Image Title

Search Results for Aaron Neal:

Bryce Cracco, NetApp and Jim Sarale, Rancher Labs | CUBE Conversation, December 2020


 

>> [Female VoiceOver] From the CUBE studios in Palo Alto in Boston, connecting with our leaders all around the world, this is a CUBE conversation. >> Hello and welcome to the CUBE conversation here in the Palo Alto studios, I'm John Furrier. Cloud Native News and industry coverage. There are two great guests here to break down what's going on in Cloud Native. we got Rancher Labs, Jim Sarale, Vice President of Global Channels and Alliances and Bryce Cracco Product Manager for NetApp HCI. Guys, thanks for coming on this breaking news around Cloud Native. I mean, this has been really all about Cloud Native for the past year and a half, but this year, certainly with the pandemic, the modern applications are being pushed out faster and faster. A lot of pressure. So congratulations on this announcement, Jim set us up. What is the News? I saw some articles, we've got a story get hit and SiliconANGLE. What's the news with NetApp with Rancher Labs? >> Yeah, thank you. And you're right, we are seeing a vast push with, with the crazy times that we're in right now, but the news really is, you know, Rancher formerly launching our OEM program and launching that with with our Marquee partner with NetApp, you know, when companies get to a certain juncture, you know, an OEM relationship and sometimes means just more of a marketing type relationship but as everybody knows, Rancher is, you know, one of the industry leading multicloud, multi Kubernetes cluster management solutions, open source. And you know, what that means is we're an agnostic play for, for those that are trying to leverage Kubernetes, we've talked with NetApp, we struck a deal with them for them to embed us on their HCI platform. And when you talk about our early in program and, and the things that it entails is really around, you know, how do you get contract vehicles to map go to market strategies? How do you get support, engineering, integration, development, all of those things align with partners. It's not an easy task. It's very important to the go to the kind of go to market strategy that we have. And I think, you know, not only with the market adoption around Kubernetes, Ranchers agnostic play in open source and then obviously, you know, Ranchers come a long way. Our products tried and true. We have nearly 500 customers. We're seeing those customers lean back into some of the OEMs and to the software vendors to have them do more and get them more, I guess, ready for the things that they're doing, an IT operations, how the have dev you know, the app DevOps folks are trying to do more and get applications to market faster. So we're really suited well for organizations like NetApp to take our technology bundle in it and really make it better for their customers experience. So the program allows for contract vehicles, direct integration, support, engineering, pricing, because not one size fits all. As you see the evolution from On-prem to cloud IoT Edge, a lot of different devices from 100s of dollars to 1000s. So Ranchers committed to making sure that we align our products and pricing to fit some of those low compute platforms and also be able to right size our business model to make them successful. >> Well, congratulations, I love the term OEM still kind of hangs around, I'm old enough to remember when it was actually equipment not software, original equipment manufacturer, which essentially, you're essentially letting NetApp embed your code into their equipment or their software. But this is the relationship of a channel and indirect channel for Rancher which you guys are launching, which is total validation. Appreciate that, I like to get into the NetApp side. Bryce, if you don't mind, because, you know, obviously cloud's not new to NetApp storage becoming more critical, hybrid clouds more important. Tell us about the transformation of HCI because I think this is where Kubernetes and it starts to fit in when you see the cloud native surge coming in. How are you guys looking at this opportunity? >> Yeah, you bet when you, when you look at it from a converged infrastructure or hyper-converged infrastructure or hybrid cloud infrastructure perspective. It's always been about simplicity, right. We're not doing anything in the HCI market in general that can't be otherwise done. It's just making it much simpler, reducing that that learning curve and reducing that time to value that our IT customers get. And so I think we saw it, you know, converged infrastructure and hyper-converged infrastructure, all start out with virtualization is kind of the top layer that's facilitated but now obviously Kubernetes is becoming table stakes in the enterprise. So I think we're seeing all the vendors in the space, put in some kind of automatic deployment of Kubernetes or some easier deployment of Kubernetes, making Kubernetes that top layer rather than just virtualization. And, you know, this is a really great opportunity for us at NetApp to be able to do that. Not only with just any Kubernetes package but one that's very well regarded and beloved in the DevOps communities and that's Rancher. So what we have here is kind of something that's great for IT, and really great for DevOps in terms of being able to centralize multi cluster management across a hybrid cloud ecosystem and really empower those DevOps teams, what they to do what they need to do but still keeping IT at the center of it. >> You know, it's interesting, you know, shift left for security DevOps here, DevSecOps, it's all kind of happening with software, software defined, software operated. This is what this is the new operating environment. What is the use cases that presents itself well for this is it from a customer standpoint? Is it they're looking for certain things when you look at the product definition, you say, okay we have NetApp, we have Rancher. Take me through that thinking, what's the customer use case? What are they getting out of this? >> Sure, I think there's a variety of use cases where you see Kubernetes coming into play. And one of the great things about NetApp HCI, is it's not just simple infrastructure but it's also very scalable infrastructure. So that's where a lot of these types of products fall down. As we get to such such a scale point they don't work because of our scalability and our ability to handle mixed workloads. We can really handle any number of use cases. So in a Kubernetes context, this could be anything from IT departments who are going to containerized applications for their own, you know, the applications that they themselves manage, like ERP systems and so forth that are starting to get containerized. It could also be for bespoke applications that the companies are writing themselves, the DevOps teams that actually write the code that makes the company work. And so there, there's kind of a wide variety of use cases in there that are starting to go to Kubernetes. If not there already, the DevOps teams largely are already using Kubernetes. And this is just a great way to centralize it on on one kind of easy button, but yet very scalable and highly performing infrastructure for that kind of consolidation. >> Jim, this is the holy grail we've you guys have been doing since the beginning of Rancher Labs, programmable infrastructure, infrastructure as code, you couldn't get any clear or here when you start to have mainstream, you know, programmable storage and still programmable networking. All of this is happening. This is what we had hoped for the world's now gone full containers. Now you've got Kubernetes and IDC still shows that the enterprises are only like 30 to 40%. Even deep in their toes in on containers. If that, so you see a coupe call and you see all that at VM world, you'll see that re-invent you're going to see mainstream IT, the classic IT with DevOps. What's your reaction to that? Because there this, you know, what's your, what's your what's your take on this? >> Yeah I think you're absolutely right, we are scratching the surface and I think that we will see IT really embrace, right. This, this becomes the opportunity for business enablement to take, to take shape across all different avenues, IT is building infrastructure and make it, you know, allowing compute to be available. And this is kind of, we'll see this surge, not just the IT operations but really having the different groups from app devs to the business line owners, to those pushing applications, understanding the entire ecosystem. You know, we're talking about NetApp and HCI today but you can think of cross the edge, data center edge cloud, retail point of sale systems, getting immediate updates, dealing with IT operations and the compute platforms. It's really just endless. And we're excited. I think the OEM program is going to allow companies like NetApp and in other verticals and industries to really take shape and take advantage of what Rancher's offering to help them be more efficient across what their critical business apps are trying to do. >> Well, congratulations on NetApp, they're very smart company. They've got savvy customers and they're very loyal. Bryce, with that in mind, what's been the reaction you laid out the use cases when you bring this to market with your customers and partners? What's the feedback thumbs up on this and what's the vibe? >> Yeah, we've had some really enthusiastic early reaction, a couple early customers looking at it. You know, it's been a lot of fun and people are really excited that one of the great things about doing this with Rancher is that it's, it's purely open source software. So, you know, our customers love that. It's, there's, it's kind of a low risk proposition for them. They're very well, well hedged they can push this button and get it started on their NetApp HCI with very little, very little lead up to that very little advanced knowledge and just kind of get started. It's actually there's no incremental costs to use it on NetApp HCI. It's just, if you want a joint support model that it, that that there's a fee. And so you can kind of think of it as an indefinite trial period in a way. And I think that's created a lot of early interest and I think yeah I think it's going to be a really great option for our customers. It's going to add a lot of value to the NetApp HCI product. And so far, everyone's been very excited about it. >> You know, I was talking with Dave Vellante, my co-host in the CUBE also does a lot of storage research, knows NetApp as well. We were also commenting about this dynamic and we kind of call this out in 2016 when VMware was having trouble with the cloud operations. And then they decided to get rid of everything and just partner with Amazon. Everyone's like, that's horrible. It's going to be terrible. They're going to lose all their customers but we pointed out and I think this is true here. And I want to get your reaction, both of you guys, if you don't mind commenting what turned out to be the case was is that there was a clear distinction and operator of infrastructure and software development environments with higher level cloud native services. And they're not necessarily competing directly. They're kind of coming together, this idea of operating infrastructure and IT concept when it goes software and goes cloud, it's not a win, lose dynamic. You have software and you get people often need to operate that either code it or run it. So at large scale, this is where HCI kind of fits in Bryce, right? I mean, because now you got the edge, it's more devices. I mean, this is more infrastructure to run. So more, more stuff you've got to operate all this stuff. It's not going to ever go away. You guys react to that. What do you think? >> Sure. Yeah, I think I mean, from a NetApp perspective our customers use all kinds of infrastructure. They use public cloud infrastructure and NetApp has a really great public cloud focused portfolio, around public cloud services. So that's certainly a market that would be playing in our customers use. And it's part of the landscape, as you say, edge, of course also, and you know, with this solution I think it fits right into that because Rancher becomes this kind of container orchestration control plane. That's hosted on an HCI but can span this hybrid multi-cloud and edge environment all from that kind of centralized location. >> I think the simplification of the workloads is a huge deal. Jim, your, your thoughts on this? I see you've got this great program. You have the OEM program and you got an indirect partner, rising tide floats all boats here with, with this market. What's your take? >> Absolutely. And what better way to launch this program with somebody like NetApp? So yeah, you know, Rancher from its inception has been an open source platform agnostic. I think that will help, you know, help us, not just us but NetApp and other OEM partners, depending on operating system, legacy systems, verticals, industries, we're all playing a part in it. On-prem cloud, hybrid cloud, you know, I think Ranchers really well suited, for this advancement strictly by the way that we've continued in our philosophy of building an open source agnostic platform to help organizations, OEMs, ISBs, cloud providers, you name it. I think that Rancher is really well suited for, you know, kind of taking this additional ride, if you will, right. We're seeing we're all seeing it. And as you pointed out, it's less than 30% adoption today. We're all hoping for that to increase exponentially. >> Yeah, when you go mainstream, you get a lot of issues. Bryce, final question on the news analysis here. Why Rancher Labs from a NetApp perspective, what was the what was the deciding factor for you guys? >> Well, they just made a lot of sense for us to partner with. Again, the open source nature of it and the free nature of it made it really low barrier to entry for our customers. We really liked that. We also like they're very open and agnostic approach. So, you know, nothing that we're doing here with Rancher has to be at the expense of any other relationships that we have. And that was really that was really an important consideration. You know, it's, it's a very low risk, low cost, easy to get going solution for our customers. And there's very, there's no fear of lock-in with it. And so it's basically just all potential upsides and no potential downsides. And I think it's a really great solution for both IT and for DevOps, which was really critical. >> Real quick question on the customer expectation. Are you guys going to support Rancher? How does a customer get impacted by this? Obviously NetApp has, has their own supporters or is there a joint support? Is you guys going to handle that? How does the customer deal with that touches? >> Yeah, that's, that's really the crux of the deal. There is NetApp is able to provide frontline support for our customers or NetApp HCI customers, if they've, if they've purchased the Rancher support package through NetApp, they can get support for it through NetApp. And we're able to pass tickets back and forth between the companies as needed. So you don't have to have any guesswork about where where the problem and the stack might lie. You just opened your support ticket with NetApp and we can make sure it gets resolved. So that's been a really great part of the deal. >> Well, gentlemen, thanks for coming on. Appreciate the news insight. I do want to ask one final question, while I got you both here. If you don't mind, as we come in to the end of the year 2020, what a crazy year it's been between the pandemic and just the just the shift and the massive sea change of how virtual virtualization, not, you know, server or storage virtualization, but you know, the virtual world we live in remote everything, pandemic, uncertainty the digital transformation is just full throttle just more and more pressure. As we come out of cloud native CUBE con and AWS reinvent, we had VM all this activity. What do you guys think of the most important stories that customers should pay attention to in cloud native? What's what's the high order bit? What's the one thing or two things that really are notable that people should pay attention to that's important? Bryce, we'll start with you. >> I think it's bringing Kubernetes into the mainstream, right? I mean, that's what we see happening. How do you do that in a way that continues to give DevOps the flexibility they need and empower them and the way that Kubernetes does, but but also brings it into the mainstream. That's what I think what everyone's trying to solve right now >> Jim, your take on the most important story people should pay attention to. >> I think the same, I think Kubernetes adoption and really getting that education and people up to speed to start making that transformation. You know, quicker and getting that adoption rate up. I think we'll see a lot of benefits. Like you said, remote virtual in Kubernetes is kind of that framework that needs to get out there, be prevalent and and all of us take advantage, and start working together. >> All right, we'll leave it there. Guys, congratulations on the deal. NetApp embedding Kubernetes and Rancher support inside their hyper-converged infrastructure HCI. Bryce, Jim, thanks for coming on the CUBE. >> Thank you. >> Okay, I'm John Furrier with CUBE conversation here in Palo Alto. Normally when we do these in person but it's remote with the pandemic, giving you the latest continuing the cube virtual coverage, here in Palo Alto. Thanks for watching. (gentle music)

Published Date : Dec 8 2020

SUMMARY :

all around the world, What's the news with but the news really is, you know, and it starts to fit in And so I think we saw it, you know, You know, it's interesting, you know, of use cases where you see and you see all that at VM and make it, you know, allowing when you bring this to market that one of the great I mean, because now you got edge, of course also, and you know, of the workloads is a huge deal. I think that Rancher is really well suited for, you know, what was the deciding factor for you guys? of it and the free nature Is you guys going to handle that? and forth between the companies as needed. and the massive sea change but also brings it into the mainstream. the most important story that framework that needs to Bryce, Jim, thanks for coming on the CUBE. giving you the latest continuing

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
AmazonORGANIZATION

0.99+

Dave VellantePERSON

0.99+

JimPERSON

0.99+

BrycePERSON

0.99+

RancherORGANIZATION

0.99+

Jim SaralePERSON

0.99+

2016DATE

0.99+

December 2020DATE

0.99+

Palo AltoLOCATION

0.99+

John FurrierPERSON

0.99+

Rancher LabsORGANIZATION

0.99+

Bryce CraccoPERSON

0.99+

30QUANTITY

0.99+

less than 30%QUANTITY

0.99+

NetAppTITLE

0.99+

bothQUANTITY

0.99+

AWSORGANIZATION

0.99+

1000sQUANTITY

0.99+

two thingsQUANTITY

0.99+

CUBEORGANIZATION

0.99+

BostonLOCATION

0.99+

todayDATE

0.98+

40%QUANTITY

0.98+

this yearDATE

0.98+

one final questionQUANTITY

0.98+

NetAppORGANIZATION

0.98+

oneQUANTITY

0.98+

nearly 500 customersQUANTITY

0.97+

past year and a halfDATE

0.97+

KubernetesTITLE

0.97+

Global Channels and AlliancesORGANIZATION

0.96+

pandemicEVENT

0.95+

NetApp HCITITLE

0.95+

one thingQUANTITY

0.95+

MarqueeORGANIZATION

0.94+

Cloud NativeORGANIZATION

0.93+

two great guestsQUANTITY

0.91+

DevSecOpsTITLE

0.91+

VMwareORGANIZATION

0.91+

100s of dollarsQUANTITY

0.89+

HCIORGANIZATION

0.87+

end of the year 2020DATE

0.87+

CloudORGANIZATION

0.86+

RanchersORGANIZATION

0.85+

DevOpsTITLE

0.84+

Sheng Liang, Rancher Labs & Murli Thirumale, Portworx | KubeCon + CloudNativeCon Europe - Virtual


 

>>from around the globe. It's the Cube with coverage of Coop con and cloud, native con Europe 2020 Virtual brought to you by Red Hat, The Cloud Native Computing Foundation and its ecosystem partners >>Welcome back. This is the Cube coverage of Cube Con Cloud, native con, the European show for 2020. I'm your host to Minuteman. And when we talk about the container world, we talk about what's happening in cloud. Native storage has been one of those sticking points. One of those things that you know has been challenging, that we've been looking to mature and really happy to welcome back to the program two of our cube alumni to give us the update on the state of storage for the container world. Both of them are oh, founders and CEOs. First of all, we have Xiang Yang from Rancher Labs, of course, was recently acquired by Sue Save it and the intention to acquire on and also joining us from early the relay. Who is with port works? Shang Amerli. Thanks so much for joining us. Thank you. Thank you. Alright. So early. I actually I'm going to start with you just cause you know we've seen, you know, a couple of waves of companies working on storage. In this environment, we know storage is difficult. Um, And when we change how we're building things, there's architectural things that can happen. Eso maybe if you could just give us a snapshot, you know, Port works, you know, was created to help unpack this. You know, straight on here in 2020 you know, where you see things in the overall kind of computer storage landscape? >>Absolutely. Still, before I kind of jump into port works. I just want to take a minute to publicly congratulate the the whole rancher team, and and Shang and Shannon And will China have known those folks for a while there? They're kind of true entrepreneurs. They represent the serial entrepreneur spirit that that so many folks know in the valley, and so, you know, great outcome for them. We're very happy for them and ah, big congrats and shout out to the whole team. What works is is a little over five years old, and we've been kind of right from the inception of the company recognized that to put containers in production, you're gonna have to solve, not just the orchestration problem. But the issue of storage and data orchestration and so in a natural kubernetes orchestrates containers and what works orchestrates storage and data. And more specifically, by doing that, what we enable is enterprises to be able to take APS that are containerized into production at scale and and have high availability. Disaster recovery, backup all of the things that for decades I t has had to do and has done to support application, reliability and availability. But essentially we're doing it for purpose with the purpose build solution for containerized workloads. >>Alright, shaming. Of course, storage is a piece of the overall puzzle that that ranchers trying to help with. Maybe if you could just refresh our audience on Longhorn, which your organization has its open source. It's now being managed by the CN. CF is my understanding. So help us bring Longhorn into the discussion >>thanks to. So I'm really glad to be here. We've I think rancher and port work started about the same time, and we started with a slightly different focus. More is exactly right to get containers going, you really need both so that the computer angle orchestrating containers as well as orchestrating the storage and the data. So rancher started with, ah, it's slightly stronger focus on orchestrating containers themselves, but pretty quickly, we realized, as adoption of containers grow, we really need it to be able to handle ah, storage feather. And like any new technology, you know, uh, Kubernetes and containers created some interesting new requirements and opportunities, and at the time, really, they weren't. Ah, a lot of good technologies available, you know, technologies like rook and SEF at the time was very, very premature, I think, Ah, the You know, we actually early on try to incorporate ah, the cluster technology. And it was just it was just not easy. And And at the time I think port Works was, ah, very busy developing. Ah, what turned out to be there flagship product, which we end up, end up, uh, partnering very, very closely. But but early on, we really had no choice but to start developing our own storage technology. So Long horn. As a piece of container storage technology, it's actually almost as oh, there's rancher itself. When about funding engineers, we hired he he ended up, you know, working on it and Then over the years, you know the focus shift that I think the original version was written in C plus plus, and over the years it's now being completely re written in Golan. It was originally written more for Docker workload. Now, of course, everything is kubernetes centric. And last year we you know, we we decided to donate the Longhorn Open Source project to CN CF. And now it's a CN CF sandbox project, and the adoption is just growing really quickly. And just earlier this year, we we finally ah decided to we're ready to offer a commercial support for it. So So that's that's where rancher is. And with longhorn and container storage technology. >>Yeah, it has been really interesting to watch in this ecosystem. A couple of years ago, one of the Q con shows I was talking to people coming out of the Believe It was the Sigs, the special interest group for storage, and it was just like, Wow, it was heated. Words were, you know, back and forth. There's not a lot of agreement there. Anybody that knows the storage industry knows that you know standards in various ways of doing things often are contentious and there's there's differences of opinion. Look at the storage industry. You know, there's a reason why there's so many different solutions out there. So maybe it love to hear from early. From your standpoint, things are coming to get a little bit more. There are still a number of options out there. So you know, why is this kind of coop petition? I actually good for the industry? >>Yeah, I think this is a classic example of Coop petition. Right? Let's let's start with the cooperation part right? The first part of time the you know, the early days of CN, CF, and even sort of the Google Communities team, I think, was really very focused on compute and and subsequent years. In the last 34 years, there's been a greater attention to making the whole stack works, because that's what it's going to take to take a the enterprise class production and put it in, you know, enterprise class application and put it in production. So extensions like C and I for networking and CS I container storage interface. We're kind of put together by a working group and and ah ah you know both both in the CN CF, but also within the kubernetes Google community. That's you talked about six storage as an example. And, you know, as always happens, right? Like it It looks a little bit in the early days. Like like a polo game, right where folks are really? Ah, you know, seemingly, uh, you know, working with each other on on top of the pool. But underneath they're kicking each other furiously. But that was a long time back, and we've graduated from then into really cooperating. And I think it's something we should all be proud of. Where now the CS I interface is really a A really very, very strong and complete solution tow, allowing communities to orchestrate storage and data. So it's really strengthened both communities and the kubernetes ecosystem. Now the competition part. Let's kind of spend. I want to spend a couple of minutes on that too, right? Um, you know, one of the classic things that people sometimes confuse is the difference between an overlay and an interface. CSC is wonderful because it defines how the two layers off essentially kind of old style storage. You know, whether it's a san or ah cloud, elastic storage bucket or all of those interact with community. So the the definition of that interface kind of lay down some rules and parameters for how that interaction should happen. However, you still always need an overlay like Port Works that that actually drives that interface and enables Kubernetes to actually manage that storage. And that's where the competition is. And, you know, she mentioned stuff and bluster and rook and kind of derivatives of those. And I think those have been around really venerable and and really excellent products for born in a different era for a different time open stack, object storage and all of that not really meant for kind of primary workloads. And they've been they've been trying to be adapted for, for for us, for this kind of workload. Port Works is really a built from right from the inception to be designed for communities and for kubernetes workloads at enterprise scale. And so I think, you know, as I as I look at the landscape, we welcome the fact that there are so many more people acknowledging that there is a vital need for data orchestration on kubernetes right, that that's why everybody and their brother now has a CS I interface. However, I think there's a big difference between having an interface. This is actually having the software that provides the functionality for H. A, D R. And and for backup, as as the kind of life cycle matures and doing it not just at scale, but in a way that allows kind of really significant removal or reduction off the storage admin role and replaces it with self service that is fully automated within communities. Yeah, if I >>can, you know, add something that that I completely agree. I mean, over the Longhorns been around for a long time. Like I said, I'm really happy that over the years it hasn't really impacted our wonderful collaborative partnership with what works. I mean, Poll works has always been one of our premier partners. We have a lot of, ah, common customers in this fight. I know these guys rave about what works. I don't think they'll ever get out for works. Ah, home or not? Uh huh. Exactly. Like Morissette, you know, in the in the storage space, there's interface, which a lot of different implementations can plugging, and that's kind of how rancher works. So we always tell people Rancher works with three types of storage implementations. One is let we call legacy storage. You know, your netapp, your DMC, your pure storage and those are really solid. But they were not suddenly not designed to work with containers to start with, but it doesn't matter. They've all written CS I interfaces that would enable containers to take advantage of. The second type is some of the cloud a block storage or file storage services like EBS, GFS, Google Cloud storage and support for these storage back and the CS I drivers practically come with kubernetes itself, so those are very well supported. But there's still a huge amount of opportunities for the third type of you know, we call container Native Storage. So that is where Port Works and the Longhorn and other solutions like open EBS storage OS. All these guys fitting is a very vibrant ecosystem of innovation going on there. So those solutions are able to create basically reliable storage from scratch. You know, when you from from just local disks and they're actually also able to add a lot of value on top of whatever traditional or cloud based, persistent storage you already have. So so the whole system, the whole ecosystem, is developing very quickly. A lot of these solutions work with each other, and I think to me it's really less of a competition or even Coop petition. It's really more off raising the bar for for the capabilities so that we can accelerate the amount of workload that's been moved onto this wonderful kubernetes platform in the end of the benefit. Everyone, >>Well, I appreciate you both laying out some of the options, you know, showing just a quick follow up on that. I think back if you want. 15 years ago was often okay. I'm using my GMC for my block. I'm using my netapp for the file. I'm wondering in the cloud native space, if we expect that you might have multiple different data engine types in there you mentioned you know, I might want port works for my high performance. You said open EBS, very popular in the last CN CF survey might be another one there. So is do we think some of it is just kind of repeating itself that storage is not monolithic and in a micro service architecture. You know, different environments need different storage requirements. >>Yeah, I mean quick. I love to hear more is view as well, especially about you know, about how the ecosystem is developing. But from my perspective, just just the range of capabilities that's now we expect out of storage vendors or data management vendors is just increased tremendously. You know, in the old days, if you can store blocks to object store file, that's it. Right. So now it's this is just table stakes. Then then what comes after that? There will be 345 additional layers of requirements come all the way from backup, restore the our search indexing analytics. So I really think all of this potentially off or in the in the bucket of the storage ecosystem, and I just can't wait to see how this stuff will play out. I think we're still very, very early stages, and and there, you know what? What, what what containers did is they made fundamentally the workload portable, but the data itself still holds a lot of gravity. And then just so much work to do to leverage the fundamental work load portability. Marry that with some form of universal data management or data portability. I think that would really, uh, at least the industry to the next level. Marie? >>Yeah. Shanghai Bean couldn't. Couldn't have said it better. Right? Let me let me let me kind of give you Ah, sample. Right. We're at about 160 plus customers now, you know, adding several by the month. Um, just with just with rancher alone, right, we are. We have common customers in all common video expedient Roche March X, Western Asset Management. You know, charter communications. So we're in production with a number off rancher customers. What are these customers want? And why are they kind of looking at a a a Port works class of solution to use, You know, Xiang's example of the multiple types, right? Many times, people can get started with something in the early days, which has a CS I interface with maybe say, $10 or 8 to 10 nodes with a solution that allows them to at least kind of verify that they can run the stack up and down with, say, you know, a a rancher type orchestrator, workloads that are containerized on and a network plug in and a storage plugging. But really, once they start to get beyond 20 notes or so, then there are problems that are very, very unique to containers and kubernetes that pop up that you don't see in a in a non containerized environment, right? Some. What are some of these things, right? Simple examples are how can you actually run 10 to hundreds of containers on a server, with each one of those containers belonging to a different application and having different requirements? How do you actually scale? Not to 16 nodes, which is sort of make typically, maybe Max of what a San might go to. But hundreds and thousands of notes, like many of our customers, are doing like T Mobile Comcast. They're running this thing at 600 thousands of notes or scale is one issue. Here is a critical critical difference that that something that's designed for Kubernetes does right. We are providing all off the storage functions that Shang just described at container granted, granularity versus machine granularity. One way to think about this is the old Data center was in machine based construct. Construct everything you know. VM Ware is the leader, sort of in that all of the way. You think of storage as villains. You think of compute and CPUs, everything. Sub sub nets, right? All off. Traditional infrastructure is very, very machine centric. What kubernetes and containers do is move it into becoming an app defined control plane, right? One of the things were super excited about is the fact that Kubernetes is really not just a container orchestrator, but actually a orchestrator for infrastructure in an app defined way. And by doing that, they have turned, uh, you know, control off the infrastructure via communities over to a kubernetes segment. The same person who uses rancher uses port works at NVIDIA, for example to manage storage as they use it, to manage the compute and to manage containers. And and that's marvellous, because now what has happened is this thing is now fully automated at scale and and actually can run without the intervention off a storage admin. No more trouble tickets, right? No more requests to say, Hey, give me another 20 terabytes. All of that happens automatically with the solution like port works. And in fact, if you think about it in the world of real time services that we're all headed towards right Services like uber now are expected in enterprises machine learning. Ai all of these things analytics that that change talk about are things that you expect to run in a fully automated way across vast amounts of data that are distributed sometimes in the edge. And you can't do that unless you're fully automated and and not really the storage admin intervention. And that's kind of the solution that we provide. >>Alright, well, we're just about out of time. If I could just last piece is, you know, early and saying to talk about where we are with long for and what we should expect to see through the rest of this year and get some early for you to you know, what differentiates port works from Just, you know, the open source version. So And maybe if we start with just kind of long or in general and then really from from your standpoint, >>yeah, so it's so so the go along one is really to lower the bar for folks to run state for workloads on on kubernetes we want you know, the the Longhorn is 100% open source and it's owned by CN cf now. So we in terms of features and functionalities is obviously a small subset of what a true enterprise grade solution like Port Works or, um, CEO on that that could provide. So there's just, you know, the storage role. Ah, future settle. The roadmap is very rich. I don't think it's not really Ranchers go Oh, our Longhorns goal to, you know, to try to turn itself into a into a plug in replacement for these enterprise, great storage or data management solutions. But But they're you know, there's some critical critical feature gaps that we need address. And that's what the team is gonna be focusing on, perhaps for the rest of the year. >>Yeah, uh, still, I would I would kind of, you know, echo what Chang said, right? I think folks make it started with solutions, like longer or even a plug in connector plug in with one of their existing storage vendors, whether it's pure netapp or or EMC from our viewpoint, that's wonderful, because that allows them to kind of graduate to where they're considering storage and data as part of the stack. They really should that's the way they're going to succeed by by looking at it as a whole and really with, You know, it's a great way to get started on a proof of concept architecture where your focus initially is very much on the orchestration and the container ization part. But But, as Xiang pointed out, you know what what rancher did, what I entered it for Kubernetes was build a simple, elegant, robust solution that kind of democratized communities. We're doing the same thing for communities storage right? What Port works does is have a solution that is simple, elegant, fully automated, scalable and robust. But more importantly, it's a complete data platform, right? We we go where all these solutions start, but don't kind of venture forward. We are a full, complete lifecycle management for data across that whole life cycle. So there's many many customers now are buying port works and then adding deal right up front, and then a few months later they might come back and I'd backup from ports. So two shanks point right because of the uniqueness of the kubernetes workload, because it is an app defined control plane, not machine to find what is happening is it's disrupting, Just like just like virtualization day. VM exist today because because they focused on a VM version off. You know, the their backup solution. So the same thing is happening. Kubernetes workloads are district causing disruption of the D r and backup and storage market with solutions like sports. >>Wonderful. Merlin Chang. Thank you so much for the updates. Absolutely. The promise of containers A Z you were saying? Really, is that that Atomic unit getting closer to the application really requires storage to be a full and useful solution. So great to see the progress that's being made. Thank you so much for joining us. >>Welcome, Shannon. We look forward to ah, working with you as you reach for the stars. Congratulations again. We look >>forward to the containing partnership morally and thank you. Still for the opportunity here. >>Absolutely great talking to both of you And stay tuned. Lots more coverage of the Cube Cube Con cloud, native con 2020 Europe. I'm stew minimum. And thank you for watching the Cube. Yeah, yeah, yeah, yeah, yeah, yeah

Published Date : Aug 18 2020

SUMMARY :

and cloud, native con Europe 2020 Virtual brought to you by Red Hat, I actually I'm going to start with you just cause you know we've seen, of the things that for decades I t has had to do and has done to Of course, storage is a piece of the overall puzzle that that ranchers trying to help Ah, a lot of good technologies available, you know, Anybody that knows the storage industry knows that you know standards in various ways And so I think, you know, the third type of you know, we call container Native Storage. I think back if you want. I love to hear more is view as well, especially about you know, And that's kind of the solution that we provide. the rest of this year and get some early for you to you know, to run state for workloads on on kubernetes we want you know, causing disruption of the D r and backup and storage market with solutions like sports. Thank you so much for the updates. We look forward to ah, working with you as you reach for the stars. Still for the opportunity here. Absolutely great talking to both of you And stay tuned.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Red HatORGANIZATION

0.99+

$10QUANTITY

0.99+

hundredsQUANTITY

0.99+

Rancher LabsORGANIZATION

0.99+

Shang AmerliPERSON

0.99+

NVIDIAORGANIZATION

0.99+

2020DATE

0.99+

ShannonPERSON

0.99+

uberORGANIZATION

0.99+

Western Asset ManagementORGANIZATION

0.99+

last yearDATE

0.99+

BothQUANTITY

0.99+

20 terabytesQUANTITY

0.99+

CN CF.ORGANIZATION

0.99+

20 notesQUANTITY

0.99+

MariePERSON

0.99+

MorissettePERSON

0.99+

bothQUANTITY

0.99+

100%QUANTITY

0.99+

T Mobile ComcastORGANIZATION

0.99+

one issueQUANTITY

0.99+

Xiang YangPERSON

0.99+

firstQUANTITY

0.99+

10QUANTITY

0.99+

8QUANTITY

0.99+

OneQUANTITY

0.98+

Sheng LiangPERSON

0.98+

second typeQUANTITY

0.98+

C plus plusTITLE

0.98+

ChangPERSON

0.98+

KubeConEVENT

0.98+

XiangPERSON

0.98+

Sue SavePERSON

0.98+

15 years agoDATE

0.98+

GoogleORGANIZATION

0.98+

longhornORGANIZATION

0.97+

ShangPERSON

0.97+

two layersQUANTITY

0.97+

earlier this yearDATE

0.97+

LonghornORGANIZATION

0.97+

oneQUANTITY

0.97+

Roche March XORGANIZATION

0.97+

345 additional layersQUANTITY

0.97+

GMCORGANIZATION

0.97+

16 nodesQUANTITY

0.96+

CN cfORGANIZATION

0.96+

third typeQUANTITY

0.96+

each oneQUANTITY

0.96+

about 160 plus customersQUANTITY

0.95+

a few months laterDATE

0.95+

both communitiesQUANTITY

0.94+

FirstQUANTITY

0.94+

over five years oldQUANTITY

0.94+

CN CFORGANIZATION

0.93+

EBSORGANIZATION

0.93+

three typesQUANTITY

0.93+

twoQUANTITY

0.93+

600 thousands of notesQUANTITY

0.93+

Merlin ChangPERSON

0.93+

SigsORGANIZATION

0.92+

hundreds of containersQUANTITY

0.91+

One wayQUANTITY

0.91+

The Cloud Native Computing FoundationORGANIZATION

0.9+

this yearDATE

0.89+

CoopORGANIZATION

0.89+

EuropeLOCATION

0.89+

Port WorksORGANIZATION

0.89+

CloudNativeCon EuropeEVENT

0.88+

CubeCOMMERCIAL_ITEM

0.87+

CSCTITLE

0.87+

A couple of years agoDATE

0.86+

Coop conORGANIZATION

0.86+

KubernetesTITLE

0.86+

PortworxORGANIZATION

0.86+

six storageQUANTITY

0.85+

todayDATE

0.84+

rancherORGANIZATION

0.84+

Cube ConCOMMERCIAL_ITEM

0.84+

GolanTITLE

0.83+

Port WorksORGANIZATION

0.82+

10 nodesQUANTITY

0.82+

Sheng Liang, Rancher Labs | CUBE Conversation, July 2020


 

>> Announcer: From theCUBE studios in Palo Alto and Boston, connecting with thought leaders all around the world, this is a CUBE Conversation. >> Hi, I'm Stu Miniman coming to you from our Boston area studio and this is a special CUBE Conversation, we always love talking to startups around the industry, understanding how they're creating innovation, doing new things out there, and oftentimes one of the exits for those companies is they do get acquired, and happy to welcome back to the program one of our CUBE alumni, Sheng Liang, he is the cofounder and CEO of Rancher, today there was an announcement for a definitive acquisition of SUSE, who our audience will know well, we were at SUSECON, so Sheng, first of all, thank you for joining us, and congratulations to you and the team on joining SUSE here in the near future. >> Thank you, Stu, I'm glad to be here. >> All right, so Sheng, why don't you give our audience a little bit of context, so I've known Rancher since the very early days, I knew Rancher before most people had heard the word Kubernetes, it was about containerization, it was about helping customers, there was that cattles versus pets, so that Rancher analogy was, hey, we're going to be your rancher and help you deal with that sprawl and all of those pieces out there, where you don't want to know them by name and the like, so help us understand how what was announced today is meeting along the journey that you set out for with Rancher. >> Absolutely, so SUSE is the largest independent opensource software company in the world, and they're a leader in enterprise Linux. Today they announced they have signed a definitive agreement to acquire Rancher, so we started Rancher about six years ago, as Stu said, to really build the next generation enterprise compute platform. And in the beginning, we thought we're going to just base our technology based on Docker containers, but pretty soon Kubernetes was just clearly becoming an industry standard, so Rancher actually became the most widely used enterprise Kubernetes platform, so really with the combination of Rancher and SUSE going forward, we're going to be able to supply the enterprise container platform of choice for lots and lots of customers out there. >> Yeah, just for our audience that might not be as familiar with Rancher, why don't you give us your position in where we are with the Kubernetes landscape, I've talked about many times on theCUBE, a few years ago it was all about "Hey, are we going to have some distribution war?" Rancher has an option in that space, but today it's multicloud, Rancher works with all of the cloud Kubernetes versions, so what is it that Rancher does uniquely, and of course as you mentioned, opensource is a key piece of what you're doing. >> Exactly, Stu, thanks for the question. So this is really a good lead-up into describing what Rancher does, and some of the industry dynamics, and the great opportunity we see with SUSE. So many of you, I'm sure, have heard about Kubernetes, Kubernetes is this container orchestration platform that basically works everywhere, and you can deploy all kinds of applications, and run these applications through Kubernetes, it doesn't really matter, fundamentally, what infrastructure you use anymore, so the great thing about Kubernetes is whether you deploy your apps on AWS or on Azure, or on on-premise bare metal, or vSphere clusters, or out there in IoT gateways and 5G base stations and surveillance cameras, literally everywhere, Kubernetes will run, so it's, in our world I like to think about Kubernetes as the standard for compute. If you kind of make the analogy, what's the standard of networking, that's TCPIP, so networking used to be very different, decades ago, there used to be different kinds of networking and at best you had a local area network for a small number of computers to talk to each other, but today with TCPIP as a standard, we have internet, we have Cisco, we have Google, we have Amazon, so I really think as successful as cloud computing has been, and how much impact it has had to actually push digital transformation and app modernization forward, a lot of organizations are kind of stuck between their desire to take advantage of a cloud provider, one specific cloud provider, all the bells and whistles, versus any cloud provider, not a single cloud provider can actually supply infrastructure for everything that a large enterprise would need. You may be in a country, you may be in some remote locations, you may be in your own private data center, so the market really really demands a standard form of compute infrastructure, and that turned out to be Kubernetes, that is the true, Kubernetes started as a way Google internally ran their containers, but what it really hit the stride was a couple years ago, people started realizing for once, compute could be standardized, and that's where Rancher came in, Rancher is a Kubernetes management platform. We help organizations tie together all of their Kubernetes clusters, regardless where they are, and you can see this is a very natural evolution of organizations who embark on this Kubernetes journey, and by definition Rancher has to be open, because who, this is such a strategic piece of software, who would want their single point of control for all compute to be actually closed and proprietary? Rancher is 100% opensource, and not only that, Rancher works with everyone, it really doesn't matter who implements Kubernetes for you, I mean Rancher could implement Kubernetes for you, we have a Kubernetes distro as well, we actually have, we're particularly well-known for Kubernetes distro design for resource constrained deployments on the edge, called K3S, some of you might have heard about it, but really, we don't care, I mean we work with upstream Kubernetes distro, any CNCF-compliant Kubernetes distro, or one of many many other popular cloud hosted Kubernetes services like EKS, GKE, AKS, and with Rancher, enterprise can start to treat all of these Kubernetes clusters as fungible resources, as catalysts, so that is basically our vision, and they can focus on modernizing their application, running their application reliably, and that's really what Rancher's about. >> Okay, so Sheng, being acquired by SUSE, I'd love to hear a little bit, what does this mean for the product, what does it mean for your customers, what does it mean for you personally? According to Crunchbase, you'd raised 95 million dollars, as you said, over the six years. It's reported by CNBC, that the acquisition's in the ballpark of 600 to 700 million, so that would be about a 6X increment over what was invested, not sure if you can comment on the finances, and would love to hear what this means going forward for Rancher and its ecosystem. >> Yeah, actually, I know there's tons of rumors going around, but the acquisition price, SUSE's decided not to disclose the acquisition price, so I'm not going to comment on that. Rancher's been a very cash-efficient business, there's been no shortage of funding, but even amounts to 95 million dollars that we raised, we really haven't spent majority of it, we probably spent just about a third of the money we raised, in fact our last run to fundraise was just three, four month ago, it was a 40 million dollar series D, and we didn't even need that, I mean we could've just continued with the series C money that we raised a couple years ago, which we barely started spending either. So the great thing about Rancher's business is because we're such a product-driven company, with opensource software, you develop a unique product that actually solves a real problem, and then there's just no barrier to adoption, so this stuff just spreads organically, people download and install, and then they put it in mission-critical production. Then they seek us out for commercial subscription, and the main value they're getting out of commercial subscription is really the confidence that they can actually rely on the software to power their mission-critical workload, so once they really start using Rancher, they recognize that Rancher as an organization provide, so this business model's worked out really well for us. Vast majority of our deals are based on inbound leads, and that's why we've been so efficient, and that's I think one of the things that really attracted SUSE as well. It's just, these days you don't just want a business that you have to do heavy weight, heavy duty, old fashioned enterprise (indistinct), because that's really expensive, and when so much of that value is building through some kind of a bundling or locking, sooner or later customers know better, right? They want to get away. So we really wanted to provide a opensource, and open, more important than opensource is actually open, lot of people don't realize there are actually lots of opensource software even in the market that are not really quite open, that might seem like a contradiction, but you can have opensource software which you eventually package it in a way, you don't even make the source code available easily, you don't make it easy to rebuild the stuff, so Rancher is truly open and opensource, people just download opensource software, run it in the day they need it, our Enterprise subscription we will support, the day they don't need it, they will actually continue to run the same piece of software, and we'd be happy to continue to provide them with patches and security fixes, so as an organization we really have to provide that continuous value, and it worked out really well, because, this is such a important piece of software. SUSE has this model that I saw on their website, and it really appeals to us, it's called the power of many, so SUSE, turns out they not only completely understand and buy into our commitment to open and opensource, but they're completely open in terms of supporting the whole ecosystem, the software stack, that not only they produce, but their partners produce, in many cases even their competitors produce, so that kind of mentality really resonated with us. >> Yeah, so Sheng, you wrote in the article announcing the acquisition that when the deal closes, you'll be running engineering and innovation inside of SUSE, if I remember right, Thomas Di Giacomo has a similar title to that right now in SUSE, course Melissa Di Donato is the CEO of SUSE. Of course the comparison that everyone will have is you are now the OpenShift to SUSE. You're no stranger to OpenShift, Rancher competes against RedHat OpenShift out on the market. I wonder if you could share a little bit, what do you see in your customer base for people out there that says "Hey, how should I think of Rancher "compared to what RedHat's been doing with OpenShift?" >> Yeah, I mean I think RedHat did a lot of good things for opensource, for Linux, for Kubernetes, and for the community, OpenShift being primarily a Kubernetes distro and on top of that, RedHat built a number of enhanced capabilities, but at the end of the day, we don't believe OpenShift by itself actually solves the kind of problem we're seeing with customers today, and that's why as much investment has gone into OpenShift, we just see no slowdown, in fact an acceleration of demand of Rancher, so we don't, Rancher always thrived by being different, and the nice thing about SUSE being a independent company, as opposed to a part of a much larger organization like RedHat, is where we're going to be as an organization 100% focused on bringing the best experience to customers, and solve customers' business problems, as they transform their legacy application suite into cloud-native infrastructure. So I think the opportunity is so large, and there's going to be enough market there for multiple players, but we measure our success by how many people, how much adoption we're actually getting out of our software, and I said in the beginning, Rancher is the most widely used enterprise Kubernetes platform, and out of that, what real value we're delivering to our customers, and I think we solve those problems, we'll be able to build a fantastic business with SUSE. >> Excellent. Sheng, I'm wondering if we could just look back a little bit, you're no stranger to acquisitions, remember back when Cloud.com was acquired by Citrix, back when we had the stack wars between CloudStack and OpenStack and the like, I'm curious what lessons you learned having gone through that, that you took away, and prepared you for what you're doing here, and how you might do things a little bit differently, with the SUSE acquisition. >> Yeah, my experience with Cloud.com acquired by Citrix was very good, in fact, and a lot of times, you really got to figure out a way to adapt to actually make sure that Rancher as a standalone business, or back then, Cloud.com was a standalone business, how are they actually fitting to the acquirer's business as a whole? So when Cloud.com was acquired, it was pretty clear, as attractive as the CloudStack business was, really the bigger prize for Citrix was to actually modernize and cloudify their desktop business, which absolutely was like a two billion dollar business, growing to three billion dollars back then, I think it's even bigger now, with now everyone working remote. So we at Citrix, we not only continued to grow the CloudStack business, but more importantly, one of the things I'm the most proud of is we really played up a crucial role in modernizing and cloudifying the Citrix mainline business. So this time around, I think the alignment between what Rancher does and what SUSE does is even more apparent, obviously, until the deal actually closes, we're not really allowed to actually plan or execute on some of the integration synergies, but at a higher level, I don't see any difficulty for SUSE to be able to effectively market, and service their global base of customers, using the Rancher technology, so it's just the synergy between Kubernetes and Linux is just so much stronger, and in some sense, I think I've used this term before, Kubernetes is almost like the new Linux, so it just seems like a very natural place for SUSE to evolve into anyway, so I'm very very bullish about the potential synergy with the acquisition, I just can't wait to roll up my hands and get going as soon as the deal closes. >> All right, well Sheng, thank you so much for joining us, absolutely from our standpoint, we look at it, it's a natural fit of what Rancher does into SUSE, as you stated. The opensource vision, the community, and customer-focused absolutely align, so best of luck with the integration, looking forward to seeing you when you have your new role and hearing more about Rancher's journey, now part of SUSE. Thanks for joining us. >> Thank you Stu, it's always great talking to you. >> All right, and be sure, we'll definitely catch up with Rancher's team at the KubeCon + CloudNativeCon European show, which is of course virtual, as well as many other events down the road. I'm Stu Miniman, and thank you for watching theCUBE.

Published Date : Jul 8 2020

SUMMARY :

leaders all around the world, and oftentimes one of the is meeting along the journey And in the beginning, we and of course as you mentioned, and the great opportunity that the acquisition's in the ballpark and the main value they're getting is the CEO of SUSE. and for the community, CloudStack and OpenStack and the like, and cloudifying the looking forward to seeing you always great talking to you. events down the road.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
CitrixORGANIZATION

0.99+

Melissa Di DonatoPERSON

0.99+

Thomas Di GiacomoPERSON

0.99+

CiscoORGANIZATION

0.99+

Sheng LiangPERSON

0.99+

SUSEORGANIZATION

0.99+

Stu MinimanPERSON

0.99+

CNBCORGANIZATION

0.99+

100%QUANTITY

0.99+

three billion dollarsQUANTITY

0.99+

RancherORGANIZATION

0.99+

Palo AltoLOCATION

0.99+

BostonLOCATION

0.99+

ShengPERSON

0.99+

AmazonORGANIZATION

0.99+

Sheng LiangPERSON

0.99+

600QUANTITY

0.99+

GoogleORGANIZATION

0.99+

95 million dollarsQUANTITY

0.99+

July 2020DATE

0.99+

StuPERSON

0.99+

KubeConEVENT

0.99+

TodayDATE

0.99+

oneQUANTITY

0.99+

two billion dollarQUANTITY

0.99+

CrunchbaseORGANIZATION

0.98+

700 millionQUANTITY

0.98+

Rancher LabsORGANIZATION

0.98+

RedHatORGANIZATION

0.98+

KubernetesTITLE

0.98+

OpenShiftTITLE

0.98+

AWSORGANIZATION

0.98+

LinuxTITLE

0.97+

SUSECONORGANIZATION

0.97+

CloudStackTITLE

0.96+

todayDATE

0.96+

four month agoDATE

0.96+

CUBEORGANIZATION

0.96+

decades agoDATE

0.96+

Sheng Liang, Rancher Labs | KubeCon + CloudNativeCon 2019


 

>> Announcer: Live from San Diego, California, it's theCUBE covering KubeCon and CloudNativeCon. Brought to you by RedHat, the CloudNative Computing Foundation, and its ecosystem partners. >> Stu: Welcome back to theCUBE, I'm Stu Miniman. My cohost for three days of coverage is John Troyer. We're here at KubeCon CloudNativeCon in San Diego, over 12,000 in attendance and happy to welcome back a CUBE alumni and veteran of generations of the stacks that we've seen come together and change over the time, Sheng Liang, who is the co-founder and CEO of Rancher Labs. Thanks so much, great to see you. >> Shang: Thank you Stuart, is very glad to be here. >> All right, so you know Kubernetes, flash to the pan nobody's all that excited about it. I mean, we've seen all these things come and go over the years, Sheng. No but seriously, the excitement is palpable. Every year, you know, so many more people, so many more projects, so much more going on. Help set the stage for you, as to what you see and the importance today of kind of CloudNative in general and you know, this ecosystem specifically. >> Yeah you're so right though, Stuart. Community as a whole and Kubernetes has really come a long way. In the early days, Kubernetes was a uh, you know, somewhat of a technical community, lot of Linux people. But not a whole lot of end users. Not a whole lot of Enterprise customers. I walk in today and just the kind of people I've met, I've probably talked to fifty people already who are just really at the beginning of the show and uh there's a very very large number Enterprise customers. And this does feel like Kubernetes has crossed the chasm and headed in to the mainstream Enterprise market. >> Yeah it's interesting you know I've talked to you know plenty of the people here probably if you brought up things like OpenStack and CloudStack they wouldn't even know what we were talking about. The wave of containerization really seemed to spread far and wide. At Rancher you've done some surveys, give us some of the insight. What are you seeing? You've talked to plenty of customers. Give us where we are with the maturity. >> Definitely, definitely. Enterprise Kubernetes adoption is ready for prime time. You know the So what we're really seeing is some of the early challenges a few years ago a lot of people were having problems with just installing Kubernetes. They were literally just making sure to get people educated about container as a concept. Those have been overcome. Now, uh, we're really facing next generation of growth. And people solve these days solve problems like how do I get my new applications onboarding to Kubernetes. How do I really integrate Kubernetes into my multicloud and hybrid-Cloud strategy? And as Enterprise's need to perform computing in places beyond just the data centers and the cloud, we're also seeing tremendous amount of interest in running Kubernetes on the Edge. So those are some of the major findings of our survey. >> John: That's great. So Sheng I'd love for you to kind of elaborate or elaborate for us where Rancher fits into this. Right. Rancher is, you've been around, you've a mature stack of technology and also some new announcements today so I'd kind of love for you to kind of tell us how you fit in to that landscape you just described. >> Absolutely. This is very exciting and very very fast changing industry. So one of the things that Rancher is able to play very well is we're really able to take work with the community, take the latest and greatest open source technology and actually develop open source products on top this and make that technology useful and consumable for Enterprise at large. So the way we see it, to make Kubernetes work we really need to solve problems at three levels. At the lowest level, the industry need at lot of compliant and compatible certified Kubernetes distros and services. So that's table stakes now. Rancher is a leader in providing CNCF certified Kubernetes distro. We actually provide two of them. One of them is called RKE - Rancher Kubernetes Engine. Something we've been doing it for years. It's really one of the easiest to use and most widely deployed Kubernetes distributions. But we don't force our customers to only use our Kubernetes distribution. Rancher customers can use whatever CNCF certified Kubernetes distribution or Kubernetes services they want. So a lot of our customers use RKE(Rancher Kubernetes Engine) but they also use, when they go to the cloud, they use cloud hosted Kubernetes Services like GKE and EKS. There are really a lot of advantages in using those because cloud providers will help you run these Kubernetes clusters for free. And in many cases they even throw in the infrastructure it takes to run the Kubernetes masters and etcd databases for free. If you're in the cloud, there's really no reason not to be using these Kubernetes services. Now there's one area that Rancher ended up innovating at the Kubernetes distros, despite having these data center focus and cloud focus Kubernetes distros and services. And that is one of our, one of the two big announcements today. And that's called K3S. K3S is a great open source project. It's probably one of the most exciting open source projects in the Kubernetes ecosystem today. And what we did with K3S is we took Kubernetes that's been proven in data center and cloud and we brought it everywhere. So with K3S you can run Kubernetes on a Raspberry Pi. You can run Kubernetes in a surveillance camera. You can run Kubernetes in an ATM machine. You know, we have customers trying to run now Kubernetes in a uh, factory floor. So it really helps us realize our vision of Kubernetes as a new Linux and you run it everywhere. >> Well that's great 'cause you talk about that simplicity that we need and if you start talking about Edge deployment, I don't have the people, I don't have the skillset, and a lot times I don't have the gear, uh, to run that. So you know, help connect the dots as to you know, what led Rancher to do the K3S piece of it and you know, what did we take out? Or what's the differences between K8S and the K3S? >> That's a great question, you know. Even the name "K3S" is actually somewhat a wordplay on K8S You know we kind of cut half of 8 away and you're left with 3. It really happened with some of our early traction we sawing some customers. I remember, in retrospect it wasn't really that long ago. It was like middle of last year, we saw a blog coming out of Chick-fil-A and a group of technical enthusiasts were experimenting with actually running uh, Kubernetes in very, in like Intel Nook servers. You know, they were talking about potentially running three of those servers in every one of their stores and at the time they were using RKE and Rancher Kubernetes Engine to do that. And they run into a lot of issues. I mean to be honest if you think about running Kubernetes in the cloud in the database center, uh these servers have a lot of resources and you also have a dedicated operations teams. You have an SRE to manage them, right? But when you really bring it out into branch offices and Edge computing locations, now all of the sudden, number one, these uh, the software now has to take a lot less resource but also you don't really have SREs monitoring them every day anymore. And you, since these, Kubernetes distro really has to be zero touch and it has to run just like a, you know like a embedded window or Linux server. And that's what K3S was able to accomplish, we were able to really take away lot of the baggage that came with having all the drivers that were necessary to run Kubernetes in the cloud and we were also able to dramatically simplify what it takes to actually start Kubernetes and operate it. >> So unsolicited, I was doing an event right before this one and I asked some people what they looking forward to here at KubeCon. And independently, two different people said, "The thing I'm most excited about is K3S." And I think it's because it's the right slice through Kubernetes. I can run it in my lab. I can run it on my laptop. I can on a stack of Raspberry Pis or Nooks, but I could also run it in production if I, you know I can scale it up >> Stu: Yeah. >> John: And in fact they both got a twinkle in their eye and said well what if this is the future of Kubernetes, like you could take this and you could run it, you know? They were very excited about it. >> Absolutely! I mean, you know, I really think, you know, as a company we survive by, and thrive by delivering the kind of innovation that pushes the market forward right? I mean, we, otherwise people are not going to look at Rancher and say you guys are the originators of Kubernetes technology. So we're very happy to be able to come up with technologies like K3S that effectively greatly broadened the addressable market for everyone. Imagine you were a security vendor and before like all you really got to do is solving security problems. Or if you were a monitoring vendor you were able to solve monitoring problems for a data center and in the cloud. Now with K3S you end up getting to solve the same problems on the Edge and in branch offices. So that's why so many people are so excited about it. >> All right so Sheng you said K3S is one of the announcements this week, what's the rest of the news? >> Yeah so K3S, RKE, and all the GKE, AKS, EKS, they're really the fundamental layer of Kubernetes everywhere. Then on top of that one of the biggest piece of innovation that Rancher labs created is the idea of multi-cluster management. A few years ago it was pretty much of a revolutionary concept. Now it's widely understood. Of course an organization is not going to have just one cluster, they're going to have many clusters. So Rancher is the industry leader for doing multi-cluster management. And these clusters could span clouds, could span data centers, now all the way out to branch offices and the Edge. So we're exhibiting Rancher on the show floor. Everyone, most people I've met here, they know Rancher because of that flash of product. Now our second announcement though is yet another level above Rancher, so what we've seen is in order to really Kubernetes to achieve the next level of adoption in the Enterprise we're seeing you know some of the development teams and especially the less skilled dev ops teams, they're kind of struggling with the learning curve of Kubernetes and also some of the associated technologies around service mesh around Knative, around, you know, CICD, so we created a project called Rio, as in Rio de Janeiro the city. And the nice thing about Rio is it packaged together all these Cloud Native technologies and then we created very easy to use, very simple to understand user experience for developers and dev ops teams. So they no longer have to start with the training course on Kubernetes, on Istio, on Knative, on Tekton, just to get productive. They can pretty much get productive on day one. So that Rio project has hit a very important milestone today, we shipped the beta release for it and we're exhibiting it at the booth as well. >> Well that's great. You know, the beta release of Rio, pulling together a lot of these projects. Can you talk about some folks that, early adopters that have been using them or some folks that have been working with the project? >> Sheng: Yeah absolutely. So I talk about some of the early adoption we're seeing for both K3S and Rio. Uh, what we see the, first of all just the market reception of K3S, as you said, has been tremendous. Couple of even mentioned to you guys today in your earlier interviews. And it is primarily coming from customers who want to run Kubernetes in places you probably haven't quite anticipated before, so I kind of give you two examples. One is actually appliance manufacture. So if you think they used to ship appliances, then you can imagine these appliances come with Linux and they would image their appliance with an OS image with their applications. But what's happening is these applications are becoming so sophisticated they're now talking about running the entire data analytics stack and AI software. So it actually takes Kubernetes not necessarily, because it's one server in a situation of appliance. Kubernetes is not really managing a cluster, but it's managing all the application components and microservices. So they ended up bundling up K3S into their appliance. This is one example. Another example is actually an ISV, that's a very interesting use case as well. So uh, they ship a micro service based application software stack and again their software involves a lot of different complicated components. And they decided to replatform their software on Kubernetes. We've all heard a lot of that! But in their case they have to also ship, they don't just run the software themselves, they have to ship the software to the end users. And most of their end users are not familiar with Kubernetes yet, right? And they don't really want to say, to install our software you go provision the Kubernetes cluster and then you operate it from now on. So what they did is they took K3S and bundled into their application as if it were an application server, almost like a modern day WebLogic and WebSphere, then they shipped the whole thing to their customers. So I thought both of these use cases are really interesting. It really elevates the reach of Kubernetes from just being almost like a cloud platform in the old days to now being an application server. And then I'll also quickly talk about Rio. A lot of interest inside Rio is around really dev ops teams who've had, I mean, we did a survey early on and we found out that a lot of our customers they deploy Kubernetes in services. But they end up building a custom experience on top of their Kubernetes deployment, just so that most of their internal users wouldn't have to take a course on Kubernetes to start using it. So they can just tell that this thing that, this is where my source code is and then every thing from that point on will be automated. So now with Rio they wouldn't have to do that anymore. Effectively Rio is the direct source to URL type of, one step process. And they are able to adopt Rio for that purpose. >> So Sheng, I want to go back to when we started this conversation. You said, you know, the ecosystem growing. That not only, you know, so many vendors here, 129 end users, members of the CNCF. The theme we've been talking about is to really, you know, it's ready for production and people are all embracing it. But to get the vast majority of people, simplicity really needs to come front and center, I think. K3S really punctuates that. What else do we need to do as an ecosystem, you know, Rancher is looking to take a leadership position and help drive this, but what else do you want to see from your peers, the community, overall to help drive this to the promise that it could deliver. >> We really see the adoption of Kubernetes is probably going to wing at three, I mean. We see most organizations go through this three step journey. The first step is you got to install and operate Kubernetes. You know, day one, day two. And I think we've got it down. With K3S it becomes so easy. With GKE it becomes one API call or one simple UI interaction. And CNCS has really stepped up and created a great, you know, compliance certification program, right? So we're not seeing the kind of fragmentation that we saw with some of the other technologies. This is fantastic. Then the second step we see is, which a lot of our customers are going through now, is now you have all the Kubernetes clusters coming from different clouds, different infrastructure, potentially on the Edge. You have a management problem. Now you all of the sudden because we made Kubernetes clusters so easy to obtain you can potentially have a sprawl. If you are not careful you might leave them misconfigured. That could expose a security issue. So really it takes Rancher, it takes our ecosystem partners, like Twistlock, like Aqua. CICD partners, like CloudBees, GitLab. Just everyone really needs to come together, make that, solve that management problem. So not only, uh, you build this Kubernetes infrastructure but then you actually going to get a lot of users and they can use the cluster securely and reliably. Then I think the third step, which I think a lot of work still remain is we really want to focus on growing the footprint of workload, of enterprise workload, in the enterprise. So there the work is honestly just getting started. Anywhere from uh, if you walk into any enterprise you know what percentage of their total workload is running on Kubernetes today? I mean outside of Google and Uber, that percentage is probably very small, right? They're probably in the minority, maybe even in single digit percentage. So, we really need to do a lot of work. You know, we need to uh, Rancher created this project called LongHorn and we also work with a lot of our ecosystem partners in persistence storage area like Portworx, StorageOS, OpenEBS. Lot of us really need to come together and solve this problem of running persistent workload. I mean there was also a lot of talk about it at the keynote this morning, I was very encouraged to hear that. That could easily double, triple the amount of workload that could bring, that could be onboarded into Kubernetes and even experiences like Rio, you know? Make it further simpler, more accessible. That is really in the DNA of Rancher. Rancher wouldn't be surviving and thriving without our insight into how to make our technology consumable and widely adopted. So a lot of work we're doing is really to drive the adoption of Kubernetes in the enterprise beyond, you know, the current state and into something I really don't see in the future, Kubernetes wouldn't be as actually widely used as say AWS or vSphere. That would be my bar for success. Hopefully in a few years we can be talking about that. >> All right, that is a high bar Sheng. We look forward to more conversations with you going forward. Congratulations on the announcement. Great buzz on K3S, and yeah, thanks so much for joining us. >> Thank you very much. >> For John Troyer, I'm Stu Miniman, back with lots more coverage here from KubeCon CloudNativeCon 2019 in San Diego, you're watching theCUBE. [Upbeat music]

