0:02
hello everyone welcome back to another
0:04
hello everyone welcome back to another
0:04
hello everyone welcome back to another episode of the cloud show recorded live
0:06
episode of the cloud show recorded live
0:06
episode of the cloud show recorded live at the espc conference in Stockholm it
0:09
at the espc conference in Stockholm it
0:09
at the espc conference in Stockholm it is an amazing huge conference with so
0:12
is an amazing huge conference with so
0:12
is an amazing huge conference with so many good speakers and so many good
0:14
many good speakers and so many good
0:14
many good speakers and so many good friends of mine that I'm so happy that I
0:16
friends of mine that I'm so happy that I
0:16
friends of mine that I'm so happy that I get to talk to here at espc I am going
0:19
get to talk to here at espc I am going
0:19
get to talk to here at espc I am going to have the next conversation on the
0:21
to have the next conversation on the
0:21
to have the next conversation on the cloud show about Azure governance how do
0:24
cloud show about Azure governance how do
0:24
cloud show about Azure governance how do you do that what do you set up to govern
0:27
you do that what do you set up to govern
0:27
you do that what do you set up to govern your Cloud estate because there is a lot
0:29
your Cloud estate because there is a lot
0:29
your Cloud estate because there is a lot of uh business value and a lot of cost
0:31
of uh business value and a lot of cost
0:31
of uh business value and a lot of cost and a lot of time involved and you need
0:33
and a lot of time involved and you need
0:33
and a lot of time involved and you need to do things in a really good way the
0:36
to do things in a really good way the
0:36
to do things in a really good way the star of this episode today is a really
0:38
star of this episode today is a really
0:38
star of this episode today is a really good friend of mine a superstar in Asher
0:41
good friend of mine a superstar in Asher
0:41
good friend of mine a superstar in Asher it's Thiago
0:49
[Music] Costa hello Thiago what's up hi Magnus
0:52
Costa hello Thiago what's up hi Magnus
0:52
Costa hello Thiago what's up hi Magnus all good I'm enjoying here the espc
0:55
all good I'm enjoying here the espc
0:55
all good I'm enjoying here the espc conference I just did my session oh yeah
0:57
conference I just did my session oh yeah
0:57
conference I just did my session oh yeah and was amazing huge audience lots and
1:00
and was amazing huge audience lots and
1:00
and was amazing huge audience lots and lots of questions oh great so yeah great
1:03
lots of questions oh great so yeah great
1:03
lots of questions oh great so yeah great I would say the tech level at this
1:05
I would say the tech level at this
1:05
I would say the tech level at this conference not only the speakers and the
1:07
conference not only the speakers and the
1:07
conference not only the speakers and the content but the the attendees have a
1:10
content but the the attendees have a
1:10
content but the the attendees have a very high level of tech no no no correct
1:13
very high level of tech no no no correct
1:13
very high level of tech no no no correct yeah uh by the questions that I got you
1:15
yeah uh by the questions that I got you
1:15
yeah uh by the questions that I got you know super experienced people nice they
1:18
know super experienced people nice they
1:18
know super experienced people nice they know what they're coming from they they
1:20
know what they're coming from they they
1:20
know what they're coming from they they are here to get more knowledge to solve
1:23
are here to get more knowledge to solve
1:23
are here to get more knowledge to solve you know small issues that they might
1:26
you know small issues that they might
1:26
you know small issues that they might have in their work um yeah great great a
1:30
have in their work um yeah great great a
1:30
have in their work um yeah great great a and and there's a lot of knowledge
1:33
and and there's a lot of knowledge
1:33
and and there's a lot of knowledge flowing back and forth that's wonderful
1:35
flowing back and forth that's wonderful
1:35
flowing back and forth that's wonderful that's exactly what a conference should
1:36
that's exactly what a conference should
1:36
that's exactly what a conference should be like I love it all right so tell the
1:39
be like I love it all right so tell the
1:39
be like I love it all right so tell the audience uh who are you Thiago where are
1:41
audience uh who are you Thiago where are
1:41
audience uh who are you Thiago where are you from and what do you do yeah so yeah
1:43
you from and what do you do yeah so yeah
1:43
you from and what do you do yeah so yeah my name is Thiago I'm uh based in lisban
1:46
my name is Thiago I'm uh based in lisban
1:46
my name is Thiago I'm uh based in lisban Portugal um I work in Azure okay
1:50
Portugal um I work in Azure okay
1:50
Portugal um I work in Azure okay surprise surprise and you know I've been
1:52
surprise surprise and you know I've been
1:53
surprise surprise and you know I've been working in Azure since the it was called
1:55
working in Azure since the it was called
1:55
working in Azure since the it was called Red Dog I'm sure you know the name which
1:57
Red Dog I'm sure you know the name which
1:57
Red Dog I'm sure you know the name which is for the audience the younger y
2:00
is for the audience the younger y
2:00
is for the audience the younger y it's the it's the code name of you know
2:04
it's the it's the code name of you know
2:04
it's the it's the code name of you know when this was in preview preview preview
2:07
when this was in preview preview preview
2:07
when this was in preview preview preview um of the cloud services for Microsoft
2:09
um of the cloud services for Microsoft
2:09
um of the cloud services for Microsoft and then it came out as as Windows Azure
2:12
and then it came out as as Windows Azure
2:12
and then it came out as as Windows Azure Windows Azure yeah yeah and then they
2:15
Windows Azure yeah yeah and then they
2:15
Windows Azure yeah yeah and then they they rename it to Microsoft Azure which
2:17
they rename it to Microsoft Azure which
2:17
they rename it to Microsoft Azure which is what we still have today let's see
2:20
is what we still have today let's see
2:20
is what we still have today let's see that no one from marketing from
2:21
that no one from marketing from
