© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Blur the boundaries between your
on-premises to AWS Cloud
Dudu Twizer
Specialized Solutions Architect
AWS
S K L 2 0 5
Gabi Dvir
Head of Infrastructure
888 holdings
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid cloud challenges
1. Business applications and software
2. Utilizing existing processes, skills & tools
3. Connecting on-premises to AWS
4. Access and identity management
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid cloud challenges
1. Business applications and software
2. Utilizing existing processes, skills & tools
3. Connecting on-premises to AWS
4. Access and identity management
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
10
Years
Helping customers run and scale
Windows Workloads in the cloud
400%
Growth
Between 2015 and 2018 of AWS
enterprise customers using Amazon
Elastic Compute Cloud (Amazon EC2) for
Windows Server
Windows momentum on AWS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
10 years of innovation for Windows on AWS
CustomerAdoption
2008
Visual Studio Toolkit
Microsoft SCOM plug-in release.
Microsoft SharePoint 2016 (Marketplace)
Microsoft SCVMM Plug-in
SAP instance on AWS 2012
Trusted Advisor checks for Windows
Hyper-V support in SMS
Windows for Lightsail
Application-consistent
Snapshots through VSS
AWS Directory Service
Sessions Manager
Dedicated Host
Enhancement Tag-On
EC2 Dedicated Hosts (BYOL)
EC2 Run Command
EC2 Systems Manager
EC2 Dedicated
Instances (BYOL)
EC2 Windows on Bare Metal/Hyper-V AMI
WS 2008 & SQL Server 2008
Windows Server 2008 R2
Windows Server 2012
Windows Server 2016
Windows Server 1803
Windows Server 2003
SQL 2017 AMI AL2/Ubuntu
SQL Server 2008 R2
Amazon RDS adds SQL Server
SQL Server 2017
SQL Server 2012
SQL Server 2008 R2
SQL Server 2016
2010 2012 2014 2016 2018 Today
174 instance types, 42 instance families
65 different AMIs for Windows workloads
.NET Core & Powershell on AL2/Ubuntu
Windows Deep Learning AMI
.NET Core 2.1 on Linux AMIs
Lambda Support for
PowerShell Core
Amazon ECS for Windows Containers
AWS Tools for Windows PowerShell
.NET SDK
DynamoDB Accelerator SDK for .NET
.NET on Lambda & AWS CodeBuild
.NET Core 2.1 Support with Lambda & X-Ray
X-Ray .NET SDK
.NET Developer Hub
AWS X-Ray .NET Core Support
.NET Developer Hub
Windows 2019 AMIs for Amazon EC2
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Public cloud leaders
prevail in the Windows
market segment of the
infrastructure as a
service market
IDC, Windows Server Operating Environment Market Update, Doc # US44217118, Aug 2018
Note: Includes Windows instances deployed in the public
cloud IaaS market during 2017 Source: IDC estimates, 2018https://d1.awsstatic.com/analyst-reports/IDC_Slide_WindowsonAWS_JM181015.pdf
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Flexibility to enforce
license usage
AWS License Manager
Leverage native
AWS Services
Manage licenses across
hybrid environments
Learn more at aws.amazon.com/license-manager
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Amazon FSx for Windows File Server
Learn more at aws.amazon.com/fsx/windows
Windows native for fully
compatible Windows File
System experience
Secure and compliant
including PCI-DSS,
ISO, and HIPAA
No hardware or
software to manage
Up to 10s of GB/s
throughput with sub-
millisecond latencies
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Amazon FSx for Windows File Server use cases
Learn more at aws.amazon.com/fsx/windows
Data
analytics
Home
directories
Line-of-business
applications
Media and
Entertainment
Content
management
Web
serving
Disaster
Recovery
Development
environments
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Systems Manager
IT Admin, DevOps
Engineer
Role-based Access
Control
A set of capabilities that:
• Enables role based server management
• Audits every management action
• Are free - no charge to use
• Manages thousands of Windows and Linux
instances running on anywhere
(Amazon EC2, other clouds, or on-premises)
AWS Cloud Corporate data center
Traditional
server
Traditional
server
Instances Instances
Learn more at aws.amazon.com/systems-manager
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
SQL Server on Linux
SAVE EVEN MORE WITH RI’S
0
0.5
1
1.5
2
m5.2xl c5.2xl r5.2xl
Windows with SQL STD Linux with SQL STD
20% lower cost
Priceperhour
Choice: Ubuntu,
RHEL, Amazon
Linux 2
Standardization across
one operating system
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hibernate EC2 instances for Windows
Pre-warmed instances with your apps pre-configured
Support for Windows Server environments coming soon!
