SlideShare a Scribd company logo
1 of 23
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Operating and Managing Hybrid Cloud
on AWS
A R C 2 1 7 - R
Tom Laszewski
Enterprise Technologist
Amazon Web Services
Anuj Dewangan
Sr. Solutions Architect
Amazon Web Services
What we expect
Hybrid Cloud
Vision
What we get
Hybrid Cloud
Vision
Networking and host management
Monitoring
and logging
Unified
Security
Consistent provisioning
interfaces
Building a hybrid cloud is hard!
Journey to the hybrid cloud...
Hybrid architecture goals
Operational
consistency
Existing skillsets
and tools
Simple to
control,
manage, secure
Enterprise-class
app SLA
Build once,
deploy anywhere
Core
Services
Infrastructure
Customer infrastructure
Compute Servers
Storage Nodes
Networking devices
AWS Regions
Compute Servers
Storage Nodes
Networking devices
Operations and Management Framework
Network Backbone
Identity, security
and Access
Management
Operations and
monitoring
Fleet Management
Hybrid Cloud Services
Network & SecurityStorage ServicesCompute Services
Unified
Management
Databases Analytics AI/ML Developer
Tools
Systems
Mgmt
Fleet Management
• Host management for on-premises compute servers,
networking and storage devices
• Inventory management, software installation
and updates, metrics collection
• Management interfaces for provisioning and
monitoring new instances, storage and
configurations
AWS Systems Manager AWS OpsWorks AWS CodeDeploy
AWS Outposts VMware Cloud on AWS
Operations and Monitoring
• Unified Metrics, monitoring,
alerting, logging and auditing for
the full stack
Amazon CloudWatch AWS CloudTrail AWS CloudTrail
AWS X-Ray
Flow logs Traffic Mirroring
Operations and Monitoring – Partner Solutions
Identity, security and access management
• Unified identity, security and access
for all entities including services
and users
• Key management
AWS Key Management
Service
AWS Identity and Access
Management
AWS Directory Service
AWS Single Sign-On AWS CloudHSM
Hybrid cloud services
HybridCloud
Infrastructure
Network (Peering connections, VPN, Internet)
AWS Regions
Compute Servers
Customer infrastructure
Compute Servers
Instance
Compute
Service
Management Interfaces/APIs
Fleet Management
Interfaces/APIs
EC2 APIs
Core Services
Identity, security and
access management
Operations and
Monitoring
User
• Provide unified provisioning,
monitoring and operating interfaces
for hybrid cloud computing
• Multi-tenancy, inventory, object
configurations
Compute Service:
• Instance inventory, launch and
runtime configurations, images
AWS Outposts VMware Cloud on AWS
Developer Tools
AWS Step FunctionsAWS CodeDeployAWS OpsWorks
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
MassMutual - Governance, Risk, and Compliance
AWS Tools
• CloudTrail
• Config
• Trusted Advisor
• CloudWatch
• Systems Manager
• Lambda
• KMS
• Certificate Manager
• CloudFormation
Other tools
• Splunk
• Ansible
• Cloud Custodian
• Securonix
• Carbon Black
• QAS
• Qualys
• Symantec
• Okta
GreenPages - Cloud Xcelerator Platform
Organization
Shared
Services
Transit
Hub
Security
DevOps
App 101
Non-Prod
VPN Client
Access
App 102
Non-Prod
App 102
Prod
Tenant
Shared
Services
Transit
Hub
Security
DevOps
VPN Client
Access
App 201
Non-Prod
App 201
Prod
App 202
Non-Prod
App 202
Prod
Company TenancyAccount Family
AWS Accounts and
Virtual Private Clouds
(VPCs)
Azure Subscriptions and
Virtual Private Networks
(VNETs)
GreenPages Configuration
Center
Amazon Web
Services
Microsoft Azure
Operations Management &
Monitoring
Hybrid Cloud Orchestrator
CloudBolt www.cloudbolt.io
Consistent environment deployments
to AWS, Azure, GCP, and vmware,
with real-time validation and
automated remediation.
https://dev.gphco.io
Digital Operations
OpsRamp www.opsramp.com
Security, Compliance & Financial
Control
CloudCheckr www.cloudcheckr.com
Corporate
Network
Active Directory
Data Sources
Data Center
Services
App 101
Prod
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Same AWS infrastructure & services on-premises
AWS-designed, Nitro infrastructure for
the same security and performance
Automatically managed and updated
as part of AWS Regions
Single point of service and support
AWS Outposts • Same infrastructure
• Same programming interface
• Same monitoring & operations
• Use existing skillset
Available in two options:
• Native AWS
• VMware Cloud on AWS
Questions
Questions
Frequently Asked Questions
• Why do customers need a Hybrid Cloud?
• Do you see hybrid cloud as an temporary solution while customers
migrate to AWS?
• Do you have customers deploying Hybrid Cloud with AWS?
• What are AWS thoughts on multi-cloud?
• Does the operations and management framework apply to multi-cloud?
Related sessions
CMP302-R AWS Outposts: Extend the AWS experience to on-premises
environments
CMP337-R AWS Outposts: Build for low latency and local data processing
ENT306-R Build a hybrid cloud in two hours with VMware Cloud on AWS
ENT212-S Transform your business with the VMware & AWS hybrid cloud
ENT318-R Migration strategies leveraging VMware Cloud on AWS
CMP320 How Dropbox leverages Hybrid Cloud for scale and innovation
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Free foundational to advanced digital courses cover AWS services and
teach architecting best practices
Learn to architect with AWS Training and Certification
Visit aws.amazon.com/training/path-architecting/
Classroom offerings, including Architecting on AWS,
feature AWS expert instructors and hands-on labs
Validate expertise with the AWS Certified Solutions Architect - Associate
or AWS Certification Solutions Architect - Professional exams
Resources created by the experts at AWS to propel your organization and career forward
Thank you!
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.