2:21
that no one from marketing from Microsoft is watching don't Rebrand no
2:24
Microsoft is watching don't Rebrand no
2:24
Microsoft is watching don't Rebrand no please it's great name and yeah so Bas
2:27
please it's great name and yeah so Bas
2:27
please it's great name and yeah so Bas I'm based in Lisbon and I work uh as I
2:29
I'm based in Lisbon and I work uh as I
2:29
I'm based in Lisbon and I work uh as I do Consulting I do training content
2:31
do Consulting I do training content
2:31
do Consulting I do training content creation and I speak in conferences like
2:34
creation and I speak in conferences like
2:34
creation and I speak in conferences like this one here today exactly and we're
2:36
this one here today exactly and we're
2:36
this one here today exactly and we're very happy to have you at the conference
2:37
very happy to have you at the conference
2:37
very happy to have you at the conference so let's let's let's talk about
2:41
so let's let's let's talk about
2:41
so let's let's let's talk about governance so governance means that you
2:45
governance so governance means that you
2:45
governance so governance means that you a company is is making a bet on using
2:47
a company is is making a bet on using
2:47
a company is is making a bet on using the cloud and they are buying Cloud
2:51
the cloud and they are buying Cloud
2:51
the cloud and they are buying Cloud somehow there are various ways to do so
2:53
somehow there are various ways to do so
2:53
somehow there are various ways to do so but they're investing money into
2:55
but they're investing money into
2:55
but they're investing money into actually using the cloud platform plus
2:57
actually using the cloud platform plus
2:57
actually using the cloud platform plus they are investing time and effort and
3:00
they are investing time and effort and
3:00
they are investing time and effort and it can be Mission business critical
3:02
it can be Mission business critical
3:02
it can be Mission business critical stuff that is running there if the
3:05
stuff that is running there if the
3:05
stuff that is running there if the service that runs there goes down the
3:07
service that runs there goes down the
3:07
service that runs there goes down the the company might lose everything right
3:10
the company might lose everything right
3:10
the company might lose everything right yeah right so you need to be on top of
3:12
yeah right so you need to be on top of
3:12
yeah right so you need to be on top of your game here and this is spelled
3:16
your game here and this is spelled
3:16
your game here and this is spelled governance right so how do we do that so
3:19
governance right so how do we do that so
3:19
governance right so how do we do that so F first of all I can tell you the way
3:23
F first of all I can tell you the way
3:23
F first of all I can tell you the way that this should be done all right and
3:26
that this should be done all right and
3:26
that this should be done all right and then I can tell you the way that
3:28
then I can tell you the way that
3:28
then I can tell you the way that actually it is done in the wild okay
3:31
actually it is done in the wild okay
3:31
actually it is done in the wild okay fantastic that sounds amazing yeah so
3:33
fantastic that sounds amazing yeah so
3:33
fantastic that sounds amazing yeah so the way that this should be done is so
3:35
the way that this should be done is so
3:35
the way that this should be done is so governance and a strategy on how to move
3:38
governance and a strategy on how to move
3:38
governance and a strategy on how to move to the cloud y should be something that
3:40
to the cloud y should be something that
3:40
to the cloud y should be something that you know you should do before you create
3:42
you know you should do before you create
3:42
you know you should do before you create your first resource okay and you're
3:44
your first resource okay and you're
3:44
your first resource okay and you're laughing because you know that's never
3:46
laughing because you know that's never
3:46
laughing because you know that's never going to happen you should have you
3:47
going to happen you should have you
3:47
going to happen you should have you should have a proper plan that's what he
3:49
should have a proper plan that's what he
3:49
should have a proper plan that's what he saying exactly you should you should you
3:50
saying exactly you should you should you
3:51
saying exactly you should you should you should plan you know um it's like when
3:53
should plan you know um it's like when
3:54
should plan you know um it's like when you go on holidays you just don't say
3:56
you go on holidays you just don't say
3:56
you go on holidays you just don't say hey I'm going on holidays and then you
3:57
hey I'm going on holidays and then you
3:57
hey I'm going on holidays and then you step in the car and then where are we
3:59
step in the car and then where are we
3:59
step in the car and then where are we going let's get into the car you you
4:02
going let's get into the car you you
4:02
going let's get into the car you you plan right you you find a place you
4:04
plan right you you find a place you
4:04
plan right you you find a place you decide where to go correct and all that
4:06
decide where to go correct and all that
4:06
decide where to go correct and all that you know book A book a hotel room maybe
4:09
you know book A book a hotel room maybe
4:09
you know book A book a hotel room maybe some activities that you're going to do
4:10
some activities that you're going to do
4:10
some activities that you're going to do yeah yeah I get it I get it that's a
4:12
yeah yeah I get it I get it that's a
4:12
yeah yeah I get it I get it that's a good analogy the thing is I'm sure
4:14
good analogy the thing is I'm sure
4:14
good analogy the thing is I'm sure people are so excited in using Azure oh
4:17
people are so excited in using Azure oh
4:17
people are so excited in using Azure oh yeah that they just go create resources
4:19
yeah that they just go create resources
4:19
yeah that they just go create resources you know but that's not the proper way
4:20
you know but that's not the proper way
4:21
you know but that's not the proper way the proper way is first you know yeah we
4:22
the proper way is first you know yeah we
4:23
the proper way is first you know yeah we need to set what we call a governance
4:25
need to set what we call a governance
