Cloud Infrastructure

Similar documents
Basics of Cloud Computing Lecture 2. Cloud Providers. Satish Srirama

Introduction to Cloud Computing

What is Cloud Computing? What are the Private and Public Clouds? What are IaaS, PaaS, and SaaS? What is the Amazon Web Services (AWS)?

Training on Amazon AWS Cloud Computing. Course Content

Basics of Cloud Computing Lecture 2. Cloud Providers. Satish Srirama

CIT 668: System Architecture. Amazon Web Services

Enroll Now to Take online Course Contact: Demo video By Chandra sir

DISTRIBUTED SYSTEMS [COMP9243] Lecture 8a: Cloud Computing WHAT IS CLOUD COMPUTING? 2. Slide 3. Slide 1. Why is it called Cloud?

THE DEFINITIVE GUIDE FOR AWS CLOUD EC2 FAMILIES

LINUX, WINDOWS(MCSE),

Licensing Oracle on Amazon EC2, RDS and Microsoft Azure now twice as expensive!

At Course Completion Prepares you as per certification requirements for AWS Developer Associate.

Amazon Web Services Training. Training Topics:

Amazon Web Services. Block 402, 4 th Floor, Saptagiri Towers, Above Pantaloons, Begumpet Main Road, Hyderabad Telangana India

Amazon Web Services (AWS) Solutions Architect Intermediate Level Course Content

Cloud Providers more AWS, Aneka

Amazon Web Services (AWS) Training Course Content

Basics of Cloud Computing Lecture 2. Cloud Providers. Satish Srirama

POSTGRESQL ON AWS: TIPS & TRICKS (AND HORROR STORIES) ALEXANDER KUKUSHKIN. PostgresConf US

Introduction to Amazon Web Services

AWS: Basic Architecture Session SUNEY SHARMA Solutions Architect: AWS

Cloud Computing 4/17/2016. Outline. Cloud Computing. Centralized versus Distributed Computing Some people argue that Cloud Computing. Cloud Computing.

AWS Administration. Suggested Pre-requisites Basic IT Knowledge

What is Cloud Computing? Cloud computing is the dynamic delivery of IT resources and capabilities as a Service over the Internet.

AWS Solutions Architect Associate (SAA-C01) Sample Exam Questions

Distributed Systems. 31. The Cloud: Infrastructure as a Service Paul Krzyzanowski. Rutgers University. Fall 2013

BERLIN. 2015, Amazon Web Services, Inc. or its affiliates. All rights reserved

OnCommand Cloud Manager 3.2 Deploying and Managing ONTAP Cloud Systems

Amazon Elastic Compute Cloud (EC2)

Cloud Computing. Amazon Web Services (AWS)

ActiveNET. #202, Manjeera Plaza, Opp: Aditya Park Inn, Ameerpetet HYD

ARCHITECTING WEB APPLICATIONS FOR THE CLOUD: DESIGN PRINCIPLES AND PRACTICAL GUIDANCE FOR AWS

PrepAwayExam. High-efficient Exam Materials are the best high pass-rate Exam Dumps

TestkingPass. Reliable test dumps & stable pass king & valid test questions

How can you implement this through a script that a scheduling daemon runs daily on the application servers?

AWS Solution Architect Associate

High School Technology Services myhsts.org Certification Courses

Amazon AWS-Solution-Architect-Associate Exam

How to go serverless with AWS Lambda

Managing and Auditing Organizational Migration to the Cloud TELASA SECURITY

Cloud Computing /AWS Course Content

Cloudera s Enterprise Data Hub on the Amazon Web Services Cloud: Quick Start Reference Deployment October 2014

CPET 581 Cloud Computing: Technologies and Enterprise IT Strategies

AWS_SOA-C00 Exam. Volume: 758 Questions

POSTGRESQL ON AWS: TIPS & TRICKS (AND HORROR STORIES) ALEXANDER KUKUSHKIN. PGConf.EU 2017, Warsaw

POSTGRESQL ON AWS: TIPS & TRICKS (AND HORROR STORIES) ALEXANDER KUKUSHKIN

RACKSPACE ONMETAL I/O V2 OUTPERFORMS AMAZON EC2 BY UP TO 2X IN BENCHMARK TESTING

Next Generation Storage for The Software-Defned World

Chapter 3 Virtualization Model for Cloud Computing Environment

What is. Thomas and Lori Duncan

Introduction to cloud computing

OpenNebula on VMware: Cloud Reference Architecture

SURVEY PAPER ON CLOUD COMPUTING

AWS Well Architected Framework

CS15-319: Cloud Computing. Lecture 3 Course Project and Amazon AWS Majd Sakr and Mohammad Hammoud