Published Date : Nov 19 2019

SUMMARY :

Brought to you by RedHat, Thanks so much, great to see you. and you know, this ecosystem specifically. In the early days, Kubernetes was a uh, you know, plenty of the people here probably if you brought up in running Kubernetes on the Edge. to that landscape you just described. So one of the things that Rancher is able to play very well So you know, help connect the dots as to you know, I mean to be honest if you think about running Kubernetes you know I can scale it up like you could take this and you could run it, you know? and before like all you really got to do So they no longer have to start with the training course You know, the beta release of Rio, just the market reception of K3S, as you said, What else do we need to do as an ecosystem, you know, and created a great, you know, with you going forward. back with lots more coverage here from

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
JohnPERSON

0.99+

John TroyerPERSON

0.99+

Stu MinimanPERSON

0.99+

StuartPERSON

0.99+

GoogleORGANIZATION

0.99+

UberORGANIZATION

0.99+

CloudNative Computing FoundationORGANIZATION

0.99+

Rio de JaneiroLOCATION

0.99+

ShangPERSON

0.99+

Rancher LabsORGANIZATION

0.99+

Sheng LiangPERSON

0.99+

129 end usersQUANTITY

0.99+

fifty peopleQUANTITY

0.99+

San Diego, CaliforniaLOCATION

0.99+

RancherORGANIZATION

0.99+

San DiegoLOCATION

0.99+

second stepQUANTITY

0.99+

ShengPERSON

0.99+

bothQUANTITY

0.99+

third stepQUANTITY

0.99+

oneQUANTITY

0.99+

two examplesQUANTITY

0.99+

StuPERSON

0.99+

KubeConEVENT

0.99+

second announcementQUANTITY

0.99+

RedHatORGANIZATION

0.99+

GitLabORGANIZATION

0.99+

KubernetesTITLE

0.99+

CUBEORGANIZATION

0.99+

CNCFORGANIZATION

0.99+

AWSORGANIZATION

0.98+

first stepQUANTITY

0.98+

IntelORGANIZATION

0.98+

three daysQUANTITY

0.98+

todayDATE

0.98+

CloudBeesORGANIZATION

0.98+

threeQUANTITY

0.98+

one serverQUANTITY

0.98+

OneQUANTITY

0.98+

one clusterQUANTITY

0.98+

two different peopleQUANTITY

0.98+

RioORGANIZATION

0.98+

two big announcementsQUANTITY

0.97+

this weekDATE

0.97+

K3STITLE

0.97+

CloudNativeConEVENT

0.97+

one exampleQUANTITY

0.97+

LinuxTITLE

0.96+

WebLogicTITLE

0.96+

WebSphereTITLE

0.96+

over 12,000QUANTITY

0.96+

GKEORGANIZATION

0.96+

K8SCOMMERCIAL_ITEM

0.96+

Drew Nielsen, Teleport | KubeCon + CloudNativeCon NA 2022


 

>>Good afternoon, friends. My name is Savannah Peterson here in the Cube Studios live from Detroit, Michigan, where we're at Cuban and Cloud Native Foundation, Cloud Native Con all week. Our last interview of the day served me a real treat and one that I wasn't expecting. It turns out that I am in the presence of two caddies. It's a literal episode of Caddy Shack up here on Cube. John Furrier. I don't think the audience knows that you were a caddy. Tell us about your caddy days. >>I used to caddy when I was a kid at the local country club every weekend. This is amazing. Double loops every weekend. Make some bang, two bags on each shoulder. Caddying for the members where you're going. Now I'm >>On show. Just, just really impressive >>Now. Now I'm caddying for the cube where I caddy all this great content out to the audience. >>He's carrying the story of emerging brands and established companies on their cloud journey. I love it. John, well played. I don't wanna waste any more of this really wonderful individual's time, but since we now have a new trend of talking about everyone's Twitter handle here on the cube, this may be my favorite one of the day, if not Q4 so far. Drew, not reply. AKA Drew ne Drew Nielsen, excuse me, there is here with us from Teleport. Drew, thanks so much for being here. >>Oh, thanks for having me. It's great to be here. >>And so you were a caddy on a whole different level. Can you tell us >>About that? Yeah, so I was in university and I got tired after two years and didn't have a car in LA and met a pro golfer at a golf course and took two years off and traveled around caddying for him and tried to get 'em through Q School. >>This is, this is fantastic. So if you're in school and your parents are telling you to continue going to school, know that you can drop out and be a caddy and still be a very successful television personality. Like both of the gentlemen at some point. >>Well, I never said my parents like >>That decision, but we'll keep our day jobs. Yeah, exactly. And one of them is Cloud Native Security. The hottest topic here at the show. Yep. I want to get into it. You guys are doing some really cool things. Are we? We hear Zero Trust, you know, ransomware and we even, I even talked with the CEO of Dockets morning about container security issues. Sure. There's a lot going on. So you guys are in the middle of teleport. You guys have a unique solution. Tell us what you guys got going on. What do you guys do? What's the solution and what's the problem you solve? >>So Teleport is the first and only identity native infrastructure access solution in the market. So breaking that down, what that really means is identity native being the combination of secret list, getting rid of passwords, Pam Vaults, Key Vaults, Yeah. Passwords written down. Basically the number one source of breach. And 50 to 80% of breaches, depending on whose numbers you want to believe are how organizations get hacked. >>But it's not password 1 23 isn't protecting >>Cisco >>Right >>Now. Well, if you think about when you're securing infrastructure and the second component being zero trust, which assumes the network is completely insecure, right? But everything is validated. Resource to resource security is validated, You know, it assumes work from anywhere. It assumes the security comes back to that resource. And we take the combination of those two into identity, native access where we cryptographically ev, validate identity, but more importantly, we make an absolutely frictionless experience. So engineers can access infrastructure from anywhere at any time. >>I'm just flashing on my roommates, checking their little code, changing Bob login, you know, dongle essentially, and how frustrating that always was. I mean, talk about interrupting workflow was something that's obviously necessary, but >>Well, I mean, talk about frustration if I'm an engineer. Yeah, absolutely. You know, back in the day when you had these three tier monolithic applications, it was kind of simple. But now as you've got modern application development environments Yeah, multi-cloud, hybrid cloud, whatever marketing term around how you talk about this, expanding sort of disparate infrastructure. Engineers are sitting there going from system to system to machine to database to application. I mean, not even a conversation on Kubernetes yet. Yeah. And it's just, you know, every time you pull an engineer or a developer to go to a vault to pull something out, you're pulling them out for 10 minutes. Now, applications today have hundreds of systems, hundreds of microservices. I mean 30 of these a day and nine minutes, 270 minutes times 60. And they also >>Do the math. Well, there's not only that, there's also the breach from manual error. I forgot to change the password. What is that password? I left it open, I left it on >>Cognitive load. >>I mean, it's the manual piece. But even think about it, TR security has to be transparent and engineers are really smart people. And I've talked to a number of organizations who are like, yeah, we've tried to implement security solutions and they fail. Why? They're too disruptive. They're not transparent. And engineers will work their way around them. They'll write it down, they'll do a workaround, they'll backdoor it something. >>All right. So talk about how it works. But I, I mean, I'm getting the big picture here. I love this. Breaking down the silos, making engineers lives easier, more productive. Clearly the theme, everyone they want, they be gonna need. Whoever does that will win it all. How's it work? I mean, you deploying something, is it code, is it in line? It's, >>It's two binaries that you download and really it starts with the core being the identity native access proxy. Okay. So that proxy, I mean, if you look at like the zero trust principles, it all starts with a proxy. Everything connects into that proxy where all the access is gated, it's validated. And you know, from there we have an authorization engine. So we will be the single source of truth for all access across your entire infrastructure. So we bring machines, engineers, databases, applications, Kubernetes, Linux, Windows, we don't care. And we basically take that into a single architecture and single access platform that essentially secures your entire infrastructure. But more importantly, you can do audit. So for all of the organizations that are dealing with FedRAMP, pci, hipaa, we have a complete audit trail down to a YouTube style playback. >>Oh, interesting. We're we're California and ccpa. >>Oh, gdpr. >>Yeah, exactly. It, it, it's, it's a whole shebang. So I, I love, and John, maybe you've heard this term a lot more than I have, but identity native is relatively new to me as as a term. And I suspect you have a very distinct way of defining identity. How do you guys define identity internally? >>So identity is something that is cryptographically validated. It is something you have. So it's not enough. If you look at, you know, credentials today, everyone's like, Oh, I log into my computer, but that's my identity. No, it's not. Right. Those are attributes. Those are something that is secret for a period of time until you write it down. But I can't change my fingerprint. Right. And now I >>Was just >>Thinking of, well no, perfect case in point with touch ID on your meth there. Yeah. It's like when we deliver that cryptographically validated identity, we use these secure modules in like modern laptops or servers. Yeah. To store that identity so that even if you're sitting in front of your computer, you can't get to it. But more importantly, if somebody were to take that and try to be you and try to log in with your fingerprint, it's >>Not, I'm not gonna lie, I love the apple finger thing, you know, it's like, you know, space recognition, like it's really awesome. >>It save me a lot of time. I mean, even when you go through customs and they do the face scan now it actually knows who you are, which is pretty wild in the last time you wanna provide ones. But it just shifted over like maybe three months ago. Well, >>As long as no one chops your finger off like they do in the James Bond movies. >>I mean, we try and keep it a light and fluffy here on the queue, but you know, do a finger teams, we can talk about that >>Too. >>Gabby, I was thinking more minority report, >>But you >>Knows that's exactly what I, what I think of >>Hit that one outta bounds. So I gotta ask, because you said you're targeting engineers, not IT departments. What's, is that, because I in your mind it is now the engineers or what's the, is always the solution more >>Targeted? Well, if you really look at who's dealing with infrastructure on a day-to-day basis, those are DevOps individuals. Those are infrastructure teams, Those are site reliability engineering. And when it, they're the ones who are not only managing the infrastructure, but they're also dealing with the code on it and everything else. And for us, that is who is our primary customer and that's who's doing >>It. What's the biggest problem that you're solving in this use case? Because you guys are nailing it. What's the problem that your identity native solution solves? >>You know, right out of the backs we remove the number one source of breach. And that is taking passwords, secrets and, and keys off the board. That deals with most of the problem right there. But there are really two problems that organizations face. One is scaling. So as you scale, you get more secrets, you get more keys, you get all these things that is all increasing your attack vector in real time. Oh >>Yeah. Across teams locations. I can't even >>Take your pick. Yeah, it's across clouds, right? Any of it >>On-prem doesn't. >>Yeah. Any of it. We, and we allow you to scale, but do it securely and the security is transparent and your engineers will absolutely love it. What's the most important thing about this product Engineers. Absolutely. >>What are they saying? What are some of those examples? Anecdotally, pull boats out from engineering. >>You're too, we should have invent, we should have invented this ourselves. Or you know, we have run into a lot of customers who have tried to home brew this and they're like, you know, we spend an in nor not of hours on it >>And IT or they got legacy from like Microsoft or other solutions. >>Sure, yeah. Any, but a lot of 'em is just like, I wish I had done it myself. Or you know, this is what security should be. >>It makes so much sense and it gives that the team such a peace of mind. I mean, you never know when a breach is gonna come, especially >>It's peace of mind. But I think for engineers, a lot of times it deals with the security problem. Yeah. Takes it off the table so they can do their jobs. Yeah. With zero friction. Yeah. And you know, it's all about speed. It's all about velocity. You know, go fast, go fast, go fast. And that's what we enable >>Some of the benefits to them is they get to save time, focus more on, on task that they need to work on. >>Exactly. >>And get the >>Job done. And on top of it, they answer the audit and compliance mail every time it comes. >>Yeah. Why are people huge? Honestly, why are people doing this? Because, I mean, identity is just such an hard nut to crack. Everyone's got their silos, Vendors having clouds have 'em. Identity is the most fragmented thing on >>The planet. And it has been fragmented ever since my first RSA conference. >>I know. So will we ever get this do over? Is there a driver? Is there a market force? Is this the time? >>I think the move to modern applications and to multi-cloud is driving this because as those application stacks get more verticalized, you just, you cannot deal with the productivity >>Here. And of course the next big thing is super cloud and that's coming fast. Savannah, you know, You know that's Rocket. >>John is gonna be the thought leader and keyword leader of the word super cloud. >>Super Cloud is enabling super services as the cloud cast. Brian Gracely pointed out on his Sunday podcast of which if that happens, Super Cloud will enable super apps in a new architectural >>List. Please don't, and it'll be super, just don't. >>Okay. Right. So what are you guys up to next? What's the big hot spot for the company? What are you guys doing? What are you guys, What's the idea guys hiring? You put the plug in. >>You know, right now we are focused on delivering the best identity, native access platform that we can. And we will continue to support our customers that want to use Kubernetes, that want to use any different type of infrastructure. Whether that's Linux, Windows applications or databases. Wherever they are. >>Are, are your customers all of a similar DNA or are you >>No, they're all over the map. They range everything from tech companies to financial services to, you know, fractional property. >>You seem like someone everyone would need. >>Absolutely. >>And I'm not just saying that to be a really clean endorsement from the Cube, but >>If you were doing DevOps Yeah. And any type of forward-leaning shift, left engineering, you need us because we are basically making security as code a reality across your entire infrastructure. >>Love this. What about the team dna? Are you in a scale growth stage right now? What's going on? Absolutely. Sounds I was gonna say, but I feel like you would have >>To be. Yeah, we're doing, we're, we have a very positive outlook and you know, even though the economic time is what it is, we're doing very well meeting. >>How's the location? Where's the location of the headquarters now? With remote work is pretty much virtual. >>Probably. We're based in downtown Oakland, California. >>Woohoo. Bay area representing on this stage right now. >>Nice. Yeah, we have a beautiful office right in downtown Oakland and yeah, it's been great. Awesome. >>Love that. And are you hiring right now? I bet people might be. I feel like some of our cube watchers are here waiting to figure out their next big play. So love to hear that. Absolutely love to hear that. Besides Drew, not reply, if people want to join your team or say hello to you and tell you how brilliant you looked up here, or ask about your caddy days and maybe venture a guest to who that golfer may have been that you were CAD Inc. For, what are the best ways for them to get in touch with you? >>You can find me on LinkedIn. >>Great. Fantastic. John, anything else >>From you? Yeah, I mean, I just think security is paramount. This is just another example of where the innovation has to kind of break through without good identity, everything could cripple. Then you start getting into the silos and you can start getting into, you know, tracking it. You got error user errors, you got, you know, one of the biggest security risks. People just leave systems open, they don't even know it's there. So like, I mean this is just, just identity is the critical linchpin to, to solve for in security to me. And that's totally >>Agree. We even have a lot of customers who use us just to access basic cloud consoles. Yeah. >>So I was actually just gonna drive there a little bit because I think that, I'm curious, it feels like a solution for obviously complex systems and stacks, but given the utility and what sounds like an extreme ease of use, I would imagine people use this for day-to-day stuff within their, >>We have customers who use it to access their AWS consoles. We have customers who use it to access Grafana dashboards. You know, for, since we're sitting here at coupon accessing a Lens Rancher, all of the amazing DevOps tools that are out there. >>Well, I mean true. I mean, you think about all the reasons why people don't adopt this new federated approach or is because the IT guys did it and the world we're moving into, the developers are in charge. And so we're seeing the trend where developers are taking the DevOps and the data and the security teams are now starting to reset the guardrails. What's your >>Reaction to that? Well, you know, I would say that >>Over the top, >>Well I would say that you know, your DevOps teams and your infrastructure teams and your engineers, they are the new king makers. Yeah. Straight up. Full stop. >>You heard it first folks. >>And that's >>A headline right >>There. That is a headline. I mean, they are the new king makers and, but they are being forced to do it as securely as possible. And our job is really to make that as easy and as frictionless as possible. >>Awesome. >>And it sounds like you're absolutely nailing it. Drew, thank you so much for being on the show. Thanks for having today. This has been an absolute pleasure, John, as usual a joy. And thank all of you for tuning in to the Cube Live here at CU Con from Detroit, Michigan. We look forward to catching you for day two tomorrow.

Published Date : Oct 27 2022

SUMMARY :

I don't think the audience knows that you were a caddy. the members where you're going. Just, just really impressive He's carrying the story of emerging brands and established companies on It's great to be here. And so you were a caddy on a whole different level. Yeah, so I was in university and I got tired after two years and didn't have to school, know that you can drop out and be a caddy and still be a very successful television personality. What's the solution and what's the problem you solve? And 50 to 80% of breaches, depending on whose numbers you want to believe are how organizations It assumes the security comes back to that resource. you know, dongle essentially, and how frustrating that always was. You know, back in the day when you had these three tier I forgot to change I mean, it's the manual piece. I mean, you deploying something, is it code, is it in line? And you know, from there we have an authorization engine. We're we're California and ccpa. And I suspect you have a very distinct way of that is secret for a period of time until you write it down. try to be you and try to log in with your fingerprint, it's Not, I'm not gonna lie, I love the apple finger thing, you know, it's like, you know, space recognition, I mean, even when you go through customs and they do the face scan now So I gotta ask, because you said you're targeting Well, if you really look at who's dealing with infrastructure on a day-to-day basis, those are DevOps individuals. Because you guys are nailing it. So as you scale, you get more secrets, you get more keys, I can't even Take your pick. We, and we allow you to scale, but do it securely What are they saying? they're like, you know, we spend an in nor not of hours on it Or you know, you never know when a breach is gonna come, especially And you know, it's all about speed. And on top of it, they answer the audit and compliance mail every time it comes. Identity is the most fragmented thing on And it has been fragmented ever since my first RSA conference. I know. Savannah, you know, Super Cloud is enabling super services as the cloud cast. So what are you guys up to next? And we will continue to support our customers that want to use Kubernetes, you know, fractional property. If you were doing DevOps Yeah. Sounds I was gonna say, but I feel like you would have Yeah, we're doing, we're, we have a very positive outlook and you know, How's the location? We're based in downtown Oakland, California. Bay area representing on this stage right now. it's been great. And are you hiring right now? John, anything else Then you start getting into the silos and you can start getting into, you know, tracking it. We even have a lot of customers who use us just to access basic cloud consoles. a Lens Rancher, all of the amazing DevOps tools that are out there. I mean, you think about all the reasons why people don't adopt this Well I would say that you know, your DevOps teams and your infrastructure teams and your engineers, I mean, they are the new king makers and, but they are being forced to We look forward to catching you for day

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Savannah PetersonPERSON

0.99+

30QUANTITY

0.99+

DrewPERSON

0.99+

10 minutesQUANTITY

0.99+

Brian GracelyPERSON

0.99+

JohnPERSON

0.99+

LALOCATION

0.99+

MicrosoftORGANIZATION

0.99+

Drew NielsenPERSON

0.99+

two binariesQUANTITY

0.99+

CiscoORGANIZATION

0.99+

270 minutesQUANTITY

0.99+

50QUANTITY

0.99+

SavannahPERSON

0.99+

firstQUANTITY

0.99+

todayDATE

0.99+

two problemsQUANTITY

0.99+

Detroit, MichiganLOCATION

0.99+

oneQUANTITY

0.99+

SundayDATE

0.99+

two yearsQUANTITY

0.99+

twoQUANTITY

0.99+

AWSORGANIZATION

0.99+

second componentQUANTITY

0.99+

Zero TrustORGANIZATION

0.99+

TeleportORGANIZATION

0.99+

WindowsTITLE

0.99+

LinkedInORGANIZATION

0.99+

three tierQUANTITY

0.99+

John FurrierPERSON

0.99+

Cloud Native FoundationORGANIZATION

0.99+

YouTubeORGANIZATION

0.99+

bothQUANTITY

0.99+

CaliforniaLOCATION

0.99+

tomorrowDATE

0.98+

two bagsQUANTITY

0.98+

LinuxTITLE

0.98+

OneQUANTITY

0.98+

80%QUANTITY

0.98+

three months agoDATE

0.98+

FedRAMPORGANIZATION

0.98+

day twoQUANTITY

0.98+

KubeConEVENT

0.98+

CloudNativeConEVENT

0.97+

Super CloudTITLE

0.97+

GabbyPERSON

0.96+

nine minutesQUANTITY

0.96+

Cube StudiosORGANIZATION

0.95+

a dayQUANTITY

0.95+

CU ConEVENT

0.95+

DoubleQUANTITY

0.94+

TwitterORGANIZATION

0.94+

zero frictionQUANTITY

0.94+

BobPERSON

0.93+

CubeORGANIZATION

0.92+

Caddy ShackTITLE

0.92+

Q SchoolORGANIZATION

0.91+

single access platformQUANTITY

0.91+

zero trustQUANTITY

0.89+

single architectureQUANTITY

0.89+

60QUANTITY

0.88+

downtown Oakland, CaliforniaLOCATION

0.88+

teleportORGANIZATION

0.87+

KubernetesTITLE

0.87+

two caddiesQUANTITY

0.87+

pciORGANIZATION

0.86+

each shoulderQUANTITY

0.85+

CubanORGANIZATION

0.85+

single sourceQUANTITY

0.85+

hundreds of microservicesQUANTITY

0.84+

zero trustQUANTITY

0.83+

DocketsORGANIZATION

0.83+

NA 2022EVENT

0.82+

CAD Inc.ORGANIZATION

0.81+

BayLOCATION

0.8+

one sourceQUANTITY

0.78+

RSA conferenceEVENT

0.78+

hundreds of systemsQUANTITY

0.77+

Cloud NativeEVENT

0.76+

Keith Basil, SUSE | HPE Discover 2022


 

>> Announcer: TheCube presents HPE Discover 2022, brought to you by HPE. >> Welcome back to HPE Discover 2022, theCube's continuous wall to wall coverage, Dave Vellante with John Furrier. Keith Basil is here as the General Manager for the Edge Business Unit at SUSE. Keith, welcome to theCube, man good to see you. >> Great to be here, it's my first time here and I've seen many shows and you guys are the best. >> Thanks you. >> Thank you very much. >> Big fans of SUSE you know, we've had Melissa on several times. >> Yes. >> Let's start with kind of what you guys are doing here at Discover. >> Well, we're here to support our wonderful partner HPE, as you know SUSE's products and services are now being integrated into the GreenLake offering. So that's very exciting for us. >> Yeah. Now tell us about your background. It's quite interesting you've kind of been in the mix in some really cool places. Tell us a little bit about yourself. >> Probably the most relevant was I used to work at Red Hat, I was a Product Manager working in security for OpenStack and OpenShift working with DOD customers in the intelligence community. Left Red Hat to go to Rancher, started out there as VP of Edge Solutions and then transitioned over to VP of Product for all of Rancher. And then obviously we know SUSE acquired Rancher and as of November 1st, of 2020, I think it was. >> Dave: 2020. >> Yeah, yeah time is flying. I came over, I still remained VP of Product for Rancher for Cloud Native Infrastructure. And I was working on the edge strategy for SUSE and about four months ago we internally built three business units, one for the Linux business, one for enterprise container management, basically the Rancher business, and then the newly minted business unit was the Edge business. And I was offered the role to be GM for that business unit and I happily accepted it. >> Very cool. I mean the market dynamics since the 2018 have changed dramatically, IBM bought Red Hat. A lot of customers said, "Hmm let's see what other alternatives are out there." SUSE popped its head up. You know, Melissa's been quite, you know forthcoming about that. And then you acquire Rancher in 2020, IPO in 2021. That kind of gives you another tailwind. So there's a new market when you go from 2018 to 2022, it's a completely changed dynamic. >> Yes and I'm going to answer your question from the Rancher perspective first, because as we were at Rancher, we had experimented with different flavors of the underlying OS underneath Kubernetes or Kubernetes offerings. And we had, as I said, different flavors, we weren't really operating system people for example. And so post-acquisition, you know, one of my internal roles was to bring the two halves of the house together, the philosophies together where you had a cloud native side in the form of Rancher, very progressive leading innovative products with Rancher with K3s for example. And then you had, you know, really strong enterprise roots around compliance and security, secure supply chain with the enterprise grade Linux. And what we found out was SUSE had been building a version of Linux called SLE Micro, and it was perfectly designed for Edge. And so what we've done over that time period since the acquisition is that we've brought those two things together. And now we're using Kubernetes directives and philosophies to manage all the way down to the operating system. And it is a winning strategy for our customers. And we're really excited about that. >> And what does that product look like? Is that a managed service? How are customers consuming that? >> It could be a managed service, it's something that our managed service providers could embrace and offer to their customers. But we have some customers who are very sophisticated who want to do the whole thing themselves. And so they stand up Rancher, you know at a centralized location at cloud GreenLake for example which is why this is very relevant. And then that control plane if you will, manages thousands of downstream clusters that are running K3s at these Edge locations. And so that's what the complete stack looks like. And so when you add the Linux capability to that scenario we can now roll a new operating system, new kernel, CVE updates, build that as an OCI container image registry format, right? Put that into a registry and then have that thing cascade down through all the downstream clusters and up through a rolling window upgrade of the operating system underneath Kubernetes. And it is a tremendous amount of value when you talk to customers that have this massive scale. >> What's the impact of that, just take us through what happens next. Is it faster? Is it more performant? Is it more reliable? Is it processing data at the Edge? What's the impact of the customer? >> Yes, the answer is yes to that. So let's actually talk about one customer that we we highlighted in our keynote, which is Home Depot. So as we know, Kubernetes is on fire, right? It is the technology everybody's after. So by being in demand, the skills needed, the people shortage is real and people are commanding very high, you know, salaries. And so it's hard to attract talent is the bottom line. And so using our software and our solution and our approach it allows people to scale their existing teams to preserve those precious human resources and that human capital. So that now you can take a team of seven people and manage let's say 3000 downstream stores. >> Yeah it's like the old SRE model for DevOps. >> Correct. >> It's not servers they're managing one to many. >> Yes. >> One to many clusters. >> Correct so you've got the cluster, the life cycle of the cluster. You already have the application life cycle with the classic DevOps. And now what we've built and added to the stack is going down one step further, clicking down if you will to managing the life cycle of the operating system. So you have the SUSE enterprise build chain, all the value, the goodness, compliance, security. Again, all of that comes with that build process. And now we're hooking that into a cloud native flow that ends up downstream in our customers. >> So what I'm hearing is your Edge strategy is not some kind of bespoke, "Hey, I'm going after Edge." It connects to the entire value chain. >> Yes, yeah it's a great point. We want to reuse the existing philosophies that are being used today. We don't want to create something net new, cause that's really the point in leverage that we get by having these teams, you know, do these things at scale. Another point I'm going to make here is that we've defined the Edge into three segments. One is the near Edge, which is the realm of the-- >> I was going to ask about this, great. >> The telecommunications companies. So those use cases and profiles look very different. They're almost data center lite, right? So you've had regional locations, central offices where they're standing up gear classic to you machines, right? So things you find from HPE, for example. And then once you get on the other side of the access device right? The cable modem, the router, whatever it is you get into what we call the far Edge. And this is where the majority of the use cases reside. This is where the diversity of use cases presents itself as well. >> Also security challenges. >> Security challenges. Yes and we can talk about that following in a moment. And then finally, if you look at that far Edge as a box, right? Think of it as a layer two domain, a network. Inside that location, on that network you'll have industrial IOT devices. Those devices are too small to run a full blown operating system such as Linux and Kubernetes in the stack but they do have software on them, right? So we need to be able to discover those devices and manage those devices and pull data from those devices and do it in a cloud native way. So that's what we called the tiny Edge. And I stole that name from the folks over at Microsoft. Kate and Edrick are are leading a project upstream called Akri, A-K-R-I, and we are very much heavily involved in Akri because it will discover the industrial IOT devices and plug those into a local Kubernetes cluster running at that location. >> And Home Depot would fit into the near edge is that correct? >> Yes. >> Yeah okay. >> So each Home Depot store, just to bring it home, is a far Edge location and they have over 2,600 of these locations. >> So far Edge? You would put far Edge? >> Keith: Far Edge yes. >> Far edge, okay. >> John: Near edge is like Metro. Think of Metro. >> And Teleco, communication, service providers MSOs, multi-service operators. Those guys are-- >> Near Edge. >> The near edge, yes. >> Don't you think, John's been asking all week about machine learning and AI, in that tiny Edge. We think there's going to be a lot of AI influencing. >> Keith: Oh absolutely. >> Real time. And it actually is going to need some kind of lighter weight you know, platform. How do you fit into that? >> So going on this, like this model I just described if you go back and look at the SUSECON 2022 demo keynote that I did, we actually on stage stood up that exact stack. So we had a single Intel nook running SLE Micro as we mentioned earlier, running K3s and we plugged into that device, a USB camera which was automatically detected and it loaded Akri and gave us a driver to plug it into a container. Now, to answer your question, that is the point in time where we bring in the ML and the AI, the inference and the pattern recognition, because that camera when you showed the SUSE plush doll, it actually recognized it and put a QR code up on the screen. So that's where it all comes together. So we tried to showcase that in a complete demo. >> Last week, I was here in Vegas for an event Amazon and AWS put on called re:Mars, machine learning, automation, robotics, and space. >> Okay. >> Kind of but basically for me was an industrial edge show. Cause The space is the ultimate like glam to edge is like, you're doing stuff in space that's pretty edgy so to speak, pun intended. But the industrial side of the Edge is going to, we think, accelerate with machine learning. >> Keith: Absolutely. >> And with these kinds of new portable I won't say flash compute or just like connected power sources software. The industrial is going to move really fast. We've been kind of in a snails pace at the Edge, in my opinion. What's your reaction to that? Do you think we're going to see a mass acceleration of growth at the Edge industrial, basically physical, the physical world. >> Yes, first I agree with your assessment okay, wholeheartedly, so much so that it's my strategy to go after the tiny Edge space and be a leader in the industrial IOT space from an open source perspective. So yes. So a few things to answer your question we do have K3s in space. We have a customer partner called Hypergiant where they've launched satellites with K3s running in space same model, that's a far Edge location, probably the farthest Edge location we have. >> John: Deep Edge, deep space. >> Here at HPE Discover, we have a business unit called SUSE RGS, Rancher Government Services, which focuses on the US government and DOD and IC, right? So little bit of the world that I used to work in my past career. Brandon Gulla the CTO of of that unit gave a great presentation about what we call the tactical Edge. And so the same technology that we're using on the commercial and the manufacturing side. >> Like the Jedi contract, the tactical military Edge I think. >> Yes so imagine some of these military grade industrial IOT devices in a disconnected environment. The same software stack and technology would apply to that use case as well. >> So basically the tactical Edge is life? We're humans, we're at the Edge? >> Or it's maintenance, right? So maybe it's pulling sensors from aircraft, Humvees, submarines and doing predictive analysis on the maintenance for those items, those assets. >> All these different Edges, they underscore the diversity that you were just talking Keith and we also see a new hardware architecture emerging, a lot of arm based stuff. Just take a look at what Tesla's doing at the tiny Edge. Keith Basil, thanks so much. >> Sure. >> For coming on theCube. >> John: Great to have you. >> Grateful to be here. >> Awesome story. Okay and thank you for watching. This is Dave Vellante for John Furrier. This is day three of HPE Discover 2022. You're watching theCube, the leader in enterprise and emerging tech coverage. We'll be right back. (upbeat music)

Published Date : Jun 30 2022

SUMMARY :

brought to you by HPE. as the General Manager for the and you guys are the best. Big fans of SUSE you know, of what you guys are doing into the GreenLake offering. in some really cool places. and as of November 1st, one for the Linux business, And then you acquire Rancher in 2020, of the underlying OS underneath Kubernetes of the operating system Is it processing data at the Edge? So that now you can take Yeah it's like the managing one to many. of the operating system. It connects to the entire value chain. One is the near Edge, of the use cases reside. And I stole that name from and they have over 2,600 Think of Metro. And Teleco, communication, in that tiny Edge. And it actually is going to need and the AI, the inference and AWS put on called re:Mars, Cause The space is the ultimate of growth at the Edge industrial, and be a leader in the So little bit of the world the tactical military Edge I think. and technology would apply on the maintenance for that you were just talking Keith Okay and thank you for watching.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Peter BurrisPERSON

0.99+

IBMORGANIZATION

0.99+

KeithPERSON

0.99+

JohnPERSON

0.99+

2018DATE

0.99+

Dave VellantePERSON

0.99+

AWSORGANIZATION

0.99+

November 1stDATE

0.99+

SUSEORGANIZATION

0.99+

Peter BurrisPERSON

0.99+

RancherORGANIZATION

0.99+

AmazonORGANIZATION

0.99+

2020DATE

0.99+

Rancher Government ServicesORGANIZATION

0.99+

2021DATE

0.99+

DODORGANIZATION

0.99+

John FurrierPERSON

0.99+

James KabilaPERSON

0.99+

Keith BasilPERSON

0.99+

HypergiantORGANIZATION

0.99+

VegasLOCATION

0.99+

SUSE RGSORGANIZATION

0.99+

Home DepotORGANIZATION

0.99+

MicrosoftORGANIZATION

0.99+

2022DATE

0.99+

Brandon GullaPERSON

0.99+

HPEORGANIZATION

0.99+

TelecoORGANIZATION

0.99+

10 plus yearsQUANTITY

0.99+

Red HatORGANIZATION

0.99+

Last weekDATE

0.99+

Jim KobeliusPERSON

0.99+

PeterPERSON

0.99+

KatePERSON

0.99+

Silicon ValleyLOCATION

0.99+

HPE DiscoverORGANIZATION

0.99+

EdrickPERSON

0.99+

seven peopleQUANTITY

0.99+

EdgeORGANIZATION

0.99+

JimPERSON

0.99+

one customerQUANTITY

0.99+

first timeQUANTITY

0.99+

TeslaORGANIZATION

0.99+

MelissaPERSON

0.99+

OneQUANTITY

0.99+

thousandsQUANTITY

0.98+

two thingsQUANTITY

0.98+

over 2,600QUANTITY

0.98+

LinuxTITLE

0.98+

US governmentORGANIZATION

0.98+

K3sCOMMERCIAL_ITEM

0.98+

three business unitsQUANTITY

0.97+

oneQUANTITY

0.97+

MetroORGANIZATION

0.96+

two halvesQUANTITY

0.96+

KubernetesTITLE

0.96+

SLE MicroTITLE

0.96+

SLE MicroCOMMERCIAL_ITEM

0.96+

Edge SolutionsORGANIZATION

0.96+

eachQUANTITY

0.95+

AkriORGANIZATION

0.95+

firstQUANTITY

0.94+

EdgeLOCATION

0.94+

Keith White, HPE | HPE Discover 2022


 

>> Announcer: theCube presents HPE Discover 2022, brought to you by HPE. >> Hey, everyone. Welcome back to Las Vegas. This is Lisa Martin with Dave Vellante live at HPE Discover '22. Dave, it's great to be here. This is the first Discover in three years and we're here with about 7,000 of our closest friends. >> Yeah. You know, I tweeted out this, I think I've been to 14 Discovers between the U.S. and Europe, and I've never seen a Discover with so much energy. People are not only psyched to get back together, that's for sure, but I think HPE's got a little spring in its step and it's feeling more confident than maybe some of the past Discovers that I've been to. >> I think so, too. I think there's definitely a spring in the step and we're going to be unpacking some of that spring next with one of our alumni who joins us, Keith White's here, the executive vice president and general manager of GreenLake Cloud Services. Welcome back. >> Great. You all thanks for having me. It's fantastic that you're here and you're right, the energy is crazy at this show. It's been a lot of pent up demand, but I think what you heard from Antonio today is our strategy's changing dramatically and it's really embracing our customers and our partners. So it's great. >> Embracing the customers and the partners, the ecosystem expansion is so critical, especially the last couple of years with the acceleration of digital transformation. So much challenge in every industry, but lots of momentum on the GreenLake side, I was looking at the Q2 numbers, triple digit growth in orders, 65,000 customers over 70 services, eight new services announced just this morning. Talk to us about the momentum of GreenLake. >> The momentum's been fantastic. I mean, I'll tell you, the fact that customers are really now reaccelerating their digital transformation, you probably heard a lot, but there was a delay as we went through the pandemic. So now it's reaccelerating, but everyone's going to a hybrid, multi-cloud environment. Data is the new currency. And obviously, everyone's trying to push out to the Edge and GreenLake is that edge to cloud platform. So we're just seeing tons of momentum, not just from the customers, but partners, we've enabled the platform so partners can plug into it and offer their solutions to our customers as well. So it's exciting and it's been fun to see the momentum from an order standpoint, but one of the big numbers that you may not be aware of is we have over a 96% retention rate. So once a customer's on GreenLake, they stay on it because they're seeing the value, which has been fantastic. >> The value is absolutely critically important. We saw three great big name customers. The Home Depot was on stage this morning, Oak Ridge National Laboratory was as well, Evil Geniuses. So the momentum in the enterprise is clearly present. >> Yeah. It is. And we're hearing it from a lot of customers. And I think you guys talk a lot about, hey, there's the cloud, data and Edge, these big mega trends that are happening out there. And you look at a company like Barclays, they're actually reinventing their entire private cloud infrastructure, running over a hundred thousand workloads on HPE GreenLake. Or you look at a company like Zenseact, who's basically they do autonomous driving software. So they're doing massive parallel computing capabilities. They're pulling in hundreds of petabytes of data to then make driving safer and so you're seeing it on the data front. And then on the Edge, you look at anyone like a Patrick Terminal, for example. They run a whole terminal shipyard. They're getting data in from exporters, importers, regulators, the works and they have to real-time, analyze that data and say, where should this thing go? Especially with today's supply chain challenges, they have to be so efficient, that it's just fantastic. >> It was interesting to hear Fidelma, Keith, this morning on stage. It was the first time I'd really seen real clarity on the platform itself and that it's obviously her job is, okay, here's the platform, now, you guys got to go build on top of it. Both inside of HPE, but also externally, so your ecosystem partners. So, you mentioned the financial services companies like Barclays. We see those companies moving into the digital world by offering some of their services in building their own clouds. >> Keith: That's right. >> What's your vision for GreenLake in terms of being that platform, to assist them in doing that and the data component there? >> I think that was one of the most exciting things about not just showcasing the platform, but also the announcement of our private cloud enterprise, Cloud Service. Because in essence, what you're doing is you're creating that framework for what most companies are doing, which is they're becoming cloud service providers for their internal business units. And they're having to do showback type scenarios, chargeback type scenarios, deliver cloud services and solutions inside the organization so that open platform, you're spot on. For our ecosystem, it's fantastic, but for our customers, they get to leverage it as well for their own internal IT work that's happening. >> So you talk about hybrid cloud, you talk about private cloud, what's your vision? You know, we use this term Supercloud. This in a layer that goes across clouds. What's your thought about that? Because you have an advantage at the Edge with Aruba. Everybody talks about the Edge, but they talk about it more in the context of near Edge. >> That's right. >> We talked to Verizon and they're going far Edge, you guys are participating in that, as well as some of your partners in Red Hat and others. What's your vision for that? What I call Supercloud, is that part of the strategy? Is that more longer term or you think that's pipe dream by Dave? >> No, I think it's really thoughtful, Dave, 'cause it has to be part of the strategy. What I hear, so for example, Ford's a great example. They run Azure, AWS, and then they made a big deal with Google cloud for their internal cars and they run HPE GreenLake. So they're saying, hey, we got four clouds. How do we sort of disaggregate the usage of that? And Chris Lund, who is the VP of information technology at Liberty Mutual Insurance, he talked about it today, where he said, hey, I can deliver these services to my business unit. And they don't know, am I running on the public cloud? Am I running on our HPE GreenLake cloud? Like it doesn't matter to the end user, we've simplified that so much. So I think your Supercloud idea is super thoughtful, not to use the super term too much, that I'm super excited about because it's really clear of what our customers are trying to accomplish, which it's not about the cloud, it's about the solution and the business outcome that gets to work. >> Well, and I think it is different. I mean, it's not like the last 10 years where it was like, hey, I got my stuff to work on the different clouds and I'm replicating as much as I can, the cloud experience on-prem. I think you guys are there now and then to us, the next layer is that ecosystem enablement. So how do you see the ecosystem evolving and what role does Green Lake play there? >> Yeah. This has been really exciting. We had Tarkan Maner who runs Nutanix and Karl Strohmeyer from Equinix on stage with us as well. And what's happening with the ecosystem is, I used to say, one plus one has to equal three for our customers. So when you bring these together, it has to be that scenario, but we are joking that one plus one plus one equals five now because everything has a partner component to it. It's not about the platform, it's not about the specific cloud service, it's actually about the solution that gets delivered. And that's done with an ISV, it's done with a Colo, it's done even with the Hyperscalers. We have Azure Stack HCI as a fully integrated solution. It happens with managed service providers, delivering managed services out to their folks as well. So that platform being fully partner enabled and that ecosystem being able to take advantage of that, and so we have to jointly go to market to our customers for their business needs, their business outcomes. >> Some of the expansion of the ecosystem. we just had Red Hat on in the last hour talking about- >> We're so excited to partner with them. >> Right, what's going on there with OpenShift and Ansible and Rel, but talk about the customer influence in terms of the expansion of the ecosystem. We know we've got to meet customers where they are, they're driving it, but we know that HPE has a big presence in the enterprise and some pretty big customer names. How are they from a demand perspective? >> Well, this is where I think the uniqueness of GreenLake has really changed HPE's approach with our customers. Like in all fairness, we used to be a vendor that provided hardware components for, and we talked a lot about hardware costs and blah, blah, blah. Now, we're actually a partner with those customers. What's the business outcome you're requiring? What's the SLA that we offer you for what you're trying to accomplish? And to do that, we have to have it done with partners. And so even on the storage front, Qumulo or Cohesity. On the backup and recovery disaster recovery, yes, we have our own products, but we also partner with great companies like Veeam because it's customer choice, it's an open platform. And the Red Hat announcement is just fantastic. Because, hey, from a container platform standpoint, OpenShift provides 5,000 plus customers, 90% of the fortune 500 that they engage with, with that opportunity to take GreenLake with OpenShift and implement that container capabilities on-prem. So it's fantastic. >> We were talking after the keynote, Keith Townsend came on, myself and Lisa. And he was like, okay, what about startups? 'Cause that's kind of a hallmark of cloud. And we felt like, okay, startups are not the ideal customer profile necessarily for HPE. Although we saw Evil Geniuses up on stage, but I threw out and I'd love to get your thoughts on this that within companies, incumbents, you have entrepreneurs, they're trying to build their own clouds or Superclouds as I use the term, is that really the target for the developer audience? We've talked a lot about OpenShift with their other platforms, who says as a partner- >> We just announced another extension with Rancher and- >> Yeah. I saw that. And you have to have optionality for developers. Is that the way we should think about the target audience from a developer standpoint? >> I think it will be as we go forward. And so what Fidelma presented on stage was the new developer platform, because we have come to realize, we have to engage with the developers. They're the ones building the apps. They're the ones that are delivering the solutions for the most part. So yeah, I think at the enterprise space, we have a really strong capability. I think when you get into the sort of mid-market SMB standpoint, what we're doing is we're going directly to the managed service and cloud service providers and directly to our Disty and VARS to have them build solutions on top of GreenLake, powered by GreenLake, to then deliver to their customers because that's what the customer wants. I think on the developer side of the house, we have to speak their language, we have to provide their capabilities because they're going to start articulating apps that are going to use both the public cloud and our on-prem capabilities with GreenLake. And so that's got to work very well. And so you've heard us talk about API based and all of that sort of scenario. So it's an exciting time for us, again, moving HPE strategy into something very different than where we were before. >> Well, Keith, that speaks to ecosystem. So I don't know if you were at Microsoft, when the sweaty Steve Ballmer was working with the developers, developers. That's about ecosystem, ecosystem, ecosystem. I don't expect we're going to see Antonio replicating that. But that really is the sort of what you just described is the ecosystem developing on top of GreenLake. That's critical. >> Yeah. And this is one of the things I learned. So, being at Microsoft for as long as I was and leading the Azure business from a commercial standpoint, it was all about the partner and I mean, in all fairness, almost every solution that gets delivered has some sort of partner component to it. Might be an ISV app, might be a managed service, might be in a Colo, might be with our hybrid cloud, with our Hyperscalers, but everything has a partner component to it. And so one of the things I learned with Azure is, you have to sell through and with your ecosystem and go to that customer with a joint solution. And that's where it becomes so impactful and so powerful for what our customers are trying to accomplish. >> When we think about the data gravity and the value of data that put massive potential that it has, even Antonio talked about it this morning, being data rich but insights poor for a long time. >> Yeah. >> Every company in today's day and age has to be a data company to be competitive, there's no more option for that. How does GreenLake empower companies? GreenLake and its ecosystem empower companies to really live being data companies so that they can meet their customers where they are. >> I think it's a really great point because like we said, data's the new currency. Data's the new gold that's out there and people have to get their arms around their data estate. So then they can make these business decisions, these business insights and garner that. And Dave, you mentioned earlier, the Edge is bringing a ton of new data in, and my Zenseact example is a good one. But with GreenLake, you now have a platform that can do data and data management and really sort of establish and secure the data for you. There's no data latency, there's no data egress charges. And which is what we typically run into with the public cloud. But we also support a wide range of databases, open source, as well as the commercial ones, the sequels and those types of scenarios. But what really comes to life is when you have to do analytics on that and you're doing AI and machine learning. And this is one of the benefits I think that people don't realize with HPE is, the investments we've made with Cray, for example, we have and you saw on stage today, the largest supercomputer in the world. That depth that we have as a company, that then comes down into AI and analytics for what we can do with high performance compute, data simulations, data modeling, analytics, like that is something that we, as a company, have really deep, deep capabilities on. So it's exciting to see what we can bring to customers all for that spectrum of data. >> I was excited to see Frontier, they actually achieve, we hosted an event, co-produced event with HPE during the pandemic, Exascale day. >> Yeah. >> But we weren't quite at Exascale, we were like right on the cusp. So to see it actually break through was awesome. So HPC is clearly a differentiator for Hewlett Packard Enterprise. And you talk about the egress. What are some of the other differentiators? Why should people choose GreenLake? >> Well, I think the biggest thing is, that it's truly is a edge to cloud platform. And so you talk about Aruba and our capabilities with a network attached and network as a service capabilities, like that's fairly unique. You don't see that with the other companies. You mentioned earlier to me that compute capabilities that we've had as a company and the storage capabilities. But what's interesting now is that we're sort of taking all of that expertise and we're actually starting to deliver these cloud services that you saw on stage, private cloud, AI and machine learning, high performance computing, VDI, SAP. And now we're actually getting into these industry solutions. So we talked last year about electronic medical records, this year, we've talked about 5g. Now, we're talking about customer loyalty applications. So we're really trying to move from these sort of baseline capabilities and yes, containers and VMs and bare metal, all that stuff is important, but what's really important is the services that you run on top of that, 'cause that's the outcomes that our customers are looking at. >> Should we expect you to be accelerating? I mean, look at what you did with Azure. You look at what AWS does in terms of the feature acceleration. Should we expect HPE to replicate? Maybe not to that scale, but in a similar cadence, we're starting to see that. Should we expect that actually to go faster? >> I think you couched it really well because it's not as much about the quantity, but the quality and the uses. And so what we've been trying to do is say, hey, what is our swim lane? What is our sweet spot? Where do we have a superpower? And where are the areas that we have that superpower and how can we bring those solutions to our customers? 'Cause I think, sometimes, you get over your skis a bit, trying to do too much, or people get caught up in the big numbers, versus the, hey, what's the real meat behind it. What's the tangible outcome that we can deliver to customers? And we see just a massive TAM. I want to say my last analysis was around $42 billion in the next three years, TAM and the Azure service on-prem space. And so we think that there's nothing but upside with the core set of workloads, the core set of solutions and the cloud services that we bring. So yeah, we'll continue to innovate, absolutely, amen, but we're not in a, hey we got to get to 250 this and 300 that, we want to keep it as focused as we can. >> Well, the vast majority of the revenue in the public cloud is still compute. I mean, not withstanding, Microsoft obviously does a lot in SaaS, but I'm talking about the infrastructure and service. Still, well, I would say over 50%. And so there's a lot of the services that don't make any revenue and there's that long tail, if I hear your strategy, you're not necessarily going after that. You're focusing on the quality of those high value services and let the ecosystem sort of bring in the rest. >> This is where I think the, I mean, I love that you guys are asking me about the ecosystem because this is where their sweet spot is. They're the experts on hyper-converged or databases, a service or VDI, or even with SAP, like they're the experts on that piece of it. So we're enabling that together to our customers. And so I don't want to give you the impression that we're not going to innovate. Amen. We absolutely are, but we want to keep it within that, that again, our swim lane, where we can really add true value based on our expertise and our capabilities so that we can confidently go to customers and say, hey, this is a solution that's going to deliver this business value or this capability for you. >> The partners might be more comfortable with that than, we only have one eye sleep with one eye open in the public cloud, like, okay, what are they going to, which value of mine are they grab next? >> You're spot on. And again, this is where I think, the power of what an Edge to cloud platform like HPE GreenLake can do for our customers, because it is that sort of, I mentioned it, one plus one equals three kind of scenario for our customers so. >> So we can leave your customers, last question, Keith. I know we're only on day one of the main summit, the partner growth summit was yesterday. What's the feedback been from the customers and the ecosystem in terms of validating the direction that HPE is going? >> Well, I think the fantastic thing has been to hear from our customers. So I mentioned in my keynote recently, we had Liberty Mutual and we had Texas Children's Hospital, and they're implementing HPE GreenLake in a variety of different ways, from a private cloud standpoint to a data center consolidation. They're seeing sustainability goals happen on top of that. They're seeing us take on management for them so they can take their limited resources and go focus them on innovation and value added scenarios. So the flexibility and cost that we're providing, and it's just fantastic to hear this come to life in a real customer scenario because what Texas Children is trying to do is improve patient care for women and children like who can argue with that. >> Nobody. >> So, yeah. It's great. >> Awesome. Keith, thank you so much for joining Dave and me on the program, talking about all of the momentum with HPE Greenlake. >> Always. >> You can't walk in here without feeling the momentum. We appreciate your insights and your time. >> Always. Thank you you for the time. Yeah. Great to see you as well. >> Likewise. >> Thanks. >> For Keith White and Dave Vellante, I'm Lisa Martin. You're watching theCube live, day one coverage from the show floor at HPE Discover '22. We'll be right back with our next guest. (gentle music)

Published Date : Jun 28 2022

SUMMARY :

brought to you by HPE. This is the first Discover in three years I think I've been to 14 Discovers a spring in the step and the energy is crazy at this show. and the partners, and GreenLake is that So the momentum in the And I think you guys talk a lot about, on the platform itself and and solutions inside the organization at the Edge with Aruba. that part of the strategy? and the business outcome I mean, it's not like the last and so we have to jointly go Some of the expansion of the ecosystem. to partner with them. in terms of the expansion What's the SLA that we offer you that really the target Is that the way we should and all of that sort of scenario. But that really is the sort and leading the Azure business gravity and the value of data so that they can meet their and secure the data for you. with HPE during the What are some of the and the storage capabilities. in terms of the feature acceleration. and the cloud services that we bring. and let the ecosystem I love that you guys are the power of what an and the ecosystem in terms So the flexibility and It's great. about all of the momentum We appreciate your insights and your time. Great to see you as well. from the show floor at HPE Discover '22.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
KeithPERSON

