46
新一代數據資料及安全方案 Data Storage and Security of the New Era Present by Raymond Chan Imation Hong Kong Limited B2B Team

Data Storage and Security of the New Eraitrcforum.hkcss.org.hk/user_files/itrcforum/1450-1515_Imation.pdfApr 10, 2012  · RDX vs Tape Media Comparison (Single Drive) 32 Imation Corporate

  • Upload
    others

  • View
    0

  • Download
    0

Embed Size (px)

Citation preview

  • 新一代數據資料及安全方案 Data Storage and Security of the New Era

    Present by

    Raymond Chan Imation Hong Kong Limited – B2B Team

  • Imation Corporate Overview 2012 2

    Imation Past…..

    1950s (3M) 1st Computer Tape

    with IBM

    Open Reel

    1980s (3M) Developed w/IBM

    3480, 3490, 3490E

    1990s Developed w/IBM

    3590, 3590E

    1990s Developed w/StorageTek

    9840, 9940

    2000s Developed w/StorageTek

    T10000

    http://www.flickr.com/photos/vax-o-matic/5773966155/in/set-72157626709797433

  • Imation Corporate Overview 2012 3

    Imation at a Glance

    > Spinoff from 3M since 1Jul,1996

    > Headquartered in Oakdale, MN

    > NYSE : IMN

    > 2011 revenue of $1.29 billion

    > Portfolio of global brands: Imation, TDK Life on Record, Memorex, XtremeMac, MXI, IronKey

    > Focused on Storing, Protecting, and Connecting digital information

    > Main product categories are Traditional Storage, Secure & Scalable Storage, and Audio & Video Information

    > Strong financial position, ended 2011 with $223 million in cash, no long-term debt.

    A global Scalable Storage

    and Data Security Company

  • Imation Corporate Overview 2012 4

    Success Factors

    Strategic Actions Since 1996

  • Imation Corporate Overview 2012 5

    BUSINESS CONTINUITY AND DISASTER DATA RECOVERY SOLUTIONS

    Other Markets Financial Services Healthcare

    $24.3B

    $39B

    Government

    Worldwide Industry IT Spending

  • Imation Corporate Overview 2012 6

    Storage Hardware & Media Market

    (excludes Data Center and High-End, Enterprise Class NAS/SAN storage)

    Source: Worldwide Total NAS Revenue Forecast (price band less than $5000), Gartner, 2011

    6.5% CAGR

    Up to $ 631 million

  • Imation Corporate Overview 2012 7

    • 43% used external USB hard disk drives

    • 38% used tape products

    • 17% did not back up their critical

    business data

    • 1% used optical (CD/DVD) media

    Critical Business Data Backup Practices

    Backup Practices

  • Imation Corporate Overview 2012 8

    Hardware Failure

    DATA PROTECTION CHALLENGES

    • PC disk drives are mass produced

    • Every drive will fail, eventually

    • Data recovery costs ($500 - $1500)

    • Viruses and data corruption happen all too often

    • Slipped by virus checker

    • Renders machine unusable

    • Accidental deletion

    • Misplaced files

    • Overwritten files

    • If failure happens, time and effort are painful and stressful

    • Often, failure can’t be completely recovered

    • Not enough time

    • Not enough people

    • Limited expertise

    • Limited budgets

    Viruses & Data

    Corruption

    Human Error

    Negative Business Impact

    Limited Resources

  • Imation Corporate Overview 2012 9

    Business Objectives for Data?

    • Productivity

    • Communications

    • Vendor management

    Low-cost storage for old projects and information

    • De-clutter systems

    • Reduce backup size

    • Re-use assets

    • Protect the business

    • Mitigate business risk

    • Reduce impact of loss

    Protect company, project and customer data

    Consolidate and centralize information for easy access

  • Imation Corporate Overview 2012 10

    > Simple setup, low maintenance and ease-of-use for lower total cost of ownership (TCO)

    > Provide on-site copies of data for fast full restores

    > Delivers offsite copies of data for disaster recovery and compliance

    > 24 x 7 global access to digital assets

    What is yours consideration?

