OpsWorks for Chef Automate
Auckland AWS Community Meetup
August 3, 2017
Matt Ray
Manager, Solutions Architect – APJ
Chef Software
matt@chef.io
@mattray
Microservices
Container Runtime
Datacenter
Microservices
Physical Runtime
Cloud
Monolithic
Container Runtime
Datacenter
Microservices
”
Hybrid is the standard model for Modern App Teams
Teams need to deliver all infrastructure, any app, everywhere. Continuously.
Emerging LandscapeLegacy Reality
Most enterprises are going to operate in hybrid mode for many years to come
Andy Jassy, CEO, Amazon Web Services (re:Invent 2016)
Architecture
MONOLITHS MICROSERVICES
Runtime
PHYSICAL CONTAINERS
Infrastructure
DATACENTER CLOUD
Infrastructure ApplicationCompliance
Automation
The state of an app portfolio
APP A APP B
APP C APP D
Physical Runtime
Datacenter
Velocity: time from idea to ship
Software success metrics
Quantifying outcomes to deliver software at speed
Deployment
frequency
Time from
commit to deploy
Mean time
to resolve
Time deploying
remediation
Change failure
rate
SPEED
Measure of rate
of software change
EFFICIENCY
Measure of effectiveness
of software change
RISK
Measure of quality
of software change
Compliance audit
frequency
Idea Ship
Infrastructure Automation Application Automation Compliance Automation
Workflow
Visibility
Compliance
Chef
▪ Manages deployment
and on-going automation
▪ Define reusable resources
and infrastructure state as code
▪ Scale elegantly from one to tens of
thousands of managed nodes across
multiple complex environments
▪ Community, Certified Partner, and
Chef supported content available
for all common automation tasks
Infrastructure automation
and delivery at scale
windows_feature ‘IIS-WebServerRole’ do
action :install
end
windows_feature ‘IIS-ASPNET’ do
action :install
end
iis_pool FooBarPool do
runtime_version “4.0”
action :add
end
package "apache" do
action :install
end
template “/etc/httpd/https.conf” do
source “httpd.conf.erb”
mode 0075
owner “root”
group “root”
end
service “apache2” do
action :start
done
PART OF A PROCESS OF CONTINUOUS COMPLIANCE
Scan for
Compliance
Build & Test
Locally
Build & Test
CI/CD Remediate Verify
A SIMPLE EXAMPLE OF AN INSPEC CIS RULE
InSpec
▪ Translate compliance into Code
▪ Clearly express statements of policy
▪ Move risk to build/test from runtime
▪ Find issues early
▪ Write code quickly
▪ Run code anywhere
▪ Inspect machines, data and APIs
Turn security and
compliance into code
control ‘cis-1.4.1’ do
title ‘1.4.1 Enable SELinux in /etc/grub.conf’
desc ‘
Do not disable SELinux and enforcing in your
GRUB configuration. These are important security features that
prevent attackers from escalating their access to your systems.
For reference see …
‘
impact 1.0
expect(grub_conf.param ‘selinux’).to_not eq ‘0’
expect(grub_conf.param ‘enforcing’).to_not eq ‘0’
end
Habitat
▪ Ease the burden of managing microservice
apps and bring benefits of apps architected
for microservices to traditional applications
▪ Gain consistent management of new
and traditional applications across their lifecycle
▪ Provides application portability for new and traditional
apps
▪ Autonomous nodes self-manage runtime state
of application based upon policy you define
▪ APIs expose application behaviors
as data for better management
▪ Works in tandem with infrastructure automation
▪ Makes applications running on containers,
PaaS, virtual machines, bare metal, … better
Automation that travels with the app
The Chef Automate Platform
Continuous Automation for High Velocity IT
Workflow • Local development • Integration • Tooling (APIs & SDKs)
COLLABORATE
▪ Package
▪ Test
▪ Approve
BUILD
▪ Provision
▪ Configure
▪ Execute
▪ Update
DEPLOY
▪ Secure
▪ Comply
▪ Audit
▪ Measure
▪ Log
MANAGE
Infrastructure Automation Compliance AutomationApplication Automation
OSS AUTOMATION ENGINES
Increase Speed
▪ Package infrastructure and app
configuration as code
▪ Continuously automate
infrastructure and app updates
Improve Efficiency
▪ Define and execute standard
workflows and automation
▪ Audit and measure effectiveness of
automation
Decrease Risk
▪ Define compliance rules as code
▪ Deliver continuous compliance as
part of standard workflow
AWS OpsWorks for Chef Automate
Native Amazon Service
Managed Chef Server
▪ Utilizes RDS and other native
services
▪ May be externally accessible
AWS Native
▪ Auto Scaling in your VPC
▪ Automatic backups and upgrades
OpsWorks Stacks
▪ New name for previous version of
OpsWorks
● Partnership between Amazon and Chef, jointly
developed and maintained
● Fully managed AWS service with frequent updates
● Fully compatible with open source Chef
● Amazon is your support and billing
● All Chef Automate features will be supported
○ Visibility and Workflow today
○ Compliance soon
○ Currently Northern Virginia, Oregon & Ireland
with more planned
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
OpsWorks Signup
Demo
OpsWorks SignupScan for
Compliance
Build & Test
Locally
Build & Test
CI/CD Remediate Verify
Chef Automate is at the heart of software delivery
The vendors you trust, trust Chef for continuous automation
Technology Partners:
Workflow • Local development • Integration • Tooling (APIs & SDKs)
COLLABORATE
▪ Package
▪ Test
BUILD
▪ Secure
▪ Comply
MANAGE
Infrastructure
Automation
Compliance
Automation
Application
Automation
OSS AUTOMATION ENGINES
▪ Provision
▪ Configure
DEPLOY
FORMAT RUNTIME
WORKFLOW
ENVIRONMENT
Dig into the new way of learning about
Chef, Automation, and DevOps.
Self-paced training on Linux and Windows and much more!
learn.chef.io
OpsWorks for Chef Automate - Auckland AWS

