© 2009 NetApp. All rights reserved.
Agenda
What is Multi-Tenancy?
Secure Multi-Tenancy as Cloud Infrastructure
Introducing MultiStore
MultiStore Use Cases
Customer Examples
Multi-Tenancy
What is it?
Shared Infrastructure: hardware & software
Consolidation of diverse requirements
Administrative isolation and control
© 2009 NetApp. All rights reserved.
Secure Multi-Tenancy – Definition
Supporting multiple “tenants” (users, customers, etc.)
from single shared infrastructure while keeping all data
isolated and secure
Customers concerned with security and privacy require
secure multi-tenancy
–
Government agencies
–
Financial companies
–
Service Providers
–
Etc.
Architects & Product Managers will understand the
concept of Secure Multi-Tenancy
Multi-Tenancy and Cloud Infrastructure
Less storage to do more
Secure Multi-Tenancy
Service Automation and Management
Storage Efficiency
Integrated Data Protection
Data Mobility
Ease of data provisioning; charge-back model
Serve multiple clients with one physical system
Access data anywhere anytime!
© 2009 NetApp. All rights reserved.
Secure Multi-tenancy for virtualized environments
Solution
The only validated solution to
support end to end multi-
tenancy across application and
data
Data is securely isolated from
virtual server, network, to
virtual storage
Customer Benefits
Address end user security
concerns
Meet regulatory and
compliance requirements
Gain economies of scale,
higher utilization, better SLAs
of virtualized environment
Reduced cost, increased
efficiency and business agility
6
HR
BU
APP
Introducing MultiStore
Secure, Multi-Tenancy for Data ONTAP®
Creates multiple system
partitions (vFiler units) on a
single NetApp storage system
–
Virtual Storage Partitions
Each vFiler unit is secure
–
Data owned by one vfiler unit
© 2009 NetApp. All rights reserved.
Introducing MultiStore
Secure, Multi-Tenancy for Data ONTAP®
Benefits
–
Storage controller consolidation for improved
asset utilization of workloads
–
Transparent migration of workloads between
different tiers of storage or for dynamic load
balancing
–
Workload specific delegation of administration
–
Integrated & simplified disaster recovery
MultiStore
One Physical System, Multiple Virtual Storage Partitions
Up to 65 secure partitions (vFiler units) on a single storage system
IP Storage based (NFS,CIFS & iSCSI servers)
Over 16,000 MultiStore systems deployed world-wide
© 2009 NetApp. All rights reserved.
MultiStore provides multiple layers of security
–
IPspaces
–
Administrative separation
–
Protocol separation
–
Storage separation
An IPspace has a dedicated routing table for look up of IP
destination address and next-hop information
Each physical interface (Ethernet port) or logical interface
(VLAN) is bound to a single IPspace
A single IPspace may have multiple physical & logical
interfaces bound to it
Each customer has a unique IPspace
Use of VLANs or VIFs is a best practice with IPspaces
What Makes MultiStore Secure?
Matasano Security Audit
In early 2008, Matasano Security conducted an extensive
security audit of the NetApp Data ONTAP operating
system and the licensed software feature, MultiStore
®
.
© 2009 NetApp. All rights reserved. 12
MultiStore Use Cases
MultiStore Use Case
Business Benefit
File Services Consolidation
Two or more groups can share one
physical resource but maintain control
over security and access to data. Smaller
footprint, less power.
Application Hosting
Host application data across a common
storage infrastructure with defined
service levels. Enables IT as a service
(Cloud)
Data Mobility
Move data between physical storage
systems without complex reconfiguration.
Disaster Recovery
Easily mirror between sites and enable
MultiStore
File Services Consolidation
Dedicated
Server/Storage
Virtual Storage Partitions
Department A
Department B
Department C
Physical Storage System
CIFS & NFS
CIFS & NFS
CIFS & NFS
Virtual Storage Partitions Virtual Storage Partitions
© 2009 NetApp. All rights reserved. 14
MultiStore
Application Hosting
14Dedicated
Server/Storage
Virtual Storage Partitions
Customer A
Customer B
Customer C
Physical Storage System
Application A,B,C
Application D,E,F
Application G, H, J
Virtual Storage Partitions Virtual Storage Partitions
NetApp Data Motion™
Always-On Data Mobility
No planned downtime for
–
Storage capacity expansion
–
Scheduled maintenance outages
–
Technology refresh
–
Software Upgrades
Improved SLA flexibility
–
Dynamic load balancing
–
Adjustable storage tiers
Application transparency
–
Performance
–
Transaction integrity
Integration of MultiStore, SnapMirror
and Provisioning Manager
© 2009 NetApp. All rights reserved. 161616
Adding Mobility to Multi-Tenancy
Origin Storage System
Target Storage System
Virtual Storage
Partition
Customer B
Virtual Storage
Partition
Customer C
Data Data Data Data Data DataVirtual Storage
Partition
Customer A
Data Data DataPrimary Data Center
Automated Disaster Recovery
DR Site
DR Site
Affordable DR and business continuance
Centralized solution for local and distributed sites
Rapid recovery with minimal client impact using DR activate
© 2009 NetApp. All rights reserved. 18