SlideShare una empresa de Scribd logo
1 de 47
#CLUS
#CLUS
Allan Naim, Senior Manager, Google
PSOCLD-1007
Cisco + Google Cloud
Open Hybrid Cloud
Solution
Rohit Agarwalla, Principal Engineer,Cisco
@allannaim
https://www.linkedin.com/in/allannaim
https://www.linkedin.com/in/rohitagarwalla/
@rohitagarwalla
Agenda
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
• Overview
• Usecases
• Demo
• Conclusion
3PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cisco WebexTeams
Questions?
Use Cisco Webex Teams (formerly Cisco Spark)
to chat with the speaker after the session
Find this session in the Cisco Live Mobile App
Click “Join the Discussion”
Install Webex Teams or go directly to the team space
Enter messages/questions in the team space
How
Webex Teams will be moderated
by the speaker until June 18, 2018.
cs.co/ciscolivebot#PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
1
2
3
4
4PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Key Learning
Objectives
At the end of this session, you should
be able to:
• Understand usecases for the Cisco
Hybrid Cloud Platform for Google
Cloud
• Learn how various open source
components,Cisco and Google
products fit into the solution
5PSOCLD-1007
Overview
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cloud Evolution
7PSOCLD-1007
Traditional
Data Center
Proprietary,
monolithic apps
Hardware
Virtualization
Server consolidation,
Cost-driven IT
Infrastructure
as a Service
Elastic compute,
On demand
Cloud Native
Services (XaaS)
PortableWorkloads, Service
Management,
Catalog/Marketplace
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Public cloud
services
On-premises
environment
Rapid technology and organizational change
DevOps/
Developers
IT Ops
Cloud
architects
IT Mgt
LOBSecurity
Networking
Data Center
Application
Modernization
Cloud
Native Apps
PSOCLD-1007 8
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Hybrid is an Enterprise reality
9PSOCLD-1007
Public
On-Prem
Classic Apps and Operations Cloud-NativeApps and Operations
Efficient and Ops Agility
Pay for use
Secured
Efficient ops
and agility
Pay for Use
Secured
Rigid and Expensive
Developer Productivity
Portable
Portable
Developer
productivity
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
if you could focus more on innovating
and less on trying to make everything work together
PSOCLD-1007 10
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Workload Portability + Service Consistency Across
Hybrid/Multi-Cloud
11PSOCLD-1007
Open services can serve on-prem, private
managed, public cloud infrastructures
SaaS/Solutions, Partner Ecosystem
Policy Automation, Governance
Secure Service Management
Apps
ServicesInfrastructure
APPS
Infrastructure
APPS
Enterprise Premise Google Cloud Platform Other PublicClouds
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Open Hybrid Cloud
12PSOCLD-1007
Managed by policy
Open platform for
running containers,
portable apps that run
across environments
Simple, elegant way to
deliver and consume
services across
environments
Istio
Kubernetes Run Open Services
Connect, manage,
and secure services
across environments
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Google Cloud Platform
13PSOCLD-1007
15 current regions. 4
new regions coming in
2018.
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Google Network
14PSOCLD-1007
Unity (US, JP) 2010
Monet (US, BR) 2017
Tannat (BR, UY, AR) 2018
Junior (Rio, Santos)
2018
FASTER (US, JP, TW) 2016
PLCN (HK, LA) 2019
Indigo (SG, ID, AU)
2019
Edge node
locations 7500+
Edge points of
presence 100+
Google Network
Curie (CL, US) 2019
Havfrue (US,IE, DK) 2019
SJC (JP, HK, SG) 2013
HK-G (HK, GU) 2019
100+ edge points of presence
7500+ edge nodes, 80+ CDN
locations
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
ANYWHERE
with a secure and consistent
hybrid environment
Innovation on your own terms
Develop and Deploy
Cisco Hybrid Cloud Platform for Google Cloud
PSOCLD-1007 15
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Best of both worlds
16
Networking and Security
Private Cloud Infrastructure
Multicloud Management
Enterprise Class Sales
and Support
Cloud Services
Microservices / Containers
API Gateway for Existing Services
Developer Community
PSOCLD-1007
Usecases
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
✓ Extend your CI/CD pipeline
✓ Deploy containerized
applications anywhere
✓ Connect, Manage and Secure
Services
Develop with a hybrid
CI/CD across both public
cloud and on-premises
On-Prem
Consistent
Environment
PSOCLD-1007 18
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Google Kubernetes Engine
19PSOCLD-1007
• Fully-managed service for Kubernetes
• Takes advantage of Google Cloud Platform infrastructure
for optimal performance, reliability and cost savings
• Uses security-hardened, container-optimized OS
• Enterprise-grade compliance and auditability; HIPAA and
PCI DSS 3.2 compliant
• Uses upstream & up-to-date Kubernetes for access to
latest innovations
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cisco Container Platform
Hybrid Cloud Optimized
E.g: Google, …
Flexible Deployment Model
VM | Bare metal  HX, ACI
Integrated
Networking | Management | Security | Analytics
CNCF Certified Kubernetes Platform
100% upstream, updates and best practices from open source
community
Turnkey Solution
For Production-Grade Container
Environments
Easy to acquire, deploy & manage | Open & consistent | Extensible platform | World-class advisory & support
20PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
• Kubernetes PersistentVolume and Persistent
VolumeClaims supported via the FlexVolume driver
framework and implemented by mapping iSCSCI
LUNs from Hyperflex
• Developers can leverage HyperFlex storage for
stateful container storage and containers have
accessibility to storage incase of pod restarts or
worker node vmotion
• HyperFlex Data Performance and Resiliency
provided to Kubernetes container storage
Cisco HyperFlex Kubernetes integration
K8s Node VM
Kubelet
HX FlexVolume
Driver
SW iSCSI Initiator
private host-only vswitch
ESXi vmkernel interface
iSCSI
LUN
File
HX iSCSI Proxy
HX Controller VM
vswitch-hx-storage-data
NFS Datastore
HX ESXi Node
21PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cisco ACI Kubernetes Integration
Node
OpFlex OVS
Kubernetes
ACI Policies
Network Policy
Node
OpFlex OVS
• Network policies of Kubernetes supported using standard
upstream format but enforced through OpFlex / OVS using
APIC Host Protection Profiles
• Kubernetes apps can be moved without modification to/from
ACI and non-ACI environments
• Embedded fabric and virtual switch load balancing
• PBR in fabric for external service load balancing
• OVS used for internal service load balancing
• VMM Domain for Kubernetes
• Statistics per namespace, deployment, service, pod
• Physical to container correlation
22PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cisco Cloud Center Kubernetes integration
• Sits across any upstream Kubernetes cluster (1.8+)
• Model application topology using containers,VMs, PaaS/cloud
services, or any mixture thereof
• Unified governance policies forVM and container/Kubernetes-
based applications to enforce where, how, and by whom an
application can be deployed
• Create containerized application portability by dynamically
create app podYAML in target cloud
