Introducing Aduva OnStage Intelligent Linux Management Tony Tomarchio Product Support Engineer tony@aduva.com Agenda Aduva Linux Challenges Introducing OnStage OnStage Benefits Features & Architecture Case Studies Live Demonstration 2 Linux Challenges “75% of all server security breaches are the result of improperly configured or un-patched servers.” “80% of application and system downtime is the result of system misconfigurations and operator error.” Source: IDC Source: IDC Disaster Recovery Support Red Hat & SUSE Resolve RPM Dependencies Patch Servers View inventory Compare Systems Configure Systems Simulate Change Support Mainframe & Intel Delegate Responsibilities Obtain Patches Replicate Systems Rollback Manage Changes On-Demand Provisioning 3 Do you experience these Linux Management challenges ? Manage a large number of Linux images on mainframe Configuration compatibility Compliance due to latest security vulnerabilities Substantial Downtime while updating systems Version Consistency across multitudes of Servers Consistent deployments of IBM middleware (such as WAS, DB2, MQ etc.) and more on top of the Linux stack Provision new servers with wide varieties of configuration and application types Increase Linux Skills “on the Job” Vendor Lock In 4 Introducing Aduva Onstage to address these challenges Single console, Intuitive, easy to install… Manages heterogeneous Linux environments; – Mainframes and Distributed – SUSE and Red Hat for s/390 and zSeries – Under z/VM and/or on LPARs – Enabling mini disk sharing Manages Complex Configurations Automates the System Deployment– from Testing, thru Deployment to Production Instantaneous replication across all servers Manages rapid Changes to Linux based systems Ensures protection for Security and System vulnerabilities due to continuous Linux updates Aduva OnStage: Your VMSES/E, SMP/E for the Linux environment 5 What benefits can I expect? Faster Learning Rollouts Upgrades Better Security Integrity Manageability Utilization Cheaper Reduce system life-cycle costs Do more with less staff need less Linux Experts 6 The OnStage Difference Examples Activity Today OnStage Validate Obtain software and patches and validate RPM installation. Days < 6 hours Assess Identify patches required for 100+ servers and impact on systems. Hours 15 minutes Compare Compare inventory for 100+ systems against baseline. Hours Minutes Patch Apply a security fix to 100+ servers. 1 day 20 minutes Roll back security fix across 100+ servers. Hours 15 minutes Convert a server into a Web Server. Hours 15 minutes 2-5 hours 15 to 30 minutes Rollback Deploy Recover Restore server with pre-disaster inventory of components after disaster. 7 Introducing Aduva OnStage An Easy to Use Intelligent Management Platform to configure, deploy change and update IBM Mainframe Linux System environment. Controls Manages Configures OnStage ensures complete System / Security Compliance and Integrity for any IBM Mainframe Linux System stack. 8 How Aduva does it - Solution OnStage Automating Linux Management utilizing an Enhanced RPM Rules Knowledge Base Application Deployment Configuration Management Change Management Patch Control Universal Knowledgebase (UKB) Automated Lab – Tests & Enhance UKB Implementation Methodology & SLA 9 What Does OnStage Do? (Partial list) Automates the System Deployment and Management of Linux based systems and applications – from Testing, thru Deployment and Production for either Mainframe and or Distributed environments Eases the Complex Configuration and Change of Linux based system Allows for a single console management of heterogeneous Linux environments – both Mainframes and Distributed, Red Hat and SUSE etc. Proactively Ensures no Linux Security or System vulnerabilities due to missing updates or upgrades Learns, Compiles and Utilizes Customer Specific system environment dependencies Proactively Detects dependency conflicts, Analyzes sources of incompatibilities, Recommends and Resolves appropriate fixes and can automate resolution distribution across a whole topology of servers – WITH NO SYSTEM DOWNTIME 10 What can be accomplished with OnStage Shortens the Linux system management learning curve Enable a limited staff to scale their management of large numbers of