apresentacao_overview com seguranca

62

Upload: jefferson-bandeira-baptista

Post on 07-Mar-2015

127 views

Category:

Documents


26 download

TRANSCRIPT

Solues Huawei Symantec

Huawei Symantec Technologies Co., Ltd.

Viso e MissoHuawei SymantecO principal parceiro confivel em solues de segurana de informao e de armazenamento

Foco nas necessidades dos clientes, fornecer solues de baixo custo e trazer valor sustentvel para os clientes, acelerando a inovao tecnolgica e aplicao em segurana da informao e de armazenamento

Huawei

SymantecConfiana num mundo conectado

Enriquecer a vida atravs da comunicao

Plataforma de TINetwork...

Security ...

SecospaceSVN 3000 SSL VPN USG 2000/5100/5300 USG 9100/9300 NIP100/100 0

DPI

Server... RH1285 RH2285 T8000 E6000 iNIC SSD

Storage... T3000 V1500/1800 S2000 S5000 VTL3600 N8000 VIS6000

Servidores TecalTMValue-Added Components Blade Server Rack ServerES1000 ER1000 ES1200Packet Capture

HW Platform

T8000

E6000

RH1280

RH1285

RH5480

RH1120

RH2280

RH2285

Technical SpecificationsComputing

Oceanspace T3500 G2

Support of one or two CPUs in the modes of Intel E5500 or E5600 series 8 x DIMM slots (a maximum of 32GB)

I/OTwo GE ports are integrated on the mainboard and I/OAT is supported. Four PCI-e expansion slots One VGA port, two USB 2.0 ports, and one serial port

4U/24-bay 446 mm x 685 mm

AvailabilityHot-swappable disks Redundant and hot-swappable power supplies Standard: RAID 0/1/10

Oceanspace T3200

ManagementIPMI 2.0, Web management user interface (UI)

OSLinux (Suse, Redhat, and others), Windows, Solaris

2U/12-bay 446 mm x 685 mm

Plataforma de TINetwork...

Security ...

SecospaceSVN 3000 SSL VPN USG 2000/5100/5300 USG 9100/9300 NIP100/100 0

DPI

Server... RH1285 RH2285 T8000 E6000 iNIC SSD

Storage... T3000 V1500/1800 S2000 S5000 VTL3600 N8000 VIS6000

Solues de ArmazenamentoContainer Data Center CDCData Protection Data Protection SAN2U ~ 96 DisksSoftware

Application ApplicationI PACS Integrated Picture Archiving and Communication System iNVS

40ft 10 Racks

Video Surveillance

Data ProtectionHDP VIS VTL

HSSDDiamond250/100/200GB R250MB/W180MB

SSD

HuaweiSymantec Data Protection

Virtual Intelligent Storage

Virtual Tape library

SANS2600 S5000 S6800E S12000

NASN8000

4U 120~ 480 Disks

4U ~ 1080 Disks

2-8 Controllers ~ 2400 Disks

2-16 Nodes ~ 15360 Disks

HyperMirror

HyperImage

HyperCopy

HyperClone Storage Management

S2600

Technical Specifications of the S2600Oceanspace S2600ModelStandard / MAX Cache size

S2600S 4 GB/8 GB One or two controllers Four 4x3Gb SAS

S2600i 4 GB/8 GB One or two controllers Eight 1Gbit/s iSCSI

S2600F 4 GB/8 GB One or two controllers Eight 4Gbit/s FC

S2600C 4 GB/8 GB One or two controllers Four 4 Gbit/s FC and Four 1 Gbit/s iSCSI

Controller Host ports Host ports per controller Number of disks Disk type

One 4x3 Gbit/s SAS 96 SAS/SATA 96 SAS/SATA 96 SAS/SATA 96 SAS/SATA

Disk options

SATA disk: 1TB/2TB (7,200 rpm) SAS disk: 300GB/450GB/600GB (15,000 rpm) 12 disks per enclosure Supported 4 64/256 64/256 64/256

Disk density Disk spin-down Number of hosts supported Standard/Maximum Value-added software

Snapshot, LUN copy, mirroring (implemented in June, 2010)

