The Future of IT - Securing, Enabling and Transforming the Enterprise
Bill Vass
Senior Vice President, Chief Information Officer Sun Microsystems, Inc.
Agenda
• Sun IT Scope • Sun Strategy • Industry Trends
> Utility, Grid, Mobility, Security, Virtualization > Disaster Preparedness – a global perspective
• Q&A
Sun Proprietary/Confidential: Internal Use Only
Sun IT: Scope & Scale
Support 170+ Countries
35,000 Employees 8,000+ Suppliers, Partners, Vendor Staff
27,000 SunRays
Centralized Infrastructure 1700 Data Center Servers 4 Million Internal Web Pages
6 Core Data Centers
600,000 Web hits/day
600+ TB of Data 7 Firewall Complexes
600 Applications
iForce Centers R&D Centers Manufacturing Plants Sales Locations Data Centers
Sun Proprietary
5 Million Emails per Day
3
Things to remember about Sun's strategy: Open Systems – We are the number 1 provider of Open Systems in volume, and EVERYTHING we do follows Open Standards. NO VENDOR LOCK-IN. Open Source – We are the number 1 contributor to the open source community in volume of code and products open sourced. We have sold more supported copies of Open Source software than ANY other vendor.
4
Sun Proprietary
Sun has a Three Chip Strategy:
x86 / x64
SPARC
CMT
Team
Team
The Power of 32 Xeon Servers on a chip – 9600watts vs. 52 watts
Three chips, Solaris on all of them
Chip Multi Threading
Sun Proprietary
5
Sun has a Three Operating System Strategy:
Linux
Solaris
Microsoft
Open Source Standards Based
Open Source Standards Based, Free RTU, Lower cost than Red Hat
x86/x64/SPARC
Sun Proprietary
Closed / Proprietary One Vendor Based
x86/x64/SPARC
x86/x64
6
Sun Client Strategy:
Ulta Thin Ulta Thick
PDA
Cell
J2ME/Java ES/CDS
Thick
Really Dumb
70%
28%
2%
Network Driver
Like a TV Set
Java Desktop - Open Source Microsoft Windows
7
Sun Proprietary
Really Smart
Work at Home or Office Connected to a Network
Mostly Connected
IT Industry Trends
Technology
Java Technology ● Significant Mobility ● Wireless ● Thin Clients ● Browser is the UI ● Portal is the entry point ● Auto-ID
● ●
Infrastructure
Data Center Virtualization ● Networked Storage ● Bandwidth Economics ● IP Telephony ● High Availability ● Security ● Business Continuity/DR
Extended Enterprise
Partner Integration ● Ebusiness ● Services vs. Servers ● Collaboration Tools
●
●
Applications
Application Consolidation ● Self-service Applications ● Knowledge Management ● Content Management ● Web Services
12/9/05
Page 8
High Bandwidth Is Taking Off
Worldwide Hotels Connected
Units in Millions
2.5 2.0 30 1.5 1.0 0.5 0.0 20 10
U.S. Cable & DSL High Speed
Year end in Millions of Subscribers
50 40
DSL
Cable
2002
2003
2004
2005
2006
2007
0
2001 2002 2003 2004 2005 2006 2007
Source: www.LeichtmanResearch.com
Source: In-Strat/MDR, 7/03
Worldwide WLAN Access Points
Shipments in Millions by IEEE Standard
35
Mobile Packet Data (Cell)
U.S. Subscribers in Millions
80
30
25 20 15 10 5 0
70
60 50 40 30 20 10 0
2000 2001 2002 2003 2004 2005 2006 2007
Source: IDC, 2003
Sun Proprietary
2002
2003
2004
2005
2006
Source: IDC, 2003
20079
CIO - Devices Increase, My Control Decreases
Network Devices # of Network Devices
$
My Budget
Controllable Network Devices
1997
2001
Sun Proprietary
2003
Time
10
My Boss Wants Me To...
• Reduce costs • Reduce complexity • Improve security, while increasing productivity • Compliance Business value – save money, more security, getting better information faster, more productivity
11
Sun Proprietary
The Context: All Industries Move to Utility Models
Price Ubiquity
$479/T1/Mos
Customize
Standardize
Sun Proprietary
Utilize
12
Sun Grid
Proposed Products
DEFINITION C ompute Utility Storage Utility Developer Utility Desktop Utility A pplication Utility
F virtualized CP memory and ully U, storage connected via a network.
