SlideShare a Scribd company logo
1 of 21
Download to read offline
www.geant.org1 |
Results and lessons learned
clouds.geant.org
Andres Steijaert (SURFnet)
GÉANT cloud activity leader
EOSC-hub week
Prague, April 11, 2019
IaaS framework
https://clouds.geant.org
clouds@geant.org
BRINGING THE CLOUD TO THE GROUND GÉANT, CERN, RHEA & Trust-IT
will drive adoption of commercial digital services
in the European research community (2019 – 2021)
Stimulate adoption by the research community:
Pan-European Tender
9.5 million euro available for cloud adoption
Part of the European Open Science Cloud
40 European National Research and Education Networks (NRENs)
collaborate in their association GÉANT
to make cloud services accessible: easy and safe to use
for 10,000 institutions and 50 million users.
Unique cloud portfolio:
ready-to-use, legally compliant agreements with leading providers.
Discounts, technical integration (network and single sign-on).
Participate in EOSC-hub WP12
INTERNAL: Share sector-specific
community clouds
EXTERNAL: Jointly procure public clouds
from commercial suppliers
Make services fit the requirements of the
R&E community
integrate them with the community’s
infrastructure
and support NRENs to offer them to their
institutions and users
Best value, most favourable
conditions of use
Obtained through a collective approach
Collective hybrid multi-cloud strategy
Build and buy
3
There is a demand for cloud services
… but it is important to ensure that …
4
GET OUT
Data can be moved (to another provider)
GET IN
Data is safely handled and meets European and national regulations
Services can be acquired through the institutions’ structures:
• Affordable and predictable cost and purchasing models
(prevent bill shock)
• Limit network traffic costs and provide network integration
• Log in with institutional account
Service Delivery Framework
5
Gather the
community’s needs
and demand
Find and engage
with willing
service providers
Establish solutions
and agreements
with capable
providers
Connect providers
to the GÉANT
technical
infrastructure
(network & AAI)
Manage the
providers and
agreements
Facilitate adoption
of the services:
help NRENs deliver,
for institutions to
consume
Supplier analysis matrix
6
LevelofCOMMUNITYinteraction
PRODUCT capabilities for Research and Education HIGHLOW
HIGH
• 2016, tender
Pan-European tender with 36 participating
countries for IaaS solutions
Framework agreements with 20 suppliers
• Since January 2017, agreements available and
valid until end of 2020
procurement-compliant in the EU and EEA,
provide legal compliance,
including EU data protection laws
and allow for institutional-supplier call-off contracts
to take place under local (national) law
• In 2018
All agreement were checked for GDPR compliance
and amendments where made where applicable
Infrastructure as a Service
Pan-European tender and Framework Agreements
Using
2014/24/EU
procurement
directive,
to run a tender
as a collective
14
GÉANT cloud catalogue, IaaS offerings
8
via resellers
via resellers
Infrastructure as a Service
Available offerings, results from a pan-European tender
Benefits of the pan-European IaaS framework agreements
9
Discounted prices
for all institutions,
large and small
Invoice billing, no credit card needed, accommodating
capital expenditure through upfront commitments
Ready-to-use agreements
which comply with EU data
protection law, including GDPR
Transfer existing
educational
licenses to the
cloud
Manage
usage and
spending
Sign your
contract under
local law
Reduced traffic costs,
through suppliers’ connections
to the GÉANT network
Single sign-on
support (SAML2)
EU institutions can buy the offerings direct
With no need to run their own tender
• The services can be acquired through
invoice-based billing (no credit card needed)
• The suppliers offer aggregated user discounts.
These same discounts apply to all of the eligible
10,000 institutions, either large or small
• All suppliers support SAML2 to enable single sign-
on, some connect to eduGAIN
• Through direct private peerings with the GÉANT
network, there is a significant reduction in the
data transport charges
Infrastructure as a Service
Pan-European tender and Framework Agreements [2/2]
17
IaaS framework uptake
11
11
Consumption of the IaaS
framework agreements
is taking place
in 18 countries,
by 300+ institutions,
who have collectively spent
€13 million
Countries with consumption
Cloud catalogue
IaaS cost savings, specific use case