  • Imation Corporate Overview 2012 11

    How is storage going?

    Performance Capacity

    Network

    Computing

    Storage Media

    Cloud

    Tape

    Disk

    Server

    Pe

    rfo

    rma

    nce

    Capacity

    Storage architectures and platforms able to incrementally increase

    performance and capacity without major system revisions or updates.

  • Imation Corporate Overview 2012 12

    Storage Market Player Positioning

    Price

    Low Medium High

    Fea

    ture

    Se

    t

    Low

    Medium

    High

    SOHO +

    Very Small

    (

  • Imation Corporate Overview 2012 13

    • Ease of Use

    • Security • Policy & Data Management

    • Efficiency

    • Performance

    • Availability

    Imation Scalable Storage Advantage

    Price

    Low Medium High

    Fea

    ture

    Se

    t

    Low

    Medium

    High How Imation will migrate value within its appliances? (from to )

    1

    2

    1 2

  • Imation Corporate Overview 2012 14

    Technology Solutions are required

    Spanning the entire Data Life Cycle

    PRIMARY

    STORAGE

    Focus of most

    storage companies

    DATA LIFE CYCLE

    Create, Capture

    & Acquire

    Manage

    Share

    Store

    Protect

    Archive

    Index

    Search

    Find

    Retrieve

    Destroy

    IMATION FOCUS AREAS

  • Imation Corporate Overview 2012 15

    Enterprise Unified Storage System

    http://www.infortrend.com/main/1_about/RoHs.asp

  • Imation Corporate Overview 2012 16

    iNAS Portfolio

    4-bay 5-bay 12-bay

    Tower

    Rackmount

    iNAS 500

    iNAS 1100 2 x 1Gbps E

    iNAS 1310 2 x 1Gbps E

    iNAS 1510 2x 1Gbs E + 2 x 10Gbs E

    Scalable 8-bay

    iNAS 3220 4x 1Gbs E

    iNAS 3300 4x 1Gbs E + 2 x 10Gbs E

    iNAS 3500 4x 1Gbs E + 2 x 8Gbs FC

    Intel Dual Core Processor with 4GB Cache

    - Intel Xeon CPU

    with 8GB cache

    - Support Intermix

    SSD, SAS, SATA

    - Scale up to 120ea

    http://www.infortrend.com/main/1_about/RoHs.asp

  • Imation Corporate Overview 2012 17

    Data Protection: Snapshot

    > Supports both system snapshot and data snapshot

    > Snapshot images can be used for system OS rollback, volume rollback and file recovery

    System snapshot, supports rolling back system OS to the previous state

    Data snapshot, supports restoring a specific file or rolling it back to

    the previous state

  • Imation Corporate Overview 2012 18

    1. Block Level replicate to another iNAS (Sync. or A.Sync. by iSCSI)

    2. Folder Level replicate to another storage (R.Sync with SSH 128-bit encrypted transmission)

    3. Pool Mirror (Pool to Pool replication between two iNAS storage)

    Disaster Recovery

    FC or TCP/IP

    Remote Replication / Pool Mirror

    iNAS iNAS

  • Imation Corporate Overview 2012 19

    Multi layer data protection for multi locations

    WAN

    Multiple offices

    Offline Storage

  • Imation Corporate Overview 2012 20

    Thin Provisioning

    > Capacity is dynamically allocated when data blocks are written

    > Cost benefits

    • Delay equipment acquisition

    • Optimize capacity utilization:

    30-40% 80-90%

    • Reduce power, space and cooling expenses

    >Management benefits

    • Expand volume without downtime

    • Simplify capacity planning

    • Eliminate effort involved in monitoring

    utilization of individual volumes

  • Imation Corporate Overview 2012 21

    De-duplication

    • In-line block-level data de-duplication

    • Supported on both shared folders and iSCSI volumes

    Office files Backup Server DB Server

    iNAS De-duplicated Volume

    ~40% space saving

    ~25% space saving

    ~50% space saving

    ESX Server

    ~70% space saving

    Mail Server

    ~90% space saving

  • Imation Corporate Overview 2012 22

    Access Control Management

    > Comprehensive Access Control Management

    > Supported Sub-folder Based Access Control

    > Full access control by user or group for all levels of sub-folder

  • Imation Corporate Overview 2012 23

    W.O.R.M (Write-Once-Read-Many)

    • Secure data storage to meet strict regulatory requirements.

