SlideShare a Scribd company logo
© 2018 Tigera, Inc.
STATE OF CLOUD AND
APPLICATION
CONNECTIVITY
Andy Randall
VP Partners & Customer Success
Tigera
@andrew_randall
March 2018
© 2017 Tigera, Inc.
2
TRENDS IN
ENTERPRISE CLOUD
ADOPTION
© 2017 Tigera, Inc.
EVERYONE* IS NOW USING CLOUD
3* Well, 96% anyway Source: RightScale 2018 State of the Cloud Report
© 2017 Tigera, Inc.
… WITH MULTI-CLOUD THE DOMINANT STRATEGY
4Source: RightScale 2018 State of the Cloud Report
© 2017 Tigera, Inc.
PUBLIC CLOUD IS BECOMING “CENTRAL IT”, NO
LONGER “SHADOW IT”
5Source: RightScale 2018 State of the Cloud Report
© 2017 Tigera, Inc.
BUT SECURITY REMAINS THE #1 CONCERN
6Source: Zetta, Cloud Adoption in 2017
© 2017 Tigera, Inc.
… ALONG WITH MANAGING COSTS, RESOURCES /
EXPERTISE AND COMPLIANCE
7
© 2017 Tigera, Inc.
ORGANIZATIONS ARE ADDRESSING THE EXPERTISE
ISSUE WITH CENTRAL CLOUD TEAMS
8
© 2017 Tigera, Inc.
9
ENTERPRISE
APPLICATION
DEVELOPMENT
TRENDS
© 2017 Tigera, Inc.
FROM MONOLITHIC APP ARCHITECTURES
10
© 2017 Tigera, Inc.
… TO MICROSERVICES
11
© 2017 Tigera, Inc.
MICROSERVICES NATIVE PACKAGING IS
INCREASINGLY AS (DOCKER) CONTAINERS
12
Source: Nanobox
© 2017 Tigera, Inc.
NOW YOU NEED...
13
> Service Discovery
> Load Balancing
> Secrets/configuration/storage management
> Health checks
> Auto-[scaling/restart/healing] of containers and
nodes
> Zero-downtime deploys
© 2017 Tigera, Inc.
… WHICH MEANS CONTAINER ORCHESTRATION
14
© 2017 Tigera, Inc.
15
“today’s de facto standard container
scheduling and orchestration
framework”
- Enterprise Management Associates, March 2018
© 2017 Tigera, Inc.
16
Source: CNCF
© 2017 Tigera, Inc.
17
© 2017 Tigera, Inc.
TOP 6 BENEFITS OF MICROSERVICES
18
> Continuous integration / deployment (CI/CD)
> Easier debugging and maintenance
> Higher development productivity
> Agility
> Faster time to market
> Improved scalability
Source: Red Hat 2018 Microservices Survey
Conducted by TechValidate, Nov. 2017
© 2017 Tigera, Inc.
CI/CD
19
© 2017 Tigera, Inc.
ELASTIC CLOUD
INFRASTRUCTURE +
NEW APPLICATION
DEVELOPMENT AND
DEPLOYMENT MODEL
= CLOUD NATIVE
“CLOUD NATIVE”
Microservices
Elastic cloud
infrastructure
Containers
Dynamic
orchestration
20
© 2017 Tigera, Inc. | Proprietary and Confidential
IMPLICATIONS FOR CLOUD-NATIVE APPLICATION
INFRASTRUCTURE
900x
start time
10x
workloads
25x shorter
lifetime
250x
churn
10x
attack surface
area
21
© 2018 Tigera, Inc. | Proprietary and Confidential
22
EVOLUTION OF
APPLICATION
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
23
VM’s
Host
Instances
VM’s
VM’sVM’s
VM’s
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
24
VM’s
Host
Instances
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
25
VM’s
Host
Instances
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
26
VM’s
Host
Instances
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
27
VM’s
Host
Instances
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
28
VM’s
Host
Instances
NETWORK CONNECTIVITY
INFRASTRUCTURE
APP CONNECTIVITY
INFRASTRUCTURE
© 2017 Tigera, Inc.
APP
CONNECTIVITY
LANDSCAPE
29
VM’s
Host
Instances
APP CONNECTIVITY INFRASTRUCTURE
NETWORK CONNECTIVITY
INFRASTRUCTURE
© 2018 Tigera, Inc.© 2017 Tigera, Inc.
SECURE APPLICATION CONNECTIVITY
M
ulti-cloud
and
legacy
Zero
trust
Enterprise
control and
com
pliance
O
perationally
sim
ple
Secure
Application
Connectivity
© 2017 Tigera, Inc.
© 2017 Tigera, Inc. | Proprietary and Confidential
© 2018 Tigera, Inc.
TIGERA CNX
ARCHITECTURE
Containers Virtual Machines Standalone Host
Host kernel Hypervisor Host kernel
Distributed key/value store
L3-4 policy enforcement
Service mesh router
Dev/Ops IT Ops Security
Control plane agent
RBAC
&
Auditing
CLI GUI API
Aggregated
Telemetry
L3-7 policies
Workload and
host inventory
Certificate
policies
L3-7 Policy Rendering
Certificate Management
Routing
IP forwarding
L3/4 Policy Enforcement
L5-7 Policy Enforcement
Service Mesh Proxy
Telemetry Generation
Encryption
Enterprise
Directory
Control Plane
Management Plane
Data Plane
k:v k:v
k:vk:v
k:v
Public Cloud NetworkData Center Network
Orchestrator

