4 Best Practices for Protecting Enterprise Data on AWS with SoftNAS Cloud NAS

Post on 06-Aug-2015

588 views 2 download

Tags:

Transcript of 4 Best Practices for Protecting Enterprise Data on AWS with SoftNAS Cloud NAS

4 Best Practices for Protecting Enterprise Data on AWS with SoftNAS Cloud NAS

Greg Pellegrino, VP Products, SoftNAS

Brandon Chavis, Solutions Architect, Amazon Web Services

2

Introducing

Greg PellegrinoVP Products

SoftNAS

Brandon ChavisSolutions Architect

Amazon Web Services

3

Housekeeping

Post your questions here

This session IS being recordedLinks to the recording and presentations will be provided later

To listen using your telephone select the ‘Telephone’ option.

For local numbers click the ‘additional numbers’ link.

You will need to use the Access Code and Audio PIN.

The audio for this webinar is available over VoIP. Just select

the use ‘Mic & Speakers’ option to listen to the webinar

through your computers speakers.

If you CAN NOT hear us, please check your

volume settings.

Webinar Audio1

2

3

4

FREE $100 AWS Credit!

First 100 attendees to register

5

Agenda

© 2015 SoftNAS LLC

• SoftNAS Overview• Amazon Web Services Overview• Best Practices

– Security– Performance– Backup (demo)– Deployment scenarios (demo)

• Q&A

6© 2015 SoftNAS LLC

Who is SoftNAS?

• Powerful enterprise-class storage products for public, private and hybrid clouds

• Easy to try, buy, learn and use – rapid time to value

• Freedom from platform lock-in– Works with most popular cloud

computing platforms• Amazon EC2®, VMware® vSphere™,

Microsoft® Azure™

We believe in powerful, hassle-free storage

7© 2015 SoftNAS LLC

The SoftNAS mission

• Public• Private• Hybrid

To be the fabric for business data across all clouds

8© 2015 SoftNAS LLC

SoftNAS products

• SoftNAS Cloud– Amazon AWS– Microsoft Azure– VMware vCloud Air

• SoftNAS File Gateway– VMware vSphere– Microsoft Hyper-V

9© 2015 SoftNAS LLC

Brands you know trust SoftNAS

500+ Customers

10© 2015 SoftNAS LLC

Introduction: Why choose AWS for storageCompelling Economics Easy to Use Reduce

RiskSpeed, Agility, Scale

• Pay as you go

• No upfront investment / commitment

• No risky capacity planning

• No need to provision for redundancy or overhead

• Self service administration

• SDKs for simple integration

• Durable and Secure

• Avoid risks of physical media handling

• Reduce time to market

• Focus on your business, not your infrastructure

11© 2015 SoftNAS LLC

AWS Global Infrastructure

11 Regions

28 Availability Zones

52 Edge locations

Control your geographic locality for performance and compliance

12© 2015 SoftNAS LLC

AWS Storage Features

Durable Secure Scalable

• Designed for eleven 9’s durability

• Redundant storage across multiple facilities and devices

• Identify and Access Policies

• Bucket policies

• Access control lists

• Query string authentication

• Encryption

• Unlimited capacity when you need it

• Easily scale up and down

13© 2015 SoftNAS LLC

Key use cases

• Object storage• Backup• Archive• Disaster recovery• File storage• Storage for EC2 instances

14© 2015 SoftNAS LLC

SoftNAS Architecture on AWS - Whitepaper• Architecture

considerations• Backup considerations• Deployment scenarios

bit.ly/softnas-aws-wp

Best Practice #1: Security

© 2015 SoftNAS LLC

16© 2015 SoftNAS LLC

Data Protection

• Security & protection of customer data - #1 priority• AWS security features

– Virtual Private Cloud (Amazon VPC)– VPC security groups– Identity and Access Management (IAM)– Data Encryption

© 2015 SoftNAS LLC 17

Data Protection Cont’d

• SoftNAS– CentOS Linux VM– SSL-encrypted administration console– Public/private key access control via SSH – Iptables firewall– SnapReplicate™ (between SoftNAS instances)

Best Practice #2: Performance

© 2015 SoftNAS LLC

19

Performance - Overview

© 2015 SoftNAS LLC

AWS• Amazon EC2 instance type• # and configuration of EBS volumes• Provisioned IOPS with EBS volumes• Application workloadSoftNAS Amazon Machine Images (AMI’s)• Paravirtual – use current-gen instance type• Hardware virtual machine – SR-IOV support

