aws summit barcelona - backup & disaster recovery

79
BACK UP & DISASTER RECOVERY Vadim Zendejas Solutions Architect

Upload: amazon-web-services

Post on 15-Jan-2015

706 views

Category:

Technology


3 download

DESCRIPTION

 

TRANSCRIPT

Page 1: AWS Summit Barcelona - Backup & Disaster Recovery

BACK UP & DISASTER RECOVERY

Vadim Zendejas Solutions Architect

Page 2: AWS Summit Barcelona - Backup & Disaster Recovery

AGENDA

Why AWS for disaster recovery

AWS services that can be employed

Common DR architectures

Customer example

Where to go next

Page 3: AWS Summit Barcelona - Backup & Disaster Recovery

HOT TOPIC FOR

ENTERPRISES

Page 4: AWS Summit Barcelona - Backup & Disaster Recovery

HOT TOPIC FOR

ENTERPRISES

Floods in Europe

Hurricane Sandy in USA

Typhoons in South East Asia

Earthquake in New Zealand

Tsunami and flooding in Japan

Page 5: AWS Summit Barcelona - Backup & Disaster Recovery

« Everything fails all the time »

Werner Vogels

CTO of Amazon

Page 6: AWS Summit Barcelona - Backup & Disaster Recovery

WHY AWS FOR DISASTER

RECOVERY?

Page 7: AWS Summit Barcelona - Backup & Disaster Recovery

REDUCE COSTS

Reduce DR budgets considerably

Page 8: AWS Summit Barcelona - Backup & Disaster Recovery

REDUCE ON-PREMISE

Reduce on-premise physical equipment

Page 9: AWS Summit Barcelona - Backup & Disaster Recovery

CONSOLIDATE SITES

Eliminate the need to run a secondary site

Page 10: AWS Summit Barcelona - Backup & Disaster Recovery

REMOVE AGING

TECHNOLOGIES

Eliminate tape for backup and archive

Page 11: AWS Summit Barcelona - Backup & Disaster Recovery

FAST, SECURE AND COST

EFFECTIVE BACKUP AND DR FOR

ORACLE APPS

Page 12: AWS Summit Barcelona - Backup & Disaster Recovery

DR & BUSINESS

CONTINUITY

Page 13: AWS Summit Barcelona - Backup & Disaster Recovery

DR IS PART OF A WIDER SET OF

POLICIES AND CONTROLS

Keep your applications

running 24x7

HIGH

AVAILABILITY

Page 14: AWS Summit Barcelona - Backup & Disaster Recovery

DR IS PART OF A WIDER SET OF

POLICIES AND CONTROLS

Keep your applications

running 24x7

HIGH

AVAILABILITY BACKUP

Make sure you data is

safe

Page 15: AWS Summit Barcelona - Backup & Disaster Recovery

DR IS PART OF A WIDER SET OF

POLICIES AND CONTROLS

Keep your applications

running 24x7

HIGH

AVAILABILITY BACKUP

DISASTER

RECOVERY

Make sure you data is

safe

Get your applications

and data back after a

major disaster

Page 16: AWS Summit Barcelona - Backup & Disaster Recovery

IT’S NOT AN ALL OR NOTHING THING

DR IS PART OF A WIDER SET OF

POLICIES AND CONTROLS

Keep your applications

running 24x7

HIGH

AVAILABILITY BACKUP

DISASTER

RECOVERY

Make sure you data is

safe

Get your applications

and data back after a

major disaster

Page 17: AWS Summit Barcelona - Backup & Disaster Recovery

EACH SET OF IT ASSETS WILL

HAVE DIFFERENT REQUIREMENTS

RECOVERY TIME

OBJECTIVE (RTO)

RECOVERY POINT

OBJECTIVE (RPO)

How fresh the recovery

must be for the asset?

e.g. zero data loss, 15mins

out of date?

How quickly you need this

asset to be recovered?

e.g. 1min? 15min? 1hr?

4hrs? 1day?

