Overview
HCLTech’s One-Click-Landing-Zone (OCLZ) is deployed on top of Control Tower and LZA. The OCLZ solution takes leverage of LZA and provides multiple features along with secure, high-performing, resilient, and scalable based on AWS best practices and multiple global compliance frameworks. OCLZ can deploy a multi-account architecture in a few hours and create complete infrastructure for business use, ready to on-board workloads. OneClick Landing Zone (OCLZ) is setup a well-architected framework and multi-account architecture which is scalable, high-performing, resilient and secure.
• OCLZ Implementation - Greenfield Implementation for provision of new Accounts and Integrate customer existing account with OCLZ.
• OCLZ Networking - Establish Network Connectivity between the Workload Accounts and Automate Service Limit Submission.
• OCLZ Deployment - Service Catalog Driven Deployment for new Accounts Creation, Design networking in a new account and creating patch maintenance window.
• OCLZ Security - Enable Security features in all Accounts as per AWS Best Practice and Enhance Security features using Custom Guardrails.
• OCLZ Integration - Azure AD and HCL Cyber Security Consultant Service (CSCS).
Key Tenets
-
Aligned with pillars of the AWS Well Architected Framework
-
Integrated Security and Governance Frameworks
-
Multi AZ, Multi Region Resilient Architecture
-
Greenfield Implementation for provision of new Accounts and Integrate customer existing account with OCLZ.
-
Centralize Network – Hub-Spoke Model and optimal uses of VPC CIDR using IPAM.
-
Service Catalog Driven Deployment for new Account Creation, Design networking in a new account, Creating patch maintenance window.
-
Integration with HCL Cyber Security Consultant Service (CSCS) like Security Services like Vulnerability Management System, Threat Detection, Response, and Infrastructure as a code Security.
-
Automatic Patching of EC2 / Auto Scaling Group and supports Custom Guardrails
-
Centralize CloudWatch Dashboard for Monitoring and Logging AWS Resources
Highlights
- Custom Guardrails - OCLZ provides both Preventive and Detective Guardrails. Preventive Guardrails are implemented with service control policies (SCPs). Preventing deleting/modifying VPC, Subnet, Tag and CloudWatch Logs except Admin. OCLZ supports centralize backup and tagging policy based on Hourly, Daily, Monthly, yearly.
- Automatic Patching of EC2 / Auto Scaling Group - Application owners can create their patch maintenance window by leveraging the Service Catalog portfolio.
- Automate Service Limit Submission - Automating the Service limit request submission using pipelines as part of the deployment.
Details
Pricing
Custom pricing options
How can we make this page better?
Legal
Content disclaimer
Support
Vendor support
Please contact us at awsebu-ct@hcl.com with our solution which you are interested to know more on deployment and our support.