4:25
need to set what we call a governance plan uh which answers questions like why
4:28
plan uh which answers questions like why
4:28
plan uh which answers questions like why are we using the club
4:30
are we using the club
4:30
are we using the club okay we do questions like why we chose
4:33
okay we do questions like why we chose
4:33
okay we do questions like why we chose Azure not other platforms you know why
4:36
Azure not other platforms you know why
4:36
Azure not other platforms you know why we're going to choose for example let's
4:39
we're going to choose for example let's
4:39
we're going to choose for example let's just say storage accounts Y and how are
4:41
just say storage accounts Y and how are
4:41
just say storage accounts Y and how are we going to use those and and those are
4:44
we going to use those and and those are
4:44
we going to use those and and those are like it's some people think this is a
4:46
like it's some people think this is a
4:46
like it's some people think this is a little bit boring because we're doing
4:48
little bit boring because we're doing
4:48
little bit boring because we're doing like a lot of meetings with security
4:50
like a lot of meetings with security
4:50
like a lot of meetings with security teams with legal teams within the
4:53
teams with legal teams within the
4:53
teams with legal teams within the company but we actually need to set the
4:55
company but we actually need to set the
4:56
company but we actually need to set the stage on how to use each individual
4:58
stage on how to use each individual
4:58
stage on how to use each individual service and look it goes
5:00
service and look it goes
5:00
service and look it goes let's just talk about storage accounts
5:02
let's just talk about storage accounts
5:02
let's just talk about storage accounts as an example it's a good example it's
5:04
as an example it's a good example it's
5:04
as an example it's a good example it's it's a very it's a very straightforward
5:06
it's a very it's a very straightforward
5:06
it's a very it's a very straightforward and simple uh resource because you store
5:08
and simple uh resource because you store
5:08
and simple uh resource because you store your files in the St simple simple as
5:11
your files in the St simple simple as
5:12
your files in the St simple simple as that are you going to allow to have blob
5:14
that are you going to allow to have blob
5:14
that are you going to allow to have blob containers that are publicly accessible
5:17
containers that are publicly accessible
5:18
containers that are publicly accessible for read or as a old you say no I will
5:21
for read or as a old you say no I will
5:21
for read or as a old you say no I will never use this for that part that's a
5:23
never use this for that part that's a
5:23
never use this for that part that's a decision that you need to do or within
5:26
decision that you need to do or within
5:26
decision that you need to do or within certain Scopes like you know I have some
5:29
certain Scopes like you know I have some
5:29
certain Scopes like you know I have some subscription that are for public you
5:31
subscription that are for public you
5:31
subscription that are for public you know websites and I have other
5:33
know websites and I have other
5:33
know websites and I have other subscriptions for private stuff for like
5:35
subscriptions for private stuff for like
5:35
subscriptions for private stuff for like business services that are internal yeah
5:37
business services that are internal yeah
5:37
business services that are internal yeah yeah for the private ones you say no
5:39
yeah for the private ones you say no
5:39
yeah for the private ones you say no there's no public containers so that's
5:42
there's no public containers so that's
5:42
there's no public containers so that's something that you know we go and we
5:44
something that you know we go and we
5:44
something that you know we go and we take note of that and then later we can
5:48
take note of that and then later we can
5:48
take note of that and then later we can enforce those using Azure policies for
5:51
enforce those using Azure policies for
5:51
enforce those using Azure policies for example so you put a policy in place to
5:53
example so you put a policy in place to
5:53
example so you put a policy in place to guard the uh behavior that you're
5:56
guard the uh behavior that you're
5:56
guard the uh behavior that you're seeking yeah usually we even say that
5:58
seeking yeah usually we even say that
5:58
seeking yeah usually we even say that like putting guard rails you know into
6:02
like putting guard rails you know into
6:02
like putting guard rails you know into uh the usage of azure and and of course
6:05
uh the usage of azure and and of course
6:05
uh the usage of azure and and of course look we can go and we can go deeper into
6:08
look we can go and we can go deeper into
6:08
look we can go and we can go deeper into storage accounts and say every option
6:11
storage accounts and say every option
6:11
storage accounts and say every option that you have in storage accounts are
6:12
that you have in storage accounts are
6:12
that you have in storage accounts are you going to Define this and it goes
6:14
you going to Define this and it goes
6:14
you going to Define this and it goes even beyond that it's it goes to like
6:16
even beyond that it's it goes to like
6:16
even beyond that it's it goes to like naming conventions yeah naming
6:18
naming conventions yeah naming
6:18
naming conventions yeah naming conventions look you're not going to
6:19
conventions look you're not going to
6:19
conventions look you're not going to call a storage account like hey what's
6:21
call a storage account like hey what's
6:21
call a storage account like hey what's the name of this storage account now and
6:23
the name of this storage account now and
6:23
the name of this storage account now and I'll just call it a magnos I'll call it
6:26
I'll just call it a magnos I'll call it
6:26
I'll just call it a magnos I'll call it John Magnus or potatoes no you need to
6:30
John Magnus or potatoes no you need to
6:30
John Magnus or potatoes no you need to make sure that it makes sense to
6:32
make sure that it makes sense to
6:32
make sure that it makes sense to everyone involved on those projects so
6:35
everyone involved on those projects so
6:35
everyone involved on those projects so that's why we create naming conventions
