OCI Webinar ASE

You might also like

Download as pdf or txt
Download as pdf or txt
You are on page 1of 69

Oracle Cloud Infrastructure

Next-generation cloud

Ciprian Pustianu
Technology Cloud Engineer

Copyright © 2020 Oracle and/or its affiliates.


Safe harbor statement

The following is intended to outline our general product direction. It is intended for information purposes only, and
may not be incorporated into any contract. It is not a commitment to deliver any material, code, or functionality,
and should not be relied upon in making purchasing decisions. The development, release, timing, and pricing of
any features or functionality described for Oracle’s products may change and remains at the sole discretion of
Oracle Corporation.

Copyright © 2020 Oracle and/or its affiliates.


$> whoami
20 years on IT Market
10 years Working in Oracle RO

6 years
Technology Sales Consultant
Oracle Cloud Infrastructure
Certified Architect Professional
Oracle Database 12c Administrator
Certified Professional
10 years
Oracle DBA
Administration, Implementation
of Oracle Databases
High Availability and Performance
Database Projects
Oracle Autonomous Database
Cloud Certified Specialist ciprian.pustianu@oracle.com
https://www.linkedin.com/in/pciprian
Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. OCI Highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database
4. Strategy and roadmap

Copyright © 2020 Oracle and/or its affiliates.


Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. OCI Highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database
4. Strategy and roadmap
5. Try It

Copyright © 2020 Oracle and/or its affiliates.


Run your mission-critical, enterprise portfolio

• Retained what’s good in Gen 1 First Generation Cloud Oracle Cloud


clouds, but improved it
Elastic resources Superior performance
• Cloud for Enterprise: Security &
Performance Pay for what you use Superior economics

• Makes transition to cloud easier High scale Enterprise expertise


without forcing customers to rewrite
Self-service Security first
apps
Easy to use Open ecosystem
• Bring your present, build your future

Copyright © 2020 Oracle and/or its affiliates.


Regions + Availability Domains + Backbone Network

• Regions serve different geographies – provide Disaster Recovery capability


• Availability Domains – provide a High Availability foundation within a region
• Backbone Network + Peering – private connectivity between regions and direct peering

Phoenix Frankfurt
Region 3
Availability Availability
Domain 1 Domain 1

Availability Availability Availability Availability


Domain 2 Domain 3 Domain 2 Domain 3
Ashburn
Region 2
Availability
Domain 1

Availability Availability
Domain 2 Domain 3

7
Oracle Cloud Infrastructure Overview

GOVERNANCE
Department A Department B Department C
(IAM / APIs)

ORACLE
COMPUTE STORAGE DATABASE NETWORKING EDGE REGION n
SERVICES

CONNECTIVITY
VIRTUAL NETWORK INTERNET

PHYSICAL NETWORK

ORACLE DATACENTERS / AD-1 AD-2 AD-3


YOUR
REGION AVAILABILITY DOMAINS DATACENTER

8
29 Oracle Cloud regions and growing
November 2020: 29 Regions Live, 9+ Planned; 6 Azure Interconnect Regions

SWEDEN

LONDON
AMSTERDAM
NEWPORT
FRANKFURT
TORONTO MONTREAL ZURICH CHUNCHEON
CHICAGO FRANCE
SAN JOSE, CA ITALY
SEOUL TOKYO
ASHBURN OSAKA
PHOENIX ISRAEL
SAUDI 2
DUBAI
JEDDAH
UAE 2 MUMBAI
HYDERABAD

SINGAPORE

Commercial VINHEDO
Commercial Planned SAO PAULO
Government JOHANNESBURG
Government Planned SANTIAGO
Microsoft Interconnect Azure SYDNEY
MELBOURNE

Copyright © 2020 Oracle and/or its affiliates.


Complete cloud services
Developer, DevOps Applications Analytics Governance,
Security

SERVERLESS INTEGRATION SAAS ANALYTICS GOVERNANCE


Events, Functions, Integration, SOA Service ERP, HC, SC, Sales, Marketing, Analytics, Data Science, IAM, Compartments,
LOW CODE Tagging, Cost Analysis
API Gateway, Streaming Service, Vertical Industry Cloud SQL
APEX, Visual Builder,
Digital Assistant
Data Management
SECURITY
IAM, Audit, KMS, Vault,
DEVELOPER DATA MGMT DATA PROCESSING AUTONOMOUS DATABASE CASB, Data Safe, DDoS,
Developer, GraalVM, WAF
Database Migration, Data DataFlow, Big Data DATABASE Bare metal, VMs, Exadata,
Helidon, SQL Developer, Integration, Data Catalog Transactions, Data NoSQL, MySQL
Shell, APIs/SDKs Warehouse, Dedicated
OBSERVABILITY
Infrastructure Monitoring, Logging,
Notifications, Events,
Alarms
INFRASTRUCTURE as
CODE
Resource Manager, COMPUTE CONTAINERS OS / IMAGES STORAGE / IMPORT NETWORKING
Terraform, Ansible Bare metal/VM, Containers, Kubernetes, Autonomous Linux, NVMe, Block, File, VCN, LB, Service
MULTICLOUD
CPUs/GPUs/HPC Registry OS Mgmt Service, Object, Archive, Data Gateway, FC, VPN,
Identity, Management
Marketplace, VMware Transfer / Appliance Cluster Networking

Copyright © 2020 Oracle and/or its affiliates.


