Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
71 changes: 71 additions & 0 deletions Standards/scs-0123-v2-services.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,71 @@
---
title: Mandatory and Supported IaaS Services
type: Standard
status: Draft
track: IaaS
---

## Introduction

To be SCS-compliant a Cloud Service Provider (CSP) has to fulfill all SCS standards.
Some of those standards are broad and consider all APIs of all services on the IaaS-Layer like the consideration of a [role standard](https://github.com/SovereignCloudStack/issues/issues/396).
There exist many services on that layer and for a first step they need to be limited to have a clear scope for the standards and the Cloud Service Providers following them.
For this purpose, this standard will establish lists for mandatory services whose APIs have to be present in a SCS cloud as well as supported services, which APIs are considered by some standards and may even be tested for their integration but are optional in a sense that their omission will not violate SCS conformance.

## Motivation

There are many OpenStack APIs and their corresponding services that can be deployed on the IaaS level.
These services have differences in the quality of their implementation and liveness and some of them may be easily omitted when creating an IaaS deployment.
To fulfill all SCS-provided standards only a subset of these APIs are required.
Some more but not all remaining OpenStack APIs are also supported additionally by the SCS project and may be part of its reference implementation.
This results in different levels of support for specific services.
This document will give readers insight about how the SCS classifies the OpenStack APIs accordingly.
If a cloud provides all mandatory and any number of supported OpenStack APIs, it can be tested for SCS-compliance.
Any unsupported APIs will not be tested.

## Mandatory IaaS APIs

The following IaaS APIs MUST be present in SCS-compliant IaaS deployments and could be implemented with the corresponding OpenStack services.
The endpoints of services MUST be findable through the `catalog list` of the identity API[^1].

| Mandatory API service type | corresponding OpenStack Service | description |
|-----|-----|-----|
| **block-storage** | Cinder | Block Storage service |
| **compute** | Nova | Compute service |
| **identity** | Keystone | Identity service |
| **image** | Glance | Image service |
| **load-balancer** | Octavia | Load-balancer service |
| **network** | Neutron | Networking service |
| **object-store-s3**[^2] | N/A | s3 compatible Object Storage service |

Aliases for these service types are only permitted where defined by the [OpenStack Service Type Authority](https://specs.openstack.org/openstack/service-types-authority/#aliases-optional).
Catalog entries SHOULD use the canonical service type, not aliases.

## Supported IaaS APIs

The following IaaS APIs MAY be present in SCS-compliant IaaS deployment, e.g. implemented through the corresponding OpenStack services, and are considered in the SCS standards.

| Supported API service type | corresponding OpenStack Service | description |
|-----|-----|-----|
| **baremetal** | Ironic | Bare Metal provisioning service |
| **rating** | CloudKitty | Rating/Billing service |
| **dns** | Designate | DNS service |
| **instance-ha** | Masakari | Instances High Availability service |
| **key-manager** | Barbican | Key Manager service |
| **object-store** | Swift | Object Store with different possible backends |
| **orchestration** | Heat | Orchestration service |
| **shared-file-system** | Manila | Shared File Systems service |
| **time-series-database**[^2] | Gnocchi | Time Series Database service |

## Unsupported IaaS APIs

All other OpenStack services, whose APIs are not mentioned in the mandatory or supported lists will not be tested for their compatibility and conformance in SCS clouds by the SCS community.
Those services MAY be integrated into IaaS deployments by a Cloud Service Provider on their own responsibility but SCS will not assume they are present and potential issues that occur during deployment or usage have to be handled by the CSP on their own accord.
The SCS standard offers no guarantees for compatibility or reliability of services categorized as unsupported.

