SlideShare uma empresa Scribd logo
1 de 29
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Transitioning to the Next Generation
Hybrid Cloud Operating Model
Derek Ewell
Solutions Architect
Amazon Web Services, ASEAN
What to expect
This is a 200 level topic = introductory tech level
We’re presuming you have at least an introductory level of
knowledge of AWS architecture
Is this not enough information (or too much)? Come talk to
us at the AWS booth in the Exhibition Area
DEVELOPMENT
& TEST
ALL TOGETHER NEW
APPLICATIONS
DIGITAL
ANALYTICS
MOBILE
ENTIRE DC
MIGRATIONS
BUSINESS
CRITICAL APPS
ALL IN
1 2 3 4
The journey to AWS is a well-trodden path
H Y B R I D
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design Migration	&	Validation
Application	3
Application	2
Application	1
Build	core	services
Services	and	features
from	the	AWS	ecosystem
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
AWS Snowball
(Import/ Export
Disk)
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
AWS
CloudFormation
Services	and	features
from	the	AWS	ecosystem
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
AWS Snowball
(Import/ Export
Disk)
AWS
CloudFormation
AWS Application Discovery Service
Identify application
Inventory
Map application
dependencies
Baseline system and
process performance
Automate data center application discovery
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
Services	and	features
from	the	AWS	ecosystem
AWS Snowball
(Import/ Export
Disk)
AWS
CloudFormation
Amazon Virtual Private Cloud - VPC
Extend your data center with Amazon VPC
• Create logically isolated section of AWS Cloud
• You define your own network address space
• Complete control over virtual networking environment
• Define the connectivity you need, private, Internet,
AWS services, even other VPCs
• You manage the security configurations using
security groups providing stateful firewall per instance
• Visibility into VPC network traffic flows
AWS Quick Starts
Based on CloudFormation = infrastructure as code
Follows best-practices approaches for common solutions
And many more…
https://aws.amazon.com/quickstart
• SAP HANA
• Magento
• Splunk Enterprise
• Tableau Server
• PCI-DSS
• Microsoft SharePoint Server
Microsoft Active Directory options for cloud workloads
Domain join EC2 instances to on-premises Active Directory
environment
Run/manage an Active Directory instance on EC2
AWS Directory Service
• AWS Microsoft AD, managed Active Directory service
AWS Managed
Service VPC
AWS Microsoft
AD DC
AD
VPC
EC2 Windows
Server DC
AD
On-premises
Windows
Server DC
AD
Remote
Users /
Admins
corporate data center
AWS QuickStart –
Active Directory Domain
Services on AWS
AWS
CloudFormation
Availability Zone
Availability Zone
Remote
Users /
Admins
corporate data center
AWS QuickStart –
Active Directory Domain
Services on AWS
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Public Subnet
Remote Desktop
Gateway
NAT Gateway
AWS
CloudFormation
Egress
to
Internet
traffic
Internet
based
service
Access
VPC
based
resources
Private connectivity options for AWS
• Effective starting point
• Encrypted tunnel
• AWS-managed VPN
• Software VPN (EC2)
• Scalable, forward-looking option
• Service provider circuit / MPLS
• Flexible bandwidth choices
• Strong partner ecosystem
• Redundancy options
Virtual Private Network (VPN) Direct Connect
corporate data center
Setting up the
connection to the cloud
Availability Zone
Availability Zone
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Availability Zone
Availability Zone
AWS Directory S
for Microsoft
AWS Directory S
for Microsoft
Private Subn
Private Subn
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Tunnel 1 =
52.77.29.248
Tunnel 2 =
52.221.13.167
CGW Public IP =
52.77.29.248
Customer
Gateway
Virtual
Gateway
Availability Zone
Availability Zone
Remote Users
/ Admins
corporate data center
Setting up the
connection to the cloud
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Public Subnet
Remote Desktop
Gateway
NAT Gateway
