Microsoft Azure an overview
Microsoft s public/private strategy Agenda Azure services Latest developments
Empower every person and every organization on the planet to achieve more
Microsoft wants to provide flexibility and choice with a single integrated platform Run your workloads where you want to run them without changing the deployment methodology or changing any code Consistent platform
A single integrated platform with the announcement of Microsoft Azure Stack Describe Deploy Control Azure Resource Manager Gallery Azure Resource Manager
Provide the platform for any workload
The continuously investments in compliance and security makes Microsoft Azure the most trusted and transparent platform Program EU-US Safe Harbor Framework ISO27001 Description Legal transfer of data to Microsoft from within EU Broad international information security standard SSAE 16 (SOC 1 Type 2) Replacement for SAS 70 Type 2 PCI DSS Payment Card Industry (PCI) Data Security Standards (DSS) Level 1 DNB EU Model Clauses Article 29 Working Party Windows Azure approved by Dutch National Bank Robust commitment for handling EU personal data and transfer to US data protection authority of 28 EU Member States approve Microsoft Cloud Services ISO27018 ISO International Privacy Standard HIPAA BAA FISMA / FedRAMP Protected health information in the US Required by law for US Federal agencies and looked on favorably by other government agencies
24 Regions Worldwide, 22 Online. Huge capacity around the world, still growing West US California US Gov Iowa Central US Iowa South Central US Texas North Central US Illinois Canada Central Toronto US Gov Virginia Canada East Quebec City East US Virginia East US 2 Virginia North Europe Ireland West Europe Netherlands India West Mumbai India Central Pune China South * Shanghai India South Chennai China North * Beijing East Asia Hong Kong Japan East Saitama Japan West Osaka SE Asia Singapore Australia East New South Wales Brazil South Sao Paulo Australia South East Victoria Operational Announced/Not Operational * Operated by 21Vianet
Each thinkable scenario can be delivered by Azure.. Platform Services Security & Management Portal Cloud Services Service Fabric Web Apps API Apps API Management Visual Studio Azure SDK Hybrid Operations Azure AD Connect Health Active Directory Batch Remote App Mobile Apps Logic Apps Notification Hubs Team Project Application Insights AD Privileged Identity Management Multi-Factor Authentication Backup Automation Storage Queues Biztalk Services HDInsight Machine Learning SQL Database SQL Data Warehouse Operations Management Suite Key Vault Store / Marketplace VM Image Gallery & VM Depot Hybrid Connections Media Services Service Bus Content Delivery Network (CDN) Data Factory Stream Analytics Event Hubs Mobile Engagement Redis Cache DocumentDB Search Tables Import/Export Site Recovery StorSimple Infrastructure Services
Azure Marketplace provides a growing ecosystem Virtual Machines Data Services Application Services AAD Applications Web Applications
Example of building an end-to-end solution with the services Azure provides Azure Data Generation Collection Ingest Store Analyse and Transform Present and decide SSRS Cloud Gateways (WebAPIs) Azure Event Hubs Azure SQL DB Azure Machine Learning SharePoint BI Field Gateways Azure Service bus Data Warehouse HD Insight (Hadoop) Excel BI Power BI Camera Azure Document DB Smart cars Azure IoT Hub Storm on Azure HDInsight Stream Analytics Azure Blob Storage AZURE DATA FACTORY
Demo of a real-life case ThyssenKrupp Elevator Giving the world s cities a lift with IoT ThyssenKrupp Elevator wanted to gain a competitive edge by focusing on what matters most to its customers in buildings the world over: reliability. Drawing on the potential of the Internet of Things (IoT) by connecting its elevators to the cloud, gathering data from its sensors and systems, and transforming that data into valuable business intelligence, ThyssenKrupp is vastly improving operations, and offering something its competitors do not: predictive and even preemptive maintenance.
