Airline Flight Industry Nicole Kinney, Kelly Dwyer and Blaine Taylor.
Blaine Isbelle Jonathon Taylor
description
Transcript of Blaine Isbelle Jonathon Taylor
![Page 1: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/1.jpg)
IST’s Cloud or Virtual Private Server Offering
A history, challenges and where we are today
Blaine IsbelleJonathon Taylor
![Page 2: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/2.jpg)
Agenda
• History• Challenges• Current environment• Security• What’s next?
![Page 3: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/3.jpg)
• Why Virtualize – No hardware refresh downtime– Hardware failover– Flexibility – Lower costs– Better utilization of hardware (green
technology)
History
![Page 4: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/4.jpg)
• Virtualizing the hardware layer
History
![Page 5: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/5.jpg)
• Shared Storage
History
![Page 6: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/6.jpg)
• Clustered Hosts
History
![Page 7: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/7.jpg)
History
• SCSI Locking!!
![Page 8: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/8.jpg)
• Smaller Clusters
History
![Page 9: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/9.jpg)
Current Environment
• Environment today– 2 Datacenters– 5 Dell m1000e Blades Chassis (More on Order)
• 80 M610 12 core blades with 96GB of ram– 50+ ESXi hosts– 12 Clusters (5 multi-tenant, 7 dedicated)– ~1000 virtual private servers
• 60% Windows • 40% *nix
– 140+TB fiber connected SAN storage
![Page 10: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/10.jpg)
Challenges
• Keeping up with high adoption rate• Securing the environment
![Page 11: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/11.jpg)
Challenges
Jul-06 Jan-07 Aug-07 Feb-08 Sep-08 Mar-09 Oct-09 May-10 Nov-10 Jun-11 Dec-110
10
20
30
40
50
60
70
80
VM Creations per MonthJuly 2006 - December 2011
![Page 12: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/12.jpg)
Automation
Current Process• Self-service front-end
– Estimator – http://estimator.berkeley.edu– Price server and support options
![Page 13: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/13.jpg)
Automation
![Page 14: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/14.jpg)
Automation
![Page 15: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/15.jpg)
Automation
Current Process• Scripted back-end
– Intelligent cluster and storage placement– VPS configuration– Inherent advantages
• Quick turn-around
![Page 16: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/16.jpg)
Automation
Next Steps• Introduce 3rd-party workflow
– Faster turn-around– Business process and approvals– Proactive/reactive response
![Page 17: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/17.jpg)
Challenges
• Keeping up with high adoption rate• Securing the environment
![Page 18: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/18.jpg)
Security and Configuration Management
• Locking it down– Physical hardware– Hypervisor– All access done via bastion host– HyTrust Security Appliance
• Root password vaulting• Principle of least privilege
![Page 19: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/19.jpg)
• Dedicated Clusters• Logically isolated storage• Dedicated networks• Tuned for specific workloads• Granular access controls
Use Cases
![Page 20: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/20.jpg)
Use Cases
• Dedicated Cluster Customers– UC Merced
• Offsite dedicated environment– University Health Services– CalNet– Haas– IST’s DBA Services
• Oracle, MS SQL, MySQL, PostgreSQL
![Page 21: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/21.jpg)
Use Cases
• Virtual Private Server (VPS) Service– Multi-tenant Environment
• Hearst Datacenter• San Diego Supercomputer Center (SDSC)
![Page 22: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/22.jpg)
Use Cases
• Virtual Private Server Service Customers
ASUC Grad DivisionBFS HRMSBoalt School of Law Office of Public AffairsCollege of Letters and Science Office of the RegistrarDepartment of Chemistry SAITDisabled Students Program School of Public HealthEECS UC San FranciscoETS University Relations
![Page 23: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/23.jpg)
Where to next?
• Upgrade to vSphere 5 Q1• Two-factor authentication Q2• HyTrust Security appliance
– Auditing Q1– Configuration management Q1– Granular access control Q3
• Data protection– Whole VPS instance backup Q4
• More customer control
![Page 24: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/24.jpg)
VPS Service Costs
• VPS Base (1 vCPU, 1GB RAM) - $22/month• Each Additional 1GB RAM or 1 vCPU - $6/month
• High Tier Storage $0.72/GB• Standard Tier Storage $0.36/GB• Economy Tier Storage $0.12/GB• Low Tier Storage $0.06/GB
• Windows and Linux OS support and backups are options• No bandwidth restrictions or metering
![Page 25: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/25.jpg)
ESX Service Costs
• Dedicated ESX host (minimum of 2 per cluster) $629/host/month including licensing
• Dell M610s• 12 “physical” cores• 96GB RAM
• High Tier Storage $0.60/GB• Standard Tier Storage $0.30/GB• Economy Tier Storage $0.10/GB• Low Tier Storage $0.05/GB
![Page 26: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/26.jpg)
VPS Cost Comparison
Dell• VPS Base (1 vCPU, 1GB RAM) -
$46/month• Each Additional 1GB RAM or 1
vCPU - $23/month
• Standard Tier Storage $0.50/GB• Economy Tier Storage $0.15/GB
• Bandwidth $0.20 per GB
• Account Setup Fee $2500
IST• VPS Base (1 vCPU, 1GB RAM) -
$22/month• Each Additional 1GB RAM or 1
vCPU - $6/month
• High Tier Storage $0.72/GB• Standard Tier Storage $0.36/GB• Economy Tier Storage $0.12/GB• Low Tier Storage $0.06/GB
• No Bandwidth Charges
• No Setup Fee
![Page 27: Blaine Isbelle Jonathon Taylor](https://reader036.fdocuments.in/reader036/viewer/2022062302/56816371550346895dd44e77/html5/thumbnails/27.jpg)
Q/A
• Questions?Blaine Isbelle
Jonathon [email protected]
Estimatorhttp://estimator.berkeley.edu
Service Cataloghttp://ist.berkeley.edu/services/is/virtual-servers