Access
VPC
based
resources
Demo 1
Setting up your first VPN to AWS
Availability Zone
Availability Zone
Remote
Users /
Admins
corporate data center
VPN
Connection
Example: AWS
Microsoft AD with AD
trust to on-premises
Trust
Application
Domain Controllers
Auth/
LDAP
Auth/
LDAP
Private Subnet
EC2
instance
APP
EC2
instance
Private Subnet
APP
Public Subnet
NAT Gateway
Public Subnet
NAT Gateway
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
fabrikam.com
DC2:10.0.1.253
fabrikam.com
DC3:10.0.2.129
10.0.2.0/24
10.0.1.0/24
contoso.com
DC1:192.168.1.10
192.168.0.0/16
Domain joined servers
Demo 2
AWS Microsoft AD with trust to
on-premises domain
Availability Zone
Availability Zone
Remote Users /
Admins
corporate data center
VPN
Connection
Configure
AWS Identity and
Access Management
Public Subnet
NAT Gateway
Public Subnet
NAT Gateway
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
fabrikam.com
DC2:10.0.1.253
fabrikam.com
DC3:10.0.2.129
10.0.2.0/24
10.0.1.0/24
contoso.com
DC1:192.168.1.10
192.168.0.0/16
AWS IAM
Private Subnet
EC2
instance
APP
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
Services	and	features
from	the	AWS	ecosystem
AWS Snowball
(Import/ Export
Disk)
AWS
CloudFormation
Availability Zone
Availability Zone
corporate data center
VPN
Connection
Move data into AWS
Public Subnet
NAT Gateway
Public Subnet
NAT Gateway
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
fabrikam.com
DC2:10.0.1.253
fabrikam.com
DC3:10.0.2.129
10.0.2.0/24
10.0.1.0/24
contoso.com
DC1:192.168.1.10
192.168.0.0/16
Amazon S3Data
Upload
AWS
Storage
Gateway
S3 Transfer
Acceleration
Remote Users /
Admins
AWS Snowball
Availability Zone
Availability Zone
corporate data center
VPN
Connection
Migrate live
servers into AWS
Public Subnet
NAT Gateway
Public Subnet
NAT Gateway
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
fabrikam.com
DC2:10.0.1.253
fabrikam.com
DC3:10.0.2.129
10.0.2.0/24
10.0.1.0/24
contoso.com
DC1:192.168.1.10
192.168.0.0/16
AWS
Server
Migration
Service
AWS
Connector
Amazon
Machine
Image
Private Subnet
APP
APP
Remote Users /
Admins
Availability Zone
Availability Zone
corporate data center
VPN
Connection
Migrate live
databases into AWS
Public Subnet
NAT Gateway
Public Subnet
NAT Gateway
AWS Directory Service
for Microsoft AD
AWS Directory Service
for Microsoft AD
Private Subnet
Private Subnet
fabrikam.com
DC2:10.0.1.253
fabrikam.com
DC3:10.0.2.129
10.0.2.0/24
10.0.1.0/24
contoso.com
DC1:192.168.1.10
192.168.0.0/16
AWS
Server
Migration
Service
AWS
Database
Migration
Service
Private Subnet
Replication
Instance
Source
Database
Target
Database
Remote Users /
Admins
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
Services	and	features
from	the	AWS	ecosystem
AWS Snowball
(Import/ Export
Disk)
AWS
CloudFormation
Operating your environment
Amazon EC2
Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
Monitoring & Performance
Governance & Compliance
Resource Optimization
Infrastructure Provisioning
Configuration Management
AWS
CloudFormation
AWS IAMAWS
CloudTrail
AWS Quick Starts
AWS Service
Catalog
Services	and	features
from	the	AWS	ecosystem
Innovations to accelerate hybrid IT
Application	3 Application	3
Application	2 Application	2
Application	1 Application	1
Existing	
IT	Estate
Evaluation
Planning	
and	
Discovery
Operation
Strategy Plan Build	&	Migrate Run
Application	
Design
Migration	&	Validation
AWS Database
Migration Service
AWS Server
Migration
Service
AWS Application
Discovery Service
AWS Snowball
(Import/ Export
Disk)
Amazon S3
EC2 Systems
Manager
Amazon
CloudWatch
AWS Config
AWS Storage
Gateway
S3 Transfer
Acceleration
Application	3
Application	2
Application	1
Build	core	services
AWS Service
Catalog
Amazon
Inspector
AWS Trusted
Advisor
AWS Directory
Service
AWS IAM
VPN
Connection
AWS Direct
Connect
Amazon EC2
Amazon VPC
AWS
CloudFormation
Thank you!
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Derek Ewell, Solutions Architect
11-April-2017
Hybrid IT
One step on the journey towards cloud optimization

