Deploying Tableau at Enterprise Scale in the Cloud

Similar documents
All about SAML End-to-end Tableau and OKTA integration

Tableau Bridge How does it do it?

Developing Microsoft Azure Solutions (70-532) Syllabus

Developing Microsoft Azure Solutions (70-532) Syllabus

AKAMAI WHITE PAPER. Enterprise Application Access Architecture Overview

Developing Microsoft Azure Solutions (70-532) Syllabus

About This Document 3. Overview 3. System Requirements 3. Installation & Setup 4

ArcGIS Enterprise: Portal Administration BILL MAJOR CRAIG CLEVELAND

Installing and Configuring VMware Identity Manager Connector (Windows) OCT 2018 VMware Identity Manager VMware Identity Manager 3.

Directory Integration with Okta. An Architectural Overview. Okta Inc. 301 Brannan Street San Francisco, CA

High Availability and Disaster Recovery. Cherry Lin, Jonathan Quinn

Tableau Online. Understanding Data Updates

REVISED 6 NOVEMBER 2018 COMPONENT DESIGN: VMWARE IDENTITY MANAGER ARCHITECTURE

Inside Symantec O 3. Sergi Isasi. Senior Manager, Product Management. SR B30 - Inside Symantec O3 1

Single Sign-On for PCF. User's Guide

Office 365 and Azure Active Directory Identities In-depth

SECURING AWS ACCESS WITH MODERN IDENTITY SOLUTIONS

Administering Your ArcGIS Enterprise Portal Bill Major Craig Cleveland

SAP Security in a Hybrid World. Kiran Kola

User Guide. Version R94. English

Integration Patterns for Legacy Applications

M2M / IoT Security. Eurotech`s Everyware IoT Security Elements Overview. Robert Andres

The Pathway to the Cloud Using Azure SQL Managed Instance

User Guide. Version R92. English

Security Guide Zoom Video Communications Inc.

Security and Compliance at Mavenlink

Citrix Workspace. Lausanne Laurent Strauss Christophe Beaugrand

Tableau Server - 101

Cloud Operations Using Microsoft Azure. Nikhil Shampur

VMware AirWatch Content Gateway for Linux. VMware Workspace ONE UEM 1811 Unified Access Gateway

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

NetScaler for Apps and Desktops CNS-222; 5 Days; Instructor-led

ShareFile Technical Presentation

Citizen Data Scientist is the new Data Analyst

Google Identity Services for work

ArcGIS Online A Security, Privacy, and Compliance Overview. Andrea Rosso Michael Young

High Availability & Disaster Recovery. Witt Mathot

Configuring ArcGIS Enterprise in Disconnected Environments

Tableau Server Security in Depth

Cisco Webex Control Hub

VMware Identity Manager Connector Installation and Configuration (Legacy Mode)

RECOMMENDED DEPLOYMENT PRACTICES. The F5 and Okta Solution for High Security SSO

WHITEPAPER. MemSQL Enterprise Feature List

Exam : Implementing Microsoft Azure Infrastructure Solutions

Access Denied! Decoding Identity Aware Proxies

VMware Identity Manager Cloud Deployment. DEC 2017 VMware AirWatch 9.2 VMware Identity Manager

Total Cost of Ownership Overview ADFS vs OneLogin WHITEPAPER

Informatica Cloud Data Integration Winter 2017 December. What's New

VMware Identity Manager Cloud Deployment. Modified on 01 OCT 2017 VMware Identity Manager

VMware AirWatch Content Gateway for Windows. VMware Workspace ONE UEM 1811 Unified Access Gateway

O365 Solutions. Three Phase Approach. Page 1 34

WHITE PAPER AIRWATCH SUPPORT FOR OFFICE 365

StorageZones Controller 3.4

VMware AirWatch Content Gateway Guide for Linux For Linux

Expertise that goes beyond experience.