    • Flexibility to use a single storage platform to store both

    compliance based data along with data that can be archived.

    • Future proof flexibility with the ability to convert to WORM at

    any future time if regulations or requirements change.

    • Seamlessly works with archiving application retention

    policies and backup software.

  • Imation Corporate Overview 2012 24

    ICAP-based Anti-Virus Support

    NFS/CIFS Clients

    Scan Engine Issue a Read request

    2 1 If necessary, transfer the file to be read for scanning

    3 No virus: Return the file to iNAS Virus found: Clean or quarantine the file (based on scan engine policy), and return it to iNAS

    Answer the Read request

    4

    • Enable virus scanning via ICAP-based communication with remote scan engines User-configurable max. file size and extension types to scan

  • Imation Corporate Overview 2012 25

    Disk Roaming

    > In case of system upgrade or system failure, users can simply insert the hard disks into another iNAS storage system; after minutes of importing process, all data and settings will be recovered

    > Not necessarily the same model

    > No drive order limitation

  • Imation Corporate Overview 2012 26

    iNAS Benefit – Cost-effective (No License Fee)

    > Comprehensive data services at no additional costs

    Users and groups

    Dashboard for real-time analytics

    Quota management

    NIS, LDAP and AD

    SNMP

    Email notifications

    NFS v3 and v4

    CIFS

    AFP

    HTTP/HTTPS

    FTP

    NDMP v4

    iSCSI

    Fiber Channel

    De-duplication

    SSD acceleration

    Virtualized storage pool

    Thin Provisioning

    Snapshots

    Remote Replication (with encryption)

    Compression

    Redundant and hot swappable PSU

    Hot swappable drives

    RAID Protection

    Management Data Protocols Data Services

    Availability

  • Imation Corporate Overview 2012 27

    Tape?

    HDD?

    RDX

    Our Core Competence

  • Imation Corporate Overview 2012 28

    RDX Market Trend

    Source: IDC RHDD Report

  • Imation Corporate Overview 2012 29

    RDX Market Trend

    34% CAGR 24% CAGR

  • Imation Corporate Overview 2012 30

    Multiple capacities &

    backwards compatibility:

    320GB, 500GB, 640GB &

    750GB, 1TB, 1.5TB offerings

    Write Protection: To prevent

    accidental data deletions

    Shock-resistant case:

    Tough enough to

    withstand a one-meter fall

    Removable/portable: Take

    offsite for data protection

    Robust 2.5” hard drive:

    500,000 hours of MTBF

    for superior reliability

    Enterprise-class removable disk storage media for

    data back-up, protection, retention and restoration

    RDX Cartridge

    150+MB/s transfer rate

  • Imation Corporate Overview 2012 31

    RDX vs Tape Media Comparison (Single Drive)

  • Imation Corporate Overview 2012 32

    Broad Industry Support

    4/10/2012 32

    http://www.google.com/imgres?imgurl=http://para08.idi.ntnu.no/images/ibm-logo-org.jpg&imgrefurl=http://para08.idi.ntnu.no/images/&h=257&w=512&sz=33&tbnid=LYYB_KU5vj02fM:&tbnh=66&tbnw=131&prev=/images?q=ibm+logo&hl=en&usg=__SmmnoKfg3ZdBmxpimXRRFElUt7k=&ei=7ZMGTMGlJYHCNeqSxI8J&sa=X&oi=image_result&resnum=3&ct=image&ved=0CAoQ9QEwAghttp://www.nec.com/http://www.actidata.com/en/home.html

  • Imation Corporate Overview 2012 33

    Holds up to 8 cartridges simultaneously: 12TB storage with 1.5TB cartridges

    Network attach via iSCSI 1Gbps connection

    Table top or 2U Rack Mount

    Up to 150 MB/sec. throughput

    RDX A8 Disk Library / Virtual Tape Library

    Offline Storage

  • Imation Corporate Overview 2012 34

    A8 LTO VTL Advantages

    Backup Software support:

    • Symantec System Recovery (SSR)

    • Symantec Backup Exec.

