The Ultimate Guide to Building a Google Cloud Foundation - Patrick Haggerty - E-Book

The Ultimate Guide to Building a Google Cloud Foundation E-Book

Patrick Haggerty

0,0
33,59 €

-100%
Sammeln Sie Punkte in unserem Gutscheinprogramm und kaufen Sie E-Books und Hörbücher mit bis zu 100% Rabatt.

Mehr erfahren.
Beschreibung

From data ingestion and storage, through data processing and data analytics, to application hosting and even machine learning, whatever your IT infrastructural need, there's a good chance that Google Cloud has a service that can help. But instant, self-serve access to a virtually limitless pool of IT resources has its drawbacks. More and more organizations are running into cost overruns, security problems, and simple "why is this not working?" headaches.
This book has been written by one of Google’s top trainers as a tutorial on how to create your infrastructural foundation in Google Cloud the right way. By following Google’s ten-step checklist and Google’s security blueprint, you will learn how to set up your initial identity provider and create an organization. Further on, you will configure your users and groups, enable administrative access, and set up billing. Next, you will create a resource hierarchy, configure and control access, and enable a cloud network. Later chapters will guide you through configuring monitoring and logging, adding additional security measures, and enabling a support plan with Google.
By the end of this book, you will have an understanding of what it takes to leverage Terraform for properly building a Google Cloud foundational layer that engenders security, flexibility, and extensibility from the ground up.

Das E-Book können Sie in Legimi-Apps oder einer beliebigen App lesen, die das folgende Format unterstützen:

EPUB
MOBI

Seitenzahl: 390

Veröffentlichungsjahr: 2022

Bewertungen
0,0
0
0
0
0
0
Mehr Informationen
Mehr Informationen
Legimi prüft nicht, ob Rezensionen von Nutzern stammen, die den betreffenden Titel tatsächlich gekauft oder gelesen/gehört haben. Wir entfernen aber gefälschte Rezensionen.



The Ultimate Guide to Building a Google Cloud Foundation

A one-on-one tutorial with one of Google’s top trainers

Patrick Haggerty

BIRMINGHAM—MUMBAI

The Ultimate Guide to Building a Google Cloud Foundation

Copyright © 2022 Packt Publishing

All rights reserved. No part of this book may be reproduced, stored in a retrieval system, or transmitted in any form or by any means, without the prior written permission of the publisher, except in the case of brief quotations embedded in critical articles or reviews.

Every effort has been made in the preparation of this book to ensure the accuracy of the information presented. However, the information contained in this book is sold without warranty, either express or implied. Neither the author, nor Packt Publishing or its dealers and distributors, will be held liable for any damages caused or alleged to have been caused directly or indirectly by this book.

Packt Publishing has endeavored to provide trademark information about all of the companies and products mentioned in this book by the appropriate use of capitals. However, Packt Publishing cannot guarantee the accuracy of this information.

Group Product Manager: Rahul Nair

Publishing Product Manager: Niranjan Naikwadi

Senior Editor: Shazeen Iqbal

Content Development Editor: Romy Dias

Technical Editor: Rajat Sharma

Copy Editor: Safis Editing

Project Coordinator: Ashwin Dinesh Kharwa

Proofreader: Safis Editing

Indexer: Pratik Shirodkar

Production Designer: Prashant Ghare

Marketing Coordinator: Nimisha Dua

First published: July 2022

Production reference: 1220722

Published by Packt Publishing Ltd.

Livery Place

35 Livery Street

Birmingham

B3 2PB, UK.

ISBN 978-1-80324-085-5

www.packt.com

To my beautiful and loving wife Donna, who said, “Of course you should try and write a book,” and then supported me through the months of nights and weekends it took to make that happen. Couldn’t have done it without you, baby love.

Contributors

About the author

Patrick Haggerty was never quite sure what he wanted to be when he grew up, so he decided he’d just try things until he figured it out. Thrown out of college at 20, he spent 4 years in the USMC learning responsibility (and to be a better apex predator). Out on a disability, he turned wrenches in a mechanic shop, worked tech support, studied Actuarial Science, and coded in more languages than he wants to remember. When a job asked him to run some internal training, he discovered a lifelong passion: helping people learn.

