Google Anthos Migrate Hot Take

4:04 · Watch on YouTube ↗

Transcript 509 words · about 3 min to read

Auto-generated captions from YouTube, not hand-corrected, so names and technical terms may be imperfect. The video is authoritative.

[Music] modernize your applications by moving them to containers where have we heard that story before oh yeah docker con circa three years ago Google announced Google anthos migrate for helping you to migrate applications or modernize applications from legacy virtual machine bare metal based architectures into cloud native magical containers you know what I'm torn I really like the idea or the technology behind being able to migrate components of a traditional monolithic application into containers the advantages are there the ability to manage images versus vm's the ability

to abstract away the application code from the operating system and allowing you to rapidly deploy and manage IDs and a much more modern process see ICD versus whatever you were doing before being able to change the technology is a catalyst to changing your methodology to the point the technology then the economics around running in containers versus a VM when you lift and shift to the cloud a VM to VM mapping is usually much more expensive we've talked about that on this channel versus moving into containers

Netflix has shown how you can optimize for cloud ec2 instances by putting multiple for like for like containers inside every single ec2 is it's better optimizing your cloud spin so I like that story I think Google did a poor job of telling that story but that is a pretty good advantage however what they didn't talk about is the operational complexities around just simply moving vm's into containers there's a reason why docker failed at getting a mass number of customers to do that other than the docker

business issues there's the challenge around let's say security when I take an application that's designed to be isolated in a kernel and then put that inside of a container I'm changing the security profile of the applications infrastructure the application isn't necessarily aware that it's in a container versus a dedicated kernel and from a security operations perspective that hard shell that we normally have around applications based on VMs have to move to a container model that's not a simple solution to find so while I saw one

security challenge when it comes to patch management I introduced another one when it comes to clip collision domains and when it comes to security between lifelike applications if I put a bunch of web servers on a single ec2 instance I can kind of put that shell around the VM that's VMware's approach or if I adopt NSX T and that technology I can again extend my data center like concepts to containers but does it truly help versus hamper my desire to eventually move to cloud native you

know what a roll a piece on this on the CTO of Iser com I'll provide a link in the comments session but I'd love to hear your feedback you can again see that and other content on the CTO of Iser comm you can follow me on the web at CTO advisor talk to you next CTO DOS