diff --git a/reference-architectures/roks-quickstart.drawio.svg b/reference-architectures/roks-quickstart.drawio.svg index a40bc1a34..0143c6eaa 100644 --- a/reference-architectures/roks-quickstart.drawio.svg +++ b/reference-architectures/roks-quickstart.drawio.svg @@ -1,4 +1,4 @@ -
Cloud Service Resource Group
TransitGatewayObject Storage
Cloud Services
Key Protect 
Zone 1
10.40.10.0/24 : Subnet
Zone 2
Workload ACL
lockedSecurity Group
10.50.10.0/24 : Subnet
Worker Node 2
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3
Openshift
Cluster

Workload VPC
Worker Node 1
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3E
Workload Resource Group
Public Gateway
IBM Cloud
Management Resource Group
Management ACL
locked
10.10.10.0/24 : Subnet
Zone 1
Reserved for user-managed compute (per FS Cloud topology)
Security GroupManagement VPC
\ No newline at end of file +
Cloud Service Resource Group
TransitGatewayObject Storage
Cloud Services
Key Protect 
Zone 2
Workload VPC
Workload ACL
lockedSecurity Group
10.40.10.0/24:  Subnet
Worker Node 1
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3E
10.50.10.0/24:  Subnet
Worker Node 2
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3E
Workload
Openshift
Cluster

