1.- Getting Started on GCP
1.- Getting Started on GCP
Getting started
on GCP
01.
What is Google Cloud Platform?
Agenda 02.
How do I get started?
03.
Cloud Identity
04.
Resource Manager and Billing
05.
Cloud IAM
06.
Administrative Tools
01
What is Google Cloud
Platform?
9 services with more than 1.000.000.000 users each
Current regions
Future regions
and number of zones
Points of presence
Network
Jakarta
3
3
JGA-S
3 (GU, AU)
3
2020
Indigo
(SG, ID, AU)
2019
Google is #4 server
world-wide manufacturer
Google’s carbon journey
Security that’s built in, not bolted on
Usage
Operations
Deployment
Application
Network
Storage
OS + IPC
Boot
Hardware
9
Shared responsibility SaaS PaaS IaaS
Google Managed
Customer Managed
Secure storage
100% of data is encrypted at rest and in transit
Always-on encryption for everything. Cloud KMS lets you control key Keep keys on your own premises, and
No choices here :-) creation, revocation & rotation. only supply them to Google when
doing an operation.
Authentication Authorization
Users with creation managed by individuals and Users with creation and authentication
authentication managed by Google. options managed by an organization.
admin.google.com console.cloud.google.com
Cloud
Manual
Identity
Users
APIs Groups
Cloud
IAM GCP
Resources
CSV Org Units
Upload
User Provisioning (AD) & LDAP Integration
Intranet
Legacy
MS Suite
Applications
MS Exchange, Lync,
MS Office, Skype
IT Infrastructure
VP
N
Radius
server
MS Infra, (Wifi AuthN)
Print, File,
Certificate
GCDS
AD
Legacy Apps Legacy Apps
Federation
(Kerb/NTLM) (LDAP)
Service
04
Resource
Manager and
Billing
Resource Manager
● There are two types of billing account: Bills itemized by resource type
● Permissions determine what operations are allowed ● The IAM policy binds a set of members to a role. Policies
on a resource can then be attached to a resource, a project, a folder or a
domain
compute.instances.delete
Users
compute.instances.start
● Service accounts are created in a project, however, they can be granted IAM roles on any
other projects
SERVICE_ACCOUNT_NAME@PROJECT_ID.iam.gserviceaccount.com
[email protected]
06
Administrative
Tools
Mobile App
Accessing GCP
"sourceImage":"https://www.googleapis.com/compute/v1/proje
cts/debian-cloud/global/images/debian-8-jessie-v20160301"
}
}
],
Google Cloud SDK https://cloud.google.com/sdk/
Documentation cloud.google.com/docs
Architectures cloud.google.com/architecture
Code samples
cloud.google.com/docs/samples
Support cloud.google.com/support
Training cloud.google.com/training
Codelabs g.co/codelabs/cloud
Console tour
©Bill Watterson
That’s a wrap! Questions?
Thank you!