Scale faster with
warm instances
No need to modify
existing applications
Just like opening and
closing your laptop
COMING SOON
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Toolkit for Visual Studio
Learn more at aws.amazon.com/developer/language/net/
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Running Microsoft Applications on AWS
License mobility:
• Exchange Server
• SharePoint Server
• SQL Server Standard Edition
• SQL Server Enterprise Edition
• SQL Server Business Intelligence Edition
• Skype for Business Server
• System Center Server
• Dynamics CRM Server
• Dynamics AX Server
• Project Server
• Visual Studio Team Foundation Server
• BizTalk Server
• Forefront Identity Manager
• Forefront Unified Access Gateway
• Remote Desktop Services
BYOL to Dedicated hosts
• Microsoft Windows Server
• Microsoft SQL Server
• Microsoft Remote Desktop
Services (user CALs)
• Microsoft Exchange Server
• Microsoft SharePoint Server
• Microsoft System Center
• Microsoft Dynamics products
• MSDN
Buy licenses from AWS
• Exchange Server
• SharePoint
• System Center
• Windows Server
• SQL Server (RDS / Linux / EC2)
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Microsoft Windows and SQL Server on AWS
“We chose to move our Microsoft workloads to AWS because
of your extensive migration experience, higher availability, and
better performance. We are seeing 35% cost savings and
thrilled to see 4x faster launch times now.” – Ryan Hoffman,
Senior Vice President of Engineering
“We experimented with AWS Elastic Beanstalk and found it
was the simplest, fastest way to get .NET code running in
AWS.” – Bernie Gracy, Chief Digital Officer
“After migrating to AWS, we upgraded to SQL Server 2016
using SQL Server 2008 in compatibility mode, which meant we
did not have to make any application changes, and now have a
fully supported version of SQL Server.” – Udi Keidar, VP of
Cloud Services, ClickSoftware
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid cloud challenges
1. Business applications and software
2. Utilizing existing processes, skills & tools
3. Connecting on-premises to AWS
4. Access and identity management
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Leading compute, storage and network
virtualization capabilities
Support for a broad range of workloads
De-facto standard for the enterprise DC
Flexible consumption economics
Broadest set of cloud services
Global scale and reach
Jointly engineered solution delivers the best of VMware and AWS for customers
A truly compelling and differentiated solution
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Amazon Elastic Compute Cloud (EC2)—
Elastic virtual servers in the cloud
Physical Servers in
AWS Global Regions
Host server
AWS Hypervisor
Guest 1 Guest 2 Guest nCustomer
AWS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Amazon Elastic Compute Cloud (EC2)—
Elastic virtual servers in the cloud
Physical Servers in
AWS Global Regions
Host server
ESXi + vSAN + NSXCustomer
AWS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
About 888 Holdings
21 years old online gaming company
Poker, Casino, Bingo, Sport
B2C company
~1,500 employees
8 DCs around the world
7 sites globally
Israel, Gibraltar, UK, Romania, Antigua, Kiev, NJ
Regulated Markets
Responsible gaming
Dublin DC Architecture
Dublin DC Architecture
App
OS
Vmware
Cisco
HP
Hitachi
Arista
Full SDDC
DR using VMC
DR Challenges -> VMC Solution
Summary
Plan ahead
• Architecture Design
• Distributed firewall limitations
• Direct Connect
Great Collaboration with AWS / Vmware / Terasky
Believe you can change !
