NET+ INFRASTRUCTURE AND PLATFORM SERVICES PORTFOLIO STATUS & UPDATE
Andrew Keating, Eric Jeanes, Sean O’Brien
NET+ Cloud Services © 2014 Internet2 NET+ IPS Portfolio Update
CONTENTS
• Goals and Updates • Portfolio Overview • The Portfolio General Availability and Early Adopter Services Service Validation Services
[ 2 ]
© 2014 Internet2 Goals for 2015
• Compelling Infrastructure and Platform Services Program offerings (3-5 total) • 50 members using IaaS through NET+ by end of year • Define and onboard alternative services for each area in the IPS portfolio • Increase engagement with stakeholders – Events, webinars – Direct engagement with end users (ex. systems administrators) – Understand use cases • Increase use of services after sign up • Process improvement – Increase documentation – Uniform processes and ways of working across IPS programs
[ 3 ]
© 2014 Internet2 Portfolio Changes
• Infrastructure and Platform Services: Security moving to Trust and Identity – Alignment of Security Services – now Security and Identity portfolio – Growth of Cloud Ecosystems
• Emphasis on NET+ Strategy and Infrastructure and Platform Services Program
• Two current general use IaaS solutions in Early Adopter – NET+ Microsoft Azure – NET+ Amazon Web Services by DLT
• Emerging infrastructure services (VMware, Oracle, Rackspace, IBM Softlayer)
[ 4 ] NET+ Infrastructure and Platform Services Program
• Program designed to recover operating costs of IaaS services • Current NET+ services: – NET+ Microsoft Azure, NET+ Microsoft Office365, NET+ AWS by DLT • IPS Program specific Participation Agreement – $1k Setup Fee (one time) • Service specific Participation Schedule – Annual Access Fee based on Internet2 membership level • 1 year Access Fee waiver for NET+ SV participants if signed up by April 30th • 90 day access fee waiver while a service is in Early Adopter • Waterfall pricing after 100, 200, 300 campuses sign up for a service bit.ly/netplusips
[ 5 ]
© 2014 Internet2 Architectural Implications Infrastructure as a Service
Your Applica on Your Your Your Applica on Middleware Database Server Your Opera ng System Hypervisor
CPU Networking Storage Backup
Datacenter (Power, Cooling, Physical Security) Your Their Problem Problem
[ 6 ]
© 2014 Internet2 Architectural Implications Platform as a Service
Your Applica on
Applica on Middleware Database Server
Opera ng System Hypervisor
CPU Networking Storage Backup
Datacenter (Power, Cooling, Physical Security) Your Their Problem Problem
[ 7 ]
© 2014 Internet2 Many
[ 8 ] NET+ AWS by DLT
Area: Infrastructure and Platform Services Solution: Amazon Web Services Provider: DLT Solutions Status Sponsor: University of Virginia • Aggregation and volume discounts in place • User friendly self-service portal to provision services in pre- release • Network peering in place
Next Steps Launch initial iteration of portal. HIPAA BAA review.
[ 9 ] © 2015 Internet2 Why NET+ Amazon Web Services by DLT?
Creation of “Best Value” Offering for the Community
• Community Agreement – Pre-negotiated community contractual benefits – Flexible payment options – FERPA compliance, Export Control Compliant Helpdesk, HIPAA BAA Available • Community Network – 60 Gb/s of aggregate bandwidth • Community Credentials – Leverages InCommon for provisioning portal – Campus ownership of access roles • Community Pricing – Percentage usage discount – Data Egress Fee Waiver
[ 10 ]
© 2014 Internet2 New to NET+ AWS by DLT
New General Availability AWS services “automatically” added
• Amazon Machine Learning • Amazon Elastic File System • Amazon WorkSpaces Application Manager • EC2 Container Service • AWS Lambda
[ 11 ]
© 2014 Internet2 Microsoft Azure
Area: Infrastructure and Platform Services Solution: Cloud storage and compute Provider: Microsoft Sponsor: University of Washington Status • Sunsetting hosted bridging services • Adding schools to interoperable video and voice signaling
Next Steps Convening university community to understand how this service can best serve R&E
[ 12 ] © 2015 Internet2 Why NET+ Microsoft Azure?