Quality & Qualifications institute (QQI)
in Ireland
Achieves substantial savings using
the GÉANT IaaS framework agreement
33% cost reduction
after QQI worked with the Irish NREN,
HEAnet, to transfer their Microsoft Azure
workloads to the GÉANT IaaS framework
agreement
from July 2017 onwards
20
80%
85%
90%
95%
100%
105%
110%
115%
N
ov-16
D
ec-16
Jan-17
Feb-17
M
ar-17
Apr-17
M
ay-17
Jun-17
Jul-17
Aug-17
Sep-17
O
ct-17
AZURE AVERAGE SPEND DAILY NOV 16- OCT 17
Using QQI institutional use case as starting point
Cost benchmarking report
Advice on IaaS cost optimisation and cost reductions
Picture 2. Historical analysis of overall costs and cost structure of the client’s cloud services
ü Clean unused storage
ü Look for cheaper regions
ü Be aware that VMs’ families
frequently change and are upgraded
ü Use the available discounts options available
(ask for advice on available options from the
supplier, reseller and your NREN)
ü Do not run 24x7 VMs if this is not needed
(such as dev instances)
ü Shut down idle or underutilised VMs
ü Use the cloud resources only for the purposes
they were procured for
“One of the observations made during the
analysis, is that the client is still extensively using
the pay-as-you-go model. Therefore,
implementing more resources in the Reserved
Instances approach would be highly beneficial.”
21
Infrastructure as a Service
Supplier tailor-made offerings (not a public procurement framework agreement)
22
GÉANT developed two underlying
IaaS cloud enabling technologies:
1. An authentication path between
Open Stack and Kubernetes
2. A cloud data migration tool:
an extension to the Cloudkeeper tool
• connecting the EGI federated
community cloud (AppDB component)
• to the AWS public cloud
Service development
Backend: IaaS cloud connectors
15
1. Community of 140 NREN
cloud managers and specialists
2. An intranet workspace
for NREN cloud managers
• Information sharing
• Manuals and cookbooks
on how to deploy the service portfolio
3. Service Catalogue: IaaS Service Matrix
Allows institutions (customers) to
compare the available IaaS offerings
4. Contract repository
Allows institutions (customers)
to access the agreements
5. Customer helpdesk
Service management
16
Data classification tool
For risk management and cloud migration, sourcing decisions
Data	type
On-premise
(at	the	institute)
In	country In	EU	+	EEA Anywhere,
In	non-EU	non-EEA
public Y Y Y Y
unrestricted Y Y Y Y
restricted Y Y Y N
confidential Y Y Y,	but	onlyin	
community	cloud
N
secret Y Y Y,	but	only	in	
community	cloud
N
LOW	RISK
Data	for	public	use
Loss	of	confidentiality,	
integrity,	or	availability	of	the	
data	or	system	has	no	
significant	impact
MEDIUM	RISK
Personally	Identifiable	data
Data	is	not	generally	available	
to	the	public
Loss	of	of	the	data	or	system	
could	have	a	mildly	adverse	
impact	
HIGH	RISK
Sensitive	
(Personally		Identifiable)	data
Loss	of	the	data	or	system	
could	have	a	significant	
adverse	impact	on	our	
mission,	safety,	finances	or	
reputation.
17
Cloud security
Advice, through a number of articles
41
Channel outreach
User stories and use cases on the GÉANT clouds website
19
Three steps into the cloud
Level 1:
no cloud
• Digital services run locally at the
institutions: installed and
managed on-premises.
• No collaboration between
institutes on collective vendor
management and procurement.
Level 2:
small clouds
• First digital services are moved off
campus, to the cloud.
• Involves e-mail, lift-and-shift of
virtual machines and cloud
experimentation.
• Single or a few suppliers.
• Institutions need support with
core components: network,
identity management and cloud
contracts.
• Coordination organisations to
establish and make available
cloud agreements.
• Institutions buy individually.
Level 3:
big clouds
• Institutions have a digital
transformation strategy, which
includes cloud deployments,
through structured sourcing
decisions.
• Services are bought from more
suppliers. Services encompass
more specialist tools. Serverless,
Machine Learning and AI.
• Multi cloud usage and
management in production
environments.
• Institutions aggregate volume
purchases.
• Lead buyer , buys in bulk on
behalf of the group
www.geant.org21 |
Thank you
www.geant.org
Any questions?
© GÉANT Association
As part of the GÉANT 2020 Framework Partnership Agreement (FPA),
the project receives funding from the European Union's Horizon 2020
research and innovation programme under Grant Agreement No.
856726 (GN4-3).

