OOTS<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@andreasdotorg" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>andreasdotorg</span></a></span> <span class="h-card" translate="no"><a href="https://mastodon.social/@redknight" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>redknight</span></a></span> <br>I think at that level it's conceptually easy, you "just" need (wo-)manpower to set up and maintain everything yourself. Assuming you want to set up a new cloud provider from scratch and build one/two/three new DCs in different regions in Europe:<br>- buy standard "off-the-shelve" server hardware<br>- at this level you can use US networking equipment (firewalls, routers, switches)<br>- and then use/self-host all the open-source software you want</p><p>E.g.:<br>- use your favourite <a href="https://infosec.exchange/tags/Linux" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linux</span></a> distro (<a href="https://infosec.exchange/tags/debian" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>debian</span></a>, <a href="https://infosec.exchange/tags/ubuntu" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ubuntu</span></a>, <a href="https://infosec.exchange/tags/fedora" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fedora</span></a>, or whatever)<br>- set up Netbox or a similar tool (and maybe phpIPAM) + <a href="https://infosec.exchange/tags/PostGreSQL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostGreSQL</span></a> Server<br>- there's probably no way around <a href="https://infosec.exchange/tags/OpenStack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenStack</span></a> either way, with <a href="https://infosec.exchange/tags/MariaDB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MariaDB</span></a> and some other open source tools in the background<br>- you can set up <a href="https://infosec.exchange/tags/Prometheus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Prometheus</span></a>, <a href="https://infosec.exchange/tags/Grafana" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Grafana</span></a>, <a href="https://infosec.exchange/tags/OpenSearch" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSearch</span></a> for observability</p><p>And on top of that offer services as you see fit:<br>- automate setup/maintenance of <a href="https://infosec.exchange/tags/Kubernetes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kubernetes</span></a> clusters (I heard <a href="https://infosec.exchange/tags/RKE2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RKE2</span></a> is a fairly self-contained <a href="https://infosec.exchange/tags/K8s" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>K8s</span></a> distribution)<br>- automate setup/maintenance of DB servers<br>- provide a way to run "serverless" apps<br>- set up <a href="https://infosec.exchange/tags/nextcloud" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nextcloud</span></a> or so</p>