Simplify hybrid data integration at an enterprise scale. Integrate all your data with Azure Data Factory, a fully managed, serverless data integration service.
varanasisatyanvesh
52 views
87 slides
May 10, 2024
Slide 1 of 87
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
About This Presentation
worth studying
Size: 6.13 MB
Language: en
Added: May 10, 2024
Slides: 87 pages
Slide Content
Extend your datacenter with Microsoft Azure Tomáš „Kanty“ Kantůrek [email protected]
Modules Base Modules Why Care about Microsoft Azure Getting Started with IaaS Getting Started with IaaS Workloads Getting Started with IaaS Networking Getting Started with Azure Storage Expansion Modules Hybrid cloud with Microsoft Azure
Resources Aka.ms/Azure-CZ 3
Module 1 A lap around Microsoft Azure for an Infrastructure Professional
Cloud Computing Patterns t Compute Inactivity Period t t t On and Off On & off workloads (e.g. batch job) Over provisioned capacity is wasted Time to market can be cumbersome Unpredictable Bursting Unexpected/unplanned peak in demand Sudden spike impacts performance Can’t over provision for extreme cases Compute Growing Fast Successful services needs to grow/scale Keeping up w/ growth is big IT challenge Cannot provision hardware fast enough Compute Predictable Bursting Services with micro seasonality trends Peaks due to periodic increased demand IT complexity and wasted capacity Compute
Cloud Computing Packaged Software Storage Servers Networking O/S Middleware Virtualization Data Applications Runtime You manage Infrastructure (as a Service) Storage Servers Networking O/S Middleware Virtualization Data Applications Runtime Managed by vendor You manage Platform (as a Service) Managed by vendor You manage Storage Servers Networking O/S Middleware Virtualization Applications Runtime Data Software (as a Service) Managed by vendor Storage Servers O/S Middleware Virtualization Applications Runtime Data Networking
Cloud innovation presents challenges for IT What about security and compliance? How do I integrate with my existing IT investments? What about my heterogeneous, complex IT landscape?
Think AND not OR On-premises Cloud Enterprise needs Microsoft Azure fundamentals On-premises AND Cloud Integration Identity Virtualization Data Platform Development DevOps and mgmt
Global Presence and Scale North America Region Europe Region Asia Pacific Area N. Central – U.S. Sub-Region S.E. Asia Sub-Region E. Asia Sub-Region N. Europe Sub-Region W. Europe Sub-Region S. Central – U.S. Sub-Region East – U.S. Sub-Region West – U.S. Sub-Region East Japan Sub-Region Southeast Australia Sub-Region West Japan Sub-Region East Australia Sub-Region E. China (via 21Vianet) Sub-Region NE. China (via 21Vianet) Sub-Region Major datacenter CDN node Live sub-region Announced sub-region Partner-operated sub-region 24 x 7 x 365 support. 89 markets worldwide. 2x Compute and storage every six months. LATAM Sub-Region
Azure Building Blocks
Scenarios Scenarios to get started with Microsoft Azure Store, backup, recover your data Extend your infrastructure Develop, test, run your apps Reach where your datacenter won’t
Module 2 Getting Started with IaaS
IaaS Terminology IaaS – Infrastructure as a service – You have control over your VMs and the network configuration, but don’t have to worry about hardware. Cloud Service (in this context) – A container or management grouping. Every virtual machine is contained within a cloud service. Microsoft Azure Virtual Machines – IaaS . You can provision, migrate, and manage VMs. VMs can run Windows, Linux, and enterprise applications. Microsoft Azure Virtual Network – The networking overlay that allows you to create and manage virtual networks in Microsoft Azure and securely connect them to your own on-premises network.