More Related Content

What's hot

Session 1.3 energy, smart homes & smart grids: towards interoperability...
Session 1.3   energy, smart homes & smart grids: towards interoperability...Session 1.3   energy, smart homes & smart grids: towards interoperability...
Session 1.3 energy, smart homes & smart grids: towards interoperability...semanticsconference
 
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics Workshop
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics WorkshopThe Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics Workshop
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics WorkshopHelix Nebula The Science Cloud
 
5G-RANGE - Concertation Meeting EUBrasilCloudFORUM
5G-RANGE - Concertation Meeting EUBrasilCloudFORUM5G-RANGE - Concertation Meeting EUBrasilCloudFORUM
5G-RANGE - Concertation Meeting EUBrasilCloudFORUMEUBrasilCloudFORUM .
 
Turn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G PlatformTurn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G PlatformEricsson
 
Ericsson Distributed Cloud
Ericsson Distributed CloudEricsson Distributed Cloud
Ericsson Distributed CloudEricsson Slides
 
Ericsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson
 
Agile 5G Deployment
Agile 5G DeploymentAgile 5G Deployment
Agile 5G DeploymentEricsson
 
Ericsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson
 
Sara Garavelli europeanatech 2015 13 feb2015_paris
Sara Garavelli europeanatech 2015 13 feb2015_parisSara Garavelli europeanatech 2015 13 feb2015_paris
Sara Garavelli europeanatech 2015 13 feb2015_parisEuropeana
 
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...ICARUS2020.aero
 
Updates on Sigfox ecosystem in the UK
Updates on Sigfox ecosystem in the UK Updates on Sigfox ecosystem in the UK
Updates on Sigfox ecosystem in the UK Alex Gluhak
 
5 glimpses into our 5G future
5 glimpses into our 5G future5 glimpses into our 5G future
5 glimpses into our 5G futureEricsson
 
Ericsson MediaFirst Video Processing presentation
Ericsson MediaFirst Video Processing presentationEricsson MediaFirst Video Processing presentation
Ericsson MediaFirst Video Processing presentationEricsson Latin America
 
Chris Smith - NextGen Roadshows 2009
Chris Smith - NextGen Roadshows 2009Chris Smith - NextGen Roadshows 2009
Chris Smith - NextGen Roadshows 2009Marit Hendriks
 

What's hot (20)

Vassilis Seferidis - Zeetta Networks
Vassilis Seferidis - Zeetta NetworksVassilis Seferidis - Zeetta Networks
Vassilis Seferidis - Zeetta Networks
 
Session 1.3 energy, smart homes & smart grids: towards interoperability...
Session 1.3   energy, smart homes & smart grids: towards interoperability...Session 1.3   energy, smart homes & smart grids: towards interoperability...
Session 1.3 energy, smart homes & smart grids: towards interoperability...
 
Stuart Revelle, 5GIC - INCA Full Fibre & 5G Seminar 12/7/17
Stuart Revelle, 5GIC - INCA Full Fibre & 5G Seminar 12/7/17Stuart Revelle, 5GIC - INCA Full Fibre & 5G Seminar 12/7/17
Stuart Revelle, 5GIC - INCA Full Fibre & 5G Seminar 12/7/17
 
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics Workshop
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics WorkshopThe Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics Workshop
The Helix Nebula Pre-Commercial Procurement - 1° Asterics-Obelics Workshop
 
5G-RANGE - Concertation Meeting EUBrasilCloudFORUM
5G-RANGE - Concertation Meeting EUBrasilCloudFORUM5G-RANGE - Concertation Meeting EUBrasilCloudFORUM
5G-RANGE - Concertation Meeting EUBrasilCloudFORUM
 
Turn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G PlatformTurn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G Platform
 
Ericsson Distributed Cloud
Ericsson Distributed CloudEricsson Distributed Cloud
Ericsson Distributed Cloud
 
Ericsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot Infographic
 
5G Infrastructure ppp (H2020)
5G Infrastructure ppp (H2020)5G Infrastructure ppp (H2020)
5G Infrastructure ppp (H2020)
 
Agile 5G Deployment
Agile 5G DeploymentAgile 5G Deployment
Agile 5G Deployment
 
Ericsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot InfographicEricsson 5G Radio Dot Infographic
Ericsson 5G Radio Dot Infographic
 
Sara Garavelli europeanatech 2015 13 feb2015_paris
Sara Garavelli europeanatech 2015 13 feb2015_parisSara Garavelli europeanatech 2015 13 feb2015_paris
Sara Garavelli europeanatech 2015 13 feb2015_paris
 
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...
ICARUS @PRO-VE 2019 - Collaborative Knowledge Management Session (September 2...
 
