SlideShare une entreprise Scribd logo
1  sur  35
Nexus 1000V Switch  Nexus 1010 Appliance Martin Vo zár,  [email_address] Consultant
[object Object]
Server Virtualization Issues 1 vMotion Moves VMs Across Physical Ports—the Network Policy Should Follow
Server Virtualization Issues 2 Impossible to View or Apply Network Policy to Locally Switched Traffic
Server Virtualization Issues Need Shared Nomenclature Between Network Admin and Server Admin 3 VMware vCenter Manager Switch Supervisor Interface
Key Findings of the 1000V ROI Study Virtualize More Apps with 1000V Spend Fewer Hours Running the vNetwork With 1000V 30%  APPS 30%  HOURS
Virtualize 30% More Applications ,[object Object],[object Object],[object Object],[object Object],[object Object],Port Profiles DMZ High Density VM VM VM VM VM VM VM
Spend 30% Less Hours/Yr on vNetwork Fewer Hours “ Keeping the Lights on”  Means More Hours “ Innovating”
Cisco Nexus 1000V ,[object Object],[object Object],[object Object],[object Object],[object Object],1000V VEM 1000V VSM VM VM VM VM Server Physical Switches vSphere
Policy-Based  VM Connectivity Mobility of Network and Security Properties Non-Disruptive  Operational Model Nexus 1000V VM VM VM VM Nexus 1000V VM VM VM VM Nexus 1000V VSM Server Server Physical Switches vSphere vSphere VMware vCenter
Policy-Based VM Connectivity Policy-Based  VM Connectivity Non-Disruptive  Operational Model Nexus 1000V VEM Nexus 1000V VEM Nexus 1000V VSM Server Server Physical Switches Mobility of Network and Security Properties vSphere Port Profiles WEB Apps HR DB DMZ vSphere VM VM VM VM VM VM VM VM ,[object Object],[object Object],[object Object],[object Object],VMware vCenter
Mobility of Network And Security Properties Policy-Based  VM Connectivity Non-Disruptive  Operational Model Nexus 1000V VEM Nexus 1000V VEM Nexus 1000V VSM Mobility of Network and Security Properties Server Server Physical Switches vSphere vSphere VM VM VM VM VM VM VM VM ,[object Object],[object Object],[object Object],[object Object],[object Object],VMware vCenter VM VM VM VM ,[object Object],[object Object],[object Object],[object Object]
Non-Disruptive Operational Model Policy-Based  VM Connectivity Nexus 1000V VEM Nexus 1000V VEM Nexus 1000V VSM ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],Non-Disruptive  Operational Model Server Server Physical Switches Mobility of Network and Security Properties vSphere vSphere VM VM VM VM ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],VMware vCenter VM VM VM VM
Nexus 1000V Architecture Nexus 1000V VM VM VM VM Nexus 1000V VM VM VM VM Nexus 1000V VSM Server Server Physical Switches vSphere vSphere ,[object Object],[object Object],[object Object],[object Object],VMware vCenter
Benefits  for the Server Admin ,[object Object],[object Object],“ 1000V has a lot more functionality than our own virtual switch”  – Steve Herrod, VMware CTO
Port Profile: Server Admin View
Benefits for the Network Admin ,[object Object],[object Object],[object Object],BEFORE 1000V AFTER 1000V “ 1000V  overcomes  the biggest network hurdles to virtualization”  – Ed Bugnion, Cisco CTO
Port Profile: Network Admin View ,[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object],[object Object]
Features of the Nexus 1000V Switching ,[object Object],[object Object],Security ,[object Object],[object Object],Provisioning ,[object Object],[object Object],Visibility ,[object Object],[object Object],Management ,[object Object],[object Object],VDI ,[object Object],[object Object]
Cisco Integrated Security Features ,[object Object],Feature Capability Prevents Port Security Restricting MAC addresses on a port Rogue VM spoofing MAC address IP Source Guard Maps IP address to MAC address IP/MAC spoofing DHCP Snooping Monitors DHCP transactions Rogue DHCP Server Dynamic ARP Inspection ARP: Maps IP address to MAC  Monitors ARP transactions, used in VMotion ARP attacks
Nexus Switch Family Product Technology Cisco Nexus 7000 Cisco Nexus 5000 Cisco Nexus 1000V Cisco Nexus 1010 Cisco Nexus 2000 NX-OS: Unified OS for the data center Unified Fabric: Lossless 10Gb transport for next-generation DC Fibre Channel over Ethernet (FCoE): Unified transport for LAN and FC VN-Link: Virtual Machine Aware Network RAB, DAL: High performance for HPC environments 10GbE: Enhanced speed  for growing demand Access   Access Core Server
[object Object]
What Is the Nexus 1010? ,[object Object],[object Object],[object Object],[object Object],[object Object]
Architecture Comparison Nexus 1000V VM VM VM 1000V VSM x 1 Server VSM on Virtual Machine Nexus 1000V VEM VM VM VM Server VM Cisco Nexus 1010 1000V VSM x 4 VSM on Nexus 1010 Physical Switches Physical Switches vSphere vSphere
Benefits for Both Teams Server Admin Network Admin Offload VSM Install/Mgmt to Network Team VSM Doesn’t Need VMware ESX Licensing Install The VSM Like a Standard Cisco Switch Prepare for VM Sprawl with Ample Scalability (256 Hosts Per Nexus 1010 Appliance)
Feature Comparison VSM on Virtual Machine VSM on Nexus 1010 Nexus 1000V features and scalability VEM running on vSphere 4 Enterprise Plus NX-OS high availability of VSM 64 hosts per VSM Nexus 1000V features and scalability VEM running on vSphere 4 Enterprise Plus NX-OS high availability of VSM 64 hosts per VSM, 4 VSMs, 256 hosts in total Installation like a standard Cisco switch Network Team manages the switch hardware Dedicated services appliance (NAM, etc.) Pure software deployment
Benefits of Cisco NAM on Nexus 1010 ,[object Object],[object Object],[object Object],[object Object],NetFlow ERSPAN
[object Object]
Switch Feature Comparison 1 Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0:  vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Switching Features Layer 2 Forwarding Yes Yes Yes Yes IEEE 802.1Q VLAN Tagging Yes Yes Yes Yes Multicast Support (IGMP v2 and v3) Yes Yes Yes Yes IGMPv3 Snooping - - - Yes VMware VMotion Support Yes Yes Yes Yes Network VMware VMotion (Network Policy) - - Yes Yes Upstream Switch Connectivity Virtual MAC Pinning Yes Yes Yes Yes EtherChannel Yes Yes Yes Yes Virtual Port Channels - - - Yes Link Aggregation Control Protocol (LACP) - - - Yes Load