Bare Metal VMs Containers Functions
Instance isolation Security- hardened Bare metal Pay only for usage
Highest IOPS hypervisor performance Serverless
High throughput Flexible sizing Self-healing clusters Container-native
Low latency Dense IO and Open source

Compute Dedicated host


options

Compute services for AMD EPYC Intel Xeon NVIDIA GPUs


any enterprise use
case Local Attached Storage Remote Attached Storage
NVMe SSDs NVMe Block Volumes up to 1PB
Up to 51.2 TB 32 TB / volume
Millions of IOPS 75 IOPS / GB

Copyright © 2020 Oracle and/or its affiliates.


Fast and scalable bare metal, VM, and GPU compute

ENTERPRISE WEB & ENTERPRISE APPLICATION HPC, AI/ML, DNA SEQUENCING, CFD, MODERN DISTRIBUTED
APPLICATION SERVERS SERVERS, HADOOP 3D RENDERING CRASH SIMULATIONS APPLICATIONS

Bare Metal
Bare Metal E3 Bare Metal
Bare Metal Dense IO
Standard Standard Bare Metal HPC 52 OCPUs,
128 OCPUs, 52 OCPUs, GPU Standard
VM GPU 2 P100 GPUs, Dense IO 768 GB RAM,
2048 GB RAM 768 GB RAM
VM Standard v1 & 2 28 OCPUs, 192 GB RAM 36 OCPUs (3.7 GHz), 51.2 TB NVMe
Up to 1 PB Block Up to 1 PB Block Up to 1 PB Block
Dense IO From 1 P100 to Up to 1 PB Block 384 GB RAM
VM E3 VM $0.025 core hr. $0.0638 core hr.
4 V100 GPUs Up to 1 PB Block $ 0.1275 core hr.
$0.0015 GB RAM 8-24 OCPUs, $1.275 GPU hr.
Standard Flex Standard 12-24 OCPUs, 100 Gbps RDMA
hr. 120-320 GB RAM,
1-64 OCPUs, 1-24 OCPUs, 104-360 GB RAM $ 0.075 core hr.
16 GB per OCPU RAM
6.4-25.6TB NVMe v2
15-320 GB RAM These 2 also available as Up to 1 PB Block Up to 1 PB Block 8 V100 GPUs, NVLINK
Up to 1 PB Block Up to 1 PB Block Dedicated VM Hosts $1.275 - $2.95
$0.0638 core hr. 52 OCPUs, 768 GB
$0.025 core hr. $0.0638 core hr. /GPU hr.
$0.0015 GB RAM hr. Up to 1 PB Block
$2.95 GPU hr.

V3 Bare Metal and VM GPU Standard*


From 1 to 8 NVIDIA A100 GPUs w/ NVLINK
Up to 64 OCPUs,
*Announced – coming soon 1.6 Tbps RDMA
Up to 25 TB local NVMe, Up to 1 PB Block
Copyright © 2020 Oracle and/or its affiliates.
$3.05 /GPU hr.
OCI Shapes – VM

Max VNICS
Max VNICs
Shape OCPU VCPU Memory (GB) Local Disk Network Bandwidth1 Total:
Total: Linux
2.0 GHz Intel® Xeon® Platinum 8167M

Windows

VM.Standard2.1 1 2 15 Block Storage only 1 Gbps 2 2

VM.Standard2.2 2 4 30 Block Storage only 2 Gbps 2 2

VM.Standard2.4 4 8 60 Block Storage only 4.1 Gbps 4 4

VM.Standard2.8 8 16 120 Block Storage only 8.2 Gbps 8 8

VM.Standard2.16 16 32 240 Block Storage only 16.4 Gbps 16 16

VM.Standard2.24 24 48 320 Block Storage only 24.6 Gbps 24 24

VM.Standard.E2.1 1 2 8 Block Storage only 700 Mbps 2 2


2.0 GHz AMD EPYC 7551

VM.Standard.E2.1.Micro 1 2 1 Block Storage only 480 Mbps 1 N/A

VM.Standard.E2.2 2 4 16 Block Storage only 1.4 Gbps 2 2

VM.Standard.E2.4 4 8 32 Block Storage only 2.8 Gbps 4 4

VM.Standard.E2.8 8 16 64 Block Storage only 5.6 Gbps 4 4

* The Future is shapeless ... Freedom for OCPU and memory relationship !
OCI Shapes – Bare Metal
Max VNICS
Mem Network Max VNICs
Shape Instance Type OCPU VCPU Local Disk Total:
(GB) Bandwidth1 Total: Linux
Windows

BM.Standard1.362 Standard compute capacity 36 72 256 Block storage only 10 Gbps 36 1

