> ## Documentation Index
> Fetch the complete documentation index at: https://hmis-docs.derrickmugabwa.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# OIE deployment

> Deploy OIE alongside HMIS without exposing clinical credentials to analyzers.

## Compose topology

OIE runs in the existing Compose stack with a pinned OIE engine image, a dedicated OIE PostgreSQL service and persistent volume, and internal traffic to HMIS through the Compose network.

## Security requirements

* Expose analyzer listener ports only to the laboratory VLAN.
* Keep OIE administration off public networks.
* Create dedicated Sanctum tokens with minimum abilities.
* Rotate any token that has been exposed in logs, screenshots, or chat.
* Back up OIE channel exports after every tested change.