More Related Content

PDF
Cooking Up Windows with Chef Automate
PDF
Infrastructure and Compliance Delight with Chef Automate
PDF
Accelerating software delivery with AWS
PDF
Akamai for Dev Ops Current Capabilities - Atlanta DevOps World Tour
PDF
Automation at the Edge
PPTX
Compliance Automation with InSpec
PDF
Enforce compliance policy with model-driven automation
PPTX
What's New in Puppet Enterprise 2015.3
Cooking Up Windows with Chef Automate
Infrastructure and Compliance Delight with Chef Automate
Accelerating software delivery with AWS
Akamai for Dev Ops Current Capabilities - Atlanta DevOps World Tour
Automation at the Edge
Compliance Automation with InSpec
Enforce compliance policy with model-driven automation
What's New in Puppet Enterprise 2015.3

What's hot (18)

PPTX
What's New in Puppet Enterprise 2015.3
PPTX
Serverless Code Deployments in AWS
PPTX
SoCal DevOps Meetup 1/26/2017 - Habitat by Chef
PPTX
Continuous Delivery in a Complex S.O.A.
PPTX
The art of wmb deployment automation
PPTX
Infrastructure as Code
PDF
RightScale Webinar: Continuous Integration and Delivery in the Cloud - How Ri...
PDF
Serverless Delivery
PDF
Immutable infrastructure - Plain Concepts DevOps day
PDF
Dep012 azure の_dev_ops_力!azure_team_でも採
PPTX
Vulnerability Discovery in the Cloud
PDF
DevOps, Common use cases, Architectures, Best Practices
PDF
DevOps in the Cloud with Microsoft Azure
PPTX
Introduction to Puppet Enterprise 01/29/16.pptx
PPTX
DevOps + Azure
PPTX
Service Fabric Deployments
PPTX
Microsoft Azure Cloud and DevOps
PDF
SPUnite17 Deep Dive Building Solutions
What's New in Puppet Enterprise 2015.3
Serverless Code Deployments in AWS
SoCal DevOps Meetup 1/26/2017 - Habitat by Chef
Continuous Delivery in a Complex S.O.A.
The art of wmb deployment automation
Infrastructure as Code
RightScale Webinar: Continuous Integration and Delivery in the Cloud - How Ri...
Serverless Delivery
Immutable infrastructure - Plain Concepts DevOps day
Dep012 azure の_dev_ops_力!azure_team_でも採
Vulnerability Discovery in the Cloud
DevOps, Common use cases, Architectures, Best Practices
DevOps in the Cloud with Microsoft Azure
Introduction to Puppet Enterprise 01/29/16.pptx
DevOps + Azure
Service Fabric Deployments
Microsoft Azure Cloud and DevOps
SPUnite17 Deep Dive Building Solutions
Ad

Similar to OpsWorks for Chef Automate - Auckland AWS (20)