Virtual Network Scalable, on-demand infrastructure for your apps and VMs Apps with public web front ends, variable traffic sitting in demilitarized zone Existing custom apps, specialty servers with batch processing patterns No app changes – same VHD format Manage with tools you know On-premises Windows Azure Business Users Internet Virtual Machines Business Users Business Application Windows Server Active Directory SQL Server Windows Server Windows Server Active Directory System Center Operations Manager Virtual Machines
Sample Images Available Microsoft Windows Server 2012 R2 Windows Server 2012 Windows Server 2008 R2 SQL Server 2012 SQL Server 2014 BizTalk Server 2013 SharePoint 2013 Visual Studio 2013 Open Source OpenSUSE 12.3 CentOS 6.3 Ubuntu 12.04/12.10/13.04 SUSE Linux Enterprise Server 11 SP3 Enterprise or Standard versions of Web Logic Server 12c or 11g Database 12c or 11g Oracle
IaaS Management Windows Azure PowerShell Set of cmdlets for managing all objects PowerShell remoting to manage hosted VM’s with local PowerShell or PowerShell ISE. Server Manager (hosted in VM or local) VPN connections to hosted networks RDP to VM desktop Telnet or SSH (Linux) Platform specific tools (SQL Management Studio/Visual Studio) 3 rd Party/Community Tools
Module 3 Getting started with Workloads
Microsoft Azure Data Management RELATIONAL NON-RELATIONAL Tables Blob Storage A NoSQL key/value store that provides simple access to semi-structured data at a lower cost for applications that do not need robust querying capabilities A cloud storage service offering the simplest way to store large amounts of unstructured text or binary data, such as video, audio and images, and for creating virtual hard drives in the cloud. 0100110100101010100101000111010100100101 SQL Server in a VM SQL Database A full-featured instance of SQL Server running in a Windows Azure Virtual Machine for quickly and easily running or testing SQL Server applications in the cloud A feature-rich, fully managed relational database service that offers a highly productive experience with business-ready capabilities built on SQL Server technology A Big Data implementation 100% compatible with Apache Hadoop . HDInsight Best for existing and new applications needing full SQL Server feature set Best for new cloud applications needing relational capabilities and high availability Best for inexpensive, scalable storage of semi-structured data Best for Big Data Analytics across semi-structured and unstructured data Best for inexpensive, scalable storage of data
Microsoft SQL Azure Low TCO for Existing Apps No App Changes Required Familiar Development tools Library of VM Templates Flexibility & Control Full Control of Virtual Machine Common Identity (Active Directory Integration) Managed Infrastructure Fully Managed Infrastructure 99.95% SLA for Virtual Machine Single Pane of Glass to Manage with System Center 2012 Full SQL Server Capability High Availability of Database with AlwaysOn Availability Groups Advanced Security (Transparent data encryption & auditing) Full Business Intelligence Functionality
Service Provisioning Model Each account has zero or more servers Azure wide, provisioned in a common portal Billing instrument Each server has one or more databases Contains metadata about the databases and usage Unit of authentication Unit of Geo-location Generated DNS based name Each database has standard SQL objects Unit of consistency Unit of multi-tenancy Contains Users, Tables, Views, Indices, etc. Most granular unit of billing Account Server Database
Why use Microsoft Azure w eb sites Ready for business. Web scale, world wide. Best Visual Studio experience. Faster to market. Open and flexible.
Shared instances :-) 1 RESERVED instance :-) :-) standard Web sites
2 RESERVED instance :-) RESERVED instance :-) standard Web sites
2 RESERVED instance :-) RESERVED instance :-) :-) :-) :-) :-) :-) :-) Standard Web sites
Standard instance :-) cpu utilization auto-scaling Standard instance :-) Standard instance :-)
What is Azure Active Directory? A comprehensive identity and access management cloud solution. It combines directory services, advanced identity governance, application access management and a rich standards-based platform for developers Azure Active Directory Premium is an advanced offering that includes IAM capabilities for on-premises, hybrid and cloud environments
Public Identity as the control point PCs and devices Microsoft apps Non-MS cloud-based apps Custom LOB apps ISV/CSV apps Active Directory Other Directories Active Directory
Built on top of the free offering, provides a robust set of capabilities to empower enterprises with demanding needs on identity and access management Additionally, Azure AD premium offers: An Enterprise SLA of 99.9% Usage rights to Identity Manager Server and CALs Azure Active Directory Premium
Common Identity with Sync and Federation User attributes are synchronized including the password hash, Authentication can be completed against either Azure or Windows Server Active Directory Identity Sync AD FS Active Directory Identity Sync with password hash sync User attributes are synchronized, Authentication is passed back through federation and completed against Windows Server Active Directory Active Directory Synchronization Federation AD FS provides conditional access to resources, Work Place Join for device registration and integrated Multi-Factor Authentication Write back of attributes to support cloud first and co-existence Active Directory Active Directory
Direct to cloud identity sync Azure Active Directory Sync provides the ability to sync disparate on-premises identity repositories directly to Azure Active Directory Active Directory Active Directory LDAP v3 PowerShell SQL (ODBC) Web Services (SOAP, JAVA, REST)