Patrick has worked as a professional trainer for 25+ years and spends most of his days working for ROI Training and Google, helping people learn to leverage Google Cloud.

I’d like to thank Dave Carey, CEO of ROI Training (the #1 technical training org around), for being the best boss ever, and for keeping me solvent. I’d like to thank Packt for reaching out and encouraging me to write this book, and then for all the great people they brought in to help. Finally, I’d like to thank my fellow trainers and the people at Google who helped me answer all sorts of odd questions.

About the reviewer

Hector Parra worked in corporate IT for more than 15 years, specializing in Failure Monitoring and Automatic Recovery. Four years ago, he joined Google as a Customer Solutions Engineer, helping the biggest customers in Spain and EMEA to make the most out of Google Cloud for their marketing needs, whilst completing an executive MBA degree at Quantic. Hector is a certified Google Cloud Digital Leader and co-leads Google’s Mind the Gap program in Spain, which was created to encourage more young women to pursue science and engineering careers. In his spare time, Hector is a big fan of retro gaming, TV shows, and electronic music. He loves traveling with his wife, Eva, and spending quality time with his big family, especially his two beloved nephews and five grandchildren.

I would like to thank my family for their patience with the time and effort required to review this book. My knowledge about the cloud wouldn’t be the same without the amazing contribution of my colleagues at Google, both in the cloud and marketing areas, from whom I’ve learned so much. Thank you for these amazing last four years!

Table of Contents

Preface

Chapter 1: Getting to Know Google’s Cloud

How Google Cloud is a lot like a power company

The four main ways of interacting with Google Cloud

Google Cloud Console

The Google Cloud SDK and Cloud Shell

The Google Cloud APIs

The Google Cloud mobile client

Organizing Google Cloud logically and physically

Google’s core services

Compute

Data storage

Firestore (Datastore)

Bigtable

Memorystore

Summary

Chapter 2: IAM, Users, Groups, and Admin Access

Step 1 – configuring identity management

Cloud Identity setup

Step 2 – adding an initial set of users and security groups

Cloud Identity managing users and acting as IdP

Cloud Identity managing IdP and an HR system managing users

Cloud Identity delegates all IdP and user management to an external (non-AD) provider

Integrating Cloud Identity with Microsoft AD

Creating an initial set of security groups

Step 3 – enabling administrator access

Verifying initial Google Cloud organization creation

Configuring organization administrator group access

Summary

Chapter 3: Setting Up Billing and Cost Controls

Understanding billing terminology

Step 4 – setting up billing and cost controls

It starts with how you pay

Next comes Cloud Billing

Google Cloud Billing best practices

Summary

Chapter 4: Terraforming a Resource Hierarchy

Automating infrastructure with Terraform

Infrastructure as Code to the rescue!

Terraform – the least you need to know

Step 5 – creating a resource hierarchy to control logical organization

Naming resources

Designing the resource hierarchy

Implementing a resource hierarchy

Summary

Chapter 5: Controlling Access with IAM Roles

Understanding IAM in Google Cloud

Who?

Can do what?

Step 6 – Adding IAM trust boundaries to the resource hierarchy

Reading a security role

Use groups where you can

Google Cloud starter security group ideas

Terraforming the permissions

Fine-tuning IAM permissions with conditions

Deny policies

Limiting the use of privileged identities

Troubleshooting access

Summary

Chapter 6: Laying the Network

Networking in Google Cloud

Understanding Virtual Private Cloud networks

Communicating between networked resources

Connecting VPC networks

Leveraging Shared VPCs

Hybrid cloud options

Google Cloud network security

Step 7 – building and configuring our foundational VPC network

Updating your naming document

Planning the Shared VPCs

Terraforming your Google Cloud network

Summary

Chapter 7: Foundational Monitoring and Logging

Getting to know the six core instrumentation products in Google Cloud

Instrumentation product overview

Working with Cloud Logging

Monitoring your resources

Step 8 – setting up foundational Cloud Logging and Cloud Monitoring

Logging foundation

Foundational monitoring

Food for thought

Summary

Chapter 8: Augmenting Security and Registering for Support

Step 9 – augmenting foundational security

Data encryption

Improving security posture with the SCC

Limiting access with the Organization Policy Service

General security elements

Step 10 – Setting up initial Google Cloud support

Final thoughts

Other Books You May Enjoy