forked from terraform-ibm-modules/dev-rag
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathibm_catalog.json
372 lines (372 loc) · 14.5 KB
/
ibm_catalog.json
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
268
269
270
271
272
273
274
275
276
277
278
279
280
281
282
283
284
285
286
287
288
289
290
291
292
293
294
295
296
297
298
299
300
301
302
303
304
305
306
307
308
309
310
311
312
313
314
315
316
317
318
319
320
321
322
323
324
325
326
327
328
329
330
331
332
333
334
335
336
337
338
339
340
341
342
343
344
345
346
347
348
349
350
351
352
353
354
355
356
357
358
359
360
361
362
363
364
365
366
367
368
369
370
371
372
{
"products": [
{
"label": "Retrieval Augmented Generation Pattern (Dev)",
"name": "Retrieval_Augmented_Generation_Pattern_dev",
"product_kind": "solution",
"tags": [
"watson",
"banking",
"ibm_created"
],
"keywords": [
"rag",
"watson",
"ai",
"compliance",
"fscloud",
"genai",
"sample",
"ibmcloud",
"financial services",
"watsonx",
"llm",
"retrieval augmented generation",
"secure",
"secret manager",
"key protect",
"scc"
],
"short_description": "Deploys a sample Retrieval Augmented Generation application, including all supporting IBM Cloud and Watson services.",
"long_description": "This deployable architecture provides a comprehensive foundation for trust, observability, security, and regulatory compliance by configuring and deploying various services, including:\n- Configuring IBM Cloud Account: with recommended values meeting the [IBM Cloud Framework for Financial Services](https://cloud.ibm.com/docs/framework-financial-services?topic=framework-financial-services-about)\n- Deploying Observability Services: for application and platform logging and monitoring\n- Deploying Keys and Secrets Management Services: for storage and management of encryption keys and secrets\n- Deploying CI/CD/CC Pipelines: for secure application lifecycle management\n- Deploying a Suite of Watson AI Services: to provide AI capabilities to the application \n\nThese configured and deployed services enable a secure and trustworthy deployment of Generative AI applications on IBM Cloud.\n\n# Objective\n\nThis deployable architecture is designed to showcase a fully automated deployment of a retrieval augmented generation application through IBM Cloud Project, providing a flexible and customizable foundation for your own Watson-based application deployments on IBM Cloud. This architecture deploys the following [banking sample application](https://github.com/IBM/gen-ai-rag-watsonx-sample-application) by default.\n\nBy leveraging this architecture, you can accelerate your deployment and tailor it to meet your unique business needs and enterprise goals.",
"offering_docs_url": "https://github.com/terraform-ibm-modules/stack-retrieval-augmented-generation/blob/main/README.md",
"offering_icon_url": "https://globalcatalog.cloud.ibm.com/api/v1/1082e7d2-5e2f-0a11-a3bc-f88a8e1931fc/artifacts/solution.svg",
"provider_name": "IBM",
"features": [
{
"title": "Retrieval Augmented Generation sample pattern",
"description": "Deploy a banking retrieval augmented generation (RAG) sample application to IBM Cloud Code Engine using Continous Delivery."
},
{
"title": "Ensure Observability",
"description": "Provides observability by deploying services such as IBM Log Analysis, IBM Monitoring, IBM Activity Tracker, and log retention."
},
{
"title": "Implement Security",
"description": "The architecture ensures security by deploying IBM Key Protect and IBM Secrets Manager."
},
{
"title": "Achieve Regulatory Compliance",
"description": "Ensures regulatory compliance by implementing CI/CD/CC pipelines, along with IBM SCC for secure application lifecycle management."
},
{
"title": "Establish Trust",
"description": "Ensures trust by configuring the IBM Cloud account to align with compliance settings as defined in the Financial Services framework."