COP Cloud Computing. Presented by: Sanketh Beerabbi University of Central Florida

Certificate of Registration

Pulse Connect Secure Virtual Appliance on Amazon Web Services

SAA-C01. AWS Solutions Architect Associate. Exam Summary Syllabus Questions

HOW TO PLAN & EXECUTE A SUCCESSFUL CLOUD MIGRATION

Cloud Programming. Programming Environment Oct 29, 2015 Osamu Tatebe

Pexip Infinity and Amazon Web Services Deployment Guide

Cloud Computing Briefing Presentation. DANU

Cloud platforms T Mobile Systems Programming

Cloud Computing 1. CSCI 4850/5850 High-Performance Computing Spring 2018

AWS Service Drill Downs

BERLIN. 2015, Amazon Web Services, Inc. or its affiliates. All rights reserved

Installation and User Guide

Introduction to data centers

THE ZADARA CLOUD. An overview of the Zadara Storage Cloud and VPSA Storage Array technology WHITE PAPER

Amazon EC2 Deep Dive. Michael #awssummit

Pass4test Certification IT garanti, The Easy Way!

Course Overview. ECE 1779 Introduction to Cloud Computing. Marking. Class Mechanics. Eyal de Lara

Amazon AppStream 2.0: SOLIDWORKS Deployment Guide

Windows Azure Services - At Different Levels

HPE Digital Learner AWS Certified SysOps Administrator (Intermediate) Content Pack

Hosting Requirements Smarter Balanced Assessment Consortium Contract 11 Test Delivery System. American Institutes for Research

Module Day Topic. 1 Definition of Cloud Computing and its Basics

Faculté Polytechnique

CIT 668: System Architecture

Top 40 Cloud Computing Interview Questions

Paperspace. Architecture Overview. 20 Jay St. Suite 312 Brooklyn, NY Technical Whitepaper

Microservices on AWS. Matthias Jung, Solutions Architect AWS

How to Keep UP Through Digital Transformation with Next-Generation App Development

AWS Course Syllabus. Linux Fundamentals. Installation and Initialization:


PracticeDump. Free Practice Dumps - Unlimited Free Access of practice exam

Amazon Web Services. Amazon Web Services

Scientific Workflows and Cloud Computing. Gideon Juve USC Information Sciences Institute

Cloud Computing introduction

Aneka Dynamic Provisioning

Startups and Mobile Apps on AWS. Dave Schappell, Startup Business Development Manager, AWS September 11, 2013

Architecting Applications to Scale in the Cloud

SAP VORA 1.4 on AWS - MARKETPLACE EDITION FREQUENTLY ASKED QUESTIONS

We are ready to serve Latest IT Trends, Are you ready to learn? New Batches Info

Designing MQ deployments for the cloud generation

Scaling on AWS. From 1 to 10 Million Users. Matthias Jung, Solutions Architect

ECE Enterprise Storage Architecture. Fall ~* CLOUD *~. Tyler Bletsch Duke University

AWS Storage Gateway. Amazon S3. Amazon EFS. Amazon Glacier. Amazon EBS. Amazon EC2 Instance. storage. File Block Object. Hybrid integrated.

AWS Solutions Architect Exam Tips

Transcription:

Cloud Infrastructure Part of this material is provided with the book: Cloud Computing: Theory and Practice. Author: Dan C. Marinescu 1 Contents IaaS services from Amazon. Regions and availability zones for Amazon Web Services. Instances attributes and cost. A repertoire of Amazon Web Services. SaaS and PaaS services from Google. SaaS and PaaS services from Microsoft. Open-source platforms for private clouds. Cloud storage diversity and vendor lock-in. Cloud interoperability; the Intercloud. Energy use and ecological impact large datacenters. Service and compliance level agreements. Responsibility sharing between user and the cloud service provider. User security concerns. User motivation. 2 1

