An introduction to Eduserv's UMF Cloud Pilot scheme for higher education. Eduserv has created the Education Cloud as part of the university modernisation fund cloud projects.
This presentation reviews the cloud infrastructure and pricing created for the cloud.
This presentation was delivered by Andy Powell at our shared services in HE event on 24 November 2011.
A talk delivered by Ivan Harris at the London G-Cloud meet-up, January 2014.
Topics covered:
• Government security classifications
• PSN connectivity
• Hybrid clouds
• Application development
Slides used in a presentation at the Uni. Sunderland. The argument which goes along side this can be found in the International Journal of Media & Cultural Politics Volume 5 Number 3
doi: 10.1386/macp.5.3.231/3
AWS Summit 2013 | Singapore - Understanding the Total Cost of (Non) Ownership...Amazon Web Services
Explore the financial considerations of owning and operating a traditional data center versus utilizing cloud infrastructure. The session will consider many cost factors which can be overlooked when comparing models, such as provisioning, procurement, training, support contracts and software licensing. Learn how to further reduce your current costs on AWS and improve your spend predictability.
A talk delivered by Ivan Harris at the London G-Cloud meet-up, January 2014.
Topics covered:
• Government security classifications
• PSN connectivity
• Hybrid clouds
• Application development
Slides used in a presentation at the Uni. Sunderland. The argument which goes along side this can be found in the International Journal of Media & Cultural Politics Volume 5 Number 3
doi: 10.1386/macp.5.3.231/3
AWS Summit 2013 | Singapore - Understanding the Total Cost of (Non) Ownership...Amazon Web Services
Explore the financial considerations of owning and operating a traditional data center versus utilizing cloud infrastructure. The session will consider many cost factors which can be overlooked when comparing models, such as provisioning, procurement, training, support contracts and software licensing. Learn how to further reduce your current costs on AWS and improve your spend predictability.
No one doubts that the licensed LPWANs will open up new business opportunities. But how can customers be taken beyond the POC phase when 75% of IoT projects fail? How can new revenue streams be integrated into existing infrastructure without risk?
Learn how to tame IoT complexity with a vendor structure simpler than you thought possible in order to lower your risk, cost, and time-to-market and start making revenue with IoT.
NB: We have derived our third-party pricing results from an analysis of publicly available pricing information. Our third-party pricing is thereby not authorized by any representative authority and the prices published in the presentation should be not be understood as authorized.
Hokkaido University Academic Cloud: Largest Academic Cloud System in Japan Masaharu Munetomo
Hokkaido university academic cloud which started services in 2011, is the largest academic cloud system in Japan. Its peak performance is 43TFlops and HPC/Hadoop cluster instances can be deployed automatically.
Cost is often the conversation starter when customers think about moving to the cloud. AWS helps lower costs for customers through its “pay only for what you use” pricing model, frequent price drops, and pricing model choice to support variable & stable workloads. In this session, you will learn about the financial considerations of owning and operating a traditional data center or managed hosting provider versus utilizing AWS. We will detail our TCO methodology and showcase cost comparisons for some common customer use-cases. We’ll also cover a few AWS cost optimization areas, including Spot and Reserved Instances, EC2 Auto Scaling, and consolidated billing.
Benchmarking your cloud performance with top 4 global public cloudsdata://disrupted®
In this presentation, we will present the performance measurement metrics of leading cloud providers - AWS, Google Cloud, Microsoft Azure, and Digital Ocean. We’ll give you useful tools to measure your own cloud performance and a handy guide on how to calculate cloud TCO (total cost of ownership). In addition, you’ll learn how to estimate correctly your market positioning and perform better than the cloud giants.
Boyan Krosnov is a Co-Founder and Chief Product Officer of StorPool Storage. He has been part of the technical teams building 5 service providers from scratch in 4 countries. In most of these projects, he has designed the architecture, led the technical teams, and managed the implementation of projects in the millions.
