Copyright 2011, Storage Strategies Now, Inc. All Rights Reserved.



Similar documents
Windows Server 2003 Migration Guide: Nutanix Webscale Converged Infrastructure Eases Migration

Choices for implementing SMB 3 on non Windows Servers Dilip Naik HvNAS Pty Ltd Australians good at NAS protocols!

Introduction to NetApp Infinite Volume

Cloud File Services: October 1, 2014

EMC ISILON OneFS OPERATING SYSTEM Powering scale-out storage for the new world of Big Data in the enterprise

Actifio Big Data Director. Virtual Data Pipeline for Unstructured Data

Selling Compellent NAS: File & Block Level in the Same System Chad Thibodeau

StarWind Virtual SAN for Microsoft SOFS

OPTIMIZING PRIMARY STORAGE WHITE PAPER FILE ARCHIVING SOLUTIONS FROM QSTAR AND CLOUDIAN

INCREASING EFFICIENCY WITH EASY AND COMPREHENSIVE STORAGE MANAGEMENT

Red Hat Enterprise Linux as a

Whitepaper. NexentaConnect for VMware Virtual SAN. Full Featured File services for Virtual SAN

Software Defined Microsoft. PRESENTATION TITLE GOES HERE Siddhartha Roy Cloud + Enterprise Division Microsoft Corporation

Distributed File System Choices: Red Hat Storage, GFS2 & pnfs

Active Directory and DirectControl

IBM InfoSphere Guardium Data Activity Monitor for Hadoop-based systems

Using FlashNAS ZFS. Microsoft Hyper-V Server Live Migration

Simplified Management With Hitachi Command Suite. By Hitachi Data Systems

Real-time Compression: Achieving storage efficiency throughout the data lifecycle

SMB 3.0 New Opportunities for Windows Environments

Understanding Enterprise NAS

Scale and Availability Considerations for Cluster File Systems. David Noy, Symantec Corporation

Best Practices for Installing and Configuring the Hyper-V Role on the LSI CTS2600 Storage System for Windows 2008

Introduction. Scalable File-Serving Using External Storage

Object Storage: Out of the Shadows and into the Spotlight

Big data Devices Apps

Meeting the Top Backup Challenges in Small and Medium Business Environments

StorageX 7.5: Software-Based Cloud Storage Management

QRadar SIEM 6.3 Datasheet

Modernizing enterprise application development with integrated change, build and release management.

File Services. File Services at a Glance

Best Practices for Data Sharing in a Grid Distributed SAS Environment. Updated July 2010

In the Age of Unstructured Data, Enterprise-Class Unified Storage Gives IT a Business Edge

SECURE, ENTERPRISE FILE SYNC AND SHARE WITH EMC SYNCPLICITY UTILIZING EMC ISILON, EMC ATMOS, AND EMC VNX

owncloud Architecture Overview

WHITE PAPER. Software Defined Storage Hydrates the Cloud

Veeam Backup & Replication for VMware

Maginatics Cloud Storage Platform A primer

Data Protection with IBM TotalStorage NAS and NSI Double- Take Data Replication Software

A Virtual Filer for VMware s Virtual SAN A Maginatics and VMware Joint Partner Brief

High Availability with Windows Server 2012 Release Candidate

IBM Infrastructure for Long Term Digital Archiving

WHITE PAPER. Home Directories on Snap Server GuardianOS

Платформа NetBackup 7.6. What's new in NetBackup 7.6? 1

Top 10 Most Popular Reports in Enterprise Reporter

Netwrix Auditor. Administrator's Guide. Version: /30/2015

COMPANY PROFILE: VEMBU TECHNOLOGIES

Object Storage A Dell Point of View

HADOOP SOLUTION USING EMC ISILON AND CLOUDERA ENTERPRISE Efficient, Flexible In-Place Hadoop Analytics

Technology Insight Series

CTERA Enterprise File Services Platform Architecture for HP Helion Content Depot

Sanbolic s SAN Storage Enhancing Software Portfolio

Hitachi NAS Platform and Hitachi Content Platform with ESRI Image

QNAP NAS & Virtualization

Windows Server on WAAS: Reduce Branch-Office Cost and Complexity with WAN Optimization and Secure, Reliable Local IT Services