TA G R ET
HP HP "Batch" C, TC, workloads
PR E IC
$1/ CP Hr U/
Application container "on demand" to provide stateless and statefull transaction substrates. A network centric integrated developer & test environment, build to advantage utility development and deployment patterns. Secure mobile session access, all clent data secured in the data center, but accessible over any network. Container supporting key Sun products including Sun J ava E nterprise Server products
ISV' s, Service Oriented Architectures
P Transaction or er P U + Subscription P
Community and E nterprise Application Development xSP Call Centers, , E ducation and E nterprise Compliance Initially support for developers & developer test, moving to stateless transactions
P Time/ seat + er Containers for infinite test
User Class/ Time
P Transaction or er P U + Subscription P
13
Sun Proprietary
ISP/ASP Service Delivery
• • • • • • • Great for Broad Band and ISPs / Telcos Ideal for Selling CPU/Storage Units “Nothing But Network” Offices Secure Mobility Network Based Replaces an IT organization with a service Massive consolidation results in the lowest possible service delivery cost
14
Sun Proprietary
JavaBadge
One, Multi-App Badge With a Future vs. Multiple Cards With No Future
Merging Physical Entry and Authentication/Access Badge Vastly Increases IP Protection
Corporate Card/ Physical Access Card
Sun RayTM Server Session Mobility Card
PKI Authentication Token Card/x509
=
15
Replaces Safeword Challenge/Response Card
ePurse/Payment Card
Sun Proprietary
Java Desktop System
● ● ● ●
GNOME Desktop StarOfficeTM Software Mozilla Evolution
●
Secure Mobile Access through VPN and Portal Environment Synchronization
●
●
Bundled Open Stack
16
Sun Proprietary
Mobility With Security Today at Sun
• • • • • • • • • • • 33, 000+ Sun Rays deployed at Sun 1 SA per 6000 clients – going 20K $ 2.8M Power Savings Zero Move/Add/Changes Patching and OS upgrade speed Zero annual desktop refresh costs $71 M Savings in Real Estate Software License Savings Secure: token authentication, no viruses Silent: no fans or moving part No User time for boot up and OS management
Sun Proprietary
=
Big Savings
17
“Nothing But Switch Gear” Offices
Hardened 24x7 Environment
Remote Storage Disks (SSP) providing "Data Tone"
Diskless Servers Provide End User Applications and Use Remote SSP for All Storage
Soft PBX Functions Supporting VoIP Call Routing and Provides Voice Messaging
Buildings with No Servers, No Voice Systems, and Only Redundant Network Gear Provide a HA Environment with No Onsite Maintenance Needed
Consolidation of Hundreds of Servers to Tens of Servers
VoIP Soft Phones and VTC on Sun Ray Servers Replace the Need for Standard Phones Convergence at the Sun Ray Server
Sun Proprietary
18
Mobility With Security Tomorrow at Sun
• Soft phone savings • Soft PBX ( today) • N1™/Grid on Sun Rays ( today) • Zero admin offices ( today) • Sun Ray at home ( today)
> > > > > >
No license costs No admin costs No lost data No sync file problems Secure connection with token Fast and simple
Sun Proprietary
=
Big Savings
19
N1 Utilization of Sun Ray Servers
User Starts Session on Home Sun Ray Server with Smart Card
20
Sun Proprietary
Voice Communications
Soft PBX
Messaging Convergence
“Follow-Me” Number Voicemail Routing Conference Calls Fax Routing Web Interface Email/Voicemail Integration
Voice Network
IP Network
Phone Number Follows JavaBadge
VoIP on Long Haul
Follow-Me Number Will Route to Cellphone
21
Sun Proprietary
Complete Centrally Managed End to End IT Service Delivery as a Utility – how does it work
22
Sun Proprietary
Stateless vs. Stateful
Example:
SMTP Front End ● Web Server ● Proxy Server ● WebCache Server ● Portal Server ● JES App Server ● SunRay Server ● LDAP Server
●
Example:
JES Mail ● JES Cal ● RDBMS ● COTS Apps
●
23
Sun Proprietary
Future Grid Service Delivery
Local Grid Controller N1 Managed Stateless Servers with Grid Engine
VPN Connections
Customer A Data Center
Internet
Local Grid Controller Telco provides CPU and Storage Units through Grid Software Customer B Data Center Servers shared by many customers.