Existing cloud infrastructure The cloud computing infrastructure at Amazon, Google, and Microsoft (as of mid 2012). Amazon is a pioneer in Infrastructure-as-a-Service (IaaS). Google's efforts are focused on Software-as-a-Service (SaaS) and Platform-as-a-Service (PaaS). Microsoft is involved in PaaS. Private clouds are an alternative to public clouds. Open-source cloud computing platforms such as: Eucalyptus, OpenNebula, Nimbus, OpenStack can be used as a control infrastructure for a private cloud. 3 Amazon Web Services (AWS) AWS IaaS cloud computing services launched in 2006. Businesses in 200 countries used AWS in 2012. The infrastructure consists of compute and storage servers interconnected by high-speed networks and supports a set of services. An application developer: Installs applications on a platform of his/her choice. Manages resources allocated by Amazon. 4 2

AWS regions and availability zones Amazon offers cloud services through a network of data centers on several continents. In each region there are several availability zones interconnected by high-speed networks. An availability zone is a data center consisting of a large number of servers. Regions do not share resources and communicate through the Internet. 5 AWS regions and availability zones Here you will find an updated version: http://docs.aws.amazon.com/general/latest/gr/rande.html 6 3

AWS instances An instance is a virtual server with a well specified set of resources including: CPU cycles, main memory, secondary storage, communication and I/O bandwidth. The user chooses: The region and the availability zone where this virtual server should be placed. An instance type from a limited menu of instance types. When launched, an instance is provided with a DNS name; this name maps to a private IP address for internal communication within the internal EC2 communication network. public IP address for communication outside the internal Amazon network, e.g., for communication with the user that launched the instance. 7 AWS instances (cont d) Network Address Translation (NAT) maps external IP addresses to internal ones. The public IP address is assigned for the lifetime of an instance. An instance can request an elastic IP address, rather than a public IP address. The elastic IP address is a static public IP address allocated to an instance from the available pool of the availability zone. An elastic IP address is not released when the instance is stopped or terminated and must be released when no longer needed. 8 4

EC2 instance SQS Compute server EC2 instance Compute server Instance EC2 instance Cloud watch Compute server Cloud front Elastic cache Cloud formation NAT Cloud interconnect Internet Elastic beanstalk Elastic load balancer AWS management console S3 S3 EBS EBS SDB SDB Servers running AWS services S3 SDB S3 Simple DB AWS storage servers 9 Steps to run an application Retrieve the user input from the front-end. Retrieve the disk image of a VM (Virtual Machine) from a repository. Locate a system and requests the VMM (Virtual Machine Monitor) running on that system to setup a VM. Invoke the Dynamic Host Configuration Protocol (DHCP) and the IP bridging software to set up MAC and IP addresses for the VM. 10 5

User interactions with AWS The AWS Management Console. The easiest way to access all services, but not all options may be available. AWS SDK libraries and toolkits are provided for several programming languages including Java, PHP, C#, and Objective-C. Raw REST requests. 11 Examples of Amazon Web Services AWS Management Console - allows users to access the services offered by AWS. Elastic Cloud Computing (EC2) - allows a user to launch a variety of operating systems. Simple Queuing Service (SQS) - allows multiple EC2 instances to communicate with one another. Simple Storage Service (S3), Simple DB, and Elastic Bloc Storage (EBS) - storage services. Cloud Watch - supports performance monitoring. Auto Scaling - supports elastic resource management. Virtual Private Cloud - allows direct migration of parallel applications. 12 6

13 EC2 Elastic Cloud Computing EC2 - web service for launching instances of an application under several operating systems, such as: Several Linux distributions. Microsoft Windows Server 2003 and 2008. OpenSolaris. FreeBSD. NetBSD. A user can Load an EC2 instance with a custom application environment. Manage network s access permissions. Run the image using as many or as few systems as desired. 14 7

EC2 (cont d) Import virtual machine (VM) images from the user environment to an instance through VM import. EC2 instances boot from an AMI (Amazon Machine Image) digitally signed and stored in S3. Users can access: Images provided by Amazon. Customize an image and store it in S3. An EC2 instance is characterized by the resources it provides: VC (Virtual Computers) virtual systems running the instance. CU (Compute Units) measure computing power of each system. Memory. I/O capabilities. 15 Instance types Amazon EC2 provides a wide selection of instance types optimized to fit different use cases. Instance types comprise varying combinations of CPU, memory, storage, and networking capacity and give you the flexibility to choose the appropriate mix of resources for your applications. Each instance type includes one or more instance sizes, allowing you to scale your resources to the requirements of your target workload. 16 8