Identity Federation Active Directory Web Application Proxy (includes AD FS Proxy) Conditional access with multi-factor authentication is provided on a per-application basis, leveraging user identity, device registration & network location Organizations can federate with partners and other organizations for seamless access to shared resources Organizations can connect to SaaS applications running in Azure, Office 365 and 3 rd party providers Enhancements to AD FS include simplified deployment and management Active Directory Federation Services Active Directory Federation Services Published applications Restful OAuth apps Office Forms Based Access Claims & Kerberos web apps Resources in other businesses or identity realms SaaS Apps Active Directory
Module 4 Getting Started with Azure Networking
Microsoft Azure Virtual Network Your “virtual” branch office/ datacenter in the cloud Extend your Enterprise Networks into Azure networking on-ramp for migrating existing apps and services to Windows Azure Enables “hybrid” apps that span cloud and their premises A protected private virtual network in the cloud Set up secure private IPv4 networks fully contained within Windows Azure IP address persistence Inter-service DIP-to-DIP communication Windows Azure VM 1 VM 2 ROLE 1 Subnet 2 Subnet 1
DIPS and VIPS There are multiple ways to access a VM by IP address VIP – Virtual IP address An internet-facing IP address that is not bound to a specific computer or network interface card. The cloud service that the VM sits within is assigned the VIP. You can have multiple VMs in a cloud service. They share the same VIP. DIP – Dynamic IP address This IP address is dynamically assigned (via DHCP) to your virtual machine by Windows Azure. You rely on DHCP – Do NOT statically configure your IP address. Even for DCs. The IP address lease directly equates to the lifetime of the VM. If you create a virtual network, the VM will receive its DIP from that range.
IP Addresses Cloud Service VIP- 137.135.64.110 Virtual Machine DIP-192.168.1.7 Virtual Machine DIP-192.168.1.15 VM1 VM2
Port Forwarding Input Endpoints VM2 LB/IP VM1 PORT 3389 PORT 5586 PORT 5587 Single Public IP Per Cloud Service Cloud App / Hosted Service Endpoint Public Port Local Port Protocol (TCP/UDP) Name PORT 3389
Connectivity in Azure LB VIP : Input Endpoint Internal Endpoint Load balanced endpoint. Stable VIP per cloud service . Single port per endpoint Supported protocols: HTTP, HTTPS, TCP Input Endpoint Instance-to-instance communication Supported Protocols: TCP, UDP Port ranges supported Communication boundary = Deployment boundary Internal Endpoint foo.cloudapp.net VIP
Connectivity in Azure LB Internal Endpoints
DNS Scenarios Windows Azure DNS Scenarios Use y our own DNS Scenarios A . Client-server applications using VMs B . Hybrid connectivity with on-premise (DNS on-premise) C . SharePoint with custom DNS (VM ) VM SQL Reporting Service VM SQL Analysis Service VM SQL Service On-Premises Machine Active Directory Active Directory SQL Service Domain joined to On-Premises Network On-Premises Machine Business Components & Entities On-Premises Machine UI Process Components Web Tier Active Directory Internet VM Role SharePoint FrontEnd VM Role SharePoint FrontEnd VM Role Search and Indes SQL Service VM Role DC DNS VM Role VM Role SQL VM Role SQL Local DNS SQL Mirroring LB Open User Access (Website)
Virtual Network Scenarios Hybrid Public/Private Cloud Enterprise app in Windows Azure requiring connectivity to on-premise resources Enterprise Identity and Access Control Manage identity and access control with on-premise resources (on-premises Active Directory) Monitoring and Management Remote monitoring and trouble-shooting of resources running in Windows Azure Advanced Connectivity Requirements Cloud deployments requiring IP addresses and direct connectivity across services
The “virtual” branch office The Branch Office The Corp. HQ IIS Servers AD / DNS SQL Servers Exchange The Virtual Network in Windows Azure S2S VPN Device S2S VPN Device S2S VPN tunnel BRK Gateway S2S VPN tunnel
Example: Contoso’s Deployment The Corp. HQ (10.0.0.0/16) Contoso Test in Windows Azure (10.2.0.0/16) Contoso Production VNet in Windows Azure (10.1.0.0/16) S2S VPN Device IIS Servers AD / DNS SQL Farm Exchange BRK Gateway S2S VPN tunnels 10.0.0.10 10.0.0.11 131.57.23.120 10.2.2.0/24 10.2.3.0/24 10.2.2.0/24 10.2.3.0/24 65.52.249.22 10.1.0.4 10.1.1.4
Module 5 Getting started with Storage
Windows Azure Storage Storage in the Cloud Scalable, durable, and available Anywhere at anytime access Only pay for what the service uses Exposed via RESTful Web Services Use from Windows Azure Compute Use from anywhere on the internet
Microsoft Azure Storage Account Can CDN Enable Account Blobs delivered via 24 global CDN nodes Can co-locate storage account with compute account Explicitly or using affinity groups Accounts have two independent 512 bit shared secret keys 5 00 TBs per account
Storage Security Windows Azure Storage provides simple security for calls to storage service HTTPS endpoint Digitally sign requests for privileged operations Two 512bit symmetric keys per storage account Can be regenerated independently More granular security via Shared Access Signatures
Windows Azure Storage Abstractions Tables Structured storage. A table is a set of entities; an entity is a set of properties. Queues Reliable storage and delivery of messages for an application. Blobs Simple named files along with metadata for the file. Drives Durable NTFS volumes for Windows Azure applications to use. Based on Blobs.