28.8 TB NVMe
BM.DenseIO1.362 Dense I/O compute capacity 36 72 512 10 Gbps 36 1
(9 drives)

BM.Standard.B1.44 X6-based standard compute capacity 44 88 512 Block storage only 25 Gbps 44 None

BM.Standard2.52 X7-based standard compute capacity 52 104 768 Block storage only 2 x 25 Gbps 52 27

51.2 TB NVMe
BM.DenseIO2.52 X7-based dense I/O compute capacity 52 104 768 2 x 25 Gbps 52 27
(8 drives)

BM.GPU2.2 X7-based GPU: 2xP100 NVIDIA GPUs 28 56 192 Block storage only 2 x 25 Gbps 28 15

BM.GPU3.8 X7-based GPU: 8xV100 NVIDIA GPUs 52 104 768 Block storage only 2 x 25 Gbps 52 27

BM.Standard.E2.64 E1-based standard compute capacity: AMD CPUs 64 128 512 Block storage only 2 x 25 Gbps 75 76

6.7 TB NVMe 1 x 25 Gbps


BM.HPC2.36 X7-based high frequency compute capacity 36 72 384 50 1
(1 drive) 1 x 100 Gbps

1: Network bandwidth is based on expected bandwidth for traffic within a VCN.


2: X5-based shapes availability is limited to monthly universal credit customers existing on or before November 9th, 2018, in the us-phoenix-
1, us-ashburn-1, and eu-frankfurt-1 regions.
Local Block File Object
NVMe SSDs NVMe SSDs HA file system Distributed, HA
Up to 51TB 32 TB / volume Start with KBs, scale Self-healing
Millions of IOPS 75 IOPS / GB to Exabytes Unlimited scalability
10-100 μs latency <1ms latency

Storage Online performance


tuning and capacity
expansion

Comprehensive, best-
performing storage HPC File Storage
services Archive Data Transfer
Systems Gateway
for enterprise
IBM Spectrum Scale, Durable object Local NAS-like Move petabyte scale
workloads Lustre, BeeGFS, storage at 90% lower performance data
GlusterFS cost Configurable cache Option for appliance,
Proven 60 GB/s disk
performance No cost to transfer
data

Copyright © 2020 Oracle and/or its affiliates.


Complete storage portfolio, with consistently fast performance

HADOOP, RICH MEDIA, LOGS, ENTERPRISE APPLICATIONS, DATABASES, ANALYTICS, OLTP, HPC,
BACKUP, ARCHIVE GPU, CONTAINERS, APPLICATION LIFECYCLE CONTAINERS, KUBERNETES

Bare metal
Dense IO
Block Volumes 51 TB
Network NVMe SSD block NVMe SSD
storage 5M IOPS
File Storage Up to 32 TB volumes Performance SLA
Network NVMe SSD Up to 1 PB/host
file storage Up to 75 IOPs, 480MB/s
Object & Archive 150 MB/s per TB per volume
Storage Scales to exabytes Snapshots, scheduled
Limitless capacity NFS, NLM, backups, clones,
Native & S3 APIs, HDFS, snapshots, encryption grouped clones,
encryption, WORM encryption, online
performance &
VM Dense IO
10TB max object size 6.4-25.6 TB
capacity scaling
Data Transfer Storage Performance SLA NVMe SSD
1.8M IOPS
Service Gateway Performance SLA
HDD or 150TB NFS, at rest and
appliance, inflight encryption,
encryption configurable cache

Copyright © 2020 Oracle and/or its affiliates.


Block Volume - Volume Performance Unit

Feature of the OCI Block Volume service allows you to dynamically change the volume performance, along with
enabling you to pay for the performance characteristics you require independently from the size of your block
volumes and boot volumes.
This feature includes the concept of volume performance units (VPUs). You can purchase more VPUs to allocate
more resources to a volume, increasing IOPS/GB and throughput per GB.
Throughput Max Throughput
Performance Level Usage VPU IOPS/GB Max IOPS/Volume 8KB Block MB/s Volume/GB

Lower Cost Intensive workloads with large sequential I/O N/A 2 3.000 24 480

Default setting for new and existing block and boot


volumes. It provides a good balance between
Balanced performance and cost savings for most workloads 10 60 25.000 200 480

Higher Workloads with the highest I/O requirements,


Performance requiring the best possible performance 20 75 35.000 280 480
Storage Evaluation - VPU Testing …

Balanced

Oracle Confidential – Internal/Restricted/Highly Restricted 18


Storage Evaluation - VPU Testing …

High Performance

Oracle Confidential – Internal/Restricted/Highly Restricted 19


VCN FastConnect Load Balancing
Fully configurable subnets, Dedicated, SLA backed Choice of TCP, HTTP, HTTP/2
routing, firewalls connectivity End-to-end SSL
Default IPSec VPN No data transfer charges TLS encryption
25Gb network infrastructure 42 carriers worldwide

Networking
High fidelity virtual Service Gateway DNS
networks and
connectivity Private access without <30ms response time
traversing internet Global load balancing
Full range of IaaS/PaaS Traffic management
services covered Network health checks

Copyright © 2020 Oracle and/or its affiliates.


