application business continuity - lb- · pdf fileapplication business continuity ... forrester...

21
IT Sicherheit neu definiert Application Business Continuity Johan van den Boogaart | RSM DACH

Upload: duongthu

Post on 06-Mar-2018

220 views

Category:

Documents


2 download

TRANSCRIPT

Page 1: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

ITSicherheit neu definiert

ApplicationBusinessContinuity

JohanvandenBoogaart|RSMDACH

Page 2: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Gründe für ungeplante Ausfälle

2

SoftwareFehler9%

Menschliche Fehler8%

Netzwerk Ausfall10%

Sonstiges30%

Stromausfall26%

HardwareAusfall19%

Quelle:ForresterDisasterRecoveryJournal2013

Page 3: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Typische Lösungen ineinem virtualisierten RZ

3

Backupselten,langsam,aufwendig&kein DisasterRecovery

1.

StorageReplicationSynchronKosten,komplex,Performance,EntfernungA-SynchronSnapshotoverhead,komplex &locked-in

2.

VMRecoverylangsam,komplex,untested&error-prone

3.

Page 4: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Herausforderung Logischer Fehler

SNAPSHOT BASED PIT50 VMs x 24 Snapshots = 1,200!= Broken Recovery, Unscalable

Page 5: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Virtuelle Applikationen

Firewall

Load Balancers

Web Servers

File Servers

Index Servers

Database Servers

Page 6: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

REPLIKATION

VM2

VM3

VM4

VM5

VM6

VM7

VM8

VM9

VM10

VM11

VM12

VM2App2

VM3App2

VM4App2

VM5App2

VM1App3

VM2App3

VM3App3

VM4App3

VM5App3

15 MinRPO

1 HourRPO

4 HoursRPO

8 HoursRPO

RPO 12 Hours

RPO 24 Hours+

Ohne Consistency GroupingsRECOVERY HYPERVISOR

VM1App2VM1

No Consistent Recovery

= UNSCALABLE

RECOVERY HYPERVISOR RECOVERY HYPERVISOR

Page 7: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

• Wiederherstellungszeitmeistensunbekannt(RTO)• DatenverlustvonStunden(RPO)

ImmermehrVMs!!!!

Ergebnis

7

Page 8: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

ZertoVirtualReplication

8

Migration(svMotion,vMotion)

DisasterRecoveryAutomation(VMwareSRM)

Replication

(vSphereReplication,StorageReplication)

Backup

ContinuousDataProtectionEMCRP,EMCRP4V,DBTools

Page 9: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Zerto virtualisiert dieReplikation

9

ZertoHypervisorbasierteReplikation

Replikationenbefindensichamfalschen Platz– aufdem

physischenLayer

Hypervisor

Security

Netzwerk

Server

Storage

Replikation

Page 10: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

EnterpriseClassVirtualReplication

10

Hypervisor-basedHighlyscalable

Compression,throttling,resiliency

PrimäreSeite

vCenter

VM VM

VM VRA

VM VM

VM VRA

BC/DRSeite

vCenter

VM VM

VM VRA

VM VM

VM VRAWAN

VM-LevelReplication

ZVM ZVM

Continuousreplicationbis 30Tagen zurück!RPO=SekundenKeine Snapshots=Keine Auswirkungen

SoftwareonlyInstallationinMinutenNodowntime

Bespare Kosten &repliziere vonAnythingtoAnything

Vermeidet Komplexität,WiederverwendungHardware

Page 11: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

VirtualProtectionGroups(VPG)