How to Re-use Old Hardware with CloudStack. Saving Money and the Environment ...ShapeBlue
CloudStack allows you to use older hardware for a longer time in your cloud environment. By using older hardware for a longer time you can save money and the environment by not producing new hardware.
-----------------------------------------
The CloudStack Collaboration Conference 2023 took place on 23-24th November. The conference, arranged by a group of volunteers from the Apache CloudStack Community, took place in the voco hotel, in Porte de Clichy, Paris. It hosted over 350 attendees, with 47 speakers holding technical talks, user stories, new features and integrations presentations and more.
Reducing latency on the web with the Azure CDN- TechDays NL 2014Maarten Balliauw
Serving up content on the Internet is something our web sites do daily. But are we doing this in the fastest way possible? How are users in faraway countries experiencing our apps? Why do we have three webservers serving the same content over and over again? In this session, we’ll explore the Azure Content Delivery Network or CDN, a service which makes it easy to serve up blobs, videos and other content from servers close to our users. We’ll explore simple file serving as well as some more advanced, dynamic edge caching scenarios.
Presentació a càrrec d'Adrián Macía, cap de Càlcul Científic del CSUC, duta a terme a la "5a Jornada de formació sobre l'ús del servei de càlcul" celebrada el 16 de desembre de 2021 en format virtual.
StorPool presents at Cloud Field Day - the leading technology event focused on the impact of cloud technologies on enterprise IT. During the event, the high-performance block storage specialist will showcase how its storage technology allows cloud builders to easily outperform cloud titans like AWS, Microsoft Azure and GCP.
Performance is of major importance for modern applications and workloads. No matter if you run a private cloud or deliver public cloud services for customers, you need to ensure the excellent performance for the workloads running on the cloud. Often misunderstood, storage has a direct impact not only on the reliability of cloud services, but also on the performance of the entire cloud.
https://storpool.com/news/storpool-presents-at-cloud-field-day-9
Aerospike TCO Vs memory-first architecturesAerospike
See how Aerospike compares to in-memory or caching technologies as you scale. Aerospike TCO is very low in comparison as Flash/SSD technology is used to persist the data.
AWS provides a range of Compute Services – Amazon EC2, Amazon ECS and AWS Lambda. We will provide an intro level overview of these services and highlight suitable use cases. Amazon Elastic Compute Cloud (Amazon EC2) itself provides a broad selection of instance types to accommodate a diverse mix of workloads. Going a bit deeper on EC2 we will provide background on the Amazon EC2 instance platform, key platform features, and the concept of instance generations. We dive into the current-generation design choices of the different instance families, including the General Purpose, Compute Optimized, Storage Optimized, Memory Optimized, and GPU instance families. We also detail best practices and share performance tips for getting the most out of your Amazon EC2 instances, both from a performance and cost perspective.
Amazon Elastic Compute Cloud (Amazon EC2) provides a broad selection of instance types to accommodate a diverse mix of workloads. In this technical session, we provide an overview of the Amazon EC2 instance platform, key platform features, and the concept of instance generations. We dive into the current-generation design choices of the different instance families, including the General Purpose, Compute Optimized, Storage Optimized, Memory Optimized, and GPU instance families. We also detail best practices and share performance tips for getting the most out of your Amazon EC2 instances. Other Compute options such as ECS and Lambda for processing in the cloud will be introduced and explained at a high level.
Phase two of OpenAthens SP evolution including OpenID connect optionEduserv
David Orrell, System Architect and Phil Leahy, Service Relationship Manager, talk about Phase II of the OpenAthens Cloud Service Provider project, and also about how OpenAthens is being used as an identity provider service in the corporate sector.
No one doubts that the licensed LPWANs will open up new business opportunities. But how can customers be taken beyond the POC phase when 75% of IoT projects fail? How can new revenue streams be integrated into existing infrastructure without risk?
Learn how to tame IoT complexity with a vendor structure simpler than you thought possible in order to lower your risk, cost, and time-to-market and start making revenue with IoT.