}
],
"support_details": "This product is in the community registry, as such support is handled through the originated repo. If you experience issues please open an issue in that repository [https://github.com/terraform-ibm-modules/stack-retrieval-augmented-generation/issues](https://github.com/terraform-ibm-modules/stack-retrieval-augmented-generation/issues). Please note this product is not supported via the IBM Cloud Support Center.",
"flavors": [
{
"label": "Basic",
"name": "basic",
"compliance": {
"authority": "scc-v3",
"profiles": [
{
"profile_name": "AI ICT Guardrails",
"profile_version": "1.0.0"
}
]
},
"iam_permissions": [
{
"service_name": "iam-groups",
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Administrator"
]
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::serviceRole:Manager",
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "cloud-object-storage"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Administrator"
],
"service_name": "iam-identity"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::serviceRole:Writer",
"crn:v1:bluemix:public:iam::::role:Administrator"
],
"service_name": "atracker"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::serviceRole:Manager",
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "kms"
},
{
"service_name": "compliance",
"role_crns": [
"crn:v1:bluemix:public:iam::::serviceRole:Manager",
"crn:v1:bluemix:public:iam::::role:Editor"
]
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "pm-20"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "data-science-experience"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "aiopenscale"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "conversation"
},
{
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
],
"service_name": "discovery"
},
{
"service_name": "databases-for-elasticsearch",
"role_crns": [
"crn:v1:bluemix:public:iam::::role:Editor"
]
},
{
"service_name": "event-notifications",
"role_crns": [
"crn:v1:bluemix:public:iam::::serviceRole:Manager",
"crn:v1:bluemix:public:iam::::role:Editor"
]
}
],
"architecture": {
"features": [
{
"title": "Retrieval Augmented Generation sample pattern",
"description": "Deploy a banking retrieval augmented generation (RAG) sample application to IBM Cloud Code Engine using Continous Delivery."
},
{
"title": "Ensure Observability",
"description": "The architecture provides observability by deploying services such as IBM Log Analysis, IBM Monitoring, IBM Activity Tracker, and log retention through Cloud Object Storage buckets."
},
{
"title": "Implement Security",
"description": "The architecture ensures security by deploying IBM Key Protect and IBM Secrets Manager."
},
{
"title": "Achieve Regulatory Compliance",
"description": "The architecture ensures regulatory compliance by implementing CI/CD/CC pipelines, along with IBM Security Compliance Center (SCC) for secure application lifecycle management."
},
{
"title": "Establish Trust",
"description": "The architecture ensures trust by configuring the IBM Cloud account to align with compliance settings as defined in the Financial Services framework."
}
],
"diagrams": [
{
"diagram": {
"url": "https://raw.githubusercontent.com/terraform-ibm-modules/stack-retrieval-augmented-generation/main/reference-architecture/RAG Pattern v2-part-2.svg",
"caption": "Reference architecture",
"type": "image/svg+xml",
"thumbnail_url": "https://raw.githubusercontent.com/terraform-ibm-modules/stack-retrieval-augmented-generation/main/reference-architecture/RAG Pattern v2-part-2.svg"
},
"description": "Reference architecture"
},
{
"diagram": {
"url": "https://raw.githubusercontent.com/terraform-ibm-modules/stack-retrieval-augmented-generation/main/reference-architecture/rag-stack.svg",
"caption": "Solution components",
"type": "image/svg+xml",
"thumbnail_url": "https://raw.githubusercontent.com/terraform-ibm-modules/stack-retrieval-augmented-generation/main/reference-architecture/rag-stack.svg"
},
"description": "Solution components"
}
]
},
"configuration": [
{
"key": "prefix",
"type": "string",
"description": "A prefix added to the name of all resources created by this solution. Used to avoid name clashes in the target account when existing this solution multiple times.",
"default_value": "rag",
"required": true
},
{
"key": "ibmcloud_api_key",
"type": "password",
"description": "The API Key used to provision all resources created in this solution.",
"required": true
},
{
"key": "signing_key",
"type": "password",