20

Performance - Recommendations

© 2015 SoftNAS LLC

• Scale resources based on performance constraints• Use StorageCenter™ & Amazon CloudWatch to monitor

performance and throughput results• For best performance:

– Instance with large amounts memory (70% dedicated to DRAM)

– Instance with advanced networking or 10 Gpbs– EBS-optimized instance– Production workloads – do not use T1, T2 or C1 instances

(memory constraints) – R3 instance – best price/performance ratio for SoftNAS

21

Provisioned IOPS vs General Purpose Volumes

© 2015 SoftNAS LLC

• Provisioned IOPS Volumes– Consistent performance workloads (databases)– Up to 16TB and 20,000 IOPS can be provisioned– Amazon EBS volumes deliver within 10% of IOPS performance

99.9% of time

• General Purpose Volumes– 1:3 ratio between gigabytes and IOPS provisioned

• 100GB general purpose volume will provide 300 IOPS

– Volumes < 1TB can burst for periods, up to 3,000 IOPS– Up to 16TB and 10,000 IOPS can be provisioned

22

RAID

© 2015 SoftNAS LLC

• RAID 0 & RAID 10 recommended with Amazon EBS• RAID o provides linear performance

– 2x 4,000 IOPS volumes = 8,000 IOPS

• RAID 10 provides increased redundancy & aggregates the read performance

• RAID 10 drawbacks– 50% penalty to write performance– 50% reduction in available storage capacity

• DRAM cache dramatically increases read IOPS performance

Best Practice #3: Backup

© 2015 SoftNAS LLC

24

SoftNAS Snapshots

© 2015 SoftNAS LLC

• Volume based, point-in-time copies• Scheduling & on-demand via StorageCenter• Consume storage pool capacity• Integrated with MS Previous Versions via VSS API

– View and restore MS server & desktop deleted files– Windows 7, 8, Server 2008 & 2012

© 2015 SoftNAS LLC 25

SoftNAS SnapClones™

• Provide read/write clones of snapshots• Created instantly• Mountable as external NFS or CIFS shares• Manipulate copies of data too large or complex

– Example: testing new app versions against real data or selective file recovery

26

Amazon EBS Snapshots

© 2015 SoftNAS LLC

• Backup EBS-based storage pools• Copies entire SoftNAS storage pool – backup & recovery

purposes• Use AWS console to manage snapshots• Snapshot capacity not counted against storage pool

capacity• Used for longer-term data retention

DemoHow to schedule snapshots in StorageCenter

© 2015 SoftNAS LLC

Best Practice #4: Deployment scenarios

© 2015 SoftNAS LLC

29© 2015 SoftNAS LLC

High-Availability Architecture

• SNAP™ HA– Provides high availability seamless failover across zones– Leverages secure block replication with SoftNAS SnapReplicate

• Recommended: SNAP HA in high-availability mode = 99.999% uptime

30© 2015 SoftNAS LLC

Cross-zone HA: AWS Elastic IP

© 2015 SoftNAS LLC 31

Cross-zone HA: Private Virtual IP Addresses

32© 2015 SoftNAS LLC

Single Controller Architecture

• Where 99.999% uptime is not required

• Example: 4 EBS volumes combined into a RAID 10, provides 2TB of storage – no driver failure redundancy

© 2015 SoftNAS LLC 33

Hybrid Cloud Architecture• Installed both in Amazon EC2

and on-premises• Allows for replication from on-

premises to Amazon EC2 & vice versa

• Useful for backup and disaster recovery scenarios

• Replication– SoftNAS deployed in EC2 as

replication target using SnapReplicate

– Enables backup, disaster recovery & development environment scenarios

© 2015 SoftNAS LLC 34

Hybrid Cloud Architecture Cont’d

• File Gateway to Amazon S3– SoftNAS Cloud File Gateway

– on-premises product– Deployed in data centers on

VMware vSphere & Microsoft Hyper-V

– Connects to S3 storage – treats as disk drive

– S3 disk drive added to storage pool

DemoHybrid Cloud Architecture

© 2015 SoftNAS LLC

37

Next Steps

© 2015 SoftNAS LLC

• Learn More – bit.ly/softnas_aws

• SoftNAS Architecture on AWS White Paper – bit.ly/softnas-aws-wp

• Contact Us – softnas.com/contact

• Follow Us – @SoftNAS

Try It!

softnas.com/tryaws

Questions?

© 2015 SoftNAS LLC

Thank you

© 2015 SoftNAS LLC