Thank You!
Gabi Dvir
888 - Head of Infrastructure
Gabi.Dvir@888holdings.com
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid cloud challenges
1. Business applications and software
2. Utilizing existing processes, skills & tools
3. Connecting on-premises to AWS
4. Access and identity management
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Cloud connectivity
On-Premises
Data Center
Amazon VPC
AWS Direct Connect
AWS VPN
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Transit Gateway
Easily interconnect thousands of VPCs and
on-premise networks
On-Premise
Data Center
AWS Transit
Gateway
Amazon VPC
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid cloud challenges
1. Business applications and software
2. Utilizing existing processes, skills & tools
3. Connecting on-premises to AWS
4. Access and identity management
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Active Directory is the most widely used
enterprise repository for digital identities1
of Fortune 1000 use Active Directory2
Directory
Sources:
1 The State Of Microsoft Active Directory 2018, Forrester
2 Success with Enterprise Mobility: Identity, 2014, Microsoft
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud on AWS - Directory
AWS Cloud Corporate data center
AWS VPN
AWS Direct Connect
Customer
gatewayAWS Transit Gateway
VPC
Subnet
Amazon EC2
Subnet
Amazon EC2
Company.local
Company.local
DC1 DC2 DC3
Extend the
domain
Identity integrations
AWS Management
Console
Amazon EC2
Pros:
- Provides HA
Cons:
- Manual domain join
- Console access via SAML
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud on AWS - Directory
AWS Cloud Corporate data center
AWS VPN
AWS Direct Connect
Customer
gatewayAWS Transit Gateway
VPC
Subnet Subnet
Company.aws
Company.local
DC1 DC2 DC3
Trust
Identity integrations
AWS Management
Console
Amazon EC2
AWS Directory Service AWS Directory Service
AWS Single Sign-On Amazon RDS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud on AWS – Directory + Multiple accounts
AWS Cloud Corporate data center
AWS VPN
AWS Direct Connect
Customer
gatewayAWS Transit Gateway
VPC
Subnet Subnet
Company.aws
Company.local
DC1 DC2 DC3
Trust
AWS Directory Service AWS Directory Service
Account 1 Account 2 Account 3
Directory
Sharing
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS SSO
Centrally manage single sign-on (SSO) access to multiple AWS
accounts and business applications.
Linked account
Master accountShared resources account
Linked account
Amazon
Connect
Amazon
WorkMail
Amazon
WorKSpaces
RDS for SQL
Server
Amazon
WorkDocs
Amazon
QuickSight
Amazon
Chime
Use AD as IDP /
Use SSO Directory
AWS Directory
Service
AWS Single
Sign-On
AWS CloudTrail
RoleAWS-STS Temporary
security
credential
RoleAWS-STS Temporary
security
credential
AWS Organizations
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS SSO
Centrally manage single sign-on (SSO) access to multiple AWS
accounts and business applications.
Linked account
Master accountShared resources account
Linked account
Amazon
Connect
Amazon
WorkMail
Amazon
WorKSpaces
RDS for SQL
Server
Amazon
WorkDocs
Amazon
QuickSight
Amazon
Chime
AWS CloudTrail
RoleAWS-STS Temporary
security
credential
RoleAWS-STS Temporary
security
credential
AWS OrganizationsUse AD as IDP /
Use SSO Directory
AWS Directory
Service
AWS Single
Sign-On
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Summary
1. Windows on AWS (FSx , Licensing, System Manager)
2. VMware Cloud on AWS
3. On-premises connectivity (VPN, Direct connect,
Transit Gateway)
4. Directory Services (Managed AD, AWS SSO)
Thank you!
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Dudu Twizer
dudut@amazon.com
http://bit.ly/2SFKXuO
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.