"description": "The key used to sign the application image built by the CI pipeline deployed in this solution; please refer to the documentation at https://github.com/terraform-ibm-modules/stack-retrieval-augmented-generation/blob/main/README.md for generating the key; if not set, all resources will deploy successfully, but the initial CI pipeline execution will fail at the signing step.",
"display_name": "Multiline secure value",
"default_value": "replace",
"required": false,
"custom_config": {
"type": "multiline_secure_value",
"grouping": "deployment",
"original_grouping": "deployment"
}
},
{
"key": "region",
"type": "string",
"default_value": "us-south",
"description": "The region in which all resources are deployed.",
"required": false,
"options": [
{
"displayname": "us-south",
"value": "us-south"
},
{
"displayname": "eu-de",
"value": "eu-de"
}
]
},
{
"key": "resource_group_name",
"type": "string",
"default_value": "rag-services",
"description": "The name of the resource group that is created by this solution. The actual name is prefixed with the value of the input 'prefix'. All resources created by this solution are deployed in this resource group. ",
"required": false
}, {
"key": "existing_resource_group_name",
"type": "string",
"default_value": "__NULL__",
"description": "The name of an existing resource group that is used by this solution. Prefix is NOT used for existing resource group. All resources created by this solution are deployed in this resource group. ",
"required": false
},
{
"key": "watsonx_admin_api_key",
"type": "password",
"description": "The API key used to provision the watson project resources. If not set, the API key used to deploy the solution is used.",
"required": false
},
{
"key": "secret_manager_service_plan",
"type": "string",
"default_value": "trial",
"description": "The service/pricing plan to use when provisioning a new Secrets Manager instance. Only one trial instance is allowed per account.",
"required": false,
"options": [
{
"displayname": "Trial",
"value": "trial"
},
{
"displayname": "Standard",
"value": "standard"
}
]
},
{
"key": "existing_secrets_manager_crn",
"type": "string",
"default_value": "__NULL__",
"description": "The CRN of an existing secret manager instance to use in this solution. If not set, a new secret manager instance is provisioned.",
"required": false
},
{
"key": "enable_platform_logs_metrics",
"type": "boolean",
"default_value": false,
"description": "Whether to provision logging and monitoring instances are configured to receive all platform logs and metrics in the target region. There can only be one instance per region provisioned for platform logs/metrics.",
"required": false
},
{
"key": "sample_app_git_url",
"type": "string",
"default_value": "https://github.com/IBM/gen-ai-rag-watsonx-sample-application",
"description": "The URL to the public git repository containing the sample rag application code.",
"required": false
},
{
"key": "existing_kms_instance_crn",
"type": "string",
"default_value": "__NULL__",
"description": "The CRN of an existing KMS instance to use in this solution. If not set, a new KP instance is provisioned.",
"required": false
},
{
"key": "existing_en_instance_crn",
"type": "string",
"default_value": "__NULL__",
"description": "The CRN of an existing event notification instance to use in this solution. If not set, a new event notification instance is provisioned.",
"required": false
},
{
"key": "elasticsearch_plan",
"type": "string",
"default_value": "enterprise",
"description": "The pricing plan for the Databases for Elasticsearch instance.",
"required": false,
"options": [
{
"displayname": "Enterprise",
"value": "enterprise"
},
{
"displayname": "Platinum",
"value": "platinum"
}
]
}
],
"outputs": [
{
"key": "elasticsearch_hostname",
"description": "Elasticsearch instance hostname."
},
{
"key": "elasticsearch_port",
"description": "Elasticsearch instance port."
},
{
"key": "elasticsearch_service_credentials_json",
"description": "Elasticsearch instance service credentials json map."
},
{
"key": "elasticsearch_crn",
"description": "Elasticsearch instance crn."
},
{
"key": "watsonx_project_url",
"description": "The URL to the WatsonX project for the sample RAG application."
},
{
"key": "watsonx_project_id",
"description": "The ID for the WatsonX project for the sample RAG application."
},
{
"key": "watson_discovery_api_url",
"description": "The URL to the Watson Discovery API endpoint."
},
{
"key": "watson_discovery_project_id",
"description": "The ID for the Watson Discovery project for the sample RAG application."
}
],
"install_type": "fullstack"
}
]
}
]
}