    • Symantec Netbackup

    • CA ArcServe

    • CA D2D

    • CommVault Simpana

    • Quest NetVault

    • IBM TSM

    • IBM TSM Fastback

    • Windows Server Backup

    Backup Tape Mode JBOD Disk Mode

  • Imation Corporate Overview 2012 35

    A8 Performance

    35

    Tape Mode

    JBOD Mode

  • Imation Corporate Overview 2012 36

    Our Mobile Security Focus

    Data Encryption

    Secure Workspace Central Management Cloud Based Control

  • Imation Corporate Overview 2012 37

    Market Situation – Summary

    DATA GROWTH The growth of digital information has rapidly surpassed

    expectations.

    By 2011 digital universe will be 10 times size of 2006

    INCREASED DATA MOBILITY The importance of data has increased its access and mobility

    requirements making it more difficult to secure and protect

    INCREASED DATA BREACHES As data and its mobility grow, the amount of data breaches and

    data exposure has also grown

    REGULATIONS INCREASING Increased data exposure has resulted in increased regulations

    and reporting requirements globally

    U.S. 2010 > 662 Breaches2

    COST OF DATA BREACHES GROWS Increased reporting requirements and increased data breaches

    results in increased breach costs

    U.S. 2010

    $7.2 Million3 Average org. cost of data breach over 4 years

    $214 per record3

    1Source: IDC – The Diverse and Exploding Universe – March 2008 2Source: Identity Theft Resource Center – 2010 Data Breach Stats January 3, 2011 3Source: Ponemon Institute - 2010 Annual Study: U.S. Cost of a Data Breach – March 2011

    1

    412 (62%) Exposed Social Security Numbers

    170 (26%) Exposed Credit or Debit Cards

  • Imation Corporate Overview 2012 38

    >Protection and compliance requirements continue to increase

    – HIPPA, SOX, FIPS (Global)

    >Data loss or theft can cost millions -- or even billions

    Increasing Security and Compliance Driving Need

    for “Protected” Storage

    38

  • Imation Corporate Overview 2012 39

    Data Breaches in Hong Kong

    4月21日 遺失USB 瑪院再爆洩私隱

    再有醫院遺失載有病人私隱的USB「記憶體手指」。瑪麗醫院表

    示,該院兒科一名文員於周一發現遺失一隻USB「手指」,當中

    一個檔案載有十九名兒科病人姓名及身份證號碼,但無密碼保護

    或加密系統。

    10月21日 食環署查失 USB手指

    食環署昨證實,一名九龍區小販管理隊人員早前遺失一隻

    USB記憶手指,載有員工表現評核報告及…

    12月12日 香港海關就人員遺失USB記憶體事件致歉

    香港海關承認,一名人員早前遺失一個私人的USB記憶體,當中

    載有內部參閱文件,包括有個人資料等。海關就事件深表歉意,

    強調會嚴肅處理,如果發現有人員違反相關的指引,會按既定程

    序處理,包括紀律處分。

    Y2010 Y2011

  • Imation Corporate Overview 2012 40

    The Federal Information Processing Standards (FIPS) 140-2 U.S. government

    security standard that specifies requirements for cryptography modules

    • FIPS is required by law for U.S. government purchases

    • Strictly enforced in Canada

    • Gaining international recognition in Asia and Europe

    • Being adopted within regulated industries (e.g. Financial, Healthcare)

    FIPS 140-2 Level 1

    The lowest level, imposes very limited requirements; loosely, all components must be "production-grade" and various egregious kinds of insecurity must be

    absent

    FIPS 140-2 Level 3

    Adds requirements for physical tamper-resistance and identity-based authentication, and for a physical or logical separation between the interfaces by which

    "critical security parameters" enter and leave the module, and its other interfaces

    FIPS 140-2 Level 2 Adds requirements for physical

    tamper-evidence and role-based authentication.