Blur the boundaries between your on-premises to AWS cloud by embracing VMWare, Microsoft and other hybrid solutions | Tel Aviv Summit Tel Aviv

  • 2.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Blur the boundaries between your on-premises to AWS Cloud Dudu Twizer Specialized Solutions Architect AWS S K L 2 0 5 Gabi Dvir Head of Infrastructure 888 holdings
  • 3.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid cloud challenges 1. Business applications and software 2. Utilizing existing processes, skills & tools 3. Connecting on-premises to AWS 4. Access and identity management
  • 4.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid cloud challenges 1. Business applications and software 2. Utilizing existing processes, skills & tools 3. Connecting on-premises to AWS 4. Access and identity management
  • 5.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved.
  • 6.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. 10 Years Helping customers run and scale Windows Workloads in the cloud 400% Growth Between 2015 and 2018 of AWS enterprise customers using Amazon Elastic Compute Cloud (Amazon EC2) for Windows Server Windows momentum on AWS © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 7.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. 10 years of innovation for Windows on AWS CustomerAdoption 2008 Visual Studio Toolkit Microsoft SCOM plug-in release. Microsoft SharePoint 2016 (Marketplace) Microsoft SCVMM Plug-in SAP instance on AWS 2012 Trusted Advisor checks for Windows Hyper-V support in SMS Windows for Lightsail Application-consistent Snapshots through VSS AWS Directory Service Sessions Manager Dedicated Host Enhancement Tag-On EC2 Dedicated Hosts (BYOL) EC2 Run Command EC2 Systems Manager EC2 Dedicated Instances (BYOL) EC2 Windows on Bare Metal/Hyper-V AMI WS 2008 & SQL Server 2008 Windows Server 2008 R2 Windows Server 2012 Windows Server 2016 Windows Server 1803 Windows Server 2003 SQL 2017 AMI AL2/Ubuntu SQL Server 2008 R2 Amazon RDS adds SQL Server SQL Server 2017 SQL Server 2012 SQL Server 2008 R2 SQL Server 2016 2010 2012 2014 2016 2018 Today 174 instance types, 42 instance families 65 different AMIs for Windows workloads .NET Core & Powershell on AL2/Ubuntu Windows Deep Learning AMI .NET Core 2.1 on Linux AMIs Lambda Support for PowerShell Core Amazon ECS for Windows Containers AWS Tools for Windows PowerShell .NET SDK DynamoDB Accelerator SDK for .NET .NET on Lambda & AWS CodeBuild .NET Core 2.1 Support with Lambda & X-Ray X-Ray .NET SDK .NET Developer Hub AWS X-Ray .NET Core Support .NET Developer Hub Windows 2019 AMIs for Amazon EC2
  • 8.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Public cloud leaders prevail in the Windows market segment of the infrastructure as a service market IDC, Windows Server Operating Environment Market Update, Doc # US44217118, Aug 2018 Note: Includes Windows instances deployed in the public cloud IaaS market during 2017 Source: IDC estimates, 2018https://d1.awsstatic.com/analyst-reports/IDC_Slide_WindowsonAWS_JM181015.pdf
  • 9.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Flexibility to enforce license usage AWS License Manager Leverage native AWS Services Manage licenses across hybrid environments Learn more at aws.amazon.com/license-manager
  • 10.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Amazon FSx for Windows File Server Learn more at aws.amazon.com/fsx/windows Windows native for fully compatible Windows File System experience Secure and compliant including PCI-DSS, ISO, and HIPAA No hardware or software to manage Up to 10s of GB/s throughput with sub- millisecond latencies
  • 11.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Amazon FSx for Windows File Server use cases Learn more at aws.amazon.com/fsx/windows Data analytics Home directories Line-of-business applications Media and Entertainment Content management Web serving Disaster Recovery Development environments