Novos modelos de mdio porte New Srie TS6800T New S5800T New

Applied for middle and large scale Enterprise Meeting the requirements of large scale database including OLTP/OLAP, HPC, digital media, internet service providers,

S5600T backup, disaster recovery, New data migration and other S5500T scenarios

Scalability

S12000

S6800E S5600 S5500 S5300

S2600 S2300

Performance

Comparao modelos novos e antigosS5300 Cache Maximum Number of Disk Maximum number of host port Diskcompatibility Maximum number of hosts Maximum number of LUNs S5500 8GB/16G B 240 16 S5500T 8GB /16GB/32GB 288 16 S5600 16GB /32GB 480 16 S5600T 24GB/48GB 576 32 S6800E 32GB 1080 12 S5800T 48GB/96G B 1152 40 S6800T 48GB /96GB/192GB 1440 40 4GB/8GB 120 16

SSD/FC/SATA

SSD/SAS/SATA

SSD/FC/SAT SSD/SAS/SATA/F SSD/FC/SAT SSD/SAS/SATA/FC A C A 256 2048 1024 4096 512 4096 1024 4096 1024 4096

256 1024

256 1024

512 2048

Arquitetura S2600iSCSI FC SAS ComboHost port module CPU CPU Host port module

iSCSI FC SAS Combo

SAS controller

SAS mirror channel

SAS controller Maintenance/ Management interface

RS232 FE Disk enclosure interface

maintenance/ Management interface SAS Expander SAS Expander

RS232 FE Disk enclosure interface

Controller A

Controller B

TurboModule

Real IO Module Hot Plugable With The Controller Online! Turbo Flex Frontend&Backend IO Module Number&Slots Layout! Turbo Density of 12 IO Module/48 IO Ports in One Single 4U Space!

Storage de Alta Disponibilidade

Hot Spare Trocas OnlineOnline maintenance

Upgrade Online Reparo de trilhas1

RAID5

Destage

Falha no disco

1 Falha em disco. 3 2 O disco de hot spare 2 assume as funes do disco defeituoso. O disco sincronizado 3 e recuperado.

SAS SAS SAS SAS SAS SAS SAS SAS S SAS

SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS

SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS

SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS SAS

Ambiente de Alta DisponibilidadeSoluo com Cluster/Multi-path

DB cluster

Storage network

Controller A

Controller B

OceanStor S2600

Uso de vrias tecnologiasInsero mista de discos para otimizar a utilizao de espao

Discos SAS e SATA Utilizao mista de redes FC e iSCSI

DB server

Mail server

Backup server

Video server

FC SAN

iSCSI

DB server

Mail server

Video server

Backup server

ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS

ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS ATAS

SAS SAS SAS SAS SAS SAS SAS SAS SAS

SAS SAS SAS SAS SAS SAS SAS SAS SAS

ISM storage network management software

Incrementando DesempenhoIntelligent Cache Prefetch

Dynamic Traffic Control (DTC)Prioridade para trfego de produo X reconstruo

HostRead Read Read Read Read request 1 request 2 request 3 request 4 request 5

Prefetch inteligente de cacheDetecta automaticamente modo de leitura e faz prefetch

ControllerCachea b

The system recognizes the sequential data addresses and then enables the cache prefetch.

Suporte a discos SSDConvivendo na mesma gaveta com outras tecnologias Na linha Turbo pode ser usado como cache de segundo nvel

c

d

e

Diska 0x21 b 0x22 0x23 c 0x24 d 0x25 e 0x26

TurboBoostSSD CacheHost ServerTechnics: Data reading from HDD Copying hot data to SSD Reading hot data from SSD 3 SSD 1 HDD Eliminating cold data from SSD Features: High Performance with fewer SSD Low power consumption Good compatibility

SSD HDD

HDD

HDD

Values: Multiple times of read performace boosting

2SSD Cache Boost Engine

Reducing $/IOPS significantly More than 40% power saving

Hot Data

Cold Data

SSD Solid State Disk

X

TCO: Reduzindo OPEX100 HDDs 45 HDDs + 1 SSD

+1/10 Consumo de energia 1/8 custo Capacidade: 14 TB Performance: 18k IOPS Cap/Op-X: RMB 1,600,000 to 2.5 kWh

HDDs de alta capacidade

Capacidade: 14 TB Performance: 18k IOPS Cap/Op-X: RMB 200,000 to 0.25 kWh

Caractersticas de TI VerdeDesvatagens de ventiladores em alta velocidade Poeria Rudo Consumo de energia Soluo: controle inteligente de ventiladores

Intelligent Fan ControlAmbient temperature Ambient temperature < 35 Fan is in C: > 35 Fan is in HIGH C: LOW rotation speed. rotation speed.

