1 of 41

Marketplace is a key CF differentiator

enterprise use cases and community strengths

Guillaume Berche, Orange�Feb 17th 2021

2 of 41

Agenda

  1. CF Marketplace primary use cases still unrivalled
    1. CF marketplace use-cases strengths and limitations
    2. OSS alternatives
    3. Osb-to-helm-poc�
  2. Other additional valuable use-cases to enterprise market
    • Osb-cmdb: “Sharing a marketplace among multiple platforms”
    • Unified on-boarding�
  3. Conclusion/discussion

3 of 41

Agenda

  • CF Marketplace primary use cases still unrivalled
    • CF marketplace use-cases strengths and limitations
    • OSS alternatives
    • Osb-to-helm-poc
  • Other additional valuable use-cases to enterprise market
    • Osb-cmdb: “Sharing a marketplace among multiple platforms”
    • Unified on-boarding�
  • Conclusion/discussion

4 of 41

CF Marketplace primary use cases still unrivalled

Use cases: consume managed services from app workloads

  • Discover offers
    • Service definition
    • Service plan & metadata
    • Service plan visibility within orgs
  • Provision
    • Params
    • Dashboard SSO + AuthZ (read/manage)
    • Quotas
    • Update plan, maintenance upgrade
    • Share service instance
  • Bind
    • Credentials
    • Route service
    • Syslog drain
  • Unbind
  • Unprovision

😃

Simple UX

Consistent across services

😴

Send annotation to brokers

Service logs

Service metrics

Backup/restore 1st class UX

Composition

Stop/start, hibernate/resume

5 of 41

CF Marketplace primary use case: OSS alternatives

1st class K8S CRs

& “operator packaging” E.g. OLM

|| “helm chart packaging”

Terraform module

& CR wrapping ? (See isaaguilar/terraform-operator )

K8S Service catalog (i.e. OSB api client in K8S):

CRs:

  • Poor discovery UX

CLI:

  • Incomplete feature coverage

UI:

6 of 41

Osb-to-helm-poc: Helm facade to service catalog

Goal: provide a web UX to consumme OSB API offerings in K8S

  • Discovery
  • Provisioning
    • Service plan completion
    • Service parameter forms
    • Dashboard URL access
  • Binding / Unbinding
  • Service instance update/upgrade
  • Deprovisionning��How: dynamically generate helm chart from OSB catalog. Helm chart provisions service catalog CRs�https://github.com/orange-cloudfoundry/osb-to-helm-poc

7 of 41

Service discovery in rancher UI

7

8 of 41

Service provisioning in rancher UI

8

9 of 41

Service provisioning in rancher UI

9

10 of 41

Service provisioning in rancher UI

10

11 of 41

Service provisioning in rancher UI

11

12 of 41

Dashboard access in rancher UI

12

13 of 41

Service instance in rancher UI

13

14 of 41

Use-case

Features

CF marketplace

Helm chart wrapping CR

Native K8S CR/Operator + distribution (e.g. OLM)

K8S Service catalog CR + Helm facade + svcat cli

Discover offers

Service definition

OK

OK

OK

OK

Service plan & metadata

OK

~OK

OK

OK

Service plan visibility within orgs

OK

KO

~OK

~OK

Provision

Params

OK

OK

OK

OK

Dashboard SSO + AuthZ (read/manage)

OK

~OK

KO

~OK

Quotas

OK

~OK

OK

~OK

Update plan, maintenance upgrade

OK

OK

OK

OK

Share service instance

OK

KO

KO

KO

Service composition

KO

KO

OK

KO

Metrics

KO

?

?

?

Logs

KO

?

?

?

Backup/restore

KO

KO

OK

KO

Bind

Credentials

OK

~OK

~OK

~OK

Route service

OK

?

?

?

Syslog drain

OK

?

?

?

Volume

OK

OK

OK

OK

Unbind

OK

OK

OK

OK

Unprovision

OK

OK

OK

OK

15 of 41

Agenda

  • CF Marketplace primary use cases still unrivalled
    • CF marketplace use-cases strengths and limitations
    • OSS alternatives
    • Osb-to-helm-poc�
  • Other additional valuable use-cases to enterprise market
    • Osb-cmdb: “Sharing a marketplace among multiple platforms”
    • Unified on-boarding (thoughts)�
  • Conclusion/discussion

16 of 41

Other additional valuable use-cases to enterprise market

  • Marketplace shared among multiple platforms (CF foundations, K8S clusters, Iaas tenants): osb-cmdb

  • “CF as IAM’: unified onboarding on multiple cloud hosting offers
    • (Just thoughts so far)

Iaas

Maps cloud hosting offers onboarding/IAM

17 of 41

Agenda

  • CF Marketplace primary use cases still unrivalled
    • CF marketplace use-cases strengths and limitations
    • OSS alternatives
    • Osb-to-helm-poc�
  • Other additional valuable use-cases to enterprise market
    • Osb-cmdb: “Sharing a marketplace among multiple platforms”
    • Unified on-boarding (thoughts)�
  • Conclusion/discussion

18 of 41

OSB-CMDB: manage multi client platforms and multi service providers

18

On prem service providers

Public cloud service providers

Osb-cmdb:

Track and control

Iaas

On prem/ Public

xN

xN

xN

OSB API

OSB API

19 of 41

Why do we need an intermediate between osb clients and osb brokers ?

