/gcloud-kit:sdd-lot1b
Generate a Service Definition Document for G-Cloud 15 Lot 1b — IaaS and PaaS above OFFICIAL.
Overview
Lot 1b covers the same infrastructure and platform services as Lot 1a, for buyers whose data is classified above OFFICIAL. GCA asks it the same service questions as Lot 1a, except that staff clearance can only be "Up to Security Clearance (SC)" or "Up to Developed Vetting (DV)". The command answers every question in GCA's G-Cloud 15 (RM1557.15) export, in its order, and checks the things that make a Lot 1b bid valid: the classification the service handles and SC or DV clearance. It also reports whether the service needs an ISO 27018 certificate, which Lots 1a and 1b both require for a service that includes public cloud.
Usage
/gcloud-kit:sdd-lot1b Secure Hosting Platform
Arguments: Service name or number (must match an existing service directory).
Prerequisites
- Supplier profile (
services/supplier/supplier-profile.md) - Service design for a Lot 1b service (
services/{number}-{name}/service-design.md), from /gcloud-kit:service-design
Output
services/{number}-{name}/sdd.md
Template used: .gcloud/templates/sdd-lot1-template.md if you've customised it with /gcloud-kit:customize, otherwise the plugin's templates/sdd-lot1-template.md (shared with Lot 1a)
What it does
- Verifies the supplier profile and service design exist, and that the design is for Lot 1b
- Confirms the service handles data above OFFICIAL (a service that handles only OFFICIAL data is pointed to
/gcloud-kit:sdd-lot1a) and records the highest classification - Checks the staff clearance offered is SC or DV; anything else is reported as a blocker
- Reads the existing
sdd.mdon a re-run (confirmed answers are kept, the version is bumped and a revision-history row added) - Reads the Lot 1b service questions and the Lot 1a category tree, which Lot 1b shares
- Researches open answers; Lot 1b isn't in the public marketplace search, so comparable Lot 1a listings (
iaas-and-paas) are used - Answers every question, writes anything unconfirmed as
[PENDING], and summarises Lot 1b readiness (classification, clearance, ISO 27018 where it applies) with counts against each limit
Limits
- Service name: ≤100 characters, the name only
- Description: ≤500 characters
- Features, benefits, system requirements and backed-up items: ≤10 each, ≤10 words each
- Uploaded service definition document: ODF or PDF/A, ≤5 MB, accessible, no prices
Lot 1b specifics
- ISO 27018: required on Lots 1a and 1b for any service that includes public cloud, unless you resell and rely on the cloud provider's accreditations; a private-cloud-only service doesn't need it. It is answered in the lot questions, not the SDD
- Prices: go on GCA's separate, non-public platform; prepare them with /gcloud-kit:pricing
- Listings: Lot 1b services are not in the public Digital Marketplace search
Related commands
- /gcloud-kit:service-design — create the service design and choose the lot first
- /gcloud-kit:sdd-lot1a — the same questions for services up to OFFICIAL
- /gcloud-kit:lot-questions — Lot 1a/1b lot questions, including the Lot 1b question and ISO 27018
- /gcloud-kit:pricing — price the service after the SDD
- /gcloud-kit:security — generate security evidence after the SDD
- /gcloud-kit:review — check completeness before submission