RBAC Offline Operations Data Catalog SQL, SharePoint, BizTalk Images HDInsight Stream Analytics AutoScale Distributed Cache Dynamic Remote Desktop AAD B2C Storage Files Last 12 IP and SNI SSL G-Series http Logs to Storage VM Backup IP/DDOS Protection months Multi-Factor Auth API Apps http Logs to Storage Dynamic Remote Desktop Storage Analytics ios Notification Support Delete Disks WebSockets AMQP Support VIP ACLs New VM Gallery Windows Server Backup Queue Geo Replication PowerBI Read-Only Secondary Storage Large Memory SKU Windows Phone Support Per Minute Billing HTML 5/CORS Custom Mobile API Service Fabric Hyper-V Disaster Recovery Support MSDN Dev/Test Integration Mobile Services Site to Site Virtual Network Point to Site Media Services Remote Debug Tag Expressions Stop without Billing Web Application Gateway Mercurial Deployment Cloud Services SDK 2.0 Android Support Manage Azure in AD Log Streaming Active Directory Data Factory Git Source Control Windows 10 AD Management Portal AD Directory Sync CORS/JSON Storage Support B2B/EDI and EAI Adapters Web App Logic Apps Azure Resource Manager Data Lake VOD Streaming + Encoding AutoScale/Monitoring Message Pump Programming Model IaaS v2 Partitioned Queues/Topics Notification Support IoT Suite/IOT Hub VS Online App service Environment Import/Export Hard Drives Xamarin integration Hyper-V Recovery
Announcments AzureCon 29 sept 2015 1. Azure Container Service - an open source container scheduling and orchestration service which builds on our partnerships with both Docker and Mesosphere, as well as our contributions to open source projects in this space. This service leverages both Docker and Apache Mesos in order to deliver an open source environment for running container workloads. Azure Container Service will be available in preview before the end of the calendar year. 2. Azure IoT Suite - Built on our proven cloud platform, the suite integrates with a company's existing processes, devices and systems to quickly and easily build and scale IoT projects. It is purpose-built to address common business needs for IoT, such as remote monitoring, asset management and predictive maintenance. When a business is able to connect the assets it already owns and then harness the power of the data these assets are already generating, they realize operational efficiencies, create innovation and can transform their business. 3. Cortana Analytics Suite - a fully managed big data and advanced analytics suite that enables you to transform your data into intelligent action is available for purchase. 4. 3 New Azure Regions - Central India in Pune South India in Chennai and West India in Mumbai making Microsoft the first hyper-scale public cloud provider in India. The new region will provide local customers with data residency and replication in multiple regions for backup and recovery, and the option of a private connection to the cloud. Azure is immediately available in these regions, with Office 365 services coming in October, and Dynamics CRM to follow in the first half of 2016. 5. Azure Security Center - an integrated security solution that gives customers end to end visibility and control of the security of their Azure resources, helping them to stay ahead of threats as they evolve. This first-of-its-kind security service also integrates with partner solutions from companies such as Barracuda, Checkpoint, Cisco, CloudFlare, F5 Networks, Imperva, Incapsula, and Trend Micro. In addition to enabling integrated security, monitoring and policy management, Azure Security Center also provides invaluable recommendations. By analyzing information gathered from customers deployments and comparing with global threat intelligence aggregated by Microsoft, the service introduces a unique ability in the industry to detect threats while taking the guesswork out of cloud security. Azure Security Center will be broadly available for Azure customers by the end of the year. 6. N-series VM s - a new family of Azure Virtual Machines with GPU capabilities. GPUs are ideal for compute and graphics-intensive workloads, helping customers to fuel innovation through scenarios like remote visualization, high performance computing and analytics. Available in preview within the next few months, the N-series will feature the NVIDIA Tesla Accelerated Computing Platform as well as NVIDIA GRID 2.0 technology, providing the highest-end graphics support available in the cloud today. 