4 Component model #
This section describes the various components being used to create a SUSE Rancher solution deployment, in the perspective of top to bottom ordering. When completed, the SUSE Rancher instance enables the management of multiple, downstream Kubernetes clusters.
4.1 Component overview #
By using:
Software
Multi-cluster Management Server - SUSE Rancher
Kubernetes Platform - K3s
Linux Operating System - SUSE Linux Enterprise Micro
Compute Platform
Dell EMC PowerEdge
you can create the necessary infrastructure and services. Further details for these components are described in the following sections.
4.2 Software - SUSE Rancher #
SUSE Rancher is a Kubernetes native multi-cluster container management platform. It addresses these challenges by delivering the following key functions, as shown in the following figure:
- Certified Kubernetes Distributions
SUSE Rancher supports management of any CNCF certified Kubernetes distribution for:
development, edge, branch workloads, SUSE offerings like K3s, a CNCF certified lightweight distribution of Kubernetes
workload infrastructures, either on-premise or public-cloud based, SUSE offerings like Rancher Kubernetes Engine (RKE) or Rancher Kubernetes Engine Government (RKE2), as CNCF certified Kubernetes distributions for both bare-metal and virtualized servers
the public cloud, hosted Kubernetes services like
- Simplified Cluster Operations and Infrastructure Management
SUSE Rancher provides simple, consistent cluster operations including provisioning and templates, configuration and lifecycle version management, along with visibility and diagnostics.
- Security and Authentication
SUSE Rancher integrates and utilizes existing directory services, to automate processes and apply a consistent set of identity and access management (IAM) plus security policies for all the managed clusters, no matter where they are running.
- Policy Enforcement and Governance
SUSE Rancher includes audit and security guideline enforcement, monitoring and logging functions, along with user, network and workload policies distributed across all managed clusters.
- Platform Services
SUSE Rancher also provides a rich catalog of services for building, deploying and scaling containerized applications, including app packaging, logging, monitoring and service mesh.
Learn more information about SUSE Rancher
For a production implementation of SUSE Rancher, deploying upon a Kubernetes platform is required and the next sections describe the suggested component layering approach.
4.3 Software - K3s #
K3s is packaged as a single binary, which is about 50 megabytes in size. Bundled in that single binary is everything needed to run Kubernetes anywhere, including low-powered IoT and Edge-based devices. The binary includes:
the container runtime
important host utilities such as iptables, socat and du
The only OS dependencies are the Linux kernel itself and a proper dev, proc and sysfs mounts (this is done automatically on all modern Linux distributions). K3s bundles the Kubernetes components:
kube-apiserver,
kube-controller-manager,
kube-scheduler,
kubelet and
kube-proxy
into combined processes that are presented as a simple server and agent model, as represented in the following figure:
K3s can run as a complete cluster on a single node or can be expanded into a multi-node cluster. Besides the core Kubernetes components, these are also included:
containerd,
Flannel,
CoreDNS,
ingress controller and
a simple host port-based service load balancer.
All of these components are optional and can be swapped out for your implementation of choice. With these included components, you get a fully functional and CNCF-conformant cluster so you can start running apps right away. K3s is now a CNCF Sandbox project, being the first Kubernetes distribution ever to be adopted into sandbox.
Learn more information about K3s
4.4 Software - SUSE Linux Enterprise Micro #
SUSE Linux Enterprise Micro combines the assurance of enterprise-grade security and compliance with the immutability and portability of a modern, lightweight operating system. The top 4 features are:
- Immutable OS
Immutable design ensures the OS is not altered during runtime and runs reliably every single time. Security signed and verified transactional updates are easy to rollback if things go wrong.
- Security and Compliance
Fully open source and built using open standards, SUSE Linux Enterprise Micro leverages SUSE Linux Enterprise common code base, to provide FIPS 140-2, DISA SRG/STIG, integration with CIS and Common Criteria certified configurations. Includes fully supported security framework (SELinux) with policies.