Page 18: AWS Summit Barcelona - Backup & Disaster Recovery

LEVEL OF AVAILABILITY

REQUIRED

REBUILD

WHEN

REQUIRED

FROM OFFSITE

BACKUP

RUN HOT-HOT

CONFIGURATION

WITH AUTO-

FAILOVER

Page 19: AWS Summit Barcelona - Backup & Disaster Recovery

UTILITY, ON-DEMAND DATACENTER

PRIMARY SITE

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Primary Storage

Backup

Archive

SECONDARY SITE

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Primary Storage

Backup

Archive

Page 20: AWS Summit Barcelona - Backup & Disaster Recovery

UTILITY, ON-DEMAND DATACENTER

PRIMARY SITE

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Primary Storage

Backup

Archive

AWS

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Snapshot Storage

Backup

Archive

Page 21: AWS Summit Barcelona - Backup & Disaster Recovery

UTILITY, ON-DEMAND DATACENTER

PRIMARY SITE

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Primary Storage

Backup

Archive

AWS

Routers

Firewalls

Network

Application Licenses

Operating Systems

Hypervisor

Servers

SAN

Snapshot Storage

Backup

Archive

$

Page 22: AWS Summit Barcelona - Backup & Disaster Recovery

EU-WEST (Ireland)

ASIA PAC

(Singapore)

US-WEST (N. California)

SOUTH AMERICA (Sao Paulo)

US-EAST (Virginia)

AWS IS GLOBAL

ASIA PAC (Tokyo)

ASIA PAC

(Sydney)

GOV CLOUD

US-WEST (Oregon)

Page 23: AWS Summit Barcelona - Backup & Disaster Recovery

BACKUP AND DISASTER

RECOVERY SYSTEM FOR ITS

REMOTE SALES OFFICES

Page 24: AWS Summit Barcelona - Backup & Disaster Recovery

BUILT TO ENTERPRISE SECURITY STANDARDS

http://aws.amazon.com/security

CERTIFICATIONS

ISO 27001

SOC 1 Type 2 (formerly

SAS70), SOC 2, SOC 3

PCI DSS Level 1

DIACAP, FISMA, FIPS 140-2

HIPAA & ITAR Compliant

Architecture

PHYSICAL SECURITY

Datacenters in nondescript

facilities

Physical access strictly

controlled

Must pass two-factor

authentication at least twice for

floor access

Physical access logged and

audited

HW, SW, NETWORK

Systematic change

management

Phased updates deployment

Safe storage decommission

Automated monitoring and

self-audit

Advanced network protection

Page 25: AWS Summit Barcelona - Backup & Disaster Recovery

AWS SERVICES THAT

CAN BE EMPLOYED

Page 26: AWS Summit Barcelona - Backup & Disaster Recovery

Amazon Simple

Storage Service

(S3)

AWS Import/Export

AWS Storage

Gateway Service

AWS Direct

Connect

Amazon Virtual

Private Cloud

(VPC)

Amazon

Route 53

Amazon Elastic

Compute Cloud

(EC2)

Amazon Relational

Database Service (RDS)

Amazon

Elastic Block

Storage (EBS)

STORAGE &

TRANSFER SERVICES

NETWORKING

SERVICES

FOUNDATION

SERVICES

Page 27: AWS Summit Barcelona - Backup & Disaster Recovery

AWS STORAGE IS IDEAL FOR DR

SIMPLE STORAGE

SERVICE

ELASTIC BLOCK

STORAGE

High performance block storage device

1GB to 1TB in size

Mount as drives to instances with

snapshot/cloning functionalities

Highly scalable object storage

1 byte to 5TB in size

99.999999999% durability

Page 28: AWS Summit Barcelona - Backup & Disaster Recovery

AWS STORAGE IS IDEAL FOR DR

SIMPLE STORAGE

SERVICE

ELASTIC BLOCK

STORAGE

High performance block storage device

1GB to 1TB in size

Mount as drives to instances with

snapshot/cloning functionalities

Highly scalable object storage

1 byte to 5TB in size

99.999999999% durability

From $0.095 per GB/Month

From $0.10 per GB/Month

Page 29: AWS Summit Barcelona - Backup & Disaster Recovery

LONG TERM ARCHIVE

AMAZON GLACIER

Long term cold storage

From $0.01 per GB/Month

99.999999999% durability

Page 30: AWS Summit Barcelona - Backup & Disaster Recovery

NETWORKING OPTIONS

DIRECT CONNECT Dedicated connection between your

IT infrastructure and the AWS

datacenters

Extend your network infrastructure

and VLANs into AWS

VPN CONNECTION A Hardware VPN connection

connects amazon environment to

your datacenter

Internet Protocol security (IPsec)