Zone 1
Workload Resource Group
Public Gateway
IBM Cloud
Management VPCSecurity Group
Reserved for user-managed compute (per FS Cloud topology)
Zone 1
10.10.10.0/24:  Subnet
Management Resource Group
Management ACL
locked
\ No newline at end of file diff --git a/reference-architectures/roks.drawio.svg b/reference-architectures/roks.drawio.svg index c921f10af..538e0a796 100644 --- a/reference-architectures/roks.drawio.svg +++ b/reference-architectures/roks.drawio.svg @@ -1,4 +1,4 @@ -
Cloud Service Resource Group
Cloud Service Resource Group
TransitGatewayKey ManagementManagement VPCFlow Log CollectorWorkload VPCFlow Log Collector
Cloud Services
Cloud Services
IBM Cloud
IBM Cloud
Activity TrackerActivity TrackerEvent RoutingContext-Based Restrictions
Zone 2
Zone 2
10.50.20.0/24 : VPE
10.50.20.0/24 : VPE
Virtual Private Endpoint
10.50.10.0/24 : VSI
10.50.10.0/24 : VSI
Workload
Openshift Cluster
Workload...
Zone 3
Zone 3
10.60.20.0/24 : VPE
10.60.20.0/24 : VPE
Virtual Private Endpoint
10.60.10.0/24 : VSI
10.60.10.0/24 : VSI
Workload
Openshift Cluster
Workload...
Virtual Server
Zone 1
Zone 1
10.40.20.0/24 : VPE
10.40.20.0/24 : VPE
Virtual Private Endpoint
10.40.10.0/24 : VSI
10.40.10.0/24 : VSI
Workload
Openshift Cluster
Workload...
Workload VPC
Workload VPC
Workload Resource Group
Workload Resource Group
Workload ACL
Workload ACL
Security Group
Security Group
Object StorageVirtual ServerVirtual Server
Zone 2
Zone 2
10.20.20.0/24 : VPE
10.20.20.0/24 : VPE
Virtual Private Endpoint
10.20.10.0/24 : VSI
10.20.10.0/24 : VSI
Management
Openshift Cluster
Management...
Zone 3
Zone 3
10.30.20.0/24 : VPE
10.30.20.0/24 : VPE
Virtual Private Endpoint
10.20.10.0/24 : VSI
10.20.10.0/24 : VSI
10.30.10.0/24 : VSI
10.30.10.0/24 : VSI
Management
Openshift Cluster
Management...
Zone 1
Zone 1
10.10.20.0/24 : VPE
10.10.20.0/24 : VPE
Virtual Private Endpoint
10.10.30.0/24 : VPN
10.10.30.0/24 : VPN
Gateway VPN
10.10.10.0/24 : VSI
10.10.10.0/24 : VSI
Virtual Server
10.10.10.0/24 : VSI
10.10.10.0/24 : VSI
Management
Openshift Cluster
Management...
Management VPC
Management VPC
Management ACL
Management ACL
Security Group
Security Group
Management Resource Group
Management Resource Group
Text is not SVG - cannot display
\ No newline at end of file +
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22container%3D1%3Bcollapsible%3D0%3Bexpand%3D0%3BrecursiveResize%3D0%3Bhtml%3D1%3BwhiteSpace%3Dwrap%3BstrokeColor%3D%231192E8%3BfillColor%3Dnone%3BstrokeWidth%3D1%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%221030%22%20y%3D%22-20%22%20width%3D%22921%22%20height%3D%22397%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%223%22%20value%3D%22Management%20VPC%22%20style%3D%22shape%3Drect%3BfillColor%3Dnone%3Baspect%3Dfixed%3Bresizable%3D0%3BlabelPosition%3Dright%3BverticalLabelPosition%3Dmiddle%3Balign%3Dleft%3BverticalAlign%3Dmiddle%3BstrokeColor%3Dnone%3Bpart%3D1%3BspacingLeft%3D5%3BfontSize%3D14%3BfontFamily%3DIBM%20Plex%20Sans%3B%22%20vertex%3D%221%22%20parent%3D%222%22%3E%3CmxGeometry%20width%3D%2248%22%20height%3D%2248%22%20relative%3D%221%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%224%22%20value%3D%22%22%20style%3D%22fillColor%3D%231192E8%3Bshape%3Dmxgraph.ibm_cloud.ibm-cloud--vpc%3BstrokeColor%3Dnone%3Bdashed%3D0%3BoutlineConnect%3D0%3Bhtml%3D1%3BlabelPosition%3Dcenter%3BverticalLabelPosition%3Dbottom%3BverticalAlign%3Dtop%3Bpart%3D1%3Bmovable%3D0%3Bresizable%3D0%3Brotatable%3D0%3B%22%20vertex%3D%221%22%20parent%3D%223%22%3E%3CmxGeometry%20width%3D%2224%22%20height%3D%2224%22%20relative%3D%221%22%20as%3D%22geometry%22%3E%3CmxPoint%20x%3D%2212%22%20y%3D%2212%22%20as%3D%22offset%22%2F%3E%3C%2FmxGeometry%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%225%22%20value%3D%22%22%20style%3D%22shape%3Drect%3BfillColor%3D%231192E8%3Baspect%3Dfixed%3Bresizable%3D0%3BlabelPosition%3Dright%3BverticalLabelPosition%3Dmiddle%3Balign%3Dleft%3BverticalAlign%3Dmiddle%3BstrokeColor%3Dnone%3Bpart%3D1%3BspacingLeft%3D5%3BfontSize%3D14%3B%22%20vertex%3D%221%22%20parent%3D%222%22%3E%3CmxGeometry%20width%3D%224%22%20height%3D%2248%22%20relative%3D%221%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3E
Zone 3
Management
Openshift
Cluster

Zone 2
Management ACL
lockedSecurity Group
10.30.10.0/24:  Subnet
Worker Node 3

%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%
10.20.10.0/24:  Subnet
Worker Node 2