0.99+

DavePERSON

0.99+

Lisa MartinPERSON

0.99+

Steve BallmerPERSON

0.99+

Chris LundPERSON

0.99+

VerizonORGANIZATION

0.99+

BarclaysORGANIZATION

0.99+

Keith WhitePERSON

0.99+

Keith TownsendPERSON

0.99+

FordORGANIZATION

0.99+

GreenLakeORGANIZATION

0.99+

Dave VellantePERSON

0.99+

MicrosoftORGANIZATION

0.99+

Dave VellantePERSON

0.99+

AWSORGANIZATION

0.99+

Karl StrohmeyerPERSON

0.99+

ZenseactORGANIZATION

0.99+

Liberty Mutual InsuranceORGANIZATION

0.99+

Las VegasLOCATION

0.99+

last yearDATE

0.99+

90%QUANTITY

0.99+

GreenLake Cloud ServicesORGANIZATION

0.99+

HPEORGANIZATION

0.99+

Tarkan ManerPERSON

0.99+

65,000 customersQUANTITY

0.99+

fiveQUANTITY

0.99+

threeQUANTITY

0.99+

LisaPERSON

0.99+

this yearDATE

0.99+

Evil GeniusesTITLE

0.99+

VeeamORGANIZATION

0.99+

Texas Children's HospitalORGANIZATION

0.99+

NutanixORGANIZATION

0.99+

firstQUANTITY

0.99+

Liberty MutualORGANIZATION

0.99+

around $42 billionQUANTITY

0.99+

EuropeLOCATION

0.99+

ArubaORGANIZATION

0.99+

eight new servicesQUANTITY

0.99+

todayDATE

0.99+

Texas ChildrenORGANIZATION

0.99+

yesterdayDATE

0.99+

Home DepotORGANIZATION

0.98+

oneQUANTITY

0.98+

Hewlett Packard EnterpriseORGANIZATION

0.98+

EquinixORGANIZATION

0.98+

FidelmaPERSON

0.98+

BothQUANTITY

0.98+

SupercloudORGANIZATION

0.98+

TAMORGANIZATION

0.98+

U.S.LOCATION

0.97+

bothQUANTITY

0.97+

over 50%QUANTITY

0.97+

5,000 plus customersQUANTITY

0.97+

AntonioPERSON

0.97+

hundreds of petabytesQUANTITY

0.97+

14 DiscoversQUANTITY

0.97+

EdgeORGANIZATION

0.97+

DistyORGANIZATION

0.97+

Red HatORGANIZATION

0.96+

RancherORGANIZATION

0.96+

Alex Ellis, OpenFaaS | Kubecon + Cloudnativecon Europe 2022


 

(upbeat music) >> Announcer: TheCUBE presents KubeCon and CloudNativeCon Europe, 2022. Brought to you by Red Hat, the Cloud Native Computing Foundation and its ecosystem partners. >> Welcome to Valencia, Spain, a KubeCon, CloudNativeCon Europe, 2022. I'm your host, Keith Townsend alongside Paul Gillon, Senior Editor, Enterprise Architecture for SiliconANGLE. We are, I think at the half point way point this to be fair we've talked to a lot of folks in open source in general. What's the difference between open source communities and these closed source communities that we attend so so much? >> Well open source is just it's that it's open it's anybody can contribute. There are a set of rules that manage how your contributions are reflected in the code base. What has to be shared, what you can keep to yourself but the it's an entirely different vibe. You know, you go to a conventional conference where there's a lot of proprietary being sold and it's all about cash. It's all about money changing hands. It's all about doing the deal. And open source conferences I think are more, they're more transparent and yeah money changes hands, but it seems like the objective of the interaction is not to consummate a deal to the degree that it is at a more conventional computer conference. >> And I think that can create an uneven side effect. And we're going to talk about that a little bit with, honestly a friend of mine Alex Ellis, founder of OpenFaaS. Alex welcome back to the program. >> Thank you, good to see Keith. >> So how long you've been doing OpenFaaS? >> Well, I first had this idea that serverless and function should be run on your own hardware back in 2016. >> Wow and I remember seeing you at DockerCon EU, was that in 2017? >> Yeah, I think that's when we first met and Simon Foskett took us out to dinner and we got chatting. And I just remember you went back to your hotel room after the presentation. You just had your iPhone out and your headphones you were talking about how you tried to OpenWhisk and really struggled with it and OpenFaaS sort of got you where you needed to be to sort of get some value out of the solution. >> And I think that's the magic of these open source communities in open source conferences that you can try stuff, you can struggle with it, come to a conference either get some advice or go in another direction and try something like a OpenFaaS. But we're going to talk about the business perspective. >> Yeah. >> Give us some, like give us some hero numbers from the project. What types of organizations are using OpenFaaS and what are like the download and stars all those, the ways you guys measure project success. >> So there's a few ways that you hear this talked about at KubeCon specifically. And one of the metrics that you hear the most often is GitHub stars. Now a GitHub star means that somebody with their laptop like yourself has heard of a project or seen it on their phone and clicked a button that's it. There's not really an indication of adoption but of interest. And that might be fleeting and a blog post you might publish you might bump that up by 2000. And so OpenFaaS quite quickly got a lot of stars which encouraged me to go on and do more with it. And it's now just crossed 30,000 across the whole organization of about 40 different open source repositories. >> Wow that is a number. >> Now you are in ecosystem where Knative is also taken off. And can you distinguish your approach to serverless or FaaS to Knatives? >> Yes so, Knative isn't an approach to FaaS. That's simply put and if you listen to Aikas Ville from the Knative project, he was working inside Google and wished that Kubernetes would do a little bit more than what it did. And so he started an initiative with some others to start bringing more abstractions like Auto Scaling, revision management so he can have two versions of code and and shift traffic around. And that's really what they're trying to do is add onto Kubernetes and make it do some of the things that a platform might do. Now OpenFaaS started from a different angle and frankly, two years earlier. >> There was no Kubernetes when you started it. >> It kind of led in the space and and built out that ecosystem. So the idea was, I was working with Lambda and AWS Alexa skills. I wanted to run them on my own hardware and I couldn't. And so OpenFaaS from the beginning started from that developer experience of here's my code, run it for me. Knative is a set of extensions that may be a building block but you're still pretty much working with Kubernetes. We get calls come through. And actually recently I can't tell you who they are but there's a very large telecommunications provider in the US that was using OpenFaaS, like yourself heard of Knative and in the hype they switched. And then they switched back again recently to OpenFaaS and they've come to us for quite a large commercial deal. >> So did they find Knative to be more restrictive? >> No, it's the opposite. It's a lot less opinionated. It's more like building blocks and you are dealing with a lot more detail. It's a much bigger system to manage, but don't get me wrong. I mean the guys are very friendly. They have their sort of use cases that they pursue. Google's now donated the project to CNCF. And so they're running it that way. Now it doesn't mean that there aren't FaaS on top of it. Red Hat have a serverless product VMware have one. But OpenFaaS because it owns the whole stack can get you something that's always been very lean, simple to use to the point that Keith in his hotel room installed it and was product with it in an evening without having to be a Kubernetes expert. >> And that is and if you remember back that was very anti-Kubernetes. >> Yes. >> It was not a platform I thought that was. And for some of the very same reasons, I didn't think it was very user friendly. You know, I tried open with I'm thinking what enterprise is going to try this thing, especially without the handholding and the support needed to do that. And you know, something pretty interesting that happened as I shared this with you on Twitter, I was having a briefing by a big microprocessor company, one of the big two. And they were showing me some of the work they were doing in Cloud-native and the way that they stretch test the system to show me Auto Scaling. Is that they bought up a OpenFaaS what is it? The well text that just does a bunch of, >> The cows maybe. >> Yeah the cows. That does just a bunch of texts. And it just all, and I'm like one I was amazed at is super simple app. And the second one was the reason why they discovered it was because of that simplicity is just a thing that's in your store that you can just download and test. And it was open fast. And it was this big company that you had no idea that was using >> No >> OpenFaaS. >> No. >> How prevalent is that? That you're always running into like these surprises of who's using the solution. >> There are a lot of top tier companies, billion dollar companies that use software that I've worked on. And it's quite common. The main issue you have with open source is you don't have like the commercial software you talked about, the relationships. They don't tell you they're using it until it breaks. And then they may come in incognito with a personal email address asking for things. What they don't want to do often is lend their brands or support you. And so it is a big challenge. However, early on, when I met you, BT, live person the University of Washington, and a bunch of other companies had told us they were using it. We were having discussions with them took them to Kubecon and did talks with them. You can go and look at them in the video player. However, when I left my job in 2019 to work on this full time I went to them and I said, you know, use it in production it's useful for you. We've done a talk, we really understand the business value of how it saves you time. I haven't got a way to fund it and it won't exist unless you help they were like sucks to be you. >> Wow that's brutal. So, okay let me get this right. I remember the story 2019, you leave your job. You say I'm going to do OpenFaaS and support this project 100% of your time. If there's no one contributing to the project from a financial perspective how do you make money? I've always pitched open source because you're the first person that I've met that ran an open source project. And I always pitched them people like you who work on it on their side time. But they're not the Knatives of the world, the SDOs, they have full time developers. Sponsored by Google and Microsoft, etc. If you're not sponsored how do you make money off of open source? >> If this is the million dollar question, really? How do you make money from something that is completely free? Where all of the value has already been captured by a company and they have no incentive to support you build a relationship or send you money in any way. >> And no one has really figured it out. Arguably Red Hat is the only one that's pulled it off. >> Well, people do refer to Red Hat and they say the Red Hat model but I think that was a one off. And we quite, we can kind of agree about that in a business. However, I eventually accepted the fact that companies don't pay for something they can get for free. It took me a very long time to get around that because you know, with open source enthusiast built a huge community around this project, almost 400 people have contributed code to it over the years. And we have had full-time people working on it on and off. And there's some people who really support it in their working hours or at home on the weekends. But no, I had to really think, right, what am I going to offer? And to begin with it would support existing customers weren't interested. They're not really customers because they're consuming it as a project. So I needed to create a product because we understand we buy products. Initially I just couldn't find the right customers. And so many times I thought about giving up, leaving it behind, my family would've supported me with that as well. And they would've known exactly why even you would've done. And so what I started to do was offer my insights as a community leader, as a maintainer to companies like we've got here. So Casting one of my customers, CSIG one of my customers, Rancher R, DigitalOcean, a lot of the vendors you see here. And I was able to get a significant amount of money by lending my expertise and writing content that gave me enough buffer to give the doctors time to realize that maybe they do need support and go a bit further into production. And over the last 12 months, we've been signing six figure deals with existing users and new users alike in enterprise. >> For support >> For support, for licensing of new features that are close source and for consulting. >> So you have proprietary extensions. Also that are sort of enterprise class. Right and then also the consulting business, the support business which is a proven business model that has worked >> Is a proven business model. What it's not a proven business model is if you work hard enough, you deserve to be rewarded. >> Mmh. >> You have to go with the system. Winter comes after autumn. Summer comes after spring and you, it's no point saying why is it like that? That's the way it is. And if you go with it, you can benefit from it. And that's what the realization I had as much as I didn't want to do it. >> So you know this community, well you know there's other project founders out here thinking about making the leap. If you're giving advice to a project founder and they're thinking about making this leap, you know quitting their job and becoming the next Alex. And I think this is the perception that the misperception out there. >> Yes. >> You're, you're well known. There's a difference between being well known and well compensated. >> Yeah. >> What advice would you give those founders >> To be. >> Before they make the leap to say you know what I'm going to do my project full time. I'm going to lean on the generosity of the community. So there are some generous people in the community. You've done some really interesting things for individual like contributions etc but that's not enough. >> So look, I mean really you have to go back to the MBA mindset. What problem are you trying to solve? Who is your target customer? What do they care about? What do they eat and drink? When do they go to sleep? You really need to know who this is for. And then customize a journey for them so that they can come to you. And you need some way initially of funneling those people in qualifying them because not everybody that comes to a student or somebody doing a PhD is not your customer. >> Right, right. >> You need to understand sales. You need to understand a lot about business but you can work it out on your way. You know, I'm testament to that. And once you have people you then need something to sell them that might meet their needs and be prepared to tell them that what you've got isn't right for them. 'cause sometimes that's the one thing that will build integrity. >> That's very hard for community leaders. It's very hard for community leaders to say, no >> Absolutely so how do you help them over that hump? I think of what you've done. >> So you have to set some boundaries because as an open source developer and maintainer you want to help everybody that's there regardless. And I think for me it was taking some of the open source features that companies used not releasing them anymore in the open source edition, putting them into the paid developing new features based on what feedback we'd had, offering support as well but also understanding what is support. What do you need to offer? You may think you need a one hour SLA for a fix probably turns out that you could sell a three day response time or one day response time. And some people would want that and see value in it. But you're not going to know until you talk to your customers. >> I want to ask you, because this has been a particular interest of mine. It seems like managed services have been kind of the lifeline for pure open source companies. Enabling these companies to maintain their open source roots, but still have a revenue stream of delivering as a service. Is that a business model option you've looked at? >> There's three business models perhaps that are prevalent. One is OpenCore, which is roughly what I'm following. >> Right. >> Then there is SaaS, which is what you understand and then there's support on pure open source. So that's more like what Rancher does. Now if you think of a company like Buoyant that produces Linkerd they do a bit of both. So they don't have any close source pieces yet but they can host it for you or you can host it and they'll support you. And so I think if there's a way that you can put your product into a SaaS that makes it easier for them to run then you know go for it. However, we've OpenFaaS, remember what is the core problem we are solving, portability So why lock into my cloud? >> Take that option off the table, go ahead. >> It's been a long journey and I've been a fan since your start. I've seen the bumps and bruises and the scars get made. If you're open source leader and you're thinking about becoming as famous as Alex, hey you can do that, you can put in all the work become famous but if you want to make a living, solve a problem, understand what people are willing to pay for that problem and go out and sell it. Valuable lessons here on theCUBE. From Valencia, Spain I'm Keith Townsend along with Paul Gillon and you're watching theCUBE the leader in high-tech coverage. (Upbeat music)

Published Date : May 19 2022

SUMMARY :

Brought to you by Red Hat, What's the difference between what you can keep to yourself And I think that can create that serverless and function you went back to your hotel room that you can try stuff, the ways you guys measure project success. and a blog post you might publish And can you distinguish your approach and if you listen to Aikas Ville when you started it. and in the hype they switched. and you are dealing And that is and if you remember back and the support needed to do that. that you can just download and test. like these surprises of and it won't exist unless you help you leave your job. to support you build a relationship Arguably Red Hat is the only a lot of the vendors you see here. that are close source and for consulting. So you have proprietary extensions. is if you work hard enough, And if you go with it, that the misperception out there. and well compensated. to say you know what I'm going so that they can come to you. And once you have people community leaders to say, no Absolutely so how do you and maintainer you want to help everybody have been kind of the lifeline perhaps that are prevalent. that you can put your product the table, go ahead. and the scars get made.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Paul GillonPERSON

0.99+

Keith TownsendPERSON

0.99+

GoogleORGANIZATION

0.99+

KeithPERSON

0.99+

one dayQUANTITY

0.99+

Alex EllisPERSON

0.99+

2019DATE

0.99+

MicrosoftORGANIZATION

0.99+

Simon FoskettPERSON

0.99+

2016DATE

0.99+

100%QUANTITY

0.99+

three dayQUANTITY

0.99+

Cloud Native Computing FoundationORGANIZATION

0.99+

Red HatORGANIZATION

0.99+

iPhoneCOMMERCIAL_ITEM

0.99+

one hourQUANTITY

0.99+

2017DATE

0.99+

USLOCATION

0.99+

DigitalOceanORGANIZATION

0.99+

KnativeORGANIZATION

0.99+

AWSORGANIZATION

0.99+

BuoyantORGANIZATION

0.99+

Valencia, SpainLOCATION

0.99+

Rancher RORGANIZATION

0.99+

OneQUANTITY

0.99+

CNCFORGANIZATION

0.99+

OpenFaaSTITLE

0.99+

University of WashingtonORGANIZATION

0.99+

AlexPERSON

0.99+

KubeConEVENT

0.99+

three business modelsQUANTITY

0.99+

OpenFaaSORGANIZATION

0.99+

30,000QUANTITY

0.99+

two years earlierDATE

0.98+

million dollarQUANTITY

0.98+

oneQUANTITY

0.98+

six figureQUANTITY

0.98+

about 40 different open source repositoriesQUANTITY

0.98+

two versionsQUANTITY

0.98+

CloudNativeCon EuropeEVENT

0.97+

CloudnativeconORGANIZATION

0.97+

BTORGANIZATION

0.96+

bothQUANTITY

0.96+

firstQUANTITY

0.96+

KubeconORGANIZATION

0.95+

twoQUANTITY

0.95+

FaaSTITLE

0.95+

KubernetesORGANIZATION

0.94+

AlexaTITLE

0.94+

almost 400 peopleQUANTITY

0.94+

TwitterORGANIZATION

0.94+

TheCUBEORGANIZATION

0.93+

first personQUANTITY

0.92+

billion dollarQUANTITY

0.92+

second oneQUANTITY

0.91+

LinkerdORGANIZATION

0.88+

Red HatTITLE

0.87+

KubernetesTITLE

0.87+

CSIGORGANIZATION

0.87+

KnativeTITLE

0.86+

HatTITLE

0.85+

OpenCoreTITLE

0.84+

RancherORGANIZATION

0.83+

EuropeLOCATION

0.79+

KnativesORGANIZATION

0.79+

SiliconANGLEORGANIZATION

0.78+

Greg Muscarella, SUSE | Kubecon + Cloudnativecon Europe 2022


 

>>The cube presents, Coon and cloud native con Europe, 2022. Brought to you by red hat, the cloud native computing foundation and its ecosystem partners. >>Welcome to Valencia Spain and cuon cloud native con 20 Europe, 2022. I'm your host Keith towns alongside a new hope en Rico, senior reti, senior editor. I'm sorry, senior it analyst at <inaudible> Enrique. Welcome to the program. >>Thank you very much. And thank you for having me. It's exciting. >>So thoughts, high level thoughts of CU con first time in person again in couple years? >>Well, this is amazing for several reasons. And one of the reasons is that yeah, I had the chance to meet, uh, with, uh, you know, people like you again. I mean, we, we met several times over the internet over zoom calls. I, I started to eat these zoom codes. <laugh> because they're really impersonal in the end. And like last night we, we are together group of friends, industry folks. It's just amazing. And a part of that, I mean, the event is, uh, is a really cool, it's really cool. There are a lot from people interviews and, you know, real people doing real stuff, not just, uh, you know, again, in personal calls, you don't even know if they're telling the truth, but when you can, you know, look in their eyes, what they're doing, I, I think that's makes a difference. >>So speaking about real people, meeting people for the first time, new jobs, new roles, Greg Moscarella, enterprise container management and general manager at SUSE. Welcome to the show, welcome back clue belong. >>Thank you very much. It's awesome to be here. It's awesome to be back in person. And I completely agree with you. Like there's a certain fidelity to the conversation and a certain, uh, ability to get to know people a lot more. So it's absolutely fantastic to be here. >>So Greg, tell us about your new role and what SUSE has gone on at KU coupon. >>Sure. So I joined SA about three months ago to lead the rancher business unit, right? So our container management pieces and, you know, it's a, it's a fantastic time. Cause if you look at the transition from virtual machines to containers and to moving to microservices, right alongside that transition from on-prem to cloud, like this is a very exciting time to be in this industry. And rancher has been setting the stage. And again, I'm go back to being here. Rancher's all about the community, right? So this is a very open, independent, uh, community driven product and project. And so this, this is kinda like being back to our people, right. And being able to reconnect here. And so, you know, doing it, digital is great, but, but being here is changes the game for us. So we, we feed off that community. We feed off the energy. So, uh, and again, going back to the space and what's happening in it, great time to be in this space. And you guys have seen the transitions you've seen, I mean, we've seen just massive adoption, uh, of containers and Kubernetes overall and ranchers been been right there with some amazing companies doing really interesting things that I'd never thought of before. Uh, so I'm, I'm still learning on this, but, um, but it's been great so far. >>Yeah. And you know, when we talk about strategy about Kubernetes today, we are talking about very broad strategies. I mean, not just the data center or the cloud with, you know, maybe smaller organization adopting Kubernetes in the cloud, but actually large organization thinking guide and more and more the edge. So what's your opinion on this, you know, expansion of Kubernetes towards the edge. >>So I think you're, I think you're exactly right. And that's actually a lot of meetings I've been having here right now is these are some of these interesting use cases. So people who, uh, whether it be, you know, ones that are easy to understand in the telco space, right? Especially the adoption of 5g and you have all these space stations, new towers, and they have not only the core radio functions or network functions that they're trying to do there, but they have other applications that wanna run on that same environment. Uh, I spoke recently with some of our, our good friends at a major automotive manufacturer, doing things in their factories, right. That can't take the latency of being somewhere else. Right. So they have robots on the factory floor, the latency that they would experience if they tried to run things in the cloud meant that robot would've moved 10 centimeters. >>By the time, you know, the signal got back, it may not seem like a lot to you, but if, if, if you're an employee, you know, there, you know, uh, a big 2000 pound robot being 10 centimeters closer to you may not be what you, you really want. Um, there's, there's just a tremendous amount of activity happening out there on the retail side as well. So it's, it's amazing how people are deploying containers in retail outlets. You know, whether it be fast food and predicting, what, what, how many French fries you need to have going at this time of day with this sort of weather. Right. So you can make sure those queues are actually moving through. It's, it's, it's really exciting and interesting to look at all the different applications that are happening. So yes, on the edge for sure, in the public cloud, for sure. In the data center and we're finding is people want a common platform across those as well. Right? So for the management piece too, but also for security and for policies around these things. So, uh, it really is going everywhere. >>So talk to me, how do, how are we managing that as we think about pushing stuff out of the data center, out of the cloud cloud, closer to the edge security and life cycle management becomes like top of mind thought as, as challenges, how is rancher and sushi addressing >>That? Yeah. So I, I think you're, again, spot on. So it's, it starts off with the think of it as simple, but it's, it's not simple. It's the provisioning piece. How do we just get it installed and running right then to what you just asked the management piece of it, everything from your firmware to your operating system, to the, the cluster, uh, the Kubernetes cluster, that's running on that. And then the workloads on top of that. So with rancher, uh, and with the rest of SUSE, we're actually tacking all those parts of the problems from bare metal on up. Uh, and so we have lots of ways for deploying that operating system. We have operating systems that are, uh, optimized for the edge, very secure and ephemeral container images that you can build on top of. And then we have rancher itself, which is not only managing your ES cluster, but can actually start to manage the operating system components, uh, as well as the workload components. >>So all from your single interface, um, we mentioned policy and security. So we, yeah, we'll probably talk about it more, um, uh, in a little bit, but, but new vector, right? So we acquired a company called new vector, just open sourced, uh, that here in January, that ability to run that level of, of security software everywhere again, is really important. Right? So again, whether I'm running it on, whatever my favorite public cloud providers, uh, managed Kubernetes is, or out at the edge, you still have to have security, you know, in there. And, and you want some consistency across that. If you have to have a different platform for each of your environments, that's just upping the complexity and the opportunity for error. So we really like to eliminate that and simplify our operators and developers' lives as much as possible. >>Yeah. From this point of view, are you implying that even you, you are matching, you know, self, uh, let's say managed clusters at the, at the very edge now with, with, you know, added security, because these are the two big problems lately, you know, so having something that is autonomous somehow easier to manage, especially if you are deploying hundreds of these that's micro clusters. And on the other hand, you need to know a policy based security that is strong enough to be sure again, if you have these huge robots moving too close to you, because somebody act the, the, the class that is managing them, that is, could be a huge problem. So are you, you know, approaching this kind of problems? I mean, is it, uh, the technology that you are acquired, you know, ready to, to do this? >>Yeah. I, I mean, it, it really is. I mean, there's still a lot of innovation happening. Don't, don't get me wrong. We're gonna see a lot of, a lot more, not just from, from SA and ranch here, but from the community, right. There's a lot happening there, but we've come a long way and we solved a lot of problems. Uh, if I think about, you know, how do you have this distributed environment? Uh, well, some of it comes down to not just, you know, all the different environments, but it's also the applications, you know, with microservices, you have very dynamic environment now just with your application space as well. So when we think about security, we really have to evolve from a fairly static policy where like, you might even be able to set an IP address and a port and some configuration on that. >>It's like, well, your workload's now dynamically moving. So not only do you have to have that security capability, like the ability to like, look at a process or look at a network connection and stop it, you have to have that, uh, manageability, right? You can't expect an operator or someone to like go in and manually configure a YAML file, right? Because things are changing too fast. It needs to be that combination of convenient, easy to manage with full function and ability to protect your, your, uh, your resources. And I think that's really one of the key things that new vector really brings is because we have so much intelligence about what's going on there. Like the configuration is pretty high level, and then it just runs, right? So it's used to this dynamic environment. It can actually protect your workloads wherever it's going from pod to pod. Uh, and it's that, that combination, again, that manageability with that high functionality, um, that, that is what's making it so popular. And what brings that security to those edge locations or cloud locations or your data center. >>So one of the challenges you're kind of, uh, touching on is this abstraction on, upon abstraction. When I, I ran my data center, I could put, uh, say this IP address, can't talk to this IP address on this port. Then I got next generation firewalls where I could actually do, uh, some analysis. Where are you seeing the ball moving to when it comes to customers, thinking about all these layers of abstraction IP address doesn't mean anything anymore in cloud native it's yes, I need one, but I'm not, I'm not protecting based on IP address. How are customers approaching security from the name space perspective? >>Well, so it's, you're absolutely right. In fact, even when you go to IPV six, like, I don't even recognize IP addresses anymore. <laugh> yeah. >>That doesn't mean anything like, oh, just a bunch of, yeah. Those are numbers, alpha Ric >>And colons. Right. You know, it's like, I don't even know anymore. Right. So, um, yeah, so it's, it comes back to that, moving from a static, you know, it's the pets versus cattle thing. Right? So this static thing that I can sort of know and, and love and touch and kind of protect to this almost living, breathing thing, which is moving all around, it's a swarm of, you know, pods moving all over the place. And so, uh, it, it is, I mean, that's what Kubernetes has done for the workload side of it is like, how do you get away from, from that, that pet to a declarative approach to, you know, identifying your workload and the components of that workload and what it should be doing. And so if we go on the security side some more like, yeah, it's actually not even namespace namespace. >>Isn't good enough if we wanna get, if we wanna get to zero trust, it's like, just cuz you're running in my namespace doesn't mean I trust you. Right. So, and that's one of the really cool things about new vectors because of the, you know, we're looking at protocol level stuff within the network. So it's pod to pod, every single connection we can look at and it's at the protocol layer. So if you say you're on my SQL database and I have a mye request going into it, I can confirm that that's actually a mye protocol being spoken and it's well formed. Right. And I know that this endpoint, you know, which is a, uh, container image or a pod name or some, or a label, even if it's in the same name, space is allowed to talk to and use this protocol to this other pod that's running in my same name space. >>Right. So I can either allow or deny. And if I can, I can look into the content that request and make sure it's well formed. So I'll give you an example is, um, do you guys remember the log four J challenges from not too long ago, right. It was a huge deal. So if I'm doing something that's IP and port based and name space based, so what are my protections? What are my options for something that's got logged four J embedded in like, I either run the risk of it running or I shut it down. Those are my options. Like those neither one of those are very good. So we can do, because again, we're at the protocol layer. It's like, ah, I can identify any log for J protocol. I can look at whether it's well formed, you know, or if it's malicious and it's malicious, I can block it. If it's well formed, I can let it go through. So I can actually look at those, those, um, those vulnerabilities. I don't have to take my service down. I can run and still be protected. And so that, that extra level, that ability to kind of peek into things and also go pod to pod, you know, not just same space level is one of the key differences. So I talk about the evolution or how we're evolving with, um, with the security. Like we've grown a lot, we've got a lot more coming. >>So let's talk about that a lot more coming what's in the pipeline for SUSE. >>Well, probably before I get to that, we just announced new vector five. So maybe I can catch us up on what was released last week. Uh, and then we can talk a little bit about going, going forward. So new vector five, introduce something called um, well, several things, but one of the things I can talk in more detail about is something called zero drift. So I've been talking about the network security, but we also have run time security, right? So any, any container that's running within your environment has processes that are running that container. What we can do is actually comes back to that manageability and configuration. We can look at the root level of trust of any process that's running. And as long as it has an inheritance, we can let that process run without any extra configuration. If it doesn't have a root level of trust, like it didn't spawn from whatever the, a knit, um, function was in that container. We're not gonna let it run. Uh, so the, the configuration that you have to put in there is, is a lot simpler. Um, so that's something that's in, in new vector five, um, the web application firewall. So this layer seven security inspection has gotten a lot more granular now. So it's that pod Topo security, um, both for ingress egress and internal on the cluster. Right. >>So before we get to what's in the pipeline, one question around new vector, how is that consumed and deployed? >>How is new vector consumed, >>Deployed? And yeah, >>Yeah, yeah. So, uh, again with new vector five and, and also rancher 2 65, which just were released, there's actually some nice integration between them. So if I'm a rancher customer and I'm using 2 65, I can actually deploy that new vector with a couple clicks of the button in our, uh, in our marketplace. And we're actually tied into our role-based access control. So an administrator who has that has the rights can just click they're now in a new vector interface and they can start setting those policies and deploying those things out very easily. Of course, if you aren't using, uh, rancher, you're using some other, uh, container management platform, new vector still works. Awesome. You can deploy it there still in a few clicks. Um, you're just gonna get into, you have to log into your new vector, uh, interface and, and use it from there. >>So that's how it's deployed. It's, it's very, it's very simple to use. Um, I think what's actually really exciting about that too, is we've opensourced it? Um, so it's available for anyone to go download and try, and I would encourage people to give it a go. Uh, and I think there's some compelling reasons to do that now. Right? So we have pause security policies, you know, depreciated and going away, um, pretty soon in, in Kubernetes. And so there's a few things you might look at to make sure you're still able to run a secure environment within Kubernetes. So I think it's a great time to look at what's coming next, uh, for your security within your Kubernetes. >>So Paul, we appreciate chief stopping by from ity of Spain, from Spain, I'm Keith Townsend, along with en Rico Sinte. Thank you. And you're watching the, the leader in high tech coverage.

Published Date : May 19 2022

SUMMARY :

Brought to you by red hat, Welcome to the program. And thank you for having me. I had the chance to meet, uh, with, uh, you know, people like you again. So speaking about real people, meeting people for the first time, new jobs, So it's absolutely fantastic to be here. So Greg, tell us about your new role and what SUSE has gone So our container management pieces and, you know, it's a, it's a fantastic time. you know, maybe smaller organization adopting Kubernetes in the cloud, So people who, uh, whether it be, you know, By the time, you know, the signal got back, it may not seem like a lot to you, to what you just asked the management piece of it, everything from your firmware to your operating system, managed Kubernetes is, or out at the edge, you still have to have security, And on the other hand, you need to know a policy based security that is strong have to evolve from a fairly static policy where like, you might even be able to set an IP address and a port and some configuration So not only do you have to have So one of the challenges you're kind of, uh, touching on is this abstraction In fact, even when you go to IPV six, like, Those are numbers, it comes back to that, moving from a static, you know, it's the pets versus cattle thing. And I know that this endpoint, you know, and also go pod to pod, you know, not just same space level is one of the key differences. the configuration that you have to put in there is, is a lot simpler. Of course, if you aren't using, uh, rancher, you're using some other, So I think it's a great time to look at what's coming next, uh, for your security within your So Paul, we appreciate chief stopping by from ity of Spain,

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Greg MoscarellaPERSON

0.99+

Greg MuscarellaPERSON

0.99+

SpainLOCATION

0.99+

PaulPERSON

0.99+

JanuaryDATE

0.99+

SUSEORGANIZATION

0.99+

10 centimetersQUANTITY

0.99+

Keith TownsendPERSON

0.99+

EnriquePERSON

0.99+

GregPERSON

0.99+

last weekDATE

0.99+

oneQUANTITY

0.99+

2000 poundQUANTITY

0.99+

one questionQUANTITY

0.99+

Valencia SpainLOCATION

0.98+

2022DATE

0.97+

CoonORGANIZATION

0.97+

bothQUANTITY

0.97+

KubernetesTITLE

0.97+

first timeQUANTITY

0.97+

two big problemsQUANTITY

0.97+

single interfaceQUANTITY

0.96+

IPV sixOTHER

0.96+

CloudnativeconORGANIZATION

0.96+

KubeconORGANIZATION

0.95+

ingressORGANIZATION

0.95+

todayDATE

0.95+

eachQUANTITY

0.95+

SQLTITLE

0.93+

5gQUANTITY

0.93+

SUSETITLE

0.92+

ESTITLE

0.92+

red hatORGANIZATION

0.9+

zeroQUANTITY

0.9+

hundredsQUANTITY

0.88+

KubernetesORGANIZATION

0.87+

Keith townsPERSON

0.84+

vector fiveOTHER

0.84+

last nightDATE

0.84+

vector fiveTITLE

0.83+

EuropeLOCATION

0.83+

Rico SintePERSON

0.82+

three months agoDATE

0.81+

cuon cloud native conORGANIZATION

0.79+

cloud native conORGANIZATION

0.79+

SAORGANIZATION

0.79+

couple yearsQUANTITY

0.78+

2 65COMMERCIAL_ITEM

0.76+

aboutDATE

0.73+

RicoPERSON

0.72+

SALOCATION

0.71+

single connectionQUANTITY

0.63+

rancherORGANIZATION

0.63+

FrenchOTHER

0.6+

egressORGANIZATION

0.58+

reasonsQUANTITY

0.57+

20LOCATION

0.56+

foundationORGANIZATION

0.56+

CUORGANIZATION

0.51+

fiveTITLE

0.47+

KubernetesPERSON

0.46+

KUORGANIZATION

0.45+

conEVENT

0.4+

vectorCOMMERCIAL_ITEM

0.36+

sevenQUANTITY

0.35+

couponEVENT

0.33+

Danny Allan, Veeam | VeeamON 2022


 

>>Hi, this is Dave Volonte. We're winding down Day two of the Cubes coverage of Vim on 2022. We're here at the area in Las Vegas. Myself and Dave Nicholson had been going for two days. Everybody's excited about the VM on party tonight. It's It's always epic, and, uh, it's a great show in terms of its energy. Danny Allen is here. He's cto of in his back. He gave the keynote this morning. I say, Danny, you know, you look pretty good up there with two hours of sleep. I >>had three. >>Look, don't look that good, but your energy was very high. And I got to tell you the story you told was amazing. It was one of the best keynotes I've ever seen. Even even the technology pieces were outstanding. But you weaving in that story was incredible. I'm hoping that people will go back and and watch it. We probably don't have time to go into it, but wow. Um, can you give us the the one minute version of that >>long story? >>Sure. Yeah. I read a book back in 2013 about a ship that sank off Portsmouth, Maine, and I >>thought, I'm gonna go find that >>ship. And so it's a long, >>complicated process. Five >>years in the making. But we used data, and the data that found the ship was actually from 15 years earlier. >>And in 20 >>18, we found the bow of the ship. We found the stern of the ship, but what we were really trying to answer was torpedoed. Or did the boilers explode? Because >>the navy said the boilers exploded >>and two survivors said, No, it was torpedoed or there was a German U boat there. >>And so >>our goal was fine. The ship find the boiler. >>So in 20 >>19, Sorry, Uh, it was 2018. We found the bow and the stern. And then in 2019, we found both boilers perfectly intact. And in fact, the rear end of that torpedo wasn't much left >>of it, of course, but >>data found that wreck. And so it, um, it exonerated essentially any implication that somebody screwed >>up in >>the boiler system and the survivors or the Children of the survivors obviously appreciated >>that. I'm sure. Yes, Several >>outcomes to it. So the >>chief engineer was one >>of the 13 survivors, >>and he lived with the weight of this for 75 years. 49 sailors dead because of myself. But I had the opportunity of meeting some of the Children of the victims and also attending ceremonies. The families of those victims received purple hearts because they were killed due to enemy action. And then you actually knew how to do this. I wasn't aware you had experience finding Rex. You've >>discovered several of >>them prior to this one. But >>the interesting connection >>the reason why this keynote was so powerful as we're a >>team, it's a data conference. >>You connected that to data because you you went out and bought a How do you say this? Magnanimous magnetometer. Magnetometer, Magnetometer. I don't know what that >>is. And a side >>scan Sonar, Right? I got that right. That was >>easy. But >>then you know what this stuff is. And then you >>built the model >>tensorflow. You took all the data and you found anomalies. And then you went right to that spot. Found the >>wreck with 12 >>£1000 of dynamite, >>which made your heart >>beat. But >>then you found >>the boilers. That's incredible. And >>but the point was, >>this is data >>uh, let's see, >>a lot of years after, >>right? >>Yeah. Two sets of data were used. One was the original set of side scan sonar >>data by the historian >>who discovered there was a U boat in the area that was 15 years old. >>And then we used, of >>course, the wind and weather and wave pattern data that was 75 years old to figure out where the boiler should be because they knew that the ship had continued to float for eight minutes. And so you had to go back and determine the models of where should the boilers >>be if it exploded and the boilers >>dropped out and it floated along >>for eight minutes and then sank? Where was >>that data? >>It was was a scanned was an electronic was a paper. How did you get that data? So the original side scan sonar data was just hard >>drive >>data by the historian. >>I wish I could say he used them to >>back it up. But I don't know that I can say that. But he still had >>the data. 15 years later, the >>weather and >>wind and wave data, That was all public information, and we actually used that extensively. We find other wrecks. A lot of wrecks off Boston Sunken World War Two. So we were We were used to that model of tracking what happened. Wow. So, yes, imagine if that data weren't available >>and it >>probably shouldn't have been right by all rights. So now fast forward to 2022. We've got Let's talk about just a cloud >>data. I think you said a >>couple of 100 >>petabytes in the >>cloud 2019. 500 in, Uh, >>no. Yeah. In >>20 2200 and 42. Petabytes in 20 2500 Petabytes last year. And we've already done the same as 2020. So >>240 petabytes >>in Q one. I expect >>this year to move an exhibit of >>data into the public cloud. >>Okay, so you got all that data. Who knows what's in there, right? And if it's not protected, who's going to know in 50 60 7100 years? Right. So that was your tie in? Yes. To the to the importance of data protection, which was just really, really well done. Congratulations. Honestly, one of the best keynotes I've ever seen keynotes often really boring, But you did a great job again on two hours. Sleep. So much to unpack here. The other thing that really is. I mean, we can talk about the demos. We can talk about the announcements. Um, so? Well, yeah, Let's see. Salesforce. Uh, data protection is now public. I almost spilled the beans yesterday in the cube. Caught myself the version 12. Obviously, you guys gave a great demo showing the island >>cloud with I think it >>was just four minutes. It was super fast. Recovery in four minutes of data loss was so glad you didn't say zero minutes because that would have been a live demos which, Okay, which I appreciate and also think is crazy. So some really cool demos, Um, and some really cool features. So I have so much impact, but the the insights that you can provide through them it's VM one, uh, was actually something that I hadn't heard you talk about extensively in the past. That maybe I just missed it. But I wonder if you could talk about that layer and why it's critical differentiator for Wien. It's >>the hidden gem >>within the Wien portfolio because it knows about absolutely >>everything. >>And what determines the actions >>that we take is the >>context in which >>data is surviving. So in the context of security, which we are showing, we look for CPU utilisation, memory utilisation, data change rate. If you encrypt all of the data in a file server, it's going to blow up overnight. And so we're leveraging heuristics in their reporting. But even more than that, one of the things in Wien one people don't realise we have this concept of the intelligent diagnostics. It's machine learning, which we drive on our end and we push out as packages intervene one. There's up to 200 signatures, but it helps our customers find issues before they become issues. Okay, so I want to get into because I often time times, don't geek out with you. And don't take advantage of your your technical knowledge. And you've you've triggered a couple of things, >>especially when the >>analysts call you said it again today that >>modern >>data protection has meaning to you. We talked a little bit about this yesterday, but back in >>the days of >>virtualisation, you shunned agents >>and took a different >>approach because you were going for what was then >>modern. Then you >>went to bare metal cloud hybrid >>cloud containers. Super Cloud. Using the analyst meeting. You didn't use the table. Come on, say Super Cloud and then we'll talk about the edge. So I would like to know specifically if we can go back to Virtualised >>because I didn't know >>this exactly how you guys >>defined modern >>back then >>and then. Let's take that to modern today. >>So what do you >>do back then? And then we'll get into cloud and sure, So if you go back to and being started, everyone who's using agents, you'd instal something in the operating system. It would take 10% 15% of your CPU because it was collecting all the data and sending it outside of the machine when we went through a virtual environment. If you put an agent inside that machine, what happens is you would have 100 operating systems all on the same >>server, consuming >>resources from that hyper visor. And so he said, there's a better way of capturing the data instead of capturing the data inside the operating system. And by the way, managing thousands of agents is no fun. So What we did is we captured a snapshot of the image at the hyper visor level. And then over time, we just leverage changed block >>tracking from the hyper >>visor to determine what >>had changed. And so that was modern. Because no more >>managing agents >>there was no impact >>on the operating system, >>and it was a far more >>efficient way to store >>data. You leverage CBT through the A P. Is that correct? Yeah. We used the VCR API >>for data protection. >>Okay, so I said this to Michael earlier. Fast forward to today. Your your your data protection competitors aren't as fat, dumb and happy as they used to be, so they can do things in containers, containers. And we talked about that. So now let's talk about Cloud. What's different about cloud data protection? What defines modern data protection? And where are the innovations that you're providing? >>Let me do one step in >>between those because one of the things that happened between hypervisors and Cloud was >>offline. The capture of the data >>to the storage system because >>even better than doing it >>at the hyper visor clusters >>do it on the storage >>array because that can capture the >>data instantly. Right? So as we go to the cloud, we want to do the same thing. Except we don't have access to either the hyper visor or the storage system. But what they do provide is an API. So we can use the API to capture all of the blocks, all of the data, all of the changes on that particular operating system. Now, here's where we've kind of gone full circle on a hyper >>visor. You can use the V >>sphere agent to reach into the operating system to do >>things like application consistency. What we've done modern data protection is create specific cloud agents that say Forget >>about the block changes. Make sure that I have application consistency inside that cloud operating >>system. Even though you don't have access to the hyper visor of the storage, >>you're still getting the >>operating system consistency >>while getting the really >>fast capture of data. So that gets into you talking on stage about how synapse don't equal data protection. I think you just explained it, but explain why, but let me highlight something that VM does that is important. We manage both snapshots and back up because if you can recover from your storage array >>snapshot. That is the best >>possible thing to recover from right, But we don't. So we manage both the snapshots and we converted >>into the VM portable >>data format. And here's where the super cloud comes into play because if I can convert it into the VM portable data format, I can move >>that OS >>anywhere. I can move it from >>physical to virtual to cloud >>to another cloud back to virtual. I can put it back on physical if I want to. It actually abstracts >>the cloud >>layer. There are things >>that we do when we go >>between clouds. Some use bio, >>some use, um, fee. >>But we have the data in backup format, not snapshot format. That's theirs. But we have been in backup format that we can move >>around and abstract >>workloads across. All of the infrastructure in your >>catalogue is control >>of that. Is that Is >>that right? That is about >>that 100%. And you know what's interesting about our catalogue? Dave. The catalogue is inside the backup, and so historically, one of the problems with backup is that you had a separate catalogue and if it ever got corrupted. All of your >>data is meaningless >>because the catalogue is inside >>the backup >>for that unique VM or that unique instance, you can move it anywhere and power it on. That's why people said were >>so reliable. As long >>as you have the backup file, you can delete our >>software. You can >>still get the data back, so I love this fast paced so that >>enables >>what I call Super Cloud we now call Super Cloud >>because now >>take that to the edge. >>If I want to go to the edge, I presume you can extend that. And I also presume the containers play a role there. Yes, so here's what's interesting about the edge to things on the edge. You don't want to have any state if you can help it, >>and so >>containers help with that. You can have stateless environment, some >>persistent data storage, >>but we not only >>provide the portability >>in operating systems. We also do this for containers, >>and that's >>true if you go to the cloud and you're using SE CKs >>with relational >>database service is already >>asked for the persistent data. >>Later, we can pick that up and move it to G K E or move it to open shift >>on premises. And >>so that's why I call this the super cloud. We have all of this data. Actually, I think you termed the term super thank you for I'm looking for confirmation from a technologist that it's technically feasible. It >>is technically feasible, >>and you can do it today and that's a I think it's a winning strategy. Personally, Will there be >>such a thing as edge Native? You know, there's cloud native. Will there be edge native new architectures, new ways of doing things, new workloads use cases? We talk about hardware, new hardware, architectures, arm based stuff that are going to change everything to edge Native Yes and no. There's going to be small tweaks that make it better for the edge. You're gonna see a lot of iron at the edge, obviously for power consumption purposes, and you're also going to see different constructs for networking. We're not going to use the traditional networking, probably a lot more software to find stuff. Same thing on the storage. They're going to try and >>minimise the persistent >>storage to the smallest footprint possible. But ultimately I think we're gonna see containers >>will lead >>the edge. We're seeing this now. We have a I probably can't name them, but we have a large retail organisation that is running containers in every single store with a small, persistent footprint of the point of sale and local data, but that what >>is running the actual >>system is containers, and it's completely ephemeral. So we were >>at Red Hat, I was saying >>earlier last week, and I'd say half 40 50% of the conversation was edge open shift, obviously >>playing a big role there. I >>know doing work with Rancher and Town Zoo. And so there's a lot of options there. >>But obviously, open shift has >>strong momentum in the >>marketplace. >>I've been dominating. You want to chime in? No, I'm just No, >>I yeah, I know. Sometimes >>I'll sit here like a sponge, which isn't my job absorbing stuff. I'm just fascinated by the whole concept of of a >>of a portable format for data that encapsulates virtual machines and or instances that can live in the containerised world. And once you once you create that common denominator, that's really that's >>That's the secret sauce >>for what you're talking about is a super club and what's been fascinating to watch because I've been paying attention since the beginning. You go from simply V. M. F s and here it is. And by the way, the pitch to E. M. C. About buying VM ware. It was all about reducing servers to files that can be stored on storage arrays. All of a sudden, the light bulbs went off. We can store those things, and it just began. It became it became a marriage afterwards. But to watch that progression that you guys have gone from from that fundamental to all of the other areas where now you've created this common denominator layer has has been amazing. So my question is, What's the singer? What doesn't work? Where the holes. You don't want to look at it from a from a glass half empty perspective. What's the next opportunity? We've talked about edge, but what are the things that you need to fill in to make this truly ubiquitous? Well, there's a lot of services out there that we're not protecting. To be fair, right, we do. Microsoft 3 65. We announced sales for us, but there's a dozen other paths services that >>people are moving data >>into. And until >>we had data protection >>for the assassin path services, you know >>you have to figure out how >>to protect them. Now here's the kicker about >>those services. >>Most of them have the >>ability to dump date >>out. The trick is, do they have the A >>P? I is needed to put data >>back into it right, >>which is which is a >>gap. As an industry, we need to address this. I actually think we need a common >>framework for >>how to manage the >>export of data, but also the import of data not at a at a system level, but at an atomic level of the elements within those applications. >>So there are gaps >>there at the industry, but we'll fill them >>if you look on the >>infrastructure side. We've done a lot with containers and kubernetes. I think there's a next wave around server list. There's still servers and these micro services, but we're making things smaller and smaller and smaller, and there's going to be an essential need to protect those services as well. So modern data protection is something that's going to we're gonna need modern data protection five years from now, the modern will just be different. Do you ever see the day, Danny, where governance becomes an >>adjacency opportunity for >>you guys? It's clearly an opportunity even now if you look, we spent a lot of time talking about security and what you find is when organisations go, for example, of ransomware insurance or for compliance, they need to be able to prove that they have certifications or they have security or they have governance. We just saw transatlantic privacy >>packed only >>to be able to prove what type of data they're collecting. Where are they storing it? Where are they allowed to recovered? And yes, those are very much adjacency is for our customers. They're trying to manage that data. >>So given that I mean, >>am I correct that architecturally you are, are you location agnostic? Right. We are a location agnostic, and you can actually tag data to allowable location. So the big trend that I think is happening is going to happen in in this >>this this decade. >>I think we're >>scratching the surface. Is this idea >>that, you know, leave data where it is, >>whether it's an S three >>bucket, it could be in an Oracle >>database. It could be in a snowflake database. It can be a data lake that's, you know, data, >>bricks or whatever, >>and it stays where >>it is. And it's just a note on the on the call of the data >>mesh. Not my term. Jim >>Octagon coined that term. The >>problem with that, and it puts data in the hands of closer to the domain experts. The problem with that >>scenario >>is you need self service infrastructure, which really doesn't exist today anyway. But it's coming, and the big problem is Federated >>computational >>governance. How do I automate that governance so that the people who should have access to that it can have access to that data? That, to me, seems to be an adjacency. It doesn't exist except in >>a proprietary >>platform. Today. There needs to be a horizontal >>layer >>that is more open than anybody >>can use. And I >>would think that's a perfect opportunity for you guys. Just strategically it is. There's no question, and I would argue, Dave, that it's actually >>valuable to take snapshots and to keep the data out at the edge wherever it happens to be collected. But then Federated centrally. It's why I get so excited by an exhibit of data this year going into the cloud, because then you're centralising the aggregation, and that's where you're really going to drive the insights. You're not gonna be writing tensorflow and machine learning and things on premises unless you have a lot of money and a lot of GPS and a lot of capacity. That's the type of thing that is actually better suited for the cloud. And, I would argue, better suited for not your organisation. You're gonna want to delegate that to a third party who has expertise in privacy, data analysis or security forensics or whatever it is that you're trying to do with the data. But you're gonna today when you think about AI. We talked about A. I haven't had a tonne of talk about AI some >>appropriate >>amount. Most of the >>AI today correct me if you think >>this is not true is modelling that's done in the cloud. It's dominant. >>Don't >>you think that's gonna flip when edge >>really starts to take >>off where it's it's more real time >>influencing >>at the edge in new use cases at the edge now how much of that data >>is going to be >>persisted is a >>point of discussion. But what >>are your thoughts on that? I completely agree. So my expectation of the way >>that this will work is that >>the true machine learning will happen in the centralised location, and what it will do is similar to someone will push out to the edge the signatures that drive the inferences. So my example of this is always the Tesla driving down the road. >>There's no way that that >>car should be figuring it sending up to the cloud. Is that a stop sign? Is it not? It can't. It has to be able to figure out what the stop sign is before it gets to it, so we'll do the influencing at the edge. But when it doesn't know what to do with the data, then it should send it to the court to determine, to learn about it and send signatures back out, not just to that edge location, but all the edge locations within the within the ecosystem. So I get what you're saying. They might >>send data back >>when there's an anomaly, >>or I always use the example of a deer running in front of the car. David Floyd gave me that one. That's when I want to. I do want to send the data back to the cloud because Tesla doesn't persist. A tonne of data, I presume, right, right less than 5% of it. You know, I want to. Usually I'm here to dive into the weeds. I want kind of uplevel this >>to sort of the >>larger picture. From an I T perspective. >>There's been a lot of consolidation going on if you divide the >>world into vendors >>and customers. On the customer side, there are only if there's a finite number of seats at the table for truly strategic partners. Those get gobbled up often by hyper >>scale cloud >>providers. The challenge there, and I'm part of a CEO accreditation programme. So this >>is aimed at my students who >>are CEOs and CIOs. The challenge is that a lot of CEOs and CIOs on the customer side don't exhaustively drag out of their vendor partners like a theme everything that Saveem >>can do for >>them. Maybe they're leveraging a point >>solution, >>but I guarantee you they don't all know that you've got cast in in the portfolio. Not every one of them does yet, let alone this idea of a super >>cloud and and and >>how much of a strategic role you can play. So I don't know if it's a blanket admonition to folks out there, but you have got to leverage the people who are building the solutions that are going to help you solve problems in the business. And I guess, as in the form of >>a question, >>uh, do you Do you see that as a challenge? Now those the limited number of seats at >>the Table for >>Strategic Partners >>Challenge and >>Opportunity. If you look at the types of partners that we've partnered with storage partners because they own the storage of the data, at the end of the day, we actually just manage it. We don't actually store it the cloud partners. So I see that as the opportunity and my belief is I thought that the storage doesn't matter, >>but I think the >>organisation that can centralise and manage that data is the one that can rule the world, and so >>clearly I'm a team. I think we can do amazing things, but we do have key >>strategic partners hp >>E Amazon. You heard >>them on stage yesterday. >>18 different >>integrations with AWS. So we have very strategic partners. Azure. I go out there all the time. >>So there >>you don't need to be >>in the room at the table because your partners are >>and they have a relationship with the customer as well. Fair enough. But the key to this it's not just technology. It is these relationships and what is possible between our organisations. So I'm sorry to be >>so dense on this, but when you talk about >>centralising that data you're talking about physically centralising it or can actually live across clouds, >>for instance. But you've got >>visibility and your catalogues >>have visibility on >>all that. Is that what you mean by centralised obliterated? We have understanding of all the places that lives, and we can do things with >>it. We can move it from one >>cloud to another. We can take, you know, everyone talks about data warehouses. >>They're actually pretty expensive. >>You got to take data and stream it into this thing, and there's a massive computing power. On the other hand, we're >>not like that. You've storage on there. We can ephemeral e. Spin up a database when you need it for five minutes and then destroy it. We can spin up an image when you need it and then destroy it. And so on your perspective of locations. So irrespective of >>location, it doesn't >>have to be in a central place, and that's been a challenge. You extract, >>transform and load, >>and moving the data to the central >>location has been a problem. We >>have awareness of >>all the data everywhere, >>and then we can make >>decisions as to what you >>do based >>on where it is and >>what it is. And that's a metadata >>innovation. I guess that >>comes back to the catalogue, >>right? Is that correct? >>You have data >>about the data that informs you as to where it is and how to get to it. And yes, so metadata within the data that allows you to recover it and then data across the federation of all that to determine where it is. And machine intelligence plays a role in all that, not yet not yet in that space. Now. I do think there's opportunity in the future to be able to distribute storage across many different locations and that's a whole conversation in itself. But but our machine learning is more just on helping our customers address the problems in their infrastructures rather than determining right now where that data should be. >>These guys they want me to break, But I'm >>refusing. So your >>Hadoop back >>in their rooms via, um that's >>well, >>that scale. A lot of customers. I talked to Renee Dupuis. Hey, we we got there >>was heavy lift. You >>know, we're looking at new >>ways. New >>approaches, uh, going. And of course, it's all in the cloud >>anyway. But what's >>that look like? That future look like we haven't reached bottle and X ray yet on our on our Hadoop clusters, and we do continuously examine >>them for anomalies that might happen. >>Not saying we won't run into a >>bottle like we always do at some >>point, But we haven't yet >>awesome. We've covered a lot of We've certainly covered extensively the research that you did on cyber >>security and ransomware. Um, you're kind of your vision for modern >>data protection. I think we hit on that pretty well casting, you know, we talked to Michael about that, and then, you know, the future product releases the Salesforce data protection. You guys, I think you're the first there. I think you were threatened at first from Microsoft. 3 65. No, there are other vendors in the in the salesforce space. But what I tell people we weren't the first to do data capture at the hyper >>visor level. There's two other >>vendors I won't tell you they were No one remembers them. Microsoft 3 65. We weren't the first one to for that, but we're now >>the largest. So >>there are other vendors in the salesforce space. But we're looking at We're going to be aggressive. Danielle, Thanks >>so much for coming to Cuba and letting us pick your brain like that Really great job today. And congratulations on >>being back >>in semi normal. Thank you for having me. I love being on all right. And thank you for watching. Keep it right there. More coverage. Day volonte for Dave >>Nicholson, By >>the way, check out silicon angle dot com for all the written coverage. All the news >>The cube dot >>net is where all these videos We'll we'll live. Check out wiki bond dot com I published every week. I think I'm gonna dig into the cybersecurity >>research that you guys did this week. If I can >>get a hands my hands on those charts which Dave Russell promised >>me, we'll be right back >>right after this short break. Mm.