VCN Review
Destination CIDR Route Target
OCI REGION
AVAILABILITY DOMAIN-1 0.0.0.0/0 Internet Gateway

Frontend, 10.0.1.0/24

Source Dest
Type CIDR Protocol
Port Port
Stateful Ingress 0.0.0.0/0 TCP All 80
Stateful Egress NSG-B TCP All 1521
NSG-A RT - Frontend
Internet

NSG-B RT - Backend Internet


Gateway Destination CIDR Route Target
0.0.0.0/0 NAT/ Service gateway /DRG

Backend, 10.0.2.0/24 Source Dest


Type CIDR Protocol
Port Port

VCN, 10.0.0.0/16 Stateful Ingress NSG-A TCP All 1521


Stateful Egress All All

Copyright © 2020 Oracle and/or its affiliates.


Network Security Groups
Offers virtual firewall features to control traffic at the packet level

New features:
▪ Private Endpoints: Securely connect
locked-down OCI resources to public
endpoints

▪ IPSec over Fast Connect - Get added


security by encrypting traffic from on-
premises to the cloud

Granular network security lists that can be applied to individual NIC and Subnets

22 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Industry-first cluster networking
Cloud-first network for ultra low latency and high bandwidth

CPU Servers GPU Servers* Exadata* Block Storage*

X X

1.5 µs latency, 100Gb/s Clustered RDMA Network

For high performance workloads (HPC, Database, Big Data, AI) including the hardest product
development workloads like CFD, Crash Simulations, Reservoir Modelling, DNA Sequencing

Copyright © 2020 Oracle and/or its affiliates.


Connectivity options

• Reserved IPs • IPsec authentication and • Private Connection


encryption
• Ephemeral IPs • Separate from the internet
• • Two main options
Internet Data out Pricing • Consistent network experience
(first 10TB free) • OCI managed VPN
• Port speeds of 1 Gbps, 10 Gpbs
Service (free)
• SLA
• Software VPN (running
on OCI Compute) • Oracle charges only for port hours
consumed and not data transfer

https://cloud.oracle.com/fastconnect/faq#billing
Oracle Cloud Infrastructure
User Interfaces
Web Interface

Mobile

Command Line

Infra as Code
Oracle Cloud Infrastructure Cloud (OCI) Shell

Cloud Shell VM comes with current versions of several useful


tools :
• Git
• Java
• Python (2 and 3)
• SQL Plus
• kubectl
• helm
• maven
• gradle
• Terraform

What can we do with Cloud Shell


• SSH and Console Connections
• Database Connections

Cloud Shell uses only Public IP addresses


Oracle Cloud Infrastructure – Resource Manager
Infra as a Code

2
3
Oracle Cloud Infrastructure – Resource Manager
Resource Manager is a service from Oracle Cloud Infrastructure that automates interactions
between OCI and Hashicorp’s Terraform.
Terraform
Provisioning and Automation
External
Web Client

LB-APACHE ORACLE CLOUD INFRASTRUCTURE (REGION)

Internet
Gateway
Av. Domain 1 Av. Domain 2 Availability Domain 3 Provisioned Resources
Service • 1 VCN
Gateway
VM-OracleLinux-
VM-OracleLinux-AD3
• 2 Regional Subnets
AD2
• 1 Internet Gateway
• 1 NAT Gateway
• 1 Service Gateway
VM-Windows2016-AD1
Block Storage • 4 Security Rules
(50 Gb) Public Subnet • 1 Route Table
• 2 Compute Instances (with Key)
• 2 Block Volumes
• 2 Storage Attachments
Private Subnet • 1 Public Load Balancer
• 2 Apache Installations
File Storage
Service
Time Provisioning : 00:05:40

Route Security List


NAT Gateway Table VCN

Compartment
Infrastructure as Code (IaaC)
Drift Detection

30 Confidential – © 2019 Oracle Internal/Restricted/Highly Restricted


Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. OCI Highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database
4. Strategy and roadmap
5. Try It

Copyright © 2020 Oracle and/or its affiliates.


Public cloud is more secure
than customer data centers

72% of organizations feel the public


cloud is more secure than what they can
deliver in their own data center and are
moving data to the cloud

Source: Oracle and KPMG Cloud Threat Report 2019

32 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Multiple layers of defense in depth
Data
Instance ▪ At-Rest-Crypto
Virtual ▪ Tenant Isolation
▪ TDE
▪ DataGuard
Monitoring Network
▪ Interface Segmentation


