Freedom Cloud is a VMWare-backed ‘Infrastructure as a Service’ computing platform. Public, Hybrid or Private Cloud solutions are available in fully managed or Self-Service offerings. A variety of network connectivity options enables Freedom Cloud to be connected to your network to seamlessly deliver services to internal or external users.
- •Private Virtual Datacentre Allocation based on VMware vCloud technology
- •Isolated Virtual LAN Networks within customers' Virtual Datacentre
- •Private Virtual Firewall Solution per Virtual Datacentre
- •Increase Virtual Machine Compute resources when needed
- •Tiered storage allocation for application demand
- •VPN and Layer 2 conectivity options for direct access
- •Managed support available
- •DMZ and WAN services for External connections/authentication
- •Shared or Dedicated Resource Pooling based on customer needs
- •Multi-OS Support for Linux/Windows based servers
- •Reduced needs for server-based onsite IT infrastructure
- •Payment based on per-hour per-allocation model
- •Full redundant platform components for maximum uptime
- •Reduced total cost of ownership
- •Reduces need for local IT Support
- •Ability to provision and increase resources on-demand
- •Housed in a state-of-the-art secure datacentres
- •Increase efficiency by deploying preconfigured services through one portal
£310 to £310 per instance per month
- Education pricing available
- Free trial available
|Service constraints||Consumers will be notified of any planned maintenance|
|System requirements||Anti Virus|
|Email or online ticketing support||Email or online ticketing|
|Support response times||Maximum 4 hours for incidents. 1 business day for standard changes|
|User can manage status and priority of support tickets||Yes|
|Online ticketing support accessibility||None or don’t know|
|Phone support availability||9 to 5 (UK time), 7 days a week|
|Web chat support||No|
|Onsite support||Onsite support|
Standard support hours: 8am to 6pm Monday to Friday Extended (Gold) support hours; 8am to 10pm seven days a week
Maximum 4 hours for incidents. 1 business day for standard changes
|Support available to third parties||Yes|
Onboarding and offboarding
|Getting started||User documentation intro pack provided|
|End-of-contract data extraction||For compliance, emergency or just to ensure you can retrieve your data for BCP or DR purposes Freedom Virtual Datacentre supports data extraction in several ways. Our engineers will manually extract the data within your virtual datacentre within 48 hours and ship to your contracted office address on encrypted devices. If your requirement is extremely urgent and or sensitive, we are always happy to help, so contact your account manager and we can help you get to your data the same day. This is a chargeable service and will be billed based on time and materials.|
For compliance, emergency or just to ensure you can retrieve your data for BCP or DR purposes Freedom Virtual Datacentre supports data extraction in several ways.
EE is happy to provide full migration services away from Freedom Virtual Datacentre by working with you to enable the migration of service elements away from Freedom Virtual Datacentre. Data extraction and provision of backup data is a chargeable service and is dependent on you contract with EE and Freedom Services.
We hope you do not want to move away from us but we will ensure that our professional service team is available and capable of moving your data.
Using the service
|Web browser interface||No|
|What users can and can't do using the API||RESTful with full programmatic contrl. Open Virtualisation Formal Standards based|
|API automation tools||Other|
|Other API automation tools||RESTful with full programmatic contrl.|
|API documentation formats||Open API (also known as Swagger)|
|Command line interface||Yes|
|Command line interface compatibility||
|Using the command line interface||Yes|
|Independence of resources||Managed Service monitoring|
|Infrastructure or application metrics||Yes|
|Reporting types||API access|
|Supplier type||Not a reseller|
|Staff security clearance||Conforms to BS7858:2012|
|Government security clearance||Up to Security Clearance (SC)|
|Knowledge of data storage and processing locations||Yes|
|Data storage and processing locations||United Kingdom|
|User control over data storage and processing locations||Yes|
|Datacentre security standards||Supplier-defined controls|
|Penetration testing frequency||At least every 6 months|
|Penetration testing approach||Another external penetration testing organisation|
|Protecting data at rest||Encryption of all physical media|
|Data sanitisation process||Yes|
|Data sanitisation type||Explicit overwriting of storage before reallocation|
|Equipment disposal approach||A third-party destruction service|
Backup and recovery
|Backup and recovery||Yes|
|What’s backed up||
Our enterprise class backup and recovery platform will backup and store your data and entire virtual machines snapshots within our separate backup and archive infrastructure.
Backups can be configured to standard retention templates
|Datacentre setup||Multiple datacentres with disaster recovery|
|Scheduling backups||Users schedule backups through a web interface|
|Backup recovery||Users can recover backups themselves, for example through a web interface|
|Data protection between buyer and supplier networks||TLS (version 1.2 or above)|
|Data protection within supplier network||TLS (version 1.2 or above)|
Availability and resilience
Freedom Virtual Datacentre and Virtual Servers operates on a Non-guaranteed and guaranteed resource model depending on the choice of Virtual Datacentre subscription model. These are
Reserved – All resources are predefined and provisioned on agreement, and 100% guaranteed and reserved for each customer.
Allocated –This deployment model is flexible in its capability to deliver guaranteed and non-guaranteed resources for the virtual datacentre or virtual servers, in that resource can be a mixture of both and specified between 1-99% guaranteed based on your agreed configuration. Typical configuration for this deployment would be 25% guaranteed and 75% non-guaranteed.
|Approach to resilience||
Base vDC configuration has various network and security elements. These are
Public IP addresses for connecting to the internet or publishing services to the internet.