Published Date : May 18 2022

SUMMARY :

He gave the keynote this morning. And I got to tell you the story you told off Portsmouth, Maine, and I And so it's a long, But we used data, and the data that found the ship was actually from 15 years earlier. We found the stern of the ship, but what we were really trying to answer was The ship find the boiler. We found the bow and the stern. data found that wreck. Yes, Several So the But I had the opportunity of meeting some of the Children of the victims and also attending ceremonies. them prior to this one. You connected that to data because you you went out and bought a How do you say this? I got that right. But And then you And then you went right to that spot. But the boilers. One was the original set of side scan sonar the boiler should be because they knew that the ship had continued to float for eight minutes. So the original side scan sonar data was just hard But I don't know that I can say that. the data. So we were We were used to that model of tracking So now fast forward to 2022. I think you said a cloud 2019. 500 in, And we've already done the same as 2020. I expect To the to the importance the insights that you can provide through them it's VM one, But even more than that, one of the things in Wien one people don't realise we have this concept of the intelligent diagnostics. data protection has meaning to you. Then you Using the analyst meeting. Let's take that to modern today. And then we'll get into cloud and sure, So if you go back to and being started, of capturing the data inside the operating system. And so that was modern. We used the VCR API Okay, so I said this to Michael earlier. The capture of the data all of the changes on that particular operating system. You can use the V cloud agents that say Forget about the block changes. Even though you don't have access to the hyper visor of the storage, So that gets into you talking on stage That is the best possible thing to recover from right, But we don't. And here's where the super cloud comes into play because if I can convert it into the VM I can move it from to another cloud back to virtual. There are things Some use bio, But we have been in backup format that we can move All of the infrastructure in your Is that Is and so historically, one of the problems with backup is that you had a separate catalogue and if it ever got corrupted. for that unique VM or that unique instance, you can move it anywhere and power so reliable. You can You don't want to have any state if you can help it, You can have stateless environment, some We also do this for containers, And Actually, I think you termed the and you can do it today and that's a I think it's a winning strategy. new hardware, architectures, arm based stuff that are going to change everything to edge Native Yes storage to the smallest footprint possible. of the point of sale and local data, but that what So we were I And so there's a lot of options there. You want to chime in? I yeah, I know. I'm just fascinated by the whole concept of of instances that can live in the containerised world. But to watch that progression that you guys have And until Now here's the kicker about The trick is, do they have the A I actually think we need a common but at an atomic level of the elements within those applications. So modern data protection is something that's going to we're gonna need modern we spent a lot of time talking about security and what you find is when organisations to be able to prove what type of data they're collecting. So the big trend that I think is happening is going to happen in scratching the surface. It can be a data lake that's, you know, data, And it's just a note on the on the call of the data Not my term. Octagon coined that term. The problem with that But it's coming, and the big problem is Federated How do I automate that governance so that the people who should have access to that it can There needs to be a horizontal And I would think that's a perfect opportunity for you guys. That's the type of thing that is actually better suited for the cloud. Most of the this is not true is modelling that's done in the cloud. But what So my expectation of the way the true machine learning will happen in the centralised location, and what it will do is similar to someone then it should send it to the court to determine, to learn about it and send signatures Usually I'm here to dive into the weeds. From an I T perspective. On the customer side, there are only if there's a finite number of seats at So this The challenge is that a lot of CEOs and CIOs on the customer side but I guarantee you they don't all know that you've got cast in in the portfolio. And I guess, as in the form of So I see that as the opportunity and my belief is I thought that the storage I think we can do amazing things, but we do have key You heard So we have very strategic partners. But the key to this it's not just technology. But you've got all the places that lives, and we can do things with We can take, you know, everyone talks about data warehouses. On the other hand, We can ephemeral e. Spin up a database when you need it for five minutes and then destroy have to be in a central place, and that's been a challenge. We And that's a metadata I guess that about the data that informs you as to where it is and how to get to it. So your I talked to Renee Dupuis. was heavy lift. And of course, it's all in the cloud But what's the research that you did on cyber Um, you're kind of your vision for modern I think we hit on that pretty well casting, you know, we talked to Michael about that, There's two other vendors I won't tell you they were No one remembers them. the largest. But we're looking at We're going to be aggressive. so much for coming to Cuba and letting us pick your brain like that Really great job today. And thank you for watching. the way, check out silicon angle dot com for all the written coverage. I think I'm gonna dig into the cybersecurity research that you guys did this week. right after this short break.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
MichaelPERSON

0.99+

Dave RussellPERSON

0.99+

Dave NicholsonPERSON

0.99+

Renee DupuisPERSON

0.99+

2013DATE

0.99+

Danny AllenPERSON

0.99+

Dave VolontePERSON

0.99+

Danny AllanPERSON

0.99+

DavePERSON

0.99+

10%QUANTITY

0.99+

David FloydPERSON

0.99+

DannyPERSON

0.99+

DaniellePERSON

0.99+

75 yearsQUANTITY

0.99+

2019DATE

0.99+

TeslaORGANIZATION

0.99+

AWSORGANIZATION

0.99+

2018DATE

0.99+

CubaLOCATION

0.99+

MicrosoftORGANIZATION

0.99+

eight minutesQUANTITY

0.99+

two survivorsQUANTITY

0.99+

Las VegasLOCATION

0.99+

13 survivorsQUANTITY

0.99+

two daysQUANTITY

0.99+

two hoursQUANTITY

0.99+

100 operating systemsQUANTITY

0.99+

2020DATE

0.99+

18QUANTITY

0.99+

two hoursQUANTITY

0.99+

yesterdayDATE

0.99+

JimPERSON

0.99+

five minutesQUANTITY

0.99+

twoQUANTITY

0.99+

last yearDATE

0.99+

2022DATE

0.99+

four minutesQUANTITY

0.99+

Two setsQUANTITY

0.99+

one minuteQUANTITY

0.99+

49 sailorsQUANTITY

0.99+

Red HatORGANIZATION

0.99+

42QUANTITY

0.99+

TodayDATE

0.99+

todayDATE

0.99+

PortsmouthLOCATION

0.99+

zero minutesQUANTITY

0.99+

NicholsonPERSON

0.99+

15 years laterDATE

0.99+

OneQUANTITY

0.99+

firstQUANTITY

0.99+

bothQUANTITY

0.99+

OracleORGANIZATION

0.99+

threeQUANTITY

0.98+

less than 5%QUANTITY

0.98+

RancherORGANIZATION

0.98+

oneQUANTITY

0.98+

this yearDATE

0.98+

WienLOCATION

0.98+

100%QUANTITY

0.98+

both boilersQUANTITY

0.98+

AmazonORGANIZATION

0.97+

both snapshotsQUANTITY

0.97+

up to 200 signaturesQUANTITY

0.97+

15 years oldQUANTITY

0.97+

VeeamPERSON

0.96+

Town ZooORGANIZATION

0.96+

this weekDATE

0.96+

thousands of agentsQUANTITY

0.96+

100QUANTITY

0.95+

SalesforceORGANIZATION

0.95+

tonightDATE

0.95+

Boston Sunken World War TwoEVENT

0.94+

hpORGANIZATION

0.94+

Michael Cade, Veeam | VeeamON 2022


 

(calm music) >> Hi everybody. We're here at VeeamON 2022. This is day two of the CUBE's continuous coverage. I'm Dave Vellante. My co-host is Dave Nicholson. A ton of energy. The keynotes, day two keynotes are all about products at Veeam. Veeam, the color of green, same color as money. And so, and it flows in this ecosystem. I'll tell you right now, Michael Cade is here. He's the senior technologist for product strategy at Veeam. Michael, fresh off the keynotes. >> Yeah, yeah. >> Welcome. Danny Allen's keynote was fantastic. I mean, that story he told blew me away. I can't wait to have him back. Stay tuned for that one. But we're going to talk about protecting containers, Kasten. You guys got announcements of Kasten by Veeam, you call it K10 version five, I think? >> Yeah. So just rolled into 5.0 release this week. Now, it's a bit different to what we see from a VBR release cycle kind of thing, cause we're constantly working on a two week sprint cycle. So as much as 5.0's been launched and announced, we're going to see that trickling out over the next couple of months until we get round to Cube (indistinct) and we do all of this again, right? >> So let's back up. I first bumped into Kasten, gosh, it was several years ago at VeeamON. Like, wow this is a really interesting company. I had deep conversations with them. They had a sheer, sheer cat grin, like something was going on and okay finally you acquire them, but go back a little bit of history. Like why the need for this? Containers used to be ephemeral. You know, you didn't have to persist them. That changed, but you guys are way ahead of that trend. Talk a little bit more about the history there and then we'll get into current day. >> Yeah, I think the need for stateful workloads within Kubernetes is absolutely grown. I think we just saw 1.24 of Kubernetes get released last week or a couple of weeks ago now. And really the focus there, you can see, at least three of the big ticket items in that release are focused around storage and data. So it just encourages that the community is wanting to put these data services within that. But it's also common, right? It's great to think about a stateless... If you've got stateless application but even a web server's got some state, right? There's always going to be some data associated to an application. And if there isn't then like, great but that doesn't really work- >> You're right. Where'd they click, where'd they go? I mean little things like that, right? >> Yeah. Yeah, exactly. So one of the things that we are seeing from that is like obviously the requirement to back up and put in a lot of data services in there, and taking full like exposure of the Kubernetes ecosystem, HA, and very tiny containers versus these large like virtual machines that we've always had the story at Veeam around the portability and being able to move them left, right, here, there, and everywhere. But from a K10 point of view, the ability to not only protect them, but also move those applications or move that data wherever they need to be. >> Okay. So, and Kubernetes of course has evolved. I mean the early days of Kubernetes, they kept it simple, kind of like Veeam actually. Right? >> Yeah. >> And then, you know, even though Mesosphere and even Docker Swarm, they were trying to do more sophisticated cluster management. Kubernetes has now got projects getting much more complicated. So more complicated workloads mean more data, more critical data means more protection. Okay, so you acquire Kasten, we know that's a small part of your business today but it's going to be growing. We know this cause everybody's developing applications. So what's different about protecting containers? Danny talks about modern data protection. Okay, when I first heard that, I'm like, eh, nice tagline, but then he peel the onion. He explains how in virtualization, you went from agents to backing up of VMware instance, a virtual instance. What's different about containers? What constitutes modern data protection for containers? >> Yeah, so I think the story that Danny tells as well, is so when we had our physical agents and virtualization came along and a lot of... And this is really where Veeam was born, right, we went into the virtualization API, the VMware API, and we started leveraging that to be more storage efficient. The admin overhead around those agents weren't there then, we could just back up using the API. Whereas obviously a lot of our competition would use agents still and put that resource overhead on top of that. So that's where Veeam initially got the kickstart in that world. I think it's very similar to when it comes to Kubernetes because K10 is deployed within the Kubernetes cluster and it leverages the Kubernetes API to pull out that data in a more efficient way. You could use image based backups or traditional NAS based backups to protect some of the data, and backup's kind of the... It's only one of the ticks in the boxes, right? You have to be able to restore and know what that data is. >> But wait, your competitors aren't as fat, dumb and happy today as they were back then, right? So it can't... They use the same APIs and- >> Yeah. >> So what makes you guys different? >> So I think that's testament to the Kubernetes and the community behind that and things like the CSI driver, which enables the storage vendors to take that CSI abstraction layer and then integrate their storage components, their snapshot technologies, and other efficiency models in there, and be able to leverage that as part of a universal data protection API. So really that's one tick in the box and you're absolutely right, there's open source tools that can do exactly what we're doing to a degree on that backup and recovery. Where it gets really interesting is the mobility of data and how we're protecting that. Because as much as stateful workloads are seen within the Kubernetes environments now, they're also seen outside. So things like Amazon RDS, but the front end lives in Kubernetes going to that stateless point. But being able to protect the whole application and being very application aware means that we can capture everything and restore wherever we want that to go as well. Like, so the demo that I just did was actually a Postgres database in AWS, and us being able to clone or migrate that out into an EKS cluster as a staple set. So again, we're not leveraging RDS at that point, but it gives us the freedom of movement of that data. >> Yeah, I want to talk about that, what you actually demoed. One of the interesting things, we were talking earlier, I didn't see any CLI when you were going through the integration of K10 V5 and V12. >> Yeah. >> That was very interesting, but I'm more skeptical of this concept, of the single pane of glass and how useful that is. Who is this integration targeting? Are you targeting the sort of traditional Veeam user who is now adding as a responsibility, the management of protecting these Kubernetes environments? Or are you at the same time targeting the current owners of those environments? Cause I know you talk about shift left and- >> Yeah. >> You know, nobody needs Kubernetes if you only have one container and one thing you're doing. So at some point it's all about automation, it's about blueprints, it's about getting those things in early. So you get up, you talk about this integration, who cares about that kind of integration? >> Yeah, so I think it's a bit of both, right? So we're definitely focused around the DevOps focused engineer. Let's just call it that. And under an umbrella, the cloud engineer that's looking after Kubernetes, from an application delivery perspective. But I think more and more as we get further up the mountain, CIS admin, obviously who we speak to the tech decision makers, the solutions architects systems engineers, they're going to inherit and be that platform operator around the Kubernetes clusters. And they're probably going to land with the requirement around data management as well. So the specific VBR centralized management is very much for the backup admin, the infrastructure admin or the cloud based engineer that's looking after the Kubernetes cluster and the data within that. Still we speak to app developers who are conscious of what their database looks like, because that's an external data service. And the biggest question that we have or the biggest conversation we have with them is that the source code, the GitHub or the source repository, that's fine, that will get your... That'll get some of the way back up and running, but when it comes to a Postgres database or some sort of data service, oh, that's out of the CI/CD pipeline. So it's whether they're interested in that or whether that gets farmed out into another pre-operations, the traditional operations team. >> So I want to unpack your press release a little bit. It's full of all the acronyms, so maybe you can help us- >> Sure. >> Cipher. You got security everywhere enhance platform hardening, including KMS. That's key- >> Yeah, key management service, yeah. >> System, okay. With AWS, KMS and HashiCorp vault. Awesome, love to see HashiCorp company. >> Yeah. >> RBAC objects in UI dashboards, ransomware attacks, AWS S3. So anyway, security everywhere. What do you mean by that? >> So I think traditionally at Veeam, and continue that, right? From a security perspective, if you think about the failure scenario and ransomware's, the hot topic, right, when it comes to security, but we can think about security as, if we think about that as the bang, right, the bang is something bad's happen, fire, flood, blood, type stuff. And we tend to be that right hand side of that, we tend to be the remediation. We're definitely the one, the last line of defense to get stuff back when something really bad happens. And I think what we've done from a K10 point of view, is not only enhance that, so with the likes of being able to... We're not going to reinvent the wheel, let's use the services that HashiCorp have done from a HashiCorp vault point of view and integrate from a key management system. But then also things like S3 or ransomware prevention. So I want to know if something bad's happened and Kasten actually did something more generic from a Veeam ONE perspective, but one of the pieces that we've seen since we've then started to send our backups to an immutable object storage, is let's be more of that left as well and start looking at the preventative tasks that we can help with. Now, we're not going to be a security company, but you heard all the way through Danny's like keynote, and probably when he is been on here, is that it's always, we're always mindful of that security focus. >> On that point, what was being looked for? A spike in CPU utilization that would be associated with encryption? >> Yeah, exactly that. >> Is that what was being looked- >> That could be... Yeah, exactly that. So that could be from a virtual machine point of view but from a K10, and it specifically is that we're going to look at the S3 bucket or the object storage, we're going to see if there's a rate of change that's out of the normal. It's an abnormal rate. And then with that, we can say, okay, that doesn't look right, alert us through observability tools, again, around the cloud native ecosystem, Prometheus Grafana. And then we're going to get insight into that before the bang happens, hopefully before the bang. >> So that's an interesting when we talk about adjacencies and moving into this area of security- >> We're talking to Zeus about that too. >> Exactly. That's that sort of creep where you can actually add value. It's interesting. >> So, okay. So we talked about shift left, get that, and then expanded ecosystem, industry leading technologies. By the way, one of them is the Red Hat Marketplace. And I think, I heard Anton's... Anton was amazing. He is the head of product management at Veeam. Is been to every VeeamON. He's got family in Ukraine. He's based in Switzerland. >> Yeah. >> But he chose not to come here because he's obviously supporting, you know, the carnage that's going on in Ukraine. But anyway, I think he said the Red Hat team is actually in Ukraine developing, you know, while the bombs are dropping. That's amazing. But anyway, back to our interview here, expanded ecosystem, Red Hat, SUSE with Rancher, they've got some momentum. vSphere with Tanzu, they're in the game. Talk about that ecosystem and its importance. >> Yeah, and I think, and it goes back to your point around the CLI, right? Is that it feels like the next stage of Kubernetes is going to be very much focused towards the operator or the operations team. The CIS admin of today is going to have to look after that. And at the moment it's all very command line, it's all CLI driven. And I think the marketplace is OpenShift, being our biggest foothold around our customer base, is definitely around OpenShift. But things like, obviously we are a longstanding alliance partner with VMware as well. So their Tanzu operations actually there's support for TKGS, so vSphere Tanzu grid services is another part of the big release of 5.0. But all three of those and the common marketplace gives us a UI, gives us a way of being able to see and visualize that rather than having to go and hunt down the commands and get our information through some- >> Oh, some people are going to be unhappy about that. >> Yeah. >> But I contend the human eye has evolved to see in color for a very good reason. So I want to see things in red, yellow, and green at times. >> There you go, yeah. >> So when we hear a company like Veeam talk about, look we have no platform agenda, we don't care which cloud it's in. We don't care if it's on-prem or Google Azure, AWS. We had Wasabi on, we have... Great, they got an S3 compatible, you know, target, and others as well. When we hear them, companies like you, talk about that consistent experience, single pane of glass that you're skeptical of, maybe cause it's technically challenging, one of the things, we call it super cloud, right, that's come up. Danny and I were riffing on that the other day and we'll do that more this afternoon. But it brings up something that we were talking about with Zeus, Dave, which is the edge, right? And it seems like Kubernetes, and we think about OpenShift. >> Yeah. >> We were there last week at Red Hat Summit. It's like 50% of the conversation, if not more, was the edge. Right, and really true edge, worst cases, use cases. Two weeks ago we were at Dell Tech, there was a lot of edge talk, but it was retail stores, like Lowe's. Okay, that's kind of near edge, but the far edge, we're talking space, right? So seems like Kubernetes fits there and OpenShift, you know, particularly, as well as some of the others that we mentioned. What about edge? How much of what you're doing with container data protection do you see as informing you about the edge opportunity? Are you seeing any patterns there? Nobody's really talking about it in data protection yet. >> So yeah, large scale numbers of these very small clusters that are out there on farms or in wind turbines, and that is definitely something that is being spoken about. There's not much mention actually in this 5.0 release because we actually support things like K3s,(indistinct), that all came in 4.5, but I think, to your first point as well, David, is that, look, we don't really care what that Kubernetes distribution is. So you've got K3s lightweight Kubernetes distribution, we support it, because it uses the same native Kubernetes APIs, and we get deployed inside of that. I think where we've got these large scale and large numbers of edge deployments of Kubernetes and that you require potentially some data management down there, and they might want to send everything into a centralized location or a more centralized location than a farm shed out in the country. I think we're going to see a big number of that. But then we also have our multi cluster dashboard that gives us the ability to centralize all of the control plane. So we don't have to go into each individual K10 deployment to manage those policies. We can have one big centralized management multi cluster dashboard, and we can set global policies there. So if you're running a database and maybe it's the same one across all of your different edge locations, where you could just set one policy to say I want to protect that data on an hourly basis, a daily basis, whatever that needs to be, rather than having to go into each individual one. >> And then send it back to that central repository. So that's the model that you see, you don't see the opportunity, at least at this point in time, of actually persisting it at the edge? >> So I think it depends. I think we see both, but again, that's the footprint. And maybe like you mentioned about up in space having a Kubernetes cluster up there. You don't really want to be sending up a NAS device or a storage device, right, to have to sit alongside it. So it's probably, but then equally, what's the art of the possible to get that back down to our planet, like as part of a consistent copy of data? >> Or even a farm or other remote locations. The question is, I mean, EVs, you know, we believe there's going to be tons of data, we just don't.. You think about Tesla as a use case, they don't persist a ton of their data. Maybe if a deer runs across, you know, the front of the car, oh, persist that, send that back to the cloud. >> I don't want anyone knowing my Tesla data. I'll tell you that right now. (all laughing) >> Well, there you go, that one too. All right, well, that's future discussion, we're still trying to squint through those patterns. I got so many questions for you, Michael, but we got to go. Thanks so much for coming to theCUBE. >> Always. >> Great job on the keynote today and good luck. >> Thank you. Thanks for having me. >> All right, keep it right there. We got a ton of product talk today. As I said, Danny Allan's coming back, we got the ecosystem coming, a bunch of the cloud providers. We have, well, iland was up on stage. They were just recently acquired by 11:11 Systems. They were an example today of a cloud service provider. We're going to unpack it all here on theCUBE at VeeamON 2022 from Las Vegas at the Aria. Keep it right there. (calm music)

Published Date : May 18 2022

SUMMARY :

Veeam, the color of green, I mean, that story he told blew me away. and we do all of this again, right? about the history there So it just encourages that the community I mean little things like that, right? So one of the things that I mean the early days of Kubernetes, but it's going to be growing. and it leverages the Kubernetes API So it can't... and be able to leverage that One of the interesting things, of the single pane of glass So you get up, you talk And the biggest question that we have It's full of all the acronyms, You got security everywhere With AWS, KMS and HashiCorp vault. So anyway, security everywhere. and ransomware's, the hot topic, right, or the object storage, That's that sort of creep where He is the head of product said the Red Hat team and the common marketplace gives us a UI, to be unhappy about that. But I contend the human eye on that the other day It's like 50% of the and maybe it's the same one So that's the model that you see, but again, that's the footprint. that back to the cloud. I'll tell you that right now. Thanks so much for coming to theCUBE. on the keynote today and good luck. Thanks for having me. a bunch of the cloud providers.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Dave NicholsonPERSON

0.99+

DavidPERSON

0.99+

MichaelPERSON

0.99+

Dave VellantePERSON

0.99+

Danny AllenPERSON

0.99+

SwitzerlandLOCATION

0.99+

UkraineLOCATION

0.99+

DannyPERSON

0.99+

Michael CadePERSON

0.99+

TeslaORGANIZATION

0.99+

50%QUANTITY

0.99+

Las VegasLOCATION

0.99+

LoweORGANIZATION

0.99+

AntonPERSON

0.99+

VeeamONORGANIZATION

0.99+

VeeamORGANIZATION

0.99+

last weekDATE

0.99+

DavePERSON

0.99+

Red HatORGANIZATION

0.99+

Two weeks agoDATE

0.99+

AWSORGANIZATION

0.99+

last weekDATE

0.99+

two weekQUANTITY

0.99+

VMwareORGANIZATION

0.99+

VeeamPERSON

0.99+

11:11 SystemsORGANIZATION

0.99+

Danny AllanPERSON

0.99+

AmazonORGANIZATION

0.99+

bothQUANTITY

0.98+

SUSEORGANIZATION

0.98+

oneQUANTITY

0.98+

todayDATE

0.98+

one policyQUANTITY

0.98+

first pointQUANTITY

0.98+

RancherORGANIZATION

0.98+

K10COMMERCIAL_ITEM

0.98+

this weekDATE

0.98+

S3TITLE

0.98+

one containerQUANTITY

0.98+

several years agoDATE

0.97+

KubernetesTITLE

0.97+

CISORGANIZATION

0.97+

KMSTITLE

0.96+

Dell TechORGANIZATION

0.96+

ZeusORGANIZATION

0.96+

K10 V5COMMERCIAL_ITEM

0.95+

OpenShiftTITLE

0.95+

VMwareTITLE

0.95+

firstQUANTITY

0.95+

this afternoonDATE

0.95+

V12COMMERCIAL_ITEM

0.94+

ilandORGANIZATION

0.94+

GitHubORGANIZATION

0.94+

OneQUANTITY

0.94+

TKGSORGANIZATION

0.93+

S3COMMERCIAL_ITEM

0.92+

Red Hat SummitEVENT

0.92+

day twoQUANTITY

0.92+

TanzuORGANIZATION

0.92+

Greg Muscarella, SUSE | Kubecon + Cloudnativecon Europe 2022


 

>>The cube presents, Coon and cloud native con Europe 22, brought to you by the cloud native computing foundation. >>Welcome to Valencia Spain and con cloud native con 20 Europe, 2022. I'm your host, Keith Townson alongside a new host en Rico senior reti, senior editor. I'm sorry, senior it analyst at giong Enrique. Welcome to the program. >>Thank you very much. And thank you for having me. It's exciting. >>So thoughts, high level thoughts of CU con first time in person again in couple years? >>Well, this is amazing for several reasons. And one of the reasons is that yeah, I had the chance to meet, uh, with, uh, you know, people like you again. I mean, we, we met several times over the internet, over zoom codes. I, I started to eat these zoom codes. <laugh> because they're very impersonal in the end. And like last night we, we are together group of friends, industry folks. It's just amazing. And a part of that, I mean, the event is, uh, is a really cool, it's really cool. There are a lot from people interviews and, you know, real people doing real stuff, not just, uh, you know, again, in personal calls, you don't even know if they're telling the truth, but when you can, you know, look in their eyes, what they're doing, I, I think that's makes a difference. >>So speaking about real people, meeting people for the first time, new jobs, new roles, Greg Moscarella enterprise container management in general manager at SUSE, welcome to the show, welcome back clue belong. >>Thank you very much. It's awesome to be here. It's awesome to be back in person. And I completely agree with you. Like there's a certain fidelity to the conversation and a certain, uh, ability to get to know people a lot more. So it's absolutely fantastic to be here. >>So Greg, tell us about your new role and what SUSE has gone on at KU con. >>Sure. So I joined SA about three months ago to lead the rancher business unit, right? So our container management pieces and, you know, it's a, it's a fantastic time. Cause if you look at the transition from virtual machines to containers and to moving to micro services, right alongside that transition from on-prem to cloud, like this is a very exciting time to be in this industry and rancher's been setting the stage. And again, I'm go back to being here. Rancher's all about the community, right? So this is a very open, independent, uh, community driven product and project. And so this, this is kinda like being back to our people, right. And being able to reconnect here. And so, you know, doing it, digital is great, but, but being here is changes the game for us. So we, we feed off that community. We feed off the energy. So, uh, and again, going back to the space and what's happening in it, great time to be in this space. And you guys have seen the transitions you've seen, I mean, we've seen just massive adoption, uh, of containers and Kubernetes overall, and rancher has been been right there with some amazing companies doing really interesting things that I'd never thought of before. Uh, so I'm, I'm still learning on this, but, um, but it's been great so far. >>Yeah. And you know, when we talk about strategy about Kubernetes today, we are talking about very broad strategies. I mean, not just the data center or the cloud with, you know, maybe smaller organization adopting Kubernetes in the cloud, but actually large organization thinking guide and more and more the edge. So what's your opinion on this, you know, expansion of Kubernetes towards the edge. >>So I think you're, I think you're exactly right. And that's actually a lot of meetings I've been having here right now is these are some of these interesting use cases. So people who, uh, whether it be, you know, ones that are easy to understand in the telco space, right? Especially the adoption of 5g and you have all these base stations, new towers, and they have not only the core radio functions or network functions that they're trying to do there, but they have other applications that wanna run on that same environment, uh, spoke recently with some of our, our good friends at a major automotive manufacturer, doing things in their factories, right. That can't take the latency of being somewhere else. Right? So they have robots on the factory floor, the latency that they would experience if they tried to run things in the cloud meant that robot would've moved 10 centimeters. >>By the time, you know, the signal got back, it may not seem like a lot to you, but if, if, if you're an employee, you know, there, you know, uh, a big 2000 pound robot being 10 centimeters closer to you may not be what you, you really want. Um, there's, there's just a tremendous amount of activity happening out there on the retail side as well. So it's, it's amazing how people are deploying containers in retail outlets. You know, whether it be fast food and predicting, what, what, how many French fries you need to have going at this time of day with this sort of weather. Right. So you can make sure those queues are actually moving through. It's, it's, it's really exciting and interesting to look at all the different applications that are happening. So yes, on the edge for sure, in the public cloud, for sure. In the data center and we're finding is people want to common platform across those as well. Right? So for the management piece too, but also for security and for policies around these things. So, uh, it really is going everywhere. >>So talk to me, how do, how are we managing that as we think about pushing stuff out of the data center, out of the cloud cloud, closer to the edge security and life cycle management becomes like top of mind thought as, as challenges, how is rancher and sushi addressing >>That? Yeah. So I, I think you're, again, spot on. So it's, it starts off with the think of it as simple, but it's, it's not simple. It's the provisioning piece. How do we just get it installed and running right then to what you just asked the management piece of it, everything from your firmware to your operating system, to the, the cluster, uh, the Kubernetes cluster, that's running on that. And then the workloads on top of that. So with rancher, uh, and with the rest of SUSE, we're actually tacking all those parts of the problems from bare metal on up. Uh, and so we have lots of ways for deploying that operating system. We have operating systems that are, uh, optimized for the edge, very secure and ephemeral container images that you can build on top of. And then we have rancher itself, which is not only managing your Kubernetes cluster, but can actually start to manage the operating system components, uh, as well as the workload components. >>So all from your single interface, um, we mentioned policy and security. So we, yeah, we'll probably talk about it more, um, uh, in a little bit, but, but new vector, right? So we acquired a company called new vector, just open sourced, uh, that here in January, that ability to run that level of, of security software everywhere again, is really important. Right? So again, whether I'm running it on, whatever my favorite public cloud providers, uh, managed Kubernetes is, or out at the edge, you still have to have security, you know, in there. And, and you want some consistency across that. If you have to have a different platform for each of your environments, that's just upping the complexity and the opportunity for error. So we really like to eliminate that and simplify our operators and developers lives as much as possible. >>Yeah. From this point of view, are you implying that even you, you are matching, you know, self, uh, let's say managed clusters at the, at the very edge now with, with, you know, added security, because these are the two big problems lately, you know, so having something that is autonomous somehow easier to manage, especially if you are deploying hundreds of these that's micro clusters. And on the other hand, you need to know a policy based security that is strong enough to be sure again, if you have these huge robots moving too close to you, because somebody act the class that is managing them, that could be a huge problem. So are you, you know, approaching this kind of problems? I mean, is it, uh, the technology that you are acquired, you know, ready to, to do this? >>Yeah. I, I mean, it, it really is. I mean, there's still a lot of innovation happening. Don't, don't get me wrong. We're gonna see a lot of, a lot more, not just from, from SA and rancher, but from the community, right. There's a lot happening there, but we've come a long way and we've solved a lot of problems. Uh, if I think about, you know, how do you have this distributed environment? Uh, well, some of it comes down to not just, you know, all the different environments, but it's also the applications, you know, with microservices, you have very dynamic environment now just with your application space as well. So when we think about security, we really have to evolve from a fairly static policy where like, you might even be able to set an IP address in a port and some configuration on that. It's like, well, your workload's now dynamically moving. >>So not only do you have to have that security capability, like the ability to like, look at a process or look at a network connection and stop it, you have to have that, uh, manageability, right? You can't expect an operator or someone to like go in and manually configure a YAML file, right? Because things are changing too fast. It needs to be that combination of convenient, easy to manage with full function and ability to protect your, your, uh, your resources. And I think that's really one of the key things that new vector really brings is because we have so much intelligence about what's going on there. Like the configuration is pretty high level, and then it just runs, right? So it's used to this dynamic environment. It can actually protect your workloads wherever it's going from pod to pod. Uh, and it's that, that combination, again, that manageability with that high functionality, um, that, that is what's making it so popular. And what brings that security to those edge locations or cloud locations or your data center >>Mm-hmm <affirmative> so one of the challenges you're kind of, uh, touching on is this abstraction on upon abstraction. When I, I ran my data center, I could put, uh, say this IP address, can't talk to this IP address on this port. Then I got next generation firewalls where I could actually do, uh, some analysis. Where are you seeing the ball moving to when it comes to customers, thinking about all these layers of abstraction I IP address doesn't mean anything anymore in cloud native it's yes, I need one, but I'm not, I'm not protecting based on IP address. How are customers approaching security from the name space perspective? >>Well, so it's, you're absolutely right. In fact, even when you go to I P six, like, I don't even recognize IP addresses anymore. <laugh> >>Yeah. Doesn't mean anything like, oh, just a bunch of, yes, those are numbers, ER, >>And colons. Right. You know, it's like, I don't even know anymore. Right. So, um, yeah, so it's, it comes back to that, moving from a static, you know, it's the pets versus cattle thing. Right? So this static thing that I can sort of know and, and love and touch and kind of protect to this almost living, breathing thing, which is moving all around, it's a swarm of, you know, pods moving all over the place. And so, uh, it, it is, I mean, that's what Kubernetes has done for the workload side of it is like, how do you get away from, from that, that pet to a declarative approach to, you know, identifying your workload and the components of that workload and what it should be doing. And so if we go on the security side some more like, yeah, it's actually not even namespace namespace. >>Isn't good enough. We wanna get, if we wanna get to zero trust, it's like, just cuz you're running in my namespace doesn't mean I trust you. Right. So, and that's one of the really cool things about new vectors because of the, you know, we're looking at protocol level stuff within the network. So it's pod to pod, every single connection we can look at and it's at the protocol layer. So if you say you're on my database and I have a mye request going into it, I can confirm that that's actually a mye protocol being spoken and it's well formed. Right. And I know that this endpoint, you know, which is a, uh, container image or a pod name or some, or a label, even if it's in the same name, space is allowed to talk to and use this protocol to this other pod that's running in my same name space. >>Right. So I can either allow or deny. And if I can, I can look into the content that request and make sure it's well formed. So I'll give you an example is, um, do you guys remember the log four J challenges from not too long ago, right. Was, was a huge deal. So if I'm doing something that's IP and port based and name space based, so what are my protections? What are my options for something that's got log four J embedded in like I either run the risk of it running or I shut it down. Those are my options. Like those neither one of those are very good. So we can do, because again, we're at the protocol layers like, ah, I can identify any log for J protocol. I can look at whether it's well formed, you know, or if it's malicious, if it's malicious, I can block it. If it's well formed, I can let it go through. So I can actually look at those, those, um, those vulnerabilities. I don't have to take my service down. I can run and still be protected. And so that, that extra level, that ability to kind of peek into things and also go pod to pod, you know, not just name space level is one of the key differences. So I talk about the evolution or how we're evolving with, um, with the security. Like we've grown a lot, we've got a lot more coming. >>So let's talk about that a lot more coming what's in the pipeline for SUSE. >>Well, how, before I get to that, we just announced new vector five. So maybe I can catch us up on what was released last week. Uh, and then we can talk a little bit about going, going forward. So new vector five, introduce something called um, well, several things, but one of the things I can talk in more detail about is something called zero drift. So I've been talking about the network security, but we also have run time security, right? So any, any container that's running within your environment has processes that are running that container. What we can do is actually comes back to that manageability and configuration. We can look at the root level of trust of any process that's running. And as long as it has an inheritance, we can let that process run without any extra configuration. If it doesn't have a root level of trust, like it didn't spawn from whatever the, a knit, um, function was and that container we're not gonna let it run. Uh, so the, the configuration that you have to put in there is, is a lot simpler. Um, so that's something that's in, in new vector five, um, the web application firewall. So this layer seven security inspection has gotten a lot more granular now. So it's that pod Topo security, um, both for ingress egress and internal on the cluster. Right. >>So before we get to what's in the pipeline, one question around new vector, how is that consumed and deployed? >>How is new vector consumed, >>Deployed? And yeah, >>Yeah, yeah. So, uh, again with new vector five and, and also rancher 2 65, which just were released, there's actually some nice integration between them. So if I'm a rancher customer and I'm using 2 65, I can actually just deploy that new vector with a couple clicks of the button in our, uh, in our marketplace. And we're actually tied into our role-based access control. So an administrator who has that has the rights can just click they're now in a new vector interface and they can start setting those policies and deploying those things out very easily. Of course, if you aren't using, uh, rancher, you're using some other, uh, container management platform, new vector still works. Awesome. You can deploy it there still in a few clicks. Um, you're just gonna get into, you have to log into your new vector, uh, interface and, and use it from there. >>So that's how it's deployed. It's, it's very, it's very simple to use. Um, I think what's actually really exciting about that too, is we've opensourced it? Um, so it's available for anyone to go download and try, and I would encourage people to give it a go. Uh, and I think there's some compelling reasons to do that now. Right? So we have pause security policies, you know, depreciated and going away, um, pretty soon in, in Kubernetes. And so there's a few things you might look at to make sure you're still able to run a secure environment within Kubernetes. So I think it's a great time to look at what's coming next, uh, for your security within your Kubernetes. >>So, Paul, we appreciate you stopping by from ity of Spain. I'm Keith Townsend, along with en Rico Sinte. Thank you. And you're watching the, the leader in high tech coverage.

Published Date : May 18 2022

SUMMARY :

brought to you by the cloud native computing foundation. Welcome to the program. And thank you for having me. I had the chance to meet, uh, with, uh, you know, people like you again. So speaking about real people, meeting people for the first time, new jobs, So it's absolutely fantastic to be here. So Greg, tell us about your new role and what SUSE has gone So our container management pieces and, you know, it's a, it's a fantastic time. you know, maybe smaller organization adopting Kubernetes in the cloud, So people who, uh, whether it be, you know, By the time, you know, the signal got back, it may not seem like a lot to you, to what you just asked the management piece of it, everything from your firmware to your operating system, If you have to have a different platform for each of your environments, And on the other hand, you need to know a policy based security that is strong have to evolve from a fairly static policy where like, you might even be able to set an IP address in a port and some So not only do you have to have that security capability, like the ability to like, Where are you seeing the In fact, even when you go to I P six, like, it comes back to that, moving from a static, you know, it's the pets versus cattle thing. And I know that this endpoint, you know, and also go pod to pod, you know, not just name space level is one of the key differences. the configuration that you have to put in there is, is a lot simpler. Of course, if you aren't using, uh, rancher, you're using some other, So I think it's a great time to look at what's coming next, uh, for your security within your So, Paul, we appreciate you stopping by from ity of Spain.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Keith TownsonPERSON

0.99+

SUSEORGANIZATION

0.99+

Greg MuscarellaPERSON

0.99+

PaulPERSON

0.99+

10 centimetersQUANTITY

0.99+

Keith TownsendPERSON

0.99+

JanuaryDATE

0.99+

Greg MoscarellaPERSON

0.99+

last weekDATE

0.99+

SpainLOCATION

0.99+

GregPERSON

0.99+

2000 poundQUANTITY

0.99+

one questionQUANTITY

0.98+

KubernetesTITLE

0.98+

oneQUANTITY

0.98+

bothQUANTITY

0.98+

Valencia SpainLOCATION

0.97+

todayDATE

0.97+

KubeconORGANIZATION

0.97+

first timeQUANTITY

0.95+

single interfaceQUANTITY

0.95+

two big problemsQUANTITY

0.95+

eachQUANTITY

0.94+

CoonORGANIZATION

0.94+

ingressORGANIZATION

0.94+

zeroQUANTITY

0.9+

three months agoDATE

0.9+

CloudnativeconORGANIZATION

0.88+

22EVENT

0.86+

SUSETITLE

0.86+

fiveTITLE

0.85+

I P sixOTHER

0.84+

EuropeLOCATION

0.81+

giong EnriquePERSON

0.81+

log fourOTHER

0.8+

2 65COMMERCIAL_ITEM

0.79+

2022DATE

0.78+

vector fiveTITLE

0.77+

couple yearsQUANTITY

0.75+

rancherORGANIZATION

0.73+

FrenchOTHER

0.73+

cloud native computingORGANIZATION

0.73+

KubernetesORGANIZATION

0.72+

last nightDATE

0.71+

single connectionQUANTITY

0.71+

one of the reasonsQUANTITY

0.69+

RicoORGANIZATION

0.68+

Rico SintePERSON

0.67+

SAORGANIZATION

0.66+

aboutDATE

0.66+

layer sevenOTHER

0.65+

vectorOTHER

0.64+

5gQUANTITY

0.64+

65COMMERCIAL_ITEM

0.62+

cloud native conORGANIZATION

0.55+

telcoORGANIZATION

0.55+

2TITLE

0.54+

SALOCATION

0.53+

egressORGANIZATION

0.52+

hundredsQUANTITY

0.51+

CU conEVENT

0.46+

KU con.ORGANIZATION

0.44+

vectorCOMMERCIAL_ITEM

0.39+

20EVENT

0.31+

Itzik Reich, Dell Technologies & Magi Kapoor, Dell Technologies | Dell Technologies World 2022


 

>> The Cube presents Dell Technologies World brought to you by Dell. >> Good evening, welcome back to the Cube's coverage of Dell Technologies World, live from the show floor in Las Vegas. Lisa Martin, Dave Vellante. We've been here two and a half days. We've unpacked a lot of announcements in the last couple days, and we're going to be doing a little bit more of that for our final segment. We've got a couple of guests joining us. Itzik Reich, the VP of the Technologist ISG at Dell and Magi Kapoor Director of Storage Product Management at Dell. Guys, welcome. >> Thank you for having us. >> So great to be back in person. I'm sure great for all of you to see customers and partners and your team that you probably haven't seen in quite a while. But Itzik we want to, we want to start with you VP of the Technologists. That sounds like a, like you need to wear a cape or something. >> Right? Yeah. I wish I do sometimes >> Talk about that role and what you do. >> Right, so our role, we have an outbound part and an inbound part. From an outbound perspective, our role is to ensure that our customers are knowing where we going from a technology perspective. And we do it via conferences or customer calls or via blogs, and think of that nature. But as important, we also have an inbound role to ensure that our employees are knowing where we're going. You can imagine they're a very large company. Not every engineer or any other role knows exactly what we are doing in that space, especially around innovation. So we also ensure that they understand it internally about where we going into that nature. And as a side role, I also have a side job which is to be responsible for our container strategy which has started couple of years ago which I'm sure we're going to talk about today. >> Yeah, that's-- >> Got a side gig. My goodness. >> That's right. >> Maggie, lots of announcements in the last couple of days. Great attendance here. Seven to 8,000 people. Dell's coming off its best year ever, north of 100 billion in revenue and FY 22, 17% year on year growth. What are some of the things that excite you about the strategic direction that Dell is going in with its partners, with the hyperscalers storage bringing it to the hyperscalers? >> Yeah. No lots of great announcements. It's been an exciting week. Like you said, it's been great to be back in person, have these face to face meetings and, you know, see the customers, have presentations in person. Like I feel like we haven't done that in forever. So it's felt really, really great. And announcements, it's been incredible. Like the two keynotes that we had on Monday and Tuesday were both incredible. And so I'd like to talk about a couple of key ones, you know, so just to let you know, I'm a director of product management and I'm responsible for a bunch of pan-ISG initiatives, DevOps and our container strategy being one of those items. And so, you know, we're at this cusp where there are, you know, customers that are on this journey of, you know, developers coming up to speed with multicloud being one of the key areas. We've heard that a lot this week, right? And what I loved about Chuck's keynote when he talked about, you know, a multicloud by default and how we're working to change that to be multicloud for design by design, right? And so what we mean by that is, and DevOps plays a very key role there, right? In the last few years developers have had this opportunity to pick different multi from different multi clouds, right? And develop the applications wherever they find the right tool sets. But that's creating havoc with IT operations because IT has worked in it in different ways, right? So what we're trying to do with DevOps is really bridge the gap between the developers and the IT ops and make it more frictionless. And project Alpine is one of the key ones to make that, you know, to bring that bridge together. Really bring that operational consistency across on-prem and the public clouds and colo facilities and Edge and everything that we've talked about. So project Alpine is really key to the success of DevOps that we're driving across. And then the other thing that I would like to call out in terms of announce and Chuck brought that up on Monday was our focus on developers. And we have a portal called developer.dell.com which we announced and launched in January of this year. Right? It's think of that as our one stop shop for all of our APIs. You heard from Caitlin, you heard from a lot of our leaders that we have been on this journey of having a API first approach to everything we're doing be it products, be it features, functionality. And so the developer portal is the place where we're putting all of our ISG APIs and not just having a one stop shop but standardizing on APIs, which is really key. >> We just spoke to Shannon Champion and Gemma from Salesforce. And we talked about how we entered last decade for visioning lungs. And now we're programming infrastructure. So really interested in your container strategy, your DevOps strategy. How did it start? How was it evolving? Where are you in the spectrum? You know, where are customers in that maturity? Let's dig in >> 2015, I believe was the year when DockerCon their CTO went on stage and they explained their customer that they shouldn't care about storage. They should design their applications running in containers in the 12 factor way, designed to fail, storage doesn't matter. And I remember scratching my head because I was hearing this one before. If there's one thing that I've learned both as a customer and later on as an employee of a storage company at the time, is that customers care about data and they care a lot about their data. Especially if it's not available. It's a bad day for the customer and possibly a very bad day for me as well. And so we actually, at the time, work with a startup called Cluster HQ to offer persistent volumes for Kubernetes. That startup eventually went down of business. But Google took over the some part of the intellectual property and came with an API called CSI. Which does not stand for your famous TV show. It's actually an acronym for container storage interface. And the CSI role in life is to be able to provide persistent volume from a storage array to Kubernetes. So we start working with Google, just like many other vendors in order to ensure that our stands outs are part of the CSI stand out. And we start to providing CSI interfaces for our storage arrays. And that's how all of these things started. We started to get more and more customers telling us I'm going all in with Kubernetes and I need you to support me in that journey. But what we've also learned is that Kubernetes similarly in a way to the open stock days is very fragmented. There are many distributions that are running on the top of Kubernetes. So seed side itself is not just the end of it. Many customer wants day to be working with VMware (indistinct) with zoo or with red OpenShift or with Rancher. So we need to do different adjustments for each one of these distributions in order to ensure that we are meeting the customer where they are today but also in the future as well. >> Yeah, and Kubernetes back in 2015 was, you know, pretty immature. We were focused on simplicity. You had Mesos doing, you know, more sophisticated things, you know, cluster HQ, obvious. And now you see Kubernetes moving into that realm tackling all those, a lot of those problems. So where does storage fit into that resilient resiliency equation? >> Yeah, so, you know, I think storages are key. What we're hearing a lot from customers is they have infrastructure in place already and they want to take advantage of cloud native and modernizing their applications whether they're the legacy applications or as they're building new applications. So how do really take advantage of the infrastructure that they have invested in? And they love, and they need. I mean, the reason why our customers love our products is because of the enterprise and the data management capabilities that we provide, right? Be it PowerMax for our gold standards on SRDF replication, for instance, they want to make sure that they leverage all of that as they are containerizing their applications. So the piece that Itzik talked about with the CSI plugins, that gives customers the opportunity to take advantage of the infrastructure that's already in place, take advantage of all the enterprise capabilities that it provides but yet take advantage of cloudifying, if I can say, the applications that they're doing, right? And then on top of that we also have what we call our CSM modules which is the container storage modules which is so, you know, going back again, we, CSI industry stack spec standards, you know, customers started to use it. And what we heard from our customers was, this is great but it has very minimum capabilities, right? Very basic ones. And we love your enterprise products. We want enterprise capabilities with it. So we've been working with CNCF very closely on, you know, working on contributions. But what we have realized is that they're, the community is still far from delivering some of these enterprise capabilities. So we came up with container storage modules which is an extension of CSI modules but to add those enterprise capabilities, you know, be it observability, be it replication, authorization, resiliency. These are the things that customers wanted to use enterprise storage when it comes to containers. And that's what we've been delivering on with our container storage modules. I do want to call out that all of our CSM modules just like CSI are all open source. That's what developers want. They don't want it closed source. And so we're listening to them and we're creating all of this in open source waiting, you know, and wanting them to contribute to the court. So it's not just us doing, you know and writing what we want but we also want the community to contribute. >> You're committing resources there, publishing them, it's all open source? >> Exactly. >> That's the contribution. >> And working with CNCF to see if they can be standardized across the board not just for Dell customers. >> Is that a project going, is that your ideal? It that becomes a project within CNCF or is it? >> That's our goal. Yes. We're definitely working and influencing. We'll see how it goes. >> More committers. Just keep throwing committers at it. >> Support these day is done via slack channel. So if we're changing the way that we run interacting with our customers that are now the developers themselves via slack channel. You don't need to call 100, 800 Dell to get a support case. >> So I'm interested in, you mentioned project Alpine, and it was very interesting to me to see that. You know, you guys talk about multicloud. I try to take it to another level. I call it super cloud and that's this abstraction layer. You know, some people laugh at that, but it has meaning. Multi-cloud is going to multivendor by default. And my premise is data ultimately is going to stay where it belongs in place. And then this mesh evolves, not my word, Jamoc Degani kind of invented. And there needs to be standards to be able to share data and govern that data. And it's wide open now. There are no standards there. And I think open sources has an opportunity as opposed to a defacto standard that would emerge. It seems to be real white space there. I think a company like Dell could provide that self-service infrastructure to those data points on the mesh and standards or software that governs that in a computational way. Is that something that's, you know, that super cloud idea is a reality from a technologist perspective? >> I think it is. So for example, Katie Gordon, which I believe you interviewed earlier this week, was demonstrating the Kubernetes data mobility aspect, which is another project. That's exactly power part of the its rational, the rationale of customers being able to move some of their Kubernetes workloads to the cloud and back and between different clouds. Why we doing it? Because customers wants to have the ability to move between different cloud providers using a common API that will be able to orchestrate all of those things with a self-service that may be offered via the apex console itself. So it's all around enabling developers and meeting them where they are today and also meeting them in tomorrow's world where they actually may have changed their mind to do those things. So, yes, we are working on all of those different aspects. >> Dell meeting the developers where they are. Guys thank you so much for joining David and me and unpacking that. We appreciate your insights and your time. >> Thank you so much for having us. >> Thank you. >> Thank you. Speaking of unpacking, Lisa. We're unpacking Dell tech world. >> They're packing up around us. Exactly. We better go. We want to thank you for watching The Cube's two and a half days of live coverage of Dell Technologies world. Dave it's been great to co-host with you, be back in person. >> Thank you Lisa. It was really a pleasure. >> Of course. My pleasure too. >> Let's do more of this. >> Let's do it! >> All right. >> We want to thank you again for watching. You can catch all of this on replay on thecube.net. We look forward to seeing you next time. (soft music)

Published Date : May 5 2022

SUMMARY :

brought to you by Dell. a little bit more of that we want to start with you I wish I do sometimes our role is to ensure Got a side gig. in the last couple of days. so just to let you know, customers in that maturity? of a storage company at the back in 2015 was, you know, of this in open source waiting, you know, across the board That's our goal. You don't need to call 100, Is that something that's, you know, have the ability to move Dell meeting the Thank you so much Speaking of unpacking, Lisa. We want to thank you for Thank you Lisa. My pleasure too. We look forward to seeing you next time.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
DavidPERSON

0.99+

Lisa MartinPERSON

0.99+

Katie GordonPERSON

0.99+

Dave VellantePERSON

0.99+

DavePERSON

0.99+

LisaPERSON

0.99+

2015DATE

0.99+

ChuckPERSON

0.99+

DellORGANIZATION

0.99+

Itzik ReichPERSON

0.99+

Las VegasLOCATION

0.99+

ItzikPERSON

0.99+

GoogleORGANIZATION

0.99+

Dell TechnologiesORGANIZATION

0.99+

CNCFORGANIZATION

0.99+

MondayDATE

0.99+

TuesdayDATE

0.99+

12 factorQUANTITY

0.99+

GemmaPERSON

0.99+

SevenQUANTITY

0.99+

two keynotesQUANTITY

0.99+

8,000 peopleQUANTITY

0.99+

Magi KapoorPERSON

0.98+

bothQUANTITY

0.98+

couple of years agoDATE

0.98+

one thingQUANTITY

0.98+

Jamoc DeganiPERSON

0.98+

CaitlinPERSON

0.98+

KubernetesTITLE

0.98+

oneQUANTITY

0.98+

this weekDATE

0.98+

tomorrowDATE

0.98+

todayDATE

0.97+

developer.dell.comOTHER

0.97+

thecube.netOTHER

0.97+

SalesforceORGANIZATION

0.96+

DevOpsTITLE

0.96+

ISGORGANIZATION

0.96+

two and a half daysQUANTITY

0.95+

January of this yearDATE

0.95+

last decadeDATE

0.95+

17%QUANTITY

0.95+

first approachQUANTITY

0.95+

MaggiePERSON

0.94+

FY 22DATE

0.94+

earlier this weekDATE

0.93+

KubernetesORGANIZATION

0.93+

apexTITLE

0.92+

each oneQUANTITY

0.91+

Cluster HQORGANIZATION

0.9+

The CubeTITLE

0.9+

Shannon ChampionPERSON

0.89+

RancherORGANIZATION

0.89+

100OTHER

0.82+

DockerConORGANIZATION

0.82+

north of 100 billionQUANTITY

0.79+

last couple of daysDATE

0.79+

Technologies World 2022EVENT

0.78+

one stop shopQUANTITY

0.76+

OpenShiftTITLE

0.76+

half daysQUANTITY

0.73+

coupleQUANTITY

0.73+

PowerMaxORGANIZATION

0.72+

one stopQUANTITY

0.71+

daysDATE

0.71+

CubeCOMMERCIAL_ITEM

0.7+

VMwareORGANIZATION

0.7+

ISGTITLE

0.69+

Bren Briggs, Hypergiant | CUBE Conversation, July 2021


 

