Live data from Hacker News

Is a billion dollars worth of server lying on the ground?

cerebralab.com

231–240 of 338 posts

Re: Is a billion dollars worth of server lying on the ground?

#231
Personal observation:

I purchased a company that was locked into cloud infrastructure. They had received over $10M in venture capital several years ago, and had been running their own servers at some point because I found some of them in their warehouse.

At some point they had switched to AWS, and then at a later point switched to GC. When I encountered them they had shut down due to lack of funding.

Their servers were running in zombie mode racking up over $6k per month in charges. Data export would have cost over $10k. They were also renting warehouse and office space.

They had very few assets, and not enough income to cover expenses.

If their server costs had been reasonable, they might have survived, but they couldn't bring those costs down.

Re: Is a billion dollars worth of server lying on the ground?

#232
I've worked at a shop that used both bare-metal servers from OVH as well as VMs from AWS. Using the EC2 instances were infinitely simpler, we could easily automate so much of it and manage using load balancing and scaling services. AWS instances were the default choice as the scaling up and down was a huge benefit as well as the simpler management and additional services available.

The only places we used OVH bare metal servers was for bulk. Our ElasticSearch cluster had so much RAM that the EC2 cost was very prohibitive. For our DB servers we couldn't at the time get the same performance raid SSDs/controllers and vertical scaling (256GB, 512GB). For our disposable webapp servers we could have used either and since the ops was already worked out having used OVH before AWS kept it that way with a bit more ops and a smaller infra bill. When you have hundreds of hardware hosts, they're failing monthly and it's up to you to image a new one and add it to the cluster.

To have only one way to do things, it also meant that Chef was used instead of immutable instance creation which was a pain to keep everything in sync.

My thought process is basically: (1) small number of instances -> cloud VMs, (2) medium instances w/ founder(s) time but no capital -> bare metal, (3) mature app or huge number -> bare metal

Re: Is a billion dollars worth of server lying on the ground?

#233
post #76

Earlier quoted context omitted.

Many people use AWS because everyone uses AWS. Many of my clients have no need for AWS but still use it, at least until the VC money runs out. Usually then I have to go first, then servers are moving to somewhere cheaper when a new CFO comes in.

At my company we colo at a few local datacenters and have do deal with a huge amount of pressure from our investors as to why we're not using AWS. The points that always seem to come up: * AWS is a known quantity and it's easier to evaluate our business with it. * AWS provides "outage damage control" because AWS outages make the news and customers are more understanding. When our ISP has issues it just looks bad on u…

A startup I was with in 1999 was owned by a guy who build a super scrappy local isp who sold out to a big co which then sold out to cable.

However the startup was all built on oracle and sun boxes because "this is what investors want to see" and we'll get .80 on the dollar if we have to liquidate. We had some nimrod spend 8 months trying to get oracle to run on bare drives for our 100 tps (max) website.

They refused to let us use mysql or linux even tho the owner was very familliar with them from the ISP.

I think we spent 3x headcount on the hardware and software, eg we could have run for another 2 years had we been more scrappy. Not that the business idea was all that good.

We also got .3 on the dollar iirc.

Re: Is a billion dollars worth of server lying on the ground?

#234

Earlier quoted context omitted.

Every infrastructure is as secure as you configure it to be without bugs. Not that AWS doesn't allow for secure infastructure and you're basement is secure by default, but as a consultant I see clients when I ask them about security saying "We're secure because we use AWS.".

One should definitely not default into "we're secure because we use AWS". But let's be honest, how many servers in the basement feature video surveillance? How many destroy their hard disks securely? An honest statement would be "we reduced our burden of security by building on top of AWS".

Not to counter your point, but what I've learned and was suprised how cheap it is to letting a company destroy your harddisks and USB sticks - at least in Germany.

Re: Is a billion dollars worth of server lying on the ground?

#235

Earlier quoted context omitted.

I can't tell if your comment is a particularly rude way of picking the nit that "nothing is free, the cost (e.g., of IAM) is built into other services" or if you really find it absurd that the nominal price of many AWS services is $0 or something else entirely.

The nominal price of $0 absolutely is absurd, since every individual service has a separate pricing chart down to the ELB.

There are many free AWS services. Off the top of my head:

- IAM

- VPC

- ECS

- Several SSM services

- CodeDeploy

Re: Is a billion dollars worth of server lying on the ground?

#236
post #157
post #155

Earlier quoted context omitted.

Yeah, I would avoid their VPS. I benchmarked their higher end VPS and they were still not great. Ran a few as well on Vultr, Linode, and DO and ended up going with none of them. Linode performed the best for VPS for me, but price-point wise, it was a better deal to head straight up to dedi's on OVH. I still run small VPS instances for various workers and what-not, but straight up app and db servers go to OVH.

If I go for dedi, do you know any tool to simulate running multiple, independent VPSs on a dedicated server? I was thinking maybe something like creating Docker containers on the dedicated server, but I'm not sure how the management/provisioning/resource sharing would work, plus I assume it would still need extra IPs and stuff like that for each VPS. It would be nice to have like a Control Panel where you can link de…

Promox is great, as the other reply mentioned.

We don't use any virtualization like that. All bare metal as we are running a single app.

Re: Is a billion dollars worth of server lying on the ground?

#237
post #202

I wonder how many billions of dollars worth of unsold cars are just 'lying around'. How many billions of dollars worth of fire trucks are parked right now doing nothing? Given redundancy and inventory logistics, once your industry gets to some number of billions of dollars of equipment, you're goddamn right there's going to be a billion dollars worth of equipment lying around. It's not the magnitude, it's the ratio t…

Your comment is correct, but not really related to the article. Author not talking about money wasted on underutilized resources, but money wasted on expensive VPS providers like AWS versus budget options like OVH. Honestly it's a pretty misleading title.