Mais conteúdo relacionado

Mais procurados

Mais procurados (20)

Getting started on your AWS migration journey
Getting started on your AWS migration journeyGetting started on your AWS migration journey
Getting started on your AWS migration journey
 
AWS re:Invent 2016: Enterprise IT as a Service: Empowering the Digital Experi...
AWS re:Invent 2016: Enterprise IT as a Service: Empowering the Digital Experi...AWS re:Invent 2016: Enterprise IT as a Service: Empowering the Digital Experi...
AWS re:Invent 2016: Enterprise IT as a Service: Empowering the Digital Experi...
 
(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE(ISM209) Acceleration of AWS Enterprise Adoption In GE
(ISM209) Acceleration of AWS Enterprise Adoption In GE
 
Cloud Adoption Framework - AWS Innovate Ottawa:
 Cloud Adoption Framework - AWS Innovate Ottawa: Cloud Adoption Framework - AWS Innovate Ottawa:
Cloud Adoption Framework - AWS Innovate Ottawa:
 
AWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session TwoAWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session Two
 
AWS Enterprise Day | Running Critical Business Applications on AWS
AWS Enterprise Day | Running Critical Business Applications on AWSAWS Enterprise Day | Running Critical Business Applications on AWS
AWS Enterprise Day | Running Critical Business Applications on AWS
 
Cloud cost optimization an essential guide to aws cloud migration
Cloud cost optimization  an essential guide to aws cloud migrationCloud cost optimization  an essential guide to aws cloud migration
Cloud cost optimization an essential guide to aws cloud migration
 
AWS re:Invent 2016: Building Enterprise Cloud Operations As a Service with T-...
AWS re:Invent 2016: Building Enterprise Cloud Operations As a Service with T-...AWS re:Invent 2016: Building Enterprise Cloud Operations As a Service with T-...
AWS re:Invent 2016: Building Enterprise Cloud Operations As a Service with T-...
 
AWS Cloud Adoption Framework_Liam Caskie
AWS Cloud Adoption Framework_Liam CaskieAWS Cloud Adoption Framework_Liam Caskie
AWS Cloud Adoption Framework_Liam Caskie
 
AWS per il settore pubblico in Italia
AWS per il settore pubblico in ItaliaAWS per il settore pubblico in Italia
AWS per il settore pubblico in Italia
 
Application Migrations
Application MigrationsApplication Migrations
Application Migrations
 
Why You Are Secure in the AWS Cloud
Why You Are Secure in the AWS CloudWhy You Are Secure in the AWS Cloud
Why You Are Secure in the AWS Cloud
 
Large-Scale AWS Migrations with CSC
Large-Scale AWS Migrations with CSCLarge-Scale AWS Migrations with CSC
Large-Scale AWS Migrations with CSC
 
Operating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWSOperating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWS
 
Migrating Enterprise Applications to AWS: Best Practices & Techniques (ENT303...
Migrating Enterprise Applications to AWS: Best Practices & Techniques (ENT303...Migrating Enterprise Applications to AWS: Best Practices & Techniques (ENT303...
Migrating Enterprise Applications to AWS: Best Practices & Techniques (ENT303...
 