Hardened Images
Hardware Entropy
▪ In-Transit-Crypto

Edge
▪ Security Lists ▪ SSL/TLS
▪ 3rd Party Security ▪ SSH Keys ▪ NNE
▪ Private Networks ▪ Certificates
▪ FW
Services
▪ Bastion Access ▪ Keys
• Global PoPs ▪ NGFW ▪ Root-Of-Trust Card ▪ Managed Keys
• DDoS Protection ▪ SSL Load Balancing ▪ Signed Firmware
▪ IPS ▪ FastConnect (Direct) ▪ Custom Keys
• DNS Security ▪ Oracle Management Cloud ▪ Hardware Security ▪ Managed Vault
• WAF Protection ▪ FastConnect (Carrier) Modules
(OMC) ▪ IPSec VPN ▪ Data Safe Console
▪ Cloud Access Security Broker
(CASB)
▪ Logging Service
▪ Compliance

Internet

Identity
▪ Identity Federation
▪ Role-Based Policy
▪ Compartments & Tagging
▪ Instance Principals

33 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Security re-envisioned in the Cloud

Authoritative
OCI IAM DNS
with
CASB Internet
Subnet Service Intelligence
FastConnect OCI Region Level
w/ IPSec option Virtual
Virtual Cloud Network
Firewalls
AD1
IGW
AD2
IPSec VPN WAF with Automated,
Proactive DDoS
AD3 Threat Protection
Detection
▪ vFirewalls – access control in/out
▪ Distributed Denial of Service (DDoS) – network layer attack protection
▪ Web Application firewall (WAF) – application layer attack protection
▪ Cloud Access Security Broker (CASB) – visibility, compliance, control drift alerting
▪ Virtual Private Network (VPN) – protection/encryption in transit over Internet & private links
▪ Domain Name Service (DNS) – managed DNS from Oracle for OCI customers
▪ Identity & Access Management (IAM) – control who can access and manage OCI resources

34 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


A tale of two clouds
Better protection through isolated network virtualization

1st Generation Clouds: 2nd Generation Cloud:


Most prevalent today Oracle Cloud Infrastructure wide

VM/ VM/ VM/


Guest Guest Guest
OS OS OS
VM/ VM/ VM/
Guest Guest Guest
OS OS OS

Container (Optional)
Hypervisor

Server Virtualization Host OS/Kernel


Separates
Server Virtualization
Hypervisor
Hypervisor Network and
Network Virtualization Tenant
Network
Network Virtualization
Virtualization
Environment
Host
Host OS/Kernel
OS/Kernel
Isolated Network
Virtualization

To / from other tenants To / from other tenants

35 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Isolation: threat containment and reduced risk

1st Generation Cloud Oracle 2nd Generation Cloud

VM/
VM/ VM/ VM/
VM/ VM/ VM/ VM/
Guest
Guest Guest Guest
Guest Guest Guest Guest
OS
OS OS OS
OS OS OS OS
VM/
VM/ VM/ VM/ VM/
VM/ VM/ VM/
Guest VM/
VM/ VM/ VM/
VM/ VM/ VM/ VM/
Guest Guest Guest Guest
Guest Guest Guest
OS Guest
Guest Guest Guest
Guest Guest Guest Guest
OS OS OS OS
OS OS OS
OS
OS OS OS
OS OS OS OS
VM/
VM/ VM/
VM/ VM/
VM/ VM/
VM/ VM/ VM/
VM/
Guest
Guest Guest
Guest Guest
Guest Guest
Guest Guest Guest
Guest
OS
OS OS
OS OS
OS OS
OS OS OS
OS

Container (Optional) Container (Optional)


Hypervisor Hypervisor

Server Virtualization Server Virtualization Host OS/Kernel Host OS/Kernel


Server Virtualization
Hypervisor Server Virtualization
Hypervisor Isolated Network
Hypervisor
Network Virtualization Hypervisor
Network Virtualization Virtualization Security
Network Virtualization Network Virtualization
Prevents Lateral
Host OS/Kernel Host OS/Kernel Movement
Isolated Network Isolated Network
Virtualization Virtualization

36 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Autonomous Linux Platform Available Now

Most secure OS for the cloud

▪ Oracle Linux includes Ksplice, the only technology in the industry that patches kernel
and user space programs with zero downtime.
▪ OS Management Service automatically manages inventory of all vulnerabilities
and all running instances.
▪ OS Management Service automatically patches your hosts and keeps you always secure.
▪ Always on Security. 100% automated.

37 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Cloud Guard
Pervasive watch and kill

▪ Cloud Guard constantly watches and collects data from


Audit, Data Safe, OS Management, Logging, and Network
Flow Logs services.
• Gen 1 clouds don’t offer a unified system to collect
data from all services.
▪ Cloud Guard analyzes data and detects threats and
misconfigurations. It can alert you, and better yet,
it can kill threats with no human intervention.
• Gen 1 clouds are only reactive and alert you. You’re left with
the hard, slow, and manual task of killing the threat yourself.