Everything relates to everything else. No corporation is giving you things out of the kindness of its heart. They have a plan to get paid.

The price of the Ferrari is not just the price of the Ferrari. It's the price of all of the logistics and inventory management as well.

The extent to which OVH lags behind Amazon in terms of selection and ability to absorb a large order or a new large customer is all factored into the price differential. Putting 'billions' into the title role suggests an audience of people who make million dollar purchasing decisions (lots of servers, and get them today), not tens of thousands of mom and pop shops trying to save $1000 a quarter. But maybe that's just me.

It's one thing if Amazon is price gouging. It's quite another if OVH is undercutting to build market share. We keep arguing in bad faith about the price difference between a company that can sustain their price point for decades versus one that will have to hike their rates the moment we get comfortable, or risk going bankrupt. If it were all the former, yes let's discuss. If it's all the latter, I don't understand how in 2020 we can still be having that sort of conversation. The road behind us is lined with gravestones, and we should know better. Having another conversation of that sort ranks, for me, somewhere between root canal and spinal tap.

Probably it's a bit of both. I doubt very much that it's that OVH knows how to get a $1000 server cheaper than Amazon can do it.

Re: Is a billion dollars worth of server lying on the ground?

#238
post #220

Earlier quoted context omitted.

The correct answer to "What company would provide developers direct access to raw compute resources in the cloud" is "one that is deeply misguided." At the most simple level, it seems like progress. Now every developer can get their own server and push their code, test it, do whatever, think of the agility. But, realistically, all that's happened is the creation of hundreds of silos, each configured differently, poss…

Perhaps this is the right model for a particular scenario with which you’re familiar, but it doesn’t match my scenario and is kind of patronizing. Also, developers should absolutely worry about which TLS algorithms are accepted.

Really? Alright then, right now, off the top of your head: What are the set of TLS ciphers which are generally regarded by the security community to represent the highest security standards?

I have no clue. The AWS ALB 2016-08 security policy allows for ECDHE-ECDSA-AES128-GCM-SHA256 ECDHE-RSA-AES128-GCM-SHA256 ECDHE-ECDSA-AES128-SHA256 ECDHE-RSA-AES128-SHA256 ECDHE-ECDSA-AES128-SHA ECDHE-RSA-AES128-SHA ECDHE-ECDSA-AES256-GCM-SHA384 and another 16 or so.

Of course, that's the default ALB policy. I didn't know that. There's a more strict TLS policy available: TLS-1-2-2017-01. Do you know what the difference between the 2016-08 and TLS-1-2-2017-01 policies are? I don't. I could look it up. Well, beyond disallowing TLS 1.0 and 1.1, TLS-1-2-2017-01 also disallows the ECDHE-ECDSA-AES128-SHA ECDHE-RSA-AES128-SHA ECDHE-RSA-AES256-SHA and ECDHE-ECDSA-AES256-SHA ciphers. Cool.

This shit is VERY domain specific. Its arcane. The way I worded those last three paragraphs was patronizing, to establish a point: No one knows this off the top of their heads. This naturally leads to two things I believe are true at any company (beyond a certain "garage"-scale): As few people as possible should worry about this, and even those people should encode it in some kind of automation that guarantees they don't have to be hands-on when configuring future resources which need this information.

Otherwise: YOU WILL GET IT WRONG. Guaranteed, at some point, maybe today, maybe in eight months, if you let every developer at a company worry about TLS ciphersets, one of them will screw it up. That's not patronizing; that's human nature. We're fallible. We don't all have massive domain expertise, and even the ones who do make mistakes. Manually configuring things is a guaranteed recipe for mistakes.

I'm using ciphersets as an example, but these things are everywhere. I don't trust any developer, including myself, to remember that by default most JWT libraries allow an alg of "none" to pass verification. I don't trust anyone to remember that S3 buckets by default allow per-object public read settings without a separate non-default bucket-level setting to block it. I don't trust anyone to remember that SQS FIFO queues only allow one concurrent reader per read group (nor understand what that means in practice, because this issue is Literally a weekly thing on /r/aws), or to know that hosting a public website on S3 is startlingly easy to DoS via egress network charges and AWS wont refund it.

Capital One, one of the biggest banks on the planet, was hacked because of a misconfigured S3 bucket. I have relieved myself of the hubris of believing I can do this on my own, a hubris every developer needs to relieve themselves of. Encode this stuff into automation and have every eye you can find inspect your changes. And while there's room to give developers a lot of power in this setup, part of that is not "here's an AWS account, have fun".

Re: Is a billion dollars worth of server lying on the ground?

#240
post #86

Earlier quoted context omitted.

You don't think there is variance in performance when you rent hardware? You've never had an HDD or SSD that underperformed vs. others of the same type or model? You've never had a stick of RAM that underperformed, or threw lots of CEs? I'll be frank: If you haven't seen performance variance with physical hardware, you either have been incredibly lucky, not paying attention, or not working at a very large scale.

Ah, that delightful cloud propaganda move, where you assert that because some undesirable thing happens to both VMs and physical machines, that they're the same, elegantly glossing over the orders of magnitude difference in severity.

I'm not sure how it's "cloud propaganda" to say that performance variance is a very real thing in response to someone making the claim that it doesn't exist when you rent servers.
Post reply on HN