Transforming Your IT with AWS
Transforming Your IT with AWSTransforming Your IT with AWS
Transforming Your IT with AWS
 
AWS Partner Webcast - Step by Step Plan to Update and Migrate Microsoft Wind...
AWS Partner Webcast -  Step by Step Plan to Update and Migrate Microsoft Wind...AWS Partner Webcast -  Step by Step Plan to Update and Migrate Microsoft Wind...
AWS Partner Webcast - Step by Step Plan to Update and Migrate Microsoft Wind...
 
Cox Automotive’s Data Center Migration to the AWS Cloud - ENT330 - re:Invent ...
Cox Automotive’s Data Center Migration to the AWS Cloud - ENT330 - re:Invent ...Cox Automotive’s Data Center Migration to the AWS Cloud - ENT330 - re:Invent ...
Cox Automotive’s Data Center Migration to the AWS Cloud - ENT330 - re:Invent ...
 
AWS Business Essentials Day
AWS Business Essentials DayAWS Business Essentials Day
AWS Business Essentials Day
 
AWS re:Invent 2016: The Cloud Is Enterprise Ready: How the University of Ariz...
AWS re:Invent 2016: The Cloud Is Enterprise Ready: How the University of Ariz...AWS re:Invent 2016: The Cloud Is Enterprise Ready: How the University of Ariz...
AWS re:Invent 2016: The Cloud Is Enterprise Ready: How the University of Ariz...
 

Semelhante a Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit SG 2017

Semelhante a Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit SG 2017 (20)

Running Microsoft Workloads on AWS
Running Microsoft Workloads on AWSRunning Microsoft Workloads on AWS
Running Microsoft Workloads on AWS
 
Simplifying Microsoft Architectures with AWS - CMP214 - re:Invent 2017
Simplifying Microsoft Architectures with AWS - CMP214 - re:Invent 2017Simplifying Microsoft Architectures with AWS - CMP214 - re:Invent 2017
Simplifying Microsoft Architectures with AWS - CMP214 - re:Invent 2017
 
Running your Windows Enterprise Workloads on AWS - Technical 201
Running your Windows Enterprise Workloads on AWS - Technical 201Running your Windows Enterprise Workloads on AWS - Technical 201
Running your Windows Enterprise Workloads on AWS - Technical 201
 
AWS re:Invent 2016: Best Practices for Integrating Active Directory with AWS ...
AWS re:Invent 2016: Best Practices for Integrating Active Directory with AWS ...AWS re:Invent 2016: Best Practices for Integrating Active Directory with AWS ...
AWS re:Invent 2016: Best Practices for Integrating Active Directory with AWS ...
 
AWS Summit Auckland - Running your Enterprise Windows Workload on AWS
AWS Summit Auckland  - Running your Enterprise Windows Workload on AWSAWS Summit Auckland  - Running your Enterprise Windows Workload on AWS
AWS Summit Auckland - Running your Enterprise Windows Workload on AWS
 
ENT201 Simplifying Microsoft Architectures with AWS Services
ENT201 Simplifying Microsoft Architectures with AWS ServicesENT201 Simplifying Microsoft Architectures with AWS Services
ENT201 Simplifying Microsoft Architectures with AWS Services
 
Getting Started with Windows Workloads on Amazon EC2
Getting Started with Windows Workloads on Amazon EC2Getting Started with Windows Workloads on Amazon EC2
Getting Started with Windows Workloads on Amazon EC2
 
AWS re:Invent 2016: Managing and Supporting the Windows Platform on AWS (GPSS...
AWS re:Invent 2016: Managing and Supporting the Windows Platform on AWS (GPSS...AWS re:Invent 2016: Managing and Supporting the Windows Platform on AWS (GPSS...
AWS re:Invent 2016: Managing and Supporting the Windows Platform on AWS (GPSS...
 
