Geodesic is the fastest way to get up and running with a rock solid, production grade cloud platform.
It provides a fully customizable framework for defining and building world-class cloud infrastructures backed by AWS and powered by kubernetes. It couples best-of-breed technologies with engineering best-practices to equip organizations with the tooling that enables clusters to be spun up in record time without compromising security.
Geodesic is composed of two parts:
- It is an interactive command-line shell. The shell includes the ultimate mashup of cloud orchestration tools. Those tools are then integrated to work in concert with each other using a consistent framework. Installation of the shell is as easy as running a docker container.
- It is a distribution of essential services. The distribution includes a collection of Helm charts for CI/CD, VPN, SSH Bastion, Automatic DNS, Automatic TLS, Automatic Monitoring, Account Management, Log Collection, Load Balancing/Routing, Image Serving, and much more. What makes these charts even more valuable is that they were designed from the ground up work well with each other and integrate with external services for authentication (SSO/OAuth2, MFA).
An organization may chose to leverage all of these components, or just the parts the make their life easier.
- Secure - TLS/PKI, OAuth2, MFA Everywhere, remote access VPN, ultra secure bastion/jumphost with audit capabilities and slack notifications, IAM assumed roles, automatic key rotation, encryption at rest, and VPCs;
- Repeatable - 100% Infrastructure-as-Code with change automation and support for scriptable admin tasks in any language, including terraform;
- Extensible - A framework where everything can be be extended to work the way you want to to;
- Comprehensive - our helm charts library are designed to tightly integrate your cloud-platform with Github Teams and Slack Notifications and CI/CD systems like TravisCI, CircleCI or Jenkins;
- OpenSource - Permissive APACHE 2.0 license means no lock-in and no on-going license fees
At its core, Geodesic is a framework for provisioning cloud infrastructure and the applications that sit on top of it. We leverage as many existing tools as possible to facilitate cloud fabrication and administration. We're like the connective tissue that sits between all of the components of a modern cloud.
kops
for kubernetes cluster orchestrationaws-cli
for interacting directly with the AWS APIshelm
for installing packages like varnish or apache on the kubernetes clusterterraform
for provisioning miscellaneous resources on pretty much any cloudkubectl
for controlling kubernetes resources like deployments or load balancersansible
Ansible is an IT automation tool. It can configure systems, deploy software, and orchestrate more advanced IT tasks.s3fs
for mounting encrypted S3 buckets that store cluster configurations and secretshub
for managing your infrastructure-as-code on Github - the way you can extend geodesic to do pretty much anything you wantgcloud
,gsutil
for integration with Google Cloud (e.g. GKE, GCE, Google Storage)
Docker can be easily installed by following the instructions for your OS:
-
Install the geodesic client, if you haven't already: (feel free to inspect the shell script!)
curl -s https://geodesic.sh | bash
-
Run
geodesic
to start the geodesic shell -
Run
setup-role
to configure your AWS credentials -
Run
assume-role $role
where $role is the one you configured in your AWS configuration. -
Run
ssh-add ~/.ssh/id_rsa
to add your ssh key to the SSH agent (must be same key used on Github) -
Run
cloud create
to run through configuration steps -
Run
cloud up
to provision the cluster
All done. Your cloud is now up and running.
Got a question?
Review the docs, file a GitHub issue, send us an email or reach out to us on Gitter.
Please use the issue tracker to report any bugs or file feature requests.
If you are interested in being a contributor and want to get involved in developing Geodesic, we would love to hear from you! Shoot us an email.
In general, PRs are welcome. We follow the typical "fork-and-pull" Git workflow.
- Fork the repo on GitHub
- Clone the project to your own machine
- Commit changes to your own branch
- Push your work back up to your fork
- Submit a Pull request so that we can review your changes
NOTE: Be sure to merge the latest from "upstream" before making a pull request!
APACHE 2.0 © 2016-2017 Cloud Posse, LLC
Licensed to the Apache Software Foundation (ASF) under one
or more contributor license agreements. See the NOTICE file
distributed with this work for additional information
regarding copyright ownership. The ASF licenses this file
to you under the Apache License, Version 2.0 (the
"License"); you may not use this file except in compliance
with the License. You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing,
software distributed under the License is distributed on an
"AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY
KIND, either express or implied. See the License for the
specific language governing permissions and limitations
under the License.
Geodesic is maintained and funded by Cloud Posse, LLC. Like it? Please let us know at [email protected]
We love Open Source Software!
See our other projects or hire us to help build your next cloud-platform.
Erik Osterman |
Igor Rodionov |
---|