  • Provide a consistent marketplace offering among multiple client platforms
  • Get a comprehensive view of service usage among multiple client platforms

  • More generally, provide common operability to all OSB client and service providers
    • Inventory
      • Access usage history
      • Traceability to client platforms, consumer users, apps
      • Log OSB API calls received
    • Control
      • Ensure OSB API conformance (OSB API is versatile, e.g. K8S reconciliation loop and eventual consistency)
      • Control service plan visibility.
      • Set limits / quotas. �
    • And more ?
      • Soft delete / undelete ?
      • Service instance/binding sharing among distinct client platforms ?
      • Recharging ?

19

20 of 41

Osb-cmdb functional overview

20

21 of 41

Osb-cmdb leverages CF marketplace ecosystem

22 of 41

Osb-cmdb interactions with CF API

22

23 of 41

Typical cmdb-content

  • One org per osb client (cf1, cf2, k8s1, k8s2, …)
  • One space per service definition (mysql, cassandra, …)
  • One backing service instance for each brokered service instance (guid1, guid2, …)
  • One service key by service binding (guid1, guid2)

24 of 41

Osb-cmdb roadmap

See orange-cloudfoundry/osb-cmdb/projects/1

Full slide deck with detailed features and UX

Q: is there community interest for CFF incubation into extension PMC ?

25 of 41

Agenda

  • CF Marketplace primary use cases still unrivalled
    • CF marketplace use-cases strengths and limitations
    • OSS alternatives
    • Osb-to-helm-poc�
  • Other additional valuable use-cases to enterprise market
    • Osb-cmdb
    • Unified on-boarding
  • Conclusion/discussion

26 of 41

Unified onboarding overview

27 of 41

Unified onboarding: 2- Declare project / self-training

27

28 of 41

Unified onboarding: 2- Declare project / self-training

28

29 of 41

Unified onboarding: 3- Declare project members

29

30 of 41

Unified onboarding: 2- Declare project / self-training

30

Provisions project

31 of 41

Recap

  1. Project subscription in unified onboarding
    1. Team members definition and role assignment
  2. Cloud hosting subscription
    • CloudFoundry tenant�(org/space)
    • K8S on prem / public tenant (namespace)
    • K8S onprem /public cluster
    • Iaas tenant
  3. Data service subscription within cloud hosting
  4. Data service console access from project team
  5. Governance perspective

31

32 of 41

Unified onboarding: 3- Subscribe to cloud offers

32

33 of 41

Unified onboarding: 3- Subscribe to cloud offers

33

34 of 41

Unified onboarding: 3- Subscribe to cloud offers

34

Dashboard brings to cloud app hosting offer (aerofoundry) welcome page.

Members are provisionned and can login (SSO or login/password with corporate identity)

35 of 41

Unified onboarding: 3b- Review/track

35

Org view lists spaces, users, and total subscriptions

Services view with filtering by org and space:��Tracks subscriptions

36 of 41

Unified onboarding: 3- Refresh cloud offers subscriptions

36

  1. [Update project members]
  2. Refresh cloud offers subscriptions

37 of 41

Recap

  • Project subscription in unified onboarding
    • Team members definition and role assignment
  • Cloud hosting subscription
    • CloudFoundry tenant�(org/space)
    • K8S on prem / public tenant (namespace)
    • K8S onprem /public cluster
    • Iaas tenant
  • Data service subscription within cloud hosting
  • Data service console access from project team
  • Governance perspective

37

38 of 41

Architecture and software design

38

Osb-cmdb

CF CAPI

Stratos UI�(CF)

GCP terraform provider�

Cloud service broker

AWS/Azure/ OVH terraform provider�

K8S terraform provider�

K8S CR / operator�(e.g google GCC)

Onboarding IAM/UI

Cloud Service Providers

Orange

CSP

CF vendors

K8S community

CF community

K8S vendors

Orange� (to create)

OSB API

K8S client

(svcat)

Osb2 helm

Helm chart UI (kubeapp�/openshift/�rancher)

App hosting platforms: Paas, Caas, Iaas�

OSB API

OSB API

CF OSB client

Stratos UI�(CF)

CF OSB client

Stratos UI�(CF) ?

IAAS UI (VRA/�Openstack Horizon)

Iaas vendors

Cloud service broker

K8S terraform provider�

CF terraform provider�

Iaas terraform provider�

Onboarding service brokers

Onboarding brokerpak

Data service brokers

OSB API

CC API: �use CF as IAM

39 of 41

Agenda

  • CF Marketplace primary use cases still unrivalled
    • CF marketplace use-cases strengths and limitations
    • OSS alternatives
    • Osb-to-helm-poc�
  • Other additional valuable use-cases to enterprise market
    • Osb-cmdb
    • Unified on-boarding
  • Conclusion/discussion

40 of 41

OSB ecosystem provides strong value to the enterprise market

41 of 41

Discussion

Do Orange use-cases also apply to other enterprise customers ?

Can CFF downstream vendors also leverage OSB/CF marketplace to serve their enterprise customers “advanced marketplace use cases” ?

Can these enterprise use cases help fueling maintenance of CF marketplace differentiating features ?