← Ironclad
The Ironclad Specification Request Consultation
The Ironclad Specification

The Ironclad Specification — what every module is built to.

Enclosure, shielding, power, network, and cooling — engineered as a system and integrated as one. This is our specification, not a bill of materials.


01The Ironclad Specification

We specify and integrate. We don't publish part numbers.

Ironclad builds hardened, self-powered, relocatable compute modules. What follows is the standard every module is built and tested to — the performance envelope, the construction standard, and the operating boundary. Suppliers are selected and integrated by Ironclad; we describe what the module does, not whose parts are inside it.

Enclosure
Hardened welded-steel modular enclosure, rated to 250 mph wind and engineered for seismic loading. Built as a structure, not a repurposed shipping box.
Shielding
HEMP shielded. Electromagnetic protection is designed into the enclosure envelope rather than added as an interior cage.
Construction standard
Built to US classified-facility construction standards — the construction discipline, inspection regime, and documentation that standard requires.
Integration & test
Factory-integrated and fully tested in the United States before shipment. The module arrives commissioned, not assembled on site from crates.
Siting
Relocatable by design — a pad, not a building. No long-lead structure, no permanent improvement to strand capital in.
Asset classification
The module is equipment, not a brick-and-mortar building. It is not permanently affixed to real estate, so it can be acquired on a direct purchase order rather than a construction contract, depreciated on an equipment schedule, and moved without abandoning an improvement. This is a deliberate design outcome, not a technicality.
Scaling
Modular units join through RF-continuous seams to form a single larger facility — from a single enclosure to a multi-thousand-square-foot footprint without losing shielding integrity across the joint.
Standing up
Set the module, connect power and fiber, and it is operational in hours — not the multi-quarter schedule a permanent structure requires.
Compute platform
NVIDIA HGX B200 / B300 — Blackwell-generation, 8-GPU HGX systems, selected per deployment. 400 Gb Ethernet standard, with NVIDIA Quantum InfiniBand available for tightly coupled training fabrics. Current-generation platforms are specified at time of order; prior generations are not offered as new capacity.
Increment
Deployed in approximately 1 MW increments, added as requirement grows.
Why equipment classification matters

Capital treated as equipment moves differently than capital sunk into a building: faster to authorize, faster to depreciate, and recoverable when the mission moves. A module that is not real property does not strand value in someone else's ground.

01.ASelf-Powered — Optional

Our own generation, where the site needs it.

Where utility power is available and adequate, Ironclad modules run on it. Where it is not — or where the interconnection queue, the capacity study, or the host's own load makes it a liability — the module brings its own. Self-generation is an optional configuration, and one of the platform's strongest advantages: it removes the grid from the critical path entirely.

Standard
Utility power where the site has adequate capacity available.
Optional — ownership
Ironclad-owned generation on a skid alongside the module, inside the Ironclad demarcation.
Redundancy
Configured N+1 — a spare unit online before the primary is relied upon.
Grid relationship
In the self-powered configuration, grid interconnection is standby only. The deployment places no draw on host grid capacity — no interconnection queue, no capacity study gating the schedule.
01.BNetwork

No carrier in the data path.

Connectivity is specified the same way as power: owned where it matters, redundant by design, and free of intermediaries in the path the customer's data travels.

Primary
Dark fiber from the cable landing station — capacity Ironclad controls end to end.
Diversity
Satellite diversity as an independent second path, on separate infrastructure from the fiber route.
Path integrity
No carrier sits in the data path.

01.CDensity

Density is an outcome of the design, not a headline number.

Modules are available in liquid- and air-cooled configurations. Deliverable density is a function of generation, configuration, networking, cooling, and PUE — which is why Ironclad sizes it against a defined workload during solution design instead of advertising a figure that ignores the other five variables.

What determines densityGeneration and configuration of the compute platform, network fabric, cooling architecture, and achieved PUE — assessed together for the specific deployment.
What we don't publishIronclad does not publish device counts or a fixed devices-per-megawatt figure. Any such number is meaningless without the configuration it was measured in.
Cooling configurations

Liquid- and air-cooled configurations are both available, and can be combined within a single enclosure so density scales zone by zone as compute generations change — without a facility-wide retrofit.

01.DStandards

Built to the standard. Accredited by the authority.

Enclosures are engineered and fabricated to the construction specifications below, in a secured US production facility, under access control, component-level inspection, and a transport security plan that holds through delivery.