6:37
that's why we create naming conventions
6:37
that's why we create naming conventions this is why we have naming conventions
6:39
this is why we have naming conventions
6:39
this is why we have naming conventions for ears right so we also need to look
6:42
for ears right so we also need to look
6:42
for ears right so we also need to look for and say okay storage accounts this
6:44
for and say okay storage accounts this
6:44
for and say okay storage accounts this is the naming convention for storage
6:46
is the naming convention for storage
6:46
is the naming convention for storage accounts period done and we're good that
6:48
accounts period done and we're good that
6:48
accounts period done and we're good that makes sense because down the line down
6:51
makes sense because down the line down
6:51
makes sense because down the line down streams you will if you're big and and
6:53
streams you will if you're big and and
6:53
streams you will if you're big and and and successful you'll be having hundreds
6:56
and successful you'll be having hundreds
6:56
and successful you'll be having hundreds of storage account maybe who knows right
6:58
of storage account maybe who knows right
6:58
of storage account maybe who knows right it could be a lot of them and then you
7:00
it could be a lot of them and then you
7:00
it could be a lot of them and then you want to know which is what which is for
7:02
want to know which is what which is for
7:02
want to know which is what which is for what exactly right very easily you just
7:04
what exactly right very easily you just
7:04
what exactly right very easily you just by the name you know you pick that up
7:06
by the name you know you pick that up
7:06
by the name you know you pick that up boom I identify this is the storage
7:08
boom I identify this is the storage
7:08
boom I identify this is the storage account of something so and so yeah
7:11
account of something so and so yeah
7:11
account of something so and so yeah exactly and and and even for example if
7:13
exactly and and and even for example if
7:13
exactly and and and even for example if there is let's say that there is a
7:15
there is let's say that there is a
7:15
there is let's say that there is a problem Downstream that there is a
7:17
problem Downstream that there is a
7:17
problem Downstream that there is a security breach or some some issue that
7:19
security breach or some some issue that
7:19
security breach or some some issue that you have to go and investigate you want
7:21
you have to go and investigate you want
7:21
you have to go and investigate you want to very very quickly be able to know
7:23
to very very quickly be able to know
7:23
to very very quickly be able to know exactly where is this problem happening
7:26
exactly where is this problem happening
7:26
exactly where is this problem happening uh so that you can find the the source
7:29
uh so that you can find the the source
7:29
uh so that you can find the the source of the problem immediately and not just
7:31
of the problem immediately and not just
7:31
of the problem immediately and not just guess around oh this is a St account
7:33
guess around oh this is a St account
7:33
guess around oh this is a St account named Magnus or
7:35
named Magnus or potatoes we have no what is what do we
7:37
potatoes we have no what is what do we
7:37
potatoes we have no what is what do we store in the in the storage account of
7:39
store in the in the storage account of
7:39
store in the in the storage account of potatoes we have no idea no exactly look
7:41
potatoes we have no idea no exactly look
7:41
potatoes we have no idea no exactly look I I I I had a customer was not this year
7:44
I I I I had a customer was not this year
7:44
I I I I had a customer was not this year was last year already that we had was
7:46
was last year already that we had was
7:46
was last year already that we had was virtual machines and we had thousands of
7:49
virtual machines and we had thousands of
7:49
virtual machines and we had thousands of virtual machines and some of them were
7:51
virtual machines and some of them were
7:51
virtual machines and some of them were idled and we were like it's like 100ish
7:55
idled and we were like it's like 100ish
7:55
idled and we were like it's like 100ish that were idle I don't know what this is
7:57
that were idle I don't know what this is
7:57
that were idle I don't know what this is and that like we had viral machines yeah
8:01
and that like we had viral machines yeah
8:01
and that like we had viral machines yeah at least from those 100ish probably like
8:03
at least from those 100ish probably like
8:03
at least from those 100ish probably like four or five that the name was
8:05
four or five that the name was
8:05
four or five that the name was vm1 ah okay
8:09
vm1 ah okay vm1 and I'm like okay great I still had
8:13
vm1 and I'm like okay great I still had
8:13
vm1 and I'm like okay great I still had one machine that was called vm2 oh so I
8:16
one machine that was called vm2 oh so I
8:16
one machine that was called vm2 oh so I assume because it was in the same
8:17
assume because it was in the same
8:18
assume because it was in the same Resource Group as another VM one that uh
8:20
Resource Group as another VM one that uh
8:20
Resource Group as another VM one that uh maybe they have something to do with
8:22
maybe they have something to do with
8:22
maybe they have something to do with each other okay but literally there was
8:25
each other okay but literally there was
8:25
each other okay but literally there was nothing more okay they were idle so we
8:28
nothing more okay they were idle so we
8:28
nothing more okay they were idle so we had to use a process that's called The
8:30
had to use a process that's called The
8:30
had to use a process that's called The Scream test uh which basically test yeah
8:33
Scream test uh which basically test yeah
8:33
Scream test uh which basically test yeah yeah it's actually the technical name of
8:35
yeah it's actually the technical name of
8:35
yeah it's actually the technical name of that and so we started to turn off those
8:39
that and so we started to turn off those
8:39
that and so we started to turn off those machines and stop the machines L just
8:41
machines and stop the machines L just
8:41
machines and stop the machines L just for that actually we're losing we're
8:42
for that actually we're losing we're
8:42