38 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


OCI compliance: Current audit programs
https://www.oracle.com/cloud/cloud-infrastructure-compliance/
Global

SOC 1 : SOC 2 : SOC 3 27001 : 27017 : 27018 Self-Assessment US Privacy Shield


Government

DoD DISA SRG IL2 Moderate – Agency ATO VPAT – Section 508 G-Cloud 11 - UK Model Clauses - EU
Industry

Level 1
HIPAA PCI DSS FISC - Japan IG Toolkit - UK
Regional

C5
GDPR - EU BSI C5 - Germany TISAX - Germany PIPEDA - Canada Cyber Essentials My Number - Cloud Security
Plus - UK Japan Principles - UK

39 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


OCI Monitoring - Dashboard
Metric
Name
Space

Compartment

Time Range
OCI Monitoring Console – Metrics Explore
Deep dive on one metric, or correlate several metrics

Metrics Query
Language (MQL)

Oracle Confidential – Internal


41
Compute Instance Alarm
Compute Instance that is generating metrics
Options Pull Down
for CPU Utilization

CPU Utilization

Create an Alarm
on this Query

Oracle Confidential – Internal


42
Superior performance

Faster components than other clouds, on par with on-premises


• Bare metal, VMs, GPUs, local storage, block storage, database
More available network bandwidth between components
• No over-subscription, no noisy neighbors, very low latency
First RDMA cluster offering 1.5 microsecond latency in the cloud
• The toughest on-prem workloads can now run in the cloud

Copyright © 2020 Oracle and/or its affiliates.


Oracle Gen 2 Cloud: Infrastructure
Oracle Cloud Offers the Best Performance Per Server

AWS Oracle offers

Compute 2.57 TFLOPs 1.77 TFLOPs 45% more

Memory 153.02 GB/s 134.03 GB/s 14% more

Block Storage 700,000 IOPS 80,000 IOPS 775% more

https://www.oracle.com/cloud/economics/

Copyright © 2020 Oracle and/or its affiliates.


2-5x faster vs. on-prem and other clouds
Backed by performance SLAs

Microsoft Oracle VDI Mixed


SQL Database Workload
350000

300000

250000
Oracle Bare Metal
200000
All-flash array
150000 AWS i3.metal

100000

50000

www.storagereview.com/oracle_cloud_infrastructure_compute_bare_metal_instances_review
www.storagereview.com/amazon_ec2_i3metal_review
https://www.storagereview.com/dell_emc_unity_450f_allflash_storage_review

Copyright © 2020 Oracle and/or its affiliates.


Superior Economics

Each component is less expensive than other clouds


• VMs, bare metal, block storage, outbound bandwidth, FastConnect
• One price point globally
Overall solutions have 30-50% lower 5-year TCO than AWS or on-prem
Universal Credits
• Enables future-proof choice across infrastructure and platform services
• More benefits and none of the constraints of AWS Reserved Instances

https://www.oracle.com/cloud/cost-estimator.html

Copyright © 2020 Oracle and/or its affiliates.


Each component is lower price than other clouds

Oracle AWS Azure GCP


Standard Virtual Machine Instances ($/OCPU/Hour) $0.0638 +49% +49% +46%
DenseIO Virtual Machine Instances ($/OCPU/Hour) $0.1275 +18% +48% +20%
Bare Metal Standard ($/OCPU/Hour) $0.0638 +45% N/A N/A
Bare Metal Dense IO ($/OCPU/Hour) $0.1275 +4% N/A N/A
GPU Instances ($/GPU/Hour) $2.25 +26% +26% +4%
Block Storage: Massive Perf (annual cost, 400GB 20K IOPS) $204 +7,900% +2,900% +400%

Data Archive ($/GB/Month) $0.0026 +35% -30% +63%


Internet Data Egress (50TB/Month) $340 +1,300% +1,300% +1,300%
Private Line Network (1 Gbps, 100TB Data, Monthly) $155 +2,100% +3,700% +1,500%
Bold = Lowest Cost

Copyright © 2020 Oracle and/or its affiliates.


Universal Credits: flexible consumption
Unlimited access to all Oracle Cloud services

Consumption Choices

Pay As You Go (PAYG) Annual Flex


• One simple contract, simplifies the
buying experience
• No upfront commitment • 1 year minimum term
• Pay only for what you use • Credits can be consumed any time • Universal access to all current and
• Pay in arrears based on usage within the 1 year term
future Oracle Cloud services
• List price • Discounts based on size of deal and • Lower prices based on annual dollar
• Best when usage is uncertain term of deal
commitment
• Elastic payments based • Lowest spending without sacrificing
on usage flexibility
• Flexibility to upgrade, expand or
move services across datacenters

Copyright © 2020 Oracle and/or its affiliates.


Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. OCI Highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database
4. Strategy and roadmap
5. Try It

Copyright © 2020 Oracle and/or its affiliates.


The Product: Oracle Cloud VMware Solution

✓ An Oracle product combining Oracle Cloud Infrastructure and VMware software


✓ A VMware Cloud Foundation certified solution
✓ Sold by Oracle and Oracle partners
✓ Supported by Oracle and VMware

VMware Software Oracle Infrastructure Integration Options


A certified VMware Cloud An initial 3-server configuration, which Connect your VMware to Oracle cloud services in
Foundation environment with you can bring up fast and expand at the same datacenter. From Oracle Autonomous,
vSphere, vSAN, and NSX. will DBaaS, to Exadata and more.