More Related Content

What's hot

What's hot (20)

Getting started on your AWS migration journey
Getting started on your AWS migration journeyGetting started on your AWS migration journey
Getting started on your AWS migration journey
 
Application Modernization using the Strangler Pattern
Application Modernization using the Strangler PatternApplication Modernization using the Strangler Pattern
Application Modernization using the Strangler Pattern
 
Understanding AWS Managed Databases and Analytic Services - AWS Innovate Otta...
Understanding AWS Managed Databases and Analytic Services - AWS Innovate Otta...Understanding AWS Managed Databases and Analytic Services - AWS Innovate Otta...
Understanding AWS Managed Databases and Analytic Services - AWS Innovate Otta...
 
AWS Innovate Ottawa Keynote - Jeff Kratz
 AWS Innovate Ottawa Keynote - Jeff Kratz AWS Innovate Ottawa Keynote - Jeff Kratz
AWS Innovate Ottawa Keynote - Jeff Kratz
 
Transforming Your IT with AWS
Transforming Your IT with AWSTransforming Your IT with AWS
Transforming Your IT with AWS
 
From Monolithic to Modern Apps: Best Practices
From Monolithic to Modern Apps: Best PracticesFrom Monolithic to Modern Apps: Best Practices
From Monolithic to Modern Apps: Best Practices
 
Cloud Migration Insights Forum, Melbourne
Cloud Migration Insights Forum, MelbourneCloud Migration Insights Forum, Melbourne
Cloud Migration Insights Forum, Melbourne
 
Immersion Day - Well Architected Workshop - June 2019
Immersion Day - Well Architected Workshop - June 2019Immersion Day - Well Architected Workshop - June 2019
Immersion Day - Well Architected Workshop - June 2019
 
Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit...
Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit...Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit...
Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit...
 
