Remote Voting Conference
Logical Architecture Connectivity Central IT Infra NIST
Best reachability in India for R-Voting Initiative 200+ Physical MPLS POPs across India 5 Regional Data Centre at Pune, Noida, Kolkata, Chennai, and Bangalore Global MPLS provisioning in partnership with BT, PCCW and C&W Ability to extend MPLS cloud to 2,700+ locations BSNL Network Separate Core & Edge routers for better performance Primary & DR NOC for Uninterrupted Monitoring & Reporting High end Cisco routers (GSR 12000 series) BSNL has ~5.5 Lakh Kms of fibre within India
Data Center Transformation IT supporting Applications and Infrastructure Traditional 4-Wall Data Centre Lifecycle Data Centre IT operating model alignment to Outcome The Interconnected IT Model Public Application Private Network Infrastructure Compute Managed and Operate Applications Public Security Storage Co-locate Business Driven Outcomes SaaS
Defining the Cloud Computing Model Cloud computing is a model for enabling on-demand network access to a shared pool of configurable computing resources that can be rapidly provisioned and released with minimal management effort. Characteristics Service Types Deployment Models Service-based; consumer concerns are abstracted via service interfaces Metered by use; services tracked by usage metrics that enable multiple payment models Scalable and elastic; services flex on demand to add or remove resources as needed Shared; services dynamically allocated from a pool to gain economies of scale Broad Network Access; using Standard Internet Protocols and universal methods Software as a Service Finished applications that you rent and customize Likely procured by BU, IT Executives Platform as a Service Developer platform that abstracts the infrastructure, OS, and middleware for developer productivity Likely procured by Development Infrastructure as a Service Deployment platform that abstracts the infrastructure Likely procured by IT Enterprise Enterprise Enterprise 1 Enterprise PUBLIC PRIVATE Private Cloud COMMUNITY Enterprise 3 Enterprise 2 Community Cloud HYBRID Private Cloud Public Cloud Public Cloud
Cloud Services: Benefits for R-Voting Infra Strategic Agility Operational Freedom Risk Mitigation Total Cost of Ownership Time to Launch Guarantees Uptime / Availability Resource Availability Readily available capacity Auto-scaling Staff utilization improved Redundant Infra - Better outage protection Support - Expertise available if required Control Hardware / Software Disaster management Avert risk of Obsolescence Licensing and Maintenance of Systems Manpower and resource availability risks Auto-scaling Reduced CapEx - Real estate / Power / IT Infra / Physical Infra and Security Infra Reduced Operational Cost Financial flexibility Compliance and certification cost Certifications
Orchestration Layer Secure Cloud Container Network Compute VMs Policy-Driven Provisioning Stora ge On-Demand Automated Delivery Single Pane of Glass Domain Managers OS and Virtual Machines Compute VM VM Bare Metal Virtualized and Bare-Metal Compute and Hypervisor Orchestration Layer End-to-End Automation and Lifecycle Management Network A B C Network and Security Storage Tenant Tenant Tenant A B C
Scalable in true-sense Convert upfront capital expenses to easily manageable operating costs Pay as you grow Only pay for you actually use Scale up or down to meet business demands Auto-scaling: Seamless scaling of resources Run IT more efficiently and lower your carbon footprint
Security Aspects Network Centricity Classic data centre switching architecture: Dedicated VLANs to each client User-determined private or public connectivity (for VMs) Client defined Access Lists Compliance Authority and client audits: ISO 27001 SaS 70 Type II Account-based Security Administrator and account: Unique username/password for each administrator Roles-based permissions controlling the activities of each administrator Perimeter Security Securing the data centre border: Firewall protection IDS/IPS monitoring Security Management Audit trial and monitoring: Audit logs of all environmental changes 24x7x365 Public IP Monitoring DoS/DDoS mitigation Identifies traffic and routing instability, equipment failures, or mis-configurations Secure User Access Securing the network: Client-to-Site VPN administration SSL VPN User Access Data Security Client data protection: User data encrypted Secure Facility Physical security: 24x7x365 monitored & manned Facility
Multi-tier R-Voting application on cloud Low (Web) Medium (App) High (DB) Public (NAT ed) IP Space Public Traffic filtered at Firewall VLAN A VLAN B VLAN C Private IP Space Traffic filtered at VLAN A Firewall Private IP Space Specific server to server traffic is filtered at VLAN B Firewall Layer 2 networks have better performance and security than Layer 3 networks Closest device to Physical Layer 1 cable into a switch port resulting in improved security and performance Public user VPN Gateway Administrator Administrator Load Balancing SSL Offloading
High Availability and Data Protection Cloud DC 1 Cloud DC 2 Application Replication Host Based Replication Clone Replication SAN Storage Virtual Servers HA, Anti-Affinity Clone Servers IP Network Clone Servers Virtual Servers HA, Anti-Affinity SAN Storage Clone Server Application Replication Host Based Replication Local Backup Repository Backup API script Secondary Copy Backup Repository
Flexible Architecture for R-Voting Infra: that supports Hybrid constructs Under load conditions (burst) To supplement capacity To overcome latency Additional Security Hybrid connect can be Private MPLS VPN Network like SWAN, NKN, etc Private Cloud Public Cloud Managed Hosting / Hybrid Connect Hybrid Connect ECI On-Premise DC Cloud servers Cloud servers Dedicated servers Firewall with Layer 7 services
BSNL : Partner for R-Voting initiative PAN India Largest Connectivity Provider Data Center Service Provider (Colocation & Managed Hosting) Cloud Service Provider Robust design Multiple paths in the core. MPLS VPN 1:1 Internet Leased Line Point to Point Leased Line Broad band network Serving 500 + organizations (Central/State Govt./PSUs/MNCs/Private) IT Infra Utility Model Pay as You Use Cloud Model Secured Infra @BSNL house Scalable to meet demands Self-Service Portal Hybrid models SLA Guaranteed Services