for that actually we're losing we're removing connectivity not turning them
8:45
removing connectivity not turning them
8:45
removing connectivity not turning them off but removing connectivity for the
8:46
off but removing connectivity for the
8:46
off but removing connectivity for the machines for a few minutes a day until
8:49
machines for a few minutes a day until
8:49
machines for a few minutes a day until we put it more time more time until we
8:51
we put it more time more time until we
8:51
we put it more time more time until we actually shut them down and we're
8:53
actually shut them down and we're
8:53
actually shut them down and we're waiting for someone to come and scream
8:56
waiting for someone to come and scream
8:56
waiting for someone to come and scream come and scream exactly why is my
8:58
come and scream exactly why is my
8:58
come and scream exactly why is my machine turned off exactly and guess
9:01
machine turned off exactly and guess
9:01
machine turned off exactly and guess what did someone come yeah we had one oh
9:04
what did someone come yeah we had one oh
9:04
what did someone come yeah we had one oh yeah one person one machine after his
9:07
yeah one person one machine after his
9:07
yeah one person one machine after his was turned off for a week uh and I think
9:10
was turned off for a week uh and I think
9:10
was turned off for a week uh and I think was kind of a development environment
9:13
was kind of a development environment
9:13
was kind of a development environment you know for something Etc that the guy
9:16
you know for something Etc that the guy
9:16
you know for something Etc that the guy said hey s but I I actually need that
9:18
said hey s but I I actually need that
9:19
said hey s but I I actually need that but I actually don't use it that much I
9:20
but I actually don't use it that much I
9:20
but I actually don't use it that much I was like okay but you know you can start
9:22
was like okay but you know you can start
9:22
was like okay but you know you can start and stop machines that's right and and
9:24
and stop machines that's right and and
9:24
and stop machines that's right and and so now we're talking about cost
9:25
so now we're talking about cost
9:25
so now we're talking about cost optimization right yeah which which
9:27
optimization right yeah which which
9:27
optimization right yeah which which that's why I wanted to to go there
9:29
that's why I wanted to to go there
9:29
that's why I wanted to to go there because governance is not just security
9:33
because governance is not just security
9:33
because governance is not just security and security is not just naming
9:35
and security is not just naming
9:35
and security is not just naming conventions it's also there is a part on
9:38
conventions it's also there is a part on
9:38
conventions it's also there is a part on cost optimization yes okay like one of
9:41
cost optimization yes okay like one of
9:41
cost optimization yes okay like one of the tricks that I do and this is like
9:42
the tricks that I do and this is like
9:42
the tricks that I do and this is like valuable information to everyone okay
9:45
valuable information to everyone okay
9:45
valuable information to everyone okay listen
9:46
listen up if you do reserved instances for
9:49
up if you do reserved instances for
9:49
up if you do reserved instances for virtual machines yes oh so reserved
9:51
virtual machines yes oh so reserved
9:51
virtual machines yes oh so reserved instances quickly reserved instances are
9:53
instances quickly reserved instances are
9:53
instances quickly reserved instances are what so reserved instances you're just
9:55
what so reserved instances you're just
9:55
what so reserved instances you're just going to do a commitment with Microsoft
9:58
going to do a commitment with Microsoft
9:58
going to do a commitment with Microsoft saying in that region
9:59
saying in that region
9:59
saying in that region yeah I'm going to use let's just say 10
10:02
yeah I'm going to use let's just say 10
10:02
yeah I'm going to use let's just say 10 vmm of that family that size so you say
10:07
vmm of that family that size so you say
10:07
vmm of that family that size so you say that up front I'm going to use these
10:09
that up front I'm going to use these
10:09
that up front I'm going to use these yeah and Microsoft for how long for a
10:11
yeah and Microsoft for how long for a
10:11
yeah and Microsoft for how long for a year or three years that's a for BM
10:14
year or three years that's a for BM
10:14
year or three years that's a for BM that's a commitment pay in advance uh
10:15
that's a commitment pay in advance uh
10:15
that's a commitment pay in advance uh you can actually pay every month okay
10:17
you can actually pay every month okay
10:17
you can actually pay every month okay but you you still you still a proper
10:19
but you you still you still a proper
10:19
but you you still you still a proper commit I'm going to use this and what
10:21
commit I'm going to use this and what
10:21
commit I'm going to use this and what happens when I commit to that so a huge
10:24
happens when I commit to that so a huge
10:24
happens when I commit to that so a huge discount I get 80% 70% it depends on the
10:29
discount I get 80% 70% it depends on the
10:29
discount I get 80% 70% it depends on the Reg so I know if I have a plan ha that
10:33
Reg so I know if I have a plan ha that
10:33
Reg so I know if I have a plan ha that tells me I will be using these VMS for a
10:35
tells me I will be using these VMS for a
10:36
tells me I will be using these VMS for a long time because they are part of
10:37
long time because they are part of
10:37
long time because they are part of something important that we use them for
10:40
something important that we use them for
10:40
something important that we use them for I will use them for a long time then
10:42
I will use them for a long time then
10:42
I will use them for a long time then that commit is very valuable to me
10:45
that commit is very valuable to me
10:45
that commit is very valuable to me exactly okay but now what happens if you
10:48
exactly okay but now what happens if you
10:48
exactly okay but now what happens if you never did any governance in any kind
10:51
never did any governance in any kind
10:51
never did any governance in any kind yeah and you know you have lots of
10:54
yeah and you know you have lots of
10:54