• Integrates with build tools in the CI/CD process so that a new
build automatically kicks off a new deployment
• Ensure that monitoring through AppDynamics (when available)
is baked into the application deployment for cross cloud/cluster
monitoring
23PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Service mesh: Istio
Service discovery
Load balancing
Failure recovery
Metrics
Monitoring
A/B testing
Canary releases
Rate limiting
Access control
End-to-end
authentication
24PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Istio Architecture
svcA
Envoy
Pod
Service A
svcB
Envoy
Service B
Pilot
Control
Plane
Mixer
Control flow during
request processing Citadel
Traffic is transparently intercepted
and proxied. App is unaware of
Envoy’s presence
Data
Plane
25PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Istio Multi Cluster support
svcA
Envoy
Pod
Service A
svcB
Envoy
Service B
Pilot Mixer Citadel
svcC
Envoy
Service C
Primary/Local Kubernetes deployment Secondary/Remote Kubernetes deployment (s)
26PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Demo - Booksinfo app architecture
Product
Reviews v1
Reviews v2
Details
RatingsReviews v3
27PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Demo – Deployment architecture
Cloud - GKE cluster
Pods – 10.40.0.0/19
On-prem - CCP cluster
Pods – 10.50.0.0/16
Product
Reviews
v1
Reviews
v2
Details
Ratings
Reviews
v3
28PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Demo - Booksinfo app architecture with Envoy
Product
Reviews v1
Reviews v2
Details
RatingsReviews v3Ingress
Gateway
Requests
29PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
On-Prem
✓ Production ready on-prem
Kubernetes environment
✓ Easy access to services
in GoogleCloud
Develop applications
on-premises
consuming public
cloud services
Consumption of
cloud services
Open Service
Broker
PSOCLD-1007 30
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Open Service Broker API
• Provides a standard way to instantiate
and consume any service
• Producers (e.g.,GCP) create brokers to
provide services
• Consumers can discover and access via a
catalog that subscribes to these brokers
Cloud
SQL
Big
Query
Email Storage
PubSub Storage SQL Chat
31PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Kubernetes, Service Catalog and OSB integration
32PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Demo - Booksfe app deployment architecture
Booksfe
Inventory
Users
Purchases
33PSOCLD-1007
Open Service Broker
Pub/Sub Service
Other Services…
Container Platform
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
✓ No re-platforming of existing
applications
✓ Leveraging cloud for modernized
application development
✓ Consistent policies
and access
Develop applications in
the public cloud
consuming data
from on-premises On-Prem
Google Apigee
Consumption
of on-prem
services
Existing
Services
Apps | Data
PSOCLD-1007 34
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Google Apigee
35PSOCLD-1007
• Integrating legacy applications
• Recompose monolithic applications as services
• Build a service layer in front of existing systems to increase IT velocity
• Import legacy systems into modern, container-based architectures as services
Management services
Analytics
Dev management
Security analytics
Monolithic systems
on premise
Centralized governance of
allAPI services
Kubernetes Integration
AllApigee services are
Kubernetes services
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
✓ Proactive security and threat
detection
✓ IntegratedVPN creates one
unified encrypted network
…across a secure
environment
On-Prem
PSOCLD-1007 36
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Permissions allow
Stealthwatch Cloud to
read GCP Flow Logs
Stealthwatch
Cloud
Virtual Private Cloud
Cisco Stealthwatch Cloud integration
with Google Cloud
• Google Cloud’sVPC flow logs provide records of all the resource
communications in an account, bothVPC-to-VPC and to
external IP addresses.
• Cisco’s Stealthwatch Cloud consumesVPC flow logs
• Automatic, helpful alerts: 95% marked helpful by users
• Works out-of-the-box: Deploys quickly in agentless fashion,
with no tuning or configuration needed
• Dozens of detections for malware, insider threats,
misconfigurations, and software vulnerabilities
• Hybrid environments: on-prem and in the cloud
PSOCLD-1007 37
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Cisco Cloud Services Router 1000v integration
with Google Cloud
38PSOCLD-1007
CSR 1000v
Cloud
Router
Network
Subnet
Private N/w 1
Private N/w 2
Private N/w 3
Cisco
ASR/ASA/ISR/C
SR
Physical /
Virtual
Appliance
• CSR1Kv on Google Cloud
enables private, secure
communications using IPSec
• BGP over IPSec ensures that the
routes are advertised from on-
prem to cloud and vice versa
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
On-premises
environment
Google
Kubernetes Engine
Existing
Services
Apps | Data
Cisco Hybrid Cloud Platform for Google Cloud
Cisco HyperFlex
Cisco Nexus9K / ACI
Cisco CSR1000v
Cisco Stealthwatch Cloud
Cisco Container
Platform
Consistent Environment
Google Apigee
Cisco CloudCenter
Istio
BigQuery
Cloud SQL
Pub/Sub
Big Table
Cloud Storage
Cloud Spanner
Open Service Broker
PSOCLD-1007 39
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Delivering on the Promise
40PSOCLD-1007
October 2017
Cisco - Google Cloud
Hybrid Cloud Solution
January 2018
Cisco Container
Platform
May 2018
Kubernetes support
for AppDynamics
& CloudCenter
March 2018 July 2018 >>
More to
come
Cisco Stealthwatch
Cloud support for
Google Cloud
July 2017
Joined new
open source
initiative Istio
November 2017
Cisco Multicloud
PortfolioMulticloud
Portfolio
Cloud
Connect
Cloud
Protect
Cloud
Advisory
Cloud
Consume
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Innovation on your own terms
Develop
and deploy
anywhere
Engineered &
supported by Cisco
& Google
The next
generation of
hybrid cloud
PSOCLD-1007 41
Complete your online session evaluation
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Give us your feedback to be entered into a
Daily Survey Drawing.
Complete your session surveys through the
Cisco Live mobile app or on
www.CiscoLive.com/us.
Don’t forget: Cisco Live sessions will be available for viewing on
demand after the event at www.CiscoLive.com/Online.
42PSOCLD-1007
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Continue the conversation...
Check out other Cisco Cloud activities at Cisco Live Orlando!
Attend PSO
Sessions
• PSOCLD-1003 Production-
Grade Kubernetes in a
Multicloud World | W209C
(Tue)
• PSOCLD-1007 Cisco Hybrid
Cloud Platform for Google
Cloud | W313 (Wed)
• PSOCLD-1010 The
Multicloud Approach | W208B
(Thur)
Attend the
Cloud
Innovation
Talk
Tuesday, Jun 12
3:45 p.m. - 4:15 p.m.
World of Solutions
Innovation Theater
Get your
Multicloud
Assessment
Visit the Embrace a
Multicloud World
Zone
World of Solutions
Cisco Campus
Visit the
Embrace a
Multicloud
World Zone
World of Solutions
Cisco Campus
Share
#CLUS
@CiscoLive
@CiscoCloud
43
Are you Multicloud
Ready?
Let us help you go from
newbie to ninja
Get your personalized Multicloud Assessment in the
“Embrace the MulticloudWorld” Zone.
Just follow-the signs to the Cisco Cloud booth.
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS
Demos in
the Cisco
campus
Walk-in
self-paced
labs
Meet the
engineer
1:1
meetings
Related
sessions
Continue
your
education
45PSOCLD-1007
Thank you
#CLUS
#CLUS