Microsoft Azure Drives Durable NTFS volume for Microsoft Azure Instances Use existing NTFS APIs to access a network attached durable drive Use System.IO from .NET Benefits Move existing apps using NTFS more easily to the cloud Durability and survival of data on instance recycle Drives can be up to 1TB A Microsoft Azure Drive is an NTFS VHD Page Blob Mounts Page Blob over the network as an NTFS drive Local cache on instance for read operations All flushed and unbuffered writes to drive are made durable to the Page Blob
Microsoft Azure Drive Capabilities An instance can dynamically mount up to 16 drives Remote Access via standard BlobUI Can’t remotely mount drive Can upload the VHD to a Page Blob using the blob interface, and then mount it as a Drive Can download the VHD to a local file and mount locally Only one instance at a time for read/write Using read-only snapshots to multiple instances at once
Uploading VHD’s Three steps Create VHD (Not VHDX) locally, sysprep if OS image. Add- AzureVHD Upload VHD file to blob storage Add- AzureDisk Register VHD as disk image, available to attach to VM. Add- AzureVMImage Adds VHD containing sysprepped image to the image repository
Managing Storage Storage managed through many third party tools http:// blogs.msdn.com/b/windowsazurestorage/archive/2014/03/11/windows-azure-storage-explorers-2014.aspx Storage explorers require the Azure storage key
Module 6 Hybrid cloud with Microsoft Azure
Virtual Network Features Customer-managed private virtual networks within Windows Azure “Bring your own IPv4 addresses” Control over placement of Windows Azure Roles within the network Stable IPv4 addresses for VMs Hosted VPN Gateway enables site-to-site connectivity Automated provisioning & management Support existing on-premises VPN devices Use on-premise DNS servers for name resolution Enables customers to use their on-premise DNS servers for name resolution Enables VMs running in Windows Azure to be joined to corporate domains running on-premise (use your on-premise Active Directory)
Local Network An IP address range which represents the IP subnets on your local networks, used to build routing tables.
VPN Configuration Azure provides gateway and configuration script Run configuration script on local device RRAS, Cisco, or Juniper devices RRAS a s a Powershell script. Connection uses L2TP with shared secret authentication Manage shared secret in Microsoft Azure.
Example Deployment The Corp. HQ (10.0.0.0/16) Contoso Test in Windows Azure (10.2.0.0/16) Contoso Production VNet in Windows Azure (10.1.0.0/16) S2S VPN Device IIS Servers AD / DNS SQL Farm Exchange BRK Gateway S2S VPN tunnels 10.0.0.10 10.0.0.11 131.57.23.120 10.2.2.0/24 10.2.3.0/24 10.2.2.0/24 10.2.3.0/24 65.52.249.22 10.1.0.4 10.1.1.4
Multiple VPNs and Hybrid Site to Site Multiple Site to Site VPNs to a single V-Net is now supported. http ://msdn.microsoft.com/en-us/library/azure/dn690124.aspx
Public Identity as the control point PCs and devices Microsoft apps Non-MS cloud-based apps Custom LOB apps ISV/CSV apps Active Directory Other Directories Active Directory
Introducing Windows Azure Backup Simple and reliable server backup to the cloud Offsite data protection in Windows Azure storage . Data is encrypted and secure . Efficient use of network and storage resources . Enhances Microsoft backup tools with cloud backup capabilities .