11

ProduktiveSeite

EnterpriseApplikationen

VM

VM

VM VM VM

VM

vDisk

vDiskvDisk

vDisk

CRM,ERP,SQL,Oracle,SharePoint,Exchange

CRMVPG VM VM VM VM VM

VM

VM VM

VM

vDisk vDisk

vDisk

VM

SQLVPG VM VM VM VM VM

VM

VM

VM VM

VM

vDisk

vDisk vDiskvDisk

vDisk

VM

RPO4Sekunden

RPO9Sekunden

ERPVPG RPO6SekundenVM VM VM VM VM

Page 12: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

REPLIKATIONmit Consistency Groupings

RECOVERY HYPERVISORRECOVERY HYPERVISORRECOVERY HYPERVISOR

Consistent Recovery

= SCALABLE

VM1 VM2 VM3 VM4 VM5 VM6 VM7 VM8 VM9 VM10 VM11 VM12

VM1App2

VM2App2

VM3App2

VM4App2

VM5App2

VM1App3

VM2App3

VM3App3

VM4App3

VM5App3

4Seconds

6 Seconds

8 Seconds

10Seconds

12 Seconds

14 Seconds

RPO

RPO

RPO

RPO

RPO

RPO

Page 13: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

ContinuousDataProtection

13

Simplyre-windtoAnyPointinTime

ProtectionagainstLogicalFailures,notjustdisasters

RecoverfromSecondsago,notthelastBackuporSnapshot

ApplicationConsistencyandwrite-orderfidelity

RecoverMulti-VMAppsconsistentlydowntothesecond

Page 14: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

DisasterRecoveryAutomation

14

Page 15: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

DRTestReporting– ohne Risiko

15

• PCI• ISO• SOX• HIPAA• SEC

TestingRegulations

Page 16: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

minimale Datenverlust (RPO)

Keine Scheduling, weniger Komplexität

Keine Snapshots

Kein Performance Verlust

Page 17: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Minimale und getestete Ausfallzeiten (RTO)

No-Impact DR Testing in Working Hours

See RPOs in Seconds & RTOs in Minutes

Generate Reports For Compliance & Auditing

Always Invoke DR Redundant Mgmt

Page 18: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Storage,Hypervisor,Cloudunabhängig

18

3PrivateCloud– AnyStorage Multi-Hypervisor

2

1

4

HybridCloud– DRaaS,Intra-Cloud&ReverseDRaaS

PublicCloud– DRaaStoAWSSatelliteOffices– AnyDistance

Page 19: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

VorteileZertoVirtualReplication

19

• Flexibilität– EinfacheHandhabungundInstallation

– KeinSnapshotManagement– KeineAgenten!– 30Hosts/ca.350VMsà 90Minuten– PointinTimeRecoveryvonzusammenhängendenVMs(VirtualProtection Groups)

– Hardware,Hypervisor undCloudunabhängig– IntegrationneuerFirmen– KonsolidierungH/W,Hypervisor,RZ– SchnelleMigrationen– ErsteSchritteinHybridCloud(Azure,AWS)

– MinimaleBandbreitefürRPOsimSekundenbereich

• Skalierbarkeit– KeinnennenswerterPerformanceImpact– UnbegrenzteZahlderConsistency Groups(VirtualProtection Groups)– Bis30TagenSicherungbeieffizientenSpeicher(7-20%ExtraSpeicherkapazität)– 250TBBackupwöchentlichohnePerformanceverlust

Page 20: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

VorteileZertoVirtualReplication

20

• Kosten– Continuous Protection undminimaleAusfallzeiten

• RPOimBereichwenigerSekundenstatt>15Minuten– Wenigerfehleranfällig(Schulung,Abstimmung,Kompatibilität,Upgrade/Updates,etc.)– PotentielleEinsparungen

• Backup(Usecase SurreyCountyCouncil– 800.000EuroTSM)• Backend(Use CaseZürichVersicherung- DataDomain)• StorageSoftwareLizenzen(Snapshot,Replikation)• Oracle/MSSQLLizenzen• Rechenzentrum,Personal,BackendInfrastruktur,Niederlassungen,etc.

– DRTests• JederzeitundohneUnterbrechungmitdetailliertemReporting

– IntegrierbarinheutigeStorageUmgebung• KeineweitereHardwareoderdedizierteHostsbenötigt

– Bootable Clones

Page 21: Application Business Continuity - LB- · PDF fileApplication Business Continuity ... Forrester Disaster Recovery Journal 2013. ... • SOX • HIPAA • SEC Testing Regulations

PRIVATEANDCONFIDENTIAL

Danke Schön!!!

21

Fragen?