• Special terms and conditions for IP, ITAR, FERPA, etc. needs • Campuses can get a HIPAA BAA with Microsoft • IRU (irrevocable right of use) model, facilitating the acquisition of Azure Services as capital assets and thereby facilitating the use of grant funding • towards the purchase of cloud services and potentially avoiding indirect charges for overhead. • Data egress fee waiver intended for use in supporting the research and education activities of the higher education community. To obtain the waiver, institutions are jointly “qualified” as eligible by Internet2 and Microsoft. • Campuses may participate in the Internet2 Microsoft Community with access to information, webinars, events and other benefits.
[ 13 ] Box
Area: Infrastructure and Platform Services Solution: Storage and collaboration service Provider: Box Sponsor: University of California, Berkeley Status • 100+ campuses participating • BAA available
Next Steps Move to unlimited storage and add optional professional services
[ 14 ] © 2015 Internet2 Merit Network, Inc.
Area: Infrastructure and Platform Services; Software as a Service: Academic, Research, and Administrative Solution: Hosted infrastructure and Status application services • Open for subscription Provider: Merit Network, Inc. • Internet2 member and InCommon participation required • Higher education only
Next Steps Partnering effort with webinars
[ 15 ] © 2015 Internet2 Office 365 Education
Area: Software as a Service: Academic, Research, and Administrative Solution: Office desktop suite in the cloud Status and cloud productivity platform • Customized contract including FERPA Provider: Microsoft and HIPPA support Sponsor: Colorado State University and • Additional support escalations University of Florida available through NET+ • SAML support • New online community of practice site established
Next Steps Build out community
[ 16 ] © 2015 Internet2 Splunk
Area: Infrastructure and Platform Services; Identity and Security Solution: Machine data analysis Status Provider: Splunk Sponsor: Multiple Universities • 3 year subscription term license at discounted rates • 2nd Waterfall pricing threshold reached • Community-developed software license agreement
Next Steps Summer Advisory Board meeting
[ 17 ] © 2015 Internet2 CrashPlan PROe
Area: Infrastructure and Platform Services Solution: Endpoint backup Provider: Code 42 Software Status Sponsor: Multiple Universities • Service validation complete • InCommon integration • Network connection established • Dedicated customer support specialist role filled
Next Steps Move to General Availability in Summer 2015
[ 18 ] © 2015 Internet2 Globus
Area: Infrastructure and Platform Services Solution: Globus Provider: University of Chicago Sponsor: Cornell University Status • Service validation complete • Open to additional participants
Next Steps Add adopters
[ 19 ] © 2015 Internet2 DuraCloud
Area: Infrastructure and Platform Services Solution: Preservation and accessibility of irreplaceable documents, imagery, and videos Status Provider: DuraSpace • Service validation complete Sponsor: University of Virginia • Open to additional participants
Next Steps Add adopters
[ 20 ] © 2015 Internet2 NET+ IPS Services Under Development
Participation currently full
[ 21 ]
© 2014 Internet2 Acquia
Area: Infrastructure and Platform Services Solution: Drupal Content Management Platform for the Web Status Provider: Acquia Sponsor: Cornell University • Custom business model, pricing, and options • Community aggregation for support and shared resources
Next Steps Complete Service Validation and open to Early Adopters in mid-2015
[ 22 ] © 2015 Internet2 vCloud Air by Carahsoft
Area: Infrastructure and Platform Services Solution: VMware vCloud Air Provider: Carahsoft Status Sponsor: University of Texas at Arlington • Functional testing underway • InCommon and network integration being assessed • Legal agreement and business model under development
Next Steps Complete Service Validation in June 2015
[ 23 ] © 2015 Internet2 Endeca Information Discovery
Area: Infrastructure and Platform Services Solution: Endeca Information Discovery Provider: Oracle Status Sponsor: Multiple Universities • Functional testing underway • InCommon and network integration being assessed • Legal agreement and business model under development
Next Steps Complete Service Validation in Summer of 2015
[ 24 ] © 2015 Internet2 NET+ IPS Services Under Development
Participation open
[ 25 ]
© 2014 Internet2 Rackspace Private Cloud
Area: Infrastructure and Platform Services Solution: OpenStack managed private cloud Provider: Rackspace Status Sponsor: Notre Dame University • Functional testing underway • InCommon and network integration being assessed • Legal agreement and business model under development
Next Steps Complete Service Validation in Summer of 2015
[ 26 ] © 2015 Internet2 Virtual Compute Lab