%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%
10.10.10.0/24:  Subnet
Worker Node 1
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel
10.30.20.0/24:  Subnet
Virtual Private Endpoint
10.20.20.0/24:  Subnet
Virtual Private Endpoint
Zone 1
10.10.30.0/24:  Subnet
VPN Gateway
10.10.20.0/24:  Subnet
Virtual Private Endpoint
Management VPC
Management Resource Group
Workload Resource Group
%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22container%3D1%3Bcollapsible%3D0%3Bexpand%3D0%3BrecursiveResize%3D0%3Bhtml%3D1%3BwhiteSpace%3Dwrap%3BstrokeColor%3D%231192E8%3BfillColor%3Dnone%3BstrokeWidth%3D1%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%221030%22%20y%3D%22-20%22%20width%3D%22921%22%20height%3D%22397%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%223%22%20value%3D%22Management%20VPC%22%20style%3D%22shape%3Drect%3BfillColor%3Dnone%3Baspect%3Dfixed%3Bresizable%3D0%3BlabelPosition%3Dright%3BverticalLabelPosition%3Dmiddle%3Balign%3Dleft%3BverticalAlign%3Dmiddle%3BstrokeColor%3Dnone%3Bpart%3D1%3BspacingLeft%3D5%3BfontSize%3D14%3BfontFamily%3DIBM%20Plex%20Sans%3B%22%20vertex%3D%221%22%20parent%3D%222%22%3E%3CmxGeometry%20width%3D%2248%22%20height%3D%2248%22%20relative%3D%221%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%224%22%20value%3D%22%22%20style%3D%22fillColor%3D%231192E8%3Bshape%3Dmxgraph.ibm_cloud.ibm-cloud--vpc%3BstrokeColor%3Dnone%3Bdashed%3D0%3BoutlineConnect%3D0%3Bhtml%3D1%3BlabelPosition%3Dcenter%3BverticalLabelPosition%3Dbottom%3BverticalAlign%3Dtop%3Bpart%3D1%3Bmovable%3D0%3Bresizable%3D0%3Brotatable%3D0%3B%22%20vertex%3D%221%22%20parent%3D%223%22%3E%3CmxGeometry%20width%3D%2224%22%20height%3D%2224%22%20relative%3D%221%22%20as%3D%22geometry%22%3E%3CmxPoint%20x%3D%2212%22%20y%3D%2212%22%20as%3D%22offset%22%2F%3E%3C%2FmxGeometry%3E%3C%2FmxCell%3E%3CmxCell%20id%3D%225%22%20value%3D%22%22%20style%3D%22shape%3Drect%3BfillColor%3D%231192E8%3Baspect%3Dfixed%3Bresizable%3D0%3BlabelPosition%3Dright%3BverticalLabelPosition%3Dmiddle%3Balign%3Dleft%3BverticalAlign%3Dmiddle%3BstrokeColor%3Dnone%3Bpart%3D1%3BspacingLeft%3D5%3BfontSize%3D14%3B%22%20vertex%3D%221%22%20parent%3D%222%22%3E%3CmxGeometry%20width%3D%224%22%20height%3D%2248%22%20relative%3D%221%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%3E
Workload VPC
Zone 1
Zone 2
Zone 3
Workload ACL
locked
Workload
Openshift
Cluster

10.50.10.0/24:  Subnet
Worker Node 2

%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%
10.60.10.0/24:  Subnet
Worker Node 3

%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphModel%
10.40.10.0/24:  Subnet
Worker Node 1

%3CmxGraphModel%3E%3Croot%3E%3CmxCell%20id%3D%220%22%2F%3E%3CmxCell%20id%3D%221%22%20parent%3D%220%22%2F%3E%3CmxCell%20id%3D%222%22%20value%3D%22%22%20style%3D%22image%3Baspect%3Dfixed%3Bhtml%3D1%3Bpoints%3D%5B%5D%3Balign%3Dcenter%3BfontSize%3D12%3Bimage%3Dimg%2Flib%2Fazure2%2Fcontainers%2FAzure_Red_Hat_OpenShift.svg%3B%22%20vertex%3D%221%22%20parent%3D%221%22%3E%3CmxGeometry%20x%3D%22816%22%20y%3D%22530%22%20width%3D%2248%22%20height%3D%2248%22%20as%3D%22geometry%22%2F%3E%3C%2FmxCell%3E%3C%2Froot%3E%3C%2FmxGraphMod
Security Group
10.40.20.0/24:  Subnet
Virtual Private Endpoint
10.50.20.0/24:  Subnet
Virtual Private Endpoint
10.60.20.0/24:  Subnet
Virtual Private Endpoint
Cloud Service Resource Group
Activity TrackerEvent Routing network--admin-control Context-Based RestrictionsKey ManagementTransitGatewayObject StorageManagement VPCFlow Log CollectorWorkload VPCFlow Log Collector
Cloud Services

IBM Cloud
\ No newline at end of file