Public Cloud Instances - Shared responsibilities (EN)

Bazy wiedzy

Public Cloud Instances - Shared responsibilities (EN)


Icons/System/eye-open Created with Sketch. 193 wyśw. 12.10.2023 Cloud / Instances

Objective

The RACI below details shared responsibilities between OVHcloud and the customer for Public Cloud Instances Service. This shared model can help relieve the customer’s operational burden.

Roles
R : Is in charge of carrying out the process
A : Accountable for the successful completion of the process
C : Is consulted during the process
I : Is informed of the results of the process

1. Before subscription

1.1. Specify service as needed

ActivityCustomerOVHcloud
Choose the Instance scale following business needs (CPU, RAM, General Purpose ...)RAI
Provide personal data needed for service subscriptionRAI
Choose Service locationRAI

2. Service availability

2.1. Install service

ActivityCustomerOVHcloud
Produce, route, deliver and maintain physical Instances and hosting buldingsIRA
Install internal functionnal bricks needed to maintain in operational and security conditions the Service (firmware, BIOS)IRA
Deploy the first network configuration on the ServiceIRA
Buy and hold licences and usage rights for Microsoft OS available on OVHcloud catalogCIRA
Buy and hold licences and usage rights for others OS usedRA

2.2. Reversibility model

ActivityCustomerOVHcloud
Import format images supported by OpenStack infrastructureRAC

2.3. Customer Information System setup

ActivityCustomerOVHcloud
Install OSRARI
Install other softwares neededRA

3. Service usage

3.1. Operations

3.1.1. Daily operations
ActivityCustomerOVHcloud
Manage data security hosted on the service (confidentiality, integrity, backups, …)RA
Manage network accessibility of InstancesRA
Decide to add / remove options on InstancesRAI
Carry out addition / deletion of options or material on InstancesIRA
Install security bricks and tools needed following needsRA
Administrate applications installed on InstancesRA
Manage backupsRA
Manage backups following Customer request (optionnal)CIRA
3.1.2. Access management
ActivityCustomerOVHcloud
Manage access rights to OVHcloud Control PanelRAI
Manage physical and logical access to infrastructures for OVHcloud teamsIRA
Manage access and security policy for service usersRA
3.1.3. Monitoring
ActivityCustomerOVHcloud
Manage and monitor physical servers capacity in support of Public Cloud servicesRA
Manage and monitor Public Cloud services capacityRA
Monitor the functionning of softwares installed on InstancesRA
Retain logs of control plane for Instances monitoring (API, hypervisor)RA
Retain logs of Information System hosted on InstancesRA
Monitor the proper functioning of physical devices (utilities) in support of the serviceIRA
Create, modify, control, restore, delete jobs of backupsRA
Create jobs of backups following subscription to Automated backups optionAIR
Maintain storage and backups devices used for the serviceRA
3.1.4. Storage
ActivityCustomerOVHcloud
Manage data encryption of storage space allocatedRA
3.1.5. Connectivity
ActivityCustomerOVHcloud
Manage IP addressing plan and choose appropriate network protocolsRAI
Filter network accesses to InstancesRAI
Filter network connections and deploy a secured architecture following business needs (FW, WAF, IPS/IDS, trusted protocols, etc.)RA
Operate automatic network management systems (architecture, implementation, software and hardware maintenance for deployed public and private networks)IRA
3.1.6. Management
ActivityCustomerOVHcloud
Provide inventory of services usedIRA
Manage the security of management infrastructure (API, control plane)RA
Manage security of OS, softwares and middlewares installed on InstancesRA
Manage physical security of equipements and hosted infrastructuresIRA
Manage data security hosted on Instances serviceRA
3.1.7. Business continuity
ActivityCustomerOVHcloud
Perform periodic restoration testsRA
Maintain a business continuity and disaster recovery plan for IS hostedRAC
Manage automatic management systems for the infrastructure providedIRA

3.2. Event management

3.2.1. Incidents
ActivityCustomerOVHcloud
Intervene with network and materials incidents (tickets and contacts)AIRA
Intervene with other incidentsRA
Change deficient hardware in support of InstancesIRA
Realize backup recovery of InstancesRA
Realize backup recovery in case of subscription to an option managed by OVHcloudAR

3.2.2. Changes

ActivityCustomerOVHcloud
Deploy updates and patches of OS, softwares, middlewares and Information System hosted on InstancesRA

4. Reverting

4.1. Reversibility Model

ActivityCustomerOVHcloud
Plan reversibility operationsRA
Choose fallback infrastructuresRA
Export data in QCOW2 formatRAI

4.2. Data recovery

ActivityCustomerOVHcloud
Manage reversibility operationsRA
Migrate/transfer dataRA

5. End of service

5.1. Destroy configurations

ActivityCustomerOVHcloud
Destroy configurations at end of service following contract terminationRA

5.2. Data destruction

ActivityCustomerOVHcloud
Destroy data hosted on InstancesRA
Destroy end-of-life storage devicesRA

Powiązane artykuły