Area: Infrastructure and Platform Services Solution: Virtual Compute Lab Provider: IBM Softlayer Status Sponsor: NCSU • Service Validation start expected in early May 2015 • Delivers dedicated, custom compute environments to users • IBM identified as Service Provider to host offering
Next Steps Identify scope of services offered, add additional interested members, and begin service validation
[ 27 ] © 2015 Internet2 CloudyCluster
Area: Infrastructure and Platform Services Solution: Dynamic HPC and Big Data Clusters in the Cloud Status Provider: Omnibond • Prospective Quick Start Sponsor: To be Announced • Working to scope and price offering
Next Steps
Review and finalize Business Agreement
[ 28 ] © 2015 Internet2 CenturyLink Cloud
Area: Infrastructure and Platform Services Solution: Enterprise Cloud Infrastructure Provider: CenturyLink Status Sponsor: Open • Identifying use cases for service validation
Next Steps Identify scope of services offered, add additional interested members, and begin service validation
[ 29 ] © 2015 Internet2 R-Systems
Area: Infrastructure and Platform Services Solution: High Performance Computing Provider: Dell Sponsor: Open Status • Business Agreement in progress • Evaluating network connectivity
Next Steps Begin Service Validation in May 2015
[ 30 ] © 2015 Internet2 Verizon Cloud Services
Area: Infrastructure and Platform Services Solution: Enterprise Cloud Infrastructure Provider: Verizon Status Sponsor: Open • Highly secure and compliant enterprise cloud infrastructure • Special pilot program for service validation participants
Next Steps Identify sponsor and service validation participants
[ 31 ] © 2015 Internet2 For More Information
• Email: [email protected] for information on sponsoring or subscribing to services, as well as general questions, comments and feedback about the NET+ program
• NET+ Service Catalogue: http://internet2.edu/cloud-services for the current service listing
[ 32 ] What’s next? What service should be in portfolio but is not?
It’s YOUR input and needs that leads to service development and provides direction to the overall portfolio
[ 33 ] NET+ INFRASTRUCTURE AND PLATFORM SERVICES PORTFOLIO STATUS & UPDATE
Andrew Keating, Eric Jeanes, Sean O’Brien
NET+ Cloud Services © 2014 Internet2 ?? Services
[ 35 ]
© 2014 Internet2 Alfresco
Area: Infrastructure, Platform, and System Security as a Service Solution: Open Source Document Status Management Solution • Collaboration platform that Provider: Alfresco includes on premise, cloud, and Sponsor: University of California Berkeley hybrid deployment options • Network and identity integration under review
Next Steps Begin Service Validation in April or May 2014
[ 36 ] AT&T Synaptic Storage & Compute
Area: Infrastructure, Platform, and Security as a Service Solution: Cloud-based on-demand storage Status and compute services scaled for • Testing underway academic, and administrative • Use case development and needs documentation by participating Provider: AT&T and Florida Lambda Rail universities Sponsor: Multiple Institutions • InCommon integration under review
Next Steps Complete service validation and move to Early Adopter
[ 37 ] Druva
Area: Infrastructure, Platform, and System Security as a Service Solution: inSync Endpoint Data Protection Status Provider: Druva • Provides secure enterprise Sponsor: Open endpoint backup in the cloud • SAML identity integration
Next Steps Identify Sponsor and begin Evaluation and Service Validation
[ 38 ] GreenButton
Area: Infrastructure, Platform, and System Security as a Service Solution: Multiple services proposed Status Provider: GreenButton • Multiple service offerings Sponsor: Open integrated with Windows Azure • Provider works with campuses and interested in NET+
Next Steps Identify appropriate service(s) of interest and begin service validation(s) in April or May 2014
[ 39 ] KeyNexus
Area: Infrastructure, Platform, and System Security as a Service Solution: KeyNexus; Encryption Key Status Management as a Service • Ultra-secure way to store Provider: Dark Matter Labs encryption keys in the cloud Sponsor: Open • Integrates with AWS • Interest in developing custom program for higher education
Next Steps Begin Service Validation in April or May 2014
[ 40 ] Netskope
Area: Infrastructure, Platform, and System Security as a Service Solution: Cloud app analytics and policy Status enforcement • Provides enterprise wide Provider: Netskope analytics and visibility into the Sponsor: Open use of cloud applications • Provider interest in working with higher education through NET+
Next Steps Begin service validation in April or May 2014
[ 41 ] nCryptedCloud
Area: Infrastructure, Platform, and Security as a Service Solution: Secure Collaboration and Status Encryption Solution • Enables secure collaboration, Provider: nCryptedCloud encryption and administration Sponsor: Open layer on top of cloud storage solutions • Federated identity integration
Next Steps Begin Service Validation in April or May 2014
[ 42 ]