WIN204-Simplifying Microsoft Architectures with AWS Services
WIN204-Simplifying Microsoft Architectures with AWS ServicesWIN204-Simplifying Microsoft Architectures with AWS Services
WIN204-Simplifying Microsoft Architectures with AWS Services
 
ECS 19 Anil Erduran - simplifying microsoft architectures with aws services
ECS 19 Anil Erduran - simplifying microsoft architectures with aws servicesECS 19 Anil Erduran - simplifying microsoft architectures with aws services
ECS 19 Anil Erduran - simplifying microsoft architectures with aws services
 
Microsoft on AWS - AWS Summit SG 2017
Microsoft on AWS - AWS Summit SG 2017Microsoft on AWS - AWS Summit SG 2017
Microsoft on AWS - AWS Summit SG 2017
 
Introduction to Microsoft Workloads on AWS - AWS Online Tech Talks
Introduction to Microsoft Workloads on AWS - AWS Online Tech TalksIntroduction to Microsoft Workloads on AWS - AWS Online Tech Talks
Introduction to Microsoft Workloads on AWS - AWS Online Tech Talks
 
Best Practices for Active Directory with AWS Workloads
Best Practices for Active Directory with AWS WorkloadsBest Practices for Active Directory with AWS Workloads
Best Practices for Active Directory with AWS Workloads
 
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
SEC306 Using Microsoft Active Directory Across On-Premises and AWS Cloud Wind...
 
Microsoft Workloads on AWS
Microsoft Workloads on AWSMicrosoft Workloads on AWS
Microsoft Workloads on AWS
 
Running Business-Critical Applications on the AWS Cloud
Running Business-Critical Applications on the AWS CloudRunning Business-Critical Applications on the AWS Cloud
Running Business-Critical Applications on the AWS Cloud
 
WIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWSWIN401_Migrating Microsoft Applications to AWS
WIN401_Migrating Microsoft Applications to AWS
 
Using Microsoft Active Directory across On-premises and Cloud Workloads
Using Microsoft Active Directory across On-premises and Cloud WorkloadsUsing Microsoft Active Directory across On-premises and Cloud Workloads
Using Microsoft Active Directory across On-premises and Cloud Workloads
 
AWS re:Invent 2016: Simplifying Microsoft Architectures with AWS services (WI...
AWS re:Invent 2016: Simplifying Microsoft Architectures with AWS services (WI...AWS re:Invent 2016: Simplifying Microsoft Architectures with AWS services (WI...
AWS re:Invent 2016: Simplifying Microsoft Architectures with AWS services (WI...
 
ENT308 Best Practices for Microsoft Architectures on AWS
ENT308 Best Practices for Microsoft Architectures on AWSENT308 Best Practices for Microsoft Architectures on AWS
ENT308 Best Practices for Microsoft Architectures on AWS
 

Mais de Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 

Mais de Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Último

EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
Earley Information Science
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
Enterprise Knowledge
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Último (20)

08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Evaluating the top large language models.pdf
Evaluating the top large language models.pdfEvaluating the top large language models.pdf
Evaluating the top large language models.pdf
 
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptxEIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
EIS-Webinar-Prompt-Knowledge-Eng-2024-04-08.pptx
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 

Transitioning to the Next Generation Hybrid Cloud Operating Model- AWS Summit SG 2017

