Openshift Vs Pivotal Cloud Foundry Comparison Red Hat Container Stack - Pivotal Cloud Foundry Stack
Total Page:16
File Type:pdf, Size:1020Kb
OPENSHIFT VS PIVOTAL CLOUD FOUNDRY COMPARISON RED HAT CONTAINER STACK - PIVOTAL CLOUD FOUNDRY STACK 3 AT A GLANCE PIVOTAL CF OPENSHIFT • ●Garden and Diego • ●Docker and Kubernetes • ●.NET and Spring • ●.NET, Spring and JBoss Middleware • ●Only Cloud-native apps (including full Java EE) • ●Container security on Ubuntu • ●Cloud-native and stateful apps • ●Deployment automation • ●Enterprise-grade security on • ●Open Core Red Hat Enterprise Linux • ●Pivotal Labs consulting method • ●Complete Ops Management • ●100% Open Source 5X PRICE • ●Red Hat Innovation Labs consulting method BRIEF COMPARISON PIVOTAL CF OPENSHIFT GARDEN & DIEGO DOCKER & KUBERNETES • ●Garden uses OCI runC backend • ●Portable across all docker platforms • ●Not portable across Cloud Foundry distros • ●IP per container • ●Containers share host IP • ●Integrated image registry • ●No image registry • ●Image build from source and binary • ●Private registries are not supported • ●Adoption in many solutions • ●No image build • ●Adoption only in Cloud Foundry 11 NO NATIVE DOCKER IN CLOUD FOUNDRY Converters Are Terrible Cloud Foundry is based on the Garden container runtime, not Docker, and then has RunC and Windows backends. RunC is not Docker, just the lowest runtime layer Docker Developer Experience Does Not Exist in PCF PCF “cf push” Dev Experience does not exist for Docker. In Openshift v3 we built S2I to provide that same experience on top of native Docker images/containers Diego Is Not Kubernetes Kubernetes has become the defacto standard for orchestrating docker containers. Diego orchestrates Garden containers and is used only by Cloud Foundry users KUBERNETES PLATFORMS PIVOTAL CF OPENSHIFT .NET AND SPRING .NET AND JBOSS MIDDLEWARE • ●Small buildpack service community • ●Large docker service community • ●Java, .NET Framework • ●Full Java EE, .NET Core • ●Spring Boot and Spring Cloud • ●Spring and JBoss middleware portfolio • ●Community CI/CD • ●Certifed Jenkins and Deployment Pipelines ONLY CLOUD-NATIVE APPS CLOUD-NATIVE AND STATEFUL APPS • No persistent storage • Persistent storage support 12 SECURITY AND OPERATIONS PIVOTAL CF OPENSHIFT ENTERPRISE-GRADE SECURITY ON RED BASIC SECURITY ON UBUNTU HAT ENTERPRISE LINUX • ●Container trafc rules • ●SELinux and OpenScap • ●AppArmor integration • ●Unprivileged containers (no root) • ●Unprivileged containers (no root) DEPLOYMENT AUTOMATION COMPLETE OPS MANAGEMENT • ●Deployment via BOSH and Ops Manager • ●Deployment via Ansible • ●No ops management • ●Ops management with Red Hat CloudForms • ●No bare-metal • ●Built-in log management (Elasticsearch/Kibana) ECO SYSTEM PIVOTAL CF OPENSHIFT OPEN CORE 100% OPEN SOURCE • ●Proprietary (based on open source) • ●100% Open Source • CF Foundation with 65+ members • Active open-source community • OpenShift Commons with 200+ members RED HAT INNOVATION LABS CONSULTING PIVOTAL LABS CONSULTING METHOD METHOD 13 CONTAINER PIVOTAL CF OPENSHIFT • ● Garden linux container and buildpacks • ● Native Docker linux container based on OCI runC backend • ● Widespread commercial adoption • ● Adopted only in Cloud Foundry • ● Portable across platforms • ● Runs Docker by converting to Garden • ● Not portable across platforms (e.g Bluemix) • ● No image registry • ● Integrated image registry • ● Private registries not supported • ● Built-in SDN • ● Containers share host IP • ● IP per container • ● All communication through load-balancer • ● Inter-container communication ORCHESTRATION PIVOTAL CF OPENSHIFT • ● Diego orchestrator • ● Kubernetes orchestrator • ● Adoption only in Cloud Foundry • ● Adoption in many solutions • ● No distributed and cron jobs • ● Distributed and cron* job support • ● Custom scheduling • ● Resource limits and quotas with QoS tiering • ● Multi-cluster orchestration* • ● Service registry only for Spring apps • ● Service discovery for all containers • ● Service catalog • ● Service catalog* • ● Confg Server for Spring apps • ● Loosely-coupled application confguration * coming soon 14 APPLICATION SERVICES PIVOTAL CF OPENSHIFT • ● Few community buildpacks • ● Many community Docker images • ● Supported runtimes: Java, Ruby, … • ● Supported runtimes: Full Java EE, Java, Ruby, … • ● .NET support • ● .NET Core support • Compelling Big Data services • ● Red Hat JBoss Middleware • ● Spring Boot and Spring Cloud Services • ● Microservices with JBoss and Spring • ● Microservices with Spring Boot • ● Third-party services • ● Third-party services • ● Stateful and legacy apps not supported • ● Stateful and legacy apps not supported • ● No persistent storage • ● No persistent storage APPLICATION LIFECYCLE PIVOTAL CF OPENSHIFT • ●No container images • Image build from source and binary • No Docker build • Automated redeploy on image update • Containers run from source and binary • Docker build support • ●CI/CD Integration • ● Spinnaker and Concourse CI • ● Certifed Jenkins • ● CloudBees Jenkins integration • ● Support for Jenkins slaves • ● Built-in CI/CD and Pipeline • ● CloudBees Jenkins integration 15 SECURITY PIVOTAL CF OPENSHIFT • ●Container trafc rules (in- and outbound) • ●Containers jailed with SELinux • AppArmor integration • Unprivileged containers (no root) • Seccomp integration • End-to-end cluster security with TLS • Unprivileged containers (no root) • Fine-grained role-based policies • Container vulnerability scanning through Red Hat CloudForms and BlackDuck (partner) OPERATIONS & MANAGEMENT PIVOTAL CF OPENSHIFT • Ubuntu (support partnership with Canonical) • ● Red Hat Enterprise Linux and Atomic Host • Virtual, private and public cloud • Physical, virtual, private and public cloud • Container metrics • Container metrics • Basic log aggregation • Container log aggregation and management • ●Built-in ElasticSearch and Kibana • ●Deployment via BOSH and OpsManager • ●Deployment via Red Hat CloudForms • No operational management • Complete operational management • (capacity, audit, policy, forensic, etc) ECOSYSTEM PIVOTAL CF OPENSHIFT • Proprietary (open core) • ●100% Open Source • ●Cloud Foundry Foundation with 65+ members • OpenShift Commons with 200+ members • OCI member • OCI and Platinum CNCF member • Kubernetes adopted in CNCF • Vibrant partner community • Active open-source community • Vibrant partner community • Pivotal Labs consulting method for enabling • Red Hat Innovation Labs consulting method Agile and DevOps 16 OPENSHIFT AWARDS OPENSHIFT CUSTOMERS 17 OPENSHIFT COMMONS An interactive community for all OpenShift PaaS Users, Customers, Contributors, Partners, Service Providers and Developers to share ideas, code, best practices, and experiences. More at http://commons.openshift.org Speak to a consultant and learn how we make Openshift work for you: 770-546-0077 shadow-soft.com or email [email protected] Since 2008, Shadow-Soft has been evangelizing and deploying open source software and open standards to help customers “take the power back” from their technology vendors. Shadow-Soft provides consulting and managed services across three specialties: DevOps, Application Infrastructure, and Cloud. Atlanta, GA | 770-546-0077 | www.shadow-soft.com.