T2 Instances T2 instances are Burstable Performance Instances that provide a baseline level of CPU performance with the ability to burst above the baseline. The baseline performance and ability to burst are governed by CPU Credits. Each T2 instance receives CPU Credits continuously at a set rate depending on the instance size. T2 instances accrue CPU Credits when they are idle, and use CPU credits when they are active. T2 instances are a good choice for workloads that don t use the full CPU often or consistently, but occasionally need to burst (e.g. web servers, developer environments and databases). Features: High Frequency Intel Xeon Processors Burstable CPU, governed by CPU Credits, and consistent baseline performance Lowest-cost general purpose instance type, and Free Tier eligible (t2.micro only) Balance of compute, memory, and network resources Use Cases Websites and web applications, development environments, build servers, code repositories, micro services, test and staging environments, and line of business Dan C. Marinescu applications. Model vcpu CPU Credits / hour Mem (GiB) Storage t2.nano 1 3 0.5 EBS-Only t2.micro 1 6 1 EBS-Only t2.small 1 12 2 t2.medium 2 24 4 EBS-Only EBS-Only t2.large 2 36 8 EBS-Only t2.xlarge 4 54 16 EBS-Only t2.2xlarge 8 81 32 EBS-Only 17 M4 instances M4 instances are the latest generation of General Purpose Instances. This family provides a balance of compute, memory, and network resources, and it is a good choice for many applications Features: High Frequency Intel Xeon E5-2670 v2 (Ivy Bridge) Processors* SSD-based instance storage for fast I/O performance Balance of compute, memory, and network resources Model vcpu Mem (GiB) SSD Storage (GB) m3.medium 1 3.75 1 x 4 m3.large 2 7.5 1 x 32 m3.xlarge 4 15 2 x 40 m3.2xlarge 8 30 2 x 80 Dan C. Marinescu Cloud Computing: Theory and Practice. Chapter 3 18 9

M3 instances Model vcpu Mem (GiB) SSD Storage (GB) m3.medium 1 3.75 1 x 4 m3.large 2 7.5 1 x 32 m3.xlarge 4 15 2 x 40 m3.2xlarge 8 30 2 x 80 Compute Optimized (C4) Dan C. Marinescu Mem Storage Dedicated EBS Model vcpu (GiB) Bandwidth (Mbps) 500 c4.large 2 3.75 EBS-Only c4.xlarge 4 7.5 EBS-Only c4.2xlarge 8 15 EBS-Only c4.4xlarge 16 30 EBS-Only 750 1,000 2,000 Cloud Computing: c4.8xlarge Theory and Practice. 36 60 EBS-Only 4,000 Chapter 3 19 Compute Optimized (C3) Model vcpu Mem (GiB) SSD Storage (GB) Memory Optimized (X1) c3.large 2 3.75 2 x 16 c3.xlarge 4 7.5 2 x 40 c3.2xlarge 8 15 2 x 80 c3.4xlarge 16 30 2 x 160 c3.8xlarge 32 60 2 x 320 Model vcpu Mem (GiB) x1.32xlarge 128 1,952 SSD Storage (GB) Dedicated EBS Bandwidth (Mbps) 2 x 1,920 10,000 x1.16xlarge 64 976 1 x 1,920 5,000 Dan C. Marinescu Cloud Computing: Theory and Practice. Chapter 3 20 10

Storage Optimized: I3 High I/O Instances Model vcpu Mem (GiB) Networking Performance Storage (TB) i3.large 2 15.25 i3.xlarge 4 30.5 i3.2xlarge 8 61 i3.4xlarge 16 122 i3.8xlarge 32 244 i3.16xlarge 64 488 Up to 10 Gigabit 1 x 0.475 NVMe SSD Up to 10 Gigabit 1 x 0.95 NVMe SSD Up to 10 Gigabit 1 x 1.9 NVMe SSD Up to 10 Gigabit 2 x 1.9 NVMe SSD 10 Gigabit 4 x 1.9 NVMe SSD 20 Gigabit 8 x 1.9 NVMe SSD Dan C. Marinescu Cloud Computing: Theory and Practice. Chapter 3 21 Instance Type Matrix https://aws.amazon.com/ec2/instance-types/ Dan C. Marinescu Cloud Computing: Theory and Practice. Chapter 3 22 11