  • 1. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Transitioning to the Next Generation Hybrid Cloud Operating Model Derek Ewell Solutions Architect Amazon Web Services, ASEAN
  • 2. What to expect This is a 200 level topic = introductory tech level We’re presuming you have at least an introductory level of knowledge of AWS architecture Is this not enough information (or too much)? Come talk to us at the AWS booth in the Exhibition Area
  • 3. DEVELOPMENT & TEST ALL TOGETHER NEW APPLICATIONS DIGITAL ANALYTICS MOBILE ENTIRE DC MIGRATIONS BUSINESS CRITICAL APPS ALL IN 1 2 3 4 The journey to AWS is a well-trodden path H Y B R I D
  • 4. Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation Application 3 Application 2 Application 1 Build core services
  • 5. Services and features from the AWS ecosystem Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service AWS Snowball (Import/ Export Disk) Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC AWS CloudFormation
  • 6. Services and features from the AWS ecosystem Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC AWS Snowball (Import/ Export Disk) AWS CloudFormation
  • 7. AWS Application Discovery Service Identify application Inventory Map application dependencies Baseline system and process performance Automate data center application discovery
  • 8. Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC Services and features from the AWS ecosystem AWS Snowball (Import/ Export Disk) AWS CloudFormation
  • 9. Amazon Virtual Private Cloud - VPC Extend your data center with Amazon VPC • Create logically isolated section of AWS Cloud • You define your own network address space • Complete control over virtual networking environment • Define the connectivity you need, private, Internet, AWS services, even other VPCs • You manage the security configurations using security groups providing stateful firewall per instance • Visibility into VPC network traffic flows
  • 10. AWS Quick Starts Based on CloudFormation = infrastructure as code Follows best-practices approaches for common solutions And many more… https://aws.amazon.com/quickstart • SAP HANA • Magento • Splunk Enterprise • Tableau Server • PCI-DSS • Microsoft SharePoint Server
  • 11. Microsoft Active Directory options for cloud workloads Domain join EC2 instances to on-premises Active Directory environment Run/manage an Active Directory instance on EC2 AWS Directory Service • AWS Microsoft AD, managed Active Directory service AWS Managed Service VPC AWS Microsoft AD DC AD VPC EC2 Windows Server DC AD On-premises Windows Server DC AD
  • 12. Remote Users / Admins corporate data center AWS QuickStart – Active Directory Domain Services on AWS AWS CloudFormation
  • 13. Availability Zone Availability Zone Remote Users / Admins corporate data center AWS QuickStart – Active Directory Domain Services on AWS AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet Public Subnet Remote Desktop Gateway NAT Gateway Public Subnet Remote Desktop Gateway NAT Gateway AWS CloudFormation Egress to Internet traffic Internet based service Access VPC based resources
  • 14. Private connectivity options for AWS • Effective starting point • Encrypted tunnel • AWS-managed VPN • Software VPN (EC2) • Scalable, forward-looking option • Service provider circuit / MPLS • Flexible bandwidth choices • Strong partner ecosystem • Redundancy options Virtual Private Network (VPN) Direct Connect
  • 15. corporate data center Setting up the connection to the cloud Availability Zone Availability Zone AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet Public Subnet Remote Desktop Gateway NAT Gateway Public Subnet Remote Desktop Gateway NAT Gateway Availability Zone Availability Zone AWS Directory S for Microsoft AWS Directory S for Microsoft Private Subn Private Subn Public Subnet Remote Desktop Gateway NAT Gateway Public Subnet Remote Desktop Gateway NAT Gateway Tunnel 1 = 52.77.29.248 Tunnel 2 = 52.221.13.167 CGW Public IP = 52.77.29.248 Customer Gateway Virtual Gateway
  • 16. Availability Zone Availability Zone Remote Users / Admins corporate data center Setting up the connection to the cloud AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet Public Subnet Remote Desktop Gateway NAT Gateway Public Subnet Remote Desktop Gateway NAT Gateway Access VPC based resources