NB: We have derived our third-party pricing results from an analysis of publicly available pricing information. Our third-party pricing is thereby not authorized by any representative authority and the prices published in the presentation should be not be understood as authorized.
Hokkaido University Academic Cloud: Largest Academic Cloud System in Japan Masaharu Munetomo
Hokkaido university academic cloud which started services in 2011, is the largest academic cloud system in Japan. Its peak performance is 43TFlops and HPC/Hadoop cluster instances can be deployed automatically.
Cost is often the conversation starter when customers think about moving to the cloud. AWS helps lower costs for customers through its “pay only for what you use” pricing model, frequent price drops, and pricing model choice to support variable & stable workloads. In this session, you will learn about the financial considerations of owning and operating a traditional data center or managed hosting provider versus utilizing AWS. We will detail our TCO methodology and showcase cost comparisons for some common customer use-cases. We’ll also cover a few AWS cost optimization areas, including Spot and Reserved Instances, EC2 Auto Scaling, and consolidated billing.
Benchmarking your cloud performance with top 4 global public cloudsdata://disrupted®
In this presentation, we will present the performance measurement metrics of leading cloud providers - AWS, Google Cloud, Microsoft Azure, and Digital Ocean. We’ll give you useful tools to measure your own cloud performance and a handy guide on how to calculate cloud TCO (total cost of ownership). In addition, you’ll learn how to estimate correctly your market positioning and perform better than the cloud giants.
Boyan Krosnov is a Co-Founder and Chief Product Officer of StorPool Storage. He has been part of the technical teams building 5 service providers from scratch in 4 countries. In most of these projects, he has designed the architecture, led the technical teams, and managed the implementation of projects in the millions.
How to Re-use Old Hardware with CloudStack. Saving Money and the Environment ...ShapeBlue
CloudStack allows you to use older hardware for a longer time in your cloud environment. By using older hardware for a longer time you can save money and the environment by not producing new hardware.
-----------------------------------------
The CloudStack Collaboration Conference 2023 took place on 23-24th November. The conference, arranged by a group of volunteers from the Apache CloudStack Community, took place in the voco hotel, in Porte de Clichy, Paris. It hosted over 350 attendees, with 47 speakers holding technical talks, user stories, new features and integrations presentations and more.
Reducing latency on the web with the Azure CDN- TechDays NL 2014Maarten Balliauw
Serving up content on the Internet is something our web sites do daily. But are we doing this in the fastest way possible? How are users in faraway countries experiencing our apps? Why do we have three webservers serving the same content over and over again? In this session, we’ll explore the Azure Content Delivery Network or CDN, a service which makes it easy to serve up blobs, videos and other content from servers close to our users. We’ll explore simple file serving as well as some more advanced, dynamic edge caching scenarios.
Presentació a càrrec d'Adrián Macía, cap de Càlcul Científic del CSUC, duta a terme a la "5a Jornada de formació sobre l'ús del servei de càlcul" celebrada el 16 de desembre de 2021 en format virtual.
StorPool presents at Cloud Field Day - the leading technology event focused on the impact of cloud technologies on enterprise IT. During the event, the high-performance block storage specialist will showcase how its storage technology allows cloud builders to easily outperform cloud titans like AWS, Microsoft Azure and GCP.
Performance is of major importance for modern applications and workloads. No matter if you run a private cloud or deliver public cloud services for customers, you need to ensure the excellent performance for the workloads running on the cloud. Often misunderstood, storage has a direct impact not only on the reliability of cloud services, but also on the performance of the entire cloud.
https://storpool.com/news/storpool-presents-at-cloud-field-day-9
Aerospike TCO Vs memory-first architecturesAerospike
See how Aerospike compares to in-memory or caching technologies as you scale. Aerospike TCO is very low in comparison as Flash/SSD technology is used to persist the data.
