Upload
others
View
2
Download
0
Embed Size (px)
Citation preview
©2019 VMware, Inc.
Simon Kofkin-Hansen, CTO & Inventor of IBM Cloud for VMware Solutions, Distinguished Engineer Cloud Automation
Confidential │ ©2019 VMware, Inc.
All the Benefits Without The Disruption – Moving VMware Workloads to the Cloud
Hybrid Cloud
With the challenges of new business models, hybrid, multicloud reality presents new opportunities, as well as new challenges …
CNET3380BU / August 2019/ © 2019 IBM Corporation 2
Traditional IT
Public Clouds
& SaaS
Private
Clouds
Dedicated
Clouds
of enterprise customers using multiple clouds94%
of enterprise customers using more than one public cloud provider 67%
A real world look at multicloud
Movement
between clouds73% priority
concern
Connectivity
between clouds82% priority
concern
Consistency
of management67% priority
concern
20%of workload has transition – why is this?
Introducing new technologies and Clouds introduces challenges on integrating with existing technology
CNET3380BU / August 2019/ © 2019 IBM Corporation 3
Containers
Integration with existing or new
Kubernetes based Container
platforms
VMs
Integration existing or new
Virtual Machines on VMware
vSphere or Red Hat Enterprise
Linux KVM.
x86 Bare Metal
ServersVM
Integration with existing or new
Bare Metal Servers
Network Security
How do I integrate all these technologies
together across my hybrid, multi-cloud estate?
How do I ensure that my applications and
workloads are secured with a consistent
security policy?
Applications
4
• IBM Cloud was first to market delivering and operating VMware workloads in the public cloud
• A decade-long partnership led to a new offering in 2016
• IBM Cloud was named the 2017 & 2019 VMware Partner of the Year
• IBM & VMware has established a Joint Innovation Lab to further advance technologies and experiences on the IBM Cloud
VMware on IBM Cloud – Foundation
for Hybrid Cloud
IBM is…
#1 operator of VMware workloads in world
#1 VMware SISO partner
#1 VMware NSX customer and business partner
#2 VMware vSAN customer and business partner
5
40% cost
savings over 5
years
~2000 customers running
VMware workloads
with IBM
50+IBM Cloud
Datacenters
support VMware
Source: IBM Cloud
+
The best cloud for VMware solutionsThe most secure, enterprise-grade VMware cloud at global scale
VMware Expertise at Global Scale
World’s largest operator of VMware
workloads
100,000+ VMs migrated to the cloud
without re-platforming or re-
factoring
Deep expertise in highly regulated
industry verticals
Offload management of day-2
operations
Accelerate your journey to cloud by
leveraging IBM Services to help
transform your IT
Security Leadership
Highest level key management
encryption
Prevent accidental IT configuration
changes or malicious insider threats
Comply with data sovereignty
regulations across 35 WW VMware DCs
Enforce compliance requirements and
ensure audit readiness
Ensure integrity of backup & DR sites
when recovering from cyber attacks
Enterprise Grade
Hardened design from requirements based on most security
& compliance conscious global enterprises
Operational consistency across on-prem & IBM Cloud
Run mission-critical VMW workloads on HA infrastructure
Run SAP workloads on SAP-certified servers with automated
landscapes
Right-size infrastructure, optimize performance and reduce
TCO including no internal data bandwidth charges across
IBM Private Network
Modernize VMW workloads with Red Hat OpenShift & PaaS
across VMs & containers
Seamless integration and management providing
automation-deployed solutions
Multiple consumption models both managed and
unmanaged
7
Data Center Extension
Use Cases
Footprint expansion/ On-demand capacity
Test/Dev
Virtual Desktops & Published Apps
Expand
Maintain
New DR
Replace existing DR
Complement existing DR
Primary Secondary
Economics
Application specific
Data center wide
Infrastructure refresh
Consolidate Migrate
Application modernization
Next-gen appbuild out
Hybrid applications
Disaster Recovery Innovation @ Speed
VMworld U.S. - August 2019 announcements
• vRealize operations (vROPS) &
vRealize Log Insight (vRLI)
• Integration of Caveonix and Fortinet
within IBM Cloud Secure
Virtualization (Hytrust and Intel)
3
Easier day-2 operations Workload Protection &