Updates on Sigfox ecosystem in the UK
Updates on Sigfox ecosystem in the UK Updates on Sigfox ecosystem in the UK
Updates on Sigfox ecosystem in the UK
 
Erzsebet Fitori - FTTH Council Europe
Erzsebet Fitori - FTTH Council EuropeErzsebet Fitori - FTTH Council Europe
Erzsebet Fitori - FTTH Council Europe
 
EGU 2020 - OCRE: the game-changer of Cloud and EO commercial services usage b...
EGU 2020 - OCRE: the game-changer of Cloud and EO commercial services usage b...EGU 2020 - OCRE: the game-changer of Cloud and EO commercial services usage b...
EGU 2020 - OCRE: the game-changer of Cloud and EO commercial services usage b...
 
5 glimpses into our 5G future
5 glimpses into our 5G future5 glimpses into our 5G future
5 glimpses into our 5G future
 
Ericsson MediaFirst Video Processing presentation
Ericsson MediaFirst Video Processing presentationEricsson MediaFirst Video Processing presentation
Ericsson MediaFirst Video Processing presentation
 
Liverpool 5G Testbed: Gigabit Access Using mmWave Wireless
Liverpool 5G Testbed: Gigabit Access Using mmWave WirelessLiverpool 5G Testbed: Gigabit Access Using mmWave Wireless
Liverpool 5G Testbed: Gigabit Access Using mmWave Wireless
 
Chris Smith - NextGen Roadshows 2009
Chris Smith - NextGen Roadshows 2009Chris Smith - NextGen Roadshows 2009
Chris Smith - NextGen Roadshows 2009
 

Similar to GEANT IaaS framework: results and lessons learned

Technologies to Build Hybrid Clouds on Public-Private Infrastructures
Technologies to Build Hybrid Clouds on Public-Private InfrastructuresTechnologies to Build Hybrid Clouds on Public-Private Infrastructures
Technologies to Build Hybrid Clouds on Public-Private InfrastructuresHelix Nebula The Science Cloud
 
From Cubes to Spheres — The transition of higher education towards the cloud.
From Cubes to Spheres — The transition of higher education towards the cloud.From Cubes to Spheres — The transition of higher education towards the cloud.
From Cubes to Spheres — The transition of higher education towards the cloud.Harold Teunissen
 
Kovacs [FINAL] .pptx
Kovacs [FINAL] .pptxKovacs [FINAL] .pptx
Kovacs [FINAL] .pptxFIWARE
 
The OCRE Cloud Framework
The OCRE Cloud FrameworkThe OCRE Cloud Framework
The OCRE Cloud FrameworkAndy Powell
 
Jarrar: Future Internet in Horizon 2020 Calls
Jarrar: Future Internet in Horizon 2020 CallsJarrar: Future Internet in Horizon 2020 Calls
Jarrar: Future Internet in Horizon 2020 CallsMustafa Jarrar
 
Progress of the Helix Nebula Science Cloud PCP Project
Progress of the Helix Nebula Science Cloud PCP ProjectProgress of the Helix Nebula Science Cloud PCP Project
Progress of the Helix Nebula Science Cloud PCP ProjectHelix Nebula The Science Cloud
 
Input to Consultation on Cloud Computing Research Innovation Challenges
Input to Consultation on Cloud Computing Research Innovation ChallengesInput to Consultation on Cloud Computing Research Innovation Challenges
Input to Consultation on Cloud Computing Research Innovation ChallengesHelix Nebula The Science Cloud
 
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...IDATE DigiWorld
 
5. Frans Volberda - Session 3: Operation, Control and Protection
5. Frans Volberda - Session 3: Operation, Control and Protection5. Frans Volberda - Session 3: Operation, Control and Protection
5. Frans Volberda - Session 3: Operation, Control and ProtectionDutch Power
 
Simplify and secure your path to the multicloud future
Simplify and secure your path to the multicloud futureSimplify and secure your path to the multicloud future
Simplify and secure your path to the multicloud futureMarketingArrowECS_CZ
 
stackconf 2021 | Building the first European open source Edge Computing platf...
stackconf 2021 | Building the first European open source Edge Computing platf...stackconf 2021 | Building the first European open source Edge Computing platf...
stackconf 2021 | Building the first European open source Edge Computing platf...NETWAYS
 

Similar to GEANT IaaS framework: results and lessons learned (20)

The OCRE project
The OCRE projectThe OCRE project
The OCRE project
 
EOSC-hub Week - OCRE: Stimulating the Uptake of Commercial Digital Services i...
EOSC-hub Week - OCRE: Stimulating the Uptake of Commercial Digital Services i...EOSC-hub Week - OCRE: Stimulating the Uptake of Commercial Digital Services i...
EOSC-hub Week - OCRE: Stimulating the Uptake of Commercial Digital Services i...
 