AWS provides a range of Compute Services – Amazon EC2, Amazon ECS and AWS Lambda. We will provide an intro level overview of these services and highlight suitable use cases. Amazon Elastic Compute Cloud (Amazon EC2) itself provides a broad selection of instance types to accommodate a diverse mix of workloads. Going a bit deeper on EC2 we will provide background on the Amazon EC2 instance platform, key platform features, and the concept of instance generations. We dive into the current-generation design choices of the different instance families, including the General Purpose, Compute Optimized, Storage Optimized, Memory Optimized, and GPU instance families. We also detail best practices and share performance tips for getting the most out of your Amazon EC2 instances, both from a performance and cost perspective.
Amazon Elastic Compute Cloud (Amazon EC2) provides a broad selection of instance types to accommodate a diverse mix of workloads. In this technical session, we provide an overview of the Amazon EC2 instance platform, key platform features, and the concept of instance generations. We dive into the current-generation design choices of the different instance families, including the General Purpose, Compute Optimized, Storage Optimized, Memory Optimized, and GPU instance families. We also detail best practices and share performance tips for getting the most out of your Amazon EC2 instances. Other Compute options such as ECS and Lambda for processing in the cloud will be introduced and explained at a high level.
Phase two of OpenAthens SP evolution including OpenID connect optionEduserv
David Orrell, System Architect and Phil Leahy, Service Relationship Manager, talk about Phase II of the OpenAthens Cloud Service Provider project, and also about how OpenAthens is being used as an identity provider service in the corporate sector.
Tim Lull, Vice President of Sales and Gar Sydnor, Vice President of Discovery Innovation, showcases EBSCO and how this product benefits the identity and access management community.
Phil Leahy, Service Relationship Manager covers our commitment to the publishing community as part of our Publisher Manifesto. David Orrell, System Architect, runs through phase one of our new service provider product.
Neil Scully, Head of Development and Service Delivery, shares the AGILE SCRUM and SPRINT process used in our product development methodology and the benefits this brings.
Tracy Gardner from Simon Inger Consulting presents the results of their 12 month research project, which included a survey of how over 40,000 readers discover scholarly content. The findings are pertinent to publishers and information professionals alike across sectors.
Jon Bentley, Commercial Director, shares the vision for our products, explains our brand evolution and presents key milestones in the development of our identity and access management (IAM) solutions. He also highlights the range of applications that work with OpenAthens.
Mike Brooksbank, Executive Director of OpenAthens, runs through the schedule of the day, plus an overview of OpenAthens and Eduserv, our last FY year and the year ahead.
Eduserv's Marketing Manager, Alex Bacon, presented at the B2B Network about his experience of content marketing and how to deliver valuable and engaging content to your audiences whilst generating leads at the same time.
This presentation by Jonathan Watkins of Maplesoft and the University of Birmingham was given to the Eduserv Maths and Stats Software Focus Group in June 2016. Möbius is a comprehensive online courseware environment that focuses on science, technology, engineering, and mathematics (STEM). students can explore important concepts using engaging, interactive applications, visualize problems and solutions, and test their understanding by answering questions that are graded instantly.
This presentation was given to the Eduserv Maths and Stats Software Focus Group in June 2016. It focuses on updates to NVivo 11 for Windows and Mac, the new QSR Certification Programme and how QSR and the academic community might work more closely together.
Nick Wallace, Government Analyst, Public Sector Ovum
Momentum for the adoption of cloud services continues to grow in the public sector as services mature and agencies experience in buying and using cloud services grows. As agencies steadily incorporate various cloud components into their environment, it is clear that public sector organisations are starting to realise the benefits of cloud. In fact if one where creating a “greenfield” service, “in the cloud” would be the default approach. However the reality is that most institutions are not in this position. Most have to manage a legacy environment that comprises aging technology, duplicate, inefficient and inconsistent business processes. Developing and implementing a staged migration to cloud will be pivotal when determining whether the “as-a-service” promise facilitates innovation or undermines organisational integrity
Planning your cloud strategy: Adur and Worthing CouncilsEduserv
Paul Brewer, Director for Digital & Resources at Adur & Worthing Council.