- Architectural Flexibility
Both Arm and x86-64 architectures are supported so you can deploy edge applications with confidence across multiple architectures.
- Kubernetes-Ready
You can easily combine SUSE Linux Enterprise Micro with the latest cloud-native technologies including SUSE Rancher, Rancher Kubernetes Engine, Longhorn persistent block storage, and K3s, the world’s most popular Kubernetes distribution for use in low resource, distributed edge locations.
As a result, you get an ultra-reliable infrastructure platform that is also simple to use and comes out-of-the-box with best-in-class compliance. Furthermore, SUSE’s flexible subscription model ensures enterprise assurance for any edge, embedded or IoT deployment without vendor lock-in. A free, evaluation copy can be downloaded or if the organization already has subscriptions, both install media and updates can be obtained from SUSE Customer Center.
4.5 Compute Platform #
Leveraging the enterprise grade functionality of the operating system mentioned in the previous section, many compute platforms can be the foundation of the deployment:
Virtual machines on supported hypervisors or hosted on cloud service providers
Physical, baremetal or single-board computers, either on-premises or hosted by cloud service providers
To complete self-testing of hardware with SUSE YES Certified Process, you can download and install the respective SUSE operating system support-pack version of SUSE Linux Enterprise Server and the YES test suite. Then run the tests per the instructions in the test kit, fixing any problems encountered and when corrected, re-run all tests to obtain clean test results. Submit the test results into the SUSE Bulletin System (SBS) for audit, review and validation.
Certified systems and hypervisors can be verified via SUSE YES Certified Bulletins and then can be leveraged as supported nodes for this deployment, as long as the certification refers to the respective version of the underlying SUSE operating system required.
Dell EMC PowerEdge Rack Servers help you build a modern infrastructure that minimizes IT challenges and drives business success. Choose from a complete portfolio of 1, 2, and 4-socket rack servers to deliver high core density for your traditional applications, virtualization, and cloud-native workloads. Enhanced memory speeds, faster NVMe storage options, and BIOS tuning allows you to match performance to your workload for ultimate efficiency
4.5.1 Dell EMC PowerEdge R640 Rack Servers #
The EMC PowerEdge R640 is SUSE YES Certified Hardware.
- Uncompromising performance and density
The Dell EMC PowerEdge R640 is the ideal dual-socket, 1U platform for dense scale-out data center computing. The R640 combines density, performance and scalability to optimize application performance and data center density
CPU : Up to two 2nd Generation Intel Xeon Scalable processors with up to 28 cores per processor
Accelerators : Up to one single-width FPGA, Up to three single-width GPU (NVIDIA T4)
Memory
Speed : DIMM Speed (Up to 2933MT/s)
Type : RDIMM, LRDIMM, NVDIMM, DCPMM (Intel Optane) DC persistent memory)
Module Slots : 24 DDR4 DIMM slots (12 NVDIMM or 12 DCPMM only) Supports registered ECC DDR4 DIMMs only
RAM : RDIMM 1.53TB, LRDIMM 3TB, NVDIMM 192GB, DCPMM 6.14TB (7.68TB with LRDIMM)
Storage
Front Bays : Up to 10 x 2.5” with up to 8 NVMe, SAS/SATA/SSD/NVMe, max 76.8TB
Up to 10 NVMe, max 64TB
Up to 4 x 3.5” SAS/SATA, max 56T
Rear Bays : Up to 2 x 2.5” SAS/SATA/SSD/NVMe, max 15.36TB
For more information, see Dell EMC PowerEdge R640 Datasheet
- Maximize application performance and density
The scalable business architecture of the R640 is designed to maximize application performance and provide the flexibility to optimize configurations based on the application and use case. With the R640 you can create an NVMe cache pool and use either 2.5” or 3.5” drives for data storage. Combined with up to 24 DIMM’s, 12 of which can be DCPMMs or NVDIMMs, you have the resources to maximize application performance with the optimum configuration in only a 1U chassis.