Winning Governance Strategies for the Technology Disruptions of our Time
Winning Governance Strategies for the Technology Disruptions of our TimeWinning Governance Strategies for the Technology Disruptions of our Time
Winning Governance Strategies for the Technology Disruptions of our Time
 
AWS Cloud Migration Insights Forum
AWS Cloud Migration Insights ForumAWS Cloud Migration Insights Forum
AWS Cloud Migration Insights Forum
 
Considerations for your Cloud Journey
Considerations for your Cloud JourneyConsiderations for your Cloud Journey
Considerations for your Cloud Journey
 
Future of Enterprise IT
Future of Enterprise IT Future of Enterprise IT
Future of Enterprise IT
 
Simplify & Standardise your migration to AWS with a Migration Landing Zone
Simplify & Standardise your migration to AWS with a Migration Landing ZoneSimplify & Standardise your migration to AWS with a Migration Landing Zone
Simplify & Standardise your migration to AWS with a Migration Landing Zone
 
AWS Business Essentials Day
AWS Business Essentials DayAWS Business Essentials Day
AWS Business Essentials Day
 
ENT211_How to Assess Your Organization’s Readiness to Migrate at Scale to AWS
ENT211_How to Assess Your Organization’s Readiness to Migrate at Scale to AWSENT211_How to Assess Your Organization’s Readiness to Migrate at Scale to AWS
ENT211_How to Assess Your Organization’s Readiness to Migrate at Scale to AWS
 
Aws cloud adoption_framework
Aws cloud adoption_frameworkAws cloud adoption_framework
Aws cloud adoption_framework
 
Migrating into a cloud
Migrating into a cloudMigrating into a cloud
Migrating into a cloud
 
SAP on AWS: How UCT is Experiencing Better Performance on AWS While Saving 60...
SAP on AWS: How UCT is Experiencing Better Performance on AWS While Saving 60...SAP on AWS: How UCT is Experiencing Better Performance on AWS While Saving 60...
SAP on AWS: How UCT is Experiencing Better Performance on AWS While Saving 60...
 
Cloud Economics: The Financial Case for Cloud Migration
Cloud Economics: The Financial Case for Cloud MigrationCloud Economics: The Financial Case for Cloud Migration
Cloud Economics: The Financial Case for Cloud Migration
 

Similar to Operating and Managing Hybrid Cloud on AWS

Similar to Operating and Managing Hybrid Cloud on AWS (20)

re:Invent 2019 ARC217-R: Operating and managing hybrid cloud on AWS
re:Invent 2019 ARC217-R: Operating and managing hybrid cloud on AWSre:Invent 2019 ARC217-R: Operating and managing hybrid cloud on AWS
re:Invent 2019 ARC217-R: Operating and managing hybrid cloud on AWS
 
Getting Started with Windows Workloads on Amazon EC2 - Toronto
 Getting Started with Windows Workloads on Amazon EC2 - Toronto Getting Started with Windows Workloads on Amazon EC2 - Toronto
Getting Started with Windows Workloads on Amazon EC2 - Toronto
 
Hybrid IT Approach and Technologies with the AWS Cloud
Hybrid IT Approach and Technologies with the AWS CloudHybrid IT Approach and Technologies with the AWS Cloud
Hybrid IT Approach and Technologies with the AWS Cloud
 
Real World Hybrid Operations and Apps on AWS
Real World Hybrid Operations and Apps on AWS Real World Hybrid Operations and Apps on AWS
Real World Hybrid Operations and Apps on AWS
 
Architecting Hybrid Infrastructure
Architecting Hybrid InfrastructureArchitecting Hybrid Infrastructure
Architecting Hybrid Infrastructure
 
Getting Started with Windows Workloads on Amazon EC2
 Getting Started with Windows Workloads on Amazon EC2 Getting Started with Windows Workloads on Amazon EC2
Getting Started with Windows Workloads on Amazon EC2
 
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
Hybrid IT Approach and Technologies with the AWS Cloud | AWS Public Sector Su...
 
Creating your Hybrid Cloud with AWS -Technical 201
Creating your Hybrid Cloud with AWS -Technical 201Creating your Hybrid Cloud with AWS -Technical 201
Creating your Hybrid Cloud with AWS -Technical 201
 
Expanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud InfrastructureExpanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud Infrastructure
 
Expanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud InfrastructureExpanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud Infrastructure
 
re:Invent 2019 CMP320 - How Dropbox leverages hybrid cloud for scale and inno...
re:Invent 2019 CMP320 - How Dropbox leverages hybrid cloud for scale and inno...re:Invent 2019 CMP320 - How Dropbox leverages hybrid cloud for scale and inno...
re:Invent 2019 CMP320 - How Dropbox leverages hybrid cloud for scale and inno...
 