PDF
Brisbane AWS Meetup: OpsWorks for Chef Automate
PDF
Chef Automate - Infracoders Canberra August 8, 2017
PDF
Chef Automate - Wellington DevOps August 2, 2017
PDF
DOO-009_Powering High Velocity Development for your Infrastructure
PPTX
Achieving DevOps Success with Chef Automate
PPTX
Improving DevOps through Cloud Automation and Management - Real-World Rocket ...
PDF
Infrastructure Automation with Chef
PDF
AWS OpsWorks & Chef at the Hamburg Chef User Group 2014
PDF
AWS OpsWorks for Chef Automate
PDF
Opscode tech festa july 2013
PDF
DEVNET-1007 Network Infrastructure as Code with Chef and Cisco
PDF
Network Infrastructure as Code with Chef and Cisco
PDF
Philly security shell meetup
PDF
Introduction to Chef: Automate Your Infrastructure by Modeling It In Code
PDF
Managing Complexity at Velocity
PDF
Introduction to Chef
ODP
DevOps and Chef improve your life
PPTX
Chef Workflow Demo
PPTX
Chef onlinuxonpower
PPTX
A Bit of Everything Chef
Brisbane AWS Meetup: OpsWorks for Chef Automate
Chef Automate - Infracoders Canberra August 8, 2017
Chef Automate - Wellington DevOps August 2, 2017
DOO-009_Powering High Velocity Development for your Infrastructure
Achieving DevOps Success with Chef Automate
Improving DevOps through Cloud Automation and Management - Real-World Rocket ...
Infrastructure Automation with Chef
AWS OpsWorks & Chef at the Hamburg Chef User Group 2014
AWS OpsWorks for Chef Automate
Opscode tech festa july 2013
DEVNET-1007 Network Infrastructure as Code with Chef and Cisco
Network Infrastructure as Code with Chef and Cisco
Philly security shell meetup
Introduction to Chef: Automate Your Infrastructure by Modeling It In Code
Managing Complexity at Velocity
Introduction to Chef
DevOps and Chef improve your life
Chef Workflow Demo
Chef onlinuxonpower
A Bit of Everything Chef
Ad

More from Matt Ray (20)

PDF
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
PDF
KubeConEU24-Monitoring Kubernetes and Cloud Spend with OpenCost
PDF
SCaLE 20X: Kubernetes Cloud Cost Monitoring with OpenCost & Optimization Stra...
PDF
HashiTalks 2020 - Chef Tools & Terraform: Better Together
PDF
EmacsConf 2019: Interactive Remote Debugging and Development with TRAMP Mode
PDF
Wellington DevOps: Bringing Your Applications into the Future with Habitat
PDF
DevOps Days Singapore 2018 Ignite - Bringing Your Applications into the Futur...
PDF
Cloud Expo Asia 20181010 - Bringing Your Applications into the Future with Ha...
PDF
Compliance as Code Everywhere
PDF
DevOpsDays Jakarta: State of DevOps 2018
PDF
DevOps Talks Melbourne 2018: Whales, Cats and Kubernetes
PDF
DevOpsDays Singapore - Continuous Auditing with Compliance as Code
PDF
DevOpsDays Singapore Habitat Ignite
PDF
Chef Automate - Azure Sydney User Group
PDF
Automating Compliance with InSpec - AWS North Sydney
PDF
Automating Applications with Habitat - Sydney Cloud Native Meetup
PDF
Automating AWS Compliance with InSpec
PDF
Compliance as Code: Shifting Compliance Left in Continuous Delivery
PDF
Automating Compliance with InSpec - Chef Singapore Meetup
PDF
DevOps Sydney: Chef Automate
Open Source Summit NA 2024: Open Source Cloud Costs - OpenCost's Impact on En...
KubeConEU24-Monitoring Kubernetes and Cloud Spend with OpenCost
SCaLE 20X: Kubernetes Cloud Cost Monitoring with OpenCost & Optimization Stra...
HashiTalks 2020 - Chef Tools & Terraform: Better Together
EmacsConf 2019: Interactive Remote Debugging and Development with TRAMP Mode
Wellington DevOps: Bringing Your Applications into the Future with Habitat
DevOps Days Singapore 2018 Ignite - Bringing Your Applications into the Futur...
Cloud Expo Asia 20181010 - Bringing Your Applications into the Future with Ha...
Compliance as Code Everywhere
DevOpsDays Jakarta: State of DevOps 2018
DevOps Talks Melbourne 2018: Whales, Cats and Kubernetes
DevOpsDays Singapore - Continuous Auditing with Compliance as Code
DevOpsDays Singapore Habitat Ignite
Chef Automate - Azure Sydney User Group
Automating Compliance with InSpec - AWS North Sydney
Automating Applications with Habitat - Sydney Cloud Native Meetup
Automating AWS Compliance with InSpec
Compliance as Code: Shifting Compliance Left in Continuous Delivery
Automating Compliance with InSpec - Chef Singapore Meetup
DevOps Sydney: Chef Automate

