Overview
Service Overview
The Dedicated Cloud service is a service that builds a cloud infrastructure exclusively for the customer at the customer’s own facilities, using the cloud services provided by Samsung Cloud Platform. It is a service that configures both the cloud management area and the customer resource area on-premises, making it suitable for customers who require a high level of security control and regulatory compliance.
- When using the Dedicated Cloud air-gap service, some products and features may be limited, and a dedicated operations service is required.
- Dedicated Cloud service cannot be configured on customer equipment because SDS builds the infrastructure directly.
Key Features
- Customer‑Dedicated Cloud Environment Setup: We provide cloud services by building a customer‑dedicated infrastructure in the customer‑specified facility (on‑premises) with the same architecture as the Samsung Cloud Platform. * Depending on the customer’s security requirements, the cloud management platform can be offered as a dedicated environment for the client and can address regulatory and security constraints.
- The customer provides the floor space, power, and network connectivity required for cloud infrastructure setup at the designated facility, and SDS builds the Samsung Cloud Platform, including hardware and software, to deliver a fully managed service.
- Providing Dedicated Cloud Air-Gap Service When data sovereignty and high-level regulatory requirements require complete isolation from external networks (the Internet and Samsung Cloud Platform), you can build a Dedicated Cloud service by applying an Air‑gap option that does not need a connection to external (SDS, Internet). At this point, dedicated operational staff are dispatched to support operations within the client’s organization.
- Service Operation and Operational Support System Integration: To ensure continuous maintenance and upgrades of cloud services, SDS operations staff operate by continuously monitoring the infrastructure and services deployed at the customer’s facilities.
Service architecture diagram
Provided Functions
Dedicated Cloud provides the following features.
- Dedicated Physical Resource Provision: We configure and provide the cloud management domain (console and shared infrastructure) and the customer resource domain (servers, storage, NW, etc., infrastructure for deploying virtual resources) exclusively for each client.
- Dedicated Internet and Customer Network Connection: It can connect to the internet and internal network of the customer environment where Dedicated Cloud is installed.
- Cloud Platform Operations and Upgrades: Regular feature upgrades and patches for services provided by Samsung Cloud Platform are offered. * However, a management line connection is required for platform operation, upgrades, and patches, and additional costs will be incurred.
- Resource provisioning and management: Virtual servers, storage, network, etc., provide CRUD functions for creating, modifying, deleting, and retrieving cloud resources via API or console.
- Resource Central Management: Virtual instances (Virtual Server), virtual networks (VPC), databases, storage (Block Storage, Object Storage, etc.) are deployed and configured centrally.
- User Authentication, Authorization Management: Provides authentication (Authentication), authorization (Authorization), and access control (Access Control) functions for users and services.
- Centralized Security Policy Management: Manages security-related policies such as network security, data encryption, and vulnerability management centrally.
- Automation and Orchestration: Provides users by automating complex tasks such as resource deployment, scaling, shrinking, and updates.
- Supports infrastructure and cloud service lifecycle management and workflow orchestration.
- Provides automation and management functions for IaaS services, PaaS services (DB, Container, security, etc.), and platform common services.
- Monitoring and Performance Management: Collects the status, performance, logs, and usage of cloud resources in real time for monitoring and provides alerts to users. * Provides operational visibility such as event management and operational status dashboards.
- Policy and Governance: Provides cost management, tagging, alerts, usage tracking, and other cost and resource governance features. * You can manage users by organization and centrally configure and apply security, compliance, and risk management policies in bulk.
- User and Service Interface Provision: We support users in managing cloud resources directly through various interfaces such as self-service portal, API, and CLI.
Component
Dedicated Cloud consists of the cloud management area (Control Plane) and the customer resource area (Data Plane).
Cloud Management Plane (Control Plane)
It is a core area responsible for centralized management and control of cloud infrastructure and services, handling virtual resource provisioning and automation, user authentication and authorization, monitoring, and policy configuration. The cloud management domain is physically separated from the customer resource domain and operates independently.
- The cloud infrastructure of Dedicated Cloud is installed separately at the client site, but it is connected via a dedicated line to the SDS Center for common service maintenance and integrated management (however, it is not connected in the case of Dedicated Cloud air-gap).
