Presentation is loading. Please wait.

Presentation is loading. Please wait.

Improving Security in the Cloud by Using Virtual Silos Dale Wickizer, CTO, U. S. Public Sector NASA IT Summit 2010 National Harbor, MD August 16-18, 2010.

Similar presentations


Presentation on theme: "Improving Security in the Cloud by Using Virtual Silos Dale Wickizer, CTO, U. S. Public Sector NASA IT Summit 2010 National Harbor, MD August 16-18, 2010."— Presentation transcript:

1 Improving Security in the Cloud by Using Virtual Silos Dale Wickizer, CTO, U. S. Public Sector NASA IT Summit 2010 National Harbor, MD August 16-18, 2010

2 © 2010 NetApp. All rights reserved. Maintaining a Proper Perspective 2

3 © 2010 NetApp. All rights reserved. 3 Maintaining a Proper Perspective Server Virtualization Network Virtualization Storage Virtualization

4 © 2010 NetApp. All rights reserved. Federal IT Being Asked to Transform  FY2012 Budget Guidance –Project Management  Identify and re-scope high-risk projects –IT Infrastructure  Execute FY2010 data center consolidation plans  Adopt cloud computing if best value at acceptable risk –Cyber Security  Fund tools for continuous monitoring of agency IT systems 4 Vivek Kundra, U.S. CIO, http://cio.gov/pages.cfm/page/closing-the-it-gap

5 © 2010 NetApp. All rights reserved. 5 Cloud Computing? What Is It? “Cloud”Generally, “IT as a service” Cloud ComputingA business model for delivering IT as a Service Cloud ServicesThe deliverable: “what you get” IaaSPaaSSaaSStaaS ITaaS “It’s cloud illusions I recall. I really don’t know clouds at all.” -- Joni Mitchell SLA’s

6 © 2010 NetApp. All rights reserved. 6 Cloud Delivery Vehicles IT as a Service (ITaaS) PUBLIC PRIVATE Public Clouds Non-IT Examples: Facebook, iTunes Public Clouds Traditional IT Examples: Yahoo! email (SaaS) Google Apps (SaaS) Private External Customers only Private Internal Employees only Examples: Terremark (IaaS) Examples: USPTO Teleworks NASA Nebula  General access  Internet delivery  Low security  Low SLAs  Cheap or free  Limited access  Internet/Intranet delivery  Security & firewalls  Enterprise SLAs  High value Low SLA High SLA HYBRID Focus of this Talk

7 © 2010 NetApp. All rights reserved. 777 Internal Cloud New IT Organization Is The Service Broker Internal Users Citizens Other Agencies External Cloud  Lower TCO –Acquisition cost –Operating cost –Simplify staff skill sets  Faster Time to Market –Provision faster –New services faster  Lower Business Risk –Consistent Backup/DR IT Services and SLAs IT Requirements/ Policies Benefits  Efficient  Predictable (cost wise)  Elastic and Scalable  Always “ON”  Dynamic Business/Mission Requirements Provider Services / SLAs The New IT Organization Shared Virtual Infrastructure

8 © 2010 NetApp. All rights reserved. Looking At Clouds From Both Sides Service Consumers Expect  Data security and privacy  Self-service  Always on  Instant delivery  Capacity elasticity  Pay as you go Federal IT Must Provide  Secure multi-tenancy  Integrated data protection  Service automation and management  Data mobility  Storage efficiency Applications Servers Network Storage Management Service Consumers 8

9 © 2010 NetApp. All rights reserved. Path to Cloud (ITaaS) 9 Cost Reduction & Flexibility Time IT as a Service Virtualize & Consolidate Centralize IT, Policy & Management Standardize Offering Automate Self-service Self-Managing Chargeback Assess Tasks Ahead; Determine ROI Where Does Your Journey Begin? Virtualization Is Necessary, But Not Sufficient

10 © 2010 NetApp. All rights reserved. Outsourced Cloud Services Unified Combined High Minutes Lowest Strong Internal Multi-Tenant Shared Virtual Infrastructure Unified Combined High Minutes Low Strong Zones of Virtualization on Shared Storage Separate High Low Hours Medium Better 10 From Physical to Virtual Silos P Storage P Servers Apps Network App & Org Silos Virtualized + Multi-tenant & Automated VMs V Storage IT Gov IT Budgets Server Util Storage Util Provisioning Costs SLAs Security Separate Low Days/Wks Very High Poor Inconsistent + Mobile

11 © 2010 NetApp. All rights reserved. 11 Security #1 Concern for Cloud

12 © 2010 NetApp. All rights reserved. Secure Multi-Tenancy 12 Reference architecture and deployment guides at http://ImagineVirtuallyAnything.com

13 © 2010 NetApp. All rights reserved. Transforming Federal Data Centers © SAP 2009 / SAP Manage d Service s / Page 13 Traditional Data CenterTransformed Data Center User Departmental Administrator manual ticket manual Ordering System manual Level 1 Support manual IP Adr. Sheet SISM CMDB Datacenter Infrastructure ticket VMM1 User self-service automated CMDB & Billing Ordering System “Service Broker” Orchestration Layer “Service Delivery” Datacenter Infrastructure Systems call API E2E automated Automate service-levels Analyze & Ensure Cost Effective Service System Operations At Scale From 1100*To ?? (A Lot Fewer) *The Ones We Know About

14 © 2010 NetApp. All rights reserved. 14 The Layers of Virtualization API Policy-based Management Network Virtualization Server Virtualization API Various 3 rd Part Storage Arrays NAS – SAN - FCoE Storage Virtualization

15 © 2010 NetApp. All rights reserved. Data Center Automation Service Catalog Services Storage Architect Orchestration Tool Self Service Portal Self Service Portal Subscriber Application Server Network Provisioning Data Protection Monitoring Provisioning Tool Protection Tool Monitoring Tool Product ViewLogical View 15 Dataset Service Catalog High-level Abstraction Web Service APIs Offers Storage Services Workflow Automation Assurance SLA Tool

16 © 2010 NetApp. All rights reserved. 16 Box-level Management Service Level Management Storage Automation & Analytics: “Language”

17 © 2010 NetApp. All rights reserved. Service Catalog Model I need three 800GB Oracle instances at the Gold service level Orchestration Framework Service Catalog Gold Silver Bronze  Protection policies  Provisioning policies  Resource pool  Chargeback metrics Change backup policy for Gold service level to every 4 hours Storage/Backup Admin Application Admin  Reduce opex and capex  Increase agility  Eliminate errors StorageNetworkServer Gold 17

18 © 2010 NetApp. All rights reserved. Conclusion  Smart IT organizations and service providers will virtualize application stacks and run them on shared infrastructure to drive out cost and provide their customers the control they desire  These virtual silos will enable multiple tenants to run securely in a shared, service-based infrastructure  Unified architectures at each level in the stack minimize skill sets and processes (lowest cost) and improve architectural flexibility  Integrated security and data protection are foundational, to minimize risk 18

19 © 2010 NetApp. All rights reserved. 19 Dale Wickizer Chief Technology Officer, U. S. Public Sector, NetApp, Inc. wickizer@netapp.com No IT personnel were harmed in the making of this presentation. Thank you!


Download ppt "Improving Security in the Cloud by Using Virtual Silos Dale Wickizer, CTO, U. S. Public Sector NASA IT Summit 2010 National Harbor, MD August 16-18, 2010."

Similar presentations


Ads by Google