Amazon EC2 Pricing https://aws.amazon.com/ec2/pricing/ Amazon EC2 is free to try. There are four ways to pay for Amazon EC2 instances: On-Demand, Reserved Instances, and Spot Instances. You can also pay for Dedicated Hosts which provide you with EC2 instance capacity on physical servers dedicated for your use. On-Demand Pricing: General Purpose - Current Generation vcpu ECU Memory (GiB) Instance Storage (GB) Linux/UNIX Usage t2.nano 1 Variable 0.5 EBS Only $0.0059 per Hour t2.micro 1 Variable 1 EBS Only $0.012 per Hour t2.small 1 Variable 2 EBS Only $0.023 per Hour t2.medium 2 Variable 4 EBS Only $0.047 per Hour t2.large 2 Variable 8 EBS Only $0.094 per Hour t2.xlarge 4 Variable 16 EBS Only $0.188 per Hour t2.2xlarge 8 Variable 32 EBS Only $0.376 per Hour m4.large 2 6.5 8 EBS Only $0.1 per Hour m4.xlarge 4 13 16 EBS Only $0.2 per Hour m4.2xlarge 8 26 32 EBS Only $0.4 per Hour m4.4xlarge 16 53.5 64 EBS Only $0.8 per Hour m4.10xlarge 40 124.5 160 EBS Only $2 per Hour m4.16xlarge 64 188 256 EBS Only $3.2 per Hour 23 S3 Simple Storage System Service designed to store large objects; an application can handle an unlimited number of objects ranging in size from 1 byte to 5 TB. An object is stored in a bucket and retrieved via a unique, developer-assigned key; a bucket can be stored in a Region selected by the user. Supports a minimal set of functions: write, read, and delete; it does not support primitives to copy, to rename, or to move an object from one bucket to another. The object names are global. S3 maintains for each object: the name, modification time, an access control list, and up to 4 KB of user-defined metadata. 24 12

S3 (cont d) Authentication mechanisms ensure that data is kept secure. Objects can be made public, and rights can be granted to other users. S3 computes the MD5 of every object written and returns it in a field called ETag. A user is expected to compute the MD5 of an object stored or written and compare this with the ETag; if the two values do not match, then the object was corrupted during transmission or storage. 25 Elastic Block Store (EBS) Provides persistent block level storage volumes for use with EC2 instances; suitable for database applications, file systems, and applications using raw data devices. A volume appears to an application as a raw, unformatted and reliable physical disk; the range 1 GB -1 TB. An EC2 instance may mount multiple volumes, but a volume cannot be shared among multiple instances. EBS supports the creation of snapshots of the volumes attached to an instance and then uses them to restart the instance. The volumes are grouped together in Availability Zones and are automatically replicated in each zone. 26 13

SimpleDB Non-relational data store. Supports store and query functions traditionally provided only by relational databases. Supports high performance Web applications; users can store and query data items via Web services requests. Creates multiple geographically distributed copies of each data item. It manages automatically: The infrastructure provisioning. Hardware and software maintenance. Replication and indexing of data items. Performance tuning. 27 SQS - Simple Queue Service Hosted message queues are accessed through standard SOAP and Query interfaces. Supports automated workflows - EC2 instances can coordinate by sending and receiving SQS messages. Applications using SQS can run independently and asynchronously, and do not need to be developed with the same technologies. A received message is locked'' during processing; if processing fails, the lock expires and the message is available again. Queue sharing can be restricted by IP address and time-of-day. 28 14

CloudWatch Monitoring infrastructure used by application developers, users, and system administrators to collect and track metrics important for optimizing the performance of applications and for increasing the efficiency of resource utilization. Without installing any software a user can monitor either seven or eight pre-selected metrics and then view graphs and statistics for these metrics. When launching an Amazon Machine Image (AMI) the user can start the CloudWatch and specify the type of monitoring: Basic Monitoring - free of charge; collects data at five-minute intervals for up to seven metrics. Detailed Monitoring - subject to charge; collects data at one minute interval. 29 AWS services introduced in 2012 Route 53 - low-latency DNS service used to manage user's DNS public records. Elastic MapReduce (EMR) - supports processing of large amounts of data using a hosted Hadoop running on EC2. Simple Workflow Service (SWF) - supports workflow management; allows scheduling, management of dependencies, and coordination of multiple EC2 instances. ElastiCache - enables web applications to retrieve data from a managed in-memory caching system rather than a much slower diskbased database. DynamoDB - scalable and low-latency fully managed NoSQL database service. 30 15