yeah and you know you have lots of workloads using completely different
10:57
workloads using completely different
10:58
workloads using completely different sizes yep of virtual machines virtu
11:00
sizes yep of virtual machines virtu
11:00
sizes yep of virtual machines virtu machines it's really hard for you to
11:02
machines it's really hard for you to
11:02
machines it's really hard for you to actually do a good commitment in terms
11:06
actually do a good commitment in terms
11:06
actually do a good commitment in terms of reserved in this is where governance
11:10
of reserved in this is where governance
11:10
of reserved in this is where governance steps in Azure policies they step in and
11:13
steps in Azure policies they step in and
11:13
steps in Azure policies they step in and we can just choose you know a subset of
11:16
we can just choose you know a subset of
11:16
we can just choose you know a subset of sizes to the sizes there's more more
11:20
sizes to the sizes there's more more
11:20
sizes to the sizes there's more more than a thousand we we can't count them
11:21
than a thousand we we can't count them
11:21
than a thousand we we can't count them all right it's not possible so I never I
11:24
all right it's not possible so I never I
11:24
all right it's not possible so I never I never I never did that to be honest and
11:26
never I never did that to be honest and
11:26
never I never did that to be honest and these are different hardware specs you
11:28
these are different hardware specs you
11:28
these are different hardware specs you can start you can have a really small
11:30
can start you can have a really small
11:30
can start you can have a really small virtual machine you can have a very very
11:32
virtual machine you can have a very very
11:32
virtual machine you can have a very very large one large and they can be
11:34
large one large and they can be
11:34
large one large and they can be extremely expensive and and less
11:36
extremely expensive and and less
11:36
extremely expensive and and less expensive so what you're suggesting is
11:37
expensive so what you're suggesting is
11:37
expensive so what you're suggesting is to take a set of machines that serve
11:40
to take a set of machines that serve
11:40
to take a set of machines that serve your purpose serve the purpose of the
11:42
your purpose serve the purpose of the
11:42
your purpose serve the purpose of the business well yeah and figure out like
11:44
business well yeah and figure out like
11:44
business well yeah and figure out like okay we made we we're making a decision
11:47
okay we made we we're making a decision
11:47
okay we made we we're making a decision these kinds of VMS exactly and and
11:49
these kinds of VMS exactly and and
11:49
these kinds of VMS exactly and and because you choose just those y you know
11:53
because you choose just those y you know
11:53
because you choose just those y you know the opportunities for you to do reserved
11:56
the opportunities for you to do reserved
11:56
the opportunities for you to do reserved instances is way more better yeah
11:58
instances is way more better yeah
11:58
instances is way more better yeah because it's not just just for one
12:00
because it's not just just for one
12:00
because it's not just just for one workload you can now do reserved
12:02
workload you can now do reserved
12:02
workload you can now do reserved instances that can serve more than one
12:04
instances that can serve more than one
12:04
instances that can serve more than one workload got it that makes absolute
12:06
workload got it that makes absolute
12:06
workload got it that makes absolute sense yeah so the the key here is not to
12:09
sense yeah so the the key here is not to
12:09
sense yeah so the the key here is not to let everyone that uses Azure inside of
12:13
let everyone that uses Azure inside of
12:13
let everyone that uses Azure inside of your business just make all of their own
12:15
your business just make all of their own
12:15
your business just make all of their own random decisions left right and Center
12:17
random decisions left right and Center
12:17
random decisions left right and Center ah definitely not yeah yeah yeah yeah
12:19
ah definitely not yeah yeah yeah yeah
12:19
ah definitely not yeah yeah yeah yeah look I I I can give you a great example
12:21
look I I I can give you a great example
12:21
look I I I can give you a great example on that by the way one of my customers
12:24
on that by the way one of my customers
12:24
on that by the way one of my customers they have Corp y Corp makes the
12:27
they have Corp y Corp makes the
12:27
they have Corp y Corp makes the decisions in terms of TCH in terms but
12:30
decisions in terms of TCH in terms but
12:30
decisions in terms of TCH in terms but then we have countries we call them
12:31
then we have countries we call them
12:31
then we have countries we call them branches okay let's call it countries or
12:33
branches okay let's call it countries or
12:33
branches okay let's call it countries or branches whatever different branches
12:35
branches whatever different branches
12:35
branches whatever different branches that they have their own local it teams
12:37
that they have their own local it teams
12:37
that they have their own local it teams I see because you know in Sweden for
12:40
I see because you know in Sweden for
12:40
I see because you know in Sweden for sure you know there are regulations that
12:42
sure you know there are regulations that
12:42
sure you know there are regulations that are really really local that Corp will
12:45
are really really local that Corp will
12:45
are really really local that Corp will be will be very hard for Corp to own it
12:48
be will be very hard for Corp to own it
12:48
be will be very hard for Corp to own it team with and they support the local
12:50
team with and they support the local
12:50
team with and they support the local stuff so we gave a subscription to every
12:53
stuff so we gave a subscription to every
12:53
stuff so we gave a subscription to every country so that they can use Azure
12:56
country so that they can use Azure
12:56
country so that they can use Azure because we don't allow anymore to buy
12:58
because we don't allow anymore to buy
12:58
because we don't allow anymore to buy anyone to buy Hardware I see for servers
13:00
anyone to buy Hardware I see for servers
13:00
anyone to buy Hardware I see for servers Y and what we did was we just told them