How do you assess your organisations readiness to move to the cloud and adopt new platforms drive business change? Paul Brewer from Adur and Worthing Councils will be sharing how they evaluated whether cloud was right for them, the talk will cover how they evaluated the benefits, costs and risks of moving to the cloud, and how they used this assessment to support and build their cloud strategy.
The Art of the Pitch: WordPress Relationships and SalesLaura Byrne
Clients don’t know what they don’t know. What web solutions are right for them? How does WordPress come into the picture? How do you make sure you understand scope and timeline? What do you do if sometime changes?
All these questions and more will be explored as we talk about matching clients’ needs with what your agency offers without pulling teeth or pulling your hair out. Practical tips, and strategies for successful relationship building that leads to closing the deal.
State of ICS and IoT Cyber Threat Landscape Report 2024 previewPrayukth K V
The IoT and OT threat landscape report has been prepared by the Threat Research Team at Sectrio using data from Sectrio, cyber threat intelligence farming facilities spread across over 85 cities around the world. In addition, Sectrio also runs AI-based advanced threat and payload engagement facilities that serve as sinks to attract and engage sophisticated threat actors, and newer malware including new variants and latent threats that are at an earlier stage of development.
The latest edition of the OT/ICS and IoT security Threat Landscape Report 2024 also covers:
State of global ICS asset and network exposure
Sectoral targets and attacks as well as the cost of ransom
Global APT activity, AI usage, actor and tactic profiles, and implications
Rise in volumes of AI-powered cyberattacks
Major cyber events in 2024
Malware and malicious payload trends
Cyberattack types and targets
Vulnerability exploit attempts on CVEs
Attacks on counties – USA
Expansion of bot farms – how, where, and why
In-depth analysis of the cyber threat landscape across North America, South America, Europe, APAC, and the Middle East
Why are attacks on smart factories rising?
Cyber risk predictions
Axis of attacks – Europe
Systemic attacks in the Middle East
Download the full report from here:
https://sectrio.com/resources/ot-threat-landscape-reports/sectrio-releases-ot-ics-and-iot-security-threat-landscape-report-2024/
Le nuove frontiere dell'AI nell'RPA con UiPath Autopilot™UiPathCommunity
In questo evento online gratuito, organizzato dalla Community Italiana di UiPath, potrai esplorare le nuove funzionalità di Autopilot, il tool che integra l'Intelligenza Artificiale nei processi di sviluppo e utilizzo delle Automazioni.
📕 Vedremo insieme alcuni esempi dell'utilizzo di Autopilot in diversi tool della Suite UiPath:
Autopilot per Studio Web
Autopilot per Studio
Autopilot per Apps
Clipboard AI
GenAI applicata alla Document Understanding
👨🏫👨💻 Speakers:
Stefano Negro, UiPath MVPx3, RPA Tech Lead @ BSP Consultant
Flavio Martinelli, UiPath MVP 2023, Technical Account Manager @UiPath
Andrei Tasca, RPA Solutions Team Lead @NTT Data
zkStudyClub - Reef: Fast Succinct Non-Interactive Zero-Knowledge Regex ProofsAlex Pruden
This paper presents Reef, a system for generating publicly verifiable succinct non-interactive zero-knowledge proofs that a committed document matches or does not match a regular expression. We describe applications such as proving the strength of passwords, the provenance of email despite redactions, the validity of oblivious DNS queries, and the existence of mutations in DNA. Reef supports the Perl Compatible Regular Expression syntax, including wildcards, alternation, ranges, capture groups, Kleene star, negations, and lookarounds. Reef introduces a new type of automata, Skipping Alternating Finite Automata (SAFA), that skips irrelevant parts of a document when producing proofs without undermining soundness, and instantiates SAFA with a lookup argument. Our experimental evaluation confirms that Reef can generate proofs for documents with 32M characters; the proofs are small and cheap to verify (under a second).
Paper: https://eprint.iacr.org/2023/1886
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf91mobiles
91mobiles recently conducted a Smart TV Buyer Insights Survey in which we asked over 3,000 respondents about the TV they own, aspects they look at on a new TV, and their TV buying preferences.