Más contenido relacionado

La actualidad más candente

Hyper Stratus Migrating Applications to the Cloud
Hyper Stratus Migrating Applications to the CloudHyper Stratus Migrating Applications to the Cloud
Hyper Stratus Migrating Applications to the Cloud
bhgolden
 
Cloud Computing & Business Intelligence
Cloud Computing & Business IntelligenceCloud Computing & Business Intelligence
Cloud Computing & Business Intelligence
Sudip Chatterjee
 

La actualidad más candente (20)

Unlocking the Cloud Operating Model: The Provisioning Strategy
Unlocking the Cloud Operating Model: The Provisioning StrategyUnlocking the Cloud Operating Model: The Provisioning Strategy
Unlocking the Cloud Operating Model: The Provisioning Strategy
 
Adopting Multi-Cloud Services with Confidence
Adopting Multi-Cloud Services with ConfidenceAdopting Multi-Cloud Services with Confidence
Adopting Multi-Cloud Services with Confidence
 
Multi cloud migration decision framework
Multi cloud migration decision frameworkMulti cloud migration decision framework
Multi cloud migration decision framework
 
Hyper Stratus Migrating Applications to the Cloud
Hyper Stratus Migrating Applications to the CloudHyper Stratus Migrating Applications to the Cloud
Hyper Stratus Migrating Applications to the Cloud
 
Cloud computing and migration strategies to cloud
Cloud computing and migration strategies to cloudCloud computing and migration strategies to cloud
Cloud computing and migration strategies to cloud
 
Pivotal CenturyLink Cloud Platform Seminar Presentations: Software Kept Eatin...
Pivotal CenturyLink Cloud Platform Seminar Presentations: Software Kept Eatin...Pivotal CenturyLink Cloud Platform Seminar Presentations: Software Kept Eatin...
Pivotal CenturyLink Cloud Platform Seminar Presentations: Software Kept Eatin...
 