SQL Server Management Studio Reliable off-site data backup for SQL images Easily restore databases using VMs Benefits Store, backup, recover Direct URL backup to Azure Storage Restore in Azure Virtual Machine Microsoft SQL Server Backup and restore database to the cloud
Backup datacenter data to Windows using System Center Data Protection Manager Backup and recover files/folders from Windows Server 2012 SP1 / R2 Microsoft Azure Backup Store, backup, recover your data Benefits Reliable offsite data protection Simple, familiar, integrated Efficient backup and recovery Easy set up Windows Server 2012 R2 Windows Server 2012 Windows Server 2012 Essentials Windows Server 2008 R2 (SP1) System Center 2012 DPM SP1 / R2 Your On-Premises Datacenter
4. Back up encrypted data 2. Install agent 1. Sign up Window Server 2012 3. Register and configure 5. Recover to the same or a different server ` Small business or branch office How Windows Azure Backup works
4. Back up encrypted data 2. Install agent 1. Sign up 3. Register and configure 5. Recover to the same or a different server How Windows Azure Backup works Enterprises with System Center System Center DPM Server
StorSimple
iSCSI SAN (over IP) Internet connection Block-based storage Object storage Application or File servers MGMT DATA StorSimple CiS SSD SAS Physical servers Hyper-V or VMware Periodic data access Moderate latency and good throughout Larger capacity tier (on-premise) High frequency data access Low latency, high throughput Smallest capacity tier (on-premise) Rare data access High latency and low throughput Largest capacity ON PREMISES DATA CENTER PUBLIC CLOUD Hybrid Cloud Storage Architecture
Automated tiering SSD Application or File servers SAS Linear Data Deduplicated Data Deduplicated & compressed Data Deduplicated, compressed, & Encrypted Data The oldest block in the tier is the first to move to the next tier
Once Hyper-V Replica is enabled, VMs begin replication Affordable in-box business continuity and disaster recovery Configurable replication frequencies of 30 seconds, 5 minutes and 15 minutes Secure replication across network Agnostic of hardware on either site No need for other virtual machine replication technologies Automatic handling of live migration Simpler configuration and management Replicate Hyper‑V VMs from a Primary to a Replica site Hyper‑V Replica Primary Site Secondary Site Initial Replica Once replicated, changes replicated on chosen frequency Replicated Changes Upon site failure, VMs can be started on secondary site CSV on Block Storage SMB Share File Based Storage DATA PROTECTION
Replication configured from primary to secondary Hyper-V Replica | Extended Replication Once a VM has been successfully replicated to the replica site, replica can be replicated to a 3 rd location Chained Replication Extended Replica contents match the original replication contents Extended Replica replication frequencies can differ from original replica Useful for scenarios such as SMB -> Service Provider -> Service Provider DR Site Replicate to 3rd Location for Extra Level of Resiliency DR Site DAS Storage Replication can be enabled on the 1 st replica to a 3 rd site Replication DATA PROTECTION
Introducing Windows Azure Site Recovery Protects vital workloads running in your private cloud by replicating virtual machines to a secondary site Monitors the health of System Center Virtual Machine Manager clouds Orchestrates the quick recovery of virtual machines at your secondary site Automates replication protection with in-box technologies and cloud-based recovery plans
How it works: configure Sign up Create a recovery plan Site A System Center Virtual Machine Manager AD SQL Exch System Center Virtual Machine Manager Site B
How it works: create recovery plan Hyper-V Replica replicates virtual machines Health monitoring Create a recovery plan Create recovery plan Site A System Center Virtual Machine Manager AD SQL Exch Configure System Center Virtual Machine Manager Site B
How it works : recover from datacenter failure Create a recovery plan System Center Virtual Machine Manager Site B Create recovery plan Orchestrates recovery of services in the event of an outage AD SQL Exch Microsoft Azure
Notifications via Exchange Integration across the infrastructure Operations Manager Configuration Manager Active Directory Virtual Machine Manager Microsoft Exchange (Admin + User) Third-party Management Tools Inbound to System Center Bi-directional from Orchestrator Bi-directional for notifications/reporting Bi-directional Runbook integration Bi-directional connector for automation activities and executing automation workflows Configuration items and automation data populated into CMDB Automation commands issued to System Center, third-party tools, Microsoft Exchange and Azure Inbound and outbound notifications and Business Intelligence BI through Reporting and Dashboards Azure Cloud Management Orchestrator Service Manager Runbooks Centralized CMDB Service Manager Data Warehouse