InterCall Virtual Environments and Webcasting

StorageZones Controller 3.3

20533B: Implementing Microsoft Azure Infrastructure Solutions

Deploying VMware Identity Manager in the DMZ. JULY 2018 VMware Identity Manager 3.2

SAML-Based SSO Solution

Okta Integration Guide for Web Access Management with F5 BIG-IP

OneLogin SCIM. Table of Contents. Summary... 2 System Requirements... 2 Installation & Setup... 2 Contact Us... 6

Enabling Single Sign-On Using Microsoft Azure Active Directory in Axon Data Governance 5.2

SAML-Based SSO Solution

Top 7 Data API Headaches (and How to Handle Them) Jeff Reser Data Connectivity & Integration Progress Software

SHAREPOINT 2016 ADMINISTRATOR BOOTCAMP 5 DAYS

Microsoft Azure Course Content

Administering Jive Mobile Apps for ios and Android

Cloud FastPath: Highly Secure Data Transfer

Why Microsoft Azure is the right choice for your Public Cloud, a Consultants view by Simon Conyard

Deploying and Using ArcGIS Enterprise in the Cloud. Bill Major

Server Software Installation Guide

271 Waverley Oaks Rd. Telephone: Suite 206 Waltham, MA USA

EasyMorph Server Administrator Guide

Liferay Security Features Overview. How Liferay Approaches Security

VMware AirWatch Content Gateway Guide for Windows

ArcGIS Enterprise Security: An Introduction. Randall Williams Esri PSIRT

Configure Unsanctioned Device Access Control

Azure Marketplace Getting Started Tutorial. Community Edition

Aurora, RDS, or On-Prem, Which is right for you

MD-101: Modern Desktop Administrator Part 2

Server Installation and Administration Guide

Document Sub Title. Yotpo. Technical Overview 07/18/ Yotpo

Deploy. Your step-by-step guide to successfully deploy an app with FileMaker Platform

AppController :21:56 UTC Citrix Systems, Inc. All rights reserved. Terms of Use Trademarks Privacy Statement

Understanding of basic networking concepts (routing, switching, VLAN, firewall functionality)

VMware AirWatch Content Gateway Guide for Windows

VMware AirWatch Cloud Connector Guide ACC Installation and Integration

SecureFactors. Copyright SecureFactors Corp ver 1.0a

SharePoint Server 2016 Feature Comparison* Accessibility Standards Support Yes Yes. Asset Library Enhancements/Video Support Yes Yes.

DreamFactory Security Guide

Education and Support for SharePoint, Office 365 and Azure

EveryonePrint Integration with Equitrac. Configuration Guide. EveryonePrint Integration with Equitrac Page 1 of 14

Securing Office 365 with Okta

Azure Marketplace. Getting Started Tutorial. Community Edition

ArcGIS Enterprise Security: Advanced. Gregory Ponto & Jeff Smith

How Parallels RAS Enhances Microsoft RDS. White Paper Parallels Remote Application Server

VMware AirWatch Content Gateway Guide for Windows

Migrating Enterprise Applications to the Cloud Session 672. Leighton L. Nelson

Getting Started with Tableau Server

Transcription:

# T C 1 8 Deploying Tableau at Enterprise Scale in the Cloud Calvin Chaney Senior Systems Analyst Enterprise Analytics / Tableau

Enterprise Analytics supports Tableau s mission of driving self-service analytics across an enterprise. We provide highly available and accurate data sources and governance that enable, rather than restrict, self-service at scale.

Calvin has moved to the cloud

Agenda Authentication and User Provisioning Connecting to On-premises Data with Tableau Bridge Connecting to Cloud Data Tableau Server Considerations

Authentication and User Provisioning

Tableau Online Authentication Types

TableauID

Tableau Server Authentication Types Active Directory/LDAP identity stores Kerberos/SSPI Mutual SSL SAML/OpenID IdPs SAML can be configured server-wide and/or site-specific Local Default authentication type requiring no additional configuration steps Username and password No password policies (strength requirements, lockout on failed attempts, etc.)

