Terminology
2185 terms, tools, patterns and metrics an architect is expected to use precisely. Each one gets a short explanation of what it is, and — where it matters — what it is commonly confused with. Search filters as you type; the column headers sort.
All areas2185
Architecture Fundamentals77
Distributed Systems107
Data Architecture110
Cloud Architecture89
Networking88
API & Integration Architecture82
Reliability & Resilience75
Observability70
Performance & Capacity Engineering72
Security Architecture81
Cost Architecture & FinOps66
Business Architecture67
Architecture Communication67
Enterprise Architecture66
Legacy Modernization66
AI-Era Architecture69
Software Architecture & Engineering71
Architecture Patterns71
Architecture Decision-Making63
The Architect's Meta-Skills61
Delivery & Release Engineering66
Platform Engineering & Developer Experience70
Testing & Quality Architecture66
Data Platform Architecture64
Streaming & Real-Time Data69
Data Governance & Semantics69
Frontend & Experience Architecture66
Edge, Mobile & IoT68
Regulatory & Data Protection Architecture65
Assurance, Audit & Model Risk64
12 terms shown.
| Term | Kind | Topic | What it is |
|---|---|---|---|
| Cache Key Completeness | practice | Reverse Proxies | The requirement that a cache key capture every input varying the response - the property whose violation turns a caching bug into a data leak. |
| Certificate Lifecycle Management | practice | TLS & Certificates | Issuing, deploying, monitoring and renewing certificates automatically, because manual tracking reliably produces outages. |
| CIDR Planning | practice | VPC Design | Allocating non-overlapping address ranges across an estate in advance, because ranges cannot be resized and overlaps prevent connectivity. |
| Content Purge Path Takedown Propagation, Cache Purge SLA | practice | Content Delivery Networks | A separate, fast, fail-closed mechanism for removing content from every cache tier, which is what allows long TTLs everywhere else without making removal impossible. |
| Default Deny | practice | Firewalls & Security Groups | A firewall posture in which nothing is permitted unless explicitly allowed, as opposed to blocking known-bad traffic. |
| DNS TTL Strategy | practice | DNS | Choosing record lifetimes to balance failover speed against query volume, knowing that resolvers and clients do not reliably honour them. |
| Origin Shield Parent Cache, Mid-Tier Cache | practice | Content Delivery Networks | An intermediate cache tier between edge locations and origin, so that hundreds of simultaneous edge misses become a handful of origin requests. |
| Route Origin Validation ROV, RPKI Origin Validation | practice | Routing & BGP | Checking a BGP announcement's origin against a signed authorisation before accepting it, so a more specific prefix announced by the wrong network is dropped instead of winning. |
| Subnet Sizing | practice | Subnetting | Choosing subnet prefix lengths with enough headroom, given that subnets cannot be resized and cloud providers reserve several addresses in each. |
| Subnetting and Address Planning | practice | Subnetting | Dividing address space across zones and tiers, and the exhaustion failures that appear only at container density. |
| Trust Boundary Classification Where mTLS Is Required, Encryption Scope | practice | TLS & Certificates | Writing down which network segments count as trust boundaries, so that mutual TLS is applied where it changes the security posture rather than uniformly or by intuition. |
| VPC Design | practice | VPC Design | How virtual networks, subnets and connectivity are structured — decisions that are cheap now and extremely expensive to change later. |
Nothing on this page matches. Search the whole glossary.