Recently uploaded (20)

PDF
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
PPTX
AI IN MARKETING- PRESENTED BY ANWAR KABIR 1st June 2025.pptx
PDF
Statistics on Ai - sourced from AIPRM.pdf
PDF
Taming the Chaos: How to Turn Unstructured Data into Decisions
PDF
Transform-Your-Factory-with-AI-Driven-Quality-Engineering.pdf
PPTX
Build Your First AI Agent with UiPath.pptx
PDF
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
PPTX
MuleSoft-Compete-Deck for midddleware integrations
PDF
Consumable AI The What, Why & How for Small Teams.pdf
PDF
Rapid Prototyping: A lecture on prototyping techniques for interface design
PDF
Accessing-Finance-in-Jordan-MENA 2024 2025.pdf
PDF
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
PDF
NewMind AI Weekly Chronicles – August ’25 Week IV
PDF
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
PDF
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
DOCX
Basics of Cloud Computing - Cloud Ecosystem
PPTX
Module 1 Introduction to Web Programming .pptx
PPTX
Microsoft User Copilot Training Slide Deck
PPTX
Custom Battery Pack Design Considerations for Performance and Safety
PDF
Lung cancer patients survival prediction using outlier detection and optimize...
Transform-Quality-Engineering-with-AI-A-60-Day-Blueprint-for-Digital-Success.pdf
AI IN MARKETING- PRESENTED BY ANWAR KABIR 1st June 2025.pptx
Statistics on Ai - sourced from AIPRM.pdf
Taming the Chaos: How to Turn Unstructured Data into Decisions
Transform-Your-Factory-with-AI-Driven-Quality-Engineering.pdf
Build Your First AI Agent with UiPath.pptx
Transform-Your-Streaming-Platform-with-AI-Driven-Quality-Engineering.pdf
MuleSoft-Compete-Deck for midddleware integrations
Consumable AI The What, Why & How for Small Teams.pdf
Rapid Prototyping: A lecture on prototyping techniques for interface design
Accessing-Finance-in-Jordan-MENA 2024 2025.pdf
The-2025-Engineering-Revolution-AI-Quality-and-DevOps-Convergence.pdf
NewMind AI Weekly Chronicles – August ’25 Week IV
INTERSPEECH 2025 「Recent Advances and Future Directions in Voice Conversion」
CXOs-Are-you-still-doing-manual-DevOps-in-the-age-of-AI.pdf
Basics of Cloud Computing - Cloud Ecosystem
Module 1 Introduction to Web Programming .pptx
Microsoft User Copilot Training Slide Deck
Custom Battery Pack Design Considerations for Performance and Safety
Lung cancer patients survival prediction using outlier detection and optimize...