ControllerSpin down para discos pouco acessadosReceives the temperature information from the monitoring point, and sends the speed control command.

B B B B

B

B B B B B B B B

A A A A A A A A

A

A A A A A A A A

Storage Software

HyperImage

HyperImage & HyperCopy

HP MSA Series

EMC CLARiiON

HyperCopySAS

IBM DS series

HyperCopy Data MigrationSATA SATA SATA

SATA LUN SATA SATA

HyperMirror

SAS SAS

HyperImage1 2 3 4 5

HyperClone

9:30

10:30

11:30

12:30

13:30

teste

pesquisa

Backup

Archive

NAS - N8000

N8300

N8500

Unified storageFile servers Application servers Database servers

NFS/CIFS

iSCSI Block-level

FC

File-level Block-levelNAS IP SAN FC SAN

N8000 Cluster NAS

N8000 - Alta DisponibilidadeWindows user Unix user

IP CIFS NFS

N8000 Cluster NAS

N8000 - EscalabilidadeWindows user Unix user

IP Network CIFS NFS

N8000 Cluster NAS

Caractersticas do N8000ItemNum of NAS engine

N83002-6

N85004-16

Clustering mode

Active-Active

Oceanspace N8300

Cache Interface of

8/48 GB per NAS engine

4/6 per NAS engine network Interface of FC Max. capacity Disk type RAID

2*4Gb per NAS engine

7.68PBSSD, SAS, FC,SATA

15PBOceanspace N8500

RAID 0, 1,10, 5, 6

Armazenamento hierrquico dinmicoData CenterService LANIP IP IP IP IP IP IP IP IP

FC

FC

FC

FC

IP

IP

IP

IP

IP

Permite a definio de polticas para movimentao de dados de acordo com a necessidade do ambiente Dados com alto nvel de acesso podem ser movimentados para discos de maior performance Dados raramente acessados podem ser movimentados para discos de maior capacidade

FC-SAN

NAS

FC IP

FC

N8000FC FC

SSD

FC

Tier 1 storage Tier 2 storage

Identical storage array

SSD

FC

SAS

SATA

VIS 6000

OceanStor VIS6000

Plataforma Unificada de Disaster Recover

Unix Linux Win

Unix Linux Win

Host

IP/FC SAN FC SAN IP SAN VIS6000 VIS6000

Transmission network (WAN/LAN/dedicated line)

Disaster recovery center

Array

Valores do VISDisaster recoveryReplicao baseada em I/O Replicao: Sincrona Assncrona Cclica

ConfiabilidadeRedundncia Suporta multi-path Mltiplos ns ativos em cluster

Consolidao do Storage

Sistema de armazenamento aberto Preveno de locks por vendedores

Gerencia SimplificadaAdministrao centralizada de storage de diferentes fornecedores

Valor para clientes

dddd

Histrico dos sistemas de Video Surveillance

Video MatrixGeneration 3:Sistema Digital de Video Vigilncia Rede IP Sinais digitalizados Compressode dados Internet Streaming Vdeo Dezenas de milhares de cameras

1 Gerao: Sistema Analgico de Video Viilncia Cabos Coaxiais Modo Analgico Centro de controle Pouca escalabilidade e gerncia 20-100 cameras

2 Gerao: Sistema de Video Vigilncia "Analogico + Digital Cabos Coaxiais Modo Analgico Digitalizados Armazenados atravs do centro de controle ou de DVR 100-200 cameras

4 Gerao: Digital Sistema Inteligente de Video Vigilncia Imagens de Alta Definio Anlise inteligente de comportamento e busca Diversos mtodos de acesso Centenas de milhares de cameras

1998 2006 1980 1998

2007 2010

2011 futuro

Arquitetura de Video Vigilncia NVR Network Video Recorder

PTZ Camera

Decodifica dor Swit ch Decodifica dor

Swit ch Rede IP

Decodifica dor

Monitor

Camera Fixa

Camera IP NVR Captura Transmisso Client e

Decodifica dor DisplayAnalogico Sinal (RS485) Rede IP

Gerencia

Inteligncia para anlise de vdeosReconhecimento de placas Reconhecendo placas comumente utilizadas dentro de uma certa regio. Capturando imagens panoramicas e em closede veculos, licenas, placas e marcas.