(digital music) >> Welcome to this CUBE Conversation. I'm Lisa Martin. Bren Briggs, joins me next, the Director of DevOps and Cybersecurity at Hypergiant. Bren, welcome to theCUBE. >> Hey there, I'm glad to be here. >> You have a very cool background, which I wish we had time to get into your mandolin playing, but we don't. Tell me a little bit about Hypergiant this is a company that's new to me? >> So we are an AI and Machine Learning Company, and we had the slogan we talked about a lot, it's almost tongue in cheek, "Tomorrowing Today" where we want to build and focus on technology that advances the state-of-the-art and we want to, where this deep history and background in services, where we build custom solutions for companies that have data problems and that have AI and machine learning problems. And they come to us and we help them make sense of their data and we build a custom software solution from top to bottom. And we help them with their data problems and their really difficult problems that they have there in a very specialized way. And yeah, that's what we do. It's really fun. >> "Tomorrowing Today", I like that build T-shirts with that on that. (Bren chuckles) So talk to me about the work that you guys are doing with SUSE Rancher Government Labs. You're doing some very cool work with the air force, help me understand that. >> Sure, so about a year and some change ago, we had a government contract, an air force contract, to develop some new or just to basically write an experiment with some new sensing technology onboard a satellite. So we built this satellite, we were talking about how we're going to employ DevOps' best practices on the satellite and if that's even a thing that can be done. How we get these rights of space and really thinking through the entire process. And as we did this, we were getting more and more deeply involved with a very very new group. Actually, we kind of started at the same time. A new group within the air force called, Platform One. Platform One's mission is to bring DevSecOps to the DoD Enterprise. And so as we're kind of starting off together and getting to know each other, Rob Slaughter who started and ran Platform One for the first bit of his existence, he said, "hey, we're going to incorporate some Platform One stuff into this. Let's talk about just building an actual Platform One satellite and see what that looks like." And so that was kind of the start of this whole idea was what do we do and how do we do DevSecOps in low Earth orbit? Can we put Kubernetes on satellite and will it work? >> And tell me some of the results? So, I used to work for NASA, so I would geek out on anything that has to do with the space program. But talk to me about some of the things that you uncovered bringing Kubernetes, AI, machine learning to this, outer Edge of Earth? >> I think the first thing that we learned that I think, it's an understatement to say that space is hard. (Both laughing) But it really is. And that was the part that we learned about was it was hard in all of the ways that we did not expect. And a lot of it had to do with just government and logistics. We learned that it is difficult a lot of times to just to find a way to get into space and then once you're there, how you operate in the conditions that you're in and how you could even communicate with your satellite is it's just a logistical adventure on top of all of the other engineering problems that you have while you're on low Earth orbit? The other thing that we figured out was awkward things are difficult. While you're on orbit, they can be slow or fragmented and so it pays to get it right the first time but that's not the nature of modern software development is you'd never get it right and you're continually updating. So that was a problem that really nagged us for awhile was after we did the wider experiment, like how would we continuously update this and what would we do? And those ideas and questions fed into the experiment that became Sat One and then the follow one much bigger experiment that became the Edge One and Edge working group. >> Tell me a little bit about the wider experiment, give me some context of how that relates to Platform One, Sat One? >> I can't (laughing) I can't really go into details about what wider did or anything like that. It was not a classified mission, it's just not something that I can disclose. >> Okay, got it. >> Sorry. >> So talk to me about some of the work that you guys are doing together Hypergiant with SUSE in terms of pushing forward the next generation of Kubernetes to low Earth orbit and beyond. >> Sure, so SUSE RGS, specifically, Chris Nuber, like, one of the things that I have to do is I have to be a cheerleader for all of the amazing people that were on this project. And two people in particular, Chris Tacke and Chris Nuber, were instrumental in making this work. I was like almost tangentially involved where I was doing some input and architecture and helping debug but it was really Chris Tacke and Chris Nuber that made this thing, that built this thing and made it work. And Chris Nuber, was our assigned resource from SUSE RGS. And he said, "Obviously SUSE is going to prefer, or SUSE is going to prefer SUSE products." That it makes sense. But there's a reason because the products that he implemented and the patterns that he implemented and the architecture and expertise that he brought were second to none, I don't think that we could have done better with any other distribution of Kubernetes. He recommended a K3s is a very lightweight Kubernetes distribution that had really good opinions. It's a single binary. It was very easy to deploy and manage and update and it just, it really didn't break. That was the best thing that we were looking for (chuckles) it was one solid piece with no moving parts, relatively speaking. And so Chris Nuber was very essential in providing the Kubernetes architecture while Chris Tacky was the one who helped us write some of the demo applications and build the fail over and out of band interaction that we were going to have from the hardware on the satellite to the Kubernetes control plane. >> Very cool. It sounds like you had a great collaborative team there, which is essential in any environment. >> We deed. >> And I liked how you described space as a logistical adventure that reminds me very much of my days at NASA. (Bren laughing) It definitely is a logistical adventure to put it mildly. Talk to me a little bit about the work that you're doing to define the Edge for the Department of Defense? That sounds very intriguing. >> Yeah, so this was almost a direct result of what happened with the sat one experiment where Rob Slaughter and a few of the other folks who saw what we did with sat one, you know, were again, logistical adventure. We built this entire thing and we worked so hard and we're moving through fright flight readiness checks and as things happen, funding kind of went. And so you've got all this experience and this like, prototype that this really confident that it's space ready and everything and they said, "hey, listen, you know, we have the same problem on our flight with terrestrial environments, they're nearly identical the only difference is, you know, you don't have to worry about radiation nearly as much." (laughing) So then, you know, we joked about that and we started this new idea, this Edge One idea as part of the AVMs program, where they're figuring out this new, like battlefield communications pattern of the future. And one of the things that they're really concerned about is secure processing and how do you do applications at like where people are stationed, which could be anywhere in very remote locations. Then that's what turned into Edge One is, you know, we imagined initially Edge One as satellite one without wings and earth bound and that grew into, well, what about submarines? What about carriers? What about command and control squadrons that are stationed in cities? What about special operators that are far forward? What about first responders who are moving into, you know, hazardous environmental conditions? Can you wear a Kubernetes cluster with like super low power arm chips? And so we started thinking of all these different applications of what Edge could be anywhere from a five volt board all the way up to a data center in a box. And that caused us to realize that we're going to break Edge into really three categories based on the amount of material or resources needed to power it and how hard it is to get to. So we have the Near Edge, which is, you know, you have data center like capabilities, and it's easy to get to it, but you, because you have people stationed with it, but you may have reached back once every month or so. So think, you know, a shift that's underway or an air gap system or something like that. And then you have a Tiny Edge, which is exactly like kind of the more traditional idea that you think of when you think of Edge, which is really, really tiny compute, maybe it's on a windmill or something I don't really know, pick your thing to put Kubernetes on that should never have Kubernetes, that's the kind of thing. And then you've got Far Edge, which is, you know, if the control plane crashes, good luck, you'll never getting to it. And so that would be a satellite. And so the far it... so really a lot of these, it depends on the failure mode. Like what happens when it fails and that for the most part defines kind of what category you're going to be in. >> Tiny Edge, Near Edge and Far Edge. I think Sir. Richard Branson and his team went to the Far Edge (chuckles) low Earth orbit >> He did (laughing). >> This last weekend, I guess, yeah. That low Earth orbit does seem like it would be the Far Edge. Talk to me a little bit about, I mean, you talk about these applications then from a defense perspective that very dramatically, what are some of the important lessons that you've learned besides if it breaks in the Far Edge, you're not getting to it. >> Some of the important lessons that we learned. So I actually did this exact job in the air force. I was a combat communicator, which meant that we took, by pure coincidence I'm back in this, like, I did not intend for this to happen its pure coincidence, (Lisa laughing) but, you know, we communicate, we went out to the Edge, right. We went out to the Near Edge and we did all of this stuff. And the biggest lesson, I think learning from doing this or doing that and then going into this is that the world doesn't have to revolve around SharePoint anymore (Lisa laughing) because we can shape our own habitation (Both laughing) >> That is good to know. >> If it can be done on SharePoint, the air force and the army will do it in SharePoint, I promise you. They've done some actually terrifying things with it. All joking aside though, I think that one of the things that we learned was the difference between like something being complex and complicated when it came to systems engineering and management, like this is a very complex system it's actually orders of magnitude more complex than the current deployments that are out there which is effectively VMware and you're migrating virtual machines across multiple physical nodes in these remote data centers. But it's also complicated, it's really difficult to manage these deployments and the hardware. And I remember like when I was in combat comm, we had this 72 hour goal to get all of our systems up. And it was kind of like a 50-50, if we would make it, it felt like most of the time where you had priorities for getting things up and running. And obviously, you know, that certain applications weren't as important as others. So they were the ones that had to fall on the wayside if you're going to make your 72 hour mark. But I'm just thinking about like how difficult it was to deploy and manage all of this stuff and now with Kubernetes, yes, the complexity is far higher, but we can make it so it's not as complicated. We can offload a lot of that brain sweat, the people in the rear echelon, where they can connect in remotely after you come up and you get reached back, they push your config and your mission profile is there. And now you're focused on the mission you're not focused on debugging pods, and you're focused on the mission and not focused on, you know, why my virtual machine didn't migrate or something like that. And we can get applications that are built in-house and updated continuously, and we can verify and validate the sources of where these things are coming from. And all of these are important problems to everybody, not just the military, but the military tends to have the money and the ability to think about these things first, 'cause that's where these problems tend to get solved first. >> So interesting. You've sort of had this circular experience being in the air force, now coming back and working on projects like this, what are some of the things that Hypergiant has learned? And some of the things that are next next for Hypergiant as a company? >> I think that we are getting really good at being a small contractor in the Federal space where we actually were just awarded an IDIQ with a cap of $950 million in a small group of, I think, 23 other companies. And so that shows right there the investment that the Federal Government has in us and the potential that they see for us to build and deliver these highly tailored and specialized solutions. The other thing that we've learned is how to form like coalitions to collaborate with a lot of these other smaller companies. I think that the days of seeing the Defense Industrial Base dominated by the same four people or five people are over. And it's not that these people, I mean, they've been, they've basically been propping up most of the defense industry for a very long time and I think a lot of people would argue that, you know, this is a problem, right, you have this near monopoly of a very few people, but the other thing is that they're not as nimble, they grow by acquisition and we have this ability to be highly tailored and specialized and we don't need to do everything in the world to survive. We can go and form coalitions with other groups to go solve a particular problem. Like we're great at AI and ML, and we're great at DevSecOps, then maybe we're not so great at, you know, hardware or you know, things like that. Like we can go partner up with these people and solve problems together and we don't have to be a Boeing to do it and you don't have to go hire a Boeing to do this. And I think that's really, really great, no slight to Boeing, but I think it's really great that it's a lot easier for smaller companies to do this and we are navigating this new world and we're bringing Agile into the government and that's, yeah, in some cases we have to drag them, kicking and screaming into this decade, but, you know, that's what we're doing and I'm very excited to see that because when I was in Agile and DevOps, those were words you didn't say, you weren't allowed to do that. >> No. >> Now they've done a complete 180, it's really cool. >> That's cool. I have a minimum that brings in thought diversity, having more companies to work with, but to your point, the agility that you bring in as a smaller company helping them to actually embrace Agile, that's huge because to your point, that's kind of historically not what government organizations are used to. So it sounds like a little bit they've learned a tremendous amount from working with small companies like Pepperdine. >> I like the thing so. Platform One is a fantastic example. So it was really started as a what we're calling software factories within the air force and within the DOD and other DOD branches have now started to replicate the pattern. So we have several software factories within the air force and Platform One is like the DevSecOps Software factory, and we have the ski camp and space camping, Kobayashi Maru and you're noticing a theme here (laughing) and so they're very nerdy names, but so we have these software factories and there's all these projects are being worked. But one of the amazing things I noticed when I showed up to work on the first day was that I had no idea who was uniformed and who was civilian. It was a completely badge off rank, off situation. Very few people showed up in uniform and the ones that did typically had their blouse off so you had no idea what their rank was. Everybody went by first name and we behaved like a start-up. And these civilians were coming from other startups like Hypergiant or a Timo or other very small, very specialized groups and SUSE RGS, of course they were there too and they're embedded in several different teams. And so you have this, like this quasi company that got this startup really that got formed and the culture is very, you know, very varies, you know, bay area startup type in some ways, for both better and worse. There's, I mean, we're, definitely full tilt on (laughs) on the Agile train there, but it's just, it's like nothing I've ever seen inside the DOD. And they're not just learning from these small companies and from Agile companies, but they're behaving like them. And it's spreading, they're seeing what work is getting done and what can be accomplished and how you can continuously deliver value instead of working for, you know, six or eight months and then showing the customer something and them hating it and you sending it back and, you know, it's more of a continuous improvement type thing. And I think that they're embracing that and I'm very excited to see it. >> That's important 'cause changing a culture is incredibly hard but seeing and hearing that they're embracing that is exciting. And I'm sure there's going to be many more things you could talk about generally, but I got to ask you if somebody like SUSE gave you $250,000, and you could buy one of the tickets on Branson's next flight, would you do it? >> I mean, yeah, why would I not? Like, how can I pass up a trip, (Lisa laughing) you know, go to the Edge of space. >> The Far Edge. >> Like yeah, the Far Edge, maybe I'll just, you know, hurdle the satellite out the window, as you know, we're up there, you know, peak and probably could throw it quite that fast, but we'll see. (Lisa laughing) But yeah, no, I think I would take the trip, yeah, that'd be fun. >> You're brave. Brave than I'm, I don't know. Well, Bren it's been delightful talking to you. Thank you for sharing what you guys at Hypergiant and SUSE have been doing together, the Department of Defense, the exciting things going on there and for the new definitions and my lexicon of the Edge, it's been great talking to you. >> Thank you, have a great day. >> You too. For Bren Briggs, I'm Lisa Martin. You're watching a CUBE Conversation. (digital music)

Published Date : Jul 19 2021

SUMMARY :

the Director of DevOps and this is a company that's new to me? and we had the slogan So talk to me about the and getting to know each other, the things that you uncovered and so it pays to get that I can disclose. that you guys are doing and the patterns that he implemented It sounds like you had a great And I liked how you described space and that for the most part Richard Branson and his team besides if it breaks in the Far Edge, and we did all of this stuff. and the ability to think And some of the things that and the potential that they see 180, it's really cool. the agility that you bring and the ones that did and you could buy one of the tickets you know, go to the Edge of space. the window, as you know, and my lexicon of the Edge, For Bren Briggs, I'm Lisa Martin.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Lisa MartinPERSON

0.99+

Rob SlaughterPERSON

0.99+

$250,000QUANTITY

0.99+

Chris TackePERSON

0.99+

BoeingORGANIZATION

0.99+

NASAORGANIZATION

0.99+

July 2021DATE

0.99+

HypergiantORGANIZATION

0.99+

Bren BriggsPERSON

0.99+

Chris NuberPERSON

0.99+

Richard BransonPERSON

0.99+

SUSEORGANIZATION

0.99+

72 hourQUANTITY

0.99+

sixQUANTITY

0.99+

$950 millionQUANTITY

0.99+

BrenPERSON

0.99+

Chris TackyPERSON

0.99+

Department of DefenseORGANIZATION

0.99+

two peopleQUANTITY

0.99+

EarthLOCATION

0.99+

PepperdineORGANIZATION

0.99+

eight monthsQUANTITY

0.99+

SUSE Rancher Government LabsORGANIZATION

0.99+

AgileTITLE

0.99+

five peopleQUANTITY

0.99+

first thingQUANTITY

0.98+

SharePointTITLE

0.98+

first timeQUANTITY

0.98+

four peopleQUANTITY

0.98+

23 other companiesQUANTITY

0.98+

bothQUANTITY

0.98+

DevSecOpsORGANIZATION

0.98+

five voltQUANTITY

0.98+

BothQUANTITY

0.98+

Platform OneORGANIZATION

0.98+

oneQUANTITY

0.97+

LisaPERSON

0.97+

one solid pieceQUANTITY

0.97+

Kobayashi MaruORGANIZATION

0.95+

first dayQUANTITY

0.95+

KubernetesTITLE

0.95+

Edge OneCOMMERCIAL_ITEM

0.94+

DevOpsTITLE

0.94+

TimoORGANIZATION

0.94+

BransonPERSON

0.94+

DODTITLE

0.93+

about a yearDATE

0.93+

DevSecOpsTITLE

0.93+

SUSE RGSTITLE

0.92+

three categoriesQUANTITY

0.92+

last weekendDATE

0.9+

first respondersQUANTITY

0.87+

2021 107 John Pisano and Ki Lee


 

(upbeat music) >> Announcer: From theCUBE studios in Palo Alto in Boston connecting with thought leaders all around the world, this is theCUBE Conversation. >> Well, welcome to theCUBE Conversation here in theCUBE studios in Palo Alto, California. I'm John Furrier, your host. Got a great conversation with two great guests, going to explore the edge, what it means in terms of commercial, but also national security. And as the world goes digital, we're going to have that deep dive conversation around how it's all transforming. We've got Ki Lee, Vice President of Booz Allen's Digital Business. Ki, great to have you. John Pisano, Principal at Booz Allen's Digital Cloud Solutions. Gentlemen, thanks for coming on. >> And thanks for having us, John. >> So one of the most hottest topics, obviously besides cloud computing having the most refactoring impact on business and government and public sector has been the next phase of cloud growth and cloud scale, and that's really modern applications and consumer, and then here for national security and for governments here in the U.S. is military impact. And as digital transformation starts to go to the next level, you're starting to see the architectures emerge where the edge, the IoT edge, the industrial IoT edge, or any kind of edge concept, 5G is exploding, making that much more of a dense, more throughput for connectivity with wireless. You got Amazon with Snowball, Snowmobile, all kinds of ways to deploy technology, that's IT like and operational technologies. It's causing quite a cloud operational opportunity and disruption, so I want to get into it. Ki, let's start with you. I mean, we're looking at an architecture that's changing both commercial and public sector with the edge. What are the key considerations that you guys see as people have to really move fast in this new architecture of digital? >> Yeah, John, I think it's a great question. And if I could just share our observation on why we even started investing in edge. You mentioned the cloud, but as we've reflected upon kind of the history of IT, then you take a look from mainframes to desktops to servers to cloud to mobile and now IoT, what we observed was that industry investing in infrastructure led to kind of an evolution of IT, right? So as you mentioned, with industry spending billions on IoT and edge, we just feel that that's going to be the next evolution. If you take a look at, you mentioned 5G, I think 5G will be certainly an accelerator to edge because of the resilience, the lower latency and so forth. But taking a look at what's happening in space, you mentioned space earlier as well, right, and what Starlink is doing by putting satellites to actually provide transport into the space, we're thinking that that actually is going to be the next ubiquitous thing. Once transport becomes ubiquitous, just like cloud allows storage to be ubiquitous. We think that the next generation internet will be space-based. So when you think about it, connected, it won't be connected servers per se, it will be connected devices. >> John: Yeah, yeah. >> That's kind of some of the observations and why we've been really focusing on investing in edge. >> I want to come back to that piece around space and edge and bring it from a commercial and then also tactical architecture in a minute 'cause there's a lot to unpack there, role of open source, modern application development, software and hardware supply chains, all are core issues that are going to emerge. But I want to get with John real quick on cloud impact, because you think about 5G and the future of work or future of play, you've got people, right? So whether you're at a large concert like Coachella or a 49ers or Patriots game or Redskins game if you're in the D.C. area, you got people there, of congestion, and now you got devices now serving those people. And that's their play, people at work, whether it's a military operation, and you've got work, play, tactical edge things. How is cloud connecting? 'Cause this is like the edge has never been kind of an IT thing. It's been more of a bandwidth or either telco or something else operationally. What's the cloud at scale, cloud operations impact? >> Yeah, so if you think about how these systems are architected and you think about those considerations that Ki kind of touched on, a lot of what you have to think about now is what aspects of the application reside in the cloud, where you tend to be less constrained. And then how do you architect that application to move out towards the edge, right? So how do I tier my application? Ultimately, how do I move data and applications around the ecosystem? How do I need to evolve where my application stages things and how that data and those apps are moved to each of those different tiers? So when we build a lot of applications, especially if they're in the cloud, they're built with some of those common considerations of elasticity, scalability, all those things; whereas when you talk about congestion and disconnected operations, you lose a lot of those characteristics, and you have to kind of rethink that. >> Ki, let's get into the aspect you brought up, which is space. And then I was mentioning the tactical edge from a military standpoint. These are use cases of deployments, and in fact, this is how people have to work now. So you've got the future of work or play, and now you've got the situational deployments, whether it's a new tower of next to a stadium. We've all been at a game or somewhere or a concert where we only got five bars and no connectivity. So we know what that means. So now you have people congregating in work or play, and now you have a tactical deployment. What's the key things that you're seeing that it's going to help make that better? Are there any breakthroughs that you see that are possible? What's going on in your view? >> Yeah, I mean, I think what's enabling all of this, again, one is transport, right? So whether it's 5G to increase the speed and decrease the latency, whether it's things like Starlink with making transport and comms ubiquitous, that tied with the fact that ships continue to get smaller and faster, right? And when you're thinking about tactical edge, those devices have limited size, weight, power conditions and constraints. And so the software that goes on them has to be just as lightweight. And that's why we've actually partnered with SUSE and what they've done with K3s to do that. So I think those are some of the enabling technologies out there. John, as you've kind of alluded to it, there are additional challenges as we think about it. We're not, it's not a simple transition and monetization here, but again, we think that this will be the next major disruption. >> What do you guys think, John, if you don't mind weighing in too on this as modern application development happens, we just were covering CloudNativeCon and KubeCon, DockerCon, containers are very popular. Kubernetes is becoming super great. As you look at the telco landscape where we're kind of converging this edge, it has to be commercially enterprise grade. It has to have that transit and transport that's intelligent and all these new things. How does open source fit into all this? Because we're seeing open source becoming very reliable, more people are contributing to open source. How does that impact the edge in your opinion? >> So from my perspective, I think it's helping accelerate things that traditionally maybe may have been stuck in the traditional proprietary software confines. So within our mindset at Booz Allen, we were very focused on open architecture, open based systems, which open source obviously is an aspect of that. So how do you create systems that can easily interface with each other to exchange data, and how do you leverage tools that are available in the open source community to do that? So containerization is a big drive that is really going throughout the open source community. And there's just a number of other tools, whether it's tools that are used to provide basic services like how do I move code through a pipeline all the way through? How do I do just basic hardening and security checking of my capabilities? Historically, those have tend to be closed source type apps, whereas today you've got a very broad community that's able to very quickly provide and develop capabilities and push it out to a community that then continues to adapt and add to it or grow that library of stuff. >> Yeah, and then we've got trends like Open RAN. I saw some Ground Station for the AWS. You're starting to see Starlink, you mentioned. You're bringing connectivity to the masses. What is that going to do for operators? Because remember, security is a huge issue. We talk about security all the time. Where does that kind of come in? Because now you're really OT, which has been very purpose-built kind devices in the old IoT world. As the new IoT and the edge develop, you're going to need to have intelligence. You're going to be data-driven. There is an open source impact key. So, how, if I'm a senior executive, how do I get my arms around this? I really need to think this through because the security risks alone could be more penetration areas, more surface area. >> Right. That's a great question. And let me just address kind of the value to the clients and the end users in the digital battlefield as our warriors to increase survivability and lethality. At the end of the day from a mission perspective, we know we believe that time's a weapon. So reducing any latency in that kind of observe, orient, decide, act OODA loop is value to the war fighter. In terms of your question on how to think about this, John, you're spot on. I mean, as I've mentioned before, there are various different challenges, one, being the cyber aspect of it. We are absolutely going to be increasing our attack surface when you think about putting processing on edge devices. There are other factors too, non-technical that we've been thinking about s we've tried to kind of engender and kind of move to this kind of edge open ecosystem where we can kind of plug and play, reuse, all kind of taking the same concepts of the open-source community and open architectures. But other things that we've considered, one, workforce. As you mentioned before, when you think about these embedded systems and so forth, there aren't that many embedded engineers out there. But there is a workforce that are digital and software engineers that are trained. So how do we actually create an abstraction layer that we can leverage that workforce and not be limited by some of the constraints of the embedded engineers out there? The other thing is what we've, in talking with several colleagues, clients, partners, what people aren't thinking about is actually when you start putting software on these edge devices in the billions, the total cost of ownership. How do you maintain an enterprise that potentially consists of billions of devices? So extending the standard kind of DevSecOps that we move to automate CI/CD to a cloud, how do we move it from cloud to jet? That's kind of what we say. How do we move DevSecOps to automate secure containers all the way to the edge devices to mitigate some of those total cost of ownership challenges. >> It's interesting, as you have software defined, this embedded system discussion is hugely relevant and important because when you have software defined, you've got to be faster in the deployment of these devices. You need security, 'cause remember, supply chain on the hardware side and software in that too. >> Absolutely. >> So if you're going to have a serviceability model where you have to shift left, as they say, you got to be at the point of CI/CD flows, you need to be having security at the time of coding. So all these paradigms are new in Day-2 operations. I call it Day-0 operations 'cause it should be in everyday too. >> Yep. Absolutely. >> But you've got to service these things. So software supply chain becomes a very interesting conversation. It's a new one that we're having on theCUBE and in the industry Software supply chain is a superly relevant important topic because now you've got to interface it, not just with other software, but hardware. How do you service devices in space? You can't send a break/fix person in space. (chuckles) Maybe you will soon, but again, this brings up a whole set of issues. >> No, so I think it's certainly, I don't think anyone has the answers. We sure don't have all the answers but we're very optimistic. If you take a look at what's going on within the U.S. Air Force and what the Chief Software Officer Nic Chaillan and his team, and we're a supporter of this and a plankowner of Platform One. They were ahead of the curve in kind of commoditizing some of these DevSecOps principles in partnership with the DoD CIO and that shift left concept. They've got a certified and accredited platform that provides that DevSecOps. They have an entire repository in the Iron Bank that allows for hardened containers and reciprocity. All those things are value to the mission and around the edge because those are all accelerators. I think there's an opportunity to leverage industry kind of best practices as well and patterns there. You kind of touched upon this, John, but these devices honestly just become firmware. The software is just, if the devices themselves just become firmware , you can just put over the wire updates onto them. So I'm optimistic. I think all the piece parts are taking place across industry and in the government. And I think we're primed to kind of move into this next evolution. >> Yeah. And it's also some collaboration. What I like about, why I'm bringing up the open source angle and I think this is where I think the major focus will shift to, and I want to get your reaction to it is because open source is seeing a lot more collaboration. You mentioned some of the embedded devices. Some people are saying, this is the weakest link in the supply chain, and it can be shored up pretty quickly. But there's other data, other collective intelligence that you can get from sharing data, for instance, which hasn't really been a best practice in the cybersecurity industry. So now open source, it's all been about sharing, right? So you got the confluence of these worlds colliding, all aspects of culture and Dev and Sec and Ops and engineering all coming together. John, what's your reaction to that? Because this is a big topic. >> Yeah, so it's providing a level of transparency that historically we've not seen, right? So in that community, having those pipelines, the results of what's coming out of it, it's allowing anyone in that life cycle or that supply chain to look at it, see the state of it, and make a decision on, is this a risk I'm willing to take or not? Or am I willing to invest and personally contribute back to the community to address that because it's important to me and it's likely going to be important to some of the others that are using it? So I think it's critical, and it's enabling that acceleration and shift that I talked about, that now that everybody can see it, look inside of it, understand the state of it, contribute to it, it's allowing us to break down some of the barriers that Ki talked about. And it reinforces that excitement that we're seeing now. That community is enabling us to move faster and do things that maybe historically we've not been able to do. >> Ki, I'd love to get your thoughts. You mentioned battlefield, and I've been covering a lot of the tactical edge around the DOD's work. You mentioned about the military on the Air Force side, Platform One, I believe, was from the Air Force work that they've done, all cloud native kind of directions. But when you talk about a war field, you talk about connectivity. I mean, who controls the DNS in Taiwan, or who controls the DNS in Korea? I mean, we have to deploy, you've got to stand up infrastructure. How about agility? I mean, tactical command and control operations, this has got to be really well done. So this is not a trivial thing. >> No. >> How are you seeing this translate into the edge innovation area? (laughs) >> It's certainly not a trivial thing, but I think, again, I'm encouraged by how government and industry are partnering up. There's a vision set around this joint all domain command control, JADC2. And then all the services are getting behind that, are looking into that, and this vision of this military, internet of military things. And I think the key thing there, John, as you mentioned, it's not just the connected of the sensors, which requires the transport again, but also they have to be interoperable. So you can have a bunch of sensors and platforms out there, they may be connected, but if they can't speak to one another in a common language, that kind of defeats the purpose and the mission value of that sensor or shooter kind of paradigm that we've been striving for for ages. So you're right on. I mean, this is not a trivial thing, but I think over history we've learned quite a bit. Technology and innovation is happening at just an amazing rate where things are coming out in months as opposed to decades as before. I agree, not trivial, but again, I think there are all the piece parts in place and being put into place. >> I think you mentioned earlier that the personnel, the people, the engineers that are out there, not enough, more of them coming in. I think now the appetite and the provocative nature of this shift in tech is going to attract a lot of people because the old adage is these are hard problems attracts great people. You got in new engineering, SRE like scale engineering. You have software development, that's changing, becoming much more robust and more science-driven. You don't have to be just a coder as a software engineer. You could be coming at it from any angle. So there's a lot more opportunities from a personnel standpoint now to attract great people, and there's real hard problems to solve, not just security. >> Absolutely. Definitely. I agree with that 100%. I would also contest that it's an opportunity for innovators. We've been thinking about this for some time, and we think there's absolute value from various different use cases that we've identified, digital battlefield, force protection, disaster recovery, and so forth. But there are use cases that we probably haven't even thought about, even from a commercial perspective. So I think there's going to be an opportunity just like the internet back in the mid '90s for us to kind of innovate based on this new kind of edge environment. >> It's a revolution. New leadership, new brands are going to emerge, new paradigms, new workflows, new operations, clearly great stuff. I want to thank you guys for coming on. I also want to thank Rancher Labs for sponsoring this conversation. Without their support, we wouldn't be here. And now they were acquired by SUSE. We've covered their event with theCUBE virtual last year. What's the connection with those guys? Can you guys take a minute to explain the relationship with SUSE and Rancher? >> Yeah. So it's actually it's fortuitous. And I think we just, we got lucky. There's two overall aspects of it. First of all, we are both, we partner on the Platform One basic ordering agreement. So just there we had a common mentality of DevSecOps. And so there was a good partnership there, but then when we thought about we're engaging it from an edge perspective, the K3s, right? I mean, they're a leader from a container perspective obviously, but the fact that they are innovators around K3s to reduce that software footprint, which is required on these edge devices, we kind of got a twofer there in that partnership. >> John, any comment on your end? >> Yeah, I would just amplify, the K3s aspects in leveraging the containers, a lot of what we've seen success in when you look at what's going on, especially on that tactical edge around enabling capabilities, containers, and the portability it provides makes it very easy for us to interface and integrate a lot of different sensors to close the OODA loop to whoever is wearing or operating that a piece of equipment that the software is running on. >> Awesome, I'd love to continue the conversation on space and the edge and super great conversation to have you guys on. Really appreciate it. I do want to ask you guys about the innovation and the opportunities of this new shift that's happening as the next big thing is coming quickly. And it's here on us and that's cloud, I call it cloud 2.0, the cloud scale, modern software development environment, edge with 5G changing the game. Ki, I completely agree with you. And I think this is where people are focusing their attention from startups to companies that are transforming and re-pivoting or refactoring their existing assets to be positioned. And you're starting to see clear winners and losers. There's a pattern emerging. You got to be in the cloud, you got to be leveraging data, you got to be horizontally scalable, but you got to have AI machine learning in there with modern software practices that are secure. That's the playbook. Some people are making it. Some people are not getting there. So I'd ask you guys, as telcos become super important and the ability to be a telco now, we just mentioned standing up a tactical edge, for instance. Launching a satellite, a couple of hundred K, you can launch a CubeSat. That could be good and bad. So the telco business is changing radically. Cloud, telco cloud is emerging as an edge phenomenon with 5G, certainly business commercial benefits more than consumer. How do you guys see the innovation and disruption happening with telco? >> As we think through cloud to edge, one thing that we realize, because our definition of edge, John, was actually at the point of data collection on the sensor themselves. Others' definition of edge is we're a little bit further back, what we call it the edge of the IT enterprise. But as we look at this, we realize that you needed this kind of multi echelon environment from your cloud to your tactical clouds where you can do some processing and then at the edge of themselves. Really at the end of the day, it's all about, I think, data, right? I mean, everything we're talking about, it's still all about the data, right? The AI needs the data, the telco is transporting the data. And so I think if you think about it from a data perspective in relationship to the telcos, one, edge will actually enable a very different paradigm and a distributed paradigm for data processing. So, hey, instead of bringing the data to some central cloud which takes bandwidth off your telcos, push the products to the data. So mitigate what's actually being sent over those telco lines to increase the efficiencies of them. So I think at the end of the day, the telcos are going to have a pretty big component to this, even from space down to ground station, how that works. So the network of these telcos, I think, are just going to expand. >> John, what's your perspective? I mean, startups are coming out. The scalability, speed of innovation is a big factor. The old telco days had, I mean, months and years, new towers go up and now you got a backbone. It's kind of a slow glacier pace. Now it's under siege with rapid innovation. >> Yeah, so I definitely echo the sentiments that Ki would have, but I would also, if we go back and think about the digital battle space and what we've talked about, faster speeds being available in places it's not been before is great. However, when you think about facing an adversary that's a near-peer threat, the first thing they're going to do is make it contested, congested, and you have to be able to survive. While yes, the pace of innovation is absolutely pushing comms to places we've not had it before, we have to be mindful to not get complacent and over-rely on it, assuming it'll always be there. 'Cause I know in my experience wearing the uniform, and even if I'm up against an adversary, that's the first thing I'm going to do is I'm going to do whatever I can to disrupt your ability to communicate. So how do you take it down to that lowest level and still make that squad, the platoon, whatever that structure is, continue survivable and lethal. So that's something I think, as we look at the innovations, we need to be mindful of that. So when I talk about how do you architect it? What services do you use? Those are all those things that you have to think about. What if I lose it at this echelon? How do I continue the mission? >> Yeah, it's interesting. And if you look at how companies have been procuring and consuming technology, Ki, it's been like siloed. "Okay, we've got a workplace workforce project, and we have the tactical edge, and we have the siloed IT solution," when really work and play, whether it's work here in John's example, is the war fighter. And so his concern is safety, his life and protection. >> Yeah. >> The other department has to manage the comms, (laughs) and so they have to have countermeasures and contingencies ready to go. So all this is, they all integrate it now. It's not like one department. It's like it's together. >> Yeah. John, I love what you just said. I mean, we have to get away from this siloed thinking not only within a single organization, but across the enterprise. From a digital battlefield perspective, it's a joint fight, so even across these enterprise of enterprises, So I think you're spot on. We have to look horizontally. We have to integrate, we have to inter-operate, and by doing that, that's where the innovation is also going to be accelerated too, not reinventing the wheel. >> Yeah, and I think the infrastructure edge is so key. It's going to be very interesting to see how the existing incumbents can handle themselves. Obviously the towers are important. 5G obviously, that's more deployments, not as centralized in terms of the spectrum. It's more dense. It's going to create more connectivity options. How do you guys see that impacting? Because certainly more gear, like obviously not the centralized tower, from a backhaul standpoint but now the edge, the radios themselves, the wireless transit is key. That's the real edge here. How do you guys see that evolving? >> We're seeing a lot of innovations actually through small companies who are really focused on very specific niche problems. I think it's a great starting point because what they're doing is showing the art of the possible. Because again, we're in a different environment now. There's different rules. There's different capabilities. But then we're also seeing, you mentioned earlier on, some of the larger companies, the Amazons, the Microsofts, also investing as well. So I think the merge of the, you know, or the unconstrained or the possible by these small companies that are just kind of driving innovations supported by the maturity and the heft of these large companies who are building out these hardened kind of capabilities, they're going to converge at some point. And that's where I think we're going to get further innovation. >> Well, I really appreciate you guys taking the time. Final question for you guys, as people are watching this, a lot of smart executives and teams are coming together to kind of put the battle plans together for their companies as they transition from old to this new way, which is clearly cloud-scale, role of data. We hit out all the key points I think here. As they start to think about architecture and how they deploy their resources, this becomes now the new boardroom conversation that trickles down and includes everyone, including the developers. The developers are now going to be on the front lines. Mid-level managers are going to be integrated in as well. It's a group conversation. What are some of the advice that you would give to folks who are in this mode of planning architecture, trying to be positioned to come out of this pandemic with a massive growth opportunity and to be on the right side of history? What's your advice? >> It's such a great question. So I think you touched upon it. One is take the holistic approach. You mentioned architectures a couple of times, and I think that's critical. Understanding how your edge architectures will let you connect with your cloud architecture so that they're not disjointed, they're not siloed. They're interoperable, they integrate. So you're taking that enterprise approach. I think the second thing is be patient. It took us some time to really kind of, and we've been looking at this for about three years now. And we were very intentional in assessing the landscape, how people were discussing around edge and kind of pulling that all together. But it took us some time to even figure it out, hey, what are the use cases? How can we actually apply this and get some ROI and value out for our clients? So being a little bit patient in thinking through kind of how we can leverage this and potentially be a disruptor. >> John, your thoughts on advice to people watching as they try to put the right plans together to be positioned and not foreclose any future value. >> Yeah, absolutely. So in addition to the points that Ki raised, I would, number one, amplify the fact of recognize that you're going to have a hybrid environment of legacy and modern capabilities. And in addition to thinking open architectures and whatnot, think about your culture, the people, your processes, your techniques and whatnot, and your governance. How do you make decisions when it needs to be closed versus open? Where do you invest in the workforce? What decisions are you going to make in your architecture that drive that hybrid world that you're going to live in? All those recipes, patience, open, all that, that I think we often overlook the cultural people aspect of upskilling. This is a very different way of thinking on modern software delivery. How do you go through this lifecycle? How's security embedded? So making sure that's part of that boardroom conversation I think is key. >> John Pisano, Principal at Booz Allen Digital Cloud Solutions, thanks for sharing that great insight. Ki Lee, Vice President at Booz Allen Digital Business. Gentlemen, great conversation. Thanks for that insight. And I think people watching are going to probably learn a lot on how to evaluate startups to how they put their architecture together. So I really appreciate the insight and commentary. >> Thank you. >> Thank you, John. >> Okay. I'm John Furrier. This is theCUBE Conversation. Thanks for watching. (upbeat music)

Published Date : Jun 3 2021

SUMMARY :

leaders all around the world, And as the world goes digital, So one of the most hottest topics, kind of the history of IT, That's kind of some of the observations 5G and the future of work and those apps are moved to and now you have a tactical deployment. and decrease the latency, How does that impact the in the open source community to do that? What is that going to do for operators? and kind of move to this supply chain on the hardware at the time of coding. and in the industry and around the edge because and I think this is where I think and it's likely going to be important of the tactical edge that kind of defeats the earlier that the personnel, back in the mid '90s What's the connection with those guys? but the fact that they and the portability it and the ability to be a telco now, push the products to the data. now you got a backbone. and still make that squad, the platoon, in John's example, is the war fighter. and so they have to have countermeasures We have to integrate, we It's going to be very interesting to see and the heft of these large companies and to be on the right side of history? and kind of pulling that all together. advice to people watching So in addition to the So I really appreciate the This is theCUBE Conversation.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
JohnPERSON

0.99+

John PisanoPERSON

0.99+

Ki LeePERSON

0.99+

Nic ChaillanPERSON

0.99+

John FurrierPERSON

0.99+

TaiwanLOCATION

0.99+

SUSEORGANIZATION

0.99+

StarlinkORGANIZATION

0.99+

AmazonORGANIZATION

0.99+

RancherORGANIZATION

0.99+

AmazonsORGANIZATION

0.99+

AWSORGANIZATION

0.99+

five barsQUANTITY

0.99+

Palo AltoLOCATION

0.99+

100%QUANTITY

0.99+

telcoORGANIZATION

0.99+

MicrosoftsORGANIZATION

0.99+

KoreaLOCATION

0.99+

CoachellaEVENT

0.99+

BostonLOCATION

0.99+

Palo Alto, CaliforniaLOCATION

0.99+

Booz AllenORGANIZATION

0.99+

Rancher LabsORGANIZATION

0.99+

KiPERSON

0.99+

U.S. Air ForceORGANIZATION

0.99+

SnowmobileORGANIZATION

0.99+

bothQUANTITY

0.99+

SnowballORGANIZATION

0.99+

last yearDATE

0.98+

CubeSatCOMMERCIAL_ITEM

0.98+

theCUBEORGANIZATION

0.98+

Booz Allen Digital Cloud SolutionsORGANIZATION

0.98+

mid '90sDATE

0.98+

two great guestsQUANTITY

0.98+

telcosORGANIZATION

0.98+

Iron BankORGANIZATION

0.97+

eachQUANTITY

0.97+

K3sORGANIZATION

0.97+

FirstQUANTITY

0.97+

single organizationQUANTITY

0.97+

first thingQUANTITY

0.97+

49ersORGANIZATION

0.97+

Booz Allen Digital BusinessORGANIZATION

0.96+

D.C.LOCATION

0.96+

billionsQUANTITY

0.96+

one departmentQUANTITY

0.96+

billions of devicesQUANTITY

0.96+

about three yearsQUANTITY

0.95+

CloudNativeConTITLE

0.95+

second thingQUANTITY

0.95+

one thingQUANTITY

0.94+

todayDATE

0.94+

U.S.LOCATION

0.94+

PatriotsORGANIZATION

0.93+

oneQUANTITY

0.93+

KubernetesTITLE

0.92+

RedskinsORGANIZATION

0.9+

DockerConTITLE

0.89+

Chief Software OfficerPERSON

0.88+

Open RANTITLE

0.87+

two overall aspectsQUANTITY

0.87+

OneQUANTITY

0.87+

DevSecOpsTITLE

0.86+

KubeConTITLE

0.86+

Another test of transitions


 

>> Hi, my name is Andy Clemenko. I'm a Senior Solutions Engineer at StackRox. Thanks for joining us today for my talk on labels, labels, labels. Obviously, you can reach me at all the socials. Before we get started, I like to point you to my GitHub repo, you can go to andyc.info/dc20, and it'll take you to my GitHub page where I've got all of this documentation, socials. Before we get started, I like to point you to my GitHub repo, you can go to andyc.info/dc20, (upbeat music) >> Hi, my name is Andy Clemenko. I'm a Senior Solutions Engineer at StackRox. Thanks for joining us today for my talk on labels, labels, labels. Obviously, you can reach me at all the socials. Before we get started, I like to point you to my GitHub repo, you can go to andyc.info/dc20, and it'll take you to my GitHub page where I've got all of this documentation, I've got the Keynote file there. YAMLs, I've got Dockerfiles, Compose files, all that good stuff. If you want to follow along, great, if not go back and review later, kind of fun. So let me tell you a little bit about myself. I am a former DOD contractor. This is my seventh DockerCon. I've spoken, I had the pleasure to speak at a few of them, one even in Europe. I was even a Docker employee for quite a number of years, providing solutions to the federal government and customers around containers and all things Docker. So I've been doing this a little while. One of the things that I always found interesting was the lack of understanding around labels. So why labels, right? Well, as a former DOD contractor, I had built out a large registry. And the question I constantly got was, where did this image come from? How did you get it? What's in it? Where did it come from? How did it get here? And one of the things we did to kind of alleviate some of those questions was we established a baseline set of labels. Labels really are designed to provide as much metadata around the image as possible. I ask everyone in attendance, when was the last time you pulled an image and had 100% confidence, you knew what was inside it, where it was built, how it was built, when it was built, you probably didn't, right? The last thing we obviously want is a container fire, like our image on the screen. And one kind of interesting way we can kind of prevent that is through the use of labels. We can use labels to address security, address some of the simplicity on how to run these images. So think of it, kind of like self documenting, Think of it also as an audit trail, image provenance, things like that. These are some interesting concepts that we can definitely mandate as we move forward. What is a label, right? Specifically what is the Schema? It's just a key-value. All right? It's any key and pretty much any value. What if we could dump in all kinds of information? What if we could encode things and store it in there? And I've got a fun little demo to show you about that. Let's start off with some of the simple keys, right? Author, date, description, version. Some of the basic information around the image. That would be pretty useful, right? What about specific labels for CI? What about a, where's the version control? Where's the source, right? Whether it's Git, whether it's GitLab, whether it's GitHub, whether it's Gitosis, right? Even SPN, who cares? Where are the source files that built, where's the Docker file that built this image? What's the commit number? That might be interesting in terms of tracking the resulting image to a person or to a commit, hopefully then to a person. How is it built? What if you wanted to play with it and do a git clone of the repo and then build the Docker file on your own? Having a label specifically dedicated on how to build this image might be interesting for development work. Where it was built, and obviously what build number, right? These kind of all, not only talk about continuous integration, CI but also start to talk about security. Specifically what server built it. The version control number, the version number, the commit number, again, how it was built. What's the specific build number? What was that job number in, say, Jenkins or GitLab? What if we could take it a step further? What if we could actually apply policy enforcement in the build pipeline, looking specifically for some of these specific labels? I've got a good example of, in my demo of a policy enforcement. So let's look at some sample labels. Now originally, this idea came out of label-schema.org. And then it was a modified to opencontainers, org.opencontainers.image. There is a link in my GitHub page that links to the full reference. But these are some of the labels that I like to use, just as kind of like a standardization. So obviously, Author's, an email address, so now the image is attributable to a person, that's always kind of good for security and reliability. Where's the source? Where's the version control that has the source, the Docker file and all the assets? How it was built, build number, build server the commit, we talked about, when it was created, a simple description. A fun one I like adding in is the healthZendpoint. Now obviously, the health check directive should be in the Docker file. But if you've got other systems that want to ping your applications, why not declare it and make it queryable? Image version, obviously, that's simple declarative And then a title. And then I've got the two fun ones. Remember, I talked about what if we could encode some fun things? Hypothetically, what if we could encode the Compose file of how to build the stack in the first image itself? And conversely the Kubernetes? Well, actually, you can and I have a demo to show you how to kind of take advantage of that. So how do we create labels? And really creating labels as a function of build time okay? You can't really add labels to an image after the fact. The way you do add labels is either through the Docker file, which I'm a big fan of, because it's declarative. It's in version control. It's kind of irrefutable, especially if you're tracking that commit number in a label. You can extend it from being a static kind of declaration to more a dynamic with build arguments. And I can show you, I'll show you in a little while how you can use a build argument at build time to pass in that variable. And then obviously, if you did it by hand, you could do a docker build--label key equals value. I'm not a big fan of the third one, I love the first one and obviously the second one. Being dynamic we can take advantage of some of the variables coming out of version control. Or I should say, some of the variables coming out of our CI system. And that way, it self documents effectively at build time, which is kind of cool. How do we view labels? Well, there's two major ways to view labels. The first one is obviously a docker pull and docker inspect. You can pull the image locally, you can inspect it, you can obviously, it's going to output as JSON. So you going to use something like JQ to crack it open and look at the individual labels. Another one which I found recently was Skopeo from Red Hat. This allows you to actually query the registry server. So you don't even have to pull the image initially. This can be really useful if you're on a really small development workstation, and you're trying to talk to a Kubernetes cluster and wanting to deploy apps kind of in a very simple manner. Okay? And this was that use case, right? Using Kubernetes, the Kubernetes demo. One of the interesting things about this is that you can base64 encode almost anything, push it in as text into a label and then base64 decode it, and then use it. So in this case, in my demo, I'll show you how we can actually use a kubectl apply piped from the base64 decode from the label itself from skopeo talking to the registry. And what's interesting about this kind of technique is you don't need to store Helm charts. You don't need to learn another language for your declarative automation, right? You don't need all this extra levels of abstraction inherently, if you use it as a label with a kubectl apply, It's just built in. It's kind of like the kiss approach to a certain extent. It does require some encoding when you actually build the image, but to me, it doesn't seem that hard. Okay, let's take a look at a demo. And what I'm going to do for my demo, before we actually get started is here's my repo. Here's a, let me actually go to the actual full repo. So here's the repo, right? And I've got my Jenkins pipeline 'cause I'm using Jenkins for this demo. And in my demo flask, I've got the Docker file. I've got my compose and my Kubernetes YAML. So let's take a look at the Docker file, right? So it's a simple Alpine image. The org statements are the build time arguments that are passed in. Label, so again, I'm using the org.opencontainers.image.blank, for most of them. There's a typo there. Let's see if you can find it, I'll show you it later. My source, build date, build number, commit. Build number and get commit are derived from the Jenkins itself, which is nice. I can just take advantage of existing URLs. I don't have to create anything crazy. And again, I've got my actual Docker build command. Now this is just a label on how to build it. And then here's my simple Python, APK upgrade, remove the package manager, kind of some security stuff, health check getting Python through, okay? Let's take a look at the Jenkins pipeline real quick. So here is my Jenkins pipeline and I have four major stages, four stages, I have built. And here in build, what I do is I actually do the Git clone. And then I do my docker build. From there, I actually tell the Jenkins StackRox plugin. So that's what I'm using for my security scanning. So go ahead and scan, basically, I'm staging it to scan the image. I'm pushing it to Hub, okay? Where I can see the, basically I'm pushing the image up to Hub so such that my StackRox security scanner can go ahead and scan the image. I'm kicking off the scan itself. And then if everything's successful, I'm pushing it to prod. Now what I'm doing is I'm just using the same image with two tags, pre-prod and prod. This is not exactly ideal, in your environment, you probably want to use separate registries and non-prod and a production registry, but for demonstration purposes, I think this is okay. So let's go over to my Jenkins and I've got a deliberate failure. And I'll show you why there's a reason for that. And let's go down. Let's look at my, so I have a StackRox report. Let's look at my report. And it says image required, required image label alert, right? Request that the maintainer, add the required label to the image, so we're missing a label, okay? One of the things we can do is let's flip over, and let's look at Skopeo. Right? I'm going to do this just the easy way. So instead of looking at org.zdocker, opencontainers.image.authors. Okay, see here it says build signature? That was the typo, we didn't actually pass in. So if we go back to our repo, we didn't pass in the the build time argument, we just passed in the word. So let's fix that real quick. That's the Docker file. Let's go ahead and put our dollar sign in their. First day with the fingers you going to love it. And let's go ahead and commit that. Okay? So now that that's committed, we can go back to Jenkins, and we can actually do another build. And there's number 12. And as you can see, I've been playing with this for a little bit today. And while that's running, come on, we can go ahead and look at the Console output. Okay, so there's our image. And again, look at all the build arguments that we're passing into the build statement. So we're passing in the date and the date gets derived on the command line. With the build arguments, there's the base64 encoded of the Compose file. Here's the base64 encoding of the Kubernetes YAML. We do the build. And then let's go down to the bottom layer exists and successful. So here's where we can see no system policy violations profound marking stack regimes security plugin, build step as successful, okay? So we're actually able to do policy enforcement that that image exists, that that label sorry, exists in the image. And again, we can look at the security report and there's no policy violations and no vulnerabilities. So that's pretty good for security, right? We can now enforce and mandate use of certain labels within our images. And let's flip back over to Skopeo, and let's go ahead and look at it. So we're looking at the prod version again. And there's it is in my email address. And that validated that that was valid for that policy. So that's kind of cool. Now, let's take it a step further. What if, let's go ahead and take a look at all of the image, all the labels for a second, let me remove the dash org, make it pretty. Okay? So we have all of our image labels. Again, author's build, commit number, look at the commit number. It was built today build number 12. We saw that right? Delete, build 12. So that's kind of cool dynamic labels. Name, healthz, right? But what we're looking for is we're going to look at the org.zdockerketers label. So let's go look at the label real quick. Okay, well that doesn't really help us because it's encoded but let's base64 dash D, let's decode it. And I need to put the dash r in there 'cause it doesn't like, there we go. So there's my Kubernetes YAML. So why can't we simply kubectl apply dash f? Let's just apply it from standard end. So now we've actually used that label. From the image that we've queried with skopeo, from a remote registry to deploy locally to our Kubernetes cluster. So let's go ahead and look everything's up and running, perfect. So what does that look like, right? So luckily, I'm using traefik for Ingress 'cause I love it. And I've got an object in my Kubernetes YAML called flask.doctor.life. That's my Ingress object for traefik. I can go to flask.docker.life. And I can hit refresh. Obviously, I'm not a very good web designer 'cause the background image in the text. We can go ahead and refresh it a couple times we've got Redis storing a hit counter. We can see that our server name is roundrobing. Okay? That's kind of cool. So let's kind of recap a little bit about my demo environment. So my demo environment, I'm using DigitalOcean, Ubuntu 19.10 Vms. I'm using K3s instead of full Kubernetes either full Rancher, full Open Shift or Docker Enterprise. I think K3s has some really interesting advantages on the development side and it's kind of intended for IoT but it works really well and it deploys super easy. I'm using traefik for Ingress. I love traefik. I may or may not be a traefik ambassador. I'm using Jenkins for CI. And I'm using StackRox for image scanning and policy enforcement. One of the things to think about though, especially in terms of labels is none of this demo stack is required. You can be in any cloud, you can be in CentOs, you can be in any Kubernetes. You can even be in swarm, if you wanted to, or Docker compose. Any Ingress, any CI system, Jenkins, circle, GitLab, it doesn't matter. And pretty much any scanning. One of the things that I think is kind of nice about at least StackRox is that we do a lot more than just image scanning, right? With the policy enforcement things like that. I guess that's kind of a shameless plug. But again, any of this stack is completely replaceable, with any comparative product in that category. So I'd like to, again, point you guys to the andyc.infodc20, that's take you right to the GitHub repo. You can reach out to me at any of the socials @clemenko or andy@stackrox.com. And thank you for attending. I hope you learned something fun about labels. And hopefully you guys can standardize labels in your organization and really kind of take your images and the image provenance to a new level. Thanks for watching. (upbeat music) >> Narrator: Live from Las Vegas It's theCUBE. Covering AWS re:Invent 2019. Brought to you by Amazon Web Services and Intel along with it's ecosystem partners. >> Okay, welcome back everyone theCUBE's live coverage of AWS re:Invent 2019. This is theCUBE's 7th year covering Amazon re:Invent. It's their 8th year of the conference. I want to just shout out to Intel for their sponsorship for these two amazing sets. Without their support we wouldn't be able to bring our mission of great content to you. I'm John Furrier. Stu Miniman. We're here with the chief of AWS, the chief executive officer Andy Jassy. Tech athlete in and of himself three hour Keynotes. Welcome to theCUBE again, great to see you. >> Great to be here, thanks for having me guys. >> Congratulations on a great show a lot of great buzz. >> Andy: Thank you. >> A lot of good stuff. Your Keynote was phenomenal. You get right into it, you giddy up right into it as you say, three hours, thirty announcements. You guys do a lot, but what I liked, the new addition, the last year and this year is the band; house band. They're pretty good. >> Andy: They're good right? >> They hit the queen notes, so that keeps it balanced. So we're going to work on getting a band for theCUBE. >> Awesome. >> So if I have to ask you, what's your walk up song, what would it be? >> There's so many choices, it depends on what kind of mood I'm in. But, uh, maybe Times Like These by the Foo Fighters. >> John: Alright. >> These are unusual times right now. >> Foo Fighters playing at the Amazon Intersect Show. >> Yes they are. >> Good plug Andy. >> Headlining. >> Very clever >> Always getting a good plug in there. >> My very favorite band. Well congratulations on the Intersect you got a lot going on. Intersect is a music festival, I'll get to that in a second But, I think the big news for me is two things, obviously we had a one-on-one exclusive interview and you laid out, essentially what looks like was going to be your Keynote, and it was. Transformation- >> Andy: Thank you for the practice. (Laughter) >> John: I'm glad to practice, use me anytime. >> Yeah. >> And I like to appreciate the comments on Jedi on the record, that was great. But I think the transformation story's a very real one, but the NFL news you guys just announced, to me, was so much fun and relevant. You had the Commissioner of NFL on stage with you talking about a strategic partnership. That is as top down, aggressive goal as you could get to have Rodger Goodell fly to a tech conference to sit with you and then bring his team talk about the deal. >> Well, ya know, we've been partners with the NFL for a while with the Next Gen Stats that they use on all their telecasts and one of the things I really like about Roger is that he's very curious and very interested in technology and the first couple times I spoke with him he asked me so many questions about ways the NFL might be able to use the Cloud and digital transformation to transform their various experiences and he's always said if you have a creative idea or something you think that could change the world for us, just call me he said or text me or email me and I'll call you back within 24 hours. And so, we've spent the better part of the last year talking about a lot of really interesting, strategic ways that they can evolve their experience both for fans, as well as their players and the Player Health and Safety Initiative, it's so important in sports and particularly important with the NFL given the nature of the sport and they've always had a focus on it, but what you can do with computer vision and machine learning algorithms and then building a digital athlete which is really like a digital twin of each athlete so you understand, what does it look like when they're healthy and compare that when it looks like they may not be healthy and be able to simulate all kinds of different combinations of player hits and angles and different plays so that you could try to predict injuries and predict the right equipment you need before there's a problem can be really transformational so we're super excited about it. >> Did you guys come up with the idea or was it a collaboration between them? >> It was really a collaboration. I mean they, look, they are very focused on players safety and health and it's a big deal for their- you know, they have two main constituents the players and fans and they care deeply about the players and it's a-it's a hard problem in a sport like Football, I mean, you watch it. >> Yeah, and I got to say it does point out the use cases of what you guys are promoting heavily at the show here of the SageMaker Studio, which was a big part of your Keynote, where they have all this data. >> Andy: Right. >> And they're data hoarders, they hoard data but the manual process of going through the data was a killer problem. This is consistent with a lot of the enterprises that are out there, they have more data than they even know. So this seems to be a big part of the strategy. How do you get the customers to actually wake up to the fact that they got all this data and how do you tie that together? >> I think in almost every company they know they have a lot of data. And there are always pockets of people who want to do something with it. But, when you're going to make these really big leaps forward; these transformations, the things like Volkswagen is doing where they're reinventing their factories and their manufacturing process or the NFL where they're going to radically transform how they do players uh, health and safety. It starts top down and if the senior leader isn't convicted about wanting to take that leap forward and trying something different and organizing the data differently and organizing the team differently and using machine learning and getting help from us and building algorithms and building some muscle inside the company it just doesn't happen because it's not in the normal machinery of what most companies do. And so it always, almost always, starts top down. Sometimes it can be the Commissioner or CEO sometimes it can be the CIO but it has to be senior level conviction or it doesn't get off the ground. >> And the business model impact has to be real. For NFL, they know concussions, hurting their youth pipe-lining, this is a huge issue for them. This is their business model. >> They lose even more players to lower extremity injuries. And so just the notion of trying to be able to predict injuries and, you know, the impact it can have on rules and the impact it can have on the equipment they use, it's a huge game changer when they look at the next 10 to 20 years. >> Alright, love geeking out on the NFL but Andy, you know- >> No more NFL talk? >> Off camera how about we talk? >> Nobody talks about the Giants being 2 and 10. >> Stu: We're both Patriots fans here. >> People bring up the undefeated season. >> So Andy- >> Everybody's a Patriot's fan now. (Laughter) >> It's fascinating to watch uh, you and your three hour uh, Keynote, uh Werner in his you know, architectural discussion, really showed how AWS is really extending its reach, you know, it's not just a place. For a few years people have been talking about you know, Cloud is an operational model its not a destination or a location but, I felt it really was laid out is you talked about Breadth and Depth and Werner really talked about you know, Architectural differentiation. People talk about Cloud, but there are very-there are a lot of differences between the vision for where things are going. Help us understand why, I mean, Amazon's vision is still a bit different from what other people talk about where this whole Cloud expansion, journey, put ever what tag or label you want on it but you know, the control plane and the technology that you're building and where you see that going. >> Well I think that, we've talked about this a couple times we have two macro types of customers. We have those that really want to get at the low level building blocks and stitch them together creatively however they see fit to create whatever's in their-in their heads. And then we have the second segment of customers that say look, I'm willing to give up some of that flexibility in exchange for getting 80% of the way there much faster. In an abstraction that's different from those low level building blocks. And both segments of builders we want to serve and serve well and so we've built very significant offerings in both areas. I think when you look at microservices um, you know, some of it has to do with the fact that we have this very strongly held belief born out of several years of Amazon where you know, the first 7 or 8 years of Amazon's consumer business we basically jumbled together all of the parts of our technology in moving really quickly and when we wanted to move quickly where you had to impact multiple internal development teams it was so long because it was this big ball, this big monolithic piece. And we got religion about that in trying to move faster in the consumer business and having to tease those pieces apart. And it really was a lot of impetus behind conceiving AWS where it was these low level, very flexible building blocks that6 don't try and make all the decisions for customers they get to make them themselves. And some of the microservices that you saw Werner talking about just, you know, for instance, what we-what we did with Nitro or even what we did with Firecracker those are very much about us relentlessly working to continue to uh, tease apart the different components. And even things that look like low level building blocks over time, you build more and more features and all of the sudden you realize they have a lot of things that are combined together that you wished weren't that slow you down and so, Nitro was a completely re imagining of our Hypervisor and Virtualization layer to allow us, both to let customers have better performance but also to let us move faster and have a better security story for our customers. >> I got to ask you the question around transformation because I think that all points, all the data points, you got all the references, Goldman Sachs on stage at the Keynote, Cerner, I mean healthcare just is an amazing example because I mean, that's demonstrating real value there there's no excuse. I talked to someone who wouldn't be named last night, in and around the area said, the CIA has a cost bar like this a cost-a budget like this but the demand for mission based apps is going up exponentially, so there's need for the Cloud. And so, you see more and more of that. What is your top down, aggressive goals to fill that solution base because you're also a very transformational thinker; what is your-what is your aggressive top down goals for your organization because you're serving a market with trillions of dollars of spend that's shifting, that's on the table. >> Yeah. >> A lot of competition now sees it too, they're going to go after it. But at the end of the day you have customers that have a demand for things, apps. >> Andy: Yeah. >> And not a lot of budget increase at the same time. This is a huge dynamic. >> Yeah. >> John: What's your goals? >> You know I think that at a high level our top down aggressive goals are that we want every single customer who uses our platform to have an outstanding customer experience. And we want that outstanding customer experience in part is that their operational performance and their security are outstanding, but also that it allows them to build, uh, build projects and initiatives that change their customer experience and allow them to be a sustainable successful business over a long period of time. And then, we also really want to be the technology infrastructure platform under all the applications that people build. And we're realistic, we know that you know, the market segments we address with infrastructure, software, hardware, and data center services globally are trillions of dollars in the long term and it won't only be us, but we have that goal of wanting to serve every application and that requires not just the security operational premise but also a lot of functionality and a lot of capability. We have by far the most amount of capability out there and yet I would tell you, we have 3 to 5 years of items on our roadmap that customers want us to add. And that's just what we know today. >> And Andy, underneath the covers you've been going through some transformation. When we talked a couple of years ago, about how serverless is impacting things I've heard that that's actually, in many ways, glue behind the two pizza teams to work between organizations. Talk about how the internal transformations are happening. How that impacts your discussions with customers that are going through that transformation. >> Well, I mean, there's a lot of- a lot of the technology we build comes from things that we're doing ourselves you know? And that we're learning ourselves. It's kind of how we started thinking about microservices, serverless too, we saw the need, you know, we would have we would build all these functions that when some kind of object came into an object store we would spin up, compute, all those tasks would take like, 3 or 4 hundred milliseconds then we'd spin it back down and yet, we'd have to keep a cluster up in multiple availability zones because we needed that fault tolerance and it was- we just said this is wasteful and, that's part of how we came up with Lambda and you know, when we were thinking about Lambda people understandably said, well if we build Lambda and we build this serverless adventure in computing a lot of people were keeping clusters of instances aren't going to use them anymore it's going to lead to less absolute revenue for us. But we, we have learned this lesson over the last 20 years at Amazon which is, if it's something that's good for customers you're much better off cannibalizing yourself and doing the right thing for customers and being part of shaping something. And I think if you look at the history of technology you always build things and people say well, that's going to cannibalize this and people are going to spend less money, what really ends up happening is they spend less money per unit of compute but it allows them to do so much more that they ultimately, long term, end up being more significant customers. >> I mean, you are like beating the drum all the time. Customers, what they say, we encompass the roadmap, I got that you guys have that playbook down, that's been really successful for you. >> Andy: Yeah. >> Two years ago you told me machine learning was really important to you because your customers told you. What's the next traunch of importance for customers? What's on top of mind now, as you, look at- >> Andy: Yeah. >> This re:Invent kind of coming to a close, Replay's tonight, you had conversations, you're a tech athlete, you're running around, doing speeches, talking to customers. What's that next hill from if it's machine learning today- >> There's so much I mean, (weird background noise) >> It's not a soup question (Laughter) And I think we're still in the very early days of machine learning it's not like most companies have mastered it yet even though they're using it much more then they did in the past. But, you know, I think machine learning for sure I think the Edge for sure, I think that um, we're optimistic about Quantum Computing even though I think it'll be a few years before it's really broadly useful. We're very um, enthusiastic about robotics. I think the amount of functions that are going to be done by these- >> Yeah. >> robotic applications are much more expansive than people realize. It doesn't mean humans won't have jobs, they're just going to work on things that are more value added. We're believers in augmented virtual reality, we're big believers in what's going to happen with Voice. And I'm also uh, I think sometimes people get bored you know, I think you're even bored with machine learning already >> Not yet. >> People get bored with the things you've heard about but, I think just what we've done with the Chips you know, in terms of giving people 40% better price performance in the latest generation of X86 processors. It's pretty unbelievable in the difference in what people are going to be able to do. Or just look at big data I mean, big data, we haven't gotten through big data where people have totally solved it. The amount of data that companies want to store, process, analyze, is exponentially larger than it was a few years ago and it will, I think, exponentially increase again in the next few years. You need different tools and services. >> Well I think we're not bored with machine learning we're excited to get started because we have all this data from the video and you guys got SageMaker. >> Andy: Yeah. >> We call it the stairway to machine learning heaven. >> Andy: Yeah. >> You start with the data, move up, knock- >> You guys are very sophisticated with what you do with technology and machine learning and there's so much I mean, we're just kind of, again, in such early innings. And I think that, it was so- before SageMaker, it was so hard for everyday developers and data scientists to build models but the combination of SageMaker and what's happened with thousands of companies standardizing on it the last two years, plus now SageMaker studio, giant leap forward. >> Well, we hope to use the data to transform our experience with our audience. And we're on Amazon Cloud so we really appreciate that. >> Andy: Yeah. >> And appreciate your support- >> Andy: Yeah, of course. >> John: With Amazon and get that machine learning going a little faster for us, that would be better. >> If you have requests I'm interested, yeah. >> So Andy, you talked about that you've got the customers that are builders and the customers that need simplification. Traditionally when you get into the, you know, the heart of the majority of adoption of something you really need to simplify that environment. But when I think about the successful enterprise of the future, they need to be builders. how'l I normally would've said enterprise want to pay for solutions because they don't have the skill set but, if they're going to succeed in this new economy they need to go through that transformation >> Andy: Yeah. >> That you talk to, so, I mean, are we in just a total new era when we look back will this be different than some of these previous waves? >> It's a really good question Stu, and I don't think there's a simple answer to it. I think that a lot of enterprises in some ways, I think wish that they could just skip the low level building blocks and only operate at that higher level abstraction. That's why people were so excited by things like, SageMaker, or CodeGuru, or Kendra, or Contact Lens, these are all services that allow them to just send us data and then run it on our models and get back the answers. But I think one of the big trends that we see with enterprises is that they are taking more and more of their development in house and they are wanting to operate more and more like startups. I think that they admire what companies like AirBnB and Pintrest and Slack and Robinhood and a whole bunch of those companies, Stripe, have done and so when, you know, I think you go through these phases and eras where there are waves of success at different companies and then others want to follow that success and replicate it. And so, we see more and more enterprises saying we need to take back a lot of that development in house. And as they do that, and as they add more developers those developers in most cases like to deal with the building blocks. And they have a lot of ideas on how they can creatively stich them together. >> Yeah, on that point, I want to just quickly ask you on Amazon versus other Clouds because you made a comment to me in our interview about how hard it is to provide a service to other people. And it's hard to have a service that you're using yourself and turn that around and the most quoted line of my story was, the compression algorithm- there's no compression algorithm for experience. Which to me, is the diseconomies of scale for taking shortcuts. >> Andy: Yeah. And so I think this is a really interesting point, just add some color commentary because I think this is a fundamental difference between AWS and others because you guys have a trajectory over the years of serving, at scale, customers wherever they are, whatever they want to do, now you got microservices. >> Yeah. >> John: It's even more complex. That's hard. >> Yeah. >> John: Talk about that. >> I think there are a few elements to that notion of there's no compression algorithm for experience and I think the first thing to know about AWS which is different is, we just come from a different heritage and a different background. We ran a business for a long time that was our sole business that was a consumer retail business that was very low margin. And so, we had to operate at very large scale given how many people were using us but also, we had to run infrastructure services deep in the stack, compute storage and database, and reliable scalable data centers at very low cost and margins. And so, when you look at our business it actually, today, I mean its, its a higher margin business in our retail business, its a lower margin business in software companies but at real scale, it's a high volume, relatively low margin business. And the way that you have to operate to be successful with those businesses and the things you have to think about and that DNA come from the type of operators we have to be in our consumer retail business. And there's nobody else in our space that does that. So, you know, the way that we think about costs, the way we think about innovation in the data center, um, and I also think the way that we operate services and how long we've been operating services as a company its a very different mindset than operating package software. Then you look at when uh, you think about some of the uh, issues in very large scale Cloud, you can't learn some of those lessons until you get to different elbows of the curve and scale. And so what I was telling you is, its really different to run your own platform for your own users where you get to tell them exactly how its going to be done. But that's not the way the real world works. I mean, we have millions of external customers who use us from every imaginable country and location whenever they want, without any warning, for lots of different use cases, and they have lots of design patterns and we don't get to tell them what to do. And so operating a Cloud like that, at a scale that's several times larger than the next few providers combined is a very different endeavor and a very different operating rigor. >> Well you got to keep raising the bar you guys do a great job, really impressed again. Another tsunami of announcements. In fact, you had to spill the beans earlier with Quantum the day before the event. Tight schedule. I got to ask you about the musical festival because, I think this is a very cool innovation. It's the inaugural Intersect conference. >> Yes. >> John: Which is not part of Replay, >> Yes. >> John: Which is the concert tonight. Its a whole new thing, big music act, you're a big music buff, your daughter's an artist. Why did you do this? What's the purpose? What's your goal? >> Yeah, it's an experiment. I think that what's happened is that re:Invent has gotten so big, we have 65 thousand people here, that to do the party, which we do every year, its like a 35-40 thousand person concert now. Which means you have to have a location that has multiple stages and, you know, we thought about it last year and when we were watching it and we said, we're kind of throwing, like, a 4 hour music festival right now. There's multiple stages, and its quite expensive to set up that set for a party and we said well, maybe we don't have to spend all that money for 4 hours and then rip it apart because actually the rent to keep those locations for another two days is much smaller than the cost of actually building multiple stages and so we thought we would try it this year. We're very passionate about music as a business and I think we-I think our customers feel like we've thrown a pretty good music party the last few years and we thought we would try it at a larger scale as an experiment. And if you look at the economics- >> At the headliners real quick. >> The Foo Fighters are headlining on Saturday night, Anderson Paak and the Free Nationals, Brandi Carlile, Shawn Mullins, um, Willy Porter, its a good set. Friday night its Beck and Kacey Musgraves so it's a really great set of um, about thirty artists and we're hopeful that if we can build a great experience that people will want to attend that we can do it at scale and it might be something that both pays for itself and maybe, helps pay for re:Invent too overtime and you know, I think that we're also thinking about it as not just a music concert and festival the reason we named it Intersect is that we want an intersection of music genres and people and ethnicities and age groups and art and technology all there together and this will be the first year we try it, its an experiment and we're really excited about it. >> Well I'm gone, congratulations on all your success and I want to thank you we've been 7 years here at re:Invent we've been documenting the history. You got two sets now, one set upstairs. So appreciate you. >> theCUBE is part of re:Invent, you know, you guys really are apart of the event and we really appreciate your coming here and I know people appreciate the content you create as well. >> And we just launched CUBE365 on Amazon Marketplace built on AWS so thanks for letting us- >> Very cool >> John: Build on the platform. appreciate it. >> Thanks for having me guys, I appreciate it. >> Andy Jassy the CEO of AWS here inside theCUBE, it's our 7th year covering and documenting the thunderous innovation that Amazon's doing they're really doing amazing work building out the new technologies here in the Cloud computing world. I'm John Furrier, Stu Miniman, be right back with more after this short break. (Outro music)