AWS services introduced in 2012 (cont d) CloudFront - web service for content delivery. Elastic Load Balancer - automatically distributes the incoming requests across multiple instances of the application. Elastic Beanstalk - handles automatically deployment, capacity provisioning, load balancing, auto-scaling, and application monitoring functions. CloudFormation - allows the creation of a stack describing the infrastructure for an application. 31 Elastic Beanstalk Handles automatically the deployment, capacity provisioning, load balancing, auto-scaling, and monitoring functions. Interacts with other services including EC2, S3, SNS, Elastic Load Balance and AutoScaling. The management functions provided by the service are: Deploy a new application version (or rollback to a previous version). Access to the results reported by CloudWatch monitoring service. Email notifications when application status changes or application servers are added or removed. Access to server log files without needing to login to the application servers. The service is available using: a Java platform, the PHP server-side description language, or the.net framework. 32 16

Amazon EC2 Container Services https://aws.amazon.com/ecs/ Dan C. Marinescu Cloud Computing: Theory and Practice. Chapter 3 33 SaaS services offered by Google Gmail - hosts Emails on Google servers and provides a web interface to access the Email. Google docs - a web-based software for building text documents, spreadsheets and presentations. Google Calendar - a browser-based scheduler; supports multiple user calendars, calendar sharing, event search, display of daily/weekly/monthly views, and so on. Google Groups - allows users to host discussion forums to create messages online or via Email. Picasa - a tool to upload, share, and edit images. Google Maps - web mapping service; offers street maps, a route planner, and an urban business locator for numerous countries around the world https://cloud.google.com/docs/overview/cloud-platform-services 34 17

PaaS services offered by Google AppEngine - a developer platform hosted on the cloud. Initially supported Python, Java was added later. The database for code development can be accessed with GQL (Google Query Language) with a SQL-like syntax. Google Co-op - allows users to create customized search engines based on a set of facets/categories. Google Drive - an online service for data storage. Google Base - allows users to load structured data from different sources to a central repository, a very large, self-describing, semistructured, heterogeneous database. 35 PaaS and SaaS services from Microsoft Windows Azure - an operating system; has 3 components: Compute - provides a computation environment. Storage - for scalable storage. Fabric Controller - deploys, manages, and monitors applications. SQL Azure - a cloud-based version of the SQL Server. Azure AppFabric, formerly.net Services - a collection of services for cloud applications. 36 18

Azure https://azure.microsoft.com/ https://azure.microsoft.com/en-us/solutions/architecture/ 37 Open-source platforms for private clouds Eucalyptus - can be regarded as an open-source counterpart of Amazon's EC2. Open-Nebula - a private cloud with users actually logging into the head node to access cloud functions. The system is centralized and its default configuration uses the NFS file system. Nimbus - a cloud solution for scientific applications based on Globus software; inherits from Globus: The image storage. The credentials for user authentication. The requirement that a running Nimbus process can ssh into all compute nodes. Open Stack 38 19

Eucalyptus Virtual Machines - run under several VMMs including Xen, KVM, and VMware. Node Controller - runs on server nodes hosting a VM and controls the activities of the node. Cluster Controller - controls a number of servers. Cloud Controller - provides the cloud access to end-users, developers, and administrators. Storage Controller - provides persistent virtual hard drives to applications. It is the correspondent of EBS. Storage Service (Walrus) - provides persistent storage; similar to S3, it allows users to store objects in buckets. 39 40 20

41 OpenStack, The Cloud Operating System A new management layer that adds automation and control APPS Connects to apps via APIs Self-service Portals for users USERS ADMINS CLOUD OPERATING SYSTEM Creates Pools of Resources Automates The Network 21

A common platform. OpenStack is open source software powering public and private clouds. Private Cloud: Run OpenStack software in your own corporate data centers OpenStack enables cloud federation Connecting clouds to create global resource pools Common software platform making Federation possible Public Cloud: OpenStack powers some of the worlds largest public cloud deployments. Washington Public Cloud Texas Private Cloud California Private Cloud Europe Public Cloud Server Virtualization Core Components in Essex Dashboard: Access and control portal for admin and users, also web-based Identity: Unified authentication across whole system Object Storage: Large-scale redundant storage of static objects, not a file system Image Service: Store, retrieve, discover, register, and deliver VM images Compute: Large-scale deployment of automatically provisions VMs and related SWs 44 22