More Related Content

PPTX
How to Consolidate in Order to Increase Operational Efficiency by Moving Your...
PPTX
AI saturdays Nigeria
PDF
Secure Clouds are Happy Clouds
PDF
DevOps Fest 2020. James Spiteri. Advanced Security Operations with Elastic Se...
PPTX
TECHTalks - Philadelphia PA - Mike Mitnick
PDF
What are the Trends Shaping the Cloud-Native World in 2020
PDF
AI/ML is a Means to Digital Transformation, Not an End Itself
PDF
Cisco + Intel Cloud Services
How to Consolidate in Order to Increase Operational Efficiency by Moving Your...
AI saturdays Nigeria
Secure Clouds are Happy Clouds
DevOps Fest 2020. James Spiteri. Advanced Security Operations with Elastic Se...
TECHTalks - Philadelphia PA - Mike Mitnick
What are the Trends Shaping the Cloud-Native World in 2020
AI/ML is a Means to Digital Transformation, Not an End Itself
Cisco + Intel Cloud Services

What's hot (14)

PDF
The Race To Better Datacenters - Tailormade Colocation by Globalways AG
PDF
Technology trends in a maturing IoT
PDF
David Noy – Realising the true potential of software-defined storage
PPTX
VSD Zurich 2018: 360 Data Management and Take Control Over the Most Valuable ...
PDF
Tineola: Taking A Bite Out of Enterprise Blockchain
PDF
SYN 321: Securing the Published Browser
PDF
What's New with ATTACK for Cloud?
PPTX
Cwin 2016 hybrid plus the future of digital_v1_201609627
PPTX
VSD Zurich 2018: The Data Opportunity
PDF
Industry4.0 IoT Vincent Thavonekham - Azure Day Ukraine
PPTX
State of Cloud - Takeaways for Sales & Marketing Professionals
PPTX
Safari cloud
PPTX
Introduction to AWS IoT
PPTX
Capgemini Oracle Cloud Access Security Broker
The Race To Better Datacenters - Tailormade Colocation by Globalways AG
Technology trends in a maturing IoT
David Noy – Realising the true potential of software-defined storage
VSD Zurich 2018: 360 Data Management and Take Control Over the Most Valuable ...
Tineola: Taking A Bite Out of Enterprise Blockchain
SYN 321: Securing the Published Browser
What's New with ATTACK for Cloud?
Cwin 2016 hybrid plus the future of digital_v1_201609627
VSD Zurich 2018: The Data Opportunity
Industry4.0 IoT Vincent Thavonekham - Azure Day Ukraine
State of Cloud - Takeaways for Sales & Marketing Professionals
Safari cloud
Introduction to AWS IoT
Capgemini Oracle Cloud Access Security Broker
Ad

Similar to State of cloud and application connectivity (20)

PDF
The future of work
PPTX
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
PDF
Brink sanders cisco architecture keynote
PPTX
Hashicorp Corporate Pitch Deck Stenio_v2
PPTX
Postgres Vision 2018: Taking Postgres Everywhere
 
PPTX
A 21st Century Approach—Enterprise Content in the Cloud
PDF
Cisco Connect 2018 Philippines - delivering a secure, intelligent platform fo...
PDF
Cisco Connect 2018 Singapore - Transforming Enterprises in a Multi-Cloud World
PPTX
Economics of the Cloud: Don't Aim for the Sky on Everything
PPTX
What's next for AppD and Cisco? - AppD Global Tour
PPTX
What’s Next For AppDynamics and Cisco? AppD Global Tour London
PDF
Csa Summit 2017 - Un viaje seguro hacia la nube
PDF
Taking DevOps Monitoring to the Next Level - The 5 Step Guide to Monitoring N...
PDF
Cisco Connect Ottawa 2018 multi cloud connect, protect, and consume
PDF
The Unmet Demand for Premium Cloud Monitoring Services—and How Service Provid...
PPTX
Edc event vienna presentation 1 oct 2019
PDF
vSEC: bezpečnostní platforma pro privátní a veřejné cloudové služby
PDF
Cloudy with a Chance of Agility
PDF
Cisco Connect Ottawa 2018 multi cloud
PDF
10 Step Guide to Cloud Security - 10th Magnitude - CSS Dallas Azure
The future of work
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
Brink sanders cisco architecture keynote
Hashicorp Corporate Pitch Deck Stenio_v2
Postgres Vision 2018: Taking Postgres Everywhere
 