Published Date : Sep 29 2020

SUMMARY :

at org the org to the andyc and it was. of time. That's hard. I think that

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Andy ClemenkoPERSON

0.99+

AndyPERSON

0.99+

Stu MinimanPERSON

0.99+

Amazon Web ServicesORGANIZATION

0.99+

Andy JassyPERSON

0.99+

CIAORGANIZATION

0.99+

John FurrierPERSON

0.99+

AWSORGANIZATION

0.99+

EuropeLOCATION

0.99+

JohnPERSON

0.99+

3QUANTITY

0.99+

StackRoxORGANIZATION

0.99+

80%QUANTITY

0.99+

4 hoursQUANTITY

0.99+

100%QUANTITY

0.99+

AmazonORGANIZATION

0.99+

VolkswagenORGANIZATION

0.99+

Rodger GoodellPERSON

0.99+

AirBnBORGANIZATION

0.99+

RogerPERSON

0.99+

40%QUANTITY

0.99+

Brandi CarlilePERSON

0.99+

PintrestORGANIZATION

0.99+

PythonTITLE

0.99+

two daysQUANTITY

0.99+

4 hourQUANTITY

0.99+

7th yearQUANTITY

0.99+

Willy PorterPERSON

0.99+

Friday nightDATE

0.99+

andy@stackrox.comOTHER

0.99+

7 yearsQUANTITY

0.99+

Goldman SachsORGANIZATION

0.99+

two tagsQUANTITY

0.99+

IntelORGANIZATION

0.99+

millionsQUANTITY

0.99+

Foo FightersORGANIZATION

0.99+

last yearDATE

0.99+

GiantsORGANIZATION

0.99+

todayDATE

0.99+

andyc.info/dc20OTHER

0.99+

65 thousand peopleQUANTITY

0.99+

Saturday nightDATE

0.99+

SlackORGANIZATION

0.99+

two setsQUANTITY

0.99+

flask.docker.lifeOTHER

0.99+

WernerPERSON

0.99+

two thingsQUANTITY

0.99+

Shawn MullinsPERSON

0.99+

RobinhoodORGANIZATION

0.99+

IntersectORGANIZATION

0.99+

thousandsQUANTITY

0.99+

Kacey MusgravesPERSON

0.99+

4 hundred millisecondsQUANTITY

0.99+

first imageQUANTITY

0.99+

Andy


 

>> Hi, my name is Andy Clemenko. I'm a Senior Solutions Engineer at StackRox. Thanks for joining us today for my talk on labels, labels, labels. Obviously, you can reach me at all the socials. Before we get started, I like to point you to my GitHub repo, you can go to andyc.info/dc20, and it'll take you to my GitHub page where I've got all of this documentation, I've got the Keynote file there. YAMLs, I've got Dockerfiles, Compose files, all that good stuff. If you want to follow along, great, if not go back and review later, kind of fun. So let me tell you a little bit about myself. I am a former DOD contractor. This is my seventh DockerCon. I've spoken, I had the pleasure to speak at a few of them, one even in Europe. I was even a Docker employee for quite a number of years, providing solutions to the federal government and customers around containers and all things Docker. So I've been doing this a little while. One of the things that I always found interesting was the lack of understanding around labels. So why labels, right? Well, as a former DOD contractor, I had built out a large registry. And the question I constantly got was, where did this image come from? How did you get it? What's in it? Where did it come from? How did it get here? And one of the things we did to kind of alleviate some of those questions was we established a baseline set of labels. Labels really are designed to provide as much metadata around the image as possible. I ask everyone in attendance, when was the last time you pulled an image and had 100% confidence, you knew what was inside it, where it was built, how it was built, when it was built, you probably didn't, right? The last thing we obviously want is a container fire, like our image on the screen. And one kind of interesting way we can kind of prevent that is through the use of labels. We can use labels to address security, address some of the simplicity on how to run these images. So think of it, kind of like self documenting, Think of it also as an audit trail, image provenance, things like that. These are some interesting concepts that we can definitely mandate as we move forward. What is a label, right? Specifically what is the Schema? It's just a key-value. All right? It's any key and pretty much any value. What if we could dump in all kinds of information? What if we could encode things and store it in there? And I've got a fun little demo to show you about that. Let's start off with some of the simple keys, right? Author, date, description, version. Some of the basic information around the image. That would be pretty useful, right? What about specific labels for CI? What about a, where's the version control? Where's the source, right? Whether it's Git, whether it's GitLab, whether it's GitHub, whether it's Gitosis, right? Even SPN, who cares? Where are the source files that built, where's the Docker file that built this image? What's the commit number? That might be interesting in terms of tracking the resulting image to a person or to a commit, hopefully then to a person. How is it built? What if you wanted to play with it and do a git clone of the repo and then build the Docker file on your own? Having a label specifically dedicated on how to build this image might be interesting for development work. Where it was built, and obviously what build number, right? These kind of all, not only talk about continuous integration, CI but also start to talk about security. Specifically what server built it. The version control number, the version number, the commit number, again, how it was built. What's the specific build number? What was that job number in, say, Jenkins or GitLab? What if we could take it a step further? What if we could actually apply policy enforcement in the build pipeline, looking specifically for some of these specific labels? I've got a good example of, in my demo of a policy enforcement. So let's look at some sample labels. Now originally, this idea came out of label-schema.org. And then it was a modified to opencontainers, org.opencontainers.image. There is a link in my GitHub page that links to the full reference. But these are some of the labels that I like to use, just as kind of like a standardization. So obviously, Author's, an email address, so now the image is attributable to a person, that's always kind of good for security and reliability. Where's the source? Where's the version control that has the source, the Docker file and all the assets? How it was built, build number, build server the commit, we talked about, when it was created, a simple description. A fun one I like adding in is the healthZendpoint. Now obviously, the health check directive should be in the Docker file. But if you've got other systems that want to ping your applications, why not declare it and make it queryable? Image version, obviously, that's simple declarative And then a title. And then I've got the two fun ones. Remember, I talked about what if we could encode some fun things? Hypothetically, what if we could encode the Compose file of how to build the stack in the first image itself? And conversely the Kubernetes? Well, actually, you can and I have a demo to show you how to kind of take advantage of that. So how do we create labels? And really creating labels as a function of build time okay? You can't really add labels to an image after the fact. The way you do add labels is either through the Docker file, which I'm a big fan of, because it's declarative. It's in version control. It's kind of irrefutable, especially if you're tracking that commit number in a label. You can extend it from being a static kind of declaration to more a dynamic with build arguments. And I can show you, I'll show you in a little while how you can use a build argument at build time to pass in that variable. And then obviously, if you did it by hand, you could do a docker build--label key equals value. I'm not a big fan of the third one, I love the first one and obviously the second one. Being dynamic we can take advantage of some of the variables coming out of version control. Or I should say, some of the variables coming out of our CI system. And that way, it self documents effectively at build time, which is kind of cool. How do we view labels? Well, there's two major ways to view labels. The first one is obviously a docker pull and docker inspect. You can pull the image locally, you can inspect it, you can obviously, it's going to output as JSON. So you going to use something like JQ to crack it open and look at the individual labels. Another one which I found recently was Skopeo from Red Hat. This allows you to actually query the registry server. So you don't even have to pull the image initially. This can be really useful if you're on a really small development workstation, and you're trying to talk to a Kubernetes cluster and wanting to deploy apps kind of in a very simple manner. Okay? And this was that use case, right? Using Kubernetes, the Kubernetes demo. One of the interesting things about this is that you can base64 encode almost anything, push it in as text into a label and then base64 decode it, and then use it. So in this case, in my demo, I'll show you how we can actually use a kubectl apply piped from the base64 decode from the label itself from skopeo talking to the registry. And what's interesting about this kind of technique is you don't need to store Helm charts. You don't need to learn another language for your declarative automation, right? You don't need all this extra levels of abstraction inherently, if you use it as a label with a kubectl apply, It's just built in. It's kind of like the kiss approach to a certain extent. It does require some encoding when you actually build the image, but to me, it doesn't seem that hard. Okay, let's take a look at a demo. And what I'm going to do for my demo, before we actually get started is here's my repo. Here's a, let me actually go to the actual full repo. So here's the repo, right? And I've got my Jenkins pipeline 'cause I'm using Jenkins for this demo. And in my demo flask, I've got the Docker file. I've got my compose and my Kubernetes YAML. So let's take a look at the Docker file, right? So it's a simple Alpine image. The org statements are the build time arguments that are passed in. Label, so again, I'm using the org.opencontainers.image.blank, for most of them. There's a typo there. Let's see if you can find it, I'll show you it later. My source, build date, build number, commit. Build number and get commit are derived from the Jenkins itself, which is nice. I can just take advantage of existing URLs. I don't have to create anything crazy. And again, I've got my actual Docker build command. Now this is just a label on how to build it. And then here's my simple Python, APK upgrade, remove the package manager, kind of some security stuff, health check getting Python through, okay? Let's take a look at the Jenkins pipeline real quick. So here is my Jenkins pipeline and I have four major stages, four stages, I have built. And here in build, what I do is I actually do the Git clone. And then I do my docker build. From there, I actually tell the Jenkins StackRox plugin. So that's what I'm using for my security scanning. So go ahead and scan, basically, I'm staging it to scan the image. I'm pushing it to Hub, okay? Where I can see the, basically I'm pushing the image up to Hub so such that my StackRox security scanner can go ahead and scan the image. I'm kicking off the scan itself. And then if everything's successful, I'm pushing it to prod. Now what I'm doing is I'm just using the same image with two tags, pre-prod and prod. This is not exactly ideal, in your environment, you probably want to use separate registries and non-prod and a production registry, but for demonstration purposes, I think this is okay. So let's go over to my Jenkins and I've got a deliberate failure. And I'll show you why there's a reason for that. And let's go down. Let's look at my, so I have a StackRox report. Let's look at my report. And it says image required, required image label alert, right? Request that the maintainer, add the required label to the image, so we're missing a label, okay? One of the things we can do is let's flip over, and let's look at Skopeo. Right? I'm going to do this just the easy way. So instead of looking at org.zdocker, opencontainers.image.authors. Okay, see here it says build signature? That was the typo, we didn't actually pass in. So if we go back to our repo, we didn't pass in the the build time argument, we just passed in the word. So let's fix that real quick. That's the Docker file. Let's go ahead and put our dollar sign in their. First day with the fingers you going to love it. And let's go ahead and commit that. Okay? So now that that's committed, we can go back to Jenkins, and we can actually do another build. And there's number 12. And as you can see, I've been playing with this for a little bit today. And while that's running, come on, we can go ahead and look at the Console output. Okay, so there's our image. And again, look at all the build arguments that we're passing into the build statement. So we're passing in the date and the date gets derived on the command line. With the build arguments, there's the base64 encoded of the Compose file. Here's the base64 encoding of the Kubernetes YAML. We do the build. And then let's go down to the bottom layer exists and successful. So here's where we can see no system policy violations profound marking stack regimes security plugin, build step as successful, okay? So we're actually able to do policy enforcement that that image exists, that that label sorry, exists in the image. And again, we can look at the security report and there's no policy violations and no vulnerabilities. So that's pretty good for security, right? We can now enforce and mandate use of certain labels within our images. And let's flip back over to Skopeo, and let's go ahead and look at it. So we're looking at the prod version again. And there's it is in my email address. And that validated that that was valid for that policy. So that's kind of cool. Now, let's take it a step further. What if, let's go ahead and take a look at all of the image, all the labels for a second, let me remove the dash org, make it pretty. Okay? So we have all of our image labels. Again, author's build, commit number, look at the commit number. It was built today build number 12. We saw that right? Delete, build 12. So that's kind of cool dynamic labels. Name, healthz, right? But what we're looking for is we're going to look at the org.zdockerketers label. So let's go look at the label real quick. Okay, well that doesn't really help us because it's encoded but let's base64 dash D, let's decode it. And I need to put the dash r in there 'cause it doesn't like, there we go. So there's my Kubernetes YAML. So why can't we simply kubectl apply dash f? Let's just apply it from standard end. So now we've actually used that label. From the image that we've queried with skopeo, from a remote registry to deploy locally to our Kubernetes cluster. So let's go ahead and look everything's up and running, perfect. So what does that look like, right? So luckily, I'm using traefik for Ingress 'cause I love it. And I've got an object in my Kubernetes YAML called flask.doctor.life. That's my Ingress object for traefik. I can go to flask.docker.life. And I can hit refresh. Obviously, I'm not a very good web designer 'cause the background image in the text. We can go ahead and refresh it a couple times we've got Redis storing a hit counter. We can see that our server name is roundrobing. Okay? That's kind of cool. So let's kind of recap a little bit about my demo environment. So my demo environment, I'm using DigitalOcean, Ubuntu 19.10 Vms. I'm using K3s instead of full Kubernetes either full Rancher, full Open Shift or Docker Enterprise. I think K3s has some really interesting advantages on the development side and it's kind of intended for IoT but it works really well and it deploys super easy. I'm using traefik for Ingress. I love traefik. I may or may not be a traefik ambassador. I'm using Jenkins for CI. And I'm using StackRox for image scanning and policy enforcement. One of the things to think about though, especially in terms of labels is none of this demo stack is required. You can be in any cloud, you can be in CentOs, you can be in any Kubernetes. You can even be in swarm, if you wanted to, or Docker compose. Any Ingress, any CI system, Jenkins, circle, GitLab, it doesn't matter. And pretty much any scanning. One of the things that I think is kind of nice about at least StackRox is that we do a lot more than just image scanning, right? With the policy enforcement things like that. I guess that's kind of a shameless plug. But again, any of this stack is completely replaceable, with any comparative product in that category. So I'd like to, again, point you guys to the andyc.infodc20, that's take you right to the GitHub repo. You can reach out to me at any of the socials @clemenko or andy@stackrox.com. And thank you for attending. I hope you learned something fun about labels. And hopefully you guys can standardize labels in your organization and really kind of take your images and the image provenance to a new level. Thanks for watching. (upbeat music)

Published Date : Sep 28 2020

SUMMARY :

at org the org to the andyc

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Andy ClemenkoPERSON

0.99+

EuropeLOCATION

0.99+

100%QUANTITY

0.99+

StackRoxORGANIZATION

0.99+

two tagsQUANTITY

0.99+

PythonTITLE

0.99+

flask.docker.lifeOTHER

0.99+

andy@stackrox.comOTHER

0.99+

AndyPERSON

0.99+

andyc.info/dc20OTHER

0.99+

DockerORGANIZATION

0.99+

todayDATE

0.99+

flask.doctor.lifeOTHER

0.99+

third oneQUANTITY

0.99+

DockerfilesTITLE

0.99+

seventhQUANTITY

0.99+

KubernetesTITLE

0.98+

first oneQUANTITY

0.98+

second oneQUANTITY

0.98+

label-schema.orgOTHER

0.98+

OneQUANTITY

0.98+

KeynoteTITLE

0.98+

andyc.infodc20OTHER

0.98+

first imageQUANTITY

0.98+

First dayQUANTITY

0.97+

CentOsTITLE

0.97+

StackRoxTITLE

0.97+

SkopeoORGANIZATION

0.96+

Red HatORGANIZATION

0.96+

GitTITLE

0.96+

Ubuntu 19.10 VmsTITLE

0.95+

oneQUANTITY

0.95+

build 12OTHER

0.95+

JQTITLE

0.95+

base64TITLE

0.93+

JenkinsTITLE

0.93+

build number 12OTHER

0.91+

org.opencontainers.image.OTHER

0.91+

IngressORGANIZATION

0.89+

DODORGANIZATION

0.89+

opencontainers.image.authors.OTHER

0.89+

a secondQUANTITY

0.89+

two major waysQUANTITY

0.89+

Jenkins StackRoxTITLE

0.88+

GitosisTITLE

0.86+

GitLabORGANIZATION

0.86+

GitHubORGANIZATION

0.86+

two fun onesQUANTITY

0.84+

GitLabTITLE

0.82+

skopeoORGANIZATION

0.82+

DockerTITLE

0.81+

JSONTITLE

0.81+

traefikTITLE

0.77+

skopeoTITLE

0.76+

@clemenkoPERSON

0.74+

RancherTITLE

0.74+

IngressTITLE

0.73+

org.zdockerOTHER

0.72+

RedisTITLE

0.72+

DigitalOceanTITLE

0.71+

org.opencontainers.image.blankOTHER

0.71+

KuberORGANIZATION

0.69+

Jeff Klink, Sera4 | KubeCon + CloudNativeCon Europe 2020 – Virtual


 

>> From around the globe, it's theCUBE with coverage of KubeCon and CloudNativeCon Europe 2020, Virtual. Brought to you by Red Hat, The Cloud Native Computing Foundation and Ecosystem partners. >> Welcome back, I'm Stu Miniman and this is CUBEs coverage of KubeCon CloudNativeCon 2020 in Europe, the virtual edition and of course one of the things we love when we come to these conferences is to get to the actual practitioners, understanding how they're using the various technologies especially here at the CNCF show, so many projects, lots of things changing and really excited. We're going to talk about security in a slightly different way than we often do on theCUBE so happy to welcome to the program from Sera4 I have Jeff Klink who's the Vice President of Engineering and Cloud. Jeff, thanks so much for joining us. >> Thanks too, thanks for having me. >> All right so I teed you up there, give us if you could just a quick thumbnail on Sera4, what your company does and then your role there. >> Absolutely so we're a physical hardware product addressing the telco markets, utility space, all of those so we kind of differentiate herself as a Bluetooth lock for that higher end space, the highest security market where digital encryption is really an absolute must. So we have a few products including our physical lock here, this is a physical padlock, it is where door locks and controllers that all operate over the Bluetooth protocol and that people can just use simply through their mobile phones and operate at the enterprise level. >> Yeah, I'm guessing it's a little bit more expensive than the the padlock I have on my shed which is getting a little rusty and needs a little work but it probably not quite what I'm looking for but you have Cloud, you know, in your title so give us if you could a little bit you know, what the underlying technology that you're responsible for and you know, I understand you've rolled out Kubernetes over the last couple of years, kind of set us up with what were the challenges you were facing before you started using that? >> Absolutely so Stu We've grown over the last five years really as a company like in leaps and bounds and part of that has been the scalability concern and where we go with that, you know, originally starting in the virtual machine space and, you know, original some small customers in telco as we build up the locks and eventually we knew that scalability was really a concern for us, we needed to address that pretty quickly. So as we started to build out our data center space and in this market it's a bit different than your shed locks. Bluetooth locks are kind of everywhere now, they're in logistics, they're on your home and you actually see a lot of compromises these days actually happening on those kind of locks, the home security locks, they're not built for rattling and banging and all that kind of pieces that you would expect in a telco or utility market and in the nuclear space or so you really don't want to lock that, you know, when it's dropped or bang the boat immediately begins to kind of fall apart in your hands and two you're going to expect a different type of security much like you'd see in your SSH certificates, you know, a digital key certificate that arrives there. So in our as we grew up through that piece Kubernetes became a pretty big player for us to try to deal with some of the scale and also to try to deal with some of the sovereignty pieces you don't see in your shed locks. The data sovereignty meeting in your country or as close to you as possible to try to keep that data with the telco, with the utility and kind of in country or in continent with you as well. That was a big challenge for us right off the bat. >> Yeah, you know Jeff absolutely, I have some background from the telco space obviously, there's very rigorous certifications, there's lots of environments that I need to fit into. I want to poke at a word that you mentioned, scale. So scale means lots of things to lots of different people, this year at the KubeCon CloudNativeCon show, one of the scale pieces we're talking about is edge just getting to lots of different locations as opposed to when people first thought about, you know, scale of containers and the like, it was like, do I need to be like Google? Do I have to have that much a scale? Of course, there is only one Google and there's only a handful of companies that need that kind of scale, what was it from your standpoint, is it you know, the latency of all of these devices, is it you know, just the pure number of devices, the number of locations, what was what was the scale limiting factor that you were seeing? >> It's a bit of both in two things, one it was a scale as we brought new customers on, there were extra databases, there was extra identity services, you know, the more locks we sold and the more telcos we sold too suddenly what we started finding is that we needed all these virtual machines and sources in some way to tie them together and the natural piece to those is start to build shared services like SSO and single sign on was a huge driver for us of how do we unite these spaces where they may have maintenance technicians in that space that work for two different telcos. Hey, tower one is down could you please use this padlock on this gate and then this padlock on this cabinet in order to fix it. So that kind of scale immediately showed us, we started to see email addresses or other on two different places and say, well, it might need access into this carrier site because some other carrier has a equipment on that site as well. So the scale started to pick up pretty quickly as well as the space where they started to unite together in a way that we said, well, we kind of have to scale to parts, not only the individuals databases and servers and identity and the storage of their web service data but also we had to unite them in a way that was GDPR compliant and compliant with a bunch of other regulations to say, how do we get these pieces together. So that's where we kind of started to tick the boxes to say in North America, in Latin America, South America we need centralized services but we need some central tie back mechanism as well to start to deal with scale. And the scale came when it went from Let's sell 1000 locks to, by the way, the carrier wants 8000 locks in the next coming months. That's a real scalability concern right off the bat, especially when you start to think of all the people going along with those locks in space as well. So that's the that's the kind of first piece we had to address and single sign on was the head of that for us. >> Excellent, well you know, today when we talk about how do i do container orchestration Kubernetes of course, is the first word that comes to mind, can you bring us back though, how did you end up with Kubernetes, were there other solutions you you looked at when you made your decision? What were your kind of key criteria? How did you choose what partners and vendors you ended up working with? >> So the first piece was is that we all had a lot of VM backgrounds, we had some good DevOps backgrounds as well but nobody was yet into the the container space heavily and so what we looked at originally was Docker swarm, it became our desktop, our daily, our working environment so we knew we were working towards microservices but then immediately this problem emerged that reminded me of say 10, 15 years ago, HD DVD versus Blu-ray and I thought about it as simply as that, these two are fantastic technologies, they're kind of competing in this space, Docker Compose was huge, Docker Hub was growing and growing and we kind of said you got to kind of pick a bucket and go with it and figure out who has the best backing between them, you know from a security policy, from a usage and size and scalability perspective, we knew we would scale this pretty quickly so we started to look at the DevOps and the tooling set to say, scale up by one or scale up by 10, is it doable? Infrastructure as code as well, what could I codify against the best? And as we started looking at those Kubernetes took a pretty quick change for us and actually the first piece of tooling that we looked at was Rancher, we said well there's a lot to learn the Kubernetes space and the Rancher team, they were growing like crazy and they were actually really, really good inside some of their slack channels and some of their groups but they said, reach out, we'll help you even as a free tier, you know and kind of grow our trust in you and you know, vice versa and develop that relationship and so that was our first major relationship was with Rancher and that grew our love for Kubernetes because it took away that first edge of what am i staring at here, it looks like Docker swarm, they put a UI on it, they put some lipstick on it and really helped us get through that first hurdle a couple years ago. >> Well, it's a common pattern that we see in this ecosystem that you know, open source, you try it, you get comfortable with it, you get engaged and then when it makes sense to roll it into production and really start scaling out, that's when you can really formalize those relationships so bring us through the project if you will. You know, how many applications were you starting with? What was the timeline? How many people were involved? Were there, you know, the training or organizational changes, you know, bring us through under the first bits of the project. >> Sure, absolutely. So, like anything it was a series of VMs, we had some VM that were load balanced for databases in the back and protected, we had some manual firewalls through our cloud provider as well but that was kind of the edge of it. You had your web services, your database services and another tier segregated by firewalls, we were operating at a single DCs. As we started to expand into Europe from the North America, Latin America base and as well as Africa, we said this has got to kind of stop. We have a lot of Vms, a lot of machines and so a parallel effort went underway to actually develop some of the new microservices and at first glance was our proxies, our ingresses, our gateways and then our identity service and SSL would be that unifying factor. We honestly knew that moving to Kubernetes in small steps probably wasn't going to be an easy task for us but moving the majority of services over to Kubernetes and then leaving some legacy ones in VM was definitely the right approach for us because now we're dealing with ingressing around the world. Now we're dealing with security of the main core stacks, that was kind of our hardcore focus is to say, secure the stacks up front, ingress from everywhere in the world through like an Anycast Technology and then the gateways will handle that and proxy across the globe and we'll build up from there exactly as we did today. So that was kind of the key for us is that we did develop our micro services, our identity services for SSO, our gateways and then our web services were all developed in containers to start and then we started looking at complimentary pieces like email notification mechanisms, text notification, any of those that could be containerized later, which is dealt with a single one off restful services were moved at a later date. All right. >> So Jeff, yeah absolutely. What to understand, okay, we went through all this technology, we did all these various pieces, what does this mean to your your business projects? So you talked about I need to roll out 8000 devices, is that happening faster? Is it you know, what's the actual business impact of this technology that you've rolled out? >> So here's the key part and here's a differentiator for us is we have two major areas we differentiate in and the first one is asymmetric cryptography. We do own the patents for that one so we know our communication is secure, even when we're lying over Bluetooth. So that's kind of the biggest and foremost one is that how do we communicate with the locks on how do we ensure we can all the time. Two is offline access, some of the major players don't have offline access, which means you can download your keys and assign your keys, go off site do a site to a nuclear bunker wherever it may be and we communicate directly with the lock itself. Our core technology is in the embedded controllers in the lock so that's kind of our key piece and then the lock is a housing around it, it's the mechanical mechanism to it all. So knowing that we had offline technology really nailed down allowed us to do what many called the blue-green approach, which is we're going down for four hours, heads up everybody globally we really need to make this transition but the transition was easy to make with our players, you know, these enterprise spaces and we say we're moving to Kubernetes. It's something where it's kind of a badge of honor to them and they're saying these guys, you know, they really know what they're doing. They've got Kubernetes on the back end, some we needed to explain it to but as soon as they started to hear the words Docker and Kubernetes they just said, wow, this guys are serious about enterprise, we're serious about addressing it and not only that they're forefront of other technologies. I think that's part of our security plan, we use asymmetric encryption, we don't use the Bluetooth security protocol so every time that's compromised, we're not compromised and it's a badge of honor we were much alongside the Kubernetes. >> Alright, Jeff the thing that we're hearing from a lot of companies out there is that that transition that you're going through from VMs to containerization I heard you say that you've got a DevOps practice in there, there's some skill set challenges, there's some training pieces, there's often, you know, maybe a bump or two in the road, I'm sure your project went completely smoothly but what can you share about, you know, the personnel skill sets, any lessons learned along the way that might help others? >> There was a ton. Rancher took that first edge off of us, you know, cube-cuddle, get things up, get things going, RKE in the Rancher space so the Rancher Kubernetes engine, they were kind of that first piece to say how do I get this engine up and going and then I'll work back and take away some of the UI elements and do it myself, from scheduling and making sure that nodes came up to understanding a deployment versus a DaemonSet, that first UI as we moved from like a Docker swarm environment to the the Rancher environment was really kind of key for us to say, I know what these volumes are, I know the networking and I all know these pieces but I don't know how to put core DNS in and start to get them to connect and all of those aspects and so that's where the UI part really took over. We had guys that were good on DevOps, we had guys are like, hey how do I hook it up to a back end and when you have those UI, those clicks like your pod security policy on or off, it's incredible. You turn it on fine, turn on the pod security policy and then from there, we'll either use the UI or we'll go deeper as we get the skill sets to do that so it gave us some really good assurances right off the bat. There were some technologies we really had to learn fast, we had to learn the cube-cuddle command line, we had to learn Helm, new infrastructure pieces with Terraform as well, those are kind of like our back end now. Those are our repeatability aspects that we can kind of get going with. So those are kind of our cores now is it's a Rancher every day, it's cube-cuddle from our command lines to kind of do those, Terraform to make sure we're doing the same thing but those are all practices we, you know, we cut our teeth with Rancher, we looked at the configs that are generated and said, alright, that's actually pretty good configure, you know, maybe there's a team to tolerance or a tweak we could make there but we kind of work backwards that way to have them give us some best practices and then verify those. >> So the space you're in, you have companies that rely on what you do. Security is so important, if you talk about telecommunications, you know, many of the other environments they have, you know, rigid requirements. I want to get to your understanding from you, you're using some open source tools, you've been working with startups, one of your suppliers Rancher was just acquired by SUSE, how's that relationship between you know, this ecosystem? Is that something that is there any concerns from your end user clients and what are your own comfort level with the moves and changes that are happening? >> Having gone through acquisitions myself and knowing the SUSE team pretty well, I'd say actually it's a great thing to know that the startups are funded in a great source. It's great to hear internally, externally their marketing departments are growing but you never know if a startup is growing or not. Knowing this acquisitions taking place actually gives me a lot of security. The team there was healthy, they were growing all the time but sometimes that can just be a face on a company and just talking to the internals candidly as they've always done with us, it's been amazing. So I think that's a great part knowing that there's some great open source texts, Helm Kubernetes as well that have great backers towards them, it's nice to see part of the ecosystem getting back as well in a healthy way rather than a, you know, here's $10,000 Platinum sponsorship. To see them getting the backing from an open source company, I can't say enough for. >> All right, Jeff how about what's going forward from you, what projects you're looking at or what what additions to what you've already done are you looking at doing down the road? >> Absolutely. So the big thing for us is that we've expanded pretty dramatically across the world now. As we started to expand into South Africa, we've expanded into Asia as well so managing these things remotely has been great but we've also started to begin to see some latencies where we're, you know, heading back to our etcd clusters or we're starting to see little cracks and pieces here in some of our QA environment. So part of this is actually the introduction and we started looking into the fog and the edge compute. Security is one of these games where we try to hold the security as core and as tight as you can but trying to get them the best user experience especially in South Africa and serving them from either Europe or Asia, we're trying to move into those data centers and region as well, to provide the sovereignty, to provide the security but it's about latency as well. When I opened my phone to download my digital keys I want that to be quick, I want the administrators to assign quickly but also still giving them that aspect to say I could store this in the edge, I could keep it secure and I could make sure that you still have it, that's where it's a bit different than the standard web experience to say no problem let's put a PNG as close as possible to you to give you that experience, we're putting digital certificates and keys as close as possible to people as well so that's kind of our next generation of the devices as we upgrade these pieces. >> Yeah, there was a line that stuck with me a few years ago, if you look at edge computing, if you look at IoT, the security just surface area is just expanding by orders or magnitude so that just leaves, you know, big challenges that everyone needs to deal with. >> Exactly, yep. >> All right, give us the final word if you would, you know, final lessons learned, you know, you're talking to your peers here in the hallways, virtually of the show. Now that you've gone through all of this, is there anything that you say, boy I wish I had known this it would have been this good or I might have accelerated things or which things, hey I wish I pulled these people or done something a little bit differently. >> Yep, there's a couple actually a big parts right off the bat and one, we started with databases and containers, followed the advice of everyone out there either do managed services or on standalone boxes themselves. That was something we cut our teeth on over a period of time and we really struggled with it, those databases and containers they really perform as poorly as you think they might, you can't get the constraints on those guys, that's one of them. Two we are a global company so we operate in a lot of major geographies now and ETC has been a big deal for us. We tried to pull our ETC clusters farther apart for better resiliency, no matter how much we tweak and play with that thing, keep those things in a region, keep them in separate, I guess the right word would be availability zones, keep them make redundant as possible and protect those at all costs. As we expanded we thought our best strategy would do some geographical distribution, the layout that you have in your Kubernetes cluster as you go global for hub-and-spoke versus kind of centralized clusters and pods and pieces like that, look it over with a with an expert in Kubernetes, talk to them talk about latencies and measure that stuff regularly. That is stuff that kind of tore us apart early in proof of concept and something we had to learn from very quickly, whether it'll be hub-and-spoke and centralize ETC and control planes and then workers abroad or we could spread the ETC and control planes a little more, that's a strategy that needs to be played with if you're not just in North America, South America, Europe, Asia, those are my two biggest pieces because those are our big performance killers as well as discovering PSP, Pod Security Policies early. Get those in, lock it down, get your environments out of route out of, you know, Port 80 things like that on the security space, those are just your basic housecleaning items to make sure that your latency is low, your performances are high and your security's as tight as you can make it. >> Wonderful, well, Jeff thank you so much for sharing Sera4 for story, congratulations to you and your team and wish you the best luck going forward with your initiatives. >> Absolutely, thanks so much Stu. >> All right, thank you for watching. I'm Stu Miniman and thank you for watching theCUBE. (soft music)

Published Date : Aug 18 2020

SUMMARY :

Brought to you by Red Hat, course one of the things we love All right so I teed you up there, all of those so we kind to lock that, you know, when it's dropped that you were seeing? and the natural piece to those is start and we kind of said you got that you know, open source, you try it, to start and then we started looking Is it you know, what's and it's a badge of honor we to a back end and when you that rely on what you do. that the startups are to you to give you that experience, that just leaves, you know, you know, you're talking the layout that you have congratulations to you All right, thank you for watching.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Jeff KlinkPERSON

0.99+

JeffPERSON

0.99+

Red HatORGANIZATION

0.99+

South AfricaLOCATION

0.99+

EuropeLOCATION

0.99+

$10,000QUANTITY

0.99+

AsiaLOCATION

0.99+

North AmericaLOCATION

0.99+

South AfricaLOCATION

0.99+

Stu MinimanPERSON

0.99+

1000 locksQUANTITY

0.99+

RancherORGANIZATION

0.99+

Latin AmericaLOCATION

0.99+

AfricaLOCATION

0.99+

8000 locksQUANTITY

0.99+

8000 devicesQUANTITY

0.99+

first wordQUANTITY

0.99+

South AmericaLOCATION

0.99+

first pieceQUANTITY

0.99+

telcoORGANIZATION

0.99+

TwoQUANTITY

0.99+

KubeConEVENT

0.99+

GDPRTITLE

0.99+

GoogleORGANIZATION

0.99+

two thingsQUANTITY

0.99+

oneQUANTITY

0.99+

TerraformORGANIZATION

0.98+

Sera4ORGANIZATION

0.98+

first pieceQUANTITY

0.98+

four hoursQUANTITY

0.98+

bothQUANTITY

0.98+

twoQUANTITY

0.98+

todayDATE

0.98+

two biggest piecesQUANTITY

0.97+

AnycastORGANIZATION

0.97+

two different telcosQUANTITY

0.97+

first edgeQUANTITY

0.97+

firstQUANTITY

0.95+

singleQUANTITY

0.95+

CloudNativeCon Europe 2020EVENT

0.95+

two major areasQUANTITY

0.94+

first bitsQUANTITY

0.94+

SUSEORGANIZATION

0.93+

KubeCon CloudNativeCon 2020EVENT

0.92+

10QUANTITY

0.92+

CNCFEVENT

0.92+

first hurdleQUANTITY

0.91+

CloudNativeCon Europe 2020EVENT

0.91+

KubernetesTITLE

0.91+

this yearDATE

0.91+

few years agoDATE

0.89+

two different placesQUANTITY

0.89+

DockerORGANIZATION

0.88+

first oneQUANTITY

0.86+

KubernetesORGANIZATION

0.86+

Priyanka Sharma, CNCF | KubeCon + CloudNativeCon Europe 2020 – Virtual


 

>> From around the globe, it's theCUBE, with coverage of KubeCon and CloudNativeCon Europe 2020 virtual. Brought to you by Red Hat, the Cloud Native Computing Foundation and ecosystem partners. >> Welcome back I'm Stu Miniman. And this is theCUBE coverage of KubeCon CloudNativeCon 2020, the Europe virtual edition. Happy to welcome back to the program, fresh off the keynote stage, Priyanka Sharma. She's the general manager of the CNCF. Priyanka, thanks so much for joining us. Great to see you. And we all get to be together even while we're apart. >> That's absolutely right. Thank you so much for having me Stu and great energy in the interwebs today with my keynote and everybody engaging and attending KubeCon. So, very happy to be here. >> All right, so I want to dig into your keynote a little bit. I had a bunch of key themes, a lot of pieces, and of course, community at the heart of it. When I spoke with you when you first took the job, of course, you've got strong background, you know this community really well. We've loved covering it for the last five years, but you talked about the foundation of doers and how that's powering the end user driven open tour. So talk to us a little bit about that, how is this community different from everything else. You know, open source always is community, but this feels a little bit special. >> Well, I'm glad to hear you say that, it is special. Yes, so when you think about the Cloud Native Ecosystem, right? There's so many people who've come together to create this amazing field that we all get to create. The awesome technology that people use to be part of this whole technology creation and deployment process. Those people are the end users first and foremost, they utilize the technology every day. And as time has grown, as time has gone by, they have played a bigger and bigger role. Over time they've become very sophisticated, they're contributing their own projects such as you know, I mean, you all know Envoy and a Jaeger came from Lyft and Uber respectively, but there's many more like Spotify and Wayfair, the furniture company. They have all submitted projects for the sandbox. So there was a lot of momentum, but not only are they creating their own technologies very needed and donating them. They're becoming the guider. They're becoming the guidance for the project that exists. They're giving feedback, they're sharing requirements. It's a very collaborative process and that's what is end-user-driven open source. Now this end user-driven-open source cannot happen by one contributor alone by one maintainer or alone by one company. No, it takes a lot of people. I mean, CNCF, as you know, has invested in its global community since day one. That's why we have the KubeCon EU, we have China events, we have North America. And just the other day I was speaking on a virtual Brazil event. There's just the geographic diversity is amazing. And by being able to reach out to a very large ecosystem and by especially having a formal role for end users, by having an end user member program with their own special interest groups and working groups, we've created a safe space where there is a neutral IP zone, open governance, and also a clear directive and shared partnership with the end users. So that ends up being a large group of people who are all doers, everybody's collaboration matters, and together they create end user-driven-open source. >> Well, Priyanka, I'm not sure that that most people understand really the full charter of what the CNCF does. So maybe you could talk a little bit about, obviously there's all the projects involved. You just brought up some of the end users and how you get engaged. There's also help along career development, when you talk to the individual developers and participants. So help us understand beyond the big events that we gather people at any given time with the smaller events, just, you know, what the CNCF its charter as these days. >> Absolutely, so as some of you know, the CNCF stands for Cloud Native Computing Foundation. And our objective is to host and proliferate technologies that support development, infrastructure development that is cloud native. Now what does cloud native mean, cloud native is when you develop, when you utilize cloud computing, which is the big clouds you must have heard of such as, Alibaba cloud, AWS, Google cloud platform, Azure, IBM, all these hyperscalers. They provide these offerings by which you don't need to have your own server farm, and you can buy compute from them and run your applications on that. When you do that, the way you develop software changes, it should change in order to maximize the value you get. So you started developing with micro services, containerization happens once that happens you need to orchestrate the containers, which is where Kubernetes our founding project comes in. And then you go from there because you have different complexities and observability, you have different complexities and storage and all the cloud native tech comes together to support you in that journey. So from a technology perspective that's what we do. As we have been so fortunate to develop this large ecosystem that so many people joining in of all kinds, we believe it is part of our responsibility to support this community in skill development and always like knowledge sharing. So knowledge sharing community empowers education. And that's how we talked about the events, right? Like KubeCon et cetera. But also these days, we are focusing a lot on our programs with the certifications we offer such as a CKA, which stands for a Certified Kubernetes Admin and CKAD, which stands for Certified Kubernetes Application Developer. To date, 15,000 plus people have taken these certifications successfully. So we have more and more people joining in these ranks. And we are here to support people as they build their careers, as they get more knowledgeable on cloud native, from in formal ways, such as training edX and in informal ways, such as KubeCon and the Meetups and the Webinars, you name it, and we're here for you. >> Well, you used a word that I want to touch on, responsibility, obviously in 2020, there's a lot going on Priyanka. So first of all, you talk about the global pandemic. Some of my favorite interviews I've done for this shows and others talking about how open source and communities are contributing to it. One of the interviews I have coming up for the KubeCon show is out of the Pronto area with how's my flattening, which uses data and visualization, really phenomenal to see how, you know, Kubernetes and collaboration allowed people to rally fast and share data and get information from the right people. The other piece is social justice. You announced a new working group for racial terminology, talk about, how's the CNCF dealing with, all the changes and all the things that are happening in 2020. And how are you helping the community get engaged and participate? >> Absolutely. 2020s is a very unique year. It's had very unique challenges. We've all been through it out together as a global community. So in that way, it has brought us all together, but the fissures and cracks that maybe were overlooked before have gotten deeper this year. And we are committed to bringing the open source cloud native way to help support this full global push to overcome 2020 as a year. (laughs) So part of that as you said, we have a working group to eradicate racially charged tech, sorry, I am really not speaking well to that. So part of our initiatives is a working group to eradicate racially charged terminology from code we're working on it, not just on the CNCF level, but on the entire Linux foundation level, by bringing together various folks, such as companies projects, regardless of where they stand, they don't need to be an LF project or a CNCF project, but we're sharing best practices on What should be the terminology we agree upon? What is the change management look like? And soon we want to really encourage the people who are making these positive steps with and enablement and incentive programs, such as prizes, et cetera. So I'm very committed to this. I think anyone and everyone has a home in open source. This cannot be, you know, the take ground of one type of person or one type of community. And we're going to do our very best to welcome each and every one. This world of technology has been built by the blood, sweat, and tears off many people, and we honor them all. And we also open our arms to more and more of you, no matter how few of people from your ecosystem or community you see in open source, join in, we welcome you.. we are here for you and this working group and this initiative hopes to voice exactly just that. >> Well, yeah, the KubeCons absolutely. I can speak from the event I've gone to, you know, strong diversity. We've really appreciated being able to hear those voices. When you talk about the collaboration, the community activity, we'd love when we can help support those from our team's standpoint, when we can, we want to be able to help those nonprofits, help those communities get their messages and do their call to actions. All right, Priyanka so much to cover. This week when I look at all the breakouts, when I look at the interviews and the technologies, there's a lot of emerging themes also in edge computing has been something we've been talking about for the last year or two, of course, IOT, DevSecOps, what are some of the hot technologies that you're seeing and making sure that the show covers. >> Well, you send them all. (laughs) No, but these are the key themes. Yes, absolutely. As you know, devices are proliferating across the globe. So many people have cell phones, with the coming of 5G things will be even more rocket ship. And these folks need to go cloud native to support development as this change happens, and Kubernetes and CNCF is here to support. We have projects such as KubeEdge. We have k3s from Rancher and the sandbox, all these are meant for edge deployment. So there's that focus that we have. There's always going to be DevSecOps. The minute there is this complexity, the minute there's this growth, new security vulnerabilities, pop up, new interfaces become exposed. And so we have to be on a constant watch. So DevSecOps is a theme that we are going to see a lot of innovation and development in. For anyone who may not be familiar with DevSecOps, DevSecOps does for security, what DevOps did for operations, which is shifted left into the application developers workflow, so that things have got faster so that there is a better collaboration between security teams and application development team. So these are absolutely trans, I think a trend we briefly touched upon is, end-user-driven open source. I think the voice of end users is going to grow bigger and more louder and just that much more critical. The ship has left the dock. And now it's just going to gain steam and gain steam. I think we're going to see more technology contributions from them. We're going to see much more utilization of cloud native from them. And we also will get lots of feedback and advice from them. And there'll be interwoven into the fabric of cloud native in a way like never before. >> Yeah, Priyanka, you've known this community, but now you're very steeped into it. You had to work with a lot of people. I'm curious, does anything, especially from those end users, you know, a big focus of what you've been talking about. Absolutely, it's so important that they not just use the technology, but are participate in it. It's been one of those big waves we've been watching in the open source community for a number of years. So any insight you can give us as to why it is so important to those end users, what is encouraging them, not just to, use these projects, but, you know, assigned people and sponsor events and have much deeper integration with this community. >> They don't integrate with this community. They are part of this community. That's one key thing to remember. I would say, when we all, like, I mean, CNCF is relatively young, it started end of 2015. I started working on a project in it in 2016. And back then we were talking about things like, what are microservices? How to do a lift and shift to the cloud, or what are containers, things like that, right? And there was maybe a bit of a gap in the knowledge that people had to acquire to get good at deploying containers, that's using microservices, et cetera, et cetera. Now, in the last four years, huge leaps have been made by an users just because they were in the trenches, they were doing the work, right? So now their knowledge level has gone really up. And they've also started like knowing where the gaps are, what they need, because they're doing the building, they're the doers here. And so in that environment, it is a natural thing that they will have the best sense of where things should go next. They will have the best sense of what their own requirements are. And so it's an evolution of the end user community. It's an evolution of the doers. And I think that's why this trend is going to continue. And I would like to take like, not a credit, but I would say a tiny shoutout to the CNCF ecosystem program, which is run by Cheryl on my team. She's done a phenomenal job having been a developer herself to bring people and create safe spaces where the enhancers or the vendors are not like necessarily breathing down their neck and they can discuss amongst each other, the topics that matter. And I think that's gone a really long way. >> Yeah. There's, Cheryl's been doing some great work. I know I'm having a conversation with Liz Rice to talk about some of the new pooling, helping customers understand. It's such a broad ecosystem out there that, you know, we didn't even touch on. We're going to talk in many of the other interviews I have Priyanka. There's so many projects, new ways for sandbox and incubation and everything like that. It is definitely a challenge for everybody to look at this space. Want to give you the final word though. What do you want people to have as their takeaway from the event this time? >> Absolutely. Hi everybody. I am so happy. You all took the time and engaged with the community you joined in and attended KubeCon EU virtual, stay with us, partnering with us, come to our events, give us feedback, share ideas. We're all a foundation of doers. We're all team cloud native, and we're in this together. We will go through 2020, we'll come out strong. And this is just the beginning. >> Well, Priyanka, thank you so much. We love the partnership with the CNCF and definitely happy to be able to participate in the event again this year. >> Absolutely. Thank you so much Stu. >> All right, and stay tuned. Lots of coverage here from KubeCon, CloudNativeCon 2020 Europe the virtual edition. I'm Stu Minimam. And thank you as always for watching theCUBE. (upbeat music)