Commonly used hardware supported

VIRTUAL PRIVATE CLOUD Private, isolated section of the AWS Cloud

Launch resources in a virtual network that

you define

Complete control over your virtual

networking environment

Internet

Internet

Page 31: AWS Summit Barcelona - Backup & Disaster Recovery

DISASTER RECOVERY SOLUTION

TO BACKUP AND STORE

CRITICAL MEDICAL IMAGE DATA

Page 32: AWS Summit Barcelona - Backup & Disaster Recovery

COMMON DR

ARCHITECTURES

Page 33: AWS Summit Barcelona - Backup & Disaster Recovery

4 MAIN PATTERNS

Backup &

Restore Pilot light

Hot standby in

AWS

Multi-site solution

in AWS & on-

premise

Page 34: AWS Summit Barcelona - Backup & Disaster Recovery

BACKUP & RESTORE

PATTERN

Page 35: AWS Summit Barcelona - Backup & Disaster Recovery

ADVANTAGES TO STARTING A

JOURNEY WITH THIS PATTERN

SIMPLE TO GET

STARTED

Easy starting point for exploring the

AWS cloud

Low technical barrier to entry

Focus on incorporating cloud into

your DR strategy, not on complex

technical issues related to hot-hot

systems

COST EFFECTIVE

Very high levels of data durability

at low price

Cost of storing snapshots in S3

Archiving possibilities beyond

tape using Glacier

Page 36: AWS Summit Barcelona - Backup & Disaster Recovery

THE PREPARATION PROCESS

TAKE BACKUPS

OF CURRENT

SYSTEMS

Page 37: AWS Summit Barcelona - Backup & Disaster Recovery

THE PREPARATION PROCESS

TAKE BACKUPS

OF CURRENT

SYSTEMS

STORE

BACKUPS IN

S3

Page 38: AWS Summit Barcelona - Backup & Disaster Recovery

THE PREPARATION PROCESS

TAKE BACKUPS

OF CURRENT

SYSTEMS

STORE

BACKUPS IN

S3

MOVE TO

LONG TERM

ARCHIVE IN

GLACIER

Page 39: AWS Summit Barcelona - Backup & Disaster Recovery

THE PROCESS

TAKE BACKUPS

OF CURRENT

SYSTEMS

STORE

BACKUPS IN

S3

MOVE TO

LONG TERM

ARCHIVE IN

GLACIER

DETAIL HOW YOU WILL BE RESTORING FROM BACKUP

OR RECOVER FROM ARCHIVE

Page 40: AWS Summit Barcelona - Backup & Disaster Recovery

PUSH BACKUPS TO AWS

Page 41: AWS Summit Barcelona - Backup & Disaster Recovery

STORE AMIS FOR SERVERS

Page 42: AWS Summit Barcelona - Backup & Disaster Recovery

RECOVER SERVERS DURING DR

Page 43: AWS Summit Barcelona - Backup & Disaster Recovery

AWS STORAGE GATEWAY AND BACKUP MANAGEMENT

Page 44: AWS Summit Barcelona - Backup & Disaster Recovery

RDS AND ORACLE RMAN

Page 45: AWS Summit Barcelona - Backup & Disaster Recovery

RESTORE TIMES REDUCED FROM 15 TO 2½ HOURS

Page 46: AWS Summit Barcelona - Backup & Disaster Recovery

PILOT LIGHT

ARCHITECTURE

Page 47: AWS Summit Barcelona - Backup & Disaster Recovery

MOVING ALONG THE DR

SPECTRUM

Keep pilot light on by replicating

core databases

Build AWS resources around dataset

and leave in stopped state

BUILD RESOURCES AROUND

REPLICATED DATASET

Page 48: AWS Summit Barcelona - Backup & Disaster Recovery

MOVING ALONG THE DR

SPECTRUM

Keep pilot light on by replicating

core databases

Build AWS resources around dataset

and leave in stopped state

BUILD RESOURCES AROUND

REPLICATED DATASET

SCALE RESOURCES IN AWS

IN RESPONSE TO A DR EVENT

Start up pool of resources in AWS

when events dictate

Match current production capacity

through auto-scaling policies

Page 49: AWS Summit Barcelona - Backup & Disaster Recovery

SWITCH-OVER TO SYSTEM IN AWS

MOVING ALONG THE DR

SPECTRUM

Keep pilot light on by replicating

core databases

Build AWS resources around dataset

and leave in stopped state

BUILD RESOURCES AROUND

REPLICATED DATASET

SCALE RESOURCES IN AWS

IN RESPONSE TO A DR EVENT

Start up pool of resources in AWS

when events dictate

Match current production capacity

through auto-scaling policies

Page 50: AWS Summit Barcelona - Backup & Disaster Recovery

Stopped

instances

PILOT LIGHT

Database

replication

Page 51: AWS Summit Barcelona - Backup & Disaster Recovery

Running

instances

PILOT LIGHT

Page 52: AWS Summit Barcelona - Backup & Disaster Recovery

DR AND TESTING ENVIRONMENT

REDUCING IT OVERHEAD AND

INCREASING AVAILABILITY

Page 53: AWS Summit Barcelona - Backup & Disaster Recovery

HOT STANDBY

ARCHITECTURE

Page 54: AWS Summit Barcelona - Backup & Disaster Recovery

WHY USE HOT STAND BY?

