AWS Modern Infra with Storage Roadshow 2023 - Day 2
1. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Modern Infra with
Storage Roadshow 2023
Data Protection
Sep 19 2023
2. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS๋ฅผ ํ์ฉํ ๋ฐ์ดํฐ ๋ณดํธ์ ์ฌํด๋ณต๊ตฌ
์ด ๊ด์ (kwangjae@amazon.com)
Principal Storage Specialist BD, AWS Korea
3. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its Affiliates.
01 ํด๋ผ์ฐ๋ ๋ฐ์ดํฐ ๋ณดํธ ํจ๋ฌ๋ค์ ๋ณํ
02 AWS ๋ฐ์ดํฐ ๋ณดํธ ์๋ฃจ์ - ๋ฐฑ์ , ์์นด์ด๋ธ, ์ฌํด๋ณต๊ตฌ
03 ์ฌ๋ก ์ฐ๊ตฌ
Agenda
4. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ๋ฐ์ดํฐ ๋ณดํธ ํจ๋ฌ๋ค์ ๋ณํ
๋น์ฆ๋์ค ๋ฐ์ดํฐ + IT์ ํด๋ผ์ฐ๋ = ๋น์ฆ๋์ค ํ์ ๊ณผ ํจ์จ์ ์ธ ๋ฆฌ์์ค ํ์ฉ
ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง์ ๊ฒฝ์ ์ฑ, ๋ด๊ตฌ์ฑ, ๋ณด์์ด ๋์งํธ ์์นด์ด๋ธ ๋ฐ์ดํฐ์ ๊ฐ์น ๋ถ์ฌ
5. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ๋ฐ์ดํฐ ๋ณดํธ ํจ๋ฌ๋ค์์ ๋ณํ
โข ๋ฐ์ดํฐ ๋ณดํธ ์์ฅ์ ํด๋ผ์ฐ๋ ๊ฒฝ์ ์ฑ, ๋ด๊ตฌ์ฑ๊ณผ ๋ฐ์ดํฐ ์ฌํ์ฉ ๋ฑ์ ์ฅ์ ์ผ๋ก ํด๋ผ์ฐ๋๋ก ์ด๋ํ๊ณ ์์.
6. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
์ ํต์ ์ธ On-Prem ๋ฐฑ์ ์ ํ๊ณ
Off-site Tape
Storage
o ๊ณ ๋น์ฉ ๊ตฌ์กฐ โ ๋ฐฑ์ ์๋ฒ, SAN, VTL, Tape ๋ฐ ์์ฐ
o ํ์ฅ์ฑ ํ๊ณ โ ๋ฐ์ดํฐ ์ฆ๊ฐ์ ๋ฐ๋ฅธ ์ฑ๋ฅ, ์ฉ๋ ์ ์ฝ
o ๋ฐ์ดํฐ ์ ์ฅ โ ๋ฐ์ดํฐ ์ฌ์ฌ์ฉ ์ด๋ ค์
o ์ง์์ ์ธ ์ด์ ๊ด๋ฆฌ ๋ฐ ์ํํธ์จ์ด, ํ๋์จ์ด ์ ๊ทธ๋ ์ด๋
์๊ตฌ๋จ
7. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
๋ฐ์ดํฐ ๋ณดํธ ํ๋ํ
AWS
Storage
Gateway
Cloud backup with AWS Storage
Gateway
Traditional Backup
AWS Cloud
Corporate
data center
Traditional
server
Storage
Array
Backup
Appliance
Corporate
data center
Traditional
server
Storage
Array
Corporate
data center
Traditional
server
Storage
Array
Cloud backup with cloud connector
AWS Cloud
Partners
19. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ์ฌํด๋ณต๊ตฌ| 2. Pilot Light
ํ์์์๋ ์คํ ์๋ฒ Instance์์ด(์ด๋ฏธ์ง๋ง ์ ์ฅ) DB ๋ฐ์ดํฐ ๋๊ธฐํ๋ง ์งํํ๋, ์ฌํด ๋ณต๊ตฌ์ ์๋ฒ ์คํ
์ ์ ์ด์ ์ฌํด ์ํฉ
www.example.co.kr
Cloud-
Formation์
ํ ํ๋ฆฟ ๊ธฐ๋ฐ
์๋ ํ๋ก๋น์ ๋
Pilot light
system
Reverse
proxy/
caching
server
EBS Data
volume
Application
server
Reverse
proxy/
caching
server
Application
server
Master
Databas
e server
Database
server
Route 53
www.example.co.kr
Data mirroring / replication
AWS์
์ด๋ฏธ์ง๋ก๋ง
์กด์ฌํ๊ณ ๊ตฌ์ฑ
์ ๋ณด๋
CloudFormation
์ผ๋ก ๊ด๋ฆฌ
Pilot light
system
Reverse
proxy/
caching
server
EBS Data
volume
Application
server
On Prem.