servers Faster Linux system builds, tests and deployments Increased stability and security in deploying properly configured Linux systems Automated provisioning, replication and distribution of stable Linux environments Reduce Production Support downtime and breakage due to improperly implemented systems, updates and upgrades Resolves and updates with minimal downtime 11 Addressing the Deployment Weak Loop – Testing to Production System Build Problem 1 System Testing System Staging Production & Support System Deployment “80% of application and system downtime is the result of system mis-configurations and operator error.” Problem 2 Source: IDC Production Support; Changes & Update “75% of all server security breaches are the result of improperly configured or un-patched servers.” Source: IDC Solution OnStage automates and introduces adaptive intelligence to what is a predominant manual function today 12 What is unique about OnStage? Abstracts the Physical System Logic for reuse OnStage System Logic Layer Automates the Physical Deployment business process System Deployment Configuration Management Change Management Patch Control Creates a Complete System Dependency Knowledgebase - Detect dependency conflicts Analyze source of conflict Resolve conflict including software distribution fix DETECT ANALYZE RESOLVE Integrate Dependency Knowledge into where it provides intelligence to the Physical Deployment Business process An intuitive learning process for users to gain confidence 13 How Aduva works Parallel Architecture - intelligent host agents and a centralized management server Bi lateral interactions between Server and agents Incorporates a Knowledge base of generic Linux dependencies from Aduva Labs Automatically Builds customer specific dependencies rules on site Facilitates the Management activities of – Application deployment, – Configuration Management, – Change management and Patch Control Injects Dependency knowledge; – – – – Proactively Detects dependency conflicts, Analyzes sources of incompatibilities, Recommends and Resolves appropriate fixes Schedules automated resolution distribution 14 Knowledge Base Service Aduva Collection Rule Building Testing Aduva.com Standard Rule A AY4 1 X ? AY4 1 T4 A D1 D1 T4 D 1 1 Require A 1 D1 D1 X7 X1 X7 B3 F4 B1H4 F4 Knowledge Base (Enhanced Rules) ? Conflict X7 X1 X7 B3 F4 B1H4 F4 ` 1 1 Component Repository Enhanced Rule A 1 B 1-3 AY4 1 A 1 X1 Y4 B1 F 4 B2-6 D1 H4 M 1 T4 XAduva.com 7-9 Require Ignore T4 D1 D1 X7 X1 X7 B3 F4 B1H4 F4 Conflict Aduva creates Enhanced Dependency rules against the full family of RH and SuSE distributions and populates Aduva’s Public Servers for Generic dependency checks and recommended fixes 15 Aduva OnStage Knowledgebase SLA Security Patches – Within 6 Hours of Distributor Release Bug Fixes - Within 6 Hours of Distributor Release Linux Distribution Service Packs - Within 24 Hours of Distributor Release New Linux Distributions - Within 25 days of Distributor Release 16 Aduva OnStage Product OnStage Change Management Application Deployment Configuration Management Profiles Inventory Tracking Restrict or Lockdown Policies Security & Bug Check IBM middleware and 3rd Party or In-House Applications Configuration File Version Control Scheduled Actions Errata Notification Pre & Post Actions System Snapshot, Compare, & Replication Simulation Mode Automated Updates VM cloning System Restore Audit Trail & Access Control Rollback Component Repository AY4 A X7 X1 1 X7 1 D B 1 3 T4 D BHF4F Knowledge 1 14 4 base MF LPARS MF +z/VM Distributed Linux servers (Enhanced RPM Rules) Patch Control DETECT ANALYZE RESOLVE 17 Implementation Your Environment Aduva.com The Management Server and Central Console allows you to manage your entire Linux enterprise from a single location Proxy Copy Knowledge Base (Enhanced Rules) Internet Component Repository AY4 A D 1 T4 1 D1 1 B3 X7 X1 FX47 B1H4 F4 Knowledge Base (Enhanced Rules) Management Server Initiated Connection Component Repository AY4 X A X7XX17 X7 X1 AYD4 A B F7 1 1 1 T D 1 1 3B1344F4 F4 T4 41 D1 BH D1 B1H4 F4 OnStage System Dependency Server OnStage Console and CLI A proxy copy of the Knowledgebase & Verified Components are included with the installation at the your site 18 Implementation