Unstructured data in the enterprise

CIFS/NFS Gateway Product Release Notes. Version May 2015 Revision A0

Why Choose VMware vsphere for Desktop Virtualization? WHITE PAPER

Symantec NetBackup Appliances

The IBM Cognos Platform

Red Hat Storage Server

ACCELERATING YOUR IT TRANSFORMATION WITH EMC NEXT-GENERATION UNIFIED STORAGE AND BACKUP

Why EMC for SAP HANA. EMC is the #1 Storage Vendor for SAP (IDC Storage User Demand Study, Fall 2011)

Vormetric Encryption Architecture Overview

Rapid Data Backup and Restore Using NFS on IBM ProtecTIER TS7620 Deduplication Appliance Express IBM Redbooks Solution Guide

EMC IRODS RESOURCE DRIVERS

BIG DATA-AS-A-SERVICE

Big data management with IBM General Parallel File System

I D C T E C H N O L O G Y S P O T L I G H T. T i m e t o S c ale Out, Not Scale Up

NetVault Backup, NDMP and Network Attached Storage

FileDrawer An Enterprise File Sharing and Synchronization (EFSS) solution.

Why is it a better NFS server for Enterprise NAS?

EMC ISILON AND ELEMENTAL SERVER

Quick Start - NetApp File Archiver

Windows Embedded Security and Surveillance Solutions

RSA SecurID Two-factor Authentication

EMC AVAMAR INTEGRATION WITH EMC DATA DOMAIN SYSTEMS

WHITE PAPER. Get Ready for Big Data:

Integration with Active Directory. Jeremy Allison Samba Team

EMC ISILON X-SERIES. Specifications. EMC Isilon X200. EMC Isilon X210. EMC Isilon X410 ARCHITECTURE

I D C V E N D O R S P O T L I G H T

The Essentials Series: Enterprise Identity and Access Management. Authentication. sponsored by. by Richard Siddaway

Virtualization. as a key enabler for Cloud OS vision. Vasily Malanin Datacenter Product Management Lead Microsoft APAC

Building a Flash Fabric

Hitachi Cloud Service for Content Archiving. Delivered by Hitachi Data Systems

The IBM Archive Cloud Project: Compliant Archiving into the Cloud

iscsi: Accelerating the Transition to Network Storage

Got Files? Get Cloud!

An Oracle White Paper June Oracle Database Firewall 5.0 Sizing Best Practices

SHAREPOINT 2010 REMOTE BLOB STORES WITH EMC ISILON NAS AND METALOGIX STORAGEPOINT

SECTION C EMPLOYER S REQUIREMENTS

Transcription:

Likewise Storage Services provides OEM NAS developers with file services and security Linux and Unix appliances can provide full file, identity and security services for Windows clients By James E. Bagley and Patrick H. Corrigan Senior Analysts, Storage Strategies NOW November 2011 D emand for NAS devices is surging because of the growth factors involving unstructured data, virtualization and big data. While Linux and Unix are the favored environments for appliance manufacturers, the new requirements of future Windows operating systems for Server Message Block (SMB) 2.2 represent a major challenge for developers. Likewise has a long-term working relationship with Microsoft and an extensive code base for supporting a wide variety of file systems and identity services directories. Organizations need more control of their data at the appliance level than can be provided by block storage. Requirements include access security and breach reporting, regulatory and legal compliance and more efficient storage management practices. As requirements for NAS increasingly offset block devices in virtualized environments and performance and management capabilities become strong differentiators, a growing number of major OEMs are turning to Likewise and its Likewise Storage Services, Likewise Identity Services and the Likewise Data Analytics and Governance application. The Challenge There is an explosion in unstructured data. Digital data in all forms is more than doubling every two years. In 2008, IDC predicted that the annual growth rate for unstructured data in data centers would exceed 60 percent through 2012. More recent estimates indicate that IDC's prediction was somewhat conservative. One estimate indicates that by 2012 unstructured data will consume 80 percent of data center storage. There is a need to turn unstructured data into information. Despite rapid data growth, most enterprise organizations have little understanding of their unstructured data. The risks and costs due to this lack of understanding include losing valuable data, not effectively exploiting assets, security risks and the inability to meet compliance, legal, and regulatory requirements. As unstructured data increases, so does the complexity of providing access with security. Users need to easily access data from anywhere. The explosion in the use of mobile data devices, such as smart phones and tablet computers, is driving an increased need for remote access to corporate data. In addition, organizations want to secure their data by connecting data to identity and incorporate it into their identity management infrastructure. IT management must be able to demonstrate that data is secure. They must be able to meet auditing and regulatory compliance requirements, comply with corporate security standards and protect intellectual property. In many organizations network file access, security, and identity are managed in multiple disparate siloes. Within each silo, user access to data must be provisioned for each protocol, directory service or operating system, creating a complex and often error prone array of security policies and authentication mechanisms. Likewise Storage Services, Likewise Identity Services and the Likewise Data Analytics and Governance application give OEMs the opportunity to meet these challenges. 1