Published Date : Aug 18 2020

SUMMARY :

Brought to you by Red Hat, She's the general manager of the CNCF. and great energy in the interwebs today and how that's powering the And just the other day and how you get engaged. the way you develop software changes, really phenomenal to see how, you know, So part of that as you said, and making sure that the show covers. And these folks need to go cloud native in the open source community It's an evolution of the doers. Want to give you the final word though. you joined in and attended in the event again this year. Thank you so much Stu. And thank you as always

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
PriyankaPERSON

0.99+

Liz RicePERSON

0.99+

CherylPERSON

0.99+

2016DATE

0.99+

Priyanka SharmaPERSON

0.99+

Red HatORGANIZATION

0.99+

UberORGANIZATION

0.99+

CNCFORGANIZATION

0.99+

Cloud Native Computing FoundationORGANIZATION

0.99+

SpotifyORGANIZATION

0.99+

2020DATE

0.99+

Cloud Native Computing FoundationORGANIZATION

0.99+

LyftORGANIZATION

0.99+

North AmericaLOCATION

0.99+

DevSecOpsTITLE

0.99+

KubeConEVENT

0.99+

IBMORGANIZATION

0.99+

WayfairORGANIZATION

0.99+

Stu MinimanPERSON

0.99+

This weekDATE

0.99+

AWSORGANIZATION

0.99+

StuPERSON

0.99+

one companyQUANTITY

0.98+

last yearDATE

0.98+

oneQUANTITY

0.97+

BrazilLOCATION

0.97+

DevOpsTITLE

0.97+

CloudNativeCon Europe 2020EVENT

0.97+

this yearDATE

0.97+

end of 2015DATE

0.97+

Stu MinimamPERSON

0.97+

todayDATE

0.96+

15,000 plus peopleQUANTITY

0.96+

KubeCon CloudNativeCon 2020EVENT

0.94+

ChinaLOCATION

0.94+

EuropeLOCATION

0.94+

firstQUANTITY

0.94+

KubeConsEVENT

0.93+

LinuxTITLE

0.93+

one keyQUANTITY

0.93+

one typeQUANTITY

0.92+

CloudNativeCon 2020 EuropeEVENT

0.9+

last four yearsDATE

0.89+

RancherORGANIZATION

0.88+

pandemicEVENT

0.87+

KubeCon EUEVENT

0.87+

KubernetesORGANIZATION

0.86+

Alibaba cloudORGANIZATION

0.86+

day oneQUANTITY

0.83+

last five yearsDATE

0.82+

KubeCon EU virtualEVENT

0.8+

VirtualEVENT

0.77+

2020sDATE

0.77+

twoQUANTITY

0.75+

AzureORGANIZATION

0.74+

Google cloudORGANIZATION

0.72+

One ofQUANTITY

0.72+

eachQUANTITY

0.69+

EnvoyORGANIZATION

0.67+

IOTORGANIZATION

0.59+

Keynote Analysis | KubeCon + CloudNativeCon Europe 2020 – Virtual


 

>> From around the globe, it's theCUBE! With coverage of KubeCon and CloudNativeCon Europe 2020, virtual. Brought to you by Red Hat, the Cloud Native Computing Foundation, and ecosystem partners. >> Hi, I'm Stu Miniman and welcome to theCUBE's coverage of KubeCon CloudNativeCon 2020 in Europe. Of course the event this year was supposed to be in the Netherlands, I know I was very much looking forward to going to Amsterdam. This year of course it's going to be virtual, I'm really excited theCUBE's coverage, we've got some great members of the CNCF, we've got a bunch of end users, we've got some good thought leaders, and I'm also bringing a little bit of the Netherlands to help me bring in and start this keynote analysis, happy to welcome back to the program my cohost for the show, Joep Piscaer, who is an industry analyst with TLA. Thank you, Joep, so much for joining us, and we wish we could be with you in person, and check out your beautiful country. >> Absolutely, thanks for having me Stu, and I'm still a little disappointed we cannot eat the (indistinct foreign term) rijsttafel together this year. >> Oh, yeah, can we just have a segment to explain to people the wonder that is the fusion of Indonesian food and the display that you get only in the Netherlands? Rijsttafel, I seriously had checked all over the US and Canada, when I was younger, to find an equivalent, but one of my favorite culinary delights in the world, but we'll have to put a pin in that. You've had some warm weather in the Netherlands recently, and so many of the Europeans take quite a lot of time off in July and August, but we're going to talk about some hardcore tech, KubeCon, a show we love doing, the European show brings good diversity of experiences and customers from across the globe. So, let's start, the keynote, Priyanka Sharma, the new general manager of the CNCF, of course, just some really smart people that come out and talk about a lot of things. And since it's a foundation show, there's some news in there, but it's more about how they're helping corral all of these projects, of course, a theme we've talked about for a while is KubeCon was the big discussion for many years about Kubernetes, still important, and we'll talk about that, but so many different projects and everything from the sandbox, their incubation, through when they become fully, generally available, so, I guess I'll let you start and step back and say when you look at this broad ecosystem, you work with vendors, you've been from the customer side, what's top of mind for you, what's catching your attention? >> So, I guess from a cloud-native perspective, looking at the CNCF, I think you hit the nail on the head. This is not about any individual technology, isn't about just Kubernetes or just Prometheus, or just service mesh. I think the added value of the CNCF, and the way I look at it at least, looking back at my customer perspective, I would've loved to have a organization curate the technology world around me, for me. To help me out with the decisions on a technology perspective that I needed to make to kind of move forward with my IT stack, and with the requirements my customer had, or my organization had, to kind of move that into the next phase. That is where I see the CNCF come in and do their job really well, to help organizations, both on the vendor side as well as on the customer side, take that next step, see around the corner, what's new, what's coming, and also make sure that between different, maybe even competing standards, the right ones surface up and become the de facto standard for organizations to use. >> Yeah, a lot of good thoughts there, Joep, I want to walk through that stack a little bit, but before we do, big statement that Priyanka made, I thought it was a nice umbrella for her keynote, it's a foundation of doers powering end user driven open-source, so as I mentioned, you worked at a service provider, you've done strategies for some other large organizations, what's your thought on the role of how the end users engage with and contribute to open-source? One of the great findings I saw a couple years ago, as you said, it went from open-source being something that people did on the weekend to the sides, to many end users, and of course lots of vendors, have full-time people that their jobs are to contribute and participate in the open-source communities. >> Yeah, I guess that kind of signals a maturity in the market to me, where organizations are investing in open-source because they know they're going to get something out of it. So back in the day, it was not necessarily certain that if you put a lot of effort into an open-source project, for your own gain, for your own purposes, that that would work out, and that with the backing of the CNCF, as well as so many member organizations and end user organizations, I think participating in open-source becomes easier, because there's more of a guarantee that what you put in will kind of circulate, and come out and have value for you, in a different way. Because if you're working on a service mesh, some other organization might be working on Prometheus, or Kubernetes, or another project, and some organizations are now kind of helping each other with the CNCF as the gatekeeper, to move all of those technology stacks forward, instead of everyone doing it for themselves. Maybe even being forced to reinvent the wheel for some of those technology components. >> So let's walk through the stack a little bit, and the layers that are out there, so let's start with Kubernetes, the discussion has been Kubernetes won the container orchestration battles, but whose Kubernetes am I going to use? For a while it was would it be distributions, we've seen every platform basically has at least one Kubernetes option built into it, so doesn't mean you're necessarily using this, before AWS had their own flavor of Kubernetes, there was at least 15 different ways that you could run Kubernetes on top of it, but now they have ECS, they have EKS, even things like Fargate now work with EKS, so interesting innovation and adoption there. But VMware baked Kubernetes into vSphere 7. Red Hat of course, with OpenShift, has thousands of customers and has great momentum, we saw SUSE buy Rancher to help them move along and make sure that they get embedded there. One of the startups you've worked with, Spectro Cloud, helps play into the mix there, so there is no shortage of options, and then from a management standpoint, companies like Microsoft, Google, VMware, Red Hat, all, how do I manage across clusters, because it's not going to just be one Kubernetes that you're going to use, we're expecting that you're going to have multiple options out there, so it sure doesn't sound boring to me yet, or reached full maturity, Joep. What's your take, what advice do you give to people out there when they say "Hey, okay, I'm going to use Kubernetes," I've got hybrid cloud, or I probably have a couple things, how should they be approaching that and thinking about how they engage with Kubernetes? >> So that's a difficult one, because it can go so many different ways, just because, like you said, the market is maturing. Which means, we're kind of back at where we left off virtualization a couple years ago, where we had managers of managers, managing across different data centers, doing the multicloud thing before it was a cloud thing. We have automation doing day two operations, I saw one of the announcements for this week will be a vendor coming out with day two operations automation, to kind of help simplify that stack of Kubernetes in production. And so the best advice I think I have is, don't try to do it all yourself, right, so Kubernetes is still maturing, it is still fairly open, in a sense that you can change everything, which makes it fairly complex to use and configure. So don't try and do that part yourself, necessarily, either use a managed service, which there are a bunch of, Spectro Cloud, for example, as well as Platform9, even the bigger players are now having those platforms. Because in the end, Kubernetes is kind of the foundation of what you're going to do on top of it. Kubernetes itself doesn't have business value in that sense, so spending a lot of time, especially at the beginning of a project, figuring that part out, I don't think makes sense, especially if the risk and the impact of making mistakes is fairly large. Like, make a mistake in a monitoring product, and you'll be able to fix that problem more easily. But make a mistake in a Kubernetes platform, and that's much more difficult, especially because I see organizations build one cluster to rule them all, instead of leveraging what the cloud offers, which is just spin up another cluster. Even spin it up somewhere else, because we can now do the multicloud thing, we can now manage applications across Kubernetes clusters, we can manage many different clusters from a single pane of glass, so there's really no reason anymore to see that Kubernetes thing as something really difficult that you have to do yourself, hence just do it once. Instead, my recommendation would be to look at your processes and figure out, how can I figure out how to have a Kubernetes cluster for everything I do, maybe that's per team, maybe that's per application or per environment, per cloud, and they kind of work from that, because, again, Kubernetes is not the holy grail, it's not the end state, it is a means to an end, to get where we're going with applications, with developing new functionality for customers. >> Well, I think you hit on a really important point, if you look out in the social discussion, sometimes Kubernetes and multicloud get attacked, because when I talk to customers, they shouldn't have a Kubernetes strategy. They have their business strategy, and there are certain things that they're trying to, "How do I make sure everything's secure," and I'm looking at DevSecOps, I need to really have an edge computing strategy because that's going to help my business objectives, and when I look at some of the tools that are going to help and get me there, well, Kubernetes, the service meshes, some of the other tools in the CNCF are going to help me get there, and as you said, I've got managed services, cloud providers, integrators are going to help me build those solutions without me having to spend years to understand how to do that. So yeah, I'd love to hear any interesting projects you're hearing about, edge computing, the security space has gone from super important to even more important if that's possible in 2020. What are you hearing? >> Yeah, so the most interesting part for me is definitely the DevSecOps movement, where we're basically not even allowed to call it DevOps anymore. Security has finally gained a foothold, they're finally able to shift lift the security practices into the realm of developers, simplifying it in a way, and automating it in a way that, it's no longer a trivial task to integrate security. And there's a lot of companies supporting that, even from a Kubernetes perspective, integrating with Kubernetes or integrating with networking products on top of Kubernetes. And I think we finally have reached a moment in time where security is no longer something that we really need to think about. Again, because CNCF is kind of helping us select the right projects, helping us in the right direction, so that making choices in the security realm becomes easier, and becomes a no-brainer for teams, special security teams, as well as the application development teams, to integrate security. >> Well, Joep, I'm glad to hear we've solved security, we can all go home now. That's awesome. But no, in all seriousness, such an important piece, lots of companies spending time on there, and it does feel that we are starting to get the process and organization around, so that we can attack these challenges a little bit more head-on. How 'about service mesh, it's one of those things that's been a little bit contentious the last couple of years, of course ahead of the show, Google is not donating Istio to the foundation, instead, the trademark's open. I'm going to have an interview with Liz Rice to dig into that piece, in the chess moves, Microsoft is now putting out a service mesh, so as Corey Quinn says, the plural of service mesh must be service meeshes, so, it feels like Mr. Meeseeks, for any Rick and Morty fans, we just keep pressing the button and more of them appear, which may cause us more trouble, but, what's your take, do you have a service mesh coming out, Kelsey Hightower had a fun little thing on Twitter about it, what's the state of the state? >> Yeah, so I won't be publishing a service mesh, maybe I'll try and rickroll someone, but we'll see what happens. But service meshes are, they're still a hot topic, it's still one of the spaces where most discussion is kind of geared towards. There is yet to form a single standard, there is yet a single block of companies creating a front to solve that service mesh issue, and I think that's because in the end, service meshes are, from a complexity perspective, they're not mature enough to be able to commoditize into a standard. I think we still need a little while, and maybe ask me this question next year again, and we'll see what happens. But we'll still need a little while to kind of let this market shift and let this market innovate, because I don't think we've reached the end state with service meshes. Also kind of gauging from customer interest and actual production implementations, I don't think this has trickled down from the largest companies that have the most requirements into the smaller companies, the smaller markets, which is something that we do usually see, now Kubernetes is definitely doing that. So in terms of service meshes, I don't think the innovation has reached that endpoint yet, and I think we'll still need a little while, which will mean for the upcoming period, that we'll kind of see this head to head from different companies, trying to gain a foothold, trying to lead a market, introduce their own products. And I think that's okay, and I think the CNCF will continue to kind of curate that experience, up to a point where maybe somewhere in the future we will have a noncompeting standard to finally have something that's commoditized and easy to implement. >> Yeah, it's an interesting piece, one of the things I've always enjoyed when I go to the show is just wander, and the things you bump into are like "Oh my gosh, wow, look at all of these cool little projects." I don't think we are going to stop that Cambrian explosion of innovation and ideas. When you go walk around there's usually over 200 vendors there, and a lot of them are opensource projects. I would say many of them, when you have a discussion with them, I'm not sure that there's necessarily a business behind that project, and that's where you also see maturity in spaces. A year or so ago, in the observability space, open tracing helped pull together a couple of pieces. Storage is starting to mature. Doesn't mean we're going to get down to one standard, there's still a couple of storage engines out there, I have some really good discussions this week to go into that, but it goes from, "Boy, storage is a mess," to "Oh, okay, we have a couple of uses," and just like storage in the data center, there's not a box or a protocol to do anything, it's what's your use case, what performance, what clouds, what environments are you living on, and therefore you can do that. So it's good to see lots of new things added, but then they mature out and they consolidate, and as you said, the CNCF is help giving those roadmaps, those maps, the landscapes, which boy, if you go online, they have some really good tools. Go to CNCF, the website, and you can look through, Cheryl Hung put one, I'm trying to remember which, it's basically a bullseye of the ones that, here's the one that's fully baked, and here's the ones that are making its way through, and the customer feedback, and they're going to do more of those to help give guidance, because no one solution is going to fit everybody's needs, and you have these spectrums of offerings. Wild card for you, are there any interesting projects out there, new things that you're hearing about, what areas should people be poking around that might not be the top level big things? >> So, I guess for me, that's really personal because I'm still kind of an infrastructure geek in that sense. So one of the things that really surprised me was a more traditional vendor, Zerto in this case, with a fantastic solution, finally, they're doing data protection for Kubernetes. And my recommendation would be to look at companies like Zerto in the data protection space, finally making that move into containers, because even though we've completed the discussion, stateful versus stateless, there's still a lot to be said for thinking about data protection, if you're going to go all-in into containers and into Kubernetes, so that was one that really provoked my thoughts, I really was interested in seeing, "Okay, what's Zerto doing in this list of CNCF members?" And for that matter, I think other vendors like VMware, like Red Hat, like other companies that are moving into this space, with a regained trust in their solutions, is something that I think is really interesting, and absolutely worth exploring during the event, to see what those more traditional companies, to use the term, are doing to innovate with their solutions, and kind of helping the CNCF and the cloud data world, become more enterprise-ready, and that's kind of the point I'm trying to make, where for the longest time, we've had this cloud-native versus traditional, but I always thought of it like cloud-native versus enterprise-ready, or proven technology. This is kind of for the developers doing a new thing, this is for the IT operations teams, and we're kind of seeing those two groups, at least from a technology perspective, being fused into one new blood group, making their way forward and innovating with those technologies. So, I think it's interesting to look at the existing vendors and the CNCF members to see where they're innovating. >> Well, Joep, you connected a dotted line between the cloud-native insights program that I've been doing, you were actually my first guest on that. We've got a couple of months worth of episodes out there, and it is closing that gap between what the developers are doing and what the enterprise was, so absolutely, there's architectural pieces, Joep, like you, I'm an infrastructure geek, so I come from those pieces, and there was that gap between, I'm going to use VMs, and now I'm using containers, and I'm looking at things like serverless too, how do we built applications, and is it that bottom-up versus top-down, and what a company's needs, they need to be able to react fast, they need to be able to change along the way, they need to be able to take advantage of the innovation that ecosystems like this have, so, I love the emphasis CNCF has, making sure that the end users are going to have a strong voice, because as you said, the big companies have come in, not just VMware and Red Hat, but, IBM and Dell are behind those two companies, and HPE, Cisco, many others out there that the behemoths out there, not to mention of course the big hyperscale clouds that helped start this, we wouldn't have a lot of this without Google kicking off with Kubernetes, AWS front and center, and an active participant here, and if you talk to the customers, they're all leveraging it, and of course Microsoft, so it is a robust, big ecosystem, Joep, thank you so much for helping us dig into it, definitely hope we can have events back in the Netherlands in the near future, and great to see you as always. >> Thanks for having me. >> All right, stay tuned, we have, as I said, full spectrum of interviews from theCUBE, they'll be broadcasting during the three days, and of course go to theCUBE.net to catch all of what we've done this year at the show, as well as all the back history. Feel free to reach out to me, I'm @Stu on Twitter, and thank you, as always, for watching theCUBE. (calm music)

Published Date : Aug 18 2020

SUMMARY :

Brought to you by Red Hat, little bit of the Netherlands and I'm still a little disappointed and the display that you get and the way I look at it at least, that people did on the in the market to me, where and the layers that are out there, and the impact of making that are going to help and get me there, so that making choices in the of course ahead of the show, that have the most requirements and just like storage in the data center, and the CNCF members to see and great to see you as always. and of course go to theCUBE.net

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
Liz RicePERSON

0.99+

IBMORGANIZATION

0.99+

CiscoORGANIZATION

0.99+

DellORGANIZATION

0.99+

Stu MinimanPERSON

0.99+

JoepPERSON

0.99+

Red HatORGANIZATION

0.99+

Corey QuinnPERSON

0.99+

ZertoORGANIZATION

0.99+

MicrosoftORGANIZATION

0.99+

CanadaLOCATION

0.99+

Priyanka SharmaPERSON

0.99+

Joep PiscaerPERSON

0.99+

Cloud Native Computing FoundationORGANIZATION

0.99+

2020DATE

0.99+

NetherlandsLOCATION

0.99+

PriyankaPERSON

0.99+

GoogleORGANIZATION

0.99+

AWSORGANIZATION

0.99+

USLOCATION

0.99+

Cheryl HungPERSON

0.99+

AmsterdamLOCATION

0.99+

next yearDATE

0.99+

CNCFORGANIZATION

0.99+

two groupsQUANTITY

0.99+

vSphere 7TITLE

0.99+

KubeConEVENT

0.99+

Kelsey HightowerPERSON

0.99+

AugustDATE

0.99+

HPEORGANIZATION

0.99+

three daysQUANTITY

0.99+

oneQUANTITY

0.99+

this weekDATE

0.98+

two companiesQUANTITY

0.98+

KubernetesTITLE

0.98+

EuropeLOCATION

0.98+

first guestQUANTITY

0.98+

theCUBE.netOTHER

0.98+

A yearDATE

0.98+

TLAORGANIZATION

0.98+

MeeseeksPERSON

0.98+

VMwareORGANIZATION

0.97+

CloudNativeCon Europe 2020EVENT

0.97+

bothQUANTITY

0.97+

JulyDATE

0.96+

EuropeanOTHER

0.96+

over 200 vendorsQUANTITY

0.96+

this yearDATE

0.95+

KubernetesORGANIZATION

0.94+

single blockQUANTITY

0.94+

single standardQUANTITY

0.94+

IstioORGANIZATION

0.94+

@StuPERSON

0.94+

OneQUANTITY

0.94+

thousands of customersQUANTITY

0.93+

single paneQUANTITY

0.93+

DevOpsTITLE

0.92+

Alexandre McLean, Ubisoft | KubeCon + CloudNativeCon Europe 2020 – Virtual


 

>> [] From around the globe, it's theCUBE with coverage of KubeCon and CloudNativeCon Europe 2020. Virtual, brought to you by Red Hat, the cloud native computing foundation and the ecosystem partners. >> Hi, I'm Stu Miniman. And this is theCUBE coverage of KubeCon CloudNativeCon 2020 in Europe the virtual edition and you've reached the final stage. This is our last interview so hopefully, learned a lot talking to the CNCF members. We've had a few great practitioners, of course, some of the important vendors and startups in this space. And when we talk about what's happening in this, this cloud native space, one of the things that gets bandied about a lot is scale. What does that mean? You know, when it first rolled out, of course, there is only one Google out there, and only a handful of true hyperscalers. But there absolutely are some companies that really need scale, performance global and so happy to bring in he is the final boss. It is Alexandria McLean. He's a technical architect at Ubisoft. And yes, I do have a little bit of background in gaming. But here's someone that is helping enable in one of the largest gaming companies in the globe. So Alexandra, thanks so much for joining us. >> Hey, thanks for the invitation, happy to be here. >> All right, so you're no novice to this ecosystem. I know you and I have both been at many of the Docker cons, the KubeCons over the years. So if you could just give our audience a little bit of your background and what is your team responsible for Ubisoft? >> Okay, sure, so I am part of the one of the IT teams inside Ubisoft. So we're responsible mainly to provide cloud computing resources and Kubernetes infrastructure for the whole company. So again, and if you want to know more about basically, I've been, I've been leading the Kubernetes initiative, the past few years right now. So we started the journey maybe in 2016. We're already pretty busy, you know, working on the growth for the cloud, the cloud industry to stand Ubisoft, for the growth of the expansion, different data centers and supporting the needs of the different teams and development teams inside Ubisoft. And one thing we wanted to do back then was really to enable and accelerate the adoption of cloud native, the cloud native mindset and cloud native architectures. So what we did back then is did, we did a short analysis of our different technologies that was available at the time, and we decided to jump full head on Kubernetes and make this as the foundation for the different workloads, container workloads that will be that will enable drive adoption inside Ubisoft to grow and boost the productivity of many things. >> Alright, I'm really glad you brought up that cloud native mindset, if you could just up-level a little bit for, you know, the business leaders out there, they hear about, you know, Kubernetes and they won't know how to spell it. They hear something like a cloud native mindset, and they say, you know, I don't understand, what does this mean for our business? So what architecturally are you doing and what does that mean for you know, your games and ultimately your end users? >> Yeah, so I would say that basically, I mean, if you want to have a cloud native architecture, really want to make your application, first of all, very portable, very easy to deploy and manageable, and at the same time very resilient to failure. So you want to make sure that your application once it's deployed, that it's highly resilient to failure, that it was built for failures and that you can manage the project and the service to meet the expectation of either the gamers or the service owners basically. >> Yeah, you know, absolutely. I'm curious, here in 2020, we see the ripple effects of what the global pandemic has. I have to imagine that from a gaming standpoint, that has had an impact. So maybe if we use that as an analogy, if it's valid from your standpoint, I have to imagine more people are using it. What did this mean to your infrastructure? How were you ready from an IT's perspective to support that, you know, increased usage, kind of rippling around the globe as more people are home all the time? >> Hmm, yeah, that's a good question I guess. I mean, we really have like two kind of, I would say, audience inside Ubisoft in the IT team that I serve. So we have the people who are building the softwares and the applications to help the developers to, I mean the game developers in general, so we have different services, internal services, and tooling that needs to be hosted somewhere. And we need to enable these people in these teams to have a way to manage applications efficiently. And the other side we are looking at right now, I mean, we the game server and the gaming industry, is really, I think there's a shift right now in the way that she prefer doing, the way that you're going to manage the game servers in the future. And I would say that back then, there was a lot of in house tooling, things that were really, I mean, appropriately proprietary to each gaming company. But right now, what we wanted to do in the past few years, we work for instance on a solution called hygienist. So we were involved in the beginning to design this kind of next gen game server, dedicated server hosting infrastructure that was all built around communities. So, in the future, we were already started to work on that, and the next gen of games are going to be difficult to stay on top of Kubernetes, which is going to enable a lot more efficiency of resource usage and now at the same time, we'd say manageability and the profitability about all these services. Because I think that one key thing about cloud native and Kubernetes is that, once you know Kubernetes, I mean, basically, it's very easy to onboard new people in the team, the project, because they know what is Kubernetes how to operate it. So it will be much more efficient in the future for all the workflows that we have internally and the next game server infrastructure as well to be hosted in Kubernetes, it's going to be much more easy to standardize and unify that whole stack. >> Well, the skill sets are so critically important. And it's great to hear you say that onboarding somebody in Kubernetes, is easier than it might have been a couple of years ago. If you could bring us inside a little bit, you know, what's your stack look like? You know, you know, can you say what cloud or cloud you use? When it comes to Kubernetes, you know, what are the key tools that you're using and partners that you have? >> Yeah, sure. So early on, I would say, almost 10 years ago, we really started to focus on adding on prem cloud infrastructure and the technology that we chose back then was OpenStack. So we have a large footprint of OpenStack called install, installed internally and different data centers all over the world so people and different teams and anyone at Ubisoft can easily have computers or compute resources available for them. And with Kubernetes, we initially we wanted to have, you know, to make your Kubernetes a commodity. We wanted to ask people be very I mean in a position to easily experiment new things, new applications on top of Kubernetes. And for that we decided to go with Rancher. So Rancher is an open source solution made by Rancher labs, and we, initially after we started to build and in our solution, the first year because we talked back then the landscape was quite different and we thought it was the best choice for us to do. But we realized shortly after, I mean, when Rancher 2.2 came out, I think it was in something like April 2018, that we will benefit a lot go with this kind of solution which was open sourced, there was a lot of traction behind it and it will enable us to I mean, accelerate, accelerate the adoption of Kubernetes and cloud native in general, much more faster, than the you know solutions that we had built at that time. So we went with Rancher and right now we have, I would say, I mean, we have maybe 10 data centers with the cloud installed on top of it, much more data centers was going to grow in the next couple of months and years, and we have over 200 clusters and 1000 nodes that are managed by Rancher and people can just deploy on demand, to own Kubernetes cluster and get started with it if they want to. >> Okay, so if I heard you right, it's Rancher on top of the OpenStack solution in your data centers. >> Yes. >> You talk about how many clusters you have, you know, what's the state of managing those environments? You said, you're using Rancher that's one of the things we've seen a lot of discussion over the last couple of years is you know, went from managing containers to managing you know, part or cluster to now, multi clusters around multi sites, you know, what's the maturity today? Anything that you're looking for that would make your life easier to manage such a broad environment? >> Yeah, well, I would say that's one of the drawback, I mean, when we enabled that solution with Rancher we didn't see, I mean, here's the views of launching provisioning new clusters, is that right now, we have a lot of clusters, maybe too many, because we try to consolidate, I mean, the next, the next logical step for us is we try to consolidate the workloads maybe as much as possible, and see if there's really a need for people to have their own dedicated cluster for them. And initially, there was a lot of demand for that, because people basically they came to us and they said, you know, we want to use Kubernetes. And what we want to do is we want to have films which we have access to it, we want to be able to do whatever we want with it, upgrade it at our own pace. And I don't want to have any neighbor on it. I want to be completely isolated in terms of computer resources. So we said all right, we're going to make a solution that is going to provision new clusters on demand for everyone. And the intro stuff may very well. But now, after a while some people and we as especially as an IT provider and operator, we realized that, you know, maybe people don't have to be completing alone to cluster, maybe we should try to consolidate that a little bit. So we're trying to migrate workloads from certain services and tooling and say maybe you can, instead of running your own cluster, you can use this one that is going to be shared. And there will be a team dedicated I mean dedicated to support and operate is faster for you because we want to in the end, we want to offload the burden of infrastructure and Kubernetes although it's I mean, it brings a lot of abstraction in simplicity, you still have to manage your cluster in the end. So we'd rather have people focus on the application side than on the Kubernetes infrastructure side. So we will start a path of maybe try to consolidated friend workloads, and see if we can reduce the amount of clusters that we have and also to unify the way that people are using the different providers because although we have, a huge open OpenStack cloud offering internally on prem, there are still people who need to use GKE or EKS and a couple of other external cloud providers. So for these people, some of them are not using really Rancher, although it's possible with Rancher to just directly using the providers. But what we want to do is try to unify the way that you're going to get access to this cluster, try to make a central governance model for people to pass through a central team to get access and prevent the cluster. So they will be standardized, we will be able to add more maybe security policies and compliance and rules and everything. So the cluster will be created in certain ways and that too much fragmented as they are today. >> Yeah, that's ultimately what I was trying to understand is most customers I talked to, they have hybrid environments, they're using multiple clouds, if you're using Kubernetes you know, how do you get your arms around that. So I'd love to get your viewpoint just 'cause you've been involved since, kind of the early Kubernetes days, you know, what's, what's better now than it was a few years ago? You know, I heard you say that you looked at possibly, you know, creating a solution to yourself so a company like Rancher helps simplify things. So when you look at the maturity, you know, how happy are you with what you have now? And are there any things that you say, boy, I'd love my team to not have to worry about this. You know, maybe the industry as a whole would be able to, you know, standardize or make things simpler? >> Well, you know, when we started to use Rancher maybe there were a couple of things that we wanted to simplify for the users because what Rancher does is essentially is that, there's a lot of configuration options. It's very flexible because it's first mining providers. So the first few things that we did was try to simplify the user experience who we will extend we modified ventures in some ways to make It's simpler to be consumed. And also, the experience is much more simpler than it was, let's say two years ago when we started, we still want to simplify it even further, we want to ideally provide a fully manage experience. So peoples don't even have to worry about the control plane components that is currently being deployed with their competitors clusters. We want to remove that away from them so that we, once again fully focus on the application side of development. And I think one other aspect that we need to maybe improve in the future is that, when you want to deploy your application and make it resilient and geographically distributed, then you need to manage multiple clusters, and you need to deploy your applications and performance cluster. So, the whole multi cluster aspect of things like, how do I deploy my application from a version? How do I make it like consistent between the different clusters that where it needs to be deployed. How do I make service discovery possible? Or do I mesh everything all the application together to make sure that it's easy to operate, it's easy for the developers, and that it's resilient in the end. So we will start to look at the, I mean, the multi cluster multi region aspect for Kubernetes. Because that's a big challenge to us. >> All right, well, Alexandre, want to shift for a second, let's talk about the conference, KubeCon, CloudNativeCon, obviously, it's virtual this year, so there is a little bit of shift but you know, you've attended many of these in the past. What are their projects that you're interested in learning more or are there you know, peers of yours that you're looking to collaborate with? What have you seen in the past that that you're hoping you still get, from a virtual event like we have this year? >> Well, you know, I think that it has become so big, it's hard to keep up with everything that's happening at the same time, you know, nowadays, but, things that we're looking at really, is maybe like, I think chapters maybe, in terms of service mesh to a lot of technologies, I think it's maturing slowly. So we'll have, we'll always try to have a look about what is the most, the best fit for us and the use cases that we have. And some people thought you're using Kubernetes, some other people are using, you know more traditional stacks, So we try to bridge that together and see what's possible to migrate the existing workloads from the traditional cloud VMs, and call applications toward Kubernetes and everything. So maybe try to see if it's possible to bridge that path and migrate gradually for the users that we have. And other things in general, I think that it will be very interesting to see the whole bear setups, I mean, evolving to run out and see are we can try to add conformance and compliance rules to different clusters that we have to manage to make sure that it's no longer like, just add a matter of I want to create a cluster, I get access to it. We need to centralize the governance. We need to centralize that, the rules of our everything's going to be managing the end and make sure that security is a big aspect to it so make sure that there's no vulnerabilities and everything's being audited. And especially for the game students is going to be a big factor for us. So we definitely our interested into all the security discussion that's happening right now. >> All right, no shortage of lots of information. Alexandre, by the way, that there's no way that anybody can keep up on everything that's happening in this very robust community. But thank you so much for sharing your journey. It's always great to hear from the practitioner. Thanks so much for joining us. >> Thanks for having me, awesome. >> All right, and thank you for joining us, for all the coverage. Be sure to go to theCUBE.net, you can see not only all the interviews from this show, you can go search find previous shows as well as see what events we will be at, of course right now all virtually, so, am Stu Miniman and thank you as always for watching theCUBE. (upbeat music)

Published Date : Aug 18 2020

SUMMARY :

and the ecosystem partners. and so happy to bring Hey, thanks for the at many of the Docker cons, the cloud industry to stand Ubisoft, and they say, you know, and that you can manage to support that, you and the applications to And it's great to hear you say and the technology that we of the OpenStack solution and prevent the cluster. So I'd love to get your viewpoint just and that it's resilient in the end. of shift but you know, and the use cases that we have. from the practitioner. for all the coverage.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
AlexandraPERSON

0.99+

April 2018DATE

0.99+

AlexandrePERSON

0.99+

UbisoftORGANIZATION

0.99+

2016DATE

0.99+

Stu MinimanPERSON

0.99+

Alexandre McLeanPERSON

0.99+

RancherORGANIZATION

0.99+

Red HatORGANIZATION

0.99+

EuropeLOCATION

0.99+

10 data centersQUANTITY

0.99+

2020DATE

0.99+

1000 nodesQUANTITY

0.99+

KubeConEVENT

0.99+

Alexandria McLeanPERSON

0.99+

twoQUANTITY

0.99+

CNCFORGANIZATION

0.98+

KubernetesTITLE

0.98+

theCUBE.netOTHER

0.98+

over 200 clustersQUANTITY

0.98+

bothQUANTITY

0.98+

two years agoDATE

0.98+

GoogleORGANIZATION

0.98+

oneQUANTITY

0.97+

CloudNativeCon Europe 2020EVENT

0.97+

CloudNativeConEVENT

0.97+

todayDATE

0.96+

OpenStackTITLE

0.96+

firstQUANTITY

0.95+

this yearDATE

0.95+

one thingQUANTITY

0.93+

one key thingQUANTITY

0.9+

few years agoDATE

0.9+

couple of years agoDATE

0.9+

KubeCon CloudNativeCon 2020EVENT

0.89+

first yearQUANTITY

0.86+

KubeConsEVENT

0.85+

each gaming companyQUANTITY

0.84+

10 years agoDATE

0.83+

past few yearsDATE

0.82+

theCUBEORGANIZATION

0.79+

next couple of monthsDATE

0.79+

first fewQUANTITY

0.77+

globalEVENT

0.73+

one other aspectQUANTITY

0.73+

KubernetesORGANIZATION

0.68+

yearsDATE

0.66+

Breaking Analysis: VMware Announces vSphere 7


 

>>from the Silicon Angle Media office in Boston, Massachusetts. It's the Cube now here's your host, Dave Vellante. >>Hello, everyone. And welcome to this breaking analysis. We're here to assess the VM Ware v Sphere seven announcement, which is the general availability of so called Project Pacific. VM Ware has called this the biggest change to V sphere in the last 10 years. Now Project Specific Pacific supports kubernetes and natively in VM Ware environments. Why is this important? This is critical for multi and hybrid cloud because Kubernetes and its surrounding orchestration enable application portability and management. Yeah, as we've been reporting, VM Ware is one of the big players eyeing multi cloud, along with a crowded field of aspirants that include IBM with Red hat, Microsoft, Cisco, Google and a host of specialists in the ecosystem. Like how she and rancher as well play. Some players have focused in their respective stack swim lanes like security and data protection, storage, networking, etcetera. And with me to dig into this announcement is stew. Minutemen's Do is a senior analyst at Wiki Bond and co host of The Cube is too good to see you and let's get into it great to talk about this state. Okay, so the Sphere seven, what is being announced? And why is it relevant? >>Yes. So, David, as you said in the open, this is the general availability of what they talked about at VM World 2019 as Project Pacific. So it really is integrating kubernetes into V sphere. The VM ware, of course, will position this is that they're now enabling, you know, the 90% of the data centers around the world that have VM ware. Hey, your kubernetes enabled. Congratulations. You're cloud native. Everything like that. Only being a little facetious here. But this is very important. How do we get from where we were to live in this more cloud? Native environments. So containers in general and kubernetes specifically are being a first class citizen. There's a lot of work, Dave, and my understanding this has been going on for a number of years. You know, it's not like they just started working at this six months ago. A overhaul to how this works. Because it's not just we're going to stick a couple of containers on top of, you know, the guest operating system in the virtual machine. But there is a supervisor cluster for kubernetes at the hyper visor level. And there's a lot of, you know, in the weeds things that we're all trying to understand and figure out because you've got you know, we've got a hyper visor and you've got VM. And now you've got the containers and kubernetes on. Some of them are living in my data center. Some VM ware, of course, lives on multiple clouds like the VM ware on AWS. Solutions of this will go there on and, you know, how do I manage that? How does this impact my operations? You know, how did this change my application portfolio? Because, you know, the early value proposition for VM Ware always was. Hey, you're gonna put VM ware on there. You don't need to touch your applications. Everything runs like it did before you were running windows APS on a physical server. You move into virtual. It's all great. There's a lot of nuance and complexity. So when VM Ware says this is the biggest change in a decade probably is, I think back to you know, I remember when the fx 2.0, rolled out in V motion really changed the landscape. That was big V balls. Move to really ah storage. To really understand that architecture and really fix storage was was a huge undertaking that took many years. This this definitely stacks up with some of those previous changes to really change the way that we think about VM Ware. I think the advertising you have even seen from being where some places is don't think of them as VM ware their cloud where our container ware with like because vm zehr still there. But VM Ware is much more than VMS today, >>so this feels like it's bm were trying to maintain its relevance in a cloud native world and really solidify its because, let's face it, VM Ware is a platform that Pat Gelsinger's has ride. The Waves tried many times in many angles to try to ride the cloud wave, and it's finally settled on the partnerships with AWS specifically. But others on DSO really Is this their attempt to become cloud native, not get left behind and be cloud naive? His many say >>Yeah, great question, David. Absolutely. There's the question as to you know what's happening with my applications, you know lots of customers. They say, Well, I'm just going to satisfy the environments. Watched the huge growth of companies like service now workday. Those applications, well, customers don't even know what they live on. Do they live on virtualization? Environment is a containers I don't need to worry about because SAS takes care of that. If I'm building modern applications, well, I'm probably not starting with VMS. Containers are the way that most people are doing that. Or they might even be going serverless now if we take these environments. So how does VM ware make sure that they have the broadest application support? Kubernetes really won the container orchestration wars on. And this is a way that VM ware now can enable customers to move down that path to modernize their environments on. And what they wanna have is really some consistency between what's happening in the cloud and happening in the environments that they control >>themselves. Vm ware saying that containers in our first class citizen within v sphere what does that mean? Why is that important? First of all, are they really And what does that mean? And why is that important? >>Yes. So, Dave, my understanding is, you know, absolutely. It's their, You know, the nuances that you will put there is. You know, we're not just running bare metal servers with Lennox and running containers on top of it. It is. You're still sitting on top of the hyper visors. One of the things I'm trying to understand when you dig down is you know what? The device driver level VM ware always looked a little bit like Linux. But the people that use it and operate it, they're not letting people Dave, these, you know, the OS. The number one os that always ran on VM ware was Windows and the traditional applications that ran there. So when we talk about containers and we're enabling that in a kubernetes environment, there are some questions about how do we make sure that my applications get certified? Dave, you got a lot of history knowing things like s ap and Oracle. I need to make sure that we've tested everything in this works. This is not what we were running traditionally in VM ware and VM ware. Just thanks. Hey, v Sphere seven, turn the crank. Everything certified Well, I would tell customers make sure you understand that your application has been tested, that your Eyes V has certified this environment because this is definitely, as VM Ware says, a huge architectural change. So therefore, there's some ripple effects to make sure that what I'm doing in this environment stays fully supported. Of course, I'm sure VM Ware is working with their huge ecosystem to make sure that all the pieces or environment you mentioned things like data protection. We absolutely know that VM Ware is making sure the day one the data protection plugs in and supported in these environments when you're using the kind of kubernetes persona or containers solutions in V sphere. >>Well, this brings me to my next question. I mean, we were talking to Bernard Golden the other day and he was saying, You know, Kubernetes is necessary for multi cloud, but it's insufficient. And so this seems to me to be a first step and, as I say, VM ware maintaining and growing its relevance. But there's gonna be a roadmap here that goes beyond just containers and portability. There's other management factors you mentioned security of enabling the ecosystem to plug in. So maybe talk about that a little bit in terms of what's necessary to really build this out over the next >>decade. And actually, it's a great point. So, first of all, you know, V. Sphere, of course, is the core of VM Ware's business. But there's only a piece of the overall portfolio said this lives in. I believe they would consider this part of what they call their Tansu family. Tando is their cloud native overarching piece of it, and one of the updates is their product hands admission control. Which of the existing product really came out of the Hep D Oh acquisition is how we can really manage any kubernetes anywhere, and this is pure software. Dave. I'm sure you saw the most recent earnings announcement from VM Ware, and you know what's going sass. What's going subscription? VM Ware is trying to build out some of their software portfolio that that isn't kind of the more traditional shrink wrap software, so Tan Xue can manage any kubernetes environment. So, of course, day one Hey, obviously or seven, it's a kubernetes distribution. Absolutely. It's going to manage this environment and but also if I've got Cooper days from azure kubernetes from Amazon communities from other environment. Tanja can manage across all of those environments. So when when you're what VM Ware has always done. If you think back in the early days of virtualization, I had a lot of different servers. How do I manage across those environments? Well, VM ware was a layer that lived across them. VM Ware is trying to do the same thing in the cloud. Talk about multi cloud. And how do I manage that? How do we get value across them? Well, there's certain pieces that you know VM Ware is looking to enable with their management software to go across them. But there are a lot of other companies, you know, Amazon Google actually not Amazon yet for multi cloud. But Microsoft and Google absolutely spent a lot of time talking about that in the last year. A swell as you mentioned. Companies like Rancher and Hashi Corp absolutely play across What Lots of these multi cloud. Well, >>let's talk about the competition. Who do you see is the number one competitors >>Well, so the number one competitor absolutely has to be red hat, Dave. So you know, when I've been in the kubernetes ecosystem for a number of years for many years. When I talk to practitioners, the number one, you know what kubernetes you're using? Well, the answer for many years was, Well, I'm grabbing it, you know, the open source and I'm building my own stack. And the reason customers did that was because there wasn't necessarily maturity, and this was kind of leading edge, bleeding edge customers in this space. The number two besides build my own was Red Hat was because I'm a red hat customer, a lot of Lennox tooling the way of building things the way my application developers do. Things fit in that environment. And therefore, that's why Red Hat has over 2000 open shift customers leading distribution for Kubernetes. And you know, this seems purely directly targeted at that market. That red hat did you know it was a big reason why IBM spent $34 billion on the Red Hat acquisition is to go after this multi cloud opportunity. So you know, absolutely this shot across the bow because Red Hat is a partner of VM Ware's, but absolutely is also a competitive >>Well, Maritz told me years ago that's true. We're with everybody and you could see that playing out. What if you look at what VM Ware could do and some of their options if they gave it away, that would really be a shot across the bow at open shift, wouldn't it? >>Yeah, absolutely, Dave, because kubernetes is not free if you're enabling kubernetes on my Google environment, I, you know, just within the last week's awesome things that were like, Okay, wait. If you're testing an environment, yes, it is free. But, you know, started talking about the hourly charges for the management layer of kubernetes. So you know kubernetes again. A color friend, Cory Quinn. Communities absolutely is not free, and he will give you an earful and his thoughts on it s o in Amazon or Google. And absolutely, Dave, it's an important revenue stream for red hat. So if I'm vm ware and you know, maybe for some period of time, you make it a line item, it's part of my l. A. You know, a good thing for customers to look out for is when you're renegotiating your l a toe, understand? If you're going to use this, what is the impact? Because absolutely, you know, from a financial standpoint, you know, Pat Gelsinger on the VM Ware team has been doing a lot of acquisitions. Many of those Dave have been targeted at this space. You know, not to step Geo, but a bit NAMI. And even the pivotal acquisition all fit in this environment. So they've spent billions of dollars. It shouldn't be a net zero revenue to the top line of what VM Ware is doing in the space. >>So that would be an issue from Wall Street's perspective. But at the same time, it's again, they're playing the long game here. Do we have any pricing data at this point? >>So I still have not gotten clear data as to how they're doing pricing now. >>Okay, Um, and others that are in there and in the mix. We talked about Red Hat. Certainly Microsoft is in there with Arc. I've mentioned many times Cisco coming at this from a networking perspective. But who else do you see and then Antos with Google? >>Yeah. And you know, Dave, all the companies we're talking about here, you know, Pat Gelsinger has had to leverage his intel experience to how to balance that line between a partner with everybody but slowly competing against everybody. So, you know, we've spent many hours talking about the VM Ware Amazon relationship. Amazon does not admit the multi cloud a solution yet and does not have a management tool for supporting all of the kubernetes environment. But absolutely Microsoft and Google do. Cisco has strong partnerships with all the cloud environment and is doing that hybrid solution and Dave Justice nothingto expand on a little bit there. If you talk about V sphere, you say, Okay, Visa or seven trolling out Well, how long will it take most of the customer base to roll to this environment? There will be some that absolutely want to take advantage of kubernetes and will go there. But we know that is typically a multi year process to get most of the install base over onto this. And if you extend that out to where VM Ware is putting their solution into cloud environments, there's that tension between, you know, Is there a match actually, between what I have in my data center and what is in the managed environment managed by VM Ware and Amazon, or manage for to support some of the other cloud environment. So the positioning always is that you're going to do VM Ware everywhere, and therefore it's going to be consistent everywhere. Well, the devil's in the details because I have control on what's in my data center, and I might have a little bit less control to some of those managed services that I'm consuming. So absolutely something to keep a close eye on. And not just for VM, where everybody is having these concerns. Even if you talk about the native kubernetes distributions, most of the kubernetes services from the cloud providers are not, you know, immediately on the latest revision of kubernetes, >>right, So Okay, well, let's let's talk about that. Remember when open Stack first came out? It was a Hail Mary against Amazon. Yeah, well, the new Hail Mary and looks like it has more teeth is kubernetes right, because it allows portability and and and of course, you know Amazon doesn't publicly say this, but it's not. That's not good for Amazon. If you're reporting things, applications, moving things around, moving them out of the Amazon cloud, and that makes it easier. Of course, Amazon does support kubernetes right, But you've got >>alternatives. So, David, it's fascinating. So I've talked to many practitioners that have deployed kubernetes and one of the top reasons that they say that why they're using Kubernetes is so they have options with the cloud. When you also ask them what cloud they're running, they're running Amazon. Did they have planned to move off of it? Well, probably not. I had a great customer that I didn't interview with that one of the Cube con shows, and they actually started out with Azure just because it was a little further head with kubernetes and then for the services they wanted. They ended up moving to AWS and Dave. It's not a click a button and you move from one kubernetes to another. You need toe match up and say, Okay, here's the five or six services I'm using. What are the equivalent? What changes do I need to make? Multi cloud is not simple. Today, I mentioned Hashi Corp is one of those companies that help people across these environments. If you have haji solution and you're managing across multiple clouds, you look in the code and you understand that there's a lot of difference between those different clouds, and they simplify that. But don't eliminate it. Just it is not. There is not a way today. This is not a utility when you talk about the public cloud. So you know Kubernetes absolutely is existentially a little bit of a threat to Amazon but Amazon still going strong in that space. And you know that the majority of customers that have deployed kubernetes in the public cloud are doing it on Amazon just because of their position in the marketplace and what they're. >>So let's double click on that. So Jassy, an exclusive interview with John Furrier before last year's re invent, said, Look, we understand there's a lot of reasons why people might choose multiple clouds, you know, go through them in a developer preference. And I think I think, you know, people want o optionality and reduce lock in potentially. But I've always said, by the way, just as an aside, that that the risk of lock in it is far down on the list relative to business value, people will choose business value over over, you know, no lock in every time. About 15% of the customers you might not agree. Nonetheless, Jassy claimed that typically when you get into a multiple cloud environment, he didn't use the term multi cloud that it's it's not a 50 50. It's a premier primary cloud supplier. So might be 70 30 or 80 20 or even 90 10. But it's really that kind of, you know, imbalance. First of all, do you see that? And then what does that mean for how they approach of this space? Multi cloud and in particular. >>So I'm sorry. You're asking how Amazon should approach the space. And you've said that I don't think they'll >>eventually enter this market place. >>Yeah, you know, absolutely, Dave. You know, first of all, in general, yes, I do agree. It is not. There are certain financial companies that, you know, have always chosen two of everything. Because for regulation and you know certain we need to protect ourselves. We're gonna have to suppliers. We're going to keep them as even as possible. But that is a corner case. Most customers I have a primary cloud. That's what I'm doing. That what I t tries to get everybody on and you need to have Is there a reason why you want to use a secondary or tertiary cloud because there's a service that they need. Of course, Google. You often run it. It's like, Oh, well, there's certain data services that they're doing well And, of course, the business productivity solutions that Microsoft's doing where the relationship with Oracle that are driving people towards Microsoft. But just as we saw Amazon soften on their hybrid solutions, we spent a lot of time at re invent talking about all the various hybrid solutions. Um, since their customers are going to have multiple clouds on and even you take most of their customers that have M and a involved you buy another company, they might be using another cloud. As Microsoft's position in the marketplace has grown, you would expect that Amazon would have not just migration services but management services to match what customers need, especially in this kubernetes environment, seems that it seems a natural fit for them. It's possible they might just leverage, you know, partnerships with red hat VM ware, you know, in some of the other players for the time being. But if the market gets big enough and customers are asking for it, that's usually when Amazon response >>So let's let's wrap with what this means to the customer. And I've said that last decade really multi cloud was a symptom of multi vendor and not so much of the strategy that's changing. You know, clearly, jokes CIOs are being called in to clean up the crime scene on do you know, put in edicts corporate edicts around security and governance and compliance and so forth. So it started to become a complicated situation for a lot of companies. We've said that multi cloud is gonna it's gonna be they're going. People are going to put the right war load and the right cloud, etcetera, and this advantages to certain clouds. But what should customers be thinking specifically as it relates to v. Sphere seven? >>Yes. So, Dave, the biggest thing I would say that people need to look at it is that understanding in your organization that that boundary and line between infrastructure and application people have often looked at you looked at the ascendancy of VM Ware, Andi V. M's and then what's happening with cloud and containers. And we think of it from an infrastructure standpoint that I'm just changing the underlying pieces. This is where it lives and where I put things. But the really important thing is it's about my data and my applications, Dave. So if I'm moving an application to a new environment, how do I take advantage of it? You know, we don't just move it to a new environment and run it the same way we were doing it. I need to take advantage of those new environments. Kubernetes is involved in infrastructure, but the real piece is how I have my application, my developers, my app. Dev's working on this environment and therefore it might be that if VM Ware's the right environment, I'm doing a lot of it that the development team says, Hey, I need you to give me a pool and provisioned this for me and I can have my sandbox where I can move really fast. But VM Ware helped initially customers when they went from physical to virtual, move faster. From an infrastructure standpoint, what it needs to do to really enable this environment is help me move faster on the application side. And that's a big gap from VM. Ware's history is where the pivotal people and hefty O people and bit NAMI and all the new people are helping along to help that whole cloud native team. But that is a big shift from customers. So for this to be successful, it's not just, oh, the virtualization admin. He upgraded to the new thing. He made some changes and said, Okay, hey, I can give you a kubernetes cluster when you need it. It's really understanding what's going to happen on the application side in a lot of that is going to be very similar to what you're doing in cloud environments. And I think this is Dave often where your customers, they say, Oh, well, I did that cloud and it was too expensive and it was too hard, and I repatriated. Everything else is, well, you probably didn't plan properly and you didn't understand what you're getting yourself into. And you jumped into the deep end of the pool and oh, wait, I forgot how to learn how to swim. So you know, that is where we are. You know, Dave, you know the technology parts. Always the easiest piece. It's getting all of the organizational and political things sorted out. And you know the developer we know how important that is, we're seeing. It's great to see VM Ware pushing faster in this environment. Kudos to them for how fast they moved. Project Pacific to G. A. That is really impressive to see and can't wait to hear the customers roll out because if this is successful, we should be hearing great transformation stories from customers as to how this is enabling their business, enabling them to move faster on. You know, that has been what, one of the favorite stories that I've been telling with customers on the Cube last couple of years. >>The vast majority of VM Ware's business, of course, is on print, and essentially they're doing here is enabling developers in their customer base and the half a 1,000,000 customers to really develop in a cloud native manner. The question is, you know, from a ah, from a cultural standpoint, is that actually gonna happen? Or the developers gonna reject the organ and say, No, I want to develop in AWS or Microsoft in the cloud. I think VM Ware would say, We're trying to embrace no matter where they want to develop, but they're still going to be. That's interesting organizational tension or developer attention in terms of what their primary choices is. They're not. >>Yeah, Dave, Absolutely. We've been saying for years. That cloud is not a location. It is an operating model. So this is helping to enable that operating model more in the data center. There's still questions and concerns, of course around, you know, consumption on demand versus you know, whether whether you've bought the entire thing as more and more services become available in the public cloud, are those actually enabled to be able to be used, you know, in my data center hosted environment. So you know, this story is not completed, but we're definitely ready. I believe we're saying it's the multi clouds Chapter three of what? We've been watching >>you and you're seeing a major tam expansion yet again from VM Ware that started with the NSX. And then, of course, went in tow networking and storage. And now they've got a cloud security division. We're talking about the the cloud native capabilities here and and on and on, it goes to thanks for helping us break this VC seven announcement down and good job fixed. All right. And thank you for watching everybody. This is Dave Volante for stew Minimum. We'll see you next time on the Cube. >>Yeah,

Published Date : Mar 10 2020

SUMMARY :

It's the Cube now VM Ware has called this the biggest change to V sphere in the I think back to you know, I remember when the fx 2.0, rolled out in V motion many times in many angles to try to ride the cloud wave, and it's finally settled on the partnerships There's the question as to First of all, are they really And what does that mean? One of the things I'm trying to understand when you dig And so this seems to me to be a So, first of all, you know, V. Sphere, of course, is the core of Who do you see is the number one competitors When I talk to practitioners, the number one, you know what kubernetes you're using? and you could see that playing out. you know, started talking about the hourly charges for the management layer of kubernetes. But at the same time, But who else do you see and are not, you know, immediately on the latest revision of kubernetes, because it allows portability and and and of course, you know Amazon doesn't publicly This is not a utility when you talk about the public cloud. But it's really that kind of, you know, You're asking how Amazon should approach the space. you know, partnerships with red hat VM ware, you know, on do you know, put in edicts corporate edicts around security and governance and compliance and And you know the developer we know how important that is, The question is, you know, So this is helping to enable that operating model more in the data center. And thank you for watching everybody.