Ocre EARSC Webinar, 22 May 2019, Antonio Romeo
Ocre EARSC Webinar, 22 May 2019, Antonio RomeoOcre EARSC Webinar, 22 May 2019, Antonio Romeo
Ocre EARSC Webinar, 22 May 2019, Antonio Romeo
 
1305 eurocloud jfriedrich
1305 eurocloud jfriedrich1305 eurocloud jfriedrich
1305 eurocloud jfriedrich
 
Technologies to Build Hybrid Clouds on Public-Private Infrastructures
Technologies to Build Hybrid Clouds on Public-Private InfrastructuresTechnologies to Build Hybrid Clouds on Public-Private Infrastructures
Technologies to Build Hybrid Clouds on Public-Private Infrastructures
 
Pre-Commercial Procurement - HNSciCloud
Pre-Commercial Procurement -  HNSciCloudPre-Commercial Procurement -  HNSciCloud
Pre-Commercial Procurement - HNSciCloud
 
OCRE in a Nutshell - Cloud funding call 15 September 2020
OCRE in a Nutshell - Cloud funding call 15 September 2020OCRE in a Nutshell - Cloud funding call 15 September 2020
OCRE in a Nutshell - Cloud funding call 15 September 2020
 
From Cubes to Spheres — The transition of higher education towards the cloud.
From Cubes to Spheres — The transition of higher education towards the cloud.From Cubes to Spheres — The transition of higher education towards the cloud.
From Cubes to Spheres — The transition of higher education towards the cloud.
 
Kovacs [FINAL] .pptx
Kovacs [FINAL] .pptxKovacs [FINAL] .pptx
Kovacs [FINAL] .pptx
 
Marketplaces for cloud services
Marketplaces for cloud servicesMarketplaces for cloud services
Marketplaces for cloud services
 
The OCRE Cloud Framework
The OCRE Cloud FrameworkThe OCRE Cloud Framework
The OCRE Cloud Framework
 
Jarrar: Future Internet in Horizon 2020 Calls
Jarrar: Future Internet in Horizon 2020 CallsJarrar: Future Internet in Horizon 2020 Calls
Jarrar: Future Internet in Horizon 2020 Calls
 
HNSciCloud Overview
HNSciCloud Overview HNSciCloud Overview
HNSciCloud Overview
 
Progress of the Helix Nebula Science Cloud PCP Project
Progress of the Helix Nebula Science Cloud PCP ProjectProgress of the Helix Nebula Science Cloud PCP Project
Progress of the Helix Nebula Science Cloud PCP Project
 
Input to Consultation on Cloud Computing Research Innovation Challenges
Input to Consultation on Cloud Computing Research Innovation ChallengesInput to Consultation on Cloud Computing Research Innovation Challenges
Input to Consultation on Cloud Computing Research Innovation Challenges
 
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...
Rethinking the Telcos business models in the age of 5G - Carlos LOPEZ, Telefó...
 
5. Frans Volberda - Session 3: Operation, Control and Protection
5. Frans Volberda - Session 3: Operation, Control and Protection5. Frans Volberda - Session 3: Operation, Control and Protection
5. Frans Volberda - Session 3: Operation, Control and Protection
 
Simplify and secure your path to the multicloud future
Simplify and secure your path to the multicloud futureSimplify and secure your path to the multicloud future
Simplify and secure your path to the multicloud future
 
stackconf 2021 | Building the first European open source Edge Computing platf...
stackconf 2021 | Building the first European open source Edge Computing platf...stackconf 2021 | Building the first European open source Edge Computing platf...
stackconf 2021 | Building the first European open source Edge Computing platf...
 