- Users can deploy resources to the customer resource area and store user data using the various services and features provided by the Samsung Cloud Platform through the Console.
- Even if an issue occurs in the cloud management domain, resources and data deployed in the customer resource domain are not affected, but for some services provided in the cloud management domain, constraints may arise.
Customer Resource Area (Data Plane)
This is the area where virtual resources (virtual servers, virtual networks, storage, databases, etc.) required to configure the customer’s system are created and customer data is stored.
- Compute: Virtual Server, Bare Metal Server(option), GPU Server(option) etc.
- Stroage: Block Storage, File Storage, Object Storage, Backup, etc.
- Network: VPC, Security Group, Load Balancer, Firewall, etc.
- Database: PostgreSQL, MySQL, MariaDB, EPAS, etc.
- By default, this is the area where IaaS and PaaS services are created and deployed, and to use certain specialized services (GPU Server, Multi-node GPU Cluster, high-performance File Storage, etc.), you must select the expansion option.
- In the public version, some Network services may not be available.
Rack configuration
The Dedicated Cloud service consists of a cloud management area and a customer resource area, and each area requires 11 dedicated racks.
| Category | Rack configuration | Power capacity per rack |
|---|---|---|
| Cloud Management Area | 7 items |
|
| Customer Resource Area | 4
|
|
- When configuring GPU servers and large‑capacity VMs, the power capacity per rack may vary, and separate consultation is required.
Provided specifications
During the consultation process for adopting Dedicated Cloud, resources can be configured according to the customer’s desired setup, and the default specifications are listed below. (Additional configuration options require discussion)
| Category | Basic specifications | Explanation |
|---|---|---|
| Computing(Total vCPU) |
|
|
| Bare Metal Server | Additional configuration | Configure the Bare Metal Server by selecting the required detailed specifications and quantity according to the customer’s requirements. |
| GPU Server | Additional configuration | GPU Server can be configured by selecting GPU specifications (H100/B300) and the number of servers according to the customer’s requirements
|
| Block Storage | 60 TB | SSD is provided as standard, and capacity can be added in 20 TB increments (up to 500 TB for the default rack configuration). |
| File Storage | 15 TB | Provided as an HDD type, capacity can be added in 15 TB increments (up to 285 TB). |
| Object Storage | 1,300 TB | Provided as an HDD type, capacity can be added in 350 TB increments (up to 2,700 TB) |
| Backup | - | Backup service needed |
Provision status by region
Dedicated Cloud is available in the environments below.
| Region | Provision status |
|---|---|
| Korea West (kr-west1) | Provide |
| Korea East (kr-east1) | Provide |
| South Korea 1 (kr-south1) | Not provided |
| South Korea South 2 (kr-south2) | Not provided |
| South Korea South 3 (kr-south3) | Not provided |
Since the Samsung Cloud Platform continuously upgrades its services and features, the regulations and requirements for platform deployment and service maintenance must be met to keep the service running smoothly.
- For the Dedicated Cloud air-gap option service, a deployment system configuration and dedicated operations staff service are required for service maintenance and upgrades.
- The infrastructure for floor space, power and HVAC, and customer network connectivity required for Dedicated Cloud installation must be provided by the customer according to the specified specifications.
- Platform updates and upgrades
- Software upgrades for Dedicated Cloud and Dedicated Cloud Air-gap services include the entire stack, encompassing related device drivers, firmware, operating system, platform software, cloud service additions, and feature upgrades.
- To use the added services and features, additional hardware and software may be required beyond the existing installed infrastructure, and additional costs may be incurred at that time.
- Upgrades and patches for the Samsung Cloud Platform are a shared responsibility between cloud service operators and users.
- Dedicated resources configured for the client must be connected to the SDS Center via a dedicated line for service delivery and operational management (the dedicated line cost is billed separately).
- If external connections are not possible due to security and regulatory requirements, you can select the Air-gap option, but in this case some services and features are limited (metering/billing, SMS sending, etc.).
Preceding Service
There are no services that need to be pre-configured before creating this service.