Cloud Computing & Business Intelligence
Cloud Computing & Business IntelligenceCloud Computing & Business Intelligence
Cloud Computing & Business Intelligence
 
The promise of multi cloud
The promise of multi cloudThe promise of multi cloud
The promise of multi cloud
 
Dell EMC Transform for the Future; The 6 Rules for Disruption
Dell EMC Transform for the Future; The 6 Rules for DisruptionDell EMC Transform for the Future; The 6 Rules for Disruption
Dell EMC Transform for the Future; The 6 Rules for Disruption
 
Azure and Predix
Azure and PredixAzure and Predix
Azure and Predix
 
OCP Datacomm RedHat - Kubernetes Launch
OCP Datacomm RedHat - Kubernetes LaunchOCP Datacomm RedHat - Kubernetes Launch
OCP Datacomm RedHat - Kubernetes Launch
 
DRaaS for SAP
DRaaS for SAPDRaaS for SAP
DRaaS for SAP
 
Security and governance in the cloud
Security and governance in the cloudSecurity and governance in the cloud
Security and governance in the cloud
 
Ibm db2update2019 icp4 data
Ibm db2update2019   icp4 dataIbm db2update2019   icp4 data
Ibm db2update2019 icp4 data
 
Avoiding disaster recovery disasters
Avoiding disaster recovery disastersAvoiding disaster recovery disasters
Avoiding disaster recovery disasters
 
Practical Guide to Cloud Management Platforms
Practical Guide to Cloud Management PlatformsPractical Guide to Cloud Management Platforms
Practical Guide to Cloud Management Platforms
 
The Ideal Approach to Application Modernization; Which Way to the Cloud?
The Ideal Approach to Application Modernization; Which Way to the Cloud?The Ideal Approach to Application Modernization; Which Way to the Cloud?
The Ideal Approach to Application Modernization; Which Way to the Cloud?
 
Redefining HCI: How to Go from Hyper Converged to Hybrid Cloud Infrastructure
Redefining HCI: How to Go from Hyper Converged to Hybrid Cloud InfrastructureRedefining HCI: How to Go from Hyper Converged to Hybrid Cloud Infrastructure
Redefining HCI: How to Go from Hyper Converged to Hybrid Cloud Infrastructure
 
L'Iperconvergenza 2.0: NetApp HCI in Action
L'Iperconvergenza 2.0: NetApp HCI in ActionL'Iperconvergenza 2.0: NetApp HCI in Action
L'Iperconvergenza 2.0: NetApp HCI in Action
 
cloud computing Multi cloud
cloud computing Multi cloudcloud computing Multi cloud
cloud computing Multi cloud
 

Similar a PSOCLD 1007 Cisco Hybrid Cloud Platform for Google Cloud

Similar a PSOCLD 1007 Cisco Hybrid Cloud Platform for Google Cloud (20)

TechWiseTV Workshop: Cisco Hybrid Cloud Platform for Google Cloud
TechWiseTV Workshop:  Cisco Hybrid Cloud Platform for Google CloudTechWiseTV Workshop:  Cisco Hybrid Cloud Platform for Google Cloud
TechWiseTV Workshop: Cisco Hybrid Cloud Platform for Google Cloud
 
Overcoming Regulatory & Compliance Hurdles with Hybrid Cloud EKS and Weave Gi...
Overcoming Regulatory & Compliance Hurdles with Hybrid Cloud EKS and Weave Gi...Overcoming Regulatory & Compliance Hurdles with Hybrid Cloud EKS and Weave Gi...
Overcoming Regulatory & Compliance Hurdles with Hybrid Cloud EKS and Weave Gi...
 
OIS-K8-Multicloud.pptx
OIS-K8-Multicloud.pptxOIS-K8-Multicloud.pptx
OIS-K8-Multicloud.pptx
 
Achieve Data & Operational Sovereignty: Managing Hybrid & Edge EKS Deployment...
Achieve Data & Operational Sovereignty: Managing Hybrid & Edge EKS Deployment...Achieve Data & Operational Sovereignty: Managing Hybrid & Edge EKS Deployment...
Achieve Data & Operational Sovereignty: Managing Hybrid & Edge EKS Deployment...
 
Welcome to the Multi-cloud world
Welcome to the Multi-cloud worldWelcome to the Multi-cloud world
Welcome to the Multi-cloud world
 
IBM Multicloud Management on the OpenShift Container Platform
IBM Multicloud Management on theOpenShift Container PlatformIBM Multicloud Management on theOpenShift Container Platform
IBM Multicloud Management on the OpenShift Container Platform
 
Plataforma DevOps en OpenShift
Plataforma DevOps en OpenShiftPlataforma DevOps en OpenShift
Plataforma DevOps en OpenShift
 
Leveraging HybridMultiCloud for Devops and Automation Platform
Leveraging HybridMultiCloud for Devops and Automation PlatformLeveraging HybridMultiCloud for Devops and Automation Platform
Leveraging HybridMultiCloud for Devops and Automation Platform
 
OpenShift 4, the smarter Kubernetes platform
OpenShift 4, the smarter Kubernetes platformOpenShift 4, the smarter Kubernetes platform
OpenShift 4, the smarter Kubernetes platform
 
Container Technologies and Transformational value
Container Technologies and Transformational valueContainer Technologies and Transformational value
Container Technologies and Transformational value
 
Pivotal Container Service (PKS) at SF Cloud Foundry Meetup
Pivotal Container Service (PKS) at SF Cloud Foundry MeetupPivotal Container Service (PKS) at SF Cloud Foundry Meetup
Pivotal Container Service (PKS) at SF Cloud Foundry Meetup
 
Deploying and Managing Anypoint Runtime Fabric on OpenShift
Deploying and Managing Anypoint Runtime Fabric on OpenShiftDeploying and Managing Anypoint Runtime Fabric on OpenShift
Deploying and Managing Anypoint Runtime Fabric on OpenShift
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse locale
 
Cwin16 tls-a micro-service deployment - v1.0
Cwin16 tls-a micro-service deployment - v1.0Cwin16 tls-a micro-service deployment - v1.0
Cwin16 tls-a micro-service deployment - v1.0
 
Istio Service Mesh
Istio Service MeshIstio Service Mesh
Istio Service Mesh
 
Enabling Fast IT using Containers, Microservices and DAVROS models: an overview
Enabling Fast IT using Containers, Microservices and DAVROS models: an overviewEnabling Fast IT using Containers, Microservices and DAVROS models: an overview
Enabling Fast IT using Containers, Microservices and DAVROS models: an overview
 
The rise of microservices
The rise of microservicesThe rise of microservices
The rise of microservices
 
Portworx 201 Customer Deck.pptx
Portworx 201 Customer Deck.pptxPortworx 201 Customer Deck.pptx
Portworx 201 Customer Deck.pptx
 
Business Continuity with Microservices-Based Apps and DevOps: Learnings from ...
Business Continuity with Microservices-Based Apps and DevOps: Learnings from ...Business Continuity with Microservices-Based Apps and DevOps: Learnings from ...
Business Continuity with Microservices-Based Apps and DevOps: Learnings from ...
 