Sun Proprietary
24
Future Full Service Delivery
Same Telco Backend can provide Desktop and other IT services to some customers and Grid CPUs to others N1 Managed Stateless Servers with Grid Engine
Internet
25
Sun Proprietary
Future Service Delivery
Simple and Rich PDA / Cell Clients
Office, Thin Clients
Home / Mobile
Internet
Wireless Thin and Thick
Phone Services
26
Sun Proprietary
Full Badge Based IT Service Delivery
Wired Thin Client Office
Home / Mobile Thin Client
Internet
Consumer ISP/ASP IT Provider
Wireless Thin Client Office
Sun Proprietary
Corporate ISP/ASP IT Provider
27
Full Badge Based IT Service Delivery
Wired Thin Client Office
Home / Mobile Thin Client
Internet
Consumer ISP/ASP IT Provider
The Same Device Provides a Secure Corporate and Consumer Desktop / IT Service Were Ever the User Connects
Wireless Thin Client Office
Sun Proprietary
Corporate ISP/ASP IT Provider
28
Web Services Architecture
Portal and Digital Identity
Digital ID
Service Registry (UBR)
Applications L oosely Coupled by Web Services
DW
All Applications' Services Are Ready to Be Used by Any Client That Has Access to the UBR
29
Sun Proprietary
Dynamic Portal Service Delivery
Full Feature Trusted with Token
XML UDDI Business Registry
UBR
View & Features Vary by Authentication, Role, and Device
Portal Service
Directory and Identity Service Service
Content Management, KM, DM, Channels
Sun Proprietary
Service
Service
Service
Legacy ERP
Application Service Communications / Messaging Operating Environment Sun Servers & Storage Java™ Enterprise System
30
Secure Access Anywhere – Any OS or Device
Unmanaged Client with Browser Sun Ray at Home
Unmanaged Client with Browser
Broadband
Managed Client with iWORK Toolkit
WAN Resources
Connect Dial Up and Broadband
Sun Proprietary
Portal
Managed Client with iWORK Toolkit
Dial up
31
IT Service Delivery
Thin
Corporate ISP/ASP IT Provider
Cycle Service Delivery
Thin
Grid Customer A Data Center
Consumer ISP/ASP IT Provider
Consumer ISP/ASP IT Provider Grid Customer B Data Center Thick
Simple and Rich PDA / Thick /Cell Clients
Corporate ISP/ASP Sun Proprietary IT Provider
32
“Day in the Life” Secure Session Access
33
Sun Proprietary
What If The “Big One” Hits California? Disaster Preparedness & Business Continuity
Business Continuity
Planning
>
Disaster
Recovery
>
IT Resumption
Business Continuity Planning (BCP) means proactively
identifying current and relevant business risks and threats to a business operation and maintaining and implementing related cost effective recovery plans.
Disaster Recovery Plans (DR) are a sub-set of BCP
instantiating specific preventive architectures, emergency processes, and other rules to recover/restore a business or IT service for a specific context.
IT Resumption Planning follows the business priorities and goals
in a company’s BCP and DR plans, and includes both proactive steps to anticipate events, and specific IT plans to recover and restore services.
34
Sun Proprietary
Disaster Recovery
US Datacenter 1 (Broomfield)
Securit y
Infrastructure DR
Application Client Network Server Storage Physica l Partne r
EMEA Datacenter 1
Grid Grid
Local EMEA DR
Grid Grid
Virtual datacenter APAC Datacenter 1 Local APAC DR 35
Sun Proprietary
US Datacenter 2 (Charlotte)
DR Storage Architecture
36
Sun Proprietary
From natural to legal disasters: IT is now more than ever about “controls”
IT General Controls 1.IT Policy Compliance 2.Applications Development 3.Application Support 4.Data Center Support 5.Security 6.Change Management 7.Environmental Controls 8.Identity & Access Mgmt (IAM) Application Controls 1.System Access 2.Segregation of Duties 3.Authorization 4.Configuration & Acct. Mgmt. 5.Interfaces & Conversions 6.Exception Reporting
More than 1,100 General Controls Tested ➢ 80+ Core SOX Applications ➢ 1,500+ Applications Controls Tested A portal oriented, secure, JavaBadge enabled infrastructure has been essential to comply with SOX cost-effectively! 37
➢
Sun Proprietary
Summary
• Open Systems, Open Source – but can deliver Windows • Same infrastructure provides both Grid CPUs or Complete IT service • Complete IT service delivery: > Client, desktop, Voice, Video > Desktop software and productivity tools > All JES servers plus ERP delivered to every device via Portal > Both thick and thin clients • Plays to Sun's and Telcos' expertise • Stateless N1 Grid management • Complete “IT in a Box”, secure, compliant services as utility on demand • Access from anyplace the wireless or wired Internet can be accessed • All IT services on the Edge and with Disaster Recovery built-in • Very secure, one size doesn't fit all, token based, virus free
38
Sun Proprietary
The Future of IT - Securing, Enabling and Transforming the Enterprise
Bill Vass
Senior Vice President, Chief Information Officer Sun Microsystems, Inc.