OpsWorks for Chef Automate - Auckland AWS

  • 1. OpsWorks for Chef Automate Auckland AWS Community Meetup August 3, 2017
  • 2. Matt Ray Manager, Solutions Architect – APJ Chef Software [email protected] @mattray
  • 3. Microservices Container Runtime Datacenter Microservices Physical Runtime Cloud Monolithic Container Runtime Datacenter Microservices ” Hybrid is the standard model for Modern App Teams Teams need to deliver all infrastructure, any app, everywhere. Continuously. Emerging LandscapeLegacy Reality Most enterprises are going to operate in hybrid mode for many years to come Andy Jassy, CEO, Amazon Web Services (re:Invent 2016) Architecture MONOLITHS MICROSERVICES Runtime PHYSICAL CONTAINERS Infrastructure DATACENTER CLOUD Infrastructure ApplicationCompliance Automation The state of an app portfolio APP A APP B APP C APP D Physical Runtime Datacenter
  • 4. Velocity: time from idea to ship Software success metrics Quantifying outcomes to deliver software at speed Deployment frequency Time from commit to deploy Mean time to resolve Time deploying remediation Change failure rate SPEED Measure of rate of software change EFFICIENCY Measure of effectiveness of software change RISK Measure of quality of software change Compliance audit frequency Idea Ship
  • 5. Infrastructure Automation Application Automation Compliance Automation Workflow Visibility Compliance
  • 6. Chef ▪ Manages deployment and on-going automation ▪ Define reusable resources and infrastructure state as code ▪ Scale elegantly from one to tens of thousands of managed nodes across multiple complex environments ▪ Community, Certified Partner, and Chef supported content available for all common automation tasks Infrastructure automation and delivery at scale windows_feature ‘IIS-WebServerRole’ do action :install end windows_feature ‘IIS-ASPNET’ do action :install end iis_pool FooBarPool do runtime_version “4.0” action :add end package "apache" do action :install end template “/etc/httpd/https.conf” do source “httpd.conf.erb” mode 0075 owner “root” group “root” end service “apache2” do action :start done
  • 7. PART OF A PROCESS OF CONTINUOUS COMPLIANCE Scan for Compliance Build & Test Locally Build & Test CI/CD Remediate Verify A SIMPLE EXAMPLE OF AN INSPEC CIS RULE InSpec ▪ Translate compliance into Code ▪ Clearly express statements of policy ▪ Move risk to build/test from runtime ▪ Find issues early ▪ Write code quickly ▪ Run code anywhere ▪ Inspect machines, data and APIs Turn security and compliance into code control ‘cis-1.4.1’ do title ‘1.4.1 Enable SELinux in /etc/grub.conf’ desc ‘ Do not disable SELinux and enforcing in your GRUB configuration. These are important security features that prevent attackers from escalating their access to your systems. For reference see … ‘ impact 1.0 expect(grub_conf.param ‘selinux’).to_not eq ‘0’ expect(grub_conf.param ‘enforcing’).to_not eq ‘0’ end
  • 8. Habitat ▪ Ease the burden of managing microservice apps and bring benefits of apps architected for microservices to traditional applications ▪ Gain consistent management of new and traditional applications across their lifecycle ▪ Provides application portability for new and traditional apps ▪ Autonomous nodes self-manage runtime state of application based upon policy you define ▪ APIs expose application behaviors as data for better management ▪ Works in tandem with infrastructure automation ▪ Makes applications running on containers, PaaS, virtual machines, bare metal, … better Automation that travels with the app
  • 9. The Chef Automate Platform Continuous Automation for High Velocity IT Workflow • Local development • Integration • Tooling (APIs & SDKs) COLLABORATE ▪ Package ▪ Test ▪ Approve BUILD ▪ Provision ▪ Configure ▪ Execute ▪ Update DEPLOY ▪ Secure ▪ Comply ▪ Audit ▪ Measure ▪ Log MANAGE Infrastructure Automation Compliance AutomationApplication Automation OSS AUTOMATION ENGINES Increase Speed ▪ Package infrastructure and app configuration as code ▪ Continuously automate infrastructure and app updates Improve Efficiency ▪ Define and execute standard workflows and automation ▪ Audit and measure effectiveness of automation Decrease Risk ▪ Define compliance rules as code ▪ Deliver continuous compliance as part of standard workflow
  • 10. AWS OpsWorks for Chef Automate Native Amazon Service Managed Chef Server ▪ Utilizes RDS and other native services ▪ May be externally accessible AWS Native ▪ Auto Scaling in your VPC ▪ Automatic backups and upgrades OpsWorks Stacks ▪ New name for previous version of OpsWorks ● Partnership between Amazon and Chef, jointly developed and maintained ● Fully managed AWS service with frequent updates ● Fully compatible with open source Chef ● Amazon is your support and billing ● All Chef Automate features will be supported ○ Visibility and Workflow today ○ Compliance soon ○ Currently Northern Virginia, Oregon & Ireland with more planned
  • 20. Demo
  • 21. OpsWorks SignupScan for Compliance Build & Test Locally Build & Test CI/CD Remediate Verify
  • 22. Chef Automate is at the heart of software delivery The vendors you trust, trust Chef for continuous automation Technology Partners: Workflow • Local development • Integration • Tooling (APIs & SDKs) COLLABORATE ▪ Package ▪ Test BUILD ▪ Secure ▪ Comply MANAGE Infrastructure Automation Compliance Automation Application Automation OSS AUTOMATION ENGINES ▪ Provision ▪ Configure DEPLOY FORMAT RUNTIME WORKFLOW ENVIRONMENT
  • 23. Dig into the new way of learning about Chef, Automation, and DevOps. Self-paced training on Linux and Windows and much more! learn.chef.io