Cisco Connect Ottawa 2018 multi cloud connect, protect, and consume
Cisco Connect Ottawa 2018 multi cloud   connect, protect, and consumeCisco Connect Ottawa 2018 multi cloud   connect, protect, and consume
Cisco Connect Ottawa 2018 multi cloud connect, protect, and consume
 

Más de Rohit Agarwalla

BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
Rohit Agarwalla
 

Más de Rohit Agarwalla (6)

BRKSDN-2115
BRKSDN-2115 BRKSDN-2115
BRKSDN-2115
 
BRKDCT-2445
BRKDCT-2445BRKDCT-2445
BRKDCT-2445
 
Neutron IPv6
Neutron IPv6Neutron IPv6
Neutron IPv6
 
PSOCLD-1006 Cisco Cloud Architectures on OpenStack - Cisco Live! US 2015 San ...
PSOCLD-1006 Cisco Cloud Architectures on OpenStack - Cisco Live! US 2015 San ...PSOCLD-1006 Cisco Cloud Architectures on OpenStack - Cisco Live! US 2015 San ...
PSOCLD-1006 Cisco Cloud Architectures on OpenStack - Cisco Live! US 2015 San ...
 
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions - Cisco Live! US ...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions - Cisco Live! US ...BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions - Cisco Live! US ...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions - Cisco Live! US ...
 
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
BRKDCT-2445 Agile OpenStack Networking with Cisco Solutions-Cisco Live! US 20...
 

Último

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 

Último (20)

MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
Emergent Methods: Multi-lingual narrative tracking in the news - real-time ex...
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Cyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdfCyberprint. Dark Pink Apt Group [EN].pdf
Cyberprint. Dark Pink Apt Group [EN].pdf
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 