Simplify deployments and speed deployments with Dell EMC ready nodes for ScaleIO and VSAN.
Maximize storage performance with up to 10 NVMe drives or 12 2.5” drives.
Scale compute resources with 2nd Generation Intel Xeon Scalable processors and tailor performance based on your unique workload requirements.
- Automate maintenance with Dell EMC OpenManage
The Dell EMC OpenManage portfolio helps deliver peak efficiency for EMC PowerEdge servers, delivering intelligent, automated management of routine tasks. Combined with unique agent-free management capabilities, the R640 is simply managed, freeing up time for high profile projects.
Simplify management with the OpenManage Enterprise console, with customized reporting and automatic discovery.
Take advantage of QuickSync 2 capabilities and gain access to your servers easily through your phone or tablet.
- Guard your data center with built in security
Every EMC PowerEdge server is designed as part of a cyber resilient architecture, integrating security into the full server life cycle. The R640 leverages new security features built-into every new EMC PowerEdge server strengthening protection so you can reliably and securely deliver accurate data to your customers no matter where they are. By considering each aspect of system security, from design to retirement, Dell EMC ensures trust and delivers a worry-free, secure infrastructure without compromise.
Rely on a secure component supply chain to ensure protection from factory to the data center.
Maintain data safety with cryptographically signed firmware packages and Secure Boot.
Prevent unauthorized or malicious change with Server Lockdown.
Wipe all data from storage media including hard drives, SSDs and system memory quickly and securely with System Erase.
4.5.2 Dell EMC PowerEdge R740 Rack Servers #
The EMC PowerEdge R740 is SUSE YES Certified Hardware.
- Optimized for workload acceleration
The Dell EMC PowerEdge R740 is designed to accelerate application performance leveraging accelerator card and storage scalability. The 2-socket, 2U platform has the optimum balance of resources to power the most demanding environments
CPU : Up to two 2nd Generation Intel Xeon Scalable processors with up to 28 cores per processor
Accelerator : Up to three 300W or six 150W GPUs, Up to three double-width or four single-width FPGAs
Memory
Type : RDIMM, LRDIMM, NVDIMM, DCPMM (Intel Optane DC persistent memory)
Module Slots : 24 DDR4 DIMM slots (12 NVDIMM or 12 DCPMM only), Supports registered ECC DDR4 DIMMs only
RAM : RDIMM 1.53TB, LRDIMM 3TB, NVDIMM 192GB, DCPMM 6.14TB (7.68TB with LRDIMM)
Storage : Front Bays: Up to 16 x 2.5” SAS/SATA/SSD, max 122.88TB, Up to 8 x 3.5” SAS/SATA, max 128TB
For more information, see Dell EMC PowerEdge R740 Rack Servers
- Expand and optimize application performance
The scalable business architecture of the R740 can scale up to three 300W or six 150W GPUs, or up to three double-width or four single-width FPGAs. With up to 16 2.5” drives or 8 3.5” drives the R740 provides the versatility to adapt to virtually any application and provides the perfect platform for VDI deployments.
Scale your VDI deployments with 3 double-width GPUs, supporting up to 50% more users when compared to R730.
Free up storage space using internal M.2 SSDs optimized for boot.
Scale compute resources with 2nd Generation Intel Xeon Scalable processors and tailor performance based on your unique workload requirements.
- Automate systems management with OpenManage
The Dell EMC OpenManage portfolio helps deliver peak efficiency for EMC PowerEdge servers, delivering intelligent, automated management of routine tasks. Combined with unique agent-free management capabilities, the R740 is simply managed, freeing up time for high profile projects.
Simplify management with the New OpenManage Enterprise console, with customized reporting and automatic discovery.
Take advantage of QuickSync 2 capabilities and gain access to your servers easily through your phone or tablet.
- Rely on EMC PowerEdge with built-in security
Every EMC PowerEdge server is designed as part of a cyber resilient architecture, integrating security into the full server lifecycle. The R740 leverages new security features built-into every new EMC PowerEdge server strengthening protection so you can reliably and securely deliver accurate data to your customers no matter where they are. By considering each aspect of system security, from design to retirement, Dell EMC ensures trust and delivers a worry-free, secure infrastructure without compromise.