  • 17. Demo 1 Setting up your first VPN to AWS
  • 18. Availability Zone Availability Zone Remote Users / Admins corporate data center VPN Connection Example: AWS Microsoft AD with AD trust to on-premises Trust Application Domain Controllers Auth/ LDAP Auth/ LDAP Private Subnet EC2 instance APP EC2 instance Private Subnet APP Public Subnet NAT Gateway Public Subnet NAT Gateway AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet fabrikam.com DC2:10.0.1.253 fabrikam.com DC3:10.0.2.129 10.0.2.0/24 10.0.1.0/24 contoso.com DC1:192.168.1.10 192.168.0.0/16 Domain joined servers
  • 19. Demo 2 AWS Microsoft AD with trust to on-premises domain
  • 20. Availability Zone Availability Zone Remote Users / Admins corporate data center VPN Connection Configure AWS Identity and Access Management Public Subnet NAT Gateway Public Subnet NAT Gateway AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet fabrikam.com DC2:10.0.1.253 fabrikam.com DC3:10.0.2.129 10.0.2.0/24 10.0.1.0/24 contoso.com DC1:192.168.1.10 192.168.0.0/16 AWS IAM Private Subnet EC2 instance APP
  • 21. Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC Services and features from the AWS ecosystem AWS Snowball (Import/ Export Disk) AWS CloudFormation
  • 22. Availability Zone Availability Zone corporate data center VPN Connection Move data into AWS Public Subnet NAT Gateway Public Subnet NAT Gateway AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet fabrikam.com DC2:10.0.1.253 fabrikam.com DC3:10.0.2.129 10.0.2.0/24 10.0.1.0/24 contoso.com DC1:192.168.1.10 192.168.0.0/16 Amazon S3Data Upload AWS Storage Gateway S3 Transfer Acceleration Remote Users / Admins AWS Snowball
  • 23. Availability Zone Availability Zone corporate data center VPN Connection Migrate live servers into AWS Public Subnet NAT Gateway Public Subnet NAT Gateway AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet fabrikam.com DC2:10.0.1.253 fabrikam.com DC3:10.0.2.129 10.0.2.0/24 10.0.1.0/24 contoso.com DC1:192.168.1.10 192.168.0.0/16 AWS Server Migration Service AWS Connector Amazon Machine Image Private Subnet APP APP Remote Users / Admins
  • 24. Availability Zone Availability Zone corporate data center VPN Connection Migrate live databases into AWS Public Subnet NAT Gateway Public Subnet NAT Gateway AWS Directory Service for Microsoft AD AWS Directory Service for Microsoft AD Private Subnet Private Subnet fabrikam.com DC2:10.0.1.253 fabrikam.com DC3:10.0.2.129 10.0.2.0/24 10.0.1.0/24 contoso.com DC1:192.168.1.10 192.168.0.0/16 AWS Server Migration Service AWS Database Migration Service Private Subnet Replication Instance Source Database Target Database Remote Users / Admins
  • 25. Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC Services and features from the AWS ecosystem AWS Snowball (Import/ Export Disk) AWS CloudFormation
  • 26. Operating your environment Amazon EC2 Systems Manager Amazon CloudWatch AWS Config AWS Service Catalog Amazon Inspector AWS Trusted Advisor Monitoring & Performance Governance & Compliance Resource Optimization Infrastructure Provisioning Configuration Management AWS CloudFormation AWS IAMAWS CloudTrail AWS Quick Starts AWS Service Catalog
  • 27. Services and features from the AWS ecosystem Innovations to accelerate hybrid IT Application 3 Application 3 Application 2 Application 2 Application 1 Application 1 Existing IT Estate Evaluation Planning and Discovery Operation Strategy Plan Build & Migrate Run Application Design Migration & Validation AWS Database Migration Service AWS Server Migration Service AWS Application Discovery Service AWS Snowball (Import/ Export Disk) Amazon S3 EC2 Systems Manager Amazon CloudWatch AWS Config AWS Storage Gateway S3 Transfer Acceleration Application 3 Application 2 Application 1 Build core services AWS Service Catalog Amazon Inspector AWS Trusted Advisor AWS Directory Service AWS IAM VPN Connection AWS Direct Connect Amazon EC2 Amazon VPC AWS CloudFormation
  • 29. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Derek Ewell, Solutions Architect 11-April-2017 Hybrid IT One step on the journey towards cloud optimization