup on SecNumCloud sovereign infrastructure.
Managed PostGreSQL
The fully managed relational database solution on SecNumCloud sovereign infrastructure
Big Data
Managed Kafka
The open-source distributed platform for streaming data in real time
Managed File System
A managed, sovereign, high-availability distributed file system, accessible via NFS and SMB on the SecNumCloud infrastructure.
Management & Governance
Coaching and support services to help you with your cloud transformation.
Find out about our support services
Support
Support levels
Discover the 3 levels of support available to help you meet your challenges.
Professional services
From design to optimisation, Cloud Temple is with you every step of the way.
Governance
Console - API - Terraform Provider
A single interface for viewing and managing your products and services
Observability
Infrastructure metrics available in market standards
Data

Managed PostGreSQL

PostgreSQL advanced relational database, fully managed, high availability multi-AZ with CloudNativePG operator, PITR and a rich ecosystem of extensions (PostGIS, pg_vector, TimescaleDB) on SecNumCloud sovereign infrastructure.

The fundamentals of the Managed PostGreSQL offering

The service Managed PostgreSQL is a fully managed open-source PostgreSQL relational database deployed on Cloud Temple's sovereign SecNumCloud infrastructure. Based on the latest stable version of PostgreSQL Community and the Kubernetes operator CloudNativePG, This service guarantees automatic failover, configurable replication (synchronous or asynchronous) and transaction-accurate point-in-time recovery (PITR).

Each cluster is deployed in a dedicated customer environment. In production, operator CloudNativePG orchestrates the entire lifecycle of the PostgreSQL cluster, including automatic leader election and standby promotion, guaranteeing continuity of service without human intervention in the event of failure.

Our compliance procedures

Our Managed PostGreSQL offering is HDS and ISO 27001 certified, and available on SecNumCloud-qualified and C5-compliant services.

The benefits of Cloud Temple's Managed PostGreSQL offering

A base that won't fall off

Automatic high availability
Guarantee continuity of service with a failover orchestrated by CloudNativePG in less than 30 seconds, totally transparent for your applications.

Zero losses, even in production

RPO = 0 with synchronous replication
Secure every transaction with native synchronous replication, ensuring that no validated data can be lost in a multi-AZ environment.

Come back exactly before the incident

PITR to the second
Restore your data with precision thanks to the continuous archiving of WALs on Object Storage, essential for meeting compliance requirements.

A base tailored to your needs

PostgreSQL power and flexibility
Use an engine capable of managing both relational and advanced uses (JSONB, geospatial, vector-based), enhanced by a vast ecosystem of extensions.

Key features of the PostGreSQL offering

CloudNativePG (automatic HA)
Orchestration of the entire PostgreSQL lifecycle on Kubernetes. Automatic leader election, standby promotion, replica reconfiguration - failover without human intervention in < 30 seconds.

PgBouncer (connection pool)
High-availability lightweight connection proxy (active/active x2). Transaction pooling: application connections are multiplexed, reducing the load on PostgreSQL (essential because PG is process-per-connection).

Point-in-Time Recovery (PITR)
Restore at any time via the CloudNativePG operator: continuous WAL archiving on Object Storage S3 + scheduled full backups. Accuracy per transaction.

Automatic back-ups
Full, differential and incremental backups managed by CloudNativePG. Hot backup without interruption. Encrypted storage on Object Storage Cloud Temple.

JSONB (Native Document Store)
Storage and indexing of binary JSON data with GIN operators. JSON attribute queries, partial indexing, JSON aggregation functions - without a separate NoSQL database.

Row-Level Security (RLS)
Data access control at line level via SQL policies (CREATE POLICY). Data isolation by tenant without application modification - ideal for multi-tenant SaaS.

Extensions (PostGIS, pg_vector...)
Catalogue of pre-installed extensions that can be activated on demand: PostGIS (geospatial), pg_vector (IA embeddings), TimescaleDB (time series), pg_partman (partitioning), pgcrypto, pg_trgm, pg_stat_statements, uuid-ossp.

Native partitioning
PostgreSQL declarative partitioning by range, list or hash. pg_partman for automatic partition management (rotation, purging). Essential for large tables.

TLS 1.3 encryption
Encryption of all client-PostgreSQL connections (via PgBouncer) and inter-node replication (WAL streaming). X.509 certificates managed by Cloud Temple.

Encryption at rest
AES-256 encryption of PostgreSQL data volumes and CloudNativePG-managed backups stored on Object Storage.

Streaming Replication
Physical replication (WAL streaming) of data from the Primary to the Standbys. Synchronous mode (synchronous_standby_names=1) in production for RPO = 0.