IoT Summit yajuan guan
IoT Summit yajuan guanIoT Summit yajuan guan
IoT Summit yajuan guan
 

More from EOSC-hub project

EOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub project
 
2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - finalEOSC-hub project
 
Introduction to service management and FitSM
Introduction to service management and FitSMIntroduction to service management and FitSM
Introduction to service management and FitSMEOSC-hub project
 
Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)EOSC-hub project
 
Joining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderJoining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderEOSC-hub project
 
PID services - understandability and findability of data
PID services - understandability and findability of dataPID services - understandability and findability of data
PID services - understandability and findability of dataEOSC-hub project
 
Software for data management and exploitation
Software for data management and exploitationSoftware for data management and exploitation
Software for data management and exploitationEOSC-hub project
 
Repositories for long-term preservation - certification
Repositories for long-term preservation - certificationRepositories for long-term preservation - certification
Repositories for long-term preservation - certificationEOSC-hub project
 
EOSC working group on FAIR
EOSC working group on FAIREOSC working group on FAIR
EOSC working group on FAIREOSC-hub project
 
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...EOSC-hub project
 
Services to support FAIR data - Introduction
Services to support FAIR data - IntroductionServices to support FAIR data - Introduction
Services to support FAIR data - IntroductionEOSC-hub project
 
Pathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationPathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationEOSC-hub project
 
Overview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaOverview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaEOSC-hub project
 
Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...EOSC-hub project
 
ELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubEOSC-hub project
 

More from EOSC-hub project (20)

EOSC-hub Early Adopter Programme
EOSC-hub Early Adopter ProgrammeEOSC-hub Early Adopter Programme
EOSC-hub Early Adopter Programme
 
2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final2019 05-21 egi and eosc - final
2019 05-21 egi and eosc - final
 
Introduction to service management and FitSM
Introduction to service management and FitSMIntroduction to service management and FitSM
Introduction to service management and FitSM
 
Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)Service management board (SMB), Service providers’ forum (SPF)
Service management board (SMB), Service providers’ forum (SPF)
 
Joining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service ProviderJoining the EOSC-hub as a Service Provider
Joining the EOSC-hub as a Service Provider
 
PID services - understandability and findability of data
PID services - understandability and findability of dataPID services - understandability and findability of data
PID services - understandability and findability of data
 
Software for data management and exploitation
Software for data management and exploitationSoftware for data management and exploitation
Software for data management and exploitation
 
Repositories for long-term preservation - certification
Repositories for long-term preservation - certificationRepositories for long-term preservation - certification
Repositories for long-term preservation - certification
 
EOSC working group on FAIR
EOSC working group on FAIREOSC working group on FAIR
EOSC working group on FAIR
 
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
Updates on the FAIR Data Maturity Model RDA Working Group & the DG RTD FAIR i...
 
Services to support FAIR data - Introduction
Services to support FAIR data - IntroductionServices to support FAIR data - Introduction
Services to support FAIR data - Introduction
 
EOSC-synergy
EOSC-synergyEOSC-synergy
EOSC-synergy
 
ExPaNDS
ExPaNDSExPaNDS
ExPaNDS
 
EOSC-Pillar
EOSC-PillarEOSC-Pillar
EOSC-Pillar
 
NI4OS-Europe
NI4OS-EuropeNI4OS-Europe
NI4OS-Europe
 
Excellerat CoE
Excellerat CoEExcellerat CoE
Excellerat CoE
 
Pathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaborationPathways for EOSC-hub and MaX collaboration
Pathways for EOSC-hub and MaX collaboration
 
Overview on the HPC CoEs panorama
Overview on the HPC CoEs panoramaOverview on the HPC CoEs panorama
Overview on the HPC CoEs panorama
 
Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...Overview of the Onboarding and validation process and the Rules of Participat...
Overview of the Onboarding and validation process and the Rules of Participat...
 
ELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hubELIXIR Competence Centre in EOSC-hub
ELIXIR Competence Centre in EOSC-hub
 

Recently uploaded

Artificial intelligence in the post-deep learning era
Artificial intelligence in the post-deep learning eraArtificial intelligence in the post-deep learning era
Artificial intelligence in the post-deep learning eraDeakin University
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticscarlostorres15106
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfjimielynbastida
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...shyamraj55
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
Bluetooth Controlled Car with Arduino.pdf
Bluetooth Controlled Car with Arduino.pdfBluetooth Controlled Car with Arduino.pdf
Bluetooth Controlled Car with Arduino.pdfngoud9212
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 

Recently uploaded (20)

