Guidance for SAP Sustainability Control Tower® on AWS
Overview
How it works
These technical details feature an architecture diagram to illustrate how to effectively use this solution. The architecture diagram shows the key components and their interactions, providing an overview of the architecture's structure and functionality step-by-step.
Well-Architected Pillars
The architecture diagram above is an example of a Solution created with Well-Architected best practices in mind. To be fully Well-Architected, you should follow as many Well-Architected best practices as possible.
Operational Excellence
The Guidance uses standard service metrics to monitor the health of individual pipeline components, such as concurrency limits. Step Functions provides visibility into the processing pipeline status. Amazon CloudWatch provides centralized logging with metrics and alarms to raise alerts for operational anomalies.
Security
Lake Formation provides a single, central location to manage fine-grained access control to data in your data lake. AWS Identity and Access Management (IAM) grants operators permissions to use resources through least-privilege access and role-based access. For example, you can use IAM policies to grant permissions to execute Athena queries and to select the IAM roles that SAP® Data Warehouse Cloud uses. We recommend data be encrypted in-transit and at rest using AWS Key Management Service (AWS KMS) and customer-managed AWS KMS keys. You should routinely rotate these keys.
Reliability
The services in this Guidance have initial service limits that accommodate a large majority of customer workloads. If necessary, you can request that service quotas be expanded. Examples include concurrent executions of AWS Glue jobs or concurrent active Data Manipulation Language (DML) queries in Athena. Additionally, this Guidance uses AWS services such as Amazon S3 and Amazon Redshift for data storage, both of which provide built-in functionality for data backup and recovery.
Performance Efficiency
Rather than using query federation through Athena, you can directly ingest data from your data lake into SAP® Data Warehouse Cloud to optimize performance. This Guidance uses serverless managed services that automatically scale up and down in response to changing demand, reducing overhead resources. Storing data in Amazon S3 allows you to bring various tools and services to your data that are tailored to your needs. For example, you can query data directly in Amazon S3 using Athena, or you can integrate Amazon QuickSight for business intelligence (BI) dashboards.
Cost Optimization
This Guidance relies on serverless AWS services such as AWS Glue, Step Functions, and Athena. These services are fully managed and scale automatically according to workload demand so that you pay only for the resources you use.
Sustainability
You can limit your data footprint using Athena for query federation from SAP® Data Warehouse Cloud, which reduces the need for additional copies of data. By using SAP Sustainability Control Tower®, you can collect sustainability insights from your data lake without having to provision and manage additional resources within AWS.
Disclaimer
Did you find what you were looking for today?
Let us know so we can improve the quality of the content on our pages