A 21st Century Approach—Enterprise Content in the Cloud
Cisco Connect 2018 Philippines - delivering a secure, intelligent platform fo...
Cisco Connect 2018 Singapore - Transforming Enterprises in a Multi-Cloud World
Economics of the Cloud: Don't Aim for the Sky on Everything
What's next for AppD and Cisco? - AppD Global Tour
What’s Next For AppDynamics and Cisco? AppD Global Tour London
Csa Summit 2017 - Un viaje seguro hacia la nube
Taking DevOps Monitoring to the Next Level - The 5 Step Guide to Monitoring N...
Cisco Connect Ottawa 2018 multi cloud connect, protect, and consume
The Unmet Demand for Premium Cloud Monitoring Services—and How Service Provid...
Edc event vienna presentation 1 oct 2019
vSEC: bezpečnostní platforma pro privátní a veřejné cloudové služby
Cloudy with a Chance of Agility
Cisco Connect Ottawa 2018 multi cloud
10 Step Guide to Cloud Security - 10th Magnitude - CSS Dallas Azure
Ad

More from Andrew Randall (9)

PPTX
Why Kubernetes on Azure: Tigera-Microsoft Partnership
PDF
Simplifying and Securing your OpenShift Network with Project Calico
PPTX
Container Networking: the Gotchas (Mesos London Meetup 11 May 2016)
PPTX
Container Networking Meetup March 31 2016
PPTX
Onug lunch talk may 12 2015 no video
PDF
Preview of “CIOReview - Networking Technology Special 2015”
PDF
A randall powerpresentations
PDF
Ingredients for a Successful Service Innovation Ecosystem
PPT
ONUG Keynote - VoIP Has Just Begun
Why Kubernetes on Azure: Tigera-Microsoft Partnership
Simplifying and Securing your OpenShift Network with Project Calico
Container Networking: the Gotchas (Mesos London Meetup 11 May 2016)
Container Networking Meetup March 31 2016
Onug lunch talk may 12 2015 no video
Preview of “CIOReview - Networking Technology Special 2015”
A randall powerpresentations
Ingredients for a Successful Service Innovation Ecosystem
ONUG Keynote - VoIP Has Just Begun

Recently uploaded (20)

PDF
Encapsulation_ Review paper, used for researhc scholars
PPTX
MYSQL Presentation for SQL database connectivity
PDF
Electronic commerce courselecture one. Pdf
PPT
Teaching material agriculture food technology
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
Encapsulation theory and applications.pdf
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PPTX
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
Spectral efficient network and resource selection model in 5G networks
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Empathic Computing: Creating Shared Understanding
PDF
cuic standard and advanced reporting.pdf
PDF
Review of recent advances in non-invasive hemoglobin estimation
Encapsulation_ Review paper, used for researhc scholars
MYSQL Presentation for SQL database connectivity
Electronic commerce courselecture one. Pdf
Teaching material agriculture food technology
Agricultural_Statistics_at_a_Glance_2022_0.pdf
20250228 LYD VKU AI Blended-Learning.pptx
Encapsulation theory and applications.pdf
Assigned Numbers - 2025 - Bluetooth® Document
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
Chapter 3 Spatial Domain Image Processing.pdf
gpt5_lecture_notes_comprehensive_20250812015547.pdf
Spectral efficient network and resource selection model in 5G networks
Digital-Transformation-Roadmap-for-Companies.pptx
Mobile App Security Testing_ A Comprehensive Guide.pdf
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Building Integrated photovoltaic BIPV_UPV.pdf
Empathic Computing: Creating Shared Understanding
cuic standard and advanced reporting.pdf
Review of recent advances in non-invasive hemoglobin estimation

