Development of a centralised logging platform based on the ELK stack (Elasticsearch, Logstash, Kibana).
Incl. conceptual design and presentation of advantages and disadvantages as well as advice to the client on possible applications and implementation.
Provide 3rd level support to ensure technical operations, including incident and problem management.
Additional topic: Migration concept for cloud-based infrastructure (OpenStack/Docker) developed.
Design, construction and long-term maintenance of a central high-availability logging cluster
General overview:
Project times:
In a heterogeneous IT landscape with Linux and Windows systems as well as various applications and network devices, all security-relevant logs are to be collected, evaluated and, if necessary, alarmed at a central point.
For this, it is necessary to connect various log sources and normalise the data. For fail-safety, all components are set up to be highly available.
Among others, the following are used:
Expert deployment in a DevOps team that built and runs a large container cloud based on Consul, Nomad and Vault running AI software.
Tasks in detail:
The existing Microsoft-based monitoring was replaced by an open source solution under the company's own responsibility. In the process, a highly available and distributed monitoring system was set up across several security zones. The configuration data (monitoring targets) are imported, processed and imported from the customer's CMDB via an automation system set up in-house. Via special rights configurations, role models and responsibilities, all monitoring users receive their own views and notifications from the monitoring.
The monitoring data is stored in a highly available and distributed database that was built by our team especially for this project. Performance data is stored in a cluster of TimeSeries DBs. A reporting interface including data preparation was also implemented for the customer.
After setting up the new monitoring platform, a professional operation was established for it, including support within the framework of SLAs.
Approximately 5,000 servers with around 80,000 services (checks) are monitored. The rollout and configuration of our monitoring components is done via automation.
A logistics service company/railway transport company needed advice and technical support for the implementation of an automation for system management. The project included the development of a concept incl. consulting, the technical implementation and the final training as well as aftercare.
Among others, Ansible AWX, Spacewalk incl. Kickstart and GitLab were used.
Client is a large well-known bank in Germany
Providing and advising on the set-up, organisation of/and operation of a large OpenShift environment for a migration project.
Involving several internationally dispersed parties/teams within the Bank.
Our role included technical oversight of a large OpenShift environment, including supporting the onboarding of the various application teams onto the platform.
The tasks included, among others:
Project management, architect and engineer
Migration and network projects (e.g. RADIUS, KVM, DRBD, ADS, monitoring (Nagios-based))
As part of an agile team, open*i supports the customer in modernising and automating the backends for so-called ticket vending machines.
The focus is on automating processes, among other things on the basis of linked data on the automats.
Among others, Ansible Tower, OpenShift and AWS were used.
Evaluation, implementation and training Provisioning and staging via Suse Manager.
Design, build and operate a hybrid cloud based on Kubernetes.
The customer is a well-known logistics company that needs several Kubernetes clouds to operate its IAM solution.
In addition to several Kubernetes clusters running in the customer's various data centres, a Kubernetes cluster was also set up at Azure. Central management of all Kubernetes clusters via an interface with a web interface (Rancher).
Activities:
Build and operate multiple Kubernetes container platforms for a critical publicly available application of a federal ministry, according to C5 and ISO27001.
Together with an application development partner, we are creating a cloud service for a federal ministry. The cloud service consists of a highly available private cloud and a newly developed application that is publicly accessible for citizens in Germany.
The open*i is responsible for:
The entire private cloud is highly available and meets high SLAs.
Project management for the construction of a redundant data centre
Design and implementation of a highly available network structure, monitoring. Various infrastructural implementations.
The customer planned to replace its NetApp storage with a software-defined storage solution. As part of a PoC, open*i set up a highly available Ceph cluster and a virtualisation platform based on RHEV (Red Hat Enterprise Virtualization). The capabilities and robustness of Ceph were tested in various test scenarios, including connection to virtualisation and testing of backup scenarios.
Consulting in the areas of automation and system management. Suse Manager and SaltStack, among others, were used. Integrated consulting and implementation of sub-aspects. Further consulting afterwards on the possibilities of the newly implemented technologies.
Activities:
Embedded in a larger agile team, open*i has been jointly responsible for the development and go-live of several Docker Clouds. Numerous applications of the end customer from finance, banking and insurance are now running on the container platforms operated by us, including strict SLAs. We continuously advise the customer on the optimal use of the platform and migration of their application to Docker.
Areas of responsibility: Setup, architecture and go-live of approx. 50 Docker Clouds; setup of monitoring for Docker hosts and containers;
Building/maintaining eco-system components (approx. 35 additional technologies); operating the platforms for the client; agile working (Scrum/Kanban); advising on technologies and architectures for the user teams; building professional platform operations; building/expanding automation for platform management.
IT monitoring (systems, applications, network and co)
Migration of inventory monitoring to a modern solution based on Icinga2
Introduction of templates for hosts and services so that customer staff can easily add new systems to the monitoring process
Advice on related topics, including Icingaweb2 Director and automatic configuration monitoring.
Better storage and visualisation of performance data
Nutze unseren KI-Bot, um gezielt Fragen zu diesem Dienstleister zu stellen, Inspiration für dein Projekt zu sammeln oder passende Alternativen zu finden. Schnell, einfach und rund um die Uhr für dich da!