Successfully reported this slideshow.
We use your LinkedIn profile and activity data to personalize ads and to show you more relevant ads. You can change your ad preferences anytime.

How to Migrate SAP Applications to AWS While Maintaining Compliance with AWS - LFS303 - re:Invent 2017

559 views

Published on

SAP is the predominant mission-critical business software platform for Life Sciences companies. SAP often handles multiple areas of the business including finance, HR, training, manufacturing, and supply chain. In this session, learn from Amgen about how they implemented SAP to comply with Good Manufacturing Practices (GMP), how to avoid unexpected challenges with upgrades, how to structure your project, and best practice approaches when migrating your SAP environment to AWS.

  • Be the first to comment

How to Migrate SAP Applications to AWS While Maintaining Compliance with AWS - LFS303 - re:Invent 2017

  1. 1. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Harish Mundre P r i n c i p a l C l o u d S o l u t i o n A r c h i t e c t A m g e n I n c . How to Migrate SAP Applications to AWS While Maintaining Compliance with AWS N o v e m b e r 2 7 , 2 0 1 7 L F S 3 0 3
  2. 2. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What to Expect from the Session? • Amgen Cloud Strategy and Roadmap • How to host and manage hybrid SAP landscapes both on-premise and AWS? • Technology footprint to manage hybrid SAP Landscapes • Why? • How? • Architecture and design overview • Lesson learned and next steps
  3. 3. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amgen Today One of the world’s leading independent biotechnology companies ~ 100 countries Reached millions of patients
  4. 4. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Products For additional information about Amgen products, including important safety information, please visit amgen.com
  5. 5. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Our Digital World Vision Legacy physical world • Applications conform to infrastructure Digital world • Software-defined infrastructure conforms to apps • Amgen cloud-first strategy • Increasing speed of delivery, agility, and reliability, and reducing total cost of ownership through the rapid evaluation and deployment of new technologies without compromising information protection and compliance • Enable access to or the integration of new digital capabilities (Internet of Things (IoT), artificial intelligence (AI), analytics...)
  6. 6. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS Cloud Integration Overview US-West Oregon PRIMARY Corporate Data center A m g e n O N E C L O U D EU Asia Today To be Added.. US - West US - East EU JPAC • Cloud Management Platform (CMP)—developed internally to provision AWS resources • AWS Direct Connect—dual 10 Gbs • Multi-account with automated billing • Qualified OS images and other AWS resources • Automated data protection solution using AWS Lambda • Production application including GxP running in AWS cloud • Integration with service now, Corporate AD, and LDAP AWS Direct Connect AWS Direct Connect AWS Direct Connect AWS Direct Connect US-East Virginia DR
  7. 7. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Our Journey to Modernize ERP Current State “Information Age” Target State “Digital Economy” Suite on HANA ERP 6.0 EHP8 • Evolution of ERP available since 2004; end of life planned for 2025 • Last application maintenance in 2013 • Aging infrastructure • Latest evolution of SAP Business Suite released in 2015 • Current direction of SAP investments • Optimized for and only runs on HANA in-memory platform• Most current version of SAP ERP application • Low-risk step towards target state vision • Pre-requisite HANA in- memory platform can be introduced with limited business impact SAP ERP 6.0 EHP5 Current Decision Future Decision
  8. 8. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. RehostRetire • Infrastructure Upgrade On-premises infrastructure upgrade to support HANA: hybrid architecture with on-premises production and major release (N+1) in AWS • Database Transform From MS SQL to HANA . • SAP Upgrade From ECC 6.0 EHP 5 to ECC 6.0 EHP 8 . • Public Cloud Adoption Deploy Training and Major Release (N+1) landscape in AWS Retain (Revisit) Rearchitect (Replace)Refactor Amgen Global ERP Cloud Migration Strategy Replatform Replatform
  9. 9. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amgen ERP Landscape Overview DEV1 INT1 OQ1 Production DEV2 INT2 OQ2 Sandbox Training On-Prem AWS Support and Project Landscape Major Release Landscape INTM • Major-release landscape: any project requiring separate landscape for 6 months to year • INTM—smaller environment for system refresh
  10. 10. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amgen ERP Application Portfolio Application AII LVM ARIS NetWeaver Gateway BackOffice OER BW Onapsis ConnectShip Portal Content Server SAP Console CPS SAP Router ECC SAPRouter/WebDispatc her FedEx Seeburger Fax to Order GIS Shared IIS GIS Perimeter SLD GRC Solution Manager GTS Taxware ILMT Terminal Server KNOA SAP PO Applications and Tools AII BW Content Server ECC GTS OER Portal SAPRouter/WebDispatcher SAP PO SAP TRN (Training) Systems and ToolsSAP N & N+1 Landscapes