Compliance Readiness Infra Advancements
• Cascade Lake server for VMware &
vSphere 6.7u2
• vSan testing SAP HANA done by VMW on
IBM Cloud
21
• Smaller node sizes 12 – 16/18 to
complement current offering of 28
compute nodes
• Improved HCX pricing model
• 90-day single-node trial for migration
up to 20 VMs with Veeam & Zerto
• Workload Protection & Compliance
Readiness promotion with infra and
partner consulting services
6
VMware Mission
Critical workloads Pricing & PromotionsHorizon 7
• Reference architecture (no automation)
using vCS for virtual desktop workloads
54
VMworld Europe - November 2019 announcements
• Beta for Multi-tenant leveraging VMware vCD
in Dallas / Frankfurt with GA Feb/Apr 2020
• IBM-managed up to hypervisor with on-
demand or reserved consumption options
• Veeam & Zerto(April) for backup/DR
• IBM Resiliency managed DRaaS
• Early Access Preview for Rapid build of
production SAP landscapes for bare metal
and VMware with Vnomic
• Onapsis SAP security scan ref architecture
3
IBM-Cloud-managed shared
& dedicated
SAP
21
6
Open Shift on VMware
• Open Shift integration with VMware for
customers who want to consume Openshift to
transform and modernize their VMware apps
54
• Resilient stretched vSAN clusters within
Multi-Zone Regions for HA
• HA vCenter Server Appliance
VMware Mission Critical
workloads • Expand reach through channel & enable
VMW platform reselling & add-on services :
Agreement with HCL reached
• Accelerate SAP on IBM Cloud
GSI Partnership
• Integration of Hyper Protect Crypto
Services into HyTrust as part of Workload
Protection & Compliance for highest level
of cloud security for encrypted keys
Security
IBM Cloud / October 2019 / © 2019 IBM Corporation
Deep VMware
expertise at global
scale
IBM Cloud is the right public cloud for VMware solutionsThe most secure, enterprise-grade cloud at global scale
Hardened design
based on enterprise
requirements
Trusted by the most
security conscious
enterprises
10
Client
On-Premises IBM Cloud
VMware SDDC
VM VM VM VM
VMware
HCX
Heritage AppHeritage App
Containers in Red
Hat OpenShiftIBM Cloud Catalog
IBM Watson
Object
Storage
Machine Learning
IBM Kubernetes
ServiceHybrid
Connectivity
VM VM
SAP Netweaver &
S/4HANA
11
Lift, shift, and transform methodology
Heritage app
often written as
monolithic
Heritage app
migrated to IBM
Cloud Heritage app
refactored with
containers
Cloud HostedLift & shift VMware VMs via
VMware HCX into public cloud
for immediate speed and scale
benefits
Cloud EnabledWithout re-architecting the app, containerize
stateless components leaving stateful
components untouched
Cloud NativeRearchitect apps at your own
pace or build net-new apps in
cloud leveraging microservices,
containers, & DevOps tooling
Heritage app
utilizing IBM
Cloud services
Cloud EnabledLift & transform VMs by
extending them into public
cloud services
IBM CloudClient on-premises
Microservices
Journey to modernizing VMs in the IBM Cloud
IBM Cloud Private
(hosted)
Analytics IBM
Watson
Object
Storage
Machine
Learning
IBM Kubernetes
Service
IBM Cloud
Services
IBM Multi-Cloud Manager (MCM), Content Delivery & Catalogs, Unified UX for Kubernetes Environments
ICP
Hosted Red Hat
Open Shift
NSX
Note Open Shift Roadmap 4Q19 & Intgr with NSX-T 1Q20
Red Hat
Open ShiftIBM Kubernetes
Service
Microservices
Linux
O/S
Red Hat
Open Shift
STORAGE
LAYER
PHYSICAL
LAYER
VIRTUALIZATION
LAYER
Application
User
Virtualization
Admin
VIRTUAL
MACHINES
CloudControl
DataControl
Applications
vSphere / vCenter / NSX
Intel® TXT
Encryp
ted V
Ms a
nd D
ata
Authenticate vAdmin access
Control privileged actions
Ensure real-time visibility
Apply compliance standards
Run on trusted Intel TXT servers
HyTrust CloudControl®Secure governance over VMware infrastructure
Control how ‘tagged’ VMs are
managed
Limit VM placement to trusted
hosts and geographies
Limit data decryption to trusted
hosts and geographies
Restrict where VMs can be run
HyTrust BoundaryControlsWith Data Geo-Fencing using Intel TXT and TPM
1
Automatically protect any VM
Transparent key management
Zero-downtime deployment
HW based AES-NI acceleration
HyTrust DataControl®Encryption of VMs & data
2
3
3
2
1
IBM Cloud
Hyper Protect
Crypto Services HSM
First FIPS 140-2 Level 4 HSM
Multi-Tenant KMS