PSOCLD 1007 Cisco Hybrid Cloud Platform for Google Cloud

  • 2. #CLUS Allan Naim, Senior Manager, Google PSOCLD-1007 Cisco + Google Cloud Open Hybrid Cloud Solution Rohit Agarwalla, Principal Engineer,Cisco @allannaim https://www.linkedin.com/in/allannaim https://www.linkedin.com/in/rohitagarwalla/ @rohitagarwalla
  • 3. Agenda © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS • Overview • Usecases • Demo • Conclusion 3PSOCLD-1007
  • 4. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cisco WebexTeams Questions? Use Cisco Webex Teams (formerly Cisco Spark) to chat with the speaker after the session Find this session in the Cisco Live Mobile App Click “Join the Discussion” Install Webex Teams or go directly to the team space Enter messages/questions in the team space How Webex Teams will be moderated by the speaker until June 18, 2018. cs.co/ciscolivebot#PSOCLD-1007 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 4 1 2 3 4 4PSOCLD-1007
  • 5. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Key Learning Objectives At the end of this session, you should be able to: • Understand usecases for the Cisco Hybrid Cloud Platform for Google Cloud • Learn how various open source components,Cisco and Google products fit into the solution 5PSOCLD-1007
  • 7. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cloud Evolution 7PSOCLD-1007 Traditional Data Center Proprietary, monolithic apps Hardware Virtualization Server consolidation, Cost-driven IT Infrastructure as a Service Elastic compute, On demand Cloud Native Services (XaaS) PortableWorkloads, Service Management, Catalog/Marketplace
  • 8. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Public cloud services On-premises environment Rapid technology and organizational change DevOps/ Developers IT Ops Cloud architects IT Mgt LOBSecurity Networking Data Center Application Modernization Cloud Native Apps PSOCLD-1007 8
  • 9. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Hybrid is an Enterprise reality 9PSOCLD-1007 Public On-Prem Classic Apps and Operations Cloud-NativeApps and Operations Efficient and Ops Agility Pay for use Secured Efficient ops and agility Pay for Use Secured Rigid and Expensive Developer Productivity Portable Portable Developer productivity
  • 10. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS if you could focus more on innovating and less on trying to make everything work together PSOCLD-1007 10
  • 11. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Workload Portability + Service Consistency Across Hybrid/Multi-Cloud 11PSOCLD-1007 Open services can serve on-prem, private managed, public cloud infrastructures SaaS/Solutions, Partner Ecosystem Policy Automation, Governance Secure Service Management Apps ServicesInfrastructure APPS Infrastructure APPS Enterprise Premise Google Cloud Platform Other PublicClouds
  • 12. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Open Hybrid Cloud 12PSOCLD-1007 Managed by policy Open platform for running containers, portable apps that run across environments Simple, elegant way to deliver and consume services across environments Istio Kubernetes Run Open Services Connect, manage, and secure services across environments
  • 13. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Google Cloud Platform 13PSOCLD-1007 15 current regions. 4 new regions coming in 2018.
  • 14. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Google Network 14PSOCLD-1007 Unity (US, JP) 2010 Monet (US, BR) 2017 Tannat (BR, UY, AR) 2018 Junior (Rio, Santos) 2018 FASTER (US, JP, TW) 2016 PLCN (HK, LA) 2019 Indigo (SG, ID, AU) 2019 Edge node locations 7500+ Edge points of presence 100+ Google Network Curie (CL, US) 2019 Havfrue (US,IE, DK) 2019 SJC (JP, HK, SG) 2013 HK-G (HK, GU) 2019 100+ edge points of presence 7500+ edge nodes, 80+ CDN locations
  • 15. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS ANYWHERE with a secure and consistent hybrid environment Innovation on your own terms Develop and Deploy Cisco Hybrid Cloud Platform for Google Cloud PSOCLD-1007 15
  • 16. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Best of both worlds 16 Networking and Security Private Cloud Infrastructure Multicloud Management Enterprise Class Sales and Support Cloud Services Microservices / Containers API Gateway for Existing Services Developer Community PSOCLD-1007
  • 18. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public ✓ Extend your CI/CD pipeline ✓ Deploy containerized applications anywhere ✓ Connect, Manage and Secure Services Develop with a hybrid CI/CD across both public cloud and on-premises On-Prem Consistent Environment PSOCLD-1007 18
  • 19. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Google Kubernetes Engine 19PSOCLD-1007 • Fully-managed service for Kubernetes • Takes advantage of Google Cloud Platform infrastructure for optimal performance, reliability and cost savings • Uses security-hardened, container-optimized OS • Enterprise-grade compliance and auditability; HIPAA and PCI DSS 3.2 compliant • Uses upstream & up-to-date Kubernetes for access to latest innovations
  • 20. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cisco Container Platform Hybrid Cloud Optimized E.g: Google, … Flexible Deployment Model VM | Bare metal  HX, ACI Integrated Networking | Management | Security | Analytics CNCF Certified Kubernetes Platform 100% upstream, updates and best practices from open source community Turnkey Solution For Production-Grade Container Environments Easy to acquire, deploy & manage | Open & consistent | Extensible platform | World-class advisory & support 20PSOCLD-1007
  • 21. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS • Kubernetes PersistentVolume and Persistent VolumeClaims supported via the FlexVolume driver framework and implemented by mapping iSCSCI LUNs from Hyperflex • Developers can leverage HyperFlex storage for stateful container storage and containers have accessibility to storage incase of pod restarts or worker node vmotion • HyperFlex Data Performance and Resiliency provided to Kubernetes container storage Cisco HyperFlex Kubernetes integration K8s Node VM Kubelet HX FlexVolume Driver SW iSCSI Initiator private host-only vswitch ESXi vmkernel interface iSCSI LUN File HX iSCSI Proxy HX Controller VM vswitch-hx-storage-data NFS Datastore HX ESXi Node 21PSOCLD-1007
  • 22. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cisco ACI Kubernetes Integration Node OpFlex OVS Kubernetes ACI Policies Network Policy Node OpFlex OVS • Network policies of Kubernetes supported using standard upstream format but enforced through OpFlex / OVS using APIC Host Protection Profiles • Kubernetes apps can be moved without modification to/from ACI and non-ACI environments • Embedded fabric and virtual switch load balancing • PBR in fabric for external service load balancing • OVS used for internal service load balancing • VMM Domain for Kubernetes • Statistics per namespace, deployment, service, pod • Physical to container correlation 22PSOCLD-1007
  • 23. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cisco Cloud Center Kubernetes integration • Sits across any upstream Kubernetes cluster (1.8+) • Model application topology using containers,VMs, PaaS/cloud services, or any mixture thereof • Unified governance policies forVM and container/Kubernetes- based applications to enforce where, how, and by whom an application can be deployed • Create containerized application portability by dynamically create app podYAML in target cloud • Integrates with build tools in the CI/CD process so that a new build automatically kicks off a new deployment • Ensure that monitoring through AppDynamics (when available) is baked into the application deployment for cross cloud/cluster monitoring 23PSOCLD-1007
