But how does this happen? Surely Google has the ability to make highly available systems that are resistant to power going out at one of the three locations (as per the article).
That doesn’t help if they have software that assumes it can reach all sites. I remember a few years ago AWS had a EC2 outage in eu-central-1 because of 1 of the Availability Zones went down and the service that allocates instances threw a 500 when it failed to get that AZ’s capacity instead of just allocating the instances to the other 2 AZs.
Companies are made up of people. Companies save money by firing the most expensive people, the most experienced. The ones left have a lot less experience.
From the incident report it seems the impact was limited to VMs in one DC in one region to be stopped, as the power was lost. And some service degradation in the region.
So not that much impact. Of course resources in this DC would stop working, but the rest of the region was still working properly. If you built your infra in this region in a resilient manner, your services should not have been impacted that much
Cloud: just someone else’s computer.
But how does this happen? Surely Google has the ability to make highly available systems that are resistant to power going out at one of the three locations (as per the article).
That doesn’t help if they have software that assumes it can reach all sites. I remember a few years ago AWS had a EC2 outage in eu-central-1 because of 1 of the Availability Zones went down and the service that allocates instances threw a 500 when it failed to get that AZ’s capacity instead of just allocating the instances to the other 2 AZs.
I get how it’s possible, but this is Google. Surely they have decades of experience at keeping a website up no matter what happens!
Companies are made up of people. Companies save money by firing the most expensive people, the most experienced. The ones left have a lot less experience.
You could also say its AWS. They also should have the experience, but mistakes happen
From the incident report it seems the impact was limited to VMs in one DC in one region to be stopped, as the power was lost. And some service degradation in the region.
So not that much impact. Of course resources in this DC would stop working, but the rest of the region was still working properly. If you built your infra in this region in a resilient manner, your services should not have been impacted that much