7. Azure Compute Pre-Purchase Plan - a new pricing program designed for customers with steady state, predictable workloads on Azure. With this new offer, customers who pre-purchase Azure compute for one year can realize cost savings of up to 63 percent. This plan will be available globally starting December 1. 8. App Service Environment - generally available in December with a fully backed SLA. App Service Environment provides a fully isolated and dedicated environment for securely running all of your apps in addition to enabling more scaling options for Web Apps, Mobile Apps, API Apps and Logic Apps. 9. Azure CDN - A strategic partnership with Akamai which will enable integration of Akamai s industry-leading CDN capabilities into Azure. This dramatically expands Azure CDN s capabilities, scale and geographic reach. Public sector customers will have convenient access as both platforms have achieved the FedRAMP JAB s highest certification. 10. Azure Mobile Engagement - The general availability, which enables user segmentation, app user analytics, and contextually-aware smart push notifications and in-app messaging across devices to maximize app usage, retention and monetization. 11. Live Encoding for Azure Media Services - The general availability. Live Encoding enables the delivery of high quality video, under a variety of network conditions, to every device for the live streaming of events. Live Encoding is the same technology that powered the digital coverage of some of the largest events on the planet such as Super Bowl XLIX and 2014 Winter Olympics. 12. Azure SQL Data Warehouse - including recently released Power BI integration, is now broadly available for public preview. Azure SQL Data Warehouse is a new, first-of-its-kind elastic data warehouse in the cloud. It s the first enterprise-class cloud data warehouse that can dynamically grow, shrink and pause compute in seconds independent of storage, enabling you to pay for the query performance you need, when you need it. 13. ExpressRoute for O365 and Skype for Business - The general availability as well as the ability to connect to Microsoft Azure s Government Cloud via ExpressRoute. With ExpressRoute for Office 365, customers can access Office 365. 14. New pricing plans for ExpressRoute - Effective Oct 1st 2015, customers will have two different data plans for their ExpressRoute connections. Relative to the prior model where pricing plans were tied to the service provider, these plans provide more flexibility in choosing the right plan based on your data usage. For more details, refer here. 15. DV2 series VM s - The general availability, our next generation of D-series Virtual Machine instances. DV2 instances can be used as Virtual Machines or Cloud Services. DV2 instances are based on a customized 2.4 GHz Intel Xeon E5 v3 (Haswell) processors, and with Intel Turbo Boost Technology 2.0 can go to 3.2 GHz, making DV2 up to 35% faster than the current D-series instances. Dv2-series and D- series are ideal for enterprise-grade applications that demand faster CPUs, better local disk performance, or higher memories. 16. Price reductions on A8-A11 Instances - As part of our commitment to save you costs whenever we can, we re reducing prices of A8, A9, A10 and A11 instances by as much as 60%. These instances carry the powerful Intel Xeon E5 processors and are suitable for compute intensive workloads like high-performance clusters, modeling and simulations, video encoding, and other compute or network intensive scenarios. The new prices will be effective October 1st, 2015. Please visit the Virtual machines pricing page for pricing details. 17. Azure File Storage -The general availability. Azure File Storage is a highly available and geo-replicated managed file share at low cost. Via the widely-used SMB 3.0 protocol, it enables customers to have persistent and secure connections with applications both on-premises and in the cloud. 18. Azure Backup of application workloads - The general availability. Included as part of Microsoft Operations Management Suite, Azure Backup now supports direct backup of SQL Server, SharePoint, and Microsoft Dynamics 19. Azure Resource Health - Upcoming availability of a new service that exposes the health of each of Azure resources such as Virtual Machines, websites and SQL Databases to help customers quickly identify the root cause of a problem. Based on the root cause, it provides actionable guidance and tooling to solve issues, including the option to submit a support ticket. Azure Resource health will be available for public preview in October. 20. Announcement of the Financial Services Compliance Program -.