Keep Your Own Key (KYOK)
Integrates with HyTrust
IBM® Hyper Protect Crypto ServicesHardware Security Module
4
IBM Cloud Hyper Protect Crypto Services & HyTrust KeyControl Secure VMware Workloads and Protect Business-Critical Data on IBM CloudGeo-location-aware governance, data-decryption, and compliance readiness
4
SDN is a key component to enable an agile and efficient Software Defined Data Center Environment
CNET3380BU / August 2019/ © 2019 IBM Corporation 13
Equivalent capabilities are required
for optimal IT responsiveness and
agility
Compute and storageNetwork
Compute, storage, and network
NSX-T is the glue that can integrate a consistent network and security policy between VMs, Bare Metal and Containers
CNET3380BU / August 2019/ © 2019 IBM Corporation 14
NSX capabilities
• Software based network
virtualization
• Software-based overlay
• Distributed routing
• Distributed firewalls
• API-driven automation
NSX-T provides a network hypervisor-like function virtualizing network communication construct and segments utilizing the existing IP network without replacing existing network hardware
• Multi-platform support – ESXi and KVM
• Multi-workload support – VMs, Containers and Bare Metal
• Provides Network Function Virtualisation such as Load Balancer and VPN
capabilities
• Includes Security features such as Gateway Firewall, Distributed Firewall
and Identity Firewall capabilities
NSX-T
CNET3380BU / August 2019/ © 2019 IBM Corporation 15
Westpac
“We’ve seen a massive reduction in the time it
takes to set-up and host applications with a 40
percent saving in set-up costs from start to
deployment of an application.”
-Dave Curran, CIO, Westpac
Client Success Story
Problems solved with IBM Cloud
• Reduction in delivery times to bring
applications to market faster.
• A new route to the cloud to modernize legacy
applications.
• High availability within Australia and all over
Asia Pacific.
• Low cost and scalable disaster recovery
solution.
• Major step forward in multi-cloud strategy.
16
Migration to IBM CloudMigration Requirements and Constraints
Business challengeCustomer experience is a key competitive differentiator for
airlines, and increasingly depends on digital channels. How
could American meet its customers’ appetite for instant
information and services?
TransformationWorking with IBM to migrate some of their key legacy
customer-facing applications to HCX on IBM® Cloud™, while
simultaneously transforming them to a cloud-native based
microservices architecture, is enabling the world's largest
airline to innovate faster in response to changing customer
needs.“IBM was pivotal in helping us work in a different way. I think we even surprised ourselves on how fast we could put the app into customers' hands.”—Jason Hobbs, Senior Manager, Application Development,
American Airlines
VMware Solutions Portfolio on IBM Cloud
Disaster
Recovery
Backup
DR, Backup, HAIBM Cloud
Secure
Virtualization
Security
Gateway and
Load Balancing
Firewall
DaaS
Storage
Workload migration – VMware Hybrid Cloud Extension (HCX)
App extension
HA Mission Critical
VMware on IBM Cloud
Containers
Monitoring and
Compliance
IBM Key Protect with Hyper Protect
Crypto Services
IBM Cloud Bare Metal infrastructure
IBM Cloud File
Storage
IBM Cloud
Objects
Storage
VMware
vSAN
Storage
VMware Software Defined Data Center stack
Top 10 reasons to run VMware
workloads on IBM Cloud
1. Native root access & visibility from
app down to bare metal
6. Secure private network backbone and
geographic reach
2. Flexible hardware configs &
licensing options7. Migration made easy
3. Multiple storage tiers 8. Deep VMW expertise at a global scale
4. Design is secure to the core & helps
compliance readiness
9. Modernize apps to accelerate
innovation
5. Minimize unexpected downtime and
data loss
10.Leverage & optimize investment in
IBM middleware
19
Come & Visit IBM booth
Sign Up for our Roundtable
Session on 3 Dec @ IBM Booth
Build, migrate or modernize
applications with IBM Cloud
Explore insights and have in-depth conversation on -Application
modernization-Cloud native development-High-performance
computing and storage
Gajun Ganendran
CTO, IBM Cloud Platform,
AP
Aju Murjani
Sales Leader, IBM Cloud
Platform, AP
Interested in knowing more?