Cloud networks or Subnets, these are the networks that your VM’s connect too. They are private and isolated, also unique to each customer.
A vShield edge firewall for securing your private cloud networks and enabling routing and firewalling between the public and private networks.
o IPSEC VPN capability that terminates on the firewall to enable connectivity to remote sites or other cloud organisations.
o Load balancing to create highly available services and applications
o DHCP to dynamically assign IP addresses within your cloud network
o NAT – Network address translation to allow your firewall to publish services or for your servers to connect out the internet.
o Firewall rules – standard Allow/Block capability on a per port, IP or network basis.
Public internet connectivity – 10mbps of unmetered bandwidth per vDC can be increased up to 1GB
Direct connections across private Ethernet services, or point to point connections.
Static Routing – the ability to define routes that will govern how traffic will flow across cloud and remote networks.
12 Virtual Datacentre and Virtual Server Service Definition | EEL
Wednesday, 05 December 2012
MANAGED SERVICE SUPPORT (OPTIONAL)
EE also offers a fully managed option for Freedom vDC. This means we do everything from installing, updating, patching and maintenance of servers and applications. As well as standard change requests for implementing new servers, applications or configurations. The managed service support is charged as a standard fee based on the size of your virtual datacentre.
We will support your operating systems, applications and databases, your backups and provide monitoring and full pro-active support and administration of all services within the vDC.
A managed service delivery manager will define the scope of your service with you and identify any third party applications that are out of scope of our support teams knowledge or capability. Then either EE can manage the third party for you or you can manage those yourself.
Note: please see service and support section. MONITORING
EE monitors the freedom Virtual Datacentre infrastructure 247. This includes wide area networks, local virtual and physical networks, servers, storage and software.
Identity and authentication
|User authentication||2-factor authentication|
|Access restrictions in management interfaces and support channels||Yes|
|Access restriction testing frequency||At least every 6 months|
|Management access authentication||2-factor authentication|
|Devices users manage the service through||Dedicated device on a segregated network (providers own provision)|
Audit information for users
|Access to user activity audit information||Users contact the support team to get audit information|
|How long user audit data is stored for||User-defined|
|Access to supplier activity audit information||Users receive audit information on a regular basis|
|How long supplier audit data is stored for||User-defined|
|How long system logs are stored for||User-defined|
Standards and certifications
|ISO/IEC 27001 certification||Yes|
|Who accredited the ISO/IEC 27001||BSI|
|ISO/IEC 27001 accreditation date||19/03/2017|
|What the ISO/IEC 27001 doesn’t cover||Our ISO 27001 covers the delivery of ICT solutions, infrastructure and managed services, Freedom Cloud Services and Support.|
|ISO 28000:2007 certification||No|
|CSA STAR certification||No|
|Other security accreditations||No|
|Named board-level person responsible for service security||Yes|
|Security governance accreditation||Yes|
|Security governance standards||ISO/IEC 27001|
|Information security policies and processes||Iso27001|
|Configuration and change management standard||Supplier-defined controls|
|Configuration and change management approach||Working with Freedom Virtual Datacentre is achieved through a publicly accessible secure website (URL) as shown in figure 2. Each customer is provisioned a portal through which to manage their cloud, each customer can add more virtual datacentres, virtual servers, vCPU, Memory and Storage. Along with provisioning firewalls, load balancers and networks. vAPP’s or virtual applications can be created and virtual machines deployed to the vAPP’s. Each vAPP can contain multiple virtual resources such as networks, virtual machines, vShield edge gateways allowing you to group and configure multi-tiered applications and provision of security boundaries dynamically in the cloud.|
|Vulnerability management type||Supplier-defined controls|
|Vulnerability management approach||EE will monitor for security events involving the underlying infrastructure servers, storage, networks, and information systems used in the delivery of Freedom Virtual Datacentre for which it has sole administrative level control over. This responsibility stops at any point where you have some control, permission, or access to modify an aspect of the Service Offering.|
|Protective monitoring type||Supplier-defined controls|
|Protective monitoring approach||EE will monitor for security events involving the underlying infrastructure servers, storage, networks, and information systems used in the delivery of Freedom Virtual Datacentre for which it has sole administrative level control over. This responsibility stops at any point where you have some control, permission, or access to modify an aspect of the Service Offering.|
|Incident management type||Supplier-defined controls|
|Incident management approach||EE provides security for all infrastructure that it is solely responsible for, can administer and that is defined as the foundation freedom virtual datacentre service. As the service consists of both service provider services and customer’s service. A shared responsibility exists between the customer and service provider to ensure end to end security is achieved.|
|Approach to secure software development best practice||Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)|
Separation between users
|Virtualisation technology used to keep applications and users sharing the same infrastructure apart||Yes|
|Who implements virtualisation||Supplier|
|Virtualisation technologies used||VMware|
|How shared infrastructure is kept separate||Managed data protection is an optional service that is provided in 1TB increments. It is a fully managed service in that it completely delivered, managed and supported by EE. Our enterprise class backup and recovery platform will backup and store your data and entire virtual machines snapshots within our separate backup and archive infrastructure.|
|Price||£310 to £310 per instance per month|
|Discount for educational organisations||Yes|
|Free trial available||Yes|
|Description of free trial||Information available on request|
|Pricing document||View uploaded document|
|Skills Framework for the Information Age rate card||View uploaded document|
|Service definition document||View uploaded document|
|Terms and conditions document||View uploaded document|