Herramientas Cloud Ninja AWS "From Zero to Hero"
Herramientas Cloud Ninja AWS "From Zero to Hero"Herramientas Cloud Ninja AWS "From Zero to Hero"
Herramientas Cloud Ninja AWS "From Zero to Hero"
 
Herramientas Cloud Ninja AWS "From Zero to Hero"
Herramientas Cloud Ninja AWS "From Zero to Hero"Herramientas Cloud Ninja AWS "From Zero to Hero"
Herramientas Cloud Ninja AWS "From Zero to Hero"
 
Getting Started with Windows Workloads on Amazon EC2
Getting Started with Windows Workloads on Amazon EC2Getting Started with Windows Workloads on Amazon EC2
Getting Started with Windows Workloads on Amazon EC2
 
Day 1 - Introduction to Cloud Computing with Amazon Web Services
Day 1 - Introduction to Cloud Computing with Amazon Web ServicesDay 1 - Introduction to Cloud Computing with Amazon Web Services
Day 1 - Introduction to Cloud Computing with Amazon Web Services
 
Introduction to AWS
Introduction to AWSIntroduction to AWS
Introduction to AWS
 
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
 
Expanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud InfrastructureExpanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud Infrastructure
 
re:Invent Recap: Security Week at the SF Loft
re:Invent Recap: Security Week at the SF Loftre:Invent Recap: Security Week at the SF Loft
re:Invent Recap: Security Week at the SF Loft
 
Intro & Security Update
Intro & Security UpdateIntro & Security Update
Intro & Security Update
 

More from Tom Laszewski

AWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive GuidanceAWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
Tom Laszewski
 

More from Tom Laszewski (20)

AWS Private Equity Transformation Advisory
AWS Private Equity Transformation AdvisoryAWS Private Equity Transformation Advisory
AWS Private Equity Transformation Advisory
 
Organizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technologyOrganizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technology
 
Creating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organizationCreating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organization
 
Technical Due Diligence with AWS
Technical Due Diligence with AWSTechnical Due Diligence with AWS
Technical Due Diligence with AWS
 
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive GuidanceAWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
 
AWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session OneAWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session One
 
Post transaction cloud value creation
Post transaction cloud value creation Post transaction cloud value creation
Post transaction cloud value creation
 
Private Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value CreationPrivate Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value Creation
 
Cloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and MappingCloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and Mapping
 
Private Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergersPrivate Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergers
 
AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A
 
Monolithic to Microservices Demystified
Monolithic to Microservices DemystifiedMonolithic to Microservices Demystified
Monolithic to Microservices Demystified
 
AWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and WorkshopsAWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and Workshops
 
DevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWSDevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWS
 
Hybrid Cloud on AWS
Hybrid Cloud on AWSHybrid Cloud on AWS
Hybrid Cloud on AWS
 
DXC and AWS : AWS Overview and Culture of Innovation
DXC and AWS : AWS Overview and Culture of InnovationDXC and AWS : AWS Overview and Culture of Innovation
DXC and AWS : AWS Overview and Culture of Innovation
 
Enterprise Cloud Adoption
Enterprise Cloud Adoption Enterprise Cloud Adoption
Enterprise Cloud Adoption
 
The New Normal Getting Started with AWS
The New Normal Getting Started with AWSThe New Normal Getting Started with AWS
The New Normal Getting Started with AWS
 
MassMutual Goes Cloud-First with Hybrid Cloud on AWS
MassMutual Goes Cloud-Firstwith Hybrid Cloud on AWSMassMutual Goes Cloud-Firstwith Hybrid Cloud on AWS
MassMutual Goes Cloud-First with Hybrid Cloud on AWS
 
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing ZonesBuilding a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
 

Recently uploaded

TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 

Recently uploaded (20)

Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Modernizing Legacy Systems Using Ballerina
Modernizing Legacy Systems Using BallerinaModernizing Legacy Systems Using Ballerina
Modernizing Legacy Systems Using Ballerina
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
 
Choreo: Empowering the Future of Enterprise Software Engineering
Choreo: Empowering the Future of Enterprise Software EngineeringChoreo: Empowering the Future of Enterprise Software Engineering
Choreo: Empowering the Future of Enterprise Software Engineering
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by Anitaraj
 
Quantum Leap in Next-Generation Computing
Quantum Leap in Next-Generation ComputingQuantum Leap in Next-Generation Computing
Quantum Leap in Next-Generation Computing
 
Navigating Identity and Access Management in the Modern Enterprise
Navigating Identity and Access Management in the Modern EnterpriseNavigating Identity and Access Management in the Modern Enterprise
Navigating Identity and Access Management in the Modern Enterprise
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
TrustArc Webinar - Unified Trust Center for Privacy, Security, Compliance, an...
 
Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)Introduction to Multilingual Retrieval Augmented Generation (RAG)
Introduction to Multilingual Retrieval Augmented Generation (RAG)
 
The Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and InsightThe Zero-ETL Approach: Enhancing Data Agility and Insight
The Zero-ETL Approach: Enhancing Data Agility and Insight
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdfRising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
Rising Above_ Dubai Floods and the Fortitude of Dubai International Airport.pdf
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 