User Provisioning Add users to site manually Enter usernames individually Import via CSV Specify authentication type Automation Options Active directory/ldap group synchronization Tableau Server System for Cross-domain Identity Management (SCIM) Tableau Online Downstream applications kept in sync Currently supported with OneLogin (Okta coming soon in Beta) Tabcmd script with Python / PowerShell

Connecting to On-premises Data with Tableau Bridge

Tableau Bridge Allows you to keep behind-the-firewall data sources fresh Separate installer from Tableau Desktop (new for 2018.2) Schedule refresh jobs for extracts or live connections On-premises data (Extracts & Live) File-based data, i.e. Excel, CSV (Extracts only) Cloud data accessible only from within a private network and not from the public internet i.e. Amazon RDS or databases residing in VPC (Extracts only)

Tableau Bridge Uses Tableau Data Server Data sources in workbooks must be published rather than embedded Develop a data source naming convention to help others know what they re connecting to and prevent redundancy Use certification and to help users find trusted data via Recommendations

Tableau Bridge Publishing Publish workbook and its data sources in one step Live and/or extract data sources Can include embedded data sources that connect to accessible Cloud data

Tableau Bridge Extract Refresh Flexible scheduling Refresh as frequent as every 15 minutes Full and/or incremental schedules Multiple schedules supported Database credentials stored in the Bridge client On-demand refresh job can be triggered from the client

Tableau Bridge Client Assignment

Tableau Bridge Clients Site admins can set up centrally-managed clients: Use a shared AD account Use service mode (runs in the background, restarts after reboot) Configure multiple clients to load-balance live queries Critical extract data sources No client assignment for data sources using a live connection Users can set up their own client to refresh extracts: Necessary when database credentials cannot be shared with the admin May not be ideal for frequent refresh jobs, especially in organizations that use laptops Site admins choose which clients serve live queries

Tableau Bridge Administration

Connecting to Cloud Data

Connecting to Cloud Data Whitelist Tableau Online IP addresses with data provider Live connections and extracts Works for most SQL-based data Support for SSL encrypted connections Embedded or published data sources OAuth connections Google BigQuery & Analytics, Dropbox, QuickBooks Dashboard starters Salesforce, Eloqua, Marketo, ServiceNow

Scheduling Refreshes on Tableau Online Pre-defined schedules Refresh frequency up to hourly Similar to scheduling in Tableau Server (via Backgrounder) Job timeout limit of 2 hours Use incremental, hide unused fields, and/or add extract filters

Cloud Data Refresh Tasks Admin View Monitor status for extract refresh jobs Successful, failed, and in progress Useful for troubleshooting when extracts from cloud data sources are stale

Tableau Server Considerations

Tableau Server Considerations Ideal for heavy extract/embedded scenarios Extracting from on-premise databases concurrently Control and Compliance Industry-specific regulations Audits for guaranteeing physical control of content and data Guest User Embedded views without having to authenticate

Tableau Server Considerations Multiple environments QA/Failover/Production Requires downtime for upgrades and maintenance Optionally redirect traffic to failover environment Script nightly backup/restore from production Change users role to Explorer to effectively make failover environment read-only Tableau Mobile access more complex (VPN\MDM)

Tableau Server Linux or Windows CentOS, RHEL, Ubuntu On-premises Hardware Public cloud Amazon Web Services Google Cloud Platform Microsoft Azure

Comparison Summary Authentication via SAML, OpenID, or TableauID Authentication via Active Directory/LDAP, SAML, OpenID Users provisioned via list of email addresses, CSV, and SCIM Group synchronization from AD/LDAP identity stores Published data sources required when connecting to on-premise data (live connection or extracts) Ideal in heavy extract environments via on-premise data Tableau Mobile can connect with no VPN VPN setup / Mobile Device Management required Fully hosted SaaS, using Bridge client machines for connecting to on-premises data On-premise hardware or public cloud

R E L AT E D S E S S I O N S Tableau Bridge How does it do it? Wednesday 12:00 PM - 1:00 PM MCCNO L2-240 IT @Tableau Cloudy with 100% chance of data Thursday 2:15 PM 3:15 PM MCCNO - L3-335

#TC18 Thank you!

Please complete the session survey from the My Evaluations menu in your TC18 app