The enforcement of digital sovereignty mandates, specifically Indonesia's Government Regulation No. 71 of 2019, necessitates the adoption of private cloud infrastructures that facilitate strict data localization; however, traditional bare-metal deployments may exhibit less flexibility, while typical containerized solutions may not fully address the database integrity required for institutional scale1. This study proposes a secure, containerized self-hosted cloud architecture integrating Nextcloud, PostgreSQL, and Docker, secured via a Zero Trust Network Access (ZTNA) tunnel to achieve a "Closed-Default" security posture. To evaluate this architecture, the system was validated against a traditional bare-metal LAPP (Linux, Apache, PostgreSQL, PHP) stack using a novel Resource Efficiency Index (REI) designed to quantify the computational overhead of compliance alongside network throughput analysis over 50 iterations. Empirical results indicate that while the containerized architecture incurs a tangible virtualization overhead, resulting in a lower Resource Efficiency Index (69.44 vs. 83.51), it maintains statistical performance parity in network throughput (p > 0.05). Furthermore, the proposed architecture achieves superior CPU optimization (0.97% vs. 1.15%) and structurally reduces external attack surfaces. These findings provide a compliant, reproducible blueprint for Indonesian institutions, demonstrating that.
Copyrights © 2026