Rely on a secure component supply chain to ensure protection from factory to the data center.
Maintain data safety with cryptographically signed firmware packages and Secure Boot.
Prevent unauthorized or malicious change with Server Lockdown.
Wipe all data from storage media including hard drives, SSDs and system memory quickly and securely with System Erase
4.5.3 Dell EMC PowerEdge R650 Rack Servers #
The EMC PowerEdge R650 is SUSE YES Certified Hardware.
- Compelling performance, high scalability, and density
The Dell EMC PowerEdge R650 is a full-featured enterprise server, designed to optimize workloads performance and data center density
CPU : Up to two 3rd Generation Intel Xeon Scalable processors, with up to 40 cores per processor
Memory : 32 DDR4 DIMM slots, supports RDIMM 2 TB max or LRDIMM 4 TB max, speeds up to 3200 MT/s, Up to 16 Intel Persistent Memory 200 series (BPS) slots, 8 TB max, Supports registered ECC DDR4 DIMMs only
Storage Controllers
Internal controllers: PERC H745, HBA355I, S150, H345, H755, H755N
Boot Optimized Storage Subsystem (BOSS-S2): HW RAID 2 x M.2 SSDs 240 GB or 480 GB
External PERC (RAID): PERC H840, HBA355E
Drive Bays
Front bays : Up to 10 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 153 TB, Up to 4 x 3.5-inch SAS/SATA (HDD/SSD) max 64 TB, Up to 8 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 122.8 TB
Rear bays : Up to 2 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 30.7 TB
For more information, see Dell EMC PowerEdge R650 Datasheet
- Innovate at scale with challenging and emerging workloads
The Dell EMC PowerEdge R650, powered by the 3rd Generation Intel Xeon Scalable processors is the optimal rack server to address application performance and acceleration. The EMC PowerEdge R650, is a dual-socket/1U rack server that delivers outstanding performance for the most demanding workloads. It supports 8 channels of memory per CPU, and up to 32 DDR4 DIMMs @ 3200 MT/s speeds. In addition, to address substantial throughput improvements the EMC PowerEdge R650 supports PCIe Gen 4 and up to 10 NVMe drives with improved air-cooling features and optional Direct Liquid Cooling to support increasing power and thermal requirements. This makes the EMC PowerEdge R650 an ideal server for data center standardization on a wide range of workloads including; Database and Analytics, HighFrequency Trading, Traditional corporate IT, Virtual Desktop Infrastructure, and even HPC or AI/ML environments that require performance, and GPU support in a dense 1U form factor
- Increase efficiency and accelerate operations with autonomous collaboration
The Dell EMC OpenManage systems management portfolio tames the complexity of managing and securing IT infrastructure. Using Dell Technologies’ intuitive end-to-end tools, IT can deliver a secure, integrated experience by reducing process and information silos in order to focus on growing the business. The Dell EMC OpenManage portfolio is the key to your innovation engine, unlocking the tools and automation that help you scale, manage, and protect your technology environment.
Built-in telemetry streaming, thermal management, and RESTful API with Redfish offer streamlined visibility and control for better server management
Intelligent automation lets you enable cooperation between human actions and system capabilities for added productivity
Integrated change management capabilities for update planning and seamless, zero-touch configuration and implementation
Full-stack management integration with Microsoft, VMware, ServiceNow, Ansible and many other tools
- Protect your data assets and infrastructure with proactive resilience
The Dell EMC PowerEdge R650 server is designed with a cyber-resilient architecture, integrating security deeply into every phase in the lifecycle, from design to retirement.
Operate your workloads on a secure platform anchored by cryptographically trusted booting and silicon root of trust
Maintain server firmware safety with digitally signed firmware packages
Prevent unauthorized configuration or firmware change with system lockdown
Securely and quickly wipe all data from storage media, including hard drives, SSDs and system memory with System Erase
4.5.4 Dell EMC PowerEdge R750 Rack Servers #
The EMC PowerEdge R750 is SUSE YES Certified Hardware.