Data Center
Reverse
proxy/
caching
server
Application
server
Master
DB server
Database
server
Cloud-
Formation
Cloud-
Formation
On Prem.
Data Center
20. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ์ฌํด๋ณต๊ตฌ| 3. Warm Standby
ํ์์๋ ์ต์ ์ฌ์์ EC2๋ก ์คํ์์ด ์ค๋น ๋ฐ DB ๋ฐ์ดํฐ ๋๊ธฐํ๋ง ์งํํ๋, ์ฌํด ๋ณต๊ตฌ ์ ์๋ฒ ์คํ/ํ์ฅ
์ ์ ์ด์ ์ฌํด ์ํฉ
Route 53
Data mirroring replication
EBS Data
volume
Application
server
Reverse
proxy/
caching
server
Application
server
Master
Database
server
Subordinate
database
server
Active
Non Active
Application data
source cut over
Elastic load
balancer
Reverseproxy/
cachingserver
โScaled-Down
Standbyโ
EBS Data
volume
Application
server
Reverse
proxy/
caching
server
Application
server
Master
Database
server
Subordinate
database
server
Route 53
Active
Elastic load
balancer
Reverseproxy/
cachingserver
โ
Scaled-Up
Productionโ
www.example.co.kr www.example.co.kr
On Prem.
Data Center
On Prem.
Data Center
21. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ์ฌํด๋ณต๊ตฌ| 4. Hot Standby
ํ์์๋ ์ต์ ์ฌ์์ EC2๋ก ์๋น์ค๋ฅผ ์ ๊ณตํ๋(1), ์ฌํด ๋ณต๊ตฌ์ Fail-Over ์ ํ ๋ฐ ์๋ฒ ํ์ฅ
On Prem.
Data Center
์ ์ ์ด์ ์ฌํด ์ํฉ
Data mirroring replication
EBS Data
volume
Application
server
Reverse
proxy/
caching
server
Application
server
Master
Database
server
Subordinate
database
server
Route 53
Active
Active
Application data
source cut over
Elastic load
balancer
Reverseproxy/
cachingserver
EBS Data
volume
Application
server
Reverse
proxy/
caching
server
Application
server
Master
Database
server
Subordinate
database
server
Route 53
Active
Elastic load
balancer
Reverseproxy/
cachingserver
โ
Scaled-Up
Productionโ
(1) EC2์ ์ฌ์์ ๋ฐ๋ผ 1:9 ํน์ 2:8์ ๋น์จ๋ก DNS์ ๋น์ค ์กฐ์ ์ ํตํ์ฌ ์๋น์ค๋ฅผ ์ ๊ณตํจ
www.example.co.kr www.example.co.kr
On Prem.
Data Center
27. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
์ฌํด๋ณต๊ตฌ- ๋์ฌ์จ์ด ๋ณต๊ตฌ
Option 1: On-premises DR
Option 2: Cross-Region or Availability Zone
Option 3: On-premises to AWS (Hybrid)
์ฌํด๋ณต๊ตฌ
DC
Recovery Time Objective RTO
DC
Vault
Vault
Logical Air Gap
Logical Air Gap
๋์ฌ์จ์ด ๋ณต๊ตฌ
DC
Data Immutability
Recovery solution
Other Cloud
Providers
DC
Snapsho
t
Archive
Expanding on disaster recovery
Snapsho
t
Archive
Data Immutability
DC
29. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
์ฌ๋ก ์ฐ๊ตฌ
1. ํ ์ดํ ๋ฐฑ์ ์ ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง๋ก ๋์ฒด
2. ISV๋ฅผ ํ์ฉํ ํด๋ผ์ฐ๋ ๋ฐฑ์ ์์ฐ
3. ํด๋ผ์ฐ๋ Native ์จ ํ๋ ๋ฏธ์ค ๋ฐ์ดํฐ ๋ณดํธ
4. NAS ์คํ ๋ฆฌ์ง ๋ฐ์ดํฐ ๋ณดํธ
5. DRS ์ฌํด๋ณต๊ตฌ
30. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study I โ ํ ์ดํ ๋ฐฑ์ ์ ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง๋ก ๋์ฒด
โข ์จํ๋ ๋ฏธ์ค ํ ์ดํ๋ฅผ ์ ๊ฑฐํ๊ณ ์์ ์ ์ด๊ณ ์ ๋ ดํ ์จ๋ผ์ธ ์์นด์ด๋ธ๋ก ์๋ํ
โข ๊ธฐ์กด ๋ฐฑ์ ์ํฌ ํ๋ก์ฐ ๋ณ๊ฒฝ์์ด ๋ฌผ๋ฆฌ์ ํ ์ดํ๋ฅผ AWS ๊ฐ์ ํ ์ดํ๋ก ๋์ฒด
https://aws.amazon.com/ko/getting-started/hands-on/replace-tape-with-cloud/?nc1=h_ls
AWS Storage Tape Gateway
31. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
๋ฐฑ์ ๋ฐ ํด๋ผ์ฐ๋ ์์ฐ - AWS S3๋ 3๊ฐ ์ด์์ AZ์ 6~9๋ฒ ์ด์์ ์นดํผ๋ณธ ์ ์ฅ์ ๊ธฐ๋ณธ
Case Study II โ ํด๋ผ์ฐ๋ ๋ฐฑ์ ์์ฐ
DAS
NAS
Dedupe
Appliance
Performance
Tier
โข Policy-based
โข Transparent
โข Space efficient
โข Self-sufficient
โข No extra costs
Capacity
Tier
Oldest Backups
(Move Mode)
Amazon S3
AWS ๊ฐ์ฉ ์์ญ
(Availability Zone)
AWS ๋ฆฌ์ (Region)
Region์ ์ง๋ฆฌ์ ์ผ๋ก
๋จ์ด์ง ์ฌ๋ฌ AZ(๊ฐ์ฉ
์์ญ)์ผ๋ก ๊ตฌ์ฑ๋ฉ๋๋ค.
