OpenStack Charms Project Update, OpenStack Summit Vancouver James - - PowerPoint PPT Presentation

openstack charms
SMART_READER_LITE
LIVE PREVIEW

OpenStack Charms Project Update, OpenStack Summit Vancouver James - - PowerPoint PPT Presentation

May 2018 OpenStack Charms Project Update, OpenStack Summit Vancouver James Page (jamespage) What are the OpenStack Charms? commit 4b30ccbd044be76be66c1bb6f9669dba352147b6 Author: Adam Gandelman <adamg@canonical.com> Date: Tue Jul 5


slide-1
SLIDE 1

OpenStack Charms

Project Update, OpenStack Summit Vancouver James Page (jamespage)

May 2018

slide-2
SLIDE 2

What are the OpenStack Charms?

slide-3
SLIDE 3

commit 4b30ccbd044be76be66c1bb6f9669dba352147b6 Author: Adam Gandelman <adamg@canonical.com> Date: Tue Jul 5 10:59:03 2011 -0700 initial commit

slide-4
SLIDE 4

cinder

sahara

murano trove mistral

designate barbican

watcher

aodh

gnocchi panko zaqar

cloudkitty freezer

nova neutron keystone glance horizon swift

ceilometer heat

tacker

slide-5
SLIDE 5
slide-6
SLIDE 6

Juju

Model driven, re-usable,

  • pen source operations
  • Applications
  • Machines
  • Relations
  • Networking
  • Storage
slide-7
SLIDE 7

Charms

Encapsulation of operational knowledge of applications

  • Installation
  • Configuration
  • Connections
  • Upgrades & Updates
  • Scale-out (and in)
  • Health
  • Operations
slide-8
SLIDE 8

OpenStack Charms

Deploying OpenStack since 2011

  • Core IaaS services
  • Telemetry
  • Orchestration
  • High Availability
  • Series upgrades
  • Architectural Freedom
slide-9
SLIDE 9

MAAS

Open Source bare-metal automation

  • Automated physical

provisioning

  • Dynamic allocation of

workloads

  • IPAM
  • Web UI & REST API
slide-10
SLIDE 10

LXD

Faster, denser, lower latency Linux virtualization

  • Machine containers
  • Resources
  • REST API
  • Juju integration
slide-11
SLIDE 11
  • OpenStack Queens
  • Neutron <-> Designate integration
  • Ubuntu Bionic (preview)
  • MongoDB removal

18.02 Features

slide-12
SLIDE 12
  • Neutron Dynamic Routing using BGP
  • Encrypted data at rest
  • TLS certificate management
  • Ubuntu 18.04 LTS support

18.05 Features

slide-13
SLIDE 13
  • Encryption of supporting block devices using dm-crypt/LUKS
  • Key management and security using Vault
  • Mitigates against:

○ Disk Loss ○ Server Loss ○ Deployment Loss!

Encrypted data at rest

slide-14
SLIDE 14
  • Network Spaces + HA == cert complexity
  • Vault PKI - Intermediate CA

○ Signed using Corporate Root CA

  • Certificate Lifecycle Management
  • Core OpenStack Services
  • Wider coverage (RMQ/PXC) coming

TLS Certificate Management

slide-15
SLIDE 15
  • Panko (telemetry events)
  • Expanded Cert Management
  • Ceph Bluestore validation
  • Fernet Tokens
  • OpenStack Rocky
  • Cells v2
  • Octavia (superceeding LBaaS v2)

18.08 & 18.11

slide-16
SLIDE 16
  • Consolidated API Load Balancer
  • OVN

Beyond Rocky

slide-17
SLIDE 17

How to get involved

  • Weekly meetings on IRC (Monday 1000 or 1700 UTC)
  • openstack[-dev] mailing lists (charms topic)
  • #openstack-charms on Freenode IRC
  • https://docs.openstack.org/charm-guide/latest
  • https://docs.openstack.org/charm-deployment-guide/latest
slide-18
SLIDE 18

How to contribute

  • Reviews
  • Advice
  • Documentation
  • Bug Fixes
  • Features
slide-19
SLIDE 19

@OpenStack

Q&A

Thank you!

  • penstack
  • penstack

OpenStackFoundation