320 likes | 332 Views
Oracle offers a modern cloud infrastructure with cost-effective, highly-elastic resources for compute, storage, and network. Migrate existing software stacks seamlessly, control with unmatched security, governance, and performance. Explore Oracle's latest technologies for a reliable, predictable, flexible, and fast infrastructure.
E N D
Modern Cloud Infrastructure Paul Jenkins IaaS Product Manager
Oracle Infrastructure as a Service Strategy • Give customers a “high fidelity data center” in the Oracle Cloud • Cost-effective, highly-elastic Compute, Storage, and Network resources • Migrate existing Software Stacks and Automation Tools without re-write • Deep control with unmatched security, governance, and performance It starts with a Modern Cloud Infrastructure…
What is modern ? Confidential – Oracle Internal/Restricted/Highly Restricted
What is modern ? Confidential – Oracle Internal/Restricted/Highly Restricted
Regions and Availability Domains At least three fault-independent Availability Domains (AD) with low latency and high-bandwidth network interconnect Region AD-3 AD-2 AD-1 Enables zero-data-loss architectures (e.g. Oracle MAA) and high availability scale-out architectures (e.g. Cassandra)
Global Connectivity Region Region Region AD-3 AD-3 AD-3 AD-2 AD-1 AD-2 AD-1 AD-2 AD-1
Physical Network Highly scalable, flat physical network design No network or CPU oversubscription provides predictable bandwidth & performance Predictable latency and a maximum of two hops between Compute & Storage even at scale 1 nnn 1 4 1 4 1 32 1 32 Compute Pod Compute Pod
Off-box IO Virtualization Maximizes Flexibility and Security • Enables anything with a network port = most customer flexibility • No Oracle software on the compute hosts = best-in-class customer security • Direct connectivity between compute & storage nodes = industry-leading performance Flat Network To Internet To Customer on-premises network To other AvailabilityDomainsin same region NetworkIngress/Egress Customer Compute Customer Storage Internal Control Planes
Putting it All Together: Reliable, Predictable, Flexible, Fast DBaaSetc…. VMs NVMe storage Bare metal compute Compute & Storage Virtual Network AD-1 AD-2 AD-3 Compute & Storage Physical Network AvailabilityDomains
Cutting-edge, High IO Hardware Technology • High Performance Compute Systems • 36 Cores per Server • Standard: Non-NVMeSSD, 256 GB RAM • High I/O: 13.2 TB NVMe SSD, 512 GB RAM • Dense I/O: 28.8 TB NVMe SSD, 512 GB RAM Compute • High Performance Storage Systems • Local NVMe: up to 28.8 TB/Server, ~4 Million IOPs • Block Storage: 256GB-2TB, 1,500 IOPs per Volume • Object Storage – High Throughput, StrongConsistency Storage
Virtual Cloud Networks VCN 10.0.0.0/16 • Availability Domain 1 • Subnet 1 • 10.0.1.0/24 Route Table • Availability Domain 2 DRG IP-Sec VPN MPLS Fastconnect • Subnet 2 • 10.0.2.0/24 Virtual Router • Availability Domain 3 • Subnet 3 • 10.0.3.0/24 Confidential – Oracle Internal/Restricted/Highly Restricted
Provides governance designed for the enterprise • CustomerTenant • Users & Groups • Compartments • Cost Limits • Customer Compartment • Analytics • Working Group • Compute, Storage, Network • Finance • Development • Compute • Organization • Access • Resources
BMCS Use Cases Confidential – Oracle Internal
Rendering as a Service TENANCY “The Pack” “The Platform” BMCS Render Node Studios / Artists Job Submission BMCS Render Node Management Finished Render BMCS Render Node OVH etc Other Platforms Confidential – Oracle Internal/Restricted/Highly Restricted
HPC Brokering TENANCY Head-End HPC Compute Clusters Portal AVAILABILITY DOMAIN AVAILABILITY DOMAIN AVAILABILITY DOMAIN Accademics BMCS Node BMCS Node BMCS Node BMCS Node BMCS Node BMCS Node BMCS Node BMCS Node BMCS Node Job Submission Workflow Cluster Management High-Tech In-House Universities AWS
GDPR Evil Corp Evil Gmbh Evil Pty Evil Ltd Evil Inc Global Data Protection Regulation (GDPR) comes into effect May 25th 2018 and effects all companies processing data of EU residents. It’s purpose is to strengthen and unify data protection for individuals within theEU. It also addresses export of personal data outside the EU. The primary objectives of the GDPR are to give citizens back the control of their personal data and to simplify the regulatory environment for international business by unifying the regulation within the EU. Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR This requirement extends to all data sovereignty regions and companies will need to deal with data protection and privacy rules. This goes beyond firewalls, encryption etc and requires a different approach to data security. Evil Corp REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR Organizations with holding personal data across multiple regions will need to control and audit access to that data. Evil Corp Corporate Data REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR Anzen’s approach to this is to separate personal identifiable information and store anonymized data across multiple regions. Evil Corp Corporate Data REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc US Regional Data Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR Evil Corp Corporate Data REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR The data will only be able to be useful when brought back together. This is only allowed to be done within the controlling data jurisdiction region and under full audit control. Evil Corp REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc US Regional Data Confidential – Oracle Internal/Restricted/Highly Restricted
GDPR Evil Corp REGION US REGION GB REGION EU REGION APAC Evil Gmbh Evil Pty Evil Ltd Evil Inc Confidential – Oracle Internal/Restricted/Highly Restricted
Technical Solution Near real time synch REGION US REGION EU Spark Node Mongo Node Mongo Node Spark Node Mongo Node Mongo Node Spark Node Spark Node Spark Node Spark Node Mongo Node Mongo Node Spark Cluster MongoDB Cluster Spark Cluster MongoDB Cluster AVAILABILITY DOMAIN AVAILABILITY DOMAIN AVAILABILITY DOMAIN AVAILABILITY DOMAIN VCN VCN AVAILABILITY DOMAIN AVAILABILITY DOMAIN Confidential – Oracle Internal/Restricted/Highly Restricted