  11. 11. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amgen Global ERP Landscape Design Availability Zone (US-West-1) Router Internet gateway AWS Direct Connect Internet Support Portal DR Data Center (Disaster Recovery) Router VPN gateway Amgen Primary Data center) VPN gateway WAN/MPLSRouter Router DEV1 INT1 Sandbox (Reuse Compute) Production OQ1 Non – QA Shared QA Shared DR - Production Cloud Intermediate Training DEV2 INT2 OQ2 Subnet (10.1.1.0/24)
  12. 12. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Amgen ERP Cloud Design • Sizing guidelines SAP Quick Sizer to determine the SAPS, memory, and IOPS. • Cloud economics o On-demand vs reserved instance • Multi-account strategy • Automation o Ansible o AWS CloudFormation • Support model • Security • Networking Availability Zone (US-West-1) Router AWS Direct Connect ECC AII ATTP BW Amgen Data center GTS Content server OER PO Portal
  13. 13. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Partner Eco-System for Hybrid (On-premises/AWS) Landscape Management • SAP LaMa for system copy and automated installations • SIOS cluster solution for high availability (HA) • NetApp for hybrid operations • Cloud ONTAP & NetApp Private Storage (NPS) o Transports NFS share o Multiprotocol NFS and SMB share • Open-source tools to monitor SAP on-premises and AWS
  14. 14. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP on HANA as DB: High-Availability Design Availability Zone -1 Availability Zone - 2 LifeKeeper Replication/Mirroring HANA DB Node 1 HANA DB Node 2 (HA) HANA System Replication ASCS/ SCS ASCS/ SCSSIOS Cluster ERS ERS • Redhat Linux is the OS for all SAP systems (except SAP systems on SQL Server) • HANA database protected by HANA System Replication • Shared disks for Linux Cluster uses SIOS technology HANA Application Recovery Kit
  15. 15. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP on SQL Server: High-Availability Design Availability Zone Availability Zone DataKeeper Replication/Mirroring SQL Server Node 1 SQL Server Node 2 SQL server always on ASCS/SCS ASCS/SCS Microsoft Cluster ERS ERS • Windows OS for SAP on SQL server. • SQL Server database protected by SQL Server AlwaysOn Technology • Shared disks for MSFC uses SIOS technology
  16. 16. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP HANA Data Protection • Automated EBS snapshots through AWS Lambda for Amazon EC2 instances • HANA database backup stored on EBS backup location and sent offsite through Amazon S3 location with retention policy based on audit controls • Enterprise Backup scheduler/AWS Cloudwatch events integration with AWS system manager leveraged for scheduling the backups at desired frequency SAP HANA database Data Area (disk) Log Area (disk) Memory Savepoint COMMIT Data Backups Log Backups S3 offsite retention
  17. 17. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Integrated Services—Monitoring 17 Runs on EC2’s/RDS (CloudWatch logs) Metrics/Events Telegraf Agent Amazon EC2 Public AWS Cloud Alarm Data Attention Notification System - Escalation Cat -On Call Grp -Outage Notification -System Owner -Business Owner Monitoring Tools - SAP Extended Diagnostic • SAP Extended Diagnostics by SAP will be used for all monitoring which covers information like • SED is integrated with "Attention" to alert Cloud Infrastructure team for all threshold alerts and outages • Solution Manager for monitoring SAP systems Visualization
  18. 18. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP System Copy Process • Amgen copies select SAP systems from production to non-production systems for support as well as project requirements • Amgen leveraging SAP Landscape Manager (LaMa) tool for SAP landscape management and system copies • The permanent intermediate environment to host production systems data and post processing before copy to intended target systems • HANA System Replication and EBS snapshots being used to copy the data to targeted systems Production Intermediate Shared QA OQ1/2 INT1/2 Sandbox Dev Training
  19. 19. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP Refresh Strategy—On-Premises to Cloud Landscape Storage Snapshot Storage Snapshot Cleanup and Functional changes before refreshing QA/Test systems Refreshed from OQ1 systems using HSR Storage Snapshot After OQ1 cleanup completion, HSR will synchronize on-premises OQ1 changes to Training system in AWS at file-system level Production INTM QA OQ1 Training
  20. 20. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. SAP Refresh Strategy within AWS Cloud Cleanup and Functional changes before refreshing QA/Test systems Storage Snapshot HSR Replication Options: - Refresh data based on EBS snapshots - HSR data replication DEV2 INT2 OQ2 INTM Production INTM QA OQ1 *Interim servers are only for the servers that are refreshed frequently. There will be on-demand servers brought up before the refresh as part of prep activities.
  21. 21. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Lesson Learned and Next Steps • Data storage and data protection challenges • Cloud advantages o On-demand self-service of hosting infrastructure o Rapid elasticity to address changes in compute, storage requirements o Measured service offering a pay-per-use model o Automation of infrastructure configuration, provisioning, and compliance • Cloud economics o TCO as opposed to speed and agility • Dedicated technical teams and engage project team along the way
  22. 22. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Thank you!

×