cgi cloud computing gis uk approach & resulting platform · cgi uk cloud deployments ....

14
© CGI Group Inc. CONFIDENTIAL CGI Cloud Computing GIS UK Approach & Resulting platform April 2014 Version 1.9 Geoff Whitemore GIS UK - Head of Innovation & Portfolio

Upload: others

Post on 03-Jun-2020

11 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

© CGI Group Inc. CONFIDENTIAL

CGI Cloud Computing GIS UK Approach & Resulting platform April 2014 Version 1.9 Geoff Whitemore GIS UK - Head of Innovation & Portfolio

Page 2: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

The Cloud - Hotel Analogy Where do you start? • You build a hotel

– How big and what ‘*’ rating do you choose?

– Physical Location?

• You build Rooms / Floors – Rooms can be of different sizes and

features • Large screen TV, Jacuzzi etc • Executive room / budget Room

• Risk of empty rooms not being used

• What happens when we are full – Move customers to other hotels? – Build an extension?

Or… Somewhere in the Middle>?

Page 3: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

Where are you on this Journey?

Hypervisors

Physical Servers

Automation (Cloud)

Virtualisation

Single Role

Agile / Subscription

Transformation Stages IT Industry Solution

In a Cloud “Compute & Storage

can be dumb”

Broker (GEO-Cloud / True Cloud) True Hybrid

80% - 90% of ALL infrastructure activities will occur within the virtual layers as Software Defined ‘X’

Page 4: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

All Clouds are not created equal… Some are more equal than others…

4

Community Cloud (3C, CCC, SGC)

Private Cloud / Secure (3C, CCC, SGC)

Public Cloud (Azure, AWS)

•Internet connectivity •Massive multi-tenancy •Small & Medium Business focus

•Standard feature set •No customization •Traditionally un-managed, credit card driven

•Politically sensitive tenancy separation.

•Private connectivity •Trusted logical separation •Tailored Security •Specialised Technology •Vendor agnostic

•Single or Multi-tenant •Dedicated infrastructure •Large scale Compute •IL3 Security / commercial best practice

•Vendor agnostic

?

Page 5: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

Web hosting & DB software

Operating system

Hypervisor

Application

Solutions tailored to meet client’s desired level of responsibility

Web hosting & DB software

Operating system

Hypervisor

Physical

Client Managed Virtual machines

For managed VMs: vulnerability scanning and patch management provides embedded security to close the most common exploits

Application

CGI Managed Virtual Machines

CGI SaaS

Customer Responsibility

Responsibility

Hypervisor

Physical Physical

5

Page 6: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

New Commercial IaaS

SGC (IL3) Day 1 immediate uptake!

Key Requirements: • Create CCC Hotel Reception • Re-use reference SGC architecture • Remove specific IL3 security elements • Maximise new Feature set through COSN

Creates: • Multi-Tennant Private / Virtual Private

Commercial Cloud • New Multi-tenant capabilities • Enforces ruthless standardisation

approach

Available from May 2014

Clients currently being deployed: Key features: • IL3 rated Solution • True Utility Based Platform • Heterogeneous platform / Multi-

Hypervisor • Bronze / Silver / Gold Services • Re-use methodology, Copy & Paste

CGI UK Cloud Deployments

Community Cloud

Re-use Design

Key Requirements: • Dedicated Compute

Resources • Security boundaries • Ring fenced

resources • Specialised

technology • Can be client owned

kit, License bound • Recommend shared

kit though for lower TCO

Public Cloud (Azure) Cloudstore

6

True Hybrid into Azure

Page 7: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

CGI and Microsoft join together to build Microsoft based Cloud Solutions to deliver in-country or “local” access to capacity and business applications Solution Highlights •Hosted in CGI’s secure Data Centers globally

•Designed for Enterprises and Governments

•On-demand capability on a “…as-a-service” model

•Microsoft Email / Lync / SharePoint as-a-service

•Burst capability into Microsoft Azure

•Client managed or CGI managed environments

Offering will be available initially in the following countries

7

CGI to build and deliver secure cloud solutions on Microsoft Cloud Platform

UK Finland

Sweden Norway

Page 8: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

8

ON-Demand WAP Portal (As part of Cloud Operating System Network, COSN)