A tale of scale & speed: How the US Navy is enabling software delivery from l...sonjaschweigert1
Rapid and secure feature delivery is a goal across every application team and every branch of the DoD. The Navy’s DevSecOps platform, Party Barge, has achieved:
- Reduction in onboarding time from 5 weeks to 1 day
- Improved developer experience and productivity through actionable findings and reduction of false positives
- Maintenance of superior security standards and inherent policy enforcement with Authorization to Operate (ATO)
Development teams can ship efficiently and ensure applications are cyber ready for Navy Authorizing Officials (AOs). In this webinar, Sigma Defense and Anchore will give attendees a look behind the scenes and demo secure pipeline automation and security artifacts that speed up application ATO and time to production.
We will cover:
- How to remove silos in DevSecOps
- How to build efficient development pipeline roles and component templates
- How to deliver security artifacts that matter for ATO’s (SBOMs, vulnerability reports, and policy evidence)
- How to streamline operations with automated policy checks on container images
Essentials of Automations: The Art of Triggers and Actions in FMESafe Software
In this second installment of our Essentials of Automations webinar series, we’ll explore the landscape of triggers and actions, guiding you through the nuances of authoring and adapting workspaces for seamless automations. Gain an understanding of the full spectrum of triggers and actions available in FME, empowering you to enhance your workspaces for efficient automation.
We’ll kick things off by showcasing the most commonly used event-based triggers, introducing you to various automation workflows like manual triggers, schedules, directory watchers, and more. Plus, see how these elements play out in real scenarios.
Whether you’re tweaking your current setup or building from the ground up, this session will arm you with the tools and insights needed to transform your FME usage into a powerhouse of productivity. Join us to discover effective strategies that simplify complex processes, enhancing your productivity and transforming your data management practices with FME. Let’s turn complexity into clarity and make your workspaces work wonders!
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...James Anderson
Effective Application Security in Software Delivery lifecycle using Deployment Firewall and DBOM
The modern software delivery process (or the CI/CD process) includes many tools, distributed teams, open-source code, and cloud platforms. Constant focus on speed to release software to market, along with the traditional slow and manual security checks has caused gaps in continuous security as an important piece in the software supply chain. Today organizations feel more susceptible to external and internal cyber threats due to the vast attack surface in their applications supply chain and the lack of end-to-end governance and risk management.
The software team must secure its software delivery process to avoid vulnerability and security breaches. This needs to be achieved with existing tool chains and without extensive rework of the delivery processes. This talk will present strategies and techniques for providing visibility into the true risk of the existing vulnerabilities, preventing the introduction of security issues in the software, resolving vulnerabilities in production environments quickly, and capturing the deployment bill of materials (DBOM).
Speakers:
Bob Boule
Robert Boule is a technology enthusiast with PASSION for technology and making things work along with a knack for helping others understand how things work. He comes with around 20 years of solution engineering experience in application security, software continuous delivery, and SaaS platforms. He is known for his dynamic presentations in CI/CD and application security integrated in software delivery lifecycle.
Gopinath Rebala
Gopinath Rebala is the CTO of OpsMx, where he has overall responsibility for the machine learning and data processing architectures for Secure Software Delivery. Gopi also has a strong connection with our customers, leading design and architecture for strategic implementations. Gopi is a frequent speaker and well-known leader in continuous delivery and integrating security into software delivery.
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...UiPathCommunity
💥 Speed, accuracy, and scaling – discover the superpowers of GenAI in action with UiPath Document Understanding and Communications Mining™:
See how to accelerate model training and optimize model performance with active learning
Learn about the latest enhancements to out-of-the-box document processing – with little to no training required
Get an exclusive demo of the new family of UiPath LLMs – GenAI models specialized for processing different types of documents and messages
This is a hands-on session specifically designed for automation developers and AI enthusiasts seeking to enhance their knowledge in leveraging the latest intelligent document processing capabilities offered by UiPath.