  • 24. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Service mesh: Istio Service discovery Load balancing Failure recovery Metrics Monitoring A/B testing Canary releases Rate limiting Access control End-to-end authentication 24PSOCLD-1007
  • 25. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Istio Architecture svcA Envoy Pod Service A svcB Envoy Service B Pilot Control Plane Mixer Control flow during request processing Citadel Traffic is transparently intercepted and proxied. App is unaware of Envoy’s presence Data Plane 25PSOCLD-1007
  • 26. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Istio Multi Cluster support svcA Envoy Pod Service A svcB Envoy Service B Pilot Mixer Citadel svcC Envoy Service C Primary/Local Kubernetes deployment Secondary/Remote Kubernetes deployment (s) 26PSOCLD-1007
  • 27. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Demo - Booksinfo app architecture Product Reviews v1 Reviews v2 Details RatingsReviews v3 27PSOCLD-1007
  • 28. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Demo – Deployment architecture Cloud - GKE cluster Pods – 10.40.0.0/19 On-prem - CCP cluster Pods – 10.50.0.0/16 Product Reviews v1 Reviews v2 Details Ratings Reviews v3 28PSOCLD-1007
  • 29. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Demo - Booksinfo app architecture with Envoy Product Reviews v1 Reviews v2 Details RatingsReviews v3Ingress Gateway Requests 29PSOCLD-1007
  • 30. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public On-Prem ✓ Production ready on-prem Kubernetes environment ✓ Easy access to services in GoogleCloud Develop applications on-premises consuming public cloud services Consumption of cloud services Open Service Broker PSOCLD-1007 30
  • 31. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Open Service Broker API • Provides a standard way to instantiate and consume any service • Producers (e.g.,GCP) create brokers to provide services • Consumers can discover and access via a catalog that subscribes to these brokers Cloud SQL Big Query Email Storage PubSub Storage SQL Chat 31PSOCLD-1007
  • 32. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Kubernetes, Service Catalog and OSB integration 32PSOCLD-1007
  • 33. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Demo - Booksfe app deployment architecture Booksfe Inventory Users Purchases 33PSOCLD-1007 Open Service Broker Pub/Sub Service Other Services… Container Platform
  • 34. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public ✓ No re-platforming of existing applications ✓ Leveraging cloud for modernized application development ✓ Consistent policies and access Develop applications in the public cloud consuming data from on-premises On-Prem Google Apigee Consumption of on-prem services Existing Services Apps | Data PSOCLD-1007 34
  • 35. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Google Apigee 35PSOCLD-1007 • Integrating legacy applications • Recompose monolithic applications as services • Build a service layer in front of existing systems to increase IT velocity • Import legacy systems into modern, container-based architectures as services Management services Analytics Dev management Security analytics Monolithic systems on premise Centralized governance of allAPI services Kubernetes Integration AllApigee services are Kubernetes services
  • 36. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public ✓ Proactive security and threat detection ✓ IntegratedVPN creates one unified encrypted network …across a secure environment On-Prem PSOCLD-1007 36
  • 37. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Permissions allow Stealthwatch Cloud to read GCP Flow Logs Stealthwatch Cloud Virtual Private Cloud Cisco Stealthwatch Cloud integration with Google Cloud • Google Cloud’sVPC flow logs provide records of all the resource communications in an account, bothVPC-to-VPC and to external IP addresses. • Cisco’s Stealthwatch Cloud consumesVPC flow logs • Automatic, helpful alerts: 95% marked helpful by users • Works out-of-the-box: Deploys quickly in agentless fashion, with no tuning or configuration needed • Dozens of detections for malware, insider threats, misconfigurations, and software vulnerabilities • Hybrid environments: on-prem and in the cloud PSOCLD-1007 37
  • 38. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Cisco Cloud Services Router 1000v integration with Google Cloud 38PSOCLD-1007 CSR 1000v Cloud Router Network Subnet Private N/w 1 Private N/w 2 Private N/w 3 Cisco ASR/ASA/ISR/C SR Physical / Virtual Appliance • CSR1Kv on Google Cloud enables private, secure communications using IPSec • BGP over IPSec ensures that the routes are advertised from on- prem to cloud and vice versa
  • 39. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS On-premises environment Google Kubernetes Engine Existing Services Apps | Data Cisco Hybrid Cloud Platform for Google Cloud Cisco HyperFlex Cisco Nexus9K / ACI Cisco CSR1000v Cisco Stealthwatch Cloud Cisco Container Platform Consistent Environment Google Apigee Cisco CloudCenter Istio BigQuery Cloud SQL Pub/Sub Big Table Cloud Storage Cloud Spanner Open Service Broker PSOCLD-1007 39
  • 40. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Delivering on the Promise 40PSOCLD-1007 October 2017 Cisco - Google Cloud Hybrid Cloud Solution January 2018 Cisco Container Platform May 2018 Kubernetes support for AppDynamics & CloudCenter March 2018 July 2018 >> More to come Cisco Stealthwatch Cloud support for Google Cloud July 2017 Joined new open source initiative Istio November 2017 Cisco Multicloud PortfolioMulticloud Portfolio Cloud Connect Cloud Protect Cloud Advisory Cloud Consume
  • 41. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Innovation on your own terms Develop and deploy anywhere Engineered & supported by Cisco & Google The next generation of hybrid cloud PSOCLD-1007 41
  • 42. Complete your online session evaluation © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Give us your feedback to be entered into a Daily Survey Drawing. Complete your session surveys through the Cisco Live mobile app or on www.CiscoLive.com/us. Don’t forget: Cisco Live sessions will be available for viewing on demand after the event at www.CiscoLive.com/Online. 42PSOCLD-1007
  • 43. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Continue the conversation... Check out other Cisco Cloud activities at Cisco Live Orlando! Attend PSO Sessions • PSOCLD-1003 Production- Grade Kubernetes in a Multicloud World | W209C (Tue) • PSOCLD-1007 Cisco Hybrid Cloud Platform for Google Cloud | W313 (Wed) • PSOCLD-1010 The Multicloud Approach | W208B (Thur) Attend the Cloud Innovation Talk Tuesday, Jun 12 3:45 p.m. - 4:15 p.m. World of Solutions Innovation Theater Get your Multicloud Assessment Visit the Embrace a Multicloud World Zone World of Solutions Cisco Campus Visit the Embrace a Multicloud World Zone World of Solutions Cisco Campus Share #CLUS @CiscoLive @CiscoCloud 43
  • 44. Are you Multicloud Ready? Let us help you go from newbie to ninja Get your personalized Multicloud Assessment in the “Embrace the MulticloudWorld” Zone. Just follow-the signs to the Cisco Cloud booth.
  • 45. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public#CLUS Demos in the Cisco campus Walk-in self-paced labs Meet the engineer 1:1 meetings Related sessions Continue your education 45PSOCLD-1007
  • 47. #CLUS