Operating and Managing Hybrid Cloud on AWS

  • 1.
  • 2. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. Operating and Managing Hybrid Cloud on AWS A R C 2 1 7 - R Tom Laszewski Enterprise Technologist Amazon Web Services Anuj Dewangan Sr. Solutions Architect Amazon Web Services
  • 3. What we expect Hybrid Cloud Vision What we get Hybrid Cloud Vision Networking and host management Monitoring and logging Unified Security Consistent provisioning interfaces Building a hybrid cloud is hard! Journey to the hybrid cloud...
  • 4. Hybrid architecture goals Operational consistency Existing skillsets and tools Simple to control, manage, secure Enterprise-class app SLA Build once, deploy anywhere
  • 5. Core Services Infrastructure Customer infrastructure Compute Servers Storage Nodes Networking devices AWS Regions Compute Servers Storage Nodes Networking devices Operations and Management Framework Network Backbone Identity, security and Access Management Operations and monitoring Fleet Management Hybrid Cloud Services Network & SecurityStorage ServicesCompute Services Unified Management Databases Analytics AI/ML Developer Tools Systems Mgmt
  • 6. Fleet Management • Host management for on-premises compute servers, networking and storage devices • Inventory management, software installation and updates, metrics collection • Management interfaces for provisioning and monitoring new instances, storage and configurations AWS Systems Manager AWS OpsWorks AWS CodeDeploy AWS Outposts VMware Cloud on AWS
  • 7. Operations and Monitoring • Unified Metrics, monitoring, alerting, logging and auditing for the full stack Amazon CloudWatch AWS CloudTrail AWS CloudTrail AWS X-Ray Flow logs Traffic Mirroring
  • 8. Operations and Monitoring – Partner Solutions
  • 9. Identity, security and access management • Unified identity, security and access for all entities including services and users • Key management AWS Key Management Service AWS Identity and Access Management AWS Directory Service AWS Single Sign-On AWS CloudHSM
  • 10. Hybrid cloud services HybridCloud Infrastructure Network (Peering connections, VPN, Internet) AWS Regions Compute Servers Customer infrastructure Compute Servers Instance Compute Service Management Interfaces/APIs Fleet Management Interfaces/APIs EC2 APIs Core Services Identity, security and access management Operations and Monitoring User • Provide unified provisioning, monitoring and operating interfaces for hybrid cloud computing • Multi-tenancy, inventory, object configurations Compute Service: • Instance inventory, launch and runtime configurations, images AWS Outposts VMware Cloud on AWS
  • 11. Developer Tools AWS Step FunctionsAWS CodeDeployAWS OpsWorks
  • 12. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 13. MassMutual - Governance, Risk, and Compliance AWS Tools • CloudTrail • Config • Trusted Advisor • CloudWatch • Systems Manager • Lambda • KMS • Certificate Manager • CloudFormation Other tools • Splunk • Ansible • Cloud Custodian • Securonix • Carbon Black • QAS • Qualys • Symantec • Okta
  • 14. GreenPages - Cloud Xcelerator Platform Organization Shared Services Transit Hub Security DevOps App 101 Non-Prod VPN Client Access App 102 Non-Prod App 102 Prod Tenant Shared Services Transit Hub Security DevOps VPN Client Access App 201 Non-Prod App 201 Prod App 202 Non-Prod App 202 Prod Company TenancyAccount Family AWS Accounts and Virtual Private Clouds (VPCs) Azure Subscriptions and Virtual Private Networks (VNETs) GreenPages Configuration Center Amazon Web Services Microsoft Azure Operations Management & Monitoring Hybrid Cloud Orchestrator CloudBolt www.cloudbolt.io Consistent environment deployments to AWS, Azure, GCP, and vmware, with real-time validation and automated remediation. https://dev.gphco.io Digital Operations OpsRamp www.opsramp.com Security, Compliance & Financial Control CloudCheckr www.cloudcheckr.com Corporate Network Active Directory Data Sources Data Center Services App 101 Prod
  • 15. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 16. Same AWS infrastructure & services on-premises AWS-designed, Nitro infrastructure for the same security and performance Automatically managed and updated as part of AWS Regions Single point of service and support AWS Outposts • Same infrastructure • Same programming interface • Same monitoring & operations • Use existing skillset Available in two options: • Native AWS • VMware Cloud on AWS
  • 19. Frequently Asked Questions • Why do customers need a Hybrid Cloud? • Do you see hybrid cloud as an temporary solution while customers migrate to AWS? • Do you have customers deploying Hybrid Cloud with AWS? • What are AWS thoughts on multi-cloud? • Does the operations and management framework apply to multi-cloud?
  • 20. Related sessions CMP302-R AWS Outposts: Extend the AWS experience to on-premises environments CMP337-R AWS Outposts: Build for low latency and local data processing ENT306-R Build a hybrid cloud in two hours with VMware Cloud on AWS ENT212-S Transform your business with the VMware & AWS hybrid cloud ENT318-R Migration strategies leveraging VMware Cloud on AWS CMP320 How Dropbox leverages Hybrid Cloud for scale and innovation
  • 21. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved. Free foundational to advanced digital courses cover AWS services and teach architecting best practices Learn to architect with AWS Training and Certification Visit aws.amazon.com/training/path-architecting/ Classroom offerings, including Architecting on AWS, feature AWS expert instructors and hands-on labs Validate expertise with the AWS Certified Solutions Architect - Associate or AWS Certification Solutions Architect - Professional exams Resources created by the experts at AWS to propel your organization and career forward
  • 22. Thank you! © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 23. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.