Speakers:
👨🏫 Andras Palfi, Senior Product Manager, UiPath
👩🏫 Lenka Dulovicova, Product Program Manager, UiPath
Welcome to the first live UiPath Community Day Dubai! Join us for this unique occasion to meet our local and global UiPath Community and leaders. You will get a full view of the MEA region's automation landscape and the AI Powered automation technology capabilities of UiPath. Also, hosted by our local partners Marc Ellis, you will enjoy a half-day packed with industry insights and automation peers networking.
📕 Curious on our agenda? Wait no more!
10:00 Welcome note - UiPath Community in Dubai
Lovely Sinha, UiPath Community Chapter Leader, UiPath MVPx3, Hyper-automation Consultant, First Abu Dhabi Bank
10:20 A UiPath cross-region MEA overview
Ashraf El Zarka, VP and Managing Director MEA, UiPath
10:35: Customer Success Journey
Deepthi Deepak, Head of Intelligent Automation CoE, First Abu Dhabi Bank
11:15 The UiPath approach to GenAI with our three principles: improve accuracy, supercharge productivity, and automate more
Boris Krumrey, Global VP, Automation Innovation, UiPath
12:15 To discover how Marc Ellis leverages tech-driven solutions in recruitment and managed services.
Brendan Lingam, Director of Sales and Business Development, Marc Ellis
Securing your Kubernetes cluster_ a step-by-step guide to success !KatiaHIMEUR1
Today, after several years of existence, an extremely active community and an ultra-dynamic ecosystem, Kubernetes has established itself as the de facto standard in container orchestration. Thanks to a wide range of managed services, it has never been so easy to set up a ready-to-use Kubernetes cluster.
However, this ease of use means that the subject of security in Kubernetes is often left for later, or even neglected. This exposes companies to significant risks.
In this talk, I'll show you step-by-step how to secure your Kubernetes cluster for greater peace of mind and reliability.
2. What is the UMF?
• University Modernisation Fund
• £12.5 million from HEFCE to encourage uptake
of shared services in HE
– efficiency and value for money as key drivers
• channelled thru the JISC Shared Services
and the Cloud programme
– research and administrative computing
– JANET Brokerage, DCC and Eduserv
– 4 SaaS projects
– RMAS, DARE and ESB
– running until end of March 2012
umfcloudpilot.eduserv.org.uk
3. What is the UMF Cloud Pilot?
• compute and storage cloud for HE and FE
• infrastructure as a service (IaaS)
• designed to address the major concerns of HEIs
– data remains in the UK at all times
– operated for the long-term benefit
of the UK academic sector
– integrated with the JANET network
– lower the costs associated
with IT provisioning
• a ‘community cloud’ for education
• built on our Community Cloud
Infrastructure
umfcloudpilot.eduserv.org.uk
4. Delivered by Eduserv
• not-for-profit IT services company
• best known in HEIs for OpenAthens and CHEST
• web hosting and development for government
• 20 year sustainable track record of growth
– >3.5m registered users of Eduserv-based services
– 115 staff - turnover of £16.5m in 2009/10
– new datacentre in Swindon specifically for
education and the public sector
• charitable mission to encourage
the effective use of ICT in
‘public good’ organisations
umfcloudpilot.eduserv.org.uk
5. Delivered from
• our Swindon Data Centre
– capacity and power for >600 racks of infrastructure
– modular design
– PUE efficiency design of <1.4
– 10 Gbit/s JANET backbone connectivity via
new JANET PoP
umfcloudpilot.eduserv.org.uk
6. Hardware
• Cisco UCS blade infrastructure
– dual 6-core 3.06GHz processors with 64GB RAM
– initial deployment will scale to >1,500 cores, 8 TB of RAM
• Isilon storage
– clustered NAS solution with near-SAN performance
– initial deployment will scale to 10PB usable
• connectivity
– 2-tier Cisco switched network (core and
distribution)
– fully resilient with no single point of
failure (including dual path to
JANET PoP)
– all ports running at 10 Gbit/s
umfcloudpilot.eduserv.org.uk
7. Our offer
• vCloud Compute
• OpenStack Compute
• VM Storage
• File Storage
• JANET Connectivity
all accessed via a self-service portal
integrated with the UK Access
Management Federation with possibility
of long term tape archiving in the future
umfcloudpilot.eduserv.org.uk
8. Typical use-cases
• vCloud Compute
– good fit with local vSphere provision
– burst capacity at times of high demand
– DR facility
• OpenStack Compute
– research computing
– undergraduate teaching
umfcloudpilot.eduserv.org.uk
9. Timescales
• now
– vCloud Compute ‘lab’ environment for use by UMF-funded
SaaS projects
• Jan 2012
– vCloud Compute general availability
• April 2012
– self-service Web portal
– full billing infrastructure
– OpenStack Compute availability
– File Storage beta
• …beyond
– storage ‘preservation’ tier
– multiple datacentres
umfcloudpilot.eduserv.org.uk
10. Pricing models
• 2 pricing models
– PAYG (pay for what you provision/use)
– Virtual Datacentre (pay for what you reserve)
• in mobile phone terms, PAYG vs. Pay Monthly
• why PAYG?
