Google Cloud Platform Windows Out Of Box Catalog items
Summarize
Summary of Google Cloud Platform Windows Out Of Box Catalog items
The Google Cloud Platform (GCP) Windows Out Of Box (OOB) Catalog items provide ServiceNow customers with ready-to-use catalog items to request Windows virtual machines (VMs) on GCP. These catalog items support various configurations including VM sizes, multiple attached disks, and cloud firewall security settings. The solution automates deployment and policy compliance checks, streamlining the process for ordering Windows instances through ServiceNow.
Show less
Key Features
- CSC GCP Windows VM: Enables ordering Windows VMs of any instance type. VM sizes other than
e2-microande2-smallrequire administrator approval via policy. Windows credentials are supplied by the user during order and must meet Windows complexity requirements. - CSC GCP Windows Multiple Disks: Allows ordering a Windows VM with up to 10 additional disks (volumes) of varying sizes and types. No approval is needed for up to two disks; beyond that, approval is required. User provides Windows credentials with complexity enforcement.
- CSC GCP Windows Cloud Firewall: Provides the capability to assign security groups (firewall port rules) to the VM instance to control network traffic for enhanced security. Security groups are scoped to selected VPC and subnets. Windows credentials are provided with complexity validation.
- Automated Compliance and Policy Enforcement: After deployment, a Cloud Configuration Governance (CCG) scan validates the VM configuration against policy rules. Any violations set the deployment stack to a 'Follow up needed' state, alerting administrators to non-compliant deployments.
- Tagging: All deployed resources (VM, network, storage) are tagged with key-value pairs in the ServiceNow CMDB (cmdbkeyvalue table). Currently, tags are not updated in the public cloud but this will be addressed in future releases.
Practical Benefits for ServiceNow Customers
- Quickly provision Windows VMs on GCP through familiar ServiceNow catalog interfaces.
- Control and enforce VM sizing and disk attachment policies to maintain governance.
- Enhance VM security by configuring firewall rules directly via the catalog order.
- Ensure compliance through automated post-deployment scans and alerting workflows.
- Centralized tagging of deployed cloud resources within ServiceNow for improved asset management and tracking.
Cloud Services Catalog Windows VM, up to 10 additional disks on Google Cloud Platform or with cloud firewall.
This is a fully functional sample catalog item that can be used to request a Windows instance of any type from Google Cloud Platform.
Linux VM orders and features:
| Order | Features |
|---|---|
|
CSC GCP Windows VM: Order a Windows Virtual machine that allows installation of Agent Client Collector. VM sizes other than e2-micro and e2-small require approval. |
This is a fully functional sample catalog item that can be used to request a Windows instance of any instance type from Google Cloud Provider. For instance types other than e2-micro and e2-small, approval is needed from administrator, by policy. The Windows credentials are provided by the user in catalog order form. The credentials to meet complexity requirement based on windows version. The workflow automation runs a CCG scan on the deployed Windows instance, and checks the policy rule with the configuration of the VM. If there is any violation, the stack will be set with 'Follow up needed' state to notify that the stack deployment is not as per norms. |
|
CSC GCP Windows multiple disks: Order a Windows virtual machine and specify up to 10 additional disk. No approval is necessary for up to two disks, but for anything beyond that, approval will be required. |
This is a fully functional sample catalog item that can be used to request a Windows instance of any instance type from Google Cloud Provider. This catalog item form allows ordering up to 10 additional disks (volumes) attached to the VM of varying sizes and types. If more than two additional disks are added to the request, approval is needed from administrator, by policy. The Windows credentials are provided by the user in catalog order form. The credentials to meet complexity requirement based on windows version. |
|
CSC GCP Windows Cloud Firewall: Order a secure Windows virtual machine with enhanced security to allow or deny traffic to and from your VM instances based on your specified configuration for highest level of security. |
This is a fully functional sample catalog item that can be used to request a Windows instance of any instance type from Google Cloud Provider. This catalog item form allows capability to assign one or more security groups (firewall-port rules) to the compute instance so that the network access to the VM is restricted. Security groups are listed for the selected VPC and subnets. The Windows credentials are provided by the user in catalog order form. The credentials to meet complexity requirement based on windows version. |
Tag (key-value) is assigned to all deployed resources. Example: VM, network, storage as present in the stack.
The key-value is updated only in the cmdb_key_value table, not in public cloud at this time. This will be fixed in future releases to update the tags in cloud.