Artificial intelligence in the post-deep learning era
Artificial intelligence in the post-deep learning eraArtificial intelligence in the post-deep learning era
Artificial intelligence in the post-deep learning era
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmaticsKotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
Kotlin Multiplatform & Compose Multiplatform - Starter kit for pragmatics
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdf
 
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Panjabi Bagh 🔝 9953056974 🔝 Delhi escort Service
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
Automating Business Process via MuleSoft Composer | Bangalore MuleSoft Meetup...
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
Bluetooth Controlled Car with Arduino.pdf
Bluetooth Controlled Car with Arduino.pdfBluetooth Controlled Car with Arduino.pdf
Bluetooth Controlled Car with Arduino.pdf
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 

GEANT IaaS framework: results and lessons learned

  • 1. www.geant.org1 | Results and lessons learned clouds.geant.org Andres Steijaert (SURFnet) GÉANT cloud activity leader EOSC-hub week Prague, April 11, 2019 IaaS framework
  • 2. https://clouds.geant.org clouds@geant.org BRINGING THE CLOUD TO THE GROUND GÉANT, CERN, RHEA & Trust-IT will drive adoption of commercial digital services in the European research community (2019 – 2021) Stimulate adoption by the research community: Pan-European Tender 9.5 million euro available for cloud adoption Part of the European Open Science Cloud 40 European National Research and Education Networks (NRENs) collaborate in their association GÉANT to make cloud services accessible: easy and safe to use for 10,000 institutions and 50 million users. Unique cloud portfolio: ready-to-use, legally compliant agreements with leading providers. Discounts, technical integration (network and single sign-on). Participate in EOSC-hub WP12
  • 3. INTERNAL: Share sector-specific community clouds EXTERNAL: Jointly procure public clouds from commercial suppliers Make services fit the requirements of the R&E community integrate them with the community’s infrastructure and support NRENs to offer them to their institutions and users Best value, most favourable conditions of use Obtained through a collective approach Collective hybrid multi-cloud strategy Build and buy 3
  • 4. There is a demand for cloud services … but it is important to ensure that … 4 GET OUT Data can be moved (to another provider) GET IN Data is safely handled and meets European and national regulations Services can be acquired through the institutions’ structures: • Affordable and predictable cost and purchasing models (prevent bill shock) • Limit network traffic costs and provide network integration • Log in with institutional account
  • 5. Service Delivery Framework 5 Gather the community’s needs and demand Find and engage with willing service providers Establish solutions and agreements with capable providers Connect providers to the GÉANT technical infrastructure (network & AAI) Manage the providers and agreements Facilitate adoption of the services: help NRENs deliver, for institutions to consume
  • 6. Supplier analysis matrix 6 LevelofCOMMUNITYinteraction PRODUCT capabilities for Research and Education HIGHLOW HIGH
  • 7. • 2016, tender Pan-European tender with 36 participating countries for IaaS solutions Framework agreements with 20 suppliers • Since January 2017, agreements available and valid until end of 2020 procurement-compliant in the EU and EEA, provide legal compliance, including EU data protection laws and allow for institutional-supplier call-off contracts to take place under local (national) law • In 2018 All agreement were checked for GDPR compliance and amendments where made where applicable Infrastructure as a Service Pan-European tender and Framework Agreements Using 2014/24/EU procurement directive, to run a tender as a collective 14
  • 8. GÉANT cloud catalogue, IaaS offerings 8 via resellers via resellers Infrastructure as a Service Available offerings, results from a pan-European tender
  • 9. Benefits of the pan-European IaaS framework agreements 9 Discounted prices for all institutions, large and small Invoice billing, no credit card needed, accommodating capital expenditure through upfront commitments Ready-to-use agreements which comply with EU data protection law, including GDPR Transfer existing educational licenses to the cloud Manage usage and spending Sign your contract under local law Reduced traffic costs, through suppliers’ connections to the GÉANT network Single sign-on support (SAML2) EU institutions can buy the offerings direct With no need to run their own tender
  • 10. • The services can be acquired through invoice-based billing (no credit card needed) • The suppliers offer aggregated user discounts. These same discounts apply to all of the eligible 10,000 institutions, either large or small • All suppliers support SAML2 to enable single sign- on, some connect to eduGAIN • Through direct private peerings with the GÉANT network, there is a significant reduction in the data transport charges Infrastructure as a Service Pan-European tender and Framework Agreements [2/2] 17
