This topic describes the Managed O&M feature of Compute Nest. It explains what managed O&M is, its common use cases, and its capabilities.
What is managed O&M?
Managed O&M in Compute Nest is a proxy O&M feature. Typically, you must log on to your Alibaba Cloud account to manage your cloud resources, such as querying resources, logging on to instances, or viewing logs. However, customers may not be technical experts or familiar with the software deployed on their cloud resources. This can make it difficult for them to independently manage the hardware and software of their service instances. To address this, Compute Nest provides the managed O&M feature. With managed O&M, you can grant permissions to the service provider of a service instance, allowing them to perform O&M operations on your cloud resources. The authorization can be temporary for a specific duration or long-term. You can grant full permissions to the service provider or only specific permissions, such as read-only, logon, audit, and monitoring.
When to use managed O&M
Managed O&M is typically used in the following scenarios:
If a service instance from a private deployment fails and you cannot troubleshoot the issue, you can contact the service provider. The service provider then requests permissions, which you can approve to grant them O&M access to the service instance. This is a temporary authorization.
To ensure service quality, a service provider may include managed O&M for their private services by default. The provider configures the required authorization details when creating the service. When you create a service instance, you can review these authorization details. If a service issue occurs, you can contact the service provider for O&M operations immediately without needing to grant authorization again. This is a long-term authorization.
Managed O&M capabilities of Compute Nest
By authorization duration:
Long-term authorization: The service provider must configure the authorization details when creating the service. For more information, see Long-term authorization.
Temporary authorization: The service provider must create a managed O&M service and then create a managed O&M instance when O&M operations are required. This type of authorization is time-limited. After the authorization expires, the service provider must submit a new request. For more information, see Temporary authorization.
By permission type:
Full permissions
Read-only permission
Terminal logon permission
Operation audit permission
Monitoring permission
Upgrade permission
O&M operation permission
For more information, see Managed O&M permissions.
In addition, to prevent disputes during the managed O&M process, Compute Nest provides an O&M audit feature. For more information, see Managed O&M audit.