Likewise Storage Services Likewise Storage Services gives OEMs the ability to provide secure, cross-platform, NAS-enabled storage across Windows, Linux and Unix. Likewise Storage Services and Likewise Identity Services are based on code originally written for Likewise Open, an open source implementation of SMB networking. The original Likewise Identity software incorporated Samba's Winbind code, but due to a number of licensing and technical challenges, Likewise opted to create a new, clean-room implementation with a more modern, modular architecture that pays particular attention to clarity, extensibility and usability. The architecture allows ISVs to easily incorporate Likewise code into their solution and includes a commercial license. By providing a well-developed Linux and Unix code base that exposes file services to Windows and other clients, OEMs can quickly provide these features without impact to the core competencies of the developers who are implementing the underlying storage functionality. Unlike Samba, Likewise software is built on a multithreaded architecture and is designed to be multiprotocol SMB is just one of the drivers in Likewise Storage Services. Likewise provides an extensive and efficient approach to the intersection of file services, security of access and analytics. As shown in the following diagram, the storage services platform provides an interface between all file systems and user directories, with inline protocol security, access control and analytics. With support for SMB 1.0, 2.0, and 2.1, NFS 3.0, and cloud-critical REST APIs, the code base takes the heavy lifting of file services, security and metadata analytics off developers shoulders. Likewise has support pending for SMB 2.2 and NFS 4.1 with pnfs as well as HTTP/s and DAV (WebDAV). Consolidating unstructured data into a common location makes it easier for your customers to tap their unstructured data with big analytics or other applications for competitive advantage. 2

Likewise Identity Services Consolidating unstructured data housed in silos into cross-platform, multiprotocol file servers or NAS systems sets the stage for a common security model. Likewise Identity Services provides a single security system to manage identities, control access, and enforce consistent data-security policies, including those for file servers. By uniting storage, identity, and security, you can protect sensitive unstructured data while making it available to those who need it. Many organizations continue to use multiple authentication and access control systems, such as NIS or LDAP for Unix machines and Active Directory for Windows computers. Separate authentication and access control systems make it difficult to implement uniform, consistent security policies to control access to unstructured data. Putting in place a uniform security model and using a common identity management system to enforce a consistent data-security policy addresses not only who can access what data but also what actions may be taken on the data. Likewise Identity Services provides that single authentication and access control system. Likewise Identity Services is included as part of Likewise Storage Services but is also available as a stand-alone product offering. Likewise Data Analytics and Governance Application Unstructured data is ubiquitous, making management of this rapidly growing class of data increasingly difficult. The Likewise Data Analytics and Governance application adds critical metadata to unstructured data, specifically associating: 1.) Account repositories (i.e, AD, LDAP, NIS), and 2.) Unstructured data on NAS volumes (i.e., NFS, CIFS operations as well as Unix- and Windows-based security settings). By associating identity and unstructured data you can answer fundamental questions, such as who is accessing your data, who has been provisioned to access your data, what are they doing to the data, when and where are they doing this, are they having problems, and provide overall transparency into the infrastructure. Secure reporting helps demonstrate regulatory compliance and show chain of custody over tracked folders and files. Monitoring and auditing unstructured data to identify security vulnerabilities, risks, access rights, access patterns and levels of protection is problematic because security information and event monitoring tools lack tight integration with identity management systems and file servers. The Likewise Data Analytics and Governance application provides event monitoring and auditing that is close to the data and tracks access patterns and logs changes to sensitive files. Used in conjunction with both Likewise Storage Services and Likewise Identity Services, it can bring these services to all your data in a cohesive, consistent fashion. The Likewise Data Analytics and Governance application allows you to verify who has accessed what and when and demonstrate chain of custody in an audit. It also provides for alerts in cases of unauthorized access attempts. 3