  • 12.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. AWS Systems Manager IT Admin, DevOps Engineer Role-based Access Control A set of capabilities that: • Enables role based server management • Audits every management action • Are free - no charge to use • Manages thousands of Windows and Linux instances running on anywhere (Amazon EC2, other clouds, or on-premises) AWS Cloud Corporate data center Traditional server Traditional server Instances Instances Learn more at aws.amazon.com/systems-manager
  • 13.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. SQL Server on Linux SAVE EVEN MORE WITH RI’S 0 0.5 1 1.5 2 m5.2xl c5.2xl r5.2xl Windows with SQL STD Linux with SQL STD 20% lower cost Priceperhour Choice: Ubuntu, RHEL, Amazon Linux 2 Standardization across one operating system
  • 14.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hibernate EC2 instances for Windows Pre-warmed instances with your apps pre-configured Support for Windows Server environments coming soon! Scale faster with warm instances No need to modify existing applications Just like opening and closing your laptop COMING SOON
  • 15.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. AWS Toolkit for Visual Studio Learn more at aws.amazon.com/developer/language/net/
  • 16.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Running Microsoft Applications on AWS License mobility: • Exchange Server • SharePoint Server • SQL Server Standard Edition • SQL Server Enterprise Edition • SQL Server Business Intelligence Edition • Skype for Business Server • System Center Server • Dynamics CRM Server • Dynamics AX Server • Project Server • Visual Studio Team Foundation Server • BizTalk Server • Forefront Identity Manager • Forefront Unified Access Gateway • Remote Desktop Services BYOL to Dedicated hosts • Microsoft Windows Server • Microsoft SQL Server • Microsoft Remote Desktop Services (user CALs) • Microsoft Exchange Server • Microsoft SharePoint Server • Microsoft System Center • Microsoft Dynamics products • MSDN Buy licenses from AWS • Exchange Server • SharePoint • System Center • Windows Server • SQL Server (RDS / Linux / EC2)
  • 17.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Microsoft Windows and SQL Server on AWS “We chose to move our Microsoft workloads to AWS because of your extensive migration experience, higher availability, and better performance. We are seeing 35% cost savings and thrilled to see 4x faster launch times now.” – Ryan Hoffman, Senior Vice President of Engineering “We experimented with AWS Elastic Beanstalk and found it was the simplest, fastest way to get .NET code running in AWS.” – Bernie Gracy, Chief Digital Officer “After migrating to AWS, we upgraded to SQL Server 2016 using SQL Server 2008 in compatibility mode, which meant we did not have to make any application changes, and now have a fully supported version of SQL Server.” – Udi Keidar, VP of Cloud Services, ClickSoftware
  • 18.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid cloud challenges 1. Business applications and software 2. Utilizing existing processes, skills & tools 3. Connecting on-premises to AWS 4. Access and identity management
  • 19.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Leading compute, storage and network virtualization capabilities Support for a broad range of workloads De-facto standard for the enterprise DC Flexible consumption economics Broadest set of cloud services Global scale and reach Jointly engineered solution delivers the best of VMware and AWS for customers A truly compelling and differentiated solution
  • 20.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Amazon Elastic Compute Cloud (EC2)— Elastic virtual servers in the cloud Physical Servers in AWS Global Regions Host server AWS Hypervisor Guest 1 Guest 2 Guest nCustomer AWS
  • 21.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Amazon Elastic Compute Cloud (EC2)— Elastic virtual servers in the cloud Physical Servers in AWS Global Regions Host server ESXi + vSAN + NSXCustomer AWS
  • 22.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved.
  • 23.
    About 888 Holdings 21years old online gaming company Poker, Casino, Bingo, Sport B2C company ~1,500 employees 8 DCs around the world 7 sites globally Israel, Gibraltar, UK, Romania, Antigua, Kiev, NJ
  • 24.
  • 25.
  • 26.
  • 27.
    DR Challenges ->VMC Solution
  • 28.