์) ์์ธ Region์ 4๊ฐ์
AZ (๊ฐ์ฉ ์์ญ)์ผ๋ก ๊ตฌ์ฑ
๊ฐ์ฉ ์์ญ์ ํ๋ ์ด์์ ๊ฐ๋ณ
๋ฐ์ดํฐ ์ผํฐ๋ก ๊ตฌ์ฑ๋๋ฉฐ, ๊ฐ๊ฐ
๋ณ๋์ ์์ค์ ์ ์, ๋คํธ์ํน
๋ฐ ์ฐ๊ฒฐ์ด ์ด์คํ๋์ด
์์ต๋๋ค.
Transit
AZ
Datacenter Datacenter
Datacenter
AZ
AZ
AZ
Transit
32. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study II โ Backup to cloud via ISV
โข WORM (Write Once, Read Many) ์คํ ๋ฆฌ์ง ๊ตฌํ, ๋์ธ์จ์ด ๋ฐฉ์ง ๋์ฑ
โข ํด๋ผ์ฐ๋ DR โ ๋ฐฑ์ ๋ฐ์ดํฐ ์ฌ์ฌ์ฉ
๋ฏธ 3๋ ๊ธ์ต๊ธฐ๊ด (SEC, FINRA, CTCC) ์ธ์ฆ ๊ธฐ์ , Amazon S3 Vault Lock
ํ์์
- Backup to AWS
์ฌํด์
- DR on AWS
33. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study III โ ํด๋ผ์ฐ๋ Native ์จ ํ๋ ๋ฏธ์ค ๋ฐ์ดํฐ ๋ณดํธ
โข AWS Backup์ ํ์ฉํ์ฌ ์จ ํ๋ ๋ฏธ์ค VMWare, ์คํ ๋ฆฌ์ง ์ธํ๋ผ์ ๋ํ ํด๋ผ์ฐ๋ ๋ฐฑ์ ๊ด๋ฆฌ
https://aws.amazon.com/ko/blogs/storage/backup-and-restore-on-premises-vmware-virtual-machines-using-aws-backup/
https://aws.amazon.com/ko/blogs/storage/using-aws-storage-gateway-to-store-oracle-database-backups-in-amazon-s3/
AWS Backup
34. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study IV โ NAS ์คํ ๋ฆฌ์ง ๋ฐ์ดํฐ ๋ณดํธ
โข ์จ ํ๋ ๋ฏธ์ค NAS ์คํ ๋ฆฌ์ง์ ๋ํ ํด๋ผ์ฐ๋ ๋ฐ์ดํฐ ๋ณดํธ(๋ฐฑ์ ) ๋ฐ ์ฌํด๋ณต๊ตฌ
Amazon FSx for
NetApp ONTAP
ONTAP๊ฐ SnapMirror ๋ธ๋ก ๋ณต์
DataSync SMB/NFS ๋ณต์
Re-Factor/Re-Architect ๋ถํ์
FSx for NetApp ONTAP
- ์ค๋ณต์ ๊ฑฐ/์์ถ ์ ์ฅ
- ์คํ ๋ฆฌ์ง ํฐ์ด๋ง
- NFS/SMB ๋ฉํฐ ํ๋กํ ์ฝ ์ง์
- ๋์ฌ์จ์ด ๋๋น
- ํด๋ผ์ฐ๋ ์ฌํด๋ณต๊ตฌ
On-premises Region
NetApp filer
running
ONTAP
SnapMirror
Amazon FSx
for ONTAP
AWS
DataSync
Shared
file system
AWS DataSync
agent
SMB or NFS
TLS
SMB or NFS
35. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study V โ DRS ์ฌํด๋ณต๊ตฌ (ํ์ ์)
36. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Case Study V โ DRS ์ฌํด๋ณต๊ตฌ (์ฌํด ์)
37. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Thank you!
