Competitive Guide - Pivotal Cloud Foundry Vs OpenShift
Competitive Guide - Pivotal Cloud Foundry Vs OpenShift
Competitive Guide - Pivotal Cloud Foundry Vs OpenShift
● Products
○ Pivotal Cloud Foundry: on-premise PaaS
○ Pivotal Web Services: hosted PaaS on Amazon Web Services (AWS)
○ PCF Dev: local instance on dev machines
○ Pivotal Labs: consulting method
CAPACITY MGMT
SELF-SERVICE SERVICE CATALOG MONITORING PUBLIC REGISTRY
(CloudForms)
(RH Registry)
CI/CD POLICY MANAGEMENT SECURITY ANALYSIS
Red Hat OpenShift (Jenkins)
IMAGE BUILD
(CloudForms) (CloudForms) OPS MANAGEMENT
Container Platform (CloudForms,
CaaS
DEV TOOLS
Linux & Atomic Host ( Developer Studio,
PHYSICAL VIRTUAL PRIVATE CLOUD PUBLIC CLOUD Container Dev Kit)
configuration
CI/CD IMAGE BUILD POLICY MANAGEMENT SECURITY ANALYSIS
OPS MANAGEMENT
CONTAINER INFRASTRUCTURE SERVICES
Single points of ORCHESTRATION CONTAINER ENGINE
REGISTRY OPS AUTOMATION
failure (Diego) (Garden)
SECURITY
STORAGE NETWORKING
(Garden)
STORAGE
ENTERPRISE-GRADE CONTAINER OS
Proprietary DEV TOOLS
PHYSICAL VIRTUAL PRIVATE CLOUD PUBLIC CLOUD (PCF Dev)
Open Source
Container Deployed
Code Application Linux Container Orchestration Containers
Docker Kubernetes
Garden Diego
Swarm
Mesos
Docker Kubernetes
Commercial
Proprietary Services
Platform
Red Hat OpenShift
Diego Garden
Commercial Cloud
Foundry
Helion
Proprietary
Pivotal
Bluemix Services Stackato
Services
Services
Open Source
Cloud Foundry Cloud Foundry Cloud Foundry Cloud Foundry
Core Core Core Core
Router ROUTING
Router ROUTING
Application Stack
PaaS switch
CaaS costs
Infrastructure
Any
Cloud Native
Application Stack
Any Some
Infrastructure Infrastructure
PIVOTAL CF OPENSHIFT
● Garden and Diego ● Docker and Kubernetes
● .NET and Spring ● .NET, Spring and JBoss Middleware
(including full Java EE)
● Only Cloud-native apps ● Cloud-native and stateful apps
● Container security on Ubuntu ● Enterprise-grade security on
Red Hat Enterprise Linux
● Deployment automation ● Complete Ops Management
● Open Core ● 100% Open Source
● Pivotal Labs consulting method ● Red Hat Innovation Labs consulting method
PIVOTAL CF OPENSHIFT
e
● Garden and Diego ● Docker and Kubernetes
ir c
● .NET and Spring ● .NET, Spring and JBoss Middleware
(including full Java EE)
● Only Cloud-native apps ● Cloud-native and stateful apps
●
P
Container security on Ubuntu ● Enterprise-grade security on
X
Red Hat Enterprise Linux
5
● Deployment automation ● Complete Ops Management
● Open Core ● 100% Open Source
● Pivotal Labs consulting method ● Red Hat Innovation Labs consulting method
PIVOTAL CF OPENSHIFT
● Garden uses OCI runC backend ● Portable across all docker platforms
● Not portable across Cloud Foundry distros ● IP per container
● Containers share host IP ● Integrated image registry
● No image registry ● Image build from source and binary
● Private registries are not supported ● Adoption in many solutions
● No image build
● Adoption only in Cloud Foundry
❌
decompose run
Docker Garden Garden Garden Garden
rebuild
PIVOTAL CF OPENSHIFT
PIVOTAL CF OPENSHIFT
Enterprise-grade Security on
Basic Security on Ubuntu
Red Hat Enterprise Linux
● Container traffic rules ● SELinux and OpenScap
● AppArmor integration ● Unprivileged containers (no root)
● Unprivileged containers (no root)
PIVOTAL CF OPENSHIFT
PIVOTAL CF OPENSHIFT
❌
decompose run
Docker Garden Garden Garden Garden
rebuild
PIVOTAL CF OPENSHIFT
● Service registry only for Spring apps ● Service discovery for all containers
● Service catalog ● Service catalog*
● Config Server for Spring apps ● Loosely-coupled application configuration
* coming soon
PIVOTAL CF OPENSHIFT
● Stateful and legacy apps not supported ● Stateful and legacy apps supported
● No persistent storage ● Persistent storage support
PIVOTAL CF OPENSHIFT
PIVOTAL CF OPENSHIFT
● Container traffic rules (in- and outbound) ● Containers jailed with SELinux
● AppArmor integration ● Unprivileged containers (no root)
● Seccomp integration ● End-to-end cluster security with TLS
● Unprivileged containers (no root) ● Fine-grained role-based policies
● Container vulnerability scanning through Red
Hat CloudForms and BlackDuck (partner)
PIVOTAL CF OPENSHIFT
● Ubuntu (support partnership with Canonical) ● Red Hat Enterprise Linux and
● Virtual, private and public cloud Atomic Host
● Physical, virtual, private and public cloud
● Deployment via BOSH and OpsManager ● Deployment via Red Hat CloudForms
● No operational management ● Complete operational management
(capacity, audit, policy, forensic, etc)
PIVOTAL CF OPENSHIFT
● Pivotal Labs consulting method for enabling ● Red Hat Innovation Labs consulting method
Agile and DevOps
2 Years Running!
More at http://commons.openshift.org
linkedin.com/company/red-hat twitter.com/RedHatNews
youtube.com/user/RedHatVideos