Copyright © 2020 Oracle and/or its affiliates.


Diagram of Oracle Cloud VMware Solution

VMware SDDC on OCI OCI Gateways OCI Services

VM

On-prem Compute
NSX Overlay
(Customer Logical Segments)

COMPUTE NETWORK STORAGE Internet


Gateway
Object Storage

(vSphere) (NSX-T) (vSAN)

OCI Compute
Service Gateway ADW / ATP

Oracle Cloud Infrastructure – Virtual Cloud Network(s)

Copyright © 2020 Oracle and/or its affiliates.


Benefits

Cloud Flexibility Control Manageability


Extend your VMware deployment to You control the software and hardware, Manage your Software Defined
a hybrid cloud combining your with full administrative access to the entire Data Center with a single pane of
datacenter and Oracle Cloud, or stack of VMware software and the glass in the cloud or across a hybrid
migrate VMs at your own pace to underlying bare metal cloud compute environment – vCenter
reduce your own infrastructure. Use instances. Maintain your proven
Universal Credits for all. architectures and processes.

Extend and leverage with Oracle Cloud and Autonomous Services

Copyright © 2020 Oracle and/or its affiliates.


Use Cases

Datacenter Disaster Recover


Extension on Oracle Cloud

Extend your Data Center footprint to the Enhance your Business Continuity strategy,
cloud, using VMware on one of the by creating a Disaster Recovery environment
growing list of Oracle Cloud for VMware on OCI
Infrastructure regions.

+
Datacenter On-demand
Migration Capacity

Seamless Migration of your VMware Spin-up additional compute


workloads to Oracle Cloud, without the capacity as you need it, when you
need for re-architecting your need it.
applications.

Copyright © 2020 Oracle and/or its affiliates.


Beyond Oracle Cloud Public Regions

Some customers can’t adopt the public cloud


• Regulatory/Latency requirements
• Data sovereignty when no Data Center in their countries
• Physical security

Want same attributes/benefits as public cloud


• All the services as public cloud (IaaS, PaaS, SaaS)
• Same consumption model as the public cloud

With the same level of security/isolation High expertise, experience, and automation in
as on-premises infrastructure delivering new commercial regions
• Running in customer’s Data Center (DC)
• Dedicated to their organization
• Meeting all their security requirements

54 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Oracle provides a full spectrum of deployment models

On-Premises Public Cloud Cloud@Customer


Exadata Database Bare Metal, Exadata C@C
Machine Autonomous Database, Dedicated Region
Container Engine

Customer Data Center Oracle Cloud Customer Data Center


Purchased Subscription Subscription
Customer-Managed Oracle-Managed Oracle or Co-Managed

55 Copyright © 2020 Oracle and/or its affiliates.


Oracle Dedicated Region Cloud@Customer
All the capabilities of an Oracle public cloud region delivered on-premises

1. Racks physically secured, and managed


by Oracle
2. Customer racks
3. Oracle operations personnel
4. Customer DC power, cooling
5. Oracle secure space
6. Customer DC personnel
7. Physical Access Cages

56 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Access the entire set of cloud services from your own facility

Dedicated Region Cloud@Customer


—Over 50 Cloud Services—
Compute • Hosted within customers’
Bare Metal Compute, Virtual Machines, Container Engine for Kubernetes, +3 more
data center
Storage
Object Storage, Block Volume, File Storage, + 3 more • Customizable based on
Management and Governance workload needs
Monitoring, Key Management, Resource Manager, + 6 more
• Fully dedicated, fully
Security, Identity, and Compliance featured cloud
Audit, Identity and Access Management, +3 more

Network, Edge, and Connectivity • Oracle-managed maintenance


DNS, Traffic Management, Load Balancing, +3 more and operations
Application Development • Software-defined infrastructure
API Gateway, WebLogic + 11 more

Data Management • SLA guarantees match the


Autonomous Transaction Processing, Autonomous Data Warehouse, Exadata + 9 more public cloud
Analytics and Big Data • Only pay for cloud service
Analytics Cloud, Analytics for Applications, Big Data, +5 more
consumption
Oracle Fusion SaaS Support
ERP, EPM, HCM, SCM, CX

57 Copyright © 2020, Oracle and/or its affiliates. All rights reserved.


Oracle’s Vision for Autonomous Database

Self-Driving
• User defines service levels, database makes them happen
Self-Securing
• Protection from both external attacks and malicious internal users
Self-Repairing
• Automated protection from all downtime
Autonomous
Database
58
Ingredients of an Autonomous Database

Oracle Database 18c, 19c


• Dozens of automated database features
+
Oracle Cloud infrastructure
Oracle • Single, standard platform as focus for self-driving
Cloud automation
+
Policy-Driven Automation
• Automation for optimal configuration for each workload
59
Autonomous Optimizations | Specialized by Workload

Optimizes Complex SQL Optimizes Response Time

Columnar Format
Autonomous Data Row Format
Autonomous
Warehouse Transaction Processing
Creates Data Summaries Creates Indexes

60
Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. New highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database
4. Strategy and roadmap
5. Try It

Copyright © 2020 Oracle and/or its affiliates.