Latest developments per area Azure Resource Manager (IaaSv2) Azure IoT Suite Service Fabric and Docker Operations Management Suite Cortana Analytics Suite
Azure Resource Manager provides a consistent management layer o Resource Groups o Tagging o Role Based Access Control o Template deployments
Resource Groups and Tagging improves resource management Resource Groups A resource Group is a unit of management Tightly coupled containers of multiple resources of similar or different types Every resource *must* exist in one and only one resource group Resource groups can span regions Lifecycle: deployment, update, delete, status Identity: resources can talk to each other Grouping: Metering, billing, quota: applied & rolled up to group Tagging Tags to organize your Azure resources
Role Based Access allows secure access with granular permissions
Deployments based on templates provides a declarative way of deploying resources New-AzureVM VM $myvm New-AzureStorageAccount StorageAccountName $acct Set-AzureVNetConfig ConfigurationPath -Path "resources": [ { "name": mystorageaccount", "type": "Microsoft.Storage/storageAccounts", "location": westus", "apiversion": "2015-05-01-preview", "properties": {"accounttype": Standard_LRS"} } ]
Container technology recap Isolated environment on a single machine Like full OS: processes, memory, file system, IP address Life cycle: boot/start, shutdown/stop, run Built on-top of OS/Kernel-level technologies LXC on Linux, Windows will provide container with Server 2016 Containers are NOT cross-platform!!!!! Engines (e.g. Docker) built ecosystem on-top Typically runs on-top of OS/Kernel-level tech Layered approach working with images and marketplace for images
Containers High Availability & Scale? + Faster recovery / recycling & faster scale-out Shorter boot times of containers can help recovering faster from failures reduce your RTO + Improved image shipment to nodes Container images do have smaller disk-footprint enables faster delivery to machines reduces RTO + Better resource usage Increase density on single machines for multiple customer tenants while still achieving isolation Containers alone do not provide HA or scale! You are responsible to run multiple instances on multiple machines (physical/virtual) But they can help making HA better
Azure Service Fabric Micro services High Availability Actor programming model Hybrid Operations Hyper-Scaling High Density Data Partitioning Rolling Upgrades Automated Rollback Service Fabric Low Latency Stateful services Placement Constraints Health Monitoring Fast startup & shutdown Container Orchestration & lifecycle management Load balancing Self-healing Auto Replication & Failover Windows Server Linux Windows Server Linux Windows Server Linux Azure Private Clouds Hosted Clouds
Cortana Analytics Suite provides an end-to-end managed solution
Cortana Analytics Suite provides an end-to-end managed solution
IoT Suite solves most typical obstacles Long timelines Hard to scale Difficult to customize
IoT Suite provides preconfigured solutions Azure IoT Suite Remote Monitoring Web/Mobile App Power BI Devices C# simulator IoT Hub Stream Analytics Storage blobs Event Hub Web Jobs DocumentDB Logic Apps Back end systems and processes Azure Active Directory
Devices RTOS, Linux, Windows, Android, ios IoT Hub introduces devices management and bi-directional capabilities Protocol Adaptation Field Gateway Protocol Adaptation Cloud Gateway Field Gateway Event Hubs & IoT Hub Device Connectivity & Management
Operations Management Suite provides management as a service
Operations Management Suite provides management as a service
Next Generation Sports Network Next Generation Sports Network (NGSN) wanted to make international soccer matches available live and on-demand to a global viewer base. It required a wide array of solutions to create the next step in in the evolution of the online sports viewing experience. With Microsoft Azure and support from Microsoft Services, NGSN was able to build a global broadcasting network in just six months just a fraction of the time required for an onpremises solution. Harry van Streun, CEO and President of NGSN set out to change that. First, he acquired the live broadcasting rights of 7 key European and South American soccer leagues. His ultimate plan was to provide soccer fans with a 24-hour, live-streaming, on-demand, sports network that offered HD broadcasting of entire soccer games from all of these leagues over the Internet an industry first. But here was the challenge: At the time, the small 4-person NGSN team had little technical knowledge of internet broadcasting. Even with the right partners, building a global broadcasting network to deliver on this plan could take up to a year or more. Not only did van Streun want to go live in months - but he wanted an infrastructure ready to serve millions of subscribers around the world. Project would normally have taken a year, and it was delivered in 6 months.
(c) 2015 Microsoft Corporation. All rights reserved. This document is provided "as-is." Information and views expressed in this document, including URL and other Internet Web site references, may change without notice. You bear the risk of using it. This document does not provide you with any legal rights to any intellectual property in any Microsoft product. You may copy and use this document for your internal, reference purposes. This document is confidential and proprietary to Microsoft. It is disclosed and can be used only pursuant to a non-disclosure agreement.