In the following diagram, SMB/CIFS or NFS messaging is processed through to local event storage, and communicates via a data collection Virtual Machine (VM). By using REST, a highly efficient data collection procedure communicates through the data collection VM through to a data analysis application running on either a dedicated server or VM. Finally, dashboard reporting can be accessed through the web server to clients running a web application. The Likewise Data Analytics and Governance application works with Likewise Storage Services and has available adapters to support NetApp, EMC-Celerra, and other NAS filers. Development Challenges Likewise helps OEMs avoid dealing with the challenges of developing their own storage, networking and identity services protocol stacks. Unlike other options available, Likewise has developed their software specifically for the OEM market. Because of the multithreaded, multiprotocol architecture, OEMs can extend their systems beyond basic SMB file serving provided by competing products. Likewise is providing support for Microsoft s SMB 2.2, which will be supported by Windows 8 Server. SMB 2.2 is designed for performance and continuous availability. It includes direct support for specific server workloads, including Microsoft SQL Server, Hyper-V and SharePoint, allowing these applications to deliver better performance, reliability and scalability. This potentially makes file-based storage competitive, in terms of performance, with block-based storage for these applications. It will allow certain state information to exist beyond the failure of a single node in a scale-out cluster. It supports multipathing and allows a single authenticated session to be virtualized across multiple connections. SMB 2.2 also provides automatic failover for clustered servers. Because Likewise is including support for these and other SMB 2.2 features, OEMs can quickly and easily incorporate these new performance and reliability features into their offerings. 4

Our Take: SSG-NOW Assessment Likewise has provided critical storage software support to many of the biggest name-brand OEMs in the business. The market is seeing a growing number of new companies entering the midrange and high-end SAN and filer business, many with exotic combinations of DRAM, solid state drive and hard drive hybrids. As these companies move into converged storage requirements, with more and more workloads that require unstructured file data, they will increasingly need to look for support in this area. Likewise is tightly woven with Microsoft both by proximity and commitment. Many appliance developers will find it convenient to work through Likewise to access Microsoft s current and future products. In turn Microsoft is committed to providing Likewise support to its current and future Server Message Block protocols. Appliance developers are highly focused on differentiators in storage architecture, caching and tiering, throughput management, high availability and self-healing. By using Likewise, the product development process is accelerated by eliminating the internal development of file services, security and analytics. OEMs choose Linux and Unix due to their low overhead and licensing, not because of their well-developed file services, Windows compatibility, and analytics. Likewise provides a series of critical functionality that fits into the Linux/Unix environment without impact. With Likewise, OEM vendors have an opportunity to differentiate in areas outside of their typical focus but critical to the success of their customers as enterprises seek to better manage the unbridled growth of their unstructured data. Note: The information and recommendations made by Storage Strategies NOW are based upon public information and sources and may also include personal opinions both of Storage Strategies NOW and others, all of which we believe to be accurate and reliable. As market conditions change however, and not within our control, the information and recommendations are made without warranty of any kind. All product names used and mentioned herein are the trademarks of their respective owners. Storage Strategies NOW, Inc. assumes no responsibility or liability for any damages whatsoever (including incidental, consequential or otherwise), caused by your use of, or reliance upon, the information and recommendations presented herein, nor for any inadvertent errors which may appear in this document. LikeWise provided funding for this paper. 5