    FIPS 140-2 Level 4

    Makes the physical security

    requirements more stringent, and

    requires robustness against

    environmental attacks. Level 4 is

    currently not being utilized in the market

    Description of FIPS 140-2 Four Levels

    FIPS BASICS

    Imation Solutions are FIPS 140-2 Level 1 or Level 3 Validated

  • Imation Corporate Overview 2012 41

    FIPS 140-2

    LEVEL 1 (SW)

    ONE-FACTOR

    FIPS 140-2

    LEVEL 3 (HW)

    ONE-FACTOR

    FIPS 140-2

    LEVEL 3 (HW)

    TWO-FACTOR

    F100 & F150

    2GB - 64GB

    F200, Biometric +

    2GB – 64GB

    H100

    320GB – 1TB

    Optical CD, DVD & Blu-Ray

    700MB, 4.7GB & 25GB

    H200 + Biometric 320GB – 1TB

    Hardware Overview

    Enterprise & Personal

    S200 + D200 2GB – 32GB

    2GB – 32GB

    Basic S200 + D200

  • Imation Corporate Overview 2012 42

    Defender Central Management

    AD Integration

    Centralized Provisioning and Management

    Security Policies

    User Rescue

    Report and Auditing

    F100

    F150

    F200

    H100

    H200

  • Imation Corporate Overview 2012 43

    Microsoft Windows 8 – Windows To Go (WTG)

    > Windows To Go enables enterprises to provision a full corporate environment – that people can boot and run from on multiple computers – on a USB drive.

    > Microsoft Windows 8 will be launched this October.

    > Windows To Go (WTG) is brand-new function of Windows 8 and available to boot up Windows 8 from USB Memory or External HDD

  • Imation Corporate Overview 2012 44

    Imation “PC on a stick” device

    > CERTIFIED BY MICROSOFT BY 15TH OCT

    > CAPACITIES - 32GB, 64GB, 128GB

    > HARDWARE - USB 3.0 high speed

    > PERFORMANCE

    • Max Average - Read: 350+ MB/s, Write: 250+ MB/s

    > WATERPROOF - MIL-STD-810F

    > SECURITY FEATURES

    • PASSWORD PROTECTION (BIT LOCKER)

    • AUTOMATIC DATA PROTECTION FROM BREACH AND CORRUPTION UPON DEVICE REMOVAL

    • 128-BIT OR 256-BIT AES FULL DISK ENCRYPTION

    > TEMPERATURE

    OPERATING: 0° C, +70° C STORAGE: –40° C, +85° C

    > OPERATING SHOCK - 16G RMS

  • Imation Corporate Overview 2012 45

    Advantages

    • Marshal some of the most advanced authentication and encryption technologies available today

    • Options to meet customers’ unique work styles, security and management needs

    • Built upon Imation’s pioneering expertise with Windows mobile workspaces

    • High-quality components, made in USA

    • Rigorous QA testing

    Standard • Simple and affordable

    • IronKey dependability

    • Automatically protect data

    upon removal

    • Microsoft BitLocker

    encryption

    Imation “PC on a Stick” Family

    High Secure Adds

    • AES 256bit Hardware

    encryption, high-

    security architecture

    • FIPS 140-2 Level 3

    certified

    • Advanced add-on

    features including

    CAC/PIV authentication

    • Advanced malware

    protection

    Secure Adds

    • AES 256bit Hardware

    encryption

    • Expandable via custom

    add-ons including

    Crossover Storage and

    Identity

    • Optional mass

    provisioning and device

    management

    • Metal case

  • Imation Corporate Overview 46