– flexibility
• why Virtual Datacentre?
– predictability
umfcloudpilot.eduserv.org.uk
11. Billing
• PAYG billed monthly in arrears against pre-
registered credit card
• Virtual Datacentre billed monthly or annually
against pre-registered credit card or by invoice
– annual tariff billed in advance
– discounts of up to 30% for annual
commitment
– over-usage billed at PAYG rates
umfcloudpilot.eduserv.org.uk
12. Pricing
• 3 key principles
– return on investment by/for the community
– sustainability
– competitive
• prices just announced
• all prices quoted ex-VAT
• we will offer an ‘introductory tier’
( but only for institutions)
umfcloudpilot.eduserv.org.uk
13. Concluding remarks
• we’d welcome feedback on:
– the cloud platforms we support
– pricing and billing models
– anything else…
• get in touch at umfcloudpilot.eduserv.org.uk
(where we are also blogging our progress)
umfcloudpilot.eduserv.org.uk
19. OpenStack Compute PAYG
Linux £/hour Linux £/month Windows £/hour
£0.014 £0.017
Micro (0.5GHz+1GB) £10.12
£0.038 £27.43 £0.047
Small (1GHz+2GB)
£0.091 £0.113
Medium (2GHz+4GB) £66.69
£0.205 £0.254
Large (4GHz+8GB) £149.51
£0.436 £0.541
Extra large £318.26
£1.308 £1.622
XL high memory £954.78
£0.456 £0.565
XL high CPU £332.52
£1.367 £1.695
XXL (24GHz+48GB) £997.56
umfcloudpilot.eduserv.org.uk
20. VM and File Storage PAYG
• 6.7p per GB per month (£828.34/TB/year)
• VM Storage is billed according to the average
provisioned storage over the billing period (one
month).
• File Storage is billed according to the average
utilised storage over the billing period (one
month).
umfcloudpilot.eduserv.org.uk
21. Connectivity PAYG
• JANET Data transfer: Free
• 1st public IP address: Free
• Additional public IP addresses: 0.5p per IP
address per hour
umfcloudpilot.eduserv.org.uk
22. vCloud Compute Virtual Datacentre
Very Small Small Medium Large Very Large
CPU Reserved 10 20 40 80 200
(GHz)
Memory 20 40 80 160 400
Reserved (GB)
Storage (TB) 1 4 10 20 50
Public IP 1 1 2 4 10
addresses
Approx Virtual 15-30 30-60 60-120 120-240 240-500
Machines
Total price /
£440.00 £990.00 £2,080.00 £4,080.00 £9,980.00
month
Total price / year
£5,070.00 £10,940.00 £21,790.00 £45,740.00 £93,120.00
umfcloudpilot.eduserv.org.uk
23. Introductory Tier
• for new institutional customers
– a small Virtual Datacentre for two months
umfcloudpilot.eduserv.org.uk