์ด ๊ด์
kwangjae@amazon.com
38. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS์ ๋ฐ์ดํฐ ๋ณดํธ ์๋น์ค
(AWS Datasync, AWS Storage Gateway)
๋ฐฑ์น์ฉ
Solutions Architect
AWS Korea
39. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
o ํญ๋ฐ์ ์ธ ๋ฐ์ดํฐ์ ์ฆ๊ฐ์ ํด๋ผ์ฐ๋์ ํ์ฉ
o ๋ฐ์ดํฐ ๋ง์ด๊ทธ๋ ์ด์ ๊ณผ ๋ณดํธ๋ฅผ ์ํ AWS DataSync
o ํ์ด๋ธ๋ฆฌ๋ ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง๋ฅผ ์ํ AWS Storage Gateway
o ์์ฝ
Agenda
40. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํญ๋ฐ์ ์ธ ๋ฐ์ดํฐ ์ฆ๊ฐ์ ์๋
221 ZB
of data created
by 2026, globally1
1021
1 ZB (zettabyte) is
1,000,000,000,000,000,000,000 bytes2
Source: Worldwide IDC Global DataSphere Forecast, 2022โ2026
์ํ
๋ฐ์ดํฐ ๋ณดํธ์ ์ฐ์์ฑ
๋ณด์ฅ์ด ๋ณต์กํด์ง์
๋ฐ๋ผ ์ํ ์ฆ๊ฐ
๋ฐ์ดํฐ์ ์์ง ๋จ๊ณ์์
๊ฐ์น ์ฐฝ์ถ์ ๋จ๊ณ๋ก
์ด๋ํ๋ฉฐ ํ์ ์ฃผ๋
๊ธฐํ
๋ค์ํ ์ ํ์ ๋ฐ์ดํฐ,
ํ์ฅ์ฑ์ ํ๊ณ,
๋์์ง๋ ๋น์ฉ
๊ณผ์
41. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง์ ํ์ฉ
o ๋ฐ์ดํฐ ์ฉ๋๊ณผ ์ฆ๊ฐ
o ๋ฐ์ดํฐ ๋ณด์กด ๋ฐ ๊ท์ ์ค์
o ๋น์ฉ ์ ๊ฐ
o ๋น์ฆ๋์ค ์ฐ์์ฑ
42. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
๋ฐ์ดํฐ ๋ง์ด๊ทธ๋ ์ด์ ๊ณผ ๋ณดํธ๋ฅผ ์ํ
AWS DataSync
53. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
ํ์ด๋ธ๋ฆฌ๋ ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง๋ฅผ ์ํ
AWS Storage Gateway
54. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํ์ด๋ธ๋ฆฌ๋ ํด๋ผ์ฐ๋ ๋ชจ๋ธ
ํด๋ผ์ฐ๋ ์คํ ๋ฆฌ์ง ๋ฐ
์๋น์ค๋ฅผ ํ์ฉํ๋ฉดโฆ.
AWS
๊ธฐ์กด ์์ฉ ํ๋ก๊ทธ๋จ
๋ฐ ๋ฐ์ดํฐ ์์นด์ด๋ธ
์ ๋ฐ์ดํฐ ์์ค
์ต์ข ์ฌ์ฉ์
67. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Tape Gateway ์ง์ ๋ฐฑ์ ์ํํธ์จ์ด
https://docs.aws.amazon.com/storagegateway/latest/userguide/Requirements.html#requirements-backup-sw-for-vtl
For a full list of supported backup products see the Storage Gateway user guide
68. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Amazon FSx File Gateway
File systems
SMB Clients
VPC
Amazon FSx for
Windows File
Server
FSx File
Gateway
AWS Site-to-Site VPN
AWS Direct Connect
AWS Cloud
On-Premises
Storage
Gateway
service
endpoint
์ฌ์ฉ ์ฌ๋ก
๋ค์ค ์ฌ์ฉ์๊ฐ ์ฌ์ฉํ๋ ํ์ผ ๊ณต์ (์: ๊ทธ๋ฃน ๊ณต์ , ํ๋ก์ ํธ ๊ณต์ , ํ
๋๋ ํ ๋ฆฌ, ๋ฏธ๋์ด ํธ์ง, CAD/CAM)
70. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
์์ฝ
o ํญ์ฆํ๋ ๋ฐ์ดํฐ์ ์ฆ๊ฐ์ ๋ฐ๋ผ ๋ฐ์ดํฐ ๋ณดํธ๋ ์ ์ ๋ ์ด๋ ค์ ์ง๊ณ ์์ต๋๋ค.
o ํด๋ผ์ฐ๋๋ฅผ ํ์ฉํ ๋ฐ์ดํฐ ๋ณดํธ์ ํ์ด๋ธ๋ฆฌ๋ ์คํ ๋ฆฌ์ง ํ๊ฒฝ์ ์ ์ ๋
์ค์ํด์ง๊ณ ์์ต๋๋ค.
o AWS DataSync์ AWS Storage Gateway๋ฅผ ํ์ฉํ์ฌ ํด๋ผ์ฐ๋ ๊ธฐ๋ฐ์ ๋ฐ์ดํฐ
๋ณดํธ ๋ฐ ํ์ด๋ธ๋ฆฌ๋ ํ๊ฒฝ์ ๊ตฌ์ถ์ ๋จ์ํ, ์๋ํ, ๊ฐ์ํํ ์ ์์ต๋๋ค.
71. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Thank you!
SeungYong Baek
sybaek@amazon.com
72. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS๋ฅผ ํ์ฉํ ์ฌํด๋ณต๊ตฌ ์๋น์ค
(AWS Elastic Disaster Recovery)
๊น์ต์
Solutions Architect
AWS Korea
73. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ํผ๋ธ๋ฆญ ํด๋ผ์ฐ๋ ์ฑํ์ ๊ณ์ ํฌ๊ฒ ์ฆ๊ฐํ๊ณ ์์ต๋๋ค.
Forrester๋ ํผ๋ธ๋ฆญ ํด๋ผ์ฐ๋ ์ธํ๋ผ ์๋น์ค์ ๋ํ ์ง์ถ๋ง
2022๋ ๊น์ง 1,220์ต ๋ฌ๋ฌ๋ก ์ฆ๊ฐํ ๊ฒ์ผ๋ก ์์ํฉ๋๋ค.
ํด๋ผ์ฐ๋๋ก์ ์ ํ์ ์์ ํ ์ดํดํ๊ณ ํ์ฉํ๋ ์ ๋ต์
์๋ฆฝํ๋ ๊ฒ์ ํ๋ DR์ ์ค์ํ ์ธก๋ฉด์ด ๋๊ณ ์์ต๋๋ค.โ
The State Of Disaster Recovery Preparedness In 2020
Forrester, August 2020
73
`
์ฌํด ๋ณต๊ตฌ(DR)๋ ๊ณ์ํด์ ๊ฐ์ฅ ํฐ ๊ด์ฌ์ฌ๋ก ๋ ์ค๋ฅด๊ณ ์์ผ๋ฉฐ, ๋ง์ DR
ํ๋ก๊ทธ๋จ์ด ์ต๊ณ ๊ฒฝ์์ง์๊ฒ ๋ณด๊ณ ๋๊ณ ์์ต๋๋ค. DR์ ์ํฐํ๋ผ์ด์ฆ ์ํ
๊ด๋ฆฌ ์ ๋ต์ ์ผ๋ถ๋ก ํฌํจํ๋ ๊ธฐ์ ์๊ฒ DR์ ๋จ์ํ ๊ธฐ์ ์ ์ญ๋์ด ์๋
์ ๋ต์ ์ญ๋์ ๋๋ค.
`
The State Of Disaster Recovery Preparedness In 2022
74. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Elastic Disaster Recovery
Backup &
Restore
Pilot light
Warm standby
in AWS
Hot standby
(active/passive)
โช Lower priority use
cases
โช Leverage existing
backup infrastructure
โช Cost: $
โช Meeting lower RTO &
RPO requirements
โช Minimal Infrastructure
at target site
โช Scale AWS resources in
response to a DR event
โช Cost: $$
โช Solutions that require
RTO & RPO in minutes
โช Business critical
services
โช Cost: $$$
โช Failover of your
environment in AWS
โช Cost: $$$$
RPO/RTO:
Hours
RPO/RTO:
10s of
Minutes
RPO/RTO:
Minutes
RPO/RTO: Near
Real-time
81. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Elastic Disaster Recovery ์ ์ฉ ์ฌ๋ก
81
On-premises to AWS AWS Region to
AWS Region
Cloud to AWS
83. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Elastic Disaster Recovery ์๋ ๋ฐฉ์
83
AWS๋ฅผ ํ๋ ฅ์ ๋ณต๊ตฌ ์ฌ์ดํธ๋ก ์ฌ์ฉํ์ฌ ์จํ๋ ๋ฏธ์ค ๋ฐ ํด๋ผ์ฐ๋ ์๋ฒ์ ์ฐ์ ๋ณต์
AWS
Replication
Agent
AWS
Replication
Agent
Replication
servers
(Lightweight
EC2 Instances)
EBS Volumes
Staging Area Subnets
(in user VPC)
Recovery
instance
Recovery
instance
Recovery Subnets
(in user VPC)
EBS Volumes
Disks
AWS Cloud
Agent control protocols
AWS Region
Continuous, block-
level replication
(compressed &
encrypted)
Replication server
status reporting
Staging area resources
automatically created
and terminated
Recovery instances launched
with RTO of minutes and
RPO of seconds
DRS
Data Center or cloud
84. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
๊ด๋ฒ์ ์ง์ ํ๋ซํผ
84
Any
application
Any
database
x86 operating
systems
Source
infrastructure Physical Data Centers
* ์ ์ฒด ๋ชฉ๋ก ๋ฐ ์ง์๋๋ ๋ฒ์ ์ ์ค๋ช ์ ์ฐธ์กฐ
86. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS DRS and CEDR
Comparison
87. ยฉ 2023, Amazon Web Services, Inc. or its affiliates. 87
https://aws.amazon.com/ko/disaster-recovery/when-to-choose-aws-drs
CloudEndure Disaster Recovery์ AWS DRS ๋น๊ต
88. ยฉ 2023, Amazon Web Services, Inc. or its affiliates. 88
CloudEndure Disaster Recovery์ AWS DRS ๋น๊ต
89. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
CloudEndure Disaster Recovery์ AWS DRS ๋น๊ต
89
90. ยฉ 2023, Amazon Web Services, Inc. or its affiliates. 90
CloudEndure Disaster Recovery์ AWS DRS ๋น๊ต
91. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
CloudEndure Disaster Recovery์ AWS DRS ๋น๊ต
91
92. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS DRS Agent ์ค์น
https://docs.aws.amazon.com/drs/latest/userguide/linux-
agent.html
93. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS DRS Agent ์ค์น
94. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Source Server ํ์ธ
95. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS DRS
Technical Deep Dive
96. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
How AWS Elastic Disaster Recovery works
On-premises or other clouds to AWS
AWS
Replication
Agent
AWS
Replication
Agent
Replication
servers
(Lightweight
EC2 Instances)
EBS Volumes