Your Environment Aduva.com Local Expansion Proxy Copy Knowledge Base (Enhanced Rules) Internet Local Knowledge Base Component Repository AY4 A D 1 T4 1 D1 1 3rd party apps In-house apps tar balls Config files Scripts, etc. Local Component Repository X7 X1 B3 FX47 B1H4 F4 Knowledge Base (Enhanced Rules) Management Server Initiated Connection Component Repository AY4 1 X7 A 1 T4 D1 B3 D1 OnStage System Dependency Server X1 X F47 B1H4 F4 OnStage Console and CLI We than extend the architecture to include the following: 1) In-House development 2) Configuration Files 3) Tar balls 4) Scripts 5) 3rd Party application 19 Implementation Your Environment Aduva.com Proxy Copy Knowledge Base (Enhanced Rules) Internet Component Repository AY4 A D 1 T4 1 D1 1 X7 X1 B3 FX47 B1H4 F4 Local Expansion Local Knowledge Base 3rd party apps In-house apps tar balls Config files Scripts, etc. Local Component Repository Knowledge Base (Enhanced Rules) Management Server Initiated Connection Component The next step is to deploy Repository the agents: AY1 4 -WorkXis X1 in parallel 7 done A1 X7 D B3 F4 computing T4 1 -A distributed D1 B1H4 F4 Model is used -Targets can be grouped, -Clients can belong to more than one group -Agent inventories stored Behind your firewall OnStage System Dependency Server TEST Mainframe Europe Mainframe OnStage Console and CLI USA Mainframe 20 Aduva’s Solution – business case Return on Investment Operational Impact Business Impact Productivity Cost TCO Revenues Scalability Efficiency Convenience Customers Bottom Line Increased Profitability Competitiveness Software: Onstage 2.2, Knowledgebase Services: Aduva Labs, Aduva Labs Automated UKBs Production Tools, Implementation services 21 Case Study Leading Book Store & Online Chain Overview Linux selected as the platform to host a new customer facing Web Services application with the application stack load balanced across Mainframe and distributed. IT challenges – – – – Maintain systems at required security patch levels Improve uniformity of application configurations Resources have limited Linux and Mainframe skills Manage both Mainframe and Intel The Aduva enabler – – – The IT benefits – – Manage Mainframe with SUSE distribution for web and database applications – Aduva KnowledgeBase provides automated updates and notifications Abstract application setup from underlying OS/HW Single tool for Mainframe/Distributed and Red Hat/SUSE Security patches applied uniformly and quickly Applications such as Oracle, configured uniformly across platforms Complexities to manage Linux reduced by providing level of abstraction above Mainframe / Distributed and Red Hat / SUSE The business outcome – – – – Minimize overhead of managing Linux Lowered the Linux learning curve for SAs Less downtime - servers are properly configured 22 Minimize time to adopt Linux Leading European Bank Overview Linux was selected as the enabler to move to a web-based architecture. The move is driven by the desire for a single customer view while reducing complexity and operating costs. – IT challenges – – – – Manage a cross architecture environment, Mainframe and distributed. Red Hat and SUSE. Automate the process to provision new servers Keep production environment up to date with all latest security vulnerabilities, and bug fixes while ensuring no downtime. Configuration and change management across all servers The Aduva Enabler – – – The IT benefits – – • Manage 100s of images on S390 in after a few weeks implementation Aduva KnowdlegeBase provides automated updates and notifications for Red Hat and SUSE Built-in security check and simulation to validate compliance Automate provisioning capabilities. Smooth Production roll out Provisioning of a new Linux machine in minutes Single solution for Red Hat and SUSE, Mainframe and distributed, Security patches applied uniformly across servers The business outcome – – – Improve manageability & efficiency Improved production roll out Decrease complexity 23 Aduva OnStage - Summary An Easy to Use Intelligent Management Platform to configure, deploy change and update IBM Mainframe Linux System environment. Controls Manages Configures OnStage ensures complete System / Security Compliance and Integrity for any IBM Mainframe Linux System stack. 24