People counting Contagem de pessoas Contagem do nmero de pessoas num perodo de tempo numa determinada regio. Contagem do nmero de pessoas que se movem numa determinada direo ou em direes opostas

Super resoluoO processamento de imagens n claro Vrios rudos durante a transmisso das imagens

Deteco de eventosDetecta pessoas suspeitas ou veculos em certas regies. Automatica e inteligentemente analisa os relatrios de eventos suspeitos

A arquitetura aberta e compatibilidade com software de terceiros permite o desenvolvimento de poderosas funes.

Datacenter Convencional EnergiaSala de Monitorao

Ar condicionado Racks

CDC - Container Data CenterCombate a incndio

Ar condicionado Segurana Racks

Energia

Container Data Center

Container padro de 40 ps 10 racks 42U Capacidade de resfriamento ar condicionados de preciso: 62.5 kW (4+1)

Container Data Center 20 ps

2 ou 4 racks Ar-condicionado 1+1 ou 2+1

Layout of Air-Cooled ContainerPower supply cabling tray Network cabling tray Management server Power supply PDF Video camera

Air-condition evaporator Static proof floorHot aisle Transect view Cold aisle

Rack Entrance chamber Lightning Protection Box

CRAC

Top view

Cabinet Layout and Sizes with Precision Air ConditioningCabinet #10 Air conditioner #5

Air conditioner #1

Inert gas extinguishing facility cabinet 2.59 m 0.15 m

Management server cabinet #1 0.85 m 0.6 m Power distribution cabinet Lightning protection box PUE of container data center < 1.5

COMPONENTES da Soluo CDC 40 ps - 10 RACKS 42 Us 20 ps 2 ou 4 racks

Sistema de refrigerao de preciso (4+1) 40 ps 20 ps 1+1 ou 2+1

Sistema de Combate a Incndio (HFC 227ea) Sensores de temperatura, umidade e fumaa Sistema de monitorao do ambiente com cameras de vdeo Contrle de acesso Sistema de monitorao local ou remota Robustez Descargas eltricas Vento Fogo Chuva Terremoto Salinidade Bolor

Container Data Center

Cabeamento eltrico instalado Sistema de para raios e aterramento No Break e Gerador

VANTAGENS da Soluo CDC Baixo custo de aquisio, 20 a 40% menor Baixo custo de operao, 20 a 33% menor Escalabilidade Portabilidade Baixo tempo de implementao, 90 a 120 dias Soluo Completa Implementao Integrao com infra-estrutura adicional

Container Data Center

Migrao Configurao Testes Treinamento Acompanhamento Vida til de no mnimo 10 anos

Plataforma de TI

Security ...

SecospaceSVN 3000 SSL VPN USG 2000/5100/5300 USG 9100/9300 NIP100/100 0

DPI

Server

Security Product PortfolioSecurity Service Network and Content Security Security Security SWCapabilityBypass series Botnet Signature Base Protocol Base (DPI) Virus Signature Base Spam Base URL Signature Base Intrusion Signature Base Emergency Response On-line Upgrade Reputation Assessment Security Mgmt Security Mgmt Service Security Consulting

Service

Deep Packet Inspection (DPI)SIG1000E SIG9280E Inline series~ 100G

SIG9810 SIG9820

IDSNIP200/1000

WAF

Anti-DDoS SolutionUSG5000ADD/ADI USG9300 ATIC

~ 20G

~ 60G

~ 40G

200M-1G

1-2G

10-80G

Mgmt Center

Service Routing Gateway/ Enterprises GatewayUSG2000/5000BSR USG2000/5000HSR USG2100/2200

UTMUSG5100/5300/5500 USG9300

SSL VPNSVN 3000/5000

160K-1500KPPS