Feature: • On Demand Web Portal • Un-managed VM Client

provisioning • Same OS Templates used

as-in production • Embedded Security • Online ‘Gallery’ for

deploying Virtual Machines / Services

• Per Month billing • Provides ‘Copper’ Service

Benefit: • Public Cloud Functionality

in the safety of a private cloud infrastructure

• Unmanaged VM deployments = v fast deployments

• AV will be transparent even to un-managed Virtual Machines

• Client Cloud administrators can deploy resources; scalable web hosting; and more, without intervention from CGI

What it is: • Windows Azure Pack

(WAP) • Cloud Self Provisioning

Web Portal • Cloud Monitoring Web

Portal Delivers Windows Azure

technologies for you to run inside our datacentre. It offers rich, self-service, multi-tenant services and experiences that are consistent with Microsoft’s

public cloud offering

Simple management of services such as Websites, Virtual

Machines, Multi-Tenant Databases

Page 9: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

Familiar Interface – Hybrid model (Azure Pack) c3UK CGI Portal Mock up

9

NEW

Page 10: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

10

DBaaS (As part of Cloud Operating System Network, COSN)

Feature: • On Demand Database

deployments • Per Month billing • Provides ‘Copper’

Database Service Initially • High density

infrastructure proposed for low cost Database development services

Benefit: • Public Cloud

Functionality in the safety of a private cloud infrastructure

• Deploy a project Database in minutes..

• Client Cloud administrators can deploy both Microsoft SQL, and MySQL hosting without intervention from CGI

What it is: • Windows Azure Pack

functionality (WAP) • Multi-Tenant Database

creation services • SPLA SQL Server 2012

Page 11: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

11

GIS Cloud Reference architecture

IL3 Commercial (IL0-2)

2 Clouds… SGC / Commercial ONE Vision…ONE Engine… Secure

Cloud First?

Created Standards Cloud

First?

Re-Use Standards

Page 12: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

Commercial Cloud (CCC, 3C) Q2/Q3/Q4 - 2014

March ‘14 April ’14 May ’14 June ’14 July ’14 August ’14 September ’14 Q2 Remaining Month Q3 Q4

CCC Commercial Cloud

12

Service Integration for IaaS Complete

On Demand WAP Portal

Multi-Tenant SQLDBaaS

Multi-Tenant WWWaaS

‘Monitor’aaS

Hybrid into Azure

2x Client Build starts

Pilot Billing Engine

On Demand, Un Managed VM “Copper Service”

Platinum Service

Branch Cloud Pilot

R2 Vanilla Platform Go-Live

Service OLA

Note: All dates subject to change, and validation =Proposed Available Date

1

1

3 2

Pilot SAP aaS (based on MSFT) SAP in the Cloud Sandbox, using HANA

4

Adv Billing Engine

Page 13: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

Secure Government Cloud (SGC) Q2/Q3/Q4 - 2014

March ‘14 April ’14 May ’14 June ’14 July ’14 August ’14 September ’14 Q2 Remaining Month Q3 Q4

SGC IL3 Cloud

IL3 PGA Expected

Upgrade Hyper-V Hosts to R2

Implement WAP Portal

Increase x86 Compute / SAN

Automated Templates (Sharepoint 2013)

Automated Templates (Lync 2013)

Automated Templates (Exchange 2013)

Upgrade SC 2012 Elements to R2

Implement updated Billing Engine

COSN Agreement

Retro-fitting to IL3

Note: All dates subject to change, and validation =Proposed Available Date

Match Monitoring Tools to new Capacity

Page 14: CGI Cloud Computing GIS UK Approach & Resulting platform · CGI UK Cloud Deployments . Community Cloud . Re-use Design Key Requirements: • Dedicated Compute Resources • Security

SGC / CCC Joint Innovation Q1/Q2 2015

October ’14 November ’14 December ’14 January ‘15 February ’15 March ’15 April ‘15

SGC / CCC Joint Innovation

Increase Virtual Resource allocation limits (128GBvRAM, 16vCPU) – if demand allows)

Pilot / Test Orchestration / Automation to OVM

If OVM Successful Oracle DBaaS Oracle Weblogic aaS

EUCaaS – VDI/RDP Designs available for deployment on the cloud

Note: All dates subject to change, and validation =Proposed Available Date

“Archive” aaS

“Storage” aaS

Other Hypervisor Integration (KVM)? If Demand Allows