Insulation by dedicated instance
Each customer has its own PostgreSQL cluster on a dedicated infrastructure, with an isolated private network. No sharing of data between customers.

Technical specifications

Managed PostGreSQL
High availability Multi-AZ architecture - 1 Primary + 2 Standbys (1/AZ)
RPO production (replication sync) 0 transaction (synchronous_standby_names=1)
PITR Point-in-Time Recovery up to the last archived transaction
Sovereignty Hosting 100% France, SecNumCloud 3.2
Supported versions PostgreSQL 16 (EOL 2028), PostgreSQL 17 (EOL 2029)
Ecosystem extensions PostGIS, pg_vector, TimescaleDB, pg_partman, pgcrypto...

Do you have a cloud-native application project, an AI project or a critical database? Let's talk.

Whether you need to store AI embeddings with the pg_vector extension, manage geospatial data with PostGIS, isolate your SaaS customers' data using Row-Level Security (RLS), or guarantee an RPO=0 thanks to the CloudNativePG operator in multi-AZ, our data experts are there to help you. We'll help you size your cluster, choose your extensions and configure your network isolation on our SecNumCloud cloud.

Share your project details with us using this form: we'll get back to you quickly to design the PostgreSQL architecture that meets your performance and sovereignty requirements.

Merci de confirmer que vous n’êtes pas un robot
I consent to Cloud Temple storing and processing the personal information submitted above in order to respond accurately to my request. * mandatory fields

Use cases

Managed PostGreSQL sovereign Cloud Temple product for multi-tenant SaaS

Multi-tenant SaaS application (RLS)

Context : A B2B SaaS platform must guarantee strict isolation of data between its customers, without complicating the application code.

Solution: Use of Row-Level Security (RLS) on Managed PostgreSQL, automatically filtering data according to connection identity.

Profit : Native, secure data isolation, with no complex application logic to maintain.

Cloud Temple's Managed PostGreSQL sovereign product for API rest

REST API with hybrid JSON data

Context : An API application must manage both structured data (users, transactions) and flexible data (variable metadata).

Solution: Combined storage in Managed PostgreSQL using the JSONB format, avoiding the need for a NoSQL database.

Profit : A simplified, high-performance architecture, with flexibility and data consistency in a single engine.

Cloud Temple's sovereign Managed PostGreSQL product for AWS RDS migrations

Migration from AWS RDS PostgreSQL

Context : A company wants to repatriate its PostgreSQL data from AWS to address issues of sovereignty and cost control.

Solution: Migration to Managed PostgreSQL via pg_dump/pg_restore or logical replication for uninterrupted hot migration.

Profit : Smooth, seamless repatriation, with full compatibility and rapid resumption of services.

Frequently asked questions

No, the network is totally isolated. 

To guarantee maximum security, access to your PostgreSQL instances (via the PgBouncer pooler) is only possible from your Cloud Temple private network (IPsec VPN or dedicated interconnection). No public IP address is assigned to your database.

Completely automatically, thanks to CloudNativePG.

In a production environment (multi-AZ), we are deploying a Primary node and two Standbys nodes (one per datacenter). Orchestration is entrusted to the Kubernetes CloudNativePG operator. In the event of failure of the Primary, the operator automatically elects a Standby and redirects application traffic in less than 30 seconds, without any human intervention. With synchronous replication enabled (synchronous_standby_names=1), no confirmed transaction can be lost (RPO = 0).

Thanks to multiplexing with PgBouncer.

As PostgreSQL uses a process-per-connection model, too many simultaneous connections can saturate its resources. To avoid this, our service natively includes the PgBouncer proxy configured for transaction pooling. It multiplexes your numerous application connections to a reduced number of real connections on PostgreSQL, optimising performance.

Yes, a rich ecosystem of extensions is available.

The service allows you to activate the most popular community extensions on demand to meet your specialist use cases without the need for an additional server. These include PostGIS (geospatial data), pg_vector (vector similarity search for AI/RAG), pg_partman (partitioning) and TimescaleDB (time series, on request). The pg_stat_statements extension (performance statistics) is activated by default.

Native reversibility without locking.

You retain full ownership of your data. If you leave, reversibility is guaranteed by the Data Act: you can extract your data continuously via standard SQL dumps (pg_dump), or retrieve a free physical export (CloudNativePG backup) within 15 days. Once you have cancelled, we will securely erase your data, WALs and backups within 7 days.

Can't find the answer to your question?
Contact our teams
Contact us
Cookie policy

We use cookies to give you the best possible experience on our site, but we do not collect any personal data.

Audience measurement services, which are necessary for the operation and improvement of our site, do not allow you to be identified personally. However, you have the option of objecting to their use.

For more information, see our privacy policy.