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
DavidPERSON

0.99+

Pat GelsingerPERSON

0.99+

AmazonORGANIZATION

0.99+

Dave VellantePERSON

0.99+

fiveQUANTITY

0.99+

DavePERSON

0.99+

MicrosoftORGANIZATION

0.99+

GoogleORGANIZATION

0.99+

CiscoORGANIZATION

0.99+

Dave VolantePERSON

0.99+

90%QUANTITY

0.99+

AWSORGANIZATION

0.99+

OracleORGANIZATION

0.99+

Cory QuinnPERSON

0.99+

JassyPERSON

0.99+

IBMORGANIZATION

0.99+

MaritzPERSON

0.99+

RancherORGANIZATION

0.99+

Bernard GoldenPERSON

0.99+

Red HatORGANIZATION

0.99+

John FurrierPERSON

0.99+

VM WareTITLE

0.99+

VM WareTITLE

0.99+

$34 billionQUANTITY

0.99+

six servicesQUANTITY

0.99+

VMwareORGANIZATION

0.99+

WindowsTITLE

0.99+

Hashi CorpORGANIZATION

0.99+

TodayDATE

0.99+

Hashi CorpORGANIZATION

0.99+

twoQUANTITY

0.99+

Boston, MassachusettsLOCATION

0.99+

last yearDATE

0.99+

Wiki BondORGANIZATION

0.99+

VM World 2019EVENT

0.99+

Dave JusticePERSON

0.99+

oneQUANTITY

0.99+

six months agoDATE

0.99+

SASORGANIZATION

0.99+

VM WareORGANIZATION

0.99+

OneQUANTITY

0.99+

LinuxTITLE

0.99+

Keynote Analysis | KubeCon + CloudNativeCon NA 2019


 

>> Narrator: Live from San Diego, California, it's theCUBE covering KubeCon and CloudNativeCon. Brought to you by Red Hat, the CloudNative Computing Foundation and its ecosystem partners. >> Docker, Docker, Docker. No, you're in the right place. This is KubeCon CloudNativeCon 2019 here in San Diego. I'm Stu Miniman kicking off three days of live, wall to wall coverage. My co-host for most of the week this week is John Troyer. Justin Warren's also in the house. He'll be hosting for me. And a big shout out to John Furrier who's back at the corporate ranch in Palo Alto keeping an eye on all the CloudNative stuff with us. The reason that I actually mentioned Docker is because it is the first thing that is on our lips this week. Just this week, Docker, which is the company that, if it wasn't for Docker, we wouldn't have 12,500 people here at this event. Really democratized containers. But the company itself built out a platform, millions and millions of companies using containers. But when the orchestration layer came in there was some contention, there's lots of politics. I'm waiting for Docker the Broadway musical to come out to talk about all the ins and outs there because Kubernetes really sucked the air out of the CloudNative world. Spawned tons of projects here. As you can see behind us, this ecosystem is massive and swelling. Last year it was 8,000 people, year before it was 4,000 people, so many people here, so. And John, so, let's start. This is your first time at this show, you've done many shows with us, definitely covered some of the cloud-native, you've worked with many of the companies that are in this ecosystem here. Give me your first impressions here of KubeCon CloudNativeCon. >> Sure, sure. Well, I mean Stu, 12,000 people, it's pretty crowded here. We're right by the t-shirt line, on day one of the conference. Look, a conference this big, especially an open source conference, there's several jobs to be done, right. This is an active set of open source projects and open source communities. So a lot of the keynote this morning was updating people on details about the latest releases, the latest features, what's in, what's out, what's going on. CNCF is a very broad umbrella for a very broad number of projects, not a coherent opinionated stack, it's a lot of different things that all contribute to a set of CloudNative technologies. So, that's job one. Job two, it's a trade show, and it's an industry show, and people are coming here to figure out how to build and learn and operate. So, that wasn't particularly well served by the keynote this morning. There was certainly a lot of hands-on this week. There's a huge number of breakouts, there's a huge number of tracks. Even day zero, which is a set of specialty breakout workshops and sessions, everything was packed. There were over a dozen of those. So, what strikes me is the breadth here is that it's a mile wide. I won't say it's an inch deep, because there's some, but it is a mile wide. >> Yeah, yeah, John you are right, there's so much going on. The day zero tracks are amazing. I think there were over two dozen, maybe even more of the sessions where, you know, half-day or full day deep dives. Even talk, there was some other small events even that went on for two or three days leading up to this. So, sprawling ecosystem. Last year at this show in Seattle, I actually said that this show is the independent cloud show that we've been looking for. John, I was at Microsoft Ignite just a couple of weeks ago, and absolutely, Satya Nadella, they're not talking about the bits and the bytes. It's a, you know, Microsoft is your trusted partner for everything you're going to do, including building 50 billion new applications. Amazon Reinvent will just be right after Thanksgiving, and we will hear a very different message from Amazon and where they play. But this is not a company, it is a lot of different projects. The CNCF is the steward of this, and so Kubernetes is the one that gets all the attention. I think for this group to even grow more, it needs to be focused more on the CloudNativeCon, because how do we do cloud-native? You know, what does that mean? We heard, you know, Sugu was up on stage talking about Vitess, and he said, look, if you bake your database directly in fully Kubernetes cloud-native, that means that when you want to move between clouds you bring your data with you. So, data, security, networking, messaging, there's so many pieces here. It's a lot of work to be done to mature this stack, but it definitely is getting more mature. You start hearing many of these projects with a million or more downloads a month. So many pieces. John, what are you looking to dig into this week, what are you most excited for, what questions do you want answered? >> Well, here on theCUBE I'm always excited when we get to talk to people in production, customers, really see what's going on. There's a lot of stuff in production right now, which is not to say a lot of stuff isn't bleeding edge, right. I hear a lot of stuff, just out of the woodwork, about things that are fragile, things that aren't ready, things that are not quite updated, and I think Kubernetes is an architectural as well as a spiritual home for everything. But there's a lot of pieces that plug in, and there are opinionated ways of doing it, there are best of breed way, there are vertically integrated stacks. What's the best approach, it's not clear to me. I mean if you have to look at it from a company perspective, who are the winners and losers, I don't think that's a very productive way of looking at it. I'm interested in some projects like, we're going to be talking with Rancher, and they've got some announcements, but I'm also interested in K3s, which is their project there. I'm been hearing some really interesting things on the storage front. You know, all these things are really necessary. It's not all just magic containers moving around. You got to actually get the bits and bytes into the right place at the right time and backed up. >> Yeah, I love that you brought up K3s. Edge is definitely something that I hear talking a lot, because if you talk about cloud-native, it's not just about public cloud. Many of these things can run in my on-premises data centers and everything like that. >> And Edge fits in all of these environments, so. Right, winners and losers, I remember two years ago, first time I got a chance to interview Kelsey Hightower, who we do have on the program. He had actually taken a couple shows off, but he's back here at the show. I said Kelsey, why are we spending so much talking about Kubernetes? Doesn't this just get baked into every platform? And he's like, yeah totally, that's not the importance of it. It's not about distributions, and not about who's who, any of the software companies, it's how do they pull all of the pieces together. How do they add value on top of it. One of the terms I've heard mentioned a lot is, we need to think a lot about day two. Heck, there was even one of the companies that was heavy in this space, Mesosphere, they renamed the company Day Two IQ, spelled D2IQ. No relation to R2D2. But you know, that's what they are focused on to help these things really go together. So yeah, we talk about multicloud, and how do I get my arms around all of these pieces, how do I manage a sprawling environment. You add Edge into it. I've got a huge surface of attack for security issues. So, John, remember cloud was supposed to be simple and cheap, and it really isn't either of those things anymore, so yeah, a lot for us to dig into. >> Yeah, it'll be an interesting mix. Developers, experts, people brand new, probably half the people here they're the first time, and people coming over from the IT space as well as people coming from the open source space and I even saw this morning this is the biggest conference I've ever been to. So it's a many, it's different parts of the elephant, I'd say. >> Yeah, absolutely. It is a good sized conference, especially for open source it probably is the largest. But Salesforce Dreamforce is going on this week, which is more than an order of magnitude bigger, so my condolences to anybody in San Francisco right now, because we know the BART and everything else completely swamped with too many people. One other thing, you know, CNCF, what's really interesting for me always is when you look at a lot of these projects, the people that we saw up on stage were companies, it was the person that oh, I started this project and I'm the technical lead on it, and that's where I'm going. We've interviewed many of the people that start these projects, and they come many times out of industry. It's not a vendor that said, hey, I built something and I'm selling it. It is companies like Uber and Lyft that said, we did things at massive scale, we had a problem, we built something, we thought it was useful for us. Open source seemed a good way to help us get broader visibility and maybe everybody could help, and other people not only pitch in, but say this is hugely valuable, and that's where we go with it. So, it's something we, a narrative I've heard for years about everybody's going to be a software company, well, almost everybody at this conference is building software. We've heard about 30 to 40% of the people attending this show are developers, and therefore many of them are going to build products. A question I have and I'll give you is, with Docker, we just kicked off talking about Docker. You know, Docker created this huge wave of what happens there, but to put it bluntly, Docker the business failed. So, they are not dead, there's the piece that's in Mirantis, there's the piece doing the developer piece. We wish all of them the best of luck, but they had the opportunity to be the next VMware, and instead they are the company that gave us this wave, but did not capitalize on it. So, I look around and I see so many companies, and you say, "Hey, what are you?" "Oh, we're the creators of X technology in this project," and my question is, are you actually going to be able to make money and do a business, or is this just something that gets fit into the overall ecosystem. John, any thoughts and advice for those kind of companies. >> Well, I mean we are here, even though there's 12,000 people here, this is still very leading edge, right. There's a lot of pieces, parts here. We're not sure how they're all going to fit together. A lot of the projects have come out of real use cases, like you say, but they're, it's commercial viability is a different beast than utility. Docker was very good at developer experience, but the DNA of actually selling an enterprise management stack is a whole different beast, and there are a lot of those too. So I mean I think a lot of the companies here may not be around, but their technologies will live on. I think if you're here, and the interviews here at the show I think will be a, you'll want to have your antenna out to see like, okay, does this give you a feeling like this is solving a real problem and is incorporated in a real ecosystem. You know, the big company, it cuts both ways, right. Some of the times those technologies get absorbed and become the standard, sometimes they disappear. So the advice is you just put one foot in front of the other and try to find people in production. That's the only way at the end of the day that you could move ahead as a small company. >> All right, John, I gave you one piece of advice when we came here and I said, you know one thing we don't talk about at this show, we don't talk about OpenStack. So, I'm going to break that rule for a second here, just 'cause I feel we have as an industry learned some of the lessons. There is some of the irrational exuberance around some of these. There's lots of money being thrown at these environments, but I do feel that we are reaching maturity and adoption so much faster, because we are not trying to replacing something. The early days of OpenStack was, you know, we're your alternative for AWS, and we're going to get you off of VMware licensing. And both of those things were, they didn't happen for the most part. And OpenStack did fit in certain environments, especially outside of North America there's lots of OpenStack deployments. The telecommunications environment OpenStack is used a bunch. Telecom, another area, talk about Edge, that plays in here and we have a number of conversations. But there are both the big and the small companies when I look at our list of people we're going to be talking on the program. You know, I love first the customers. We've got Fidelity, Bloomberg, Red Cross, and Ford Motor Company all on the program, and we've got big companies, mega giants like Cisco, Hewlett Packard Enterprise, as well as couple of companies that came out of stealth like in the last week, including Render and Chronosphere. So, you know, broad spectrum of what's going on. You've done some of the OpenStack shows with me. You've got a long community and ecosystem viewpoint, John. What do you think and what do you hear, yeah. >> You know, this is, I guess yeah, this is a next generation, you could look at it that way. Anytime you bring together one of these open source foundations, you know, it is kind of a new style of development. You do have differing agendas. People do again have to have their antenna up to see, is this person promoting this open source project and what is their commercial interest in it. Because there are different agendas here. But it looks pretty healthy. Look, there's probably a million engineers worldwide that are going to have to know the guts of Kubernetes, but it's a different job to be done than OpenStack. OpenStack community is actually, that exists, is still thriving. It is good for the job to be done there. This job to be done's a little different. I think it's going to be an engine, you know, the engine that's embedded in everything else. So there's going to be a hundred million engineers that don't need to know anything about Kubernetes, but people here are the people that pop the hood open and start to you know, mess with the carburetor and this is a carburetor show. And so for the coverage here we're going to try to up level it to talk about the business a little bit, but this feels important. It feels cross-cloud, it feels outside of any one silo, and I'm really interested to see what we're going to learn this week. >> Okay, and thank you John. I really appreciate it to get it right final. It's like what is our job here? We are an independent media organization. Yes, we did bring our own stickers here to be able to, you know, we know everybody here loves stickers, so we've got theCUBE and we've got the fun gopher one, our friends at Women Who Go that support this, because, you know, inclusion, diversity, something that this community definitely embraces, we are huge supporters of their, but right, we want to be able to give that broad viewpoint of everything. We're not going to be able to get into every project. We're not going to go as deep as the day zero content web, but give a good flavor for everything going on in the show. I've found of all the shows I've gone to in recent years, this is some of the biggest brains in the industry. There's a lot of really important stuff, so I appreciate bringing my PHD holding co-host with me, John. Looking forward to three days with you to dig into all the environment. All right, so we will be wall to wall coverage, three days. If you're at the event, we are here in the expo hall. You can't miss us, we've got the big lights right next to the CloudNativeCon store. If you're online of course reach out to us. I'm @stu, S-T-U on Twitter. He's @jtroyer, and hit us up, see us in person, come grab some stickers, let us know who you want to talk to and what question you have, and as always, thank you for watching theCUBE. (upbeat music)

Published Date : Nov 19 2019

SUMMARY :

Brought to you by Red Hat, My co-host for most of the week this week is John Troyer. So a lot of the keynote this morning and so Kubernetes is the one that gets all the attention. I hear a lot of stuff, just out of the woodwork, Yeah, I love that you brought up K3s. any of the software companies, and people coming over from the IT space and I'm the technical lead on it, So the advice is you just put one foot in front of the other and Ford Motor Company all on the program, and start to you know, mess with the carburetor I've found of all the shows I've gone to in recent years,

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
BloombergORGANIZATION

0.99+

FidelityORGANIZATION

0.99+

UberORGANIZATION

0.99+

JohnPERSON

0.99+

CiscoORGANIZATION

0.99+

John FurrierPERSON

0.99+

Justin WarrenPERSON

0.99+

John TroyerPERSON

0.99+

Satya NadellaPERSON

0.99+

Ford Motor CompanyORGANIZATION

0.99+

LyftORGANIZATION

0.99+

Palo AltoLOCATION

0.99+

SeattleLOCATION

0.99+

Stu MinimanPERSON

0.99+

twoQUANTITY

0.99+

San DiegoLOCATION

0.99+

MicrosoftORGANIZATION

0.99+

San FranciscoLOCATION

0.99+

KelseyPERSON

0.99+

Red HatORGANIZATION

0.99+

AWSORGANIZATION

0.99+

Hewlett Packard EnterpriseORGANIZATION

0.99+

Last yearDATE

0.99+

AmazonORGANIZATION

0.99+

Red CrossORGANIZATION

0.99+

millionsQUANTITY

0.99+

12,000 peopleQUANTITY

0.99+

oneQUANTITY

0.99+

@jtroyerPERSON

0.99+

San Diego, CaliforniaLOCATION

0.99+

OneQUANTITY

0.99+

CloudNative Computing FoundationORGANIZATION

0.99+

KubeConEVENT

0.99+

bothQUANTITY

0.99+

SuguPERSON

0.99+

12,500 peopleQUANTITY

0.99+

North AmericaLOCATION

0.99+

first timeQUANTITY

0.99+

this weekDATE

0.99+

three daysQUANTITY

0.99+

8,000 peopleQUANTITY

0.99+

4,000 peopleQUANTITY

0.99+

CloudNativeConEVENT

0.99+

last weekDATE

0.99+

CNCFORGANIZATION

0.99+

ChronosphereORGANIZATION

0.98+

ThanksgivingEVENT

0.98+

Kelsey HightowerPERSON

0.98+

over a dozenQUANTITY

0.98+

first thingQUANTITY

0.98+

one pieceQUANTITY

0.98+

OpenStackTITLE

0.98+

one footQUANTITY

0.97+

first impressionsQUANTITY

0.97+

Women Who GoORGANIZATION

0.97+

both waysQUANTITY

0.97+

two years agoDATE

0.96+

firstQUANTITY

0.96+

SalesforceORGANIZATION

0.96+

over two dozenQUANTITY

0.95+

job oneQUANTITY

0.95+

half-dayQUANTITY

0.95+

@stuPERSON

0.95+

S-T-UPERSON

0.95+

Job twoQUANTITY

0.94+

RenderORGANIZATION

0.94+

40%QUANTITY

0.94+

day oneQUANTITY

0.92+

this morningDATE

0.92+

Dustin Kirkland, Google | CUBEConversation, June 2019


 

>> from our studios in the heart of Silicon Valley. HOLLOWAY ALTO, California It is a cube conversation. >> Welcome to this Special Cube conversation here in Palo Alto, California at the Cube Studios at the Cube headquarters. I'm John for the host, like you were a Dustin Kirkland product manager and Google friend of the Cuban. The community with Cooper Netease been on the Cube Cube alumni. Dustin. Welcome to the Cube conversation. >> Thanks. John's a beautiful studio. I've never been in the studio and on the show floor a few times, but this is This is fun. >> Great to have you on a great opportunity to chat about Cooper Netease yet of what you do out some product man's working Google. But really more importantly on this conversation is about the fifth anniversary, the birthday of Cuba Netease. Today we're celebrating the fifth birthday of Cooper Netease. Still, it's still a >> toddler, absolutely still growing. You think about how you know Lennox has been around for a long time. Open stack has been around these other big projects that have been around for, you know, going on decades and Lenox this case and Cooper nineties. It's going so fast, but It's only five years old, you know. >> You know, I remember Adam Open Stack event in Seattle many, many years ago. That was six years ago. Pubes on his 10th year. So many of these look backs moments. This is one of them. I was having a beer with Lou Tucker. J J Kiss Matic was like one of the first comes at the time didn't make it, But we were talking about open stagger like this Cooper Netease thing. This is really hot. This paper, this initiative this could really be the abstraction layer to kind of bring all this cloud Native wasn't part of the time, but it was like more of an open stack. Try and move up to stack. And it turned out it ended up happening. Cooper Netease then went on to change the landscape of what containers did. Dr. Got a lot of credit for pioneering that got the big VC funding became a unicorn, and then containers kind of went into a different direction because of Cooper duties. >> Very much so. I mean, the modernization of software infrastructure has been coming for a long time, and Cooper nutty sort of brings it all brings it all together at this point, but putting software into a container. We've been doing that different forest for for a lot of time, uh, for a long time, but But once you have a lot of containers, what do you do with that? Right? And that was the problem that Cooper Nettie solved so eloquently and has, you know, now for a couple of years, and it just keeps getting better. >> You know, you mentioned modernization. Let's talk about that because I think the modernization the theme is now pretty much prevalent in every vertical. I'll be in D. C. Next week for the Amazon Webster was public sector Summit, where modernization of governments and nations are being discussed. Education, modernization of it. We've seen it here. The media business that were participating in is about not where you store the code. It's how you code. How you build is a mindset shift. This has been the rial revelation around the Dev Ops Movement Infrastructures Code, now called Cloud Native. Share your thoughts on this modernization mindset because it really is how you build. >> Yeah, I think the cross pollination actually across industries and we even we see that even just in the word containers, right and all the imagery around shipping and shipping containers, we've applied these age old concepts that have been I don't have perfected but certainly optimized over decades of, actually centuries or millennia of moving things across water in containers. Right. But we apply that to software and boom. We have the step function difference in the way that we we manage and we orchestrated and administer code. That's one example of that cross pollination, and now you're talking about, like optimizing optimized governments or economies but being able to maybe then apply other concepts that we've come a long way in computer science do de bop set a good example? You know, applying Dev ops principles to non computer feels. Just think about that for a second. >> It's mind blowing. And if you think about also the step function you mentioned because I think this actually changed a lot of the entrepreneurial landscape as well and also has shaped open source and, you know, big news this this quarter is map are going to shut down due one of the biggest do players. Cloudera merge with Horton Works fired their CEO, the founder Michael. So has retired, Some say forced out. I don't think so. I think it's more of his time. I'm Rodel still there. Open source is a business model, you know. Can we be the red hat for her? Duped the red? Not really kind of the viable, but it's evolving. So open source has been impacted by this step function. There's a business impact. Talk about the dynamics with step function both on the business side and on how software's built specifically open source. >> You know, you and I have been around open source for a long, long time. I think it started when I was in college in the late nineties on then through my career at IBM. And it's It's interesting how on the fringe open source was for so long and such so so much of my BM career. And then early time spent onside it at Red Hat. It was it was something that was it was different, was weird. It was. It was very much fringe where the right uh, but now it's in mainstream and it's everywhere, and it's so mainstream that it's almost the defacto standard to just start with open source. But you know, there's some other news that's been happening lately that she didn't bring up. But it's a really touchy aspect of open source right now on that's on some of the licenses and how those licenses get applied by software, especially databases. When offered as a service in the cloud. That's one of the big problems. I think that that's that we're we're working within the open >> source, summarize the news and what it means. What's what's happening? What's the news and what's the really business? Our technical impact to the licensing? What's the issue? What's the core issue? >> Yeah, eso without taking judgment any any way, shape or form on this, the the the TL D are on. This is a number of open source database is most recently cockroach D. B. I have adopted a different licensing model that is nonstandard from an open source perspective. Uh, and from one perspective, they're they're adopting these different licensing models because other vendors can take that software and offered as a service, yes, and in some some cases, like Amazon like Sure, you said, uh, and offered as a as a service, uh, and maybe contribute. Maybe pay money to the smaller startup or the open source community behind it. But not necessarily. Uh, and it's in some ways is quite threatening to open source communities and open source companies on other cases, quite empowering. And it's going to be interesting to see how that plays out. The tension between open sourcing software and eventually making money off of it is something that we've we've seen for, you know, at least 25. >> And it continues to go on today, and this is, to me a real fascinating area that I think is going to be super important to keep an eye on because you want to encourage contribution and openness. Att the same time we look at the scale of just the Lenox foundations numbers. It's pretty massive in terms of now, the open source contribution. When you factor in even China and other nations, it's it's on exponential growth, right? So is it just open source? Is the model not necessarily a business? Yeah. So this is the big question. No one knows. >> I think we crossed that. And open source is the model. Um, and this is where me is a product manager. That's worked around open source. I've spent a lot of time thinking about how to create commercial offerings around open source. I spent 10 years at Economical, the first half of which, as an engineer, the second half of which, as a product manager around, uh, about building services, commercial services around 12 And I learned quite a few things that now apply absolutely to communities as well as to a number of open source startups. That that I've advised on DH kind of given them some perspective on maybe some successful and unsuccessful ways to monetize that that opens. >> Okay, so doesn't talk about Let's get back to Coburg. And so I think this is the next level Talk track is as Cooper Netease has established itself and landed in the industry and has adoption. It's now an expansion votes the land adopted expand. We've seen adoption. Now it's an expansion mode. Where does it go from here? Because you look at the tale signs things like service meshes server. Listen, you get some interesting trends that going to support this expansionary stage of uber netease. What is your view about the next expansion everyway what >> comes next? Yeah, I I think I think the next stage is really about democratizing communities for workloads that you know. It's quite obvious where when communities is the right answer at the scale of a Google or a Twitter or Netflix or, you know, some of these massive services that it is obviously and clearly the best answer to orchestrating containers. Now I think the next question is, how does that same thing that works at that massive scale Also worked for me as a developer at a very small scale helped me develop my software. My small team of five or 10 people. Do I need a coup? Burnett. He's If I'm ah five or 10 person startup. Well, I mean, not the original sort of borde vision of communities. It's probably overkill, but actually the tooling has really advanced, and we now >> have >> communities that makes sense on very small scales. You've got things like a three s from from Rancher. You've got micro Kates from from my colleagues at economical other ways of making shrinking communities down to something that fits, perhaps on devices perhaps at the edge, beyond just the traditional data center and into remote locations that need to deploy manage applications >> on the Cooper Netease clustering the some of the tech side. You know, we've seen some great tech trends as mentioned in Claudia Horton. Works and map Our Let's Take Claudia and Horton work. Remember back in the old days when it was booming? Oh, they were so proud to talk about their clusters. I stood up all these clusters and then I would ask them, Well, what do you doing with it? Well, we're storing data. I think so. That became kind of this use case where standing up the cluster was the use case and they're like, OK, now let's put some data in it. It's a question for you is Coburn. Eddie's a little bit different. I'm not seeing they were seeing real use cases. What are people standing up? Cuban is clusters for what specific Besides the same Besides saying I've done it. Yeah, What's the what's the main use case that you're seeing this that has real value? >> Yeah, actually, there's you just jog t mind of really funny memory. You know, back in those big data days, I was CEO of a startup. We were encrypting data, and we were helping encrypt healthcare data for health care companies and the number of health care companies that I worked with at that time who said they had a big data problem and they had all of I don't know, 33 terabytes worth of worth of data that they needed to encrypt. It was kind of humorous sometimes like, Is that really a big, big data problem? This fits on a single disc, you know, Uh, but yeah, I mean, it's interesting how >> that the hype of of the tech was preceding. The reality needs needs, says Cooper Nettie. So I have a Cuban Eddie's cluster for blank. Fill in the blank. What are people saying? >> Yeah, uh, it's It's largely about the modernization. So I need to modernize my infrastructure. I'm going to adopt the platform. That's probably not, er, the old er job, a Web WebSphere type platform or something like that. I'm investing in hardware investing in Software Middle, where I'm investing in people, and I want all of those things to line up with where industry is going from a software perspective, and that's where Cooper Nighties is sort of the cornerstone piece of that Lennox Of course, that's That's pretty well established >> canoes delivery in an integration piece of is that the pipeline in was, that was the fit on the low hanging fruit use cases of Cooper Netease just development >> process. Or it's the operations it's the operations of now got software that I need to deploy across multiple versions, perhaps multiple sites. Uh, I need to handle that upgrade ideally without downtime in a way that you said service mash in a way that meshes together makes sense. I've got a roll out new certificates I need to address the security, vulnerability, thes air, all the things that Cooper and I used to such a better job at then, what people were doing previously, which was a whole lot of four loops, shell strips and sshh pushing, uh, pushing tar balls around. Maybe Debs or rpm's around. That is what Cooper not he's actually really solves and does an elegant job of solving as just a starting point. And that's just the beginning and, you know, without getting ve injury here, you know, Anthros is the thing that we had at Google have built around Cooper Netease that brings it to enterprise >> here the other day did a tweet. I called Anthem. I just typing too fast. I got a lot of crap on Twitter for that mission. And those multi cloud has been a big part of where Cubans seems to fit. You mentioned some of the licensing changes. Cloud has been a great resource for a lot of the new Web scale applications from all kinds of companies. Now, with several issues seeing a lot more than capabilities, how do you see the next shift with data State coming in? Because God stateless date and you got state full data. Yeah, this has become a conversation point. >> Yeah, I think Kelsey Hightower has said it pretty eloquently, as he usually does around the sort of the serval ist movement and lets lets developers focus on just their code and literally just their code, perhaps even just their function in just their piece of code, without having to be an expert on all of the turtles all the way, all the way down. That's the big difference about service have having written a couple of those functions. I can I can really invest my time on the couple of 100 lines of code that matter and not choosing a destro choosing a cougar Nati is choosing, you know, all the stack underneath. I simply choose the platform where I'm gonna drop that that function, compile it, uploaded and then riff and rub. On that >> fifth anniversary, Cooper Netease were riffing on Cooper Netease. Dustin Circle here inside the Cube Cube Alumni you were recently at the coop con in overseas in Europe, Barcelona, Barcelona, great city. Keeps been there many times. Do was there covering for us. Couldn't make this trip, Unfortunately, had a couple daughter's graduating, so I didn't make the trip. Sorry, guys. Um, what was the summary? What was the takeaway? Was the big walk away from that event? What synthesized? The main stories were the most important stories being >> told. >> Big news, big observations. >> It was a huge event to start with. It was that fear of Barcelona. Um, didn't take over the whole space. But I've been there a number of times from Mobile World Congress. But, you know, this is this is cube con in the same building that hosts all of mobile world Congress. So I think 8,000 attendees was what we saw. It's quite celebratory. You know, I think we were doing some some pre fifth birthday bash celebrations, Key takeaways, hybrid hybrid, Cloud, multi Cloud. I think that's the world that we've evolved into. You know, there was a lot of tension. I think in the early days about must stay on. Prem must go to the cloud. Everything's there's gonna be a winner and a loser and everything's gonna go one direction or another. I think the chips have fallen, and it's pretty obvious now that the world will exist in a very hybrid, multi cloud state. Ultimately, there's gonna be some stuff on Prem that doesn't move. There's going to be some stuff better hosted in one arm or public clouds. That's the multi cloud aspect, Uh, and there will be stubborn stuff at the edge and remote locations and vehicles on oil rigs at restaurants and stores and >> so forth. What's most exciting from a trans statement? What do you what? What's what's getting you excited from what you see on the landscape out there? >> So the tying all of that to Cooper Netease, Cuban aunties, is the thing that basically normalizes all of that. You write your application put it in a container and expect to communities to be there to scale that toe. Operate that top grade that to migrate that over time. From that perspective, Cooper nineties has really ticked, ticked all the boxes, and you've got a lot of choices now about which companies here, you're going to use it and where >> beyond communities, a lot of variety of projects coop flow, you got service messes out there a lot of difference. Project. What's What's a dark horse? What's something that sets out there that people should be paying attention to? That you see emerging? That's notable. That should be paying attention. To >> think is a combination of two things. One is pretty obvious, and that's a ML is coming like a freight train and is sort of the next layer of excitement. I think after Cooper, Netease becomes boring, which hopefully if we've done our jobs well, that communities layer gets settled and we'll evolve. But the sort of the hockey stick hopefully settles down and it becomes something super stable. Uh, the application of machine learning to create artificial intelligence conclusions, trends from things that is sort of the next big trend on then I would say another one If you really want the dark horse. I think it's around communications. And I think it's around the difference in the way that we communicate with one another across all forms of media voice, video chat, writing, how we interact with people, how we interact with our our tools with our software and in fact, how our software in Iraq's with us in our software acts with with other software that communications industry is, it's ripe for some pretty radical disruption. And you know some of the organizations and they're doing that. It's early early days on those >> changes. Final point you mentioned earlier in our conversation here about how Dev Ops is influencing impacting non tech and computer science. Really? What did you mean by that? >> Uh, well, I think you brought up unexpectedly and that that you were looking at the way Uh, some other industries are changing, and I think that cross pollination is actually quite quite powerful when you take and apply a skill and expertise you have outside of your industry. But it adds something new and interesting, too, to your professional environment. That's where you get these provocative operations. He's really creative, innovative things that you know. No one really saw it coming. >> Dave Ops principles apply to other disciplines. Yeah, agility. That's that's pointing down waterfall based processes. That's >> one phenomenal example. Imagine that for governments, right to remove some of the like the pain that you and I know. I've got to go and renew my license. My birthday's coming up. I gotta go to renew my driver's license. You know much. I'm dreading going to the the DMV Root >> Canal driver's license on the same. Exactly >> how waterfall is that experience. And could we could we beam or Mohr Agile More Dev Autopsy and some of our government across >> the U. S. Government's procurement practices airbase upon 1990 standards they still want Request a manual, a physical manual for every product violent? Who does that? >> I know that there are organizations trying to apply some open source principles to government. But I mean, think about, you know, just democracy and how being a little bit more open and transparent in the way that we are in open source code, the ability to accept patches. I have a side project, a passion for brewing beer and I love applying open source practices to the industry of brewing. And that's an example of where use professional work, Tio. Compliment a hobby. >> All right, we got to bring some cubic private label, some Q beer. >> If you like sour beer, I'm in the sour beer. >> That's okay. We like to get the pus for us. Final question for you. Five years from now, Cooper needs to be 10 years old. What's the world gonna look like when we wake up five years from now with two Cuban aunties? >> Yeah, I think, uh, I don't think we're struggling with the Cooper nutties. Uh, the community's layer. At that point, I think that's settled science, inasmuch as Lennox is pretty settled. Science, Yes, there's a release, and it comes out with incremental features and bug fixes. I think Cuban aunties is settled. Science management of of those containers is pretty well settled. Uh, five years from now, I think we end up with software, some software that that's writing software. And I don't quite mean that in the way That sounds scary, uh, and that we're eliminating developers, but I think we're creating Mohr powerful, more robust software that actually creates that that software and that's all built on top of the really strong, robust systems we have underneath >> automation to take the heavy lifting. But the human creation still keeping one of the >> humans Aaron the look it's were We're many decades away from humans being out of the loop on creative processes. >> Dustin Kirkland, he a product manager of Google Uh, Cooper Netease guru also keep alumni here in the studio talking about the coup. Burnett. He's 50 year anniversary. Of course, the kid was president creation during the beginning of the wave of communities. We love the trend we love Cloud would left home a tec. I'm Sean for here in Palo Alto. Thanks for watching.

Published Date : Jun 6 2019

SUMMARY :

from our studios in the heart of Silicon Valley. I'm John for the host, like you were a Dustin Kirkland product manager and Google friend I've never been in the studio and on the show floor a few times, Great to have you on a great opportunity to chat about Cooper Netease yet of what you do out some product man's You think about how you know Lennox has been around that got the big VC funding became a unicorn, and then containers kind of went into a different direction I mean, the modernization of software infrastructure has been coming for a long time, This has been the rial revelation around the Dev Ops Movement Infrastructures We have the step function difference in the way that lot of the entrepreneurial landscape as well and also has shaped open source and, but now it's in mainstream and it's everywhere, and it's so mainstream that it's almost the defacto What's the news and what's the really that we've we've seen for, you know, at least 25. Att the same time we look at the scale And open source is the model. is as Cooper Netease has established itself and landed in the industry and has adoption. the scale of a Google or a Twitter or Netflix or, you know, some of these massive services that it edge, beyond just the traditional data center and into remote locations that need to deploy manage on the Cooper Netease clustering the some of the tech side. This fits on a single disc, you know, Uh, but yeah, I mean, it's interesting that the hype of of the tech was preceding. That's probably not, er, the old er And that's just the beginning and, you know, I got a lot of crap on Twitter for that mission. I simply choose the platform where I'm gonna drop that that function, Dustin Circle here inside the Cube Cube That's the multi cloud aspect, on the landscape out there? So the tying all of that to Cooper Netease, Cuban aunties, is the thing that basically normalizes all That you see emerging? Uh, the application of machine learning to create artificial What did you mean by that? at the way Uh, some other industries are changing, and I think that cross pollination Dave Ops principles apply to other disciplines. that you and I know. Canal driver's license on the same. And could we could we beam or Mohr Agile More Dev Autopsy the U. S. Government's procurement practices airbase upon 1990 standards they still want But I mean, think about, you know, just democracy and how being a little bit more open and transparent in What's the world gonna look like when we wake And I don't quite mean that in the way That sounds scary, But the human creation still keeping one of the humans Aaron the look it's were We're many decades away from humans being out of the loop on We love the trend we love Cloud would left home

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
MichaelPERSON

0.99+

EuropeLOCATION

0.99+

Dustin KirklandPERSON

0.99+

BarcelonaLOCATION

0.99+

10 yearsQUANTITY

0.99+

SeattleLOCATION

0.99+

SeanPERSON

0.99+

Palo AltoLOCATION

0.99+

DustinPERSON

0.99+

IBMORGANIZATION

0.99+

100 linesQUANTITY

0.99+

JohnPERSON

0.99+

Silicon ValleyLOCATION

0.99+

Lou TuckerPERSON

0.99+

GoogleORGANIZATION

0.99+

LenoxORGANIZATION

0.99+

AmazonORGANIZATION

0.99+

CooperPERSON

0.99+

Cooper NeteasePERSON

0.99+

first halfQUANTITY

0.99+

fiveQUANTITY

0.99+

CoburgLOCATION

0.99+

Cooper NeteaseORGANIZATION

0.99+

DMVORGANIZATION

0.99+

twoQUANTITY

0.99+

IraqLOCATION

0.99+

second halfQUANTITY

0.99+

8,000 attendeesQUANTITY

0.99+

Palo Alto, CaliforniaLOCATION

0.99+

10th yearQUANTITY

0.99+

10 peopleQUANTITY

0.99+

RodelPERSON

0.99+

June 2019DATE

0.99+

Claudia HortonPERSON

0.99+

six years agoDATE

0.99+

33 terabytesQUANTITY

0.99+

HortonPERSON

0.99+

two thingsQUANTITY

0.99+

ClaudiaPERSON

0.99+

1990DATE

0.99+

fifth anniversaryQUANTITY

0.99+

BurnettPERSON

0.99+

EddiePERSON

0.99+

D. C.LOCATION

0.99+

OneQUANTITY

0.99+

uber neteaseORGANIZATION

0.98+

AaronPERSON

0.98+

NetflixORGANIZATION

0.98+

fifth birthdayQUANTITY

0.98+

Next weekDATE

0.98+

TodayDATE

0.98+

single discQUANTITY

0.98+

bothQUANTITY

0.97+

TwitterORGANIZATION

0.97+

Red HatORGANIZATION

0.97+

Cube CubeORGANIZATION

0.97+

five yearsQUANTITY

0.97+

oneQUANTITY

0.97+

Kelsey HightowerPERSON

0.97+

EconomicalORGANIZATION

0.97+

one perspectiveQUANTITY

0.97+

CubansPERSON

0.96+

U. S. GovernmentORGANIZATION

0.96+

many years agoDATE

0.96+

firstQUANTITY

0.95+

late ninetiesDATE

0.95+

one exampleQUANTITY

0.95+

J J Kiss MaticPERSON

0.95+

Cooper NettiePERSON

0.94+

50 year anniversaryQUANTITY

0.94+

ChinaLOCATION

0.93+

Mobile World CongressEVENT

0.93+

CubanOTHER

0.93+

Dave OpsPERSON

0.93+

10 personQUANTITY

0.92+

coupleQUANTITY

0.92+

CoburnORGANIZATION

0.92+

Chris Aniszczyk, CNCF | KubeCon 2018


 

>> From Seattle, Washington, it's theCUBE, covering KubeCon and CloudNativeCon North America 2018. Brought to you by Red Hat, the Cloud Native Computing Foundation, and the its ecosystem partners. >> Okay, welcome back everyone. Live here in Seattle for KubeCon CloudNativeCon 2018, with theCUBE's coverage I'm John Furrier for Stu Miniman. We've been there from the beginning watching this community grow into a powerhouse. Almost a Moore's Law like growth, doubling every, actually six months, if you think about it. >> Yeah it's pretty wild. >> Chris Aniszczyk, CTO and COO of the CNCF, the Cloud Native Computing Foundation, great to see you again. Thanks for coming on. >> Super stoked to be here. Thank you for being with us since the beginning. >> So it's been fun to watch you guys, CNCF has done an exceptional job, I thought, a fabulous job of how you guys have built out a great community, open-source community as the main persona target, but brought in the vendor on terms that really work for open-source, Linux foundation, great shepherding this thing through, now you have, basically, looks like a conference. >> Yeah. >> End user conference, vendors are here, still open-source is pure. The growth has been phenomenal. Just take a minute to give us the update on just some of the stats, massive growth. >> Yeah, sure. I mean you know, we're 8,000 people here today, which is absolutely wild. What's actually crazy is when we planned this event, it was about two years ago when we had to start booking a venue, figuring out how many people may be here. And two years ago we thought 5,000 would have been a fantastic number. Well, we got to 8,000. We have about 1500 to 2,000 people on the wait list that could not get in. So, obviously we did not plan properly but sometimes it's hard to predict kind of the uptake of technology these days. Things just move quickly. I think we've kind of benefited from the turnaround that's happening in the industry right now where companies are finally looking to modernize their infrastructure. Whether it's moving to the cloud or just modernizing things, and that's happening everywhere, from traditional enterprises to internet scale companies. Everyone's looking to kind of modernize things and we're kind of at the forefront of that. >> I mean the challenge of events is, some of it is provisioning, over provision. You don't show up, you want elastic, dynamic, agile-- >> I want the Cloud Native events. >> Programmable space that could just go auto scale when you need it. >> Exactly. >> All kidding aside, congratulations on the success. But one thing we've been covering on SiliconANGLE and theCUBE, and you guys have been actually executing on, is the growth in China in open-source. And it's been around for a while but just the scale, just pure numbers, tell them about the success in China and the impact to the open-source community and business. >> Yeah. We put on our first event in Shanghai, KubeCon China. It was fantastic. We sold out at 2500 people. Always a little bit difficult to do your first event in China. I have many stories to share on that one, but the amount of scale, in terms of software deployment there are just fascinating. You kind of have these companies like ofo, is like a bike sharing system right. You know in China they have hundreds of millions of these bicycles that they have to kind of manage in an infrastructural way. The software that you use to actually do that has to be built very well. And so the trend that we're actually seeing in CNCF now is about 10%, we have three projects that were born in China, dealing with China-scale problems. So one of those projects is TiKV, which is kind of a very well fine-tuned built distributed key value store that is used by a lot of the Chinese com providers and folks like ofo and LME out there that are just dealing with hundreds of millions of users. It's fascinating. I think the trend you're going to see in the future is there's going to be more technology that is kind of born dealing with China-scale issues, and having those lessons being shared with the rest of the world and collaborate. One of the goals in CNCF for us is to help bridge these communities. In China about 25% of our attendance was international, which was higher then we expected. But we had dual live simultaneous translation for everyone, to kind of try to bridge these... >> It's a big story. The consumption and the contribution side is just phenomenal. >> China is our number two contributor to all CNCF projects, it's very impressive in my opinion. >> So Chris there was a lot in the keynote. I wondered, give us a little insight, it's different for a foundation in open-source communities than it is for company when you talk about the core product being Kubernetes and then all these other projects, you've got the incubating projects, the ones that have been elevated, new FCD comes into it, how do you do the juggling act of this? >> Honestly, the whole goal of the foundation is basically to cultivate and sustain, and kind of grow projects that come in. Some are going to work and be very successful, some may never leave the sandbox, which is our early stage. So today I was very excited to finally have etcd come as an official incubating project. This is our 31st project, which is a little bit wild, since we started, it was just Kubernetes. We had other projects that moved from, say, sandbox to incubating. So in China, one of our big announcements was Harbor, which is a container registry, or actually, technically, we call it a Cloud Native Registry, because it does support things like helm charts, it doesn't only host container-based artifacts. It moved up to the incubating level and that is being embedded. It's in all of Cloud Foundry's and Pivotal's products. It's used by some cloud providers in China as their kind of registry as a service. Like their equivalent to ECR or GCR, essentially. And we've just seen incredible growth across all of our projects. I mean, we have three graduated projects. Envoy recently, which you saw Matt, Constance, and Jose on stage a little bit to talk about. To me, what I really like about Envoy and Prometheus, these are two projects that were not born from a vendor. You know. Envoy came from Lyft because they were just like, you know what? We're not happy with our current kind of reverse proxy, service proxy situation, let's build our own open-source and kind of share our lessons. Prometheus, born from SoundCloud. So I think CNCF has a good mix of, hey, we have some initial vendor-driven projects, like Kubernetes came from Google but now it's used by a ton of people. But then you have other projects that were born from the end-user community. I think having that healthy mix is good for everyone. >> I think the DNA of that early on in the culture has been a successful one for you guys. Not being vendor-led, being end-user led, but vendors can come in and participate. >> Yeah, absolutely. >> So talk about the end-user perspective because we're very interested, a lot of people are interested in end-user. What are they doing with it? It used to be a joke. I stood up a bunch Hadoop but what are you using it for? What are people using Kubernetes for? You've got Apple, Uber, Capital One, Comcast, GoDaddy, Airbnb. They're all investing in Kubernetes as their main stack. >> And CNCF projects, not only Kubernetes. >> But what does that mean when they say Kubernetes as a stack? It's kind of been encapsulated to include other things. People are looking at this as a real alternative. Can you explain what that is about? >> So, I think people have to realize that CNCF is essentially more than just Kubernetes. Cloud Native is more than just Kubernetes. So what we'll see is, take a company like Lyft. Lyft did not start using Kubernetes, they are kind of on that migration path now but Lyft started to use Envoy, Prometheus, gRPC, other technologies that kind of lead them to that Cloud Native journey that eventually they're like, you know what? Maybe we don't need our homegrown orchestrator. We'll go use that. And use, (huffs) Everyone falls in differently in kind of a community. Some people start with Kubernetes and eventually subsume the other kind of ancillary projects. >> This is what the project cloud is about. Let me rephrase the question. So when people say, because this is a real trend we've been reporting on this, the CNCF stack, people have language semantics on how that's couched. Oh, on the Kubernetes-- >> I don't like stack because it means there's one proscribed solution, where I think it's more like an a la carte model. >> Well if I quote the CNCF stack, if there was a word for it, as an alternative, as a solution base with Kubernetes at the core of it, right. Okay, cool. What is that usage being looked like? How is that developing? How are end users looking at the CNCF holistically with Kubernetes at the core? >> So we have one of the largest end-user communities out there of any open-source foundation. We have about 80 members. When we talk to them directly, why are they adopting CNCF projects and technology? Most of the time is they want to deploy software faster, right? They want to use modern CICD tools and just development patterns. So it's all about faster time to market and making the developers lives easier so they're actually able to deliver business customer value. And it's basically similar to a whole DevOps mantra, right. If I could ship software faster and it's easier for my developers to get stuff done, I'm delivering value to whatever my end-user customer is at the end of the day. If you go to the CNCF end-user website, we have case studies from Nordstrom, Capital One, I think Lyft is there. Just a bunch of people that, we moved to these technologies because it improved the way we could monitor software, how fast we could ship. It's all about faster time to market, and modernizing their infrastructure. >> Chris, give us a little bit of a view coming forward. We're on 1.13 for Kubernetes, if I read it right. The contribution slowed down a little bit because we're actually reaching a level of maturity. >> Kubernetes is boring and mature. >> What do you see as we come, other than continued growth? >> So I think the wider ecosystem is going to continue to grow. So if you actually look at Kubernetes directly, it has been very focused on moving things out of the core as much as possible and trying to force people to extend things. I don't know if you saw, Tim Hockin had this great talk in terms of how all the Kubernetes components are either being ripped out or turned into custom resource definition of CODs. Basically trying to make Kubernetes as extensible as possible. Instead of trying to ram things into Kubernetes, hey, use the built in extensibility layer. >> Decompose a little bit. >> Decompose and the analogy here would be like kernel space versus user space if you're going to Linux. All the exciting things tend to happen in user space these days but, yeah, the kernel is still important, actively contributed to by a ton of people, very critical, everything. But a lot of the action happens in user space. And I think you'll see the same thing with Kubernetes, where it will kind of become like Linux where the kernel of Kubernetes, very stable, mature, focused on basically not breaking and trying to keep it as simple as possible and built good extensibility mechanisms so folks could plug in whatever systems. We saw this with storage in Kubernetes. A lot of the initial storage drivers, flex volume stuff, was baked into the Kubernetes with a new effort called the container storage interface. They all pulled that out and made they basically built an extensibility mechanism so any company or any project could bring in their storage solution. >> One of the key trends we're seeing, obviously, in cloud is automation. We see serverless around the corner, you see all these things going on around the cool things you guys are building. As automation continues to move down the track, where is that going to impact and create value for customer end-users as they roll with the CNCF? So Kubernetes at some point could be auto, why even be managing clusters? Well, that should be automated at some point. >> I mean, hey, you could do it both ways. A lot of people love the managed service approach. If I could pay a large hyper-scale cloud provider to manage everything, the more the merrier. Some want the freedom to roll their own. Some may want to pay a vendor, I don't know, Red Hat OpenShift looks great, let's pay them to help manage data. Or I just roll alone. And we've seen it all. You know it really depends on the organization. We've seen some very high end banks or financial institutions that have very good technical chops. They're okay rolling on their own. Some may not be as interested in that and just pay a vendor to manage it. >> It's a choice issue. >> For us it's all goodness, whatever you prefer. I think longer term we'll see more people, just for the convenience of managed services, go that route. But for CNCF Kubernetes there's multiple ways to do it; you could go Vanilla, you could go Managed Service, you could go through a vendor like Rancher or OpenShift. The cool thing about all these things is they all are conformant to the Kubernetes certified program, so it means there's no breakage or forking, everyone is compliant. >> So for the people that are watching that couldn't make it here or are on the waiting list, or doing LobbyCon. >> I'm sorry, I'm sorry for the waiting list. >> This is actually a good venue to do LobbyCon, there's places to meet here. I know a lot of people actually in town kind of LobbyCon-ing it. But for the people that aren't here, what's the most important story that's being told? I know we're not being talked about. What is happening here? What should people know about this year? In your mind's eye, in your understanding of the program, and how it's developed early on, what's the most important thing? >> I think in general CNCF, Cloud Native, Kubernetes all have matured a lot in the last three years, especially the last 12-18 months, where you've seen... Earlier it was all about technical-savvy folks scratching their itch. Now the end-users that I'm talking to, you have like Maersk, what does Maersk do? They actually ship containers, right? But now they are using Kubernetes to manage containers on the containers. >> They're in the container business. >> I'm seeing traditional insurance companies. So I think what we're doing is we're basically hitting, we're kind of past that threshold of early adopters and tinkerers, and now we're moving to full-blown mainstream adoption. Part of that is the cloud providers are all offering Managed Kubernetes, so it's convenient for companies that move in the cloud. And then on the distro front, OpenShift, PKS, Rancher, they're all mature products. So there's just a lot of stability and maturity in the ecosystem. >> Just talking about the mature stuff, give us your take on Knative. What should people be looking at that? How does Serverless fit into all this? >> So Serverless, you know we love Serverless in CNCF. We just view it as another kind of programing model that eventually runs on some type of containerized stack. For us at CNCF, we have a Serverless working group that's been putting out whitepapers. We have a spec around cloud events standardized. I think Knative is a fantastic approach of how to basically build a, kind of like CNCF where it's a set of components that you can use to build your own serverless framework. I think the adoption has been great. We've actually been talking to them about potentially bringing in some components of Knative into CNCF. I think, if you want to provide your own serverless offering, you're going to need the components in Knative to make that happen. I've seen SAPs picked up on it. GitLab just announced a serverless offering based on Knative today. I think it's a great technology. It's still very early days. I think serverless is great and will be continually used, but it's one option of many. We're going to have containers, we're going to have serverless, we're going to have mainframes. It's going to be a mix of everything. >> I'm old enough to remember the old client server days when multi-vendor was a big buzz word. Multi-cloud now is a subtext here. I think that one of the big stories in issue of the maturity is that you're starting to see people, I want choice. And hybrid-cloud is the word today but I think ultimately people view it as a multi-cloud environment of resource. >> So one interesting thing about KubeCon, I think one of our reasons that we've grown so much is if you look at it, there's really no other event you can go to that is truly multi-cloud. You have all the HyperScale folks, you've got your end-users and vendors in one area, right? Versus you going to a vendor-specific event. So I think that's kind of been part of our benefit and then luck to kind of stumble in this where everyone is in the same room. I think next year, big push on bringing all the clouds. >> Well, Chris, thanks for spending the time. I know you're super busy. CTO and COO of the CNCF, really making things happen. This is a real, important technology wave, the cloud computing, and having the kind of choices in ecosystem around open-source is making it happen. Congratulations to your success. We're going to continue coverage here. Day one of three days of CUBE coverage. I'm John Furrier for Stu Miniman. Stay with us for more after this short break. (light music)

Published Date : Dec 11 2018

SUMMARY :

and the its ecosystem partners. the beginning watching and COO of the CNCF, Super stoked to be here. So it's been fun to watch you guys, on just some of the stats, massive growth. kind of the uptake of I mean the challenge of events is, auto scale when you need it. and the impact to the open-source One of the goals in CNCF for us The consumption and the contribution side contributor to all CNCF projects, a lot in the keynote. goal of the foundation early on in the culture So talk about the end-user perspective It's kind of been encapsulated and eventually subsume the other Oh, on the Kubernetes-- I don't like stack at the core of it, right. Most of the time is they want bit of a view coming forward. in terms of how all the All the exciting things tend to happen One of the key trends we're seeing, A lot of people love the just for the convenience of So for the people that are watching for the waiting list. But for the people that aren't here, in the last three years, Part of that is the cloud providers Just talking about the mature stuff, of how to basically build a, And hybrid-cloud is the word and then luck to kind of stumble in this CTO and COO of the CNCF,

SENTIMENT ANALYSIS :

ENTITIES

EntityCategoryConfidence
ChrisPERSON

0.99+

Tim HockinPERSON

0.99+

ChinaLOCATION

0.99+

ComcastORGANIZATION

0.99+

Chris AniszczykPERSON

0.99+

SeattleLOCATION

0.99+

MattPERSON

0.99+

AppleORGANIZATION

0.99+

Cloud Native Computing FoundationORGANIZATION

0.99+

John FurrierPERSON

0.99+

JosePERSON

0.99+

Red HatORGANIZATION

0.99+

Capital OneORGANIZATION

0.99+

UberORGANIZATION

0.99+

ConstancePERSON

0.99+

LyftORGANIZATION

0.99+

NordstromORGANIZATION

0.99+

ShanghaiLOCATION

0.99+

5,000QUANTITY

0.99+

AirbnbORGANIZATION

0.99+

8,000QUANTITY

0.99+

31st projectQUANTITY

0.99+

next yearDATE

0.99+

CNCFORGANIZATION

0.99+

first eventQUANTITY

0.99+

GitLabORGANIZATION

0.99+

8,000 peopleQUANTITY

0.99+

two projectsQUANTITY

0.99+

2500 peopleQUANTITY

0.99+

oneQUANTITY

0.99+

PrometheusTITLE

0.99+

KubeConEVENT

0.99+

three daysQUANTITY

0.99+

OpenShiftORGANIZATION

0.99+

LobbyConEVENT

0.99+

six monthsQUANTITY

0.99+

RancherORGANIZATION

0.99+

KubernetesTITLE

0.99+

todayDATE

0.98+

Stu MinimanPERSON

0.98+

ofoORGANIZATION

0.98+

PKSORGANIZATION

0.98+

both waysQUANTITY

0.98+

LMEORGANIZATION

0.98+

GoDaddyORGANIZATION

0.98+

Seattle, WashingtonLOCATION

0.98+

GoogleORGANIZATION

0.97+

about 25%QUANTITY

0.97+

EnvoyTITLE

0.97+

two years agoDATE

0.97+

about 80 membersQUANTITY

0.97+

CloudNativeCon North America 2018EVENT

0.97+

this yearDATE

0.97+

2,000 peopleQUANTITY

0.97+

OneQUANTITY

0.96+

Cloud NativeORGANIZATION

0.96+

KnativeORGANIZATION

0.96+

one areaQUANTITY

0.96+

PivotalORGANIZATION

0.96+

MaerskORGANIZATION

0.96+