    Summary Plan ahead • ArchitectureDesign • Distributed firewall limitations • Direct Connect Great Collaboration with AWS / Vmware / Terasky
  • 29.
  • 30.
    Thank You! Gabi Dvir 888- Head of Infrastructure Gabi.Dvir@888holdings.com
  • 31.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid cloud challenges 1. Business applications and software 2. Utilizing existing processes, skills & tools 3. Connecting on-premises to AWS 4. Access and identity management
  • 32.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Cloud connectivity On-Premises Data Center Amazon VPC AWS Direct Connect AWS VPN
  • 33.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. AWS Transit Gateway Easily interconnect thousands of VPCs and on-premise networks On-Premise Data Center AWS Transit Gateway Amazon VPC
  • 34.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid cloud challenges 1. Business applications and software 2. Utilizing existing processes, skills & tools 3. Connecting on-premises to AWS 4. Access and identity management
  • 35.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Active Directory is the most widely used enterprise repository for digital identities1 of Fortune 1000 use Active Directory2 Directory Sources: 1 The State Of Microsoft Active Directory 2018, Forrester 2 Success with Enterprise Mobility: Identity, 2014, Microsoft
  • 36.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud on AWS - Directory AWS Cloud Corporate data center AWS VPN AWS Direct Connect Customer gatewayAWS Transit Gateway VPC Subnet Amazon EC2 Subnet Amazon EC2 Company.local Company.local DC1 DC2 DC3 Extend the domain Identity integrations AWS Management Console Amazon EC2 Pros: - Provides HA Cons: - Manual domain join - Console access via SAML
  • 37.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud on AWS - Directory AWS Cloud Corporate data center AWS VPN AWS Direct Connect Customer gatewayAWS Transit Gateway VPC Subnet Subnet Company.aws Company.local DC1 DC2 DC3 Trust Identity integrations AWS Management Console Amazon EC2 AWS Directory Service AWS Directory Service AWS Single Sign-On Amazon RDS
  • 38.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud on AWS – Directory + Multiple accounts AWS Cloud Corporate data center AWS VPN AWS Direct Connect Customer gatewayAWS Transit Gateway VPC Subnet Subnet Company.aws Company.local DC1 DC2 DC3 Trust AWS Directory Service AWS Directory Service Account 1 Account 2 Account 3 Directory Sharing
  • 39.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. AWS SSO Centrally manage single sign-on (SSO) access to multiple AWS accounts and business applications. Linked account Master accountShared resources account Linked account Amazon Connect Amazon WorkMail Amazon WorKSpaces RDS for SQL Server Amazon WorkDocs Amazon QuickSight Amazon Chime Use AD as IDP / Use SSO Directory AWS Directory Service AWS Single Sign-On AWS CloudTrail RoleAWS-STS Temporary security credential RoleAWS-STS Temporary security credential AWS Organizations
  • 40.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. AWS SSO Centrally manage single sign-on (SSO) access to multiple AWS accounts and business applications. Linked account Master accountShared resources account Linked account Amazon Connect Amazon WorkMail Amazon WorKSpaces RDS for SQL Server Amazon WorkDocs Amazon QuickSight Amazon Chime AWS CloudTrail RoleAWS-STS Temporary security credential RoleAWS-STS Temporary security credential AWS OrganizationsUse AD as IDP / Use SSO Directory AWS Directory Service AWS Single Sign-On
  • 41.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved. Summary 1. Windows on AWS (FSx , Licensing, System Manager) 2. VMware Cloud on AWS 3. On-premises connectivity (VPN, Direct connect, Transit Gateway) 4. Directory Services (Managed AD, AWS SSO)
  • 42.
    Thank you! © 2019,Amazon Web Services, Inc. or its affiliates. All rights reserved. Dudu Twizer dudut@amazon.com http://bit.ly/2SFKXuO
  • 43.
    © 2019, AmazonWeb Services, Inc. or its affiliates. All rights reserved.