Staging Area Subnets
(in user VPC)
Recovery
instance
Recovery
instance
Recovery Subnets
(in user VPC)
EBS Volumes
Disks
AWS Cloud
Agent control protocols
AWS Region
Continuous, block-level
replication (compressed
& encrypted)
Replication server
status reporting
Staging area resources
automatically created
and terminated
Recovery instances launched
with RTO of minutes and
RPO of seconds
DRS
Data center or cloud
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
97. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
How AWS Elastic Disaster Recovery works
AWS Region to AWS Region
Replication
servers
(Lightweight
EC2
Instances) EBS
Volumes
Staging Area Subnets
(in user VPC)
Recovery Subnets (in
user VPC)
EBS Volumes
AWS Cloud
Agent control protocols
Replication
server status
reporting
Staging area resources
automatically created
and terminated
Recovery instances launched
with RTO of minutes and
RPO of seconds
DRS
Source Subnets (in user VPC)
Source EC2
Instance
AWS Replication
Agent
Source EC2
Instance
Continuous, block-level
replication (compressed &
encrypted)
AWS Replication
Agent
AWS Region (recovery site)
AWS Region (primary site)
Recovery
instance
Recovery
instance
EBS Volumes
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
98. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Pilot Light DR in AWS
AWS Cloud
Region 1
E1 VPC
Availability Zone 1
Backups
App
DB
Active
Directory
Active
Directory
AD replication
Other Cloud / On-prem
DB
DB Replication (optional)
Inte
DRS
99. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Pilot Light DR (Hybrid HA/DR)
AWS Cloud
Availability Zone 1
Region 1
E1 VPC
Availability Zone 2
Region 2
E1 VPC
Availability Zone 1
S3 replication
Backups Backups
App
DB
Clients Clients
Active
Directory
Active
Directory
Active
Directory
AD replication
AD replication
Plus
โข Lower cost
โข Fast Migration
โข Allows phased migration to
traditional HA.
Delta
โข Lower SLA
Within Region
โข RTO = Hours
โข RPO = Minutes
Between Regions
โข RTO = 1 day+
โข RPO = Hour
DB
DB Replication
Inte
100. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Pilot Light DR with HA Architecture
AWS Cloud
Availability Zone 1
Region 1
E1 VPC
Availability Zone 2
Region 2
E1 VPC
Availability Zone 1
S3 replication
Backups Backups Backups
Plus
โข AWS standard architecture
for loosely coupled
applications
โข Better SLA
Delta
โข Higher cost (N+N)
โข Longer migration timeline
Within Region
โข RTO = Minutes
โข RPO = Seconds
Between Region
โข RTO = Hours
โข RPO = Minutes
App
DB
App
Inte
DB
DB Replication
Clients Clients
Active
Directory
Active
Directory
Active
Directory
AD replication
AD replication
Inte
DRS
101. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Elastic DR for AWS Cloud
Oracle
EBS DB
Source AZ/Region
EBS APPS
Staging Area Subnet
Staging Storage
Volumes
Continuous,
real time
data
replication
(compresse
d &
encrypted)
with RPO of
seconds
Elastic DR
Agent
Target AZ/Region
Staging
Area
Replication
Servers
(Lightweigh
t Linux EC2
Instances
Automated
orchestration
enables RTO
of minutes
regardless of
machine size
Launched
Target
Oracle
EBS DB
Launched
Target EBS
APPS
Replication Server Configuration & Ongoing Monitoring
Target Subnet
TCP 443 (SSL)
DRS
Handshake
TCP 443 (SSL)
Replication Server Configuration & Ongoing Monitoring
User Console
Subnet
Subnet
102. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Network Architecture
102
103. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
No Public Internet
103
104. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Failback
104
105. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Agent Installation requirements
105
https://docs.aws.amazon.com/ko_kr/drs/latest/userguide/installation-requiremets.html
General requirements
โข Ensure that the source server operating system is supported by AWS.