Cloud storage diversity and vendor lock-in Risks when a large organization relies on a single cloud service provider: Cloud services may be unavailable for a short or an extended period of time. Permanent data loss in case of a catastrophic system failure. The provider may increase the prices for service. Switching to another provider could be very costly due to the large volume of data to be transferred from the old to the new provider. A solution is to replicate the data to multiple cloud service providers, similar to data replication in RAID. 45 RAID 5 controller a1 a2 a3 ap b1 b2 bp b3 c1 cp c2 c3 dp d1 d2 d3 Disk 1 Disk 2 Disk 3 Disk 4 (a) Cloud 1 Cloud 2 a1 b1 c1 dp a2 d1 b2 cp c1 d1 Client Proxy ap b3 d3 d3 c3 a3 bp c2 d2 Cloud 3 Cloud 4 (b) 46 23

Cloud interoperability; the Intercloud An Intercloud a federation of clouds that cooperate to provide a better user experience. Is an Intercloud feasible? Not likely at this time: There are no standards for either storage or processing. The clouds are based on different delivery models. The set of services supported by these delivery models is large and open; new services are offered every few months. CSPs (Cloud Service Providers) believe that they have a competitive advantage due to the uniqueness of the added value of their services. Security is a major concern for cloud users and an Intercloud could only create new threats. 47 Energy use and ecological impact The energy consumption of large-scale data centers and their costs for energy and for cooling are significant. In 2006, the 6,000 data centers in the U.S consumed 61x10 9 KWh of energy, 1.5% of all electricity consumption, at a cost of $4.5 billion. The energy consumed by the data centers was expected to double from 2006 to 2011 and peak instantaneous demand to increase from 7 GW to 12 GW. The greenhouse gas emission due to the data centers is estimated to increase from 116 x10 9 tones of CO 2 in 2007 to 257 tones in 2020 due to increased consumer demand. The effort to reduce energy use is focused on computing, networking, and storage activities of a data center. 48 24

Energy use and ecological impact (cont d) Operating efficiency of a system is captured by the performance per Watt of power. The performance of supercomputers has increased 3.5 times faster than their operating efficiency 7,000% versus 2,000% during the period 1998 2007. A typical Google cluster spends most of its time within the 10-50% CPU utilization range; there is a mismatch between server workload profile and server energy efficiency. 49 Energy-proportional systems An energy-proportional system consumes no power when idle, very little power under a light load and, gradually, more power as the load increases. By definition, an ideal energy-proportional system is always operating at 100% efficiency. Humans are a good approximation of an ideal energy proportional system; about 70 W at rest, 120 W on average on a daily basis, and can go as high as 1,000 2,000 W during a strenuous, short time effort. Even when power requirements scale linearly with the load, the energy efficiency of a computing system is not a linear function of the load; even when idle, a system may use 50% of the power corresponding to the full load. 50 25

51 Service Level Agreement (SLA) SLA - a negotiated contract between the customer and CSP; can be legally binding or informal. Objectives: Identify and define the customer s needs and constraints including the level of resources, security, timing, and QoS. Provide a framework for understanding; a critical aspect of this framework is a clear definition of classes of service and the costs. Simplify complex issues; clarify the boundaries between the responsibilities of clients and CSP in case of failures. Reduce areas of conflict. Encourage dialog in the event of disputes. Eliminate unrealistic expectations. Specifies the services that the customer receives, rather than how the cloud service provider delivers the services. 52 26

Responsibility sharing between user and CSP SaaS PaaS IaaS Interface Application Operating system Hypervisor Computing service Storage service Network Local infrastructure Interface Application Operating system Hypervisor Computing service Storage service Network Local infrastructure Interface Application Operating system Hypervisor Computing service Storage service Network User responsibility Local infrastructure C L O U D U S E R S E R V I C E P R O V I D E R 53 User security concerns Potential loss of control/ownership of data. Data integration, privacy enforcement, data encryption. Data remanence after de-provisioning. Multi tenant data isolation. Data location requirements within national borders. Hypervisor security. Audit data integrity protection. Verification of subscriber policies through provider controls. Certification/Accreditation requirements for a given cloud service. 54 27

Reasons driving decision to use public clouds 55 28