Overview
HCLTech’s One-Click-Landing-Zone (OCLZ) is deployed on top of Control Tower and LZA. The OCLZ solution takes leverage of LZA and provides multiple features along with secure, high-performing, resilient, and scalable based on AWS best practices and multiple global compliance frameworks. OCLZ can deploy a multi-account architecture in a few hours and create complete infrastructure for business use, ready to on-board workloads. OneClick Landing Zone (OCLZ) is setup a well-architected framework and multi-account architecture which is scalable, high-performing, resilient and secure.
• OCLZ Implementation - Greenfield Implementation for provision of new Accounts and Integrate customer existing account with OCLZ.
• OCLZ Networking - Establish Network Connectivity between the Workload Accounts and Automate Service Limit Submission.
• OCLZ Deployment - Service Catalog Driven Deployment for new Accounts Creation, Design networking in a new account and creating patch maintenance window.
• OCLZ Security - Enable Security features in all Accounts as per AWS Best Practice and Enhance Security features using Custom Guardrails.
• OCLZ Integration - Azure AD and HCL Cyber Security Consultant Service (CSCS).
Key Tenets
-
Aligned with pillars of the AWS Well Architected Framework
-
Integrated Security and Governance Frameworks
-
Multi AZ, Multi Region Resilient Architecture
-
Greenfield Implementation for provision of new Accounts and Integrate customer existing account with OCLZ.
-
Centralize Network – Hub-Spoke Model and optimal uses of VPC CIDR using IPAM.
-
Service Catalog Driven Deployment for new Account Creation, Design networking in a new account, Creating patch maintenance window.
-
Integration with HCL Cyber Security Consultant Service (CSCS) like Security Services like Vulnerability Management System, Threat Detection, Response, and Infrastructure as a code Security.
-
Automatic Patching of EC2 / Auto Scaling Group and supports Custom Guardrails
-
Centralize CloudWatch Dashboard for Monitoring and Logging AWS Resources
Highlights
- Custom Guardrails - OCLZ provides both Preventive and Detective Guardrails. Preventive Guardrails are implemented with service control policies (SCPs). Preventing deleting/modifying VPC, Subnet, Tag and CloudWatch Logs except Admin. OCLZ supports centralize backup and tagging policy based on Hourly, Daily, Monthly, yearly.
- Automatic Patching of EC2 / Auto Scaling Group - Application owners can create their patch maintenance window by leveraging the Service Catalog portfolio.
- Automate Service Limit Submission - Automating the Service limit request submission using pipelines as part of the deployment.
Details
Pricing
Custom pricing options
Legal
Content disclaimer
Support
Vendor support
Please contact us at awsebu-ct@hcl.com with our solution which you are interested to know more on deployment and our support.