Editor's Notes

  1. AWS CloudWatch – monitoring With tools like AWS CloudTrail, tracking every action taken on AWS accounts and services is straightforward, providing a way to find the event that caused a given change. But not all log entries are useful. CloudTrail Insights: Identify and Respond to Unusual API Activity AWS Xray – end to end app monitoring Flow logs - VPC Flow Logs is a feature that enables you to capture information about the IP traffic going to and from network interfaces in your VPC. ….think network taps Traffic mirroring - Traffic Mirroring is an Amazon VPC feature that you can use to copy network traffic from an elastic network interface of Amazon EC2 instances.
  2. AWS Cloudwatch for hybrid - DataDog, pagerduty…integration with cloudwatch…datadog as example mckesson AWS cloudtrail for hybrid cloud – sumologic, splunk AWS application monitoring – appdynamics, sciencelogic, new relic Overall hybrid cloud management – CA, BMC
  3. SSO – STS with SAML integration Okta, PingIndentity - SSO
  4. 1. Examples in slides 13 and 14
  5. AWS Outposts bring native AWS services, infrastructure, and operating models to virtually any data center, co-location space, or on-premises facility. Use the same APIs, the same tools, the same hardware, and the same functionality across on-premises and the cloud to deliver a truly consistent hybrid experience. Unlike other on-premises hybrid cloud solutions that use different APIs, release cadence, manual updates, and third-party hardware and support, Outposts are fully managed and supported by AWS. Customers have access to the latest hardware and software and do not have to worry about software version control, updating or patching software or calling multiple vendors for hardware and software support, just like in the AWS cloud. Variant of AWS Outposts that runs VMware Cloud on Outposts to provide customers a common infrastructure platform to run their VMware stack across on-premises and cloud environments.
  6. Speaker Notes: You came to re:Invent to learn. There’s no need to stop when you go home. Keep re:Inventing with resources from AWS Training and Certification for current and aspiring Solution Architects. Resources for you and your teams We offer digital and classroom courses to help you design applications and systems on AWS using the Well-Architected Framework. Learn the fundamentals of building IT infrastructure on AWS and creating secure, performant, and scalable solutions. And with our Associate or Professional level certifications for Solutions Architecture, you can validate your skills and propel your career. Global Knowledge identifies the associate level certification as the #1 certification in the industry. For more information, visit aws.amazon.com/training and look for the architect learning path.
  7. AWS Outposts will be available in two options: The AWS native variant of Outposts allows you to use the same APIs and control plane you use in the AWS cloud to build and run your applications, but do it on-premises. You will be able to run Amazon EC2 instances and EBS volumes on Outposts. And, at launch or soon thereafter, services such as RDS, ECS, EKS, SageMaker, and EMR will also be available locally on the AWS native variant of Outposts. Other services, such as S3, DynamoDB, and Lambda will be available as Private Link endpoints in the customer’s own VPC. The VMware variant allows you to run VMware Cloud on AWS locally on Outposts to use the same VMware control plane and APIs you use to run your on-premises infrastructure. This variant delivers the entire VMware Software-Defined Datacenter - compute, storage, and networking infrastructure - to run on-premises using AWS Outposts and allows you to take advantage of the ease of management and integration with AWS services.
  8. Outposts are part of an AWS Region, and customers can access *all* of the AWS services available in the region the same way they do in an Availability Zone today. For example, customers use public service end points for S3 and DynamoDB, and with PrivateLink they can also connect their VPC to these services via private endpoints. When customers launch instances in an AZ today, they commonly use a subnet tied to an AZ. The same way, they can launch EC2 instances in the subnet tied to their Outpost. Apart from EC2 and EBS, customers can also launch AWS resources from other services in their Outposts. For example, they can launch RDS instances, EMR nodes, EKS worker nodes locally on their Outpost. While Lambda is a regional service, customers can run Greengrass to deploy a local Lambda runtime environment on their Outposts. We want to learn more about which services customers want to run locally.
  9. AWS Outposts bring native AWS services, infrastructure, and operating models to virtually any data center, co-location space, or on-premises facility. Use the same APIs, the same tools, the same hardware, and the same functionality across on-premises and the cloud to deliver a truly consistent hybrid experience. Unlike other on-premises hybrid cloud solutions that use different APIs, release cadence, manual updates, and third-party hardware and support, Outposts are fully managed and supported by AWS. Customers have access to the latest hardware and software and do not have to worry about software version control, updating or patching software or calling multiple vendors for hardware and software support, just like in the AWS cloud. Variant of AWS Outposts that runs VMware Cloud on Outposts to provide customers a common infrastructure platform to run their VMware stack across on-premises and cloud environments.
  10. AWS is VMware’s primary and preferred cloud partner, and our partnership with VMware has yielded several industry-first hybrid solutions. VMware Cloud on AWS is a jointly engineered service by AWS and VMware, and is the only VMware hybrid cloud solution that is directly managed and supported by VMware. VMware Cloud on AWS is available globally and we have jointly engineered 200+ features for VMware Cloud on AWS since its launch. Another jointly engineered hybrid solution is Amazon RDS on VMware. RDS on VMware lets you deploy managed databases in on-premises VMware environments using the RDS technology enjoyed by hundreds of thousands of AWS cloud customers.