key management considerations for cloud deployments...key management considerations for cloud...

12
Key Management Considerations For Cloud Deployments For Cloud Deployments Stephen Elliot VP, Business Unit Strategy Infrastructure Management and Automation

Upload: others

Post on 27-May-2020

11 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Key Management ConsiderationsFor Cloud DeploymentsFor Cloud Deployments

Stephen ElliotpVP, Business Unit StrategyInfrastructure Management and Automation

Page 2: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

The Transition to “Elastic” IT

• SaaS, IaaS, PaaS• Virtualization, SOA,

• Network• e-mail based groups

, ,Web 2.0

The Cloud:•Elastic

g p• Moving data

Distributed

Web 2.0:•Collaborative•Mobile•Dynamic

•Elastic•Self-provisioning•Pay per use•Virtualized•Simplified

• Minicomputer• Unix

Mainframe

Distributed x86 Computing

y p

2009

E i h k h l d h f h

2

Economic shock has accelerated the pace of change

July 29, 2009 Copyright © 2009 CA

Page 3: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Key Cloud Management Challenges

• “Linux boxes will not run themselves” Operations

• Who will configure, tune, certify, schedule and make updates to virtual appliances?

• Ensure application vulnerabilities map 1:1 on production host (e g QA runs Microsoft

• Virtual machine configuration management

• Account management• Public life cycle management• Infrastructure outsourcing support on production host (e.g. QA runs Microsoft

Hyper-V, Prod. may run Xen)

• A new asset class (Virtual Machine) that is prone to sprawl, rogue instances and unapproved usage

• Infrastructure outsourcing support• Application outsourcing support

Applications• Application/web server security

• Is there a plan to develop a new set of operational processes, procedures and standards?

• Are there guidelines to harden a cloud-based OS?

• Application/web server security• Database security• Message-level security• Local file system encryption• Log file encryption

It’s better to rely on a known software stack configuration. We’re still probably a few years from a Trusted Computing Platform Cloud.

• How important is it to the end users to know Hardware• Operating system hardening

• Network security

pwhere, geographically, their data is stored?

p g y g• Physical server segregation• Perimeter security• Virtual (hyper-visor) firewall

configuration

July 29, 2009 Copyright © 2009 CASource: Accenture

Page 4: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

What Your Peers and Analysts Tell Us

Cloud Scalability is Critical to Success

> Top-down approach

> Integrated, end-to-end fault andperformance management

> Model-based root cause and impact analysis

> Virtualization management

> Service provider class

> Integrated APM> Integrated APM

> Customizable business service views

4 July 29, 2009 Copyright © 2009 CA

Page 5: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Virtualization a Driving Factor for Automation in the Cloud

Value Maturity

• Dynamic Virtualization Management

• Self Service • Application Deployment

Agility/Speed

Business-DrivenBusiness Driven Assurance & Automation

• Server & ApplicationProvisioning + Configuration Mgt

Risk Reduction

Automation

ResponsiveService AutomationConfiguration Mgt.

• Virtualization Provisioning• Workload Automation• Process AutomationCost

ReductionEfficientDomain A t ti

Automation

• Application/Systems Discovery• Physical and Virtual

Availability & Performance Mgt.QualityActiveDiscovery & M it i

Automation

Inform Conform(A )

TransformPhases

y g• Configuration Monitoring

Quality Monitoring

5

(Automate)

July 29, 2009 Copyright © 2009 CA

Page 6: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Management Will Enable Broad Virtualization Rollouts in the Cloud

Management “Tipping Points”

Development and Test

LimitedProduction

ExtensiveProduction

EnterprisePlatform

• Few mgt. needs

• Little exec. visibility

• No process impact

• P+V Systems Mgt.

• Performance Mgt.

• Business Continuity

• Provisioning Change

• Integrated Network Mgt.

• Application Performance

• Private & Public Clouds

• Service Oriented Infrastructurep p

• Few compliance, security concerns

• Provisioning, Change& Configuration Mgt. • Chargeback

• Compliance & Security

• Capacity Planning

• Predictive Orchestration

• Next Generation DC

July 29, 2009 Copyright © 2009 CA

Page 7: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Integration Is Critical For Maximum Efficiency

Public Clouds:(Provider-Internet)

Private Clouds:(Data Center-Intranet)

Federated Clouds:(Public and Private)(Provider Internet) (Data Center-Intranet) (Public and Private)

Use a common set of toolsf i d f ffi i i

NetworkNetwork Data CenterData Center Database Database SecuritySecurity Application Application

for a myriad of efficiencies

& Systems Mgt.

& Systems Mgt.

Data CenterAutomationData CenterAutomation

Database Mgt.

Database Mgt.

SecurityMgt.

SecurityMgt.

Application Mgmt.

Application Mgmt.

•Voice/Video/Data •Workload automation •End-to-end •Transaction mgt.•ID and access mgmt.

•Models-based

•Automated

•Thresholding

•Self-service

•Business policy driven

• performance

• integration

•Automatic detection

•Multi-threshold alarms

•Root cause analytics

•Business impact

•Information mgmt.

•Threat management

Virtual and Physical Management

July 29, 2009 Copyright © 2009 CA

Page 8: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Recognizing the Cloud Service Buyer

Management Delivers Service Quality

Business Users

Customer

Consumers IT Administrators Development/Test

Cl dCloudServiceModels

IAAS PlatformAAS SAAS ProcessAAS

Management

SecurityProcessAutomation

InfrastructureOptimization

ApplicationPerformance

Root CauseAnalytics

Models-based

8 July 29, 2009 Copyright © 2009 CA

Page 9: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Cloud Strategy Guidance

Global Use Case: 40K servers, 50K MIPS, 20+ PB

> Pricing: to clients must be competitive vs benchmarks

> Service quality: reliability business impact service > Service quality: reliability, business impact, service restoration

> IT capabilities: good is “good enough” versus customization> IT capabilities: good is good enough versus customization

> Risk management: understand security requirements/entitlements, protect against accidental actsq / , p g

> Team/Organization: right people and right partners

Can these principles be YOUR Cloud scorecard?

9 July 29, 2009 Copyright © 2009 CA

Page 10: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Key Recommendations

> Virtualization is a critical architecture for cloud services

> Budget for management that lowers costs, but more importantly positions for long term but more importantly positions for long term growth

i i k h i i> Automation is a key theme ⎯ incorporate it throughout the discussion

10 July 29, 2009 Copyright © 2009 CA

Page 11: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Proven Results Across All Business Segments

SERVICE PROVIDER

GOVERNMENT

FINANCIAL SERVICES

HOSPITALITY RETAIL HOSPITALITY, RETAIL & SERVICES

EDUCATION

TRANSPORTATION & MANUFACTURING

HEALTHCARE

& MANUFACTURING

11 July 29, 2009 Copyright © 2009 CA

Page 12: Key Management Considerations For Cloud Deployments...Key Management Considerations For Cloud Deployments Stephen Elliot VP, Business Unit Strategy ... •Models-based •Automated

Thank You