Aggressive pricing, flexible plans

AWS Azure GCP


Standard Virtual Machine Instances ($/OCPU/Hour) $0.0638 +52% +52% +46%
DenseIO Virtual Machine Instances ($/OCPU/Hour) $0.1275 +18% +48% +20%
Bare Metal Standard ($/OCPU/Hour) $0.0638 +34% N/A N/A
Bare Metal Dense IO ($/OCPU/Hour) $0.1275 -25%* N/A N/A
GPU Instances ($/GPU/Hour) $2.25 +26% +26% +4%
Block Storage: Massive Perf (annual cost, 400GB 20K IOPS) $204 +7,900% +2,900% +400%
Data Archive ($/GB/Month) $0.0026 +35% -30% +63%
File Storage ($/GB/Month) $0.425 +86% +29% +79%
Internet Data Egress (50TB/Month) $340 +1,300% +1,300% +1,300%
Private Line Network (1 Gbps, 100TB Data, Monthly) $155 +2,100% +3,700% +1,500%

= Lowest Cost
*Oracle DenseIO bare metal has 44% more cores and 3.4X local SSD capacity vs AWS i3.metal
62
Oracle Cloud Ecosystem
Certified Oracle and partner solutions ready to deploy at a click

OS, Virtualization Apps, Migration Networks, Analytics, AI/ML,


Oracle Data
Security HPC

E-Business Suite

GoldenGate

JD Edwards

PeopleSoft

Siebel

WebLogic

Spend Universal Credits on partner solutions in our marketplace


Copyright © 2020 Oracle and/or its affiliates.
Interconnected Multi-Cloud Solutions for Enterprise

✓ Microsoft Azure and Oracle Cloud are interconnected today, so you can migrate and run
mission-critical enterprise workloads across clouds
✓ Unified identity and access management via single sign-on with automated user
provisioning to easily manage resources across clouds
✓ Collaborative support of custom and Oracle Applications on Azure with Oracle Database on
Oracle Cloud – connect best-in-class services across clouds

• Available Now: US East, London


• Coming Soon: US West, Government, Asia, and Europe regions

Copyright © 2020 Oracle and/or its affiliates.


Release Themes
Major Theme Features in last 12 months Features in next 6 months
Flexible Infrastructure • Block Storage performance tiering • Block volume auto perf / cost tuning with attach /
• Online resize block volume detach
• Scheduled compute autoscaling • High perf (70K IOPS) volumes
• Instance Resize with Reboot • Instance Resize with Reboot v2
• E2-2C Custom Shapes • OKE support for flexible memory
• VM DB Shape Scaling • Next Gen VPNaaS
• VM DB OCPU Scaling • Flexible Load Balancer (bursting)
Region Growth • 12 Commercial Regions • 5 Commercial Regions
• 3 Gov Regions • 3 Gov Regions
• 7 Dual-Region Countries • 1 Dual-Region Country
• 5 Azure Interconnects • 3 Azure Interconnects
• First Dedicated Region (Cloud@Customer)
Cloud Security • Secrets Management Service • Cloud Guard
• KMS controls in console • Maximum Security Zone
• BYOK for Streaming Service • Software Key Vault
• BYOK for Object Store • Security Center Wizards
• Data Safe for DB in Private IP • Bastions as a Service
• Cross-Region Key backup / restore • Vulnerability Scanning Service
• Private Endpoint for OAC • TPM on OCI servers
• KMS Integration with ATB-D, DBaaS
• OCI Certificates

65
Agenda

1. Oracle Cloud Infrastructure overview


2. Meeting Enterprise requirements
- Security and Manageability
- Performance
- Costs
3. New highlights
- Oracle VMware Cloud Services
- Oracle Dedicated Regions Cloud@Customer
- Autonomous Database on Exadata Cloud@Customer
4. Strategy and roadmap
5. Try It

Copyright © 2020 Oracle and/or its affiliates.


Always Free – It’s for Everyone

• Developers - prototype, build, and run your


next big idea for free
• Students - learn on the most modern and most
mission-critical cloud
• Oracle Academy - fast and easy to build
courses with real-world labs
• Enterprises - prototype for free, easy upgrade
to paid for higher scale
https://www.oracle.com/cloud/free/

Copyright © 2019 Oracle and/or its affiliates.


Always Free – What’s Included

Autonomous Compute Storage Networking/ Load Monitoring /


Database Balancing Notifications

2 x VMs 100 GB Block 10 Mbps LB 500M Metrics Ingestion


2 x Databases
1 GB Memory each 10 GB Object 10 TB Outbound 1B Metrics Retrieval
20 GB each
10 GB Archive Data Transfer 1M Notifications
1K Emails

Available to All New and Existing Cloud Accounts

Copyright © 2019 Oracle and/or its affiliates.


Thank You

You might also like