## Related Documents

[The OpenStack Services](https://www.openstack.org/software/)

[^1]: [Integrate into the service catalog of Keystone](https://docs.openstack.org/keystone/latest/contributor/service-catalog.html)
[^2]: These service types have not been assigned by the OpenStack Service Type Authority
Original file line number Diff line number Diff line change
Expand Up @@ -4,13 +4,19 @@ type: Supplement
track: IaaS
supplements:
- scs-0123-v1-mandatory-and-supported-IaaS-services.md
- scs-0123-v2-services.md
---

## Automated tests

We [implemented](https://github.com/SovereignCloudStack/standards/blob/main/Tests/iaas/openstack_test.py)
the following testcases in accordance with the standard:

- `scs-0123-service-X` (with varying `X`) ensures that a service of type X can be found in the service catalog,
- `scs-0123-storage-apis` ensures that a service of one of the following types can be found: "volume", "volumev3", "block-storage",
- `scs-0123-swift-s3` ensures that S3 can be used to access object storage using EC2 credentials from the identity API.
- `scs-0123-service-<type>` ensures that a service with the given type can be found in the service catalog
- `scs-0123-storage-apis` ensures that a service of one of the following types can be found: "volume", "volumev3", "block-storage"

### Deprecated tests

#### v1 only

- `scs-0123-swift-s3` ensures that S3 can be used to access object storage using EC2 credentials from the identity API
2 changes: 2 additions & 0 deletions Tests/iaas/openstack_test.py
Original file line number Diff line number Diff line change
Expand Up @@ -150,7 +150,9 @@ def make_container(cloud):
c.add_function('scs_0123_service_load_balancer', lambda c: compute_scs_0123_service_presence(c.services_lookup, 'load-balancer'))
c.add_function('scs_0123_service_placement', lambda c: compute_scs_0123_service_presence(c.services_lookup, 'placement'))
c.add_function('scs_0123_storage_apis', lambda c: compute_scs_0123_service_presence(c.services_lookup, 'volume', 'volumev3', 'block-storage'))
c.add_function('scs_0123_service_s3', lambda c: compute_scs_0123_service_presence(c.services_lookup, 'object-store-s3'))
c.add_function('scs_0123_swift_s3', lambda c: compute_scs_0123_swift_s3(c.services_lookup, c.conn))

return c


Expand Down
17 changes: 16 additions & 1 deletion Tests/scs-compatible-iaas.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -269,6 +269,9 @@ scripts:
- id: scs-0123-storage-apis
description: The block-storage API is discoverable as `volume`, `volumev3`, or `block-storage`.
url: https://docs.scs.community/standards/scs-0123-w1-mandatory-and-supported-IaaS-services-implementation#automated-tests
- id: scs-0123-service-s3
description: s3 service is discoverable.
url: https://docs.scs.community/standards/scs-0123-w1-mandatory-and-supported-IaaS-services-implementation#automated-tests
- id: scs-0123-swift-s3
description: The object-storage API is compatible with S3.
url: https://docs.scs.community/standards/scs-0123-w1-mandatory-and-supported-IaaS-services-implementation#automated-tests
Expand Down Expand Up @@ -479,6 +482,18 @@ modules:
- scs-0123-service-placement
- scs-0123-storage-apis
- scs-0123-swift-s3
- id: scs-0123-v2
name: Mandatory and Supported IaaS Services
url: https://docs.scs.community/standards/scs-0123-v2-services
targets:
main:
- scs-0123-service-compute
- scs-0123-service-identity
- scs-0123-service-image
- scs-0123-service-network
- scs-0123-service-load-balancer
- scs-0123-storage-apis
- scs-0123-service-s3
- id: scs-0302-v1
name: Domain Manager Role
url: https://docs.scs.community/standards/scs-0302-v1-domain-manager-role
Expand Down Expand Up @@ -523,7 +538,7 @@ versions:
- scs-0116-v1
- scs-0117-v1
- scs-0121-v1
- scs-0123-v1
- scs-0123-v2
- scs-0302-v1
- version: v5.1 # copy of v5, but with include "scs-0123-v1", which had simply been forgotten
stabilized_at: 2024-12-19
Expand Down
Loading