State of cloud and application connectivity

  • 1. © 2018 Tigera, Inc. STATE OF CLOUD AND APPLICATION CONNECTIVITY Andy Randall VP Partners & Customer Success Tigera @andrew_randall March 2018
  • 2. © 2017 Tigera, Inc. 2 TRENDS IN ENTERPRISE CLOUD ADOPTION
  • 3. © 2017 Tigera, Inc. EVERYONE* IS NOW USING CLOUD 3* Well, 96% anyway Source: RightScale 2018 State of the Cloud Report
  • 4. © 2017 Tigera, Inc. … WITH MULTI-CLOUD THE DOMINANT STRATEGY 4Source: RightScale 2018 State of the Cloud Report
  • 5. © 2017 Tigera, Inc. PUBLIC CLOUD IS BECOMING “CENTRAL IT”, NO LONGER “SHADOW IT” 5Source: RightScale 2018 State of the Cloud Report
  • 6. © 2017 Tigera, Inc. BUT SECURITY REMAINS THE #1 CONCERN 6Source: Zetta, Cloud Adoption in 2017
  • 7. © 2017 Tigera, Inc. … ALONG WITH MANAGING COSTS, RESOURCES / EXPERTISE AND COMPLIANCE 7
  • 8. © 2017 Tigera, Inc. ORGANIZATIONS ARE ADDRESSING THE EXPERTISE ISSUE WITH CENTRAL CLOUD TEAMS 8
  • 9. © 2017 Tigera, Inc. 9 ENTERPRISE APPLICATION DEVELOPMENT TRENDS
  • 10. © 2017 Tigera, Inc. FROM MONOLITHIC APP ARCHITECTURES 10
  • 11. © 2017 Tigera, Inc. … TO MICROSERVICES 11
  • 12. © 2017 Tigera, Inc. MICROSERVICES NATIVE PACKAGING IS INCREASINGLY AS (DOCKER) CONTAINERS 12 Source: Nanobox
  • 13. © 2017 Tigera, Inc. NOW YOU NEED... 13 > Service Discovery > Load Balancing > Secrets/configuration/storage management > Health checks > Auto-[scaling/restart/healing] of containers and nodes > Zero-downtime deploys
  • 14. © 2017 Tigera, Inc. … WHICH MEANS CONTAINER ORCHESTRATION 14
  • 15. © 2017 Tigera, Inc. 15 “today’s de facto standard container scheduling and orchestration framework” - Enterprise Management Associates, March 2018
  • 16. © 2017 Tigera, Inc. 16 Source: CNCF
  • 17. © 2017 Tigera, Inc. 17
  • 18. © 2017 Tigera, Inc. TOP 6 BENEFITS OF MICROSERVICES 18 > Continuous integration / deployment (CI/CD) > Easier debugging and maintenance > Higher development productivity > Agility > Faster time to market > Improved scalability Source: Red Hat 2018 Microservices Survey Conducted by TechValidate, Nov. 2017
  • 19. © 2017 Tigera, Inc. CI/CD 19
  • 20. © 2017 Tigera, Inc. ELASTIC CLOUD INFRASTRUCTURE + NEW APPLICATION DEVELOPMENT AND DEPLOYMENT MODEL = CLOUD NATIVE “CLOUD NATIVE” Microservices Elastic cloud infrastructure Containers Dynamic orchestration 20
  • 21. © 2017 Tigera, Inc. | Proprietary and Confidential IMPLICATIONS FOR CLOUD-NATIVE APPLICATION INFRASTRUCTURE 900x start time 10x workloads 25x shorter lifetime 250x churn 10x attack surface area 21
  • 22. © 2018 Tigera, Inc. | Proprietary and Confidential 22 EVOLUTION OF APPLICATION INFRASTRUCTURE
  • 23. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 23 VM’s Host Instances VM’s VM’sVM’s VM’s NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 24. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 24 VM’s Host Instances NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 25. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 25 VM’s Host Instances NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 26. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 26 VM’s Host Instances NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 27. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 27 VM’s Host Instances NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 28. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 28 VM’s Host Instances NETWORK CONNECTIVITY INFRASTRUCTURE APP CONNECTIVITY INFRASTRUCTURE
  • 29. © 2017 Tigera, Inc. APP CONNECTIVITY LANDSCAPE 29 VM’s Host Instances APP CONNECTIVITY INFRASTRUCTURE NETWORK CONNECTIVITY INFRASTRUCTURE
  • 30. © 2018 Tigera, Inc.© 2017 Tigera, Inc. SECURE APPLICATION CONNECTIVITY M ulti-cloud and legacy Zero trust Enterprise control and com pliance O perationally sim ple Secure Application Connectivity © 2017 Tigera, Inc.
  • 31. © 2017 Tigera, Inc. | Proprietary and Confidential © 2018 Tigera, Inc. TIGERA CNX ARCHITECTURE Containers Virtual Machines Standalone Host Host kernel Hypervisor Host kernel Distributed key/value store L3-4 policy enforcement Service mesh router Dev/Ops IT Ops Security Control plane agent RBAC & Auditing CLI GUI API Aggregated Telemetry L3-7 policies Workload and host inventory Certificate policies L3-7 Policy Rendering Certificate Management Routing IP forwarding L3/4 Policy Enforcement L5-7 Policy Enforcement Service Mesh Proxy Telemetry Generation Encryption Enterprise Directory Control Plane Management Plane Data Plane k:v k:v k:vk:v k:v Public Cloud NetworkData Center Network Orchestrator