System Center App Controller Flexible delegation with single sign-on Self-service visibility for application services across on-premises, service provider, and Windows Azure Easy VM and workload portability from on-premises to Windows Azure (including SharePoint and SQL)
Storage Compute Network Comprehensive System Center Monitoring Storage Compute Windows Azure VMware vSphere monitoring with VEEAM Management Pack Expanded cloud infrastructure health visualization with integration between VMM & Operations Manager components Native SNMP-based network monitoring Cloud-integrated monitoring Integrated System Center Advisor views with Operations Manager connector Windows Server 2012 VMware vSphere Availability and performance monitoring for Windows Azure Virtual Machines & Windows Azure Storage Deep infrastructure and workload insight
Operations Manager & Azure System Center Operations Manager + Management Pack for Windows Azure PaaS Monitoring is agentless, use normal API and diagnostics for monitoring (and uses certificate for authentication) IaaS Treat as normal server, including using a SCOM agent Global Service Monitor
Azure-integrated insight with Global Service Monitor (GSM) Operations manager Production application Microsoft Visual Studio 2012 Global Service Monitor (running in Azure) ! Customer datacenter
Extreme automation to manage the Cloud Workflows Service Offerings Catalog Work Items Knowledge Templates Configuration Items CMDB Knowledge base Data warehouse Service Manager Runbooks PowerShell Orchestrator App Controller SM Portal Application Owner Tenant Admin Systems Center Components External Cloud Azure Integration Pack Manual and repetitive processes automated by the power of runbooks and PowerShell, using information stored in the centralized CMDB
Service Provider Microsoft Cloud Private Cloud Out-of-the-box All Systems Center Components Active Directory Exchange (User and Admin) IBM Tivoli Netcool/Omnibus HP (OM, SM, iLO) Windows Azure SharePoint FTP VMware vSphere Orchestrator integration enables Microsoft and third-party platforms to coordinate and use operational data in the infrastructure across varying cloud scenarios (on-premises, Microsoft cloud and service provider clouds) Integration Packs for automation across clouds Out-of-the-box All Systems Center Components Active Directory Exchange (User and Admin) IBM Tivoli Netcool/Omnibus HP (OM, SM, iLO) Windows Azure SharePoint FTP VMware vSphere Orchestrator integration enables Microsoft and third-party platforms to coordinate and use operational data in the infrastructure across varying cloud scenarios (on-premises, Microsoft cloud and service provider clouds) New capabilities in R2 Partner enabled IP’s BMC Dell - AIM NetApp - OCPM Cisco UCS NCM JaxMP/Frysoft Vision Solutions - DoubleTake Kelverion ServiceNow Data Manipulation HTTP Applications Infront Consulting Group Sagent FrontRange HEAT Tectia SFTP with Certificates
Lower costs and improve predictability Automation Enable service owners to focus on work that adds business value Reduce error-prone manual activities while lowering costs Azure automation Optimize and extend existing investments Integration Integrate into existing systems with PowerShell integration modules Build additional PS modules to enable integrating into other systems Deliver flexible and reliable services Orchestration Accelerate time to value with flexible process workflows Improve service reliability across multiple tools, systems, and department silos
Azure Automation Capabilities Azure Monitoring Systems Change Control Systems Anything Runbook Authoring in Azure: Create runbooks to automate all aspects of cloud operations, from deployment, monitoring, and optimizations Highly Available Engine: Support requirements for scale and H/A. Built on PowerShell Workflow. Isolation for runbook jobs Integration into other systems: Import PS modules and create additional modules and runbooks for Azure services or to connect into 3 rd party systems Automation Backup SQL Azure on a schedule Staged deployment of a service Remediate alert on a service Patch Azure VMs without downtime
Azure Automation Scenarios Patch Azure IaaS VMs without downtime, leveraging Traffic manager. Enable regeneration of storage account keys while avoiding downtime in the application. SQL Backup on a schedule. Backup and restore IaaS VMs. Deploy a VM on an Azure / On-Premise cloud and enable monitoring for the VM. Deploy a new service to Azure and configure the end points for CPU and Memory alerts. Deploy application from Git , run validation tests, and swap to production if tests pass. Monitor SharePoint online for an approval to update a service and update the service once approved. Alert on a VM then turn on tracing, collect logs, upload to Azure Storage and make available in Visual Studio for troubleshooting. Monitor for when a new service gets created, and configure it for the right tracing / backup policy. Notify users of a subscription who have underutilized VMs and perform remediation. Patch / Update / Backup Orchestration Change Control & Provisioning Monitoring & Remediation
If you think you will do a task twice – automate it!