Upgrade to Pro — share decks privately, control downloads, hide ads and more …

VMware Cloud on AWS from a managed service provider’s perspective

VMware Cloud on AWS from a managed service provider’s perspective

Jeffrey Kusters

May 24, 2018
Tweet

More Decks by Jeffrey Kusters

Other Decks in Technology

Transcript

  1. US West Oregon US East N. Virginia EU London from

    a managed service provider’s perspective Jeffrey Kusters May 2018 Technology Officer at ITQ @jeffreykusters VCDX, AWS SAA
  2. E E

  3. IT’S POTENTIALLY HIGH ON RISK “Monthly Uptime Percentage” is calculated

    by subtracting from 100% the percentage of minutes during the month in which Amazon EC2 or Amazon EBS, as applicable, was in the state of “Region Unavailable” “Region Unavailable” means that more than one Availability Zone in which you are running an instance, within the same Region, is “Unavailable” to you.”
  4. Data Center Team • Application architectures • Security best practices

    • APIs and management tools YOU’RE ADDING COMPLEXITY Google Team • Application architectures • Security best practices • APIs and management tools Azure Team • Application architectures • Security best practices • APIs and management tools AWS Team • Application architectures • Security best practices • APIs and management tools Organizational Complexity Operational Complexity Increased Risk Exposure IBM Team • Application architectures • Security best practices • APIs and management tools
  5. IF YOU CAN’T SCALE DOWN, COST WILL JUST GO UP!

    Cloud economics is all about ‘pay-as-you-go’ … but what if you just keep going and going? Can your applications scale down or easily be turned off and on again on demand? Cloud Resources
  6. Forecast ahead: Growing clouds on the horizon This can feel

    like an incredible opportunity. To get there, organizations need to be ready to act. Analysts predict increasing cloud adoption Speed is the new currency Public cloud market by 2020, up from $146B in 2017 – Forrester *1 Projected growth for IaaS market in 2017, the highest for cloud services – Gartner *2 of organizations committed to hybrid architectures by 2018 – IDC *3 $236B 37% 80% 1. “The Public Cloud Services Market Will Grow Rapidly To $236 Billion in 2020”. Forrester. September 1, 2016. 2. “http://www.gartner.com/newsroom/id/3616417 3. “Enterprise Adoption Driving Strong Growth of Public Cloud Infrastructure as a Service, According to IDC.” Press release. IDC. July 14, 2016.
  7. “ W H Y A R E N ’ T

    W E I N T H E C L O U D Y E T ? ! ”
  8. AWS Global Infrastructure AWS Global Infrastructure Customer Datacenter vSphere vSAN

    NSX Amazon EC2 Amazon S3 Amazon RDS AWS Direct Connect AWS IAM AWS IoT … … … … vCenter vCenter • ESXi on Dedicated Hardware • Support for VMs and Containers • vSAN on Flash and EBS Storage • Replication and DR Orchestration • NSX Spanning on- premises and cloud • Advanced Networking & Security Services Operational Management VMware Cloud™ on AWS Powered by VMware Cloud Foundation AWS Native Services
  9. • AWS i3.metal instance family hosts • 36 CPU cores

    and 512GB RAM • 8 x 2TB NVMe SSD • Minimum of 4 hosts in a cluster • ESXi boots from Elastic Block Storage • 25Gbps networking per ESXi host • Max. 32 ESXi hosts per cluster • Max. 10 clusters per SDDC • That’s 11.520 CPUs • 160 TB RAM • 5 PB raw NVMe SSD storage
  10. VM VSAN VM NSX ESXi CGW EC2 Instances ENI S3

    VPC Endpoint EC2 Instances DynamoDB VPC Endpoint Amazon Redshift Logical Network 172.31.1.0/24 VPC Subnet – 10.1.1.0/24 VPC Subnet – 10.1.2.0/24 VMware Cloud on AWS SDDC Account Customer Owned AWS Account SDDC
  11. MGW CGW Internet vSAN Cluster Managed by VMware Managed by

    Customer … VM VM VM VM VM VC NSX VPN VPN DLR ENI
  12. • An ENI is used to communicate to the NSX

    logical network subnets in VMware Cloud on AWS Example: eni-e753b5d is used to route directly from the AWS VPC to NSX logical network subnet 10.61.4.0/28 Pictures courtesy of Humair Ahmed (Sr. Technical Product Manager NSBU)
  13. Customer Datacenter vCenter AWS Global Infrastructure vSphere vSAN NSX Amazon

    EC2 Amazon S3 Amazon RDS AWS Direct Connect AWS IAM AWS IoT … … … … vCenter • ESXi on Dedicated Hardware • Support for VMs and Containers • vSAN on Flash and EBS Storage • Replication and DR Orchestration • NSX Spanning on- premises and cloud • Advanced Networking & Security Services Native AWS Services VMware Cloud on AWS Powered by VMware Cloud Foundation Cloud Provider Datacenter(s) vCenter vSphere vSAN NSX vCloud Director VMware Cloud Provider Platform On-Premises vSphere Platform Cloud Provider Managed Services VMware Focused Professional Services AWS Focused Professional Services Customer owned VPC
  14. VMC VPC Tenant 1 VMware Cloud on AWS Internet GW

    Mgmt. GW Compute GW NSX DLR Tenant 1 On-Premises DC On-Premises GW Workload Subnets Management WAN Connectivity Internet IPSec (L3) VPN – Compute IPSec VPN (L3) – Compute IPSec (L3) VPN – mgmt. Tenant 1 Hosted vDC Customer GW vDC Subnets VMware Cloud Provider Platform Cloud Provider Management VMware Cloud on AWS MSP Use-Cases Application Migrations Geographic Expansion Vertical Extension Disaster Recovery Elastic Scalability Application Development Application Modernization Cloud Provider Professional Services Connectivity & Readiness Architecture & Design Develop, Deploy & Build Plan & Migrate + Cloud Provider Managed Services Application Support Patching & Lifecycle Proactive Reporting Operate & Optimize + Amazon Web Services Tenant 1 VPC VPC Subnets AWS Native Services AWS Global Infrastructure
  15. Amazon Web Services AWS Global Infrastructure Internet GW Compute GW

    Availability Zone Availability Zone Web Subnet Web Subnet Public Subnet Public Subnet On-Premises GW Workload Subnets Management VRS DR Protected Applications Tenant 1 On-Premises Mgmt. GW VMware Cloud Provider Managed Services Application Design, Deployment and Configuration Application Performance and Cost Optimization Application SLA Reporting Application Management, Patching, Upgrade, Scale NSX Tenant 1 VMware Cloud on AWS DLR DB APP IPSec VPN (L3) – Compute IPSec (L3) VPN – Management
  16. Failover, test, migrate Internet Tenant 1 On-Premises On-Premises GW Workload

    Subnets Management VRS DR Protected Applications DR Placeholder VM’s vSphere Replication Hybrid Linked-Mode vSphere Resource Mappings AWS Global Infrastructure VMware Cloud Provider Managed Services Design & Setup DR Testing Planned Migration DR Execution AWS specific managed services Tenant 1 VMware Cloud on AWS Internet GW Mgmt. GW Compute GW NSX VRS DLR Amazon Web Services VPC Subnets AWS Native Services IPSec (L3) VPN – Management IPSec VPN (L3) – Compute L2 VPN (L2) – Compute
  17. We are one. We are ITQ. Jeffrey Kusters, Technology Officer

    [email protected] | www.itq.nl | @ITQ Zeestraat 250 | 1949 AG Wijk aan Zee T +31 251 82 88 03 | M +31 6 52 76 21 89