13:03
Y and what we did was we just told them
13:03
Y and what we did was we just told them look there you go you have this
13:05
look there you go you have this
13:05
look there you go you have this subscription there you go and now take
13:07
subscription there you go and now take
13:07
subscription there you go and now take care of it but there are all those rules
13:11
care of it but there are all those rules
13:11
care of it but there are all those rules in here I see get it so because we have
13:14
in here I see get it so because we have
13:14
in here I see get it so because we have different teams different countries with
13:16
different teams different countries with
13:16
different teams different countries with different perspectives different
13:18
different perspectives different
13:18
different perspectives different experiences but they are all under the
13:20
experiences but they are all under the
13:20
experiences but they are all under the same rules I see I see okay brilliant so
13:24
same rules I see I see okay brilliant so
13:24
same rules I see I see okay brilliant so this is a huge area we can talk for a
13:27
this is a huge area we can talk for a
13:27
this is a huge area we can talk for a long long time about this but before we
13:29
long long time about this but before we
13:29
long long time about this but before we end can we kind of can we give a summary
13:33
end can we kind of can we give a summary
13:34
end can we kind of can we give a summary or like an like an intro to how do you
13:37
or like an like an intro to how do you
13:37
or like an like an intro to how do you get going in the right direction if you
13:39
get going in the right direction if you
13:39
get going in the right direction if you feel that you need to add more
13:42
feel that you need to add more
13:42
feel that you need to add more governance to your business or or make a
13:44
governance to your business or or make a
13:44
governance to your business or or make a plan before you Ed to Cloud ideally but
13:46
plan before you Ed to Cloud ideally but
13:46
plan before you Ed to Cloud ideally but that never happens
13:48
that never happens yeah so what what what would be an
13:50
yeah so what what what would be an
13:50
yeah so what what what would be an approach how do you start in the right
13:52
approach how do you start in the right
13:52
approach how do you start in the right direction so you start you start by you
13:55
direction so you start you start by you
13:55
direction so you start you start by you know
13:56
know selecting what are the services that I'm
13:58
selecting what are the services that I'm
13:58
selecting what are the services that I'm using today yes then you create a second
14:02
using today yes then you create a second
14:02
using today yes then you create a second list what are the services the Azure
14:04
list what are the services the Azure
14:04
list what are the services the Azure services that I probably will use
14:06
services that I probably will use
14:06
services that I probably will use tomorrow okay got it you give priority
14:09
tomorrow okay got it you give priority
14:09
tomorrow okay got it you give priority to the first list and you decide if to
14:11
to the first list and you decide if to
14:11
to the first list and you decide if to each service how I'm going to deal with
14:14
each service how I'm going to deal with
14:14
each service how I'm going to deal with this storage accounts again okay hey I'm
14:16
this storage accounts again okay hey I'm
14:16
this storage accounts again okay hey I'm using stage accounts this way for this
14:18
using stage accounts this way for this
14:18
using stage accounts this way for this scope for the other scope that way MH
14:21
scope for the other scope that way MH
14:21
scope for the other scope that way MH and then with that information you just
14:24
and then with that information you just
14:24
and then with that information you just go and you implement policies even if
14:27
go and you implement policies even if
14:27
go and you implement policies even if you're denying stuff y okay and stuff
14:30
you're denying stuff y okay and stuff
14:30
you're denying stuff y okay and stuff that you're denying okay today look
14:33
that you're denying okay today look
14:33
that you're denying okay today look you're denying the creation of a storage
14:35
you're denying the creation of a storage
14:35
you're denying the creation of a storage account in a certain region but you say
14:37
account in a certain region but you say
14:37
account in a certain region but you say oh but I already have some that are
14:39
oh but I already have some that are
14:39
oh but I already have some that are already created it there's no affection
14:42
already created it there's no affection
14:42
already created it there's no affection on that they are not going to be
14:43
on that they are not going to be
14:43
on that they are not going to be affected but there is a dashboard yeah
14:46
affected but there is a dashboard yeah
14:46
affected but there is a dashboard yeah which is called a compliance dashboard
14:48
which is called a compliance dashboard
14:48
which is called a compliance dashboard that will let you know look there is all
14:51
that will let you know look there is all
14:51
that will let you know look there is all those storage accounts that they are not
14:53
those storage accounts that they are not
14:53
those storage accounts that they are not under the policy they're not fulfilling
14:55
under the policy they're not fulfilling
14:55
under the policy they're not fulfilling the policy then of course later on
14:57
the policy then of course later on
14:57
the policy then of course later on policy to enfor course the uh newer ones
15:01
policy to enfor course the uh newer ones
15:01
policy to enfor course the uh newer ones for example you cannot have a public end
15:04
for example you cannot have a public end
15:04
for example you cannot have a public end point on the storage account that's you
15:06
point on the storage account that's you
15:06
point on the storage account that's you can have a policy you can have a poli
15:07
can have a policy you can have a poli
15:07
can have a policy you can have a poli for that yeah so if somebody tries to
15:09
for that yeah so if somebody tries to
15:09
for that yeah so if somebody tries to deploy a new storage account it will not