Notas del editor

  1. 1 min – Rohit, Allan
  2. 1 min, Allan
  3. Allan
  4. 1 min, Allan
  5. Allan Three major groups within organizations have the opportunity to drive change collectively! (note: depending on your presentation audience, please convert the narrative accordingly) On the left hand-side, enterprise IT wants to maintain control, consistency and compliance over the on-premises environment but also wants to contribute to the evolution, rather than slowing down development and innovation. At the other end of the spectrum, IT leadership and Line of Business users want to increase adoption of public cloud services and benefit from agile development, microservices-based architectures and modern platform and toolset capabilities. A relatively new group added to the equation, that sits almost between the two here are the IT Ops/DevOps, working closely with Cloud Architects and Developers. They are the link between the two different environments and audiences, having to operate across both worlds to enable Developers with the best tools, platforms, but taking into account their existing assets (applications and infrastructure), internal capabilities and control and compliance requirements.
  6. Allan Cisco and Google have partnered to present the next generation of Hybrid Cloud solutions: The Cisco Hybrid Cloud Platform for Google Cloud. Now you can develop and deploy applications ANYWHERE with an open customizable solution that connects the best of both worlds (on-premises and public cloud) and provides a unified, secure and consistent hybrid environment.
  7. Allan
  8. Allan Use Case 3 When establishing a hybrid CI/CD software pipeline and workflow: you can use one consistent environment to develop, test, deploy and move applications anywhere. Cisco CloudCenter leverages both on-premises and Google Cloud integrating all the tools necessary for the different phases of CI/CD.
  9. Allan
  10. Rohit
  11. Rohit
  12. Rohit
  13. Rohit
  14. Rohit
  15. Rohit
  16. Rohit
  17. Rohit, Allan
  18. Rohit, Allan
  19. Rohit, Allan
  20. Allan Use Case 2 When developing on-premises: you can use services from the Google Cloud. Your local Kubernetes Service Catalog integrates with the Open Service Broker at the Google Cloud, so public cloud services are being presented to you locally. Fast, automated application deployment optimized across on-premises and GC with CloudCenter Easy access to resources in GC Pods in Google Kubernetes Engine mapped to on-premises, Machine Learning, Mobile or IoT Install and configuration support for Open Service Broker in GC and Service Catalog on-premises Enforcement of policies that move with the application across both environments
  21. Allan
  22. Allan
  23. Rohit, Allan
  24. Allan The solution is designed to deliver 3 use cases (supported by Cisco Validated Designs) and can be customized accordingly. Use Case 1 When developing on the Google Cloud; with Google Apigee, you can create RESTful APIs to connect on-premises existing applications and data to modern applications running on Google Cloud. This way, you can avoid unnecessary re-platforming of existing applications and you don’t need to move them to leverage their data and extend them.
  25. Allan
  26. Rohit The foundations of the Hybrid Cloud Platform for Google Cloud are the security and networking. Stealwatch Cloud combines sensors to protect your on-premises assets, while also integrating with Google’s VPC Flow Logs (one of the few security vendors to offer that and a key innovation of the solution) to offer security in the public cloud. Stealthwatch Cloud’s approach, “entity modelling”, is a combination of behavioral modeling and machine learning that is used to identify early indicators of compromise for threats, including emerging threats, targeted attacks, credential abuse, insider threats, and data loss. Cisco’s Cloud Services Router (CSR) 1000v provides routing, security, and network management, bridging on-premises and Google Cloud into one unified encrypted network so that your developers can only focus on what they are building.
  27. Rohit
  28. Rohit
  29. Allan, Rohit The solution can be described in three layers: - optimized management, networking and security for the Google Cloud (Cisco CloudCenter, Cisco CSR1000v, Cisco Stealthwatch Cloud, Google Cloud service) - integrated API and mesh management (discovery services) between on-premises and public cloud applications (Google Apigee, Istio and Google Cloud Platform Open Service Broker) - on-premises integrated hardware with a turn-key Kubernetes environment (Cisco Hyperflex, Cisco ACI, Cisco Container Platform (including Contiv and Kubernetes Service Catalog)).  Besides GKE, Google Cloud services accessible via Open Service Broker are: BigQuery, Cloud SQL, Pub/Sub, Big Table, Cloud Storage and Cloud Spanner Solution Description  The Cisco Hybrid Cloud Platform for Google Cloud leverages Cisco’s VPN service to create a unified and secure network that includes your data center and the public cloud. Stealthwatch Cloud takes care of proactive security and thread detection by integrating with Google’s VPC Flow Logs and your on-premises environment so you can manage access of users, devices, and workloads with policy enforcement. This way you can ensure your developers only focus on building applications while you don’t have to worry about security or compliance. Cisco CloudCenter with Open Service Broker and Istio enables secure provisioning of microservices across both on-premises and Google Cloud, including integration with a local Kubernetes Service Catalog (running under Cisco Container Platform). This means you can easily access any Google Cloud service, including containers in Google’s Kubernetes Engine, mapped to your infrastructure, with the Cisco Container Platform taking care of cluster management on your side. In addition, with Cisco Application Centric Infrastructure (ACI) and Contiv (under CCP and not shown on the diagram), you can easily enforce networking policies that move across clouds with your containerized applications, so networking becomes easier to manage and monitor. Similarly, almost the reverse process can be achieved. One of the key innovations of Cisco  Hybrid Cloud Platform for Google Cloud is being able to expose your on-premises traditional applications and data to the public cloud. With Google Apigee, you can create, manage and secure RESTful APIs to connect existing systems to new public cloud services without having to re-platform  them. The result? Making better use of your existing investments and allowing you to move to the cloud at your own pace.
  30. Time: 2 mins We really have made great strides in delivering on the promise.
  31. Rohit, Allan At Cisco, we believe that cloud doesn’t have to be complicated , and that organizations should have the freedom to use any cloud the way they want to. We are dedicated to working with public cloud providers and a global ecosystem of more than 60,000 partners, 1 million network engineers, and 500,000 DevNet developers. Our industry-leading expertise in enterprise IT, including networking, security, management, analytics, and hyperconverged infrastructure uniquely positions us to deliver solutions enabling our customers in a multicloud world.