  • 11. IaaS framework uptake 11 11 Consumption of the IaaS framework agreements is taking place in 18 countries, by 300+ institutions, who have collectively spent €13 million Countries with consumption
  • 12. Cloud catalogue IaaS cost savings, specific use case Quality & Qualifications institute (QQI) in Ireland Achieves substantial savings using the GÉANT IaaS framework agreement 33% cost reduction after QQI worked with the Irish NREN, HEAnet, to transfer their Microsoft Azure workloads to the GÉANT IaaS framework agreement from July 2017 onwards 20 80% 85% 90% 95% 100% 105% 110% 115% N ov-16 D ec-16 Jan-17 Feb-17 M ar-17 Apr-17 M ay-17 Jun-17 Jul-17 Aug-17 Sep-17 O ct-17 AZURE AVERAGE SPEND DAILY NOV 16- OCT 17
  • 13. Using QQI institutional use case as starting point Cost benchmarking report Advice on IaaS cost optimisation and cost reductions Picture 2. Historical analysis of overall costs and cost structure of the client’s cloud services ü Clean unused storage ü Look for cheaper regions ü Be aware that VMs’ families frequently change and are upgraded ü Use the available discounts options available (ask for advice on available options from the supplier, reseller and your NREN) ü Do not run 24x7 VMs if this is not needed (such as dev instances) ü Shut down idle or underutilised VMs ü Use the cloud resources only for the purposes they were procured for “One of the observations made during the analysis, is that the client is still extensively using the pay-as-you-go model. Therefore, implementing more resources in the Reserved Instances approach would be highly beneficial.” 21
  • 14. Infrastructure as a Service Supplier tailor-made offerings (not a public procurement framework agreement) 22
  • 15. GÉANT developed two underlying IaaS cloud enabling technologies: 1. An authentication path between Open Stack and Kubernetes 2. A cloud data migration tool: an extension to the Cloudkeeper tool • connecting the EGI federated community cloud (AppDB component) • to the AWS public cloud Service development Backend: IaaS cloud connectors 15
  • 16. 1. Community of 140 NREN cloud managers and specialists 2. An intranet workspace for NREN cloud managers • Information sharing • Manuals and cookbooks on how to deploy the service portfolio 3. Service Catalogue: IaaS Service Matrix Allows institutions (customers) to compare the available IaaS offerings 4. Contract repository Allows institutions (customers) to access the agreements 5. Customer helpdesk Service management 16
  • 17. Data classification tool For risk management and cloud migration, sourcing decisions Data type On-premise (at the institute) In country In EU + EEA Anywhere, In non-EU non-EEA public Y Y Y Y unrestricted Y Y Y Y restricted Y Y Y N confidential Y Y Y, but onlyin community cloud N secret Y Y Y, but only in community cloud N LOW RISK Data for public use Loss of confidentiality, integrity, or availability of the data or system has no significant impact MEDIUM RISK Personally Identifiable data Data is not generally available to the public Loss of of the data or system could have a mildly adverse impact HIGH RISK Sensitive (Personally Identifiable) data Loss of the data or system could have a significant adverse impact on our mission, safety, finances or reputation. 17
  • 18. Cloud security Advice, through a number of articles 41
  • 19. Channel outreach User stories and use cases on the GÉANT clouds website 19
  • 20. Three steps into the cloud Level 1: no cloud • Digital services run locally at the institutions: installed and managed on-premises. • No collaboration between institutes on collective vendor management and procurement. Level 2: small clouds • First digital services are moved off campus, to the cloud. • Involves e-mail, lift-and-shift of virtual machines and cloud experimentation. • Single or a few suppliers. • Institutions need support with core components: network, identity management and cloud contracts. • Coordination organisations to establish and make available cloud agreements. • Institutions buy individually. Level 3: big clouds • Institutions have a digital transformation strategy, which includes cloud deployments, through structured sourcing decisions. • Services are bought from more suppliers. Services encompass more specialist tools. Serverless, Machine Learning and AI. • Multi cloud usage and management in production environments. • Institutions aggregate volume purchases. • Lead buyer , buys in bulk on behalf of the group
  • 21. www.geant.org21 | Thank you www.geant.org Any questions? © GÉANT Association As part of the GÉANT 2020 Framework Partnership Agreement (FPA), the project receives funding from the European Union's Horizon 2020 research and innovation programme under Grant Agreement No. 856726 (GN4-3).