- General purpose server optimized to address the most demanding workloads
The Dell EMC PowerEdge R750 is a full-featured enterprise server, delivering outstanding performance for the most demanding workloads
CPU : Up to two 3rd Generation Intel Xeon Scalable processors, with up to 40 cores per processor
Memory : 32 DDR4 DIMM slots, supports RDIMM 2 TB max or LRDIMM 8 TB max, speeds up to 3200 MT/s, Up to 16 Intel Persistent Memory 200 series (BPS) slots, 8 TB max, Supports registered ECC DDR4 DIMMs only
Storage Controllers
Internal controllers : PERC H745, HBA355I, S150, H345, H755, H755N
Boot Optimized Storage Subsystem (BOSS-S2): HW RAID 2 x M.2 SSDs 240 GB or 480 GB
External PERC (RAID): PERC H840, HBA355E
Drive Bays
Front bays : Up to 12 x 3.5-inch SAS/SATA (HDD/SSD) max 192 TB, Up to 8 x 2.5-inch NVMe (SSD) max 122.88 TB, Up to 16 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 245.76 TB, Up to 24 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 368.84 TB
Rear bays : Rear bays: Up to 2 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 30.72 TB, Up to 4 x 2.5-inch SAS/SATA/NVMe (HDD/SSD) max 61.44 TB
For more information, see see Dell EMC PowerEdge R750 Datasheet
- Innovate at scale with challenging and emerging workloads
The Dell EMC PowerEdge R750, powered by the 3rd Generation Intel Xeon Scalable processors is a rack server to address application performance and acceleration. The EMC PowerEdge R750, is a dual-socket/2U rack server that delivers outstanding performance for the most demanding workloads. It supports 8 channels of memory per CPU, and up to 32 DDR4 DIMMs @ 3200 MT/s speeds. In addition, to address substantial throughput improvements the EMC PowerEdge R750 supports PCIe Gen 4 and up to 24 NVMe drives with improved air-cooling features and optional Direct Liquid Cooling to support increasing power and thermal requirements. This makes the EMC PowerEdge R750 an ideal server for data center standardization on a wide range of workloads including; Database and Analytics, Highperformance computing (HPC), Traditional corporate IT, Virtual Desktop Infrastructure, and AI/ML environments that require performance, extensive storage and GPU support
- Increase efficiency and accelerate operations with autonomous collaboration
The Dell EMC OpenManage systems management portfolio tames the complexity of managing and securing IT infrastructure. Using Dell Technologies’ intuitive end-to-end tools, IT can deliver a secure, integrated experience by reducing process and information silos in order to focus on growing the business. The Dell EMC OpenManage portfolio is the key to your innovation engine, unlocking the tools and automation that help you scale, manage, and protect your technology environment.
Built-in telemetry streaming, thermal management, and RESTful API with Redfish offer streamlined visibility and control for better server management
Intelligent automation lets you enable cooperation between human actions and system capabilities for added productivity
Integrated change management capabilities for update planning and seamless, zero-touch configuration and implementation
Full-stack management integration with Microsoft, VMware, ServiceNow, Ansible and many other tool
- Protect your data assets and infrastructure with proactive resilience
The Dell EMC PowerEdge R750 server is designed with a cyber-resilient architecture, integrating security deeply into every phase in the lifecycle, from design to retirement.
Operate your workloads on a secure platform anchored by cryptographically trusted booting and silicon root of trust
Maintain server firmware safety with digitally signed firmware packages
Prevent unauthorized configuration or firmware change with system lockdown
Securely and quickly wipe all data from storage media, including hard drives, SSDs and system memory with System Erase
A sample bill of materials, in the Chapter 9, Appendix, cites the necessary quantites of all components, along with a reference to the minimum resource requirements needed by the software components.