(bac302) using aws to create a low cost, secure backup environment for your on-premises data | aws...

43
November 12, 2014 | Las Vegas, NV Curd Zechmeister, Amazon Web Services Jason Blevins, Amtrak Director Systems Engineering Antoine Boury, JWT Head of Information Technology

Upload: amazon-web-services

Post on 02-Jul-2015

745 views

Category:

Technology


0 download

DESCRIPTION

In this session, you learn how you can leverage AWS services together with third-party storage appliances and gateways to automate your backup and recovery processes so that they are not only less complex and lightweight, but also easy to manage and maintain. We demonstrate how to manage data flow from on-premises systems to the cloud and how to leverage storage gateways. You also learn best practices for quick implementation, reducing TCO, and automating lifecycle management.

TRANSCRIPT

Page 1: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

November 12, 2014 | Las Vegas, NV

Curd Zechmeister, Amazon Web Services

Jason Blevins, Amtrak – Director Systems Engineering

Antoine Boury, JWT – Head of Information Technology

Page 2: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 3: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Metered usage:

Pay as you go

No capital investment

No commitment

No risky capacity planning

Avoid Opex and risks of

physical media

handling

Control your

geographic locality for

performance and

compliance

Page 4: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Built-in redundancy

Designed for

99.999999999%

durability

Store backups in Amazon S3

Internet-scale storage

Grow without limits

Benefit from AWS’s

massive security

investments

Low price

per GB per month

No commitment

No up-front cost

Page 5: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Long term backup retention in

Amazon Glacier

Stop managing

physical media

Amazon Glacier has

lower cost than

Amazon S3 with the

same durability

Amazon Glacier is

optimized for infrequent

retrieval

Page 6: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

AWS Direct Connect

Dedicated connectivity

to AWS Edge Locations

AWS Import/Export

Data transfer using

portable disk drives

Transfer data in a

secure SSL tunnel over

the public Internet

Page 7: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 8: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

• On-premises, virtual iSCSI

storage appliance

• $125 / month

• Server Side Encryption (SSE)

• 5 TB of throughput per day

• Recover to Amazon EBS

• 3 Configurations

• Gateway-Cached Volumes

• Gateway-Stored Volumes

• Gateway Virtual Tape Library

Page 9: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

VPC – Datacenter #4

Single GUI for

management

Page 10: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Restore back to on-premises

Amazon

GlacierAmazon S3

3-5 hour

retrieval

(staging)

Immediate

restore

Page 11: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Ctera

Page 12: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

• Local caching appliance

• Presents NAS protocols– CIFS / NFS

• Up to 30x deduplication

• Compression

• Encryption

• Key management

• WAN acceleration

• S3 and Glacier support

• AMI available

Page 13: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 14: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 15: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 16: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

The catalyst for change

Page 17: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

The catalyst for change

Page 18: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

So how often is this stuff used?

Page 19: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 20: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Change has come…

Page 21: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Requirements…

Page 22: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 23: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 24: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 25: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

• founded 1864

• WPP company (NYSE: WPP)

• world's best-known marketing

communications brand

Page 26: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 27: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT | Middle East & Africa

15 Offices

~1,000 Employees

Page 28: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Challenges

Page 29: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT | External Factors

• Political Instability

• Poor Infrastructure

• Distance

Page 30: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT | Internal Factors

• High Turnover• Industry: As Much As 30% Y/Y

• Know-How & Data Must Persist

• Regionalization• Resources,

• Collaboration

• Knowledge Sharing

• Data Growth: 35% Y/Y

Page 31: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Branch

Office IT:

Previous

Architecture

Page 32: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Before AWS

K:\

laptops

desktops

3rd Party

Bank

Locally-Shared Knowledge Protected

for compliance and risk management

3rd Party

Backup Tools

server

Page 33: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT Branch Office Options

Branch File Sharing

Disaster Recovery

Backups

Traditional Remote Office

• Difficult To Manage

• Expensive

• Unpredictable Costs

• Slow Performance

Cloud-Enabled Offices

• Self-Administered

• Centrally Governed

• Affordable

• Predictable RTO

• Centralized Data

• Globally Accessible

• Predictable RPO

• Low Cost Gateways

• Fast Performance

• Remotely Manageable

Page 34: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT’s Cloud

Transformation

Page 35: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

• Data sync’d to global

namespace in AWS

• All remote office and user

data aggregated to one

platform for total data control.

• All services are remotely

managed for simple branch

IT

JWT’s Cloud Storage Services Platform

EU (Ireland)

Page 36: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Region 1 Cloud Gateway

NAS & Backup Appliance

Region 1 Cloud Gateway

NAS & Backup Appliance

Region 1 Cloud Gateway

NAS & Backup Appliance

JWT Secure Cloud Storage-As-A-Service

VPC

S3 Buckets

Region 1

S3 Buckets

Region 2

S3 Buckets

Region ...

CTERA Portal

Database

CTERA Cloud

Storage Services

MiddlewareOptimized Instance

w/ Cloudwatch

Management

EU: Ireland

Region

Branch

Offices

Page 37: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Installs | MEA

* Pending

JWT MEA

AWS Cloud

Beirut

Dubai

Qatar*

Kuwait

Cairo

Jordan*

Jeddah

Riyadh

Cape Town

Johannesburg

Ireland

Page 38: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

Benefits | AWS + CTERA

JWT Knowledge Now

Survives Employee Turnover

Low Cost and Simplicity

Ensure Global Conformance

Cloud Economics and

CTERA Deduplication

Ensure Predictable Costs

Maximum Security with

Source-Based Storage

Service Encryption

Source-Based

Deduplication Makes

Cloud Services Fast...

Page 39: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 40: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

JWT’s Cloud-Enabled Security

Virtual Private

Data Access Is 100%

in JWT’s AWS VPC

Fully-Encrypted

CTERA AES-256 Bit

In-Flight & At-Rest

Containerized Access

Each region has it’s

bucket, everything is

AD-authenticated

Private Keys

JWT owns all its

encryption keys

Page 41: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

If access to backup set is possible

From current location

Requires on site IT

Not Available

Not Supported

Only if using same set

More complex and unpredictable

High

Slow

Standalone

Innovative

Availability

Accessibility

Management

Deduplication

Snapshots

Incremental

Cost

Maintenance

Data Restores

Centralized Management

Traditional

24/7

From any location

Can be managed remotely

Available

Supported

Always

Simpler and Predictable

Low

Extremely Fast

Fully Centralized

Page 42: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014
Page 43: (BAC302) Using AWS to Create a Low Cost, Secure Backup Environment for Your On-premises Data | AWS re:Invent 2014

http://bit.ly/awsevals