โข Ensure that your setup meets all replication networking requirements.
โข Ensure MAC address stability
Source server requirements
โข Root directory - Verify that your source server has at least 4 GB of free disk space
on the root directory (/) .
โข RAM - Verify that your source server has at least 300 MB of free RAM to run the
AWS Replication Agent.
โข Elastic Disaster Recovery does not support paravirtualized source servers.
โข The AWS Replication Agent installer supports multipath.
106. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Supported operating systems
Windows
The following Windows operating systems are supported:
โขMicrosoft Windows Server 2022 64-bit
โขMicrosoft Windows Server 2019 64-bit
โขMicrosoft Windows Server 2016 64-bit
โขMicrosoft Windows Server 2012 R2 64-bit
โขMicrosoft Windows Server 2012 64-bit
โขMicrosoft Windows 10 64-bit
The following End of Life Windows operating systems are
supported:
โขMicrosoft Windows Server 2008 R2 64-bit
โขMicrosoft Windows Server 2008 64-bit
โขMicrosoft Windows Server 2003 64-bit
โขMicrosoft Windows 7 64-bit
Linux
The following Linux operating systems are
supported:
โขAmazon Linux (AL) 1 and 2
โขCentOS 5.6 and 7.0
โขDebian Linux 8 and 11
โขOracle Linux (OL) 6.0 and 7.0 (running
Unbreakable Enterprise Kernel Release 3 or
higher or Red Hat Compatible Kernel only.)
โขRed Hat Enterprise Linux (RHEL) 5.0 and 9.0
โขRocky Linux 8
โขSUSE Linux (SLES) 11 SP4 and 15
โขUbuntu 12.04 and 20.04
https://docs.aws.amazon.com/ko_kr/drs/latest/userguide/Supported-Operating-Systems.html
107. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Thank you!
East Kim
iksookim@amazon.com
108. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2022, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Backup
Leo Yangsoo Park
Storage Specialist SA
112. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Backup ๋์ ๋ฐฉ์
์ง์ ๋๋
์๋น์ค
Backups
AWS Backup
Backup
plan
Create
backup
plans
Secure
backups and
restores
Operators
Admin
IAM
IAM์ ํตํ
์ ๊ทผ ๊ด๋ฆฌ
AWS CloudTrail
Amazon SNS
Amazon
CloudWatch
์๋, ๋ก๊น , ๊ฐ์ฌ
์ค์
Cross-account
backup
AWS
Organizations
Backup vault
Scale through
AWS
Organizations
์ฌ๋ฌ ์ํ์ผ๋ก
๋ถํฐ ๋ณดํธ
Operators
Admin
์ปดํ๋ผ์ด์ธ์ค
๋ฆฌํฌํธ
Compute Storage Databases Business
applications
113. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Backup ๋ฐฑ์ ๋ฐ ๋ณต๊ตฌ ๋ฐฉ์
Provisioned
space
Initial backup
Incremental
backups
Initial
backup
Incremental
backup 1
Retained
backup
โฆ
Incremental
backup 2
Incremental
backup 3
Incremental
backup 4
Incremental
backup 5
Incremental
backup N
Retention
period
Backup duration and incremental pricing
Fulls and
incrementals
AWS Backup
Restored
as new
โfullโ
114. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Backup ์ฌ์ฉ ๋ฐฉ๋ฒ
115. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plan ์์ฑ
๋ฐฑ์ ์๊ฐ, ๋น๋๋ฅผ
์ํ ๋ฐฑ์ ์ผ์ ์
์ ์
์ ์ฅ ๊ธฐ๊ฐ/์์น ๋ฐ
๋ฐ์ดํฐ ์ด๋์ ์ํ
๋ผ์ดํ์ฌ์ดํด ์ค์
๋ฐฑ์ ๊ด๋ฆฌ ๋ฐ
๋ชจ๋ํฐ๋ง
ํ๊ทธ์ ARN์
์ด์ฉํ์ฌ backup
plan์ ๋ฐฑ์ ๋ฐ์
๋์ ์ง์ ํ๊ณ IAM
๊ถํ์ ํ ๋น
Step-1 Step-2 Step-3 Step-4
118. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plans 1) Backup Vault
119. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plans 2) Backup rules
๋น๋ ๋ฐ ๋ฐฑ์ ์๋์ฐ ์ค์
Cold tier๋ก ์ด๋ ์ค์
Retention ์ค์
Backup vault ์ค์ (์ ์ฅ ๊ณต๊ฐ)
120. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plans 2) Backup rules
๋ค๋ฅธ ๋ฆฌ์ /๊ณ์ ์ผ๋ก ๋ณต์ฌ
Cold tier๋ก ์ด๋ ์ค์
Retention ์ค์
ํ๊ทธ ์ถ๊ฐ
121. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plans 3) Resource assignments
IAM role ์ค์
122. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Backup Plans 3) Resource assignments
๋ฐฑ์ ๋์ ์ค์
๋ฐฑ์ ๋์ ์ค์ (๋ฆฌ์์ค
๋ณ๋ก)
ํน์ Tag ๋์๋ง ์ค์
123. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS BACKUP์ ํตํ ๋ณต๊ตฌ
๋ณต๊ตฌ ํ๋ก์ธ์ค๋ ๊ฐ๊ฐ์ ๋ฆฌ์์ค ํ์ ๋ณ๋ก ๋ค๋ฆ
Example: EBS snapshot Example: EFS Filesystem
124. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Recovery Points ๋ณต๊ตฌ
โข ์ฝ์์์ ํน์ Recovery
Point ๋ณต๊ตฌ
โข ์๋น์ค ๋ณ๋ก ๋ณต๊ตฌ ์ ๊ตฌ์ฑ
๊ฐ๋ฅํ ์์ฑ์ด ๋ค๋ฆ
โข ์งํ ์ํฉ์ ์ฝ์ ๋ฐ
Cloudtrail์์ ๋ณผ ์๋ ์๊ณ
SNS๋ฅผ ํตํด ์ด๋ฒคํธ ์๋ฆผ์
๋ฐ์ ์ ๋ ์์
125. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Backup ๊ธฐ๋ฅ
126. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
๋ฐฑ์ ๊ด๋ฆฌ์ ๊ฐํธํจ
AWS Backup
Backup Plan-A: Mission Critical Backup Plan-B: Soc1 Compliant
Amazon EFS
Amazon EBS Amazon RDS
AWS Storage
Gateway
DynamoDB
Amazon
EBS
Application A Application B Financial Data
Amazon RDS
FSx for
Windows
FSx for
Lustre
127. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Backup with Cross Account Management
root Account (OU-0)
Org Unit (OU-1 and OU-2)
Amazon EC2
AWS SGW
DynamoDB
Amazon RDS
Amazon EBS
Amazon EFS
AWS Backup
Org Unit (OU-3)
128. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
AWS Backup with Cross Account Management
129. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Cross Account Backup
Backup Vault
Region (us-west-1)
Availability Zone
AWS Backup
EBS EFS
Region (same or other)
AWS
Organization
Org
Member-Z
Separate
Credentials
Org
Members
1~N
Backup Vault
Backup Vault
EC2
Many-to-
Many
Many-to-One
One-to-One
One-to-Many
Role
FSx for
Windows
131. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Cross Region Copy
โข ํ์์ Copy Backups across
regions
โข ์ค์ผ์ฅด๋ง ๊ฐ๋ฅ
โข ๋น์ง๋์ค ์์์ฑ๊ณผ ์ปดํ๋ผ์ด์ธ์ค
์ ์ฑ ์ ๋์์ ์ค
132. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
์ํธํ, ๋ณด์ ๊ถํ with AWS Backup
๋ชจ๋ ๋ฐฑ์ ์ KMS
key๋ฅผ ์ฌ์ฉํ
์ํธํ๋ฅผ ์ง์
Identity-based
policies ์ง์ via
Amazon Identity
Access Manager (IAM)
Resource-based
policies ์ง์ via
Amazon Identity
Access Manager (IAM)
EFS, S3, Timestream
๋ฑ ํน์ ์๋น์ค๋
๋ณ๋์ KMS ํค๋ฅผ
์ฌ์ฉํ์ฌ ๋ฐฑ์ ์
์ํธํ ํ๋ ๊ฒ์ ์ง์
134. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Vault Lock ์ค์
Governance Mode Compliance Mode
135. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Vault Lock์ ์ ์ฅ๋ ๋ฐฑ์ ์ญ์ /๋ณ๊ฒฝ ์๋
"backup:DeleteBackupVaultLockConfigurationโ ๊ถํ ๊ฐ์ง
์ฌ์ฉ์๋ง Vault Lock ์ญ์ ๊ฐ๋ฅ
136. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
Legal holds
๋ฒ์ ์ธ ๋์ ๋ฐ ๊ฐ์ฌ ๋ชฉ์ ์ผ๋ก ํน์ ๋ฐฑ์ ๋ณธ์ ์ญ์ ํ์ง ๋ชปํ๊ฒ ํ ์ ์์
137. ยฉ 2023, Amazon Web Services, Inc. or its affiliates.
ยฉ 2023, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Backup Audit Manager