15:12
deploy a new storage account it will not
15:12
deploy a new storage account it will not it will be denied yeah exactly that's
15:14
it will be denied yeah exactly that's
15:14
it will be denied yeah exactly that's when that's really handy because then
15:15
when that's really handy because then
15:15
when that's really handy because then you can enforce the rules but the ones
15:17
you can enforce the rules but the ones
15:17
you can enforce the rules but the ones that you already created they are still
15:20
that you already created they are still
15:20
that you already created they are still there they work but they are not going
15:21
there they work but they are not going
15:21
there they work but they are not going to be compliant so it's going to show in
15:23
to be compliant so it's going to show in
15:23
to be compliant so it's going to show in the dashboard saying hey look you have
15:25
the dashboard saying hey look you have
15:25
the dashboard saying hey look you have all this this is not compant so then you
15:27
all this this is not compant so then you
15:27
all this this is not compant so then you just work you keep working the problem
15:29
just work you keep working the problem
15:29
just work you keep working the problem working on that then look to be totally
15:30
working on that then look to be totally
15:30
working on that then look to be totally honest with you that will take forever
15:33
honest with you that will take forever
15:33
honest with you that will take forever uh to do there are storage accounts that
15:35
uh to do there are storage accounts that
15:35
uh to do there are storage accounts that it's going to be really really hard for
15:37
it's going to be really really hard for
15:37
it's going to be really really hard for you to move but work that needs to be
15:40
you to move but work that needs to be
15:40
you to move but work that needs to be done for security for compliancy for
15:43
done for security for compliancy for
15:43
done for security for compliancy for cost optimization and all the things and
15:45
cost optimization and all the things and
15:45
cost optimization and all the things and all that and that's the work right and
15:47
all that and that's the work right and
15:47
all that and that's the work right and and there is always one thing which is
15:49
and there is always one thing which is
15:49
and there is always one thing which is as late you start the worse it will be
15:53
as late you start the worse it will be
15:53
as late you start the worse it will be of course yes you should you should
15:55
of course yes you should you should
15:55
of course yes you should you should ideally have the full plan 100% before
15:57
ideally have the full plan 100% before
15:57
ideally have the full plan 100% before you begin sure but no nobody does that
16:00
you begin sure but no nobody does that
16:00
you begin sure but no nobody does that it doesn't it doesn't work like that
16:01
it doesn't it doesn't work like that
16:01
it doesn't it doesn't work like that because you also learn things along the
16:03
because you also learn things along the
16:03
because you also learn things along the way and realize things right exactly
16:07
way and realize things right exactly
16:07
way and realize things right exactly because sometimes when you start with
16:08
because sometimes when you start with
16:08
because sometimes when you start with this you know and let's be honest not
16:10
this you know and let's be honest not
16:10
this you know and let's be honest not everyone has the
16:11
everyone has the proficiency uh on Azure that someone you
16:14
proficiency uh on Azure that someone you
16:14
proficiency uh on Azure that someone you don't you know some but you don't know
16:16
don't you know some but you don't know
16:16
don't you know some but you don't know enough you can't you can't make a plan
16:18
enough you can't you can't make a plan
16:18
enough you can't you can't make a plan for things you don't know ex planning is
16:20
for things you don't know ex planning is
16:20
for things you don't know ex planning is everything following a plan is useless
16:22
everything following a plan is useless
16:22
everything following a plan is useless yeah but then you know you learn more
16:25
yeah but then you know you learn more
16:25
yeah but then you know you learn more and you're going to you know improving
16:27
and you're going to you know improving
16:27
and you're going to you know improving your environment until you know one day
16:28
your environment until you know one day
16:28
your environment until you know one day say you have the perfect environment
16:30
say you have the perfect environment
16:30
say you have the perfect environment which is let's be honest a myth but
16:33
which is let's be honest a myth but
16:33
which is let's be honest a myth but that's that's the ultimated goal I think
16:35
that's that's the ultimated goal I think
16:35
that's that's the ultimated goal I think this is a great note to end this session
16:37
this is a great note to end this session
16:37
this is a great note to end this session or this this episode of the cloud show
16:39
or this this episode of the cloud show
16:39
or this this episode of the cloud show because that's that's where we want to
16:41
because that's that's where we want to
16:41
because that's that's where we want to go we want to go to the mythical land uh
16:43
go we want to go to the mythical land uh
16:44
go we want to go to the mythical land uh where everything is perfect it's perfect
16:46
where everything is perfect it's perfect
16:46
where everything is perfect it's perfect yes absolutely thank you Thiago for
16:47
yes absolutely thank you Thiago for
16:48
yes absolutely thank you Thiago for being on the cloud show it was a
16:49
being on the cloud show it was a
16:49
being on the cloud show it was a pleasure to have you thank you so much
16:50
pleasure to have you thank you so much
16:50
pleasure to have you thank you so much it was a pleasure to be here and now
16:52
it was a pleasure to be here and now
16:52
it was a pleasure to be here and now let's enjoy the conference again oh yes
16:54
let's enjoy the conference again oh yes
16:54
let's enjoy the conference again oh yes let's do and uh audience I will see you
16:56
let's do and uh audience I will see you
16:56
let's do and uh audience I will see you guys next time on the cloud show