下载PDF
实例探究 > 由 2lemetry 通过 AWS 托管的 Expedia

Expedia Hosted by 2lemetry Through AWS

 Expedia Hosted by 2lemetry Through AWS - IoT ONE Case Study
技术
  • 网络安全和隐私 - 身份认证管理
  • 基础设施即服务 (IaaS) - 云计算
  • 基础设施即服务 (IaaS) - 云存储服务
  • 平台即服务 (PaaS) - 应用开发平台
用例
  • 网络安全
挑战

Expedia 致力于不断创新、技术和平台改进,为客户创造出色的体验。 Expedia Worldwide Engineering (EWE) 组织支持 Expedia 品牌下的所有网站。 Expedia 于 2010 年开始使用 Amazon Web Services (AWS) 推出 Expedia Suggest Service (ESS),这是一种帮助客户正确输入旅行、搜索和位置信息的提前输入建议服务。根据该公司的指标,错误页面是网站放弃的主要原因。 Expedia 希望全球用户能够快速且无错误地找到他们正在寻找的内容。当时,Expedia 在亚利桑那州钱德勒的数据中心运营所有服务。工程团队意识到他们必须在物理上靠近客户的位置运行 ESS,才能以最小的网络延迟实现快速响应的服务。

客户
Expedia
关于客户
-
解决方案

Expedia 考虑了本地虚拟化解决方案以及其他云提供商,但最终选择了 Amazon Web Services (AWS),因为它是唯一具有支持亚太地区客户的全球基础设施的解决方案。 “从架构的角度来看,基础设施、自动化和靠近客户是关键因素,”技术总监 Murari Gopalan 解释道。 “没有 AWS,我们无法解决问题。”

运营影响
  • [Data Management - Elasticity & Scalability]
    Expedia provisions Hadoop clusters using Amazon Elastic Map Reduce (Amazon EMR) to analyze and process streams of data coming from Expedia’s global network of websites, primarily clickstream, user interaction, and supply data, which is stored on Amazon Simple Storage Service (Amazon S3). Expedia processes approximately 240 requests per second. “The advantage of AWS is that we can use Auto Scaling to match load demand instead of having to maintain capacity for peak load in traditional datacenters,” comments Gopalan. Expedia uses AWS CloudFormation with Chef to deploy its entire front and backend stack into its Amazon Virtual Private Cloud (Amazon VPC) environment. Expedia uses a multi-region, multi-availability zone architecture with a proprietary DNS service to add resiliency to the applications. Figure 2 demonstrates the architecture of the GDE service on AWS.
  • [Data Management - Data Security]
     To simplify the management of GDE, Expedia developed an identity federation broker that uses AWS Identity and Access Management(AWS IAM) and the AWS Security Token Service (AWS STS). The federation broker allows systems administrators and developers to use their existing Windows Active Directory (AD) accounts to single sign-on (SSO) to the AWS Management Console. In doing so, Expedia eliminates the need to create IAM users and maintain multiple environments where user identities are stored. Federation broker users sign into their Windows machines with their existing Active Directory credentials, browse to the federation broker, and transparently log into the AWS Management Console. This allows Expedia to enforce password and permissions management within their existing directory and to enforce group policies and other governance rules. Additionally, if an employee ever leaves the company or takes a different role, Expedia simply make changes to Active Directory to revoke or changes AWS permissions for the user instead of inside of AWS.

相关案例.

联系我们

欢迎与我们交流!

* Required
* Required
* Required
* Invalid email address
提交此表单,即表示您同意 IoT ONE 可以与您联系并分享洞察和营销信息。
不,谢谢,我不想收到来自 IoT ONE 的任何营销电子邮件。
提交

Thank you for your message!
We will contact you soon.