When the Recovery Time Objective

has a low time for recovery policy

LOW RESTORING TIME

EXPECTED

CONSISTENT DATA SET

And when the Recovery Point

Objective has a higher level of

consistency expected

Page 55: AWS Summit Barcelona - Backup & Disaster Recovery

HOT STANDBY

Page 56: AWS Summit Barcelona - Backup & Disaster Recovery

Redirect

traffic

HOT STANDBY

Page 57: AWS Summit Barcelona - Backup & Disaster Recovery

MULTI-SITE SOLUTION

ON AWS AND ON

PREMISE ARCHITECTURE

Page 58: AWS Summit Barcelona - Backup & Disaster Recovery

OBJECTIVES OF A MULT-SITE

SOLUTION

When almost no downtime is

expected

DOWNTIME IS CRITICAL SCALABILITY IS REQUIRED

When primary site can not handle

heavy loads

Page 59: AWS Summit Barcelona - Backup & Disaster Recovery

MULTI-SITE SOLUTION

Page 60: AWS Summit Barcelona - Backup & Disaster Recovery

MULTI-SITE SOLUTION

Health

Checkups

Page 61: AWS Summit Barcelona - Backup & Disaster Recovery

CUSTOMER EXAMPLE

Page 62: AWS Summit Barcelona - Backup & Disaster Recovery

EU region DR site for range of business applications

All running in a Virtual Private Cloud (VPC)

DR provision for applications dependent on Oracle and SQL Server

databases

Includes DR for Active Directory and Windows file shares

Page 63: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Page 64: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Dual route

connectivity

Page 65: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Active Directory

Replication

Page 66: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Bastion

Host

Page 67: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Database

replication

Page 68: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Application images

Page 69: AWS Summit Barcelona - Backup & Disaster Recovery

VPC Subnet B

Region

Availability Zone

Client-to-site VPN Site-to-site VPN

S3 Bucketswith Objects

Bastion Host

Internet

On-premiseData Centre A

RemoteDesktops

AWS Direct Connect

On-premiseData Centre B

VPC Subnet D VPC Subnet F

Databases

VPC Subnet E

Applications

VPC Subnet A

SmartSentinel

VPC Subnet G

FileServers

VPC Subnet C

ActiveDirectory

Proxy Server

Durable data

backups

Page 70: AWS Summit Barcelona - Backup & Disaster Recovery

WHERE TO GO NEXT

Page 71: AWS Summit Barcelona - Backup & Disaster Recovery

RICH PARTNER ECOSYSTEM

TECHNOLOGY AND SERVICES ORGANIZATIONS

Page 72: AWS Summit Barcelona - Backup & Disaster Recovery

http://aws.amazon.com/backup-storage

http://aws.typepad.com

http://aws.amazon.com/whitepapers

Page 73: AWS Summit Barcelona - Backup & Disaster Recovery

INFRASTRUCTURE IS NO LONGER A BARRIER

Page 74: AWS Summit Barcelona - Backup & Disaster Recovery

NO UP-FRONT EXPENSE

$ Physical Space

$ Power

$ Network

$ Servers

$ Certification

On-Premise Amazon Web

Services

$0 To get started

Page 75: AWS Summit Barcelona - Backup & Disaster Recovery

THE CLOUD

MAKES BACKUP

AND RECOVERY

EASY

Page 76: AWS Summit Barcelona - Backup & Disaster Recovery

YOU CAN GET

STARTED FOR

CENTS PER

MONTH

Page 77: AWS Summit Barcelona - Backup & Disaster Recovery

THE CLOUD

WILL SCALE TO

ACCOMMODATE

ALL OF YOUR

DATA

Page 78: AWS Summit Barcelona - Backup & Disaster Recovery

FOCUS ON

YOUR BUSINESS

Page 79: AWS Summit Barcelona - Backup & Disaster Recovery

aws.amazon.com get started on the free tier