Classified facility
ICD 705
Constructed to ICD 705 specifications, with SAPF and TEMPEST configurations available.
RF attenuation
60 dB
Standard shielding performance, scalable to 100 dB against NSA 94-106 where required.
HEMP
MIL-STD-188-125
HEMP, EMP, EMI and RFI protection engineered to -1A or -2 as the application requires.
Structure
250 mph · seismic
Welded steel envelope, engineered for extreme wind and seismic loading.
Forced entry
DoD FE / BR
Built to Department of Defense forced-entry and ballistic-resistance requirements.
Production
Secured US facility
US fabrication and integration, component inspection, and a transport security plan through delivery.
Stated precisely

Ironclad builds to these construction standards. Accreditation of a classified facility is granted by the cognizant authority for a specific site and mission — Ironclad claims no such accreditation today and does not represent one as held. Where a program requires accreditation, we build to the standard and support the accrediting process.

02Cooling

Air standard, liquid where density demands it.

Air cooling ships standard on every platform; liquid architectures scale to the highest densities as workloads demand it. Air, RDHx, Direct-to-Chip, and liquid immersion can be configured within the same enclosure — allowing rack density to scale zone by zone as GPU generations evolve, without a facility-wide retrofit.

Standard
Air
High-efficiency enterprise air cooling.
Optional
RDHx
Rear-door heat exchanger — increased rack density.
Optional
Direct-to-Chip
Liquid to the die for high-density racks.
Optional
Immersion
Liquid immersion for the highest densities.
03Power

Utility by default, flexible where it counts.

Ironclad platforms integrate with utility power by default, with behind-the-meter and microgrid options for sites that need them — see Ironclad Power™ for the full configuration package.

Standard
Utility Power
Optional
Behind-the-Meter · Microgrid
Optional
Natural Gas Turbine · Generator-Backed
04Software

Open by default, no proprietary lock-in.

Vendor-neutral at every layer of the stack. Orchestration, monitoring, and management are built on open standards your team already knows.

Orchestration
Ubuntu LTS · Kubernetes · Slurm
GPU Management
NVIDIA GPU Operator · NVIDIA DCGM
Monitoring
Prometheus · Grafana · OpenTelemetry
Interfaces
Redfish / IPMI · Open APIs

05Security

Isolation and control, by default.

Further hardened where required by the Ironclad Defense™ configuration package.

Tenancy
Single-Tenant
Physically isolated infrastructure, never shared with another client.
Network
Private Networking
Client-controlled private network access, validated before handoff.
Access
Controlled Access
Provisioned per client, reviewed on a defined schedule.
Monitoring
Operational Monitoring
Continuous monitoring of power, cooling, and system health.
Isolation
Infrastructure Isolation
Dedicated hardware, dedicated envelope — no multi-tenant dependency.
Physical
Physical Security
Facility access controls and on-site monitoring at every location.
Optional
Defense Configuration
Government hardening via Ironclad Defense™.

Optional: Enhanced Physical Security and the Ironclad Defense™ government configuration package.

06Confidential Computing

Optional protection for data in use.

Traditional encryption protects data at rest and in transit. Confidential computing extends that protection to data while it is actively being processed, using hardware-supported secure execution environments. Ironclad platforms can be configured to support these technologies for organizations with enhanced security, regulatory, sovereignty, or compliance requirements — as an optional configuration, not a standard feature.

Application
TEE (Confidential Enclave)
CPU / GPU
Memory
Encrypted Storage
Private Network
CapabilityStandardOptional
Single-Tenant Architecture
Private Networking
Continuous Monitoring
Secure Boot
Hardware Root of Trust
TPM 2.0
Confidential Computing / TEE
Remote Attestation
Government Configuration Package
Supported Technologies
Hardware-attested confidential computing on supported CPU and GPU platforms — configured where compatible hardware is selected, not present in every deployment.
Typical Workloads
Financial services, healthcare, pharmaceutical research, government & defense, critical infrastructure, AI model development & IP protection.
Positioning
One configurable component of a broader infrastructure strategy — not Ironclad's primary offering.
07Operations

Full operational visibility.

Every deployment includes continuous monitoring, scheduled reporting, and lifecycle management — fleet health, utilization, and capacity visible to your team, not just to ours. 24×7 infrastructure monitoring, predictive maintenance, and a dedicated operations team back a 99.95% SLA where contracted.

08Deployment

Built for relocation, not stranded capital.

Every enclosure ships ISO-compatible for road, rail, and maritime transport. Platforms are engineered as long-term infrastructure assets — deployable, redeployable, and built for continued ownership value.

Colocation
Qualified colocation facilities.
Customer Site
Customer-owned property or enterprise campus.
Utility-Connected
Industrial & behind-the-meter installations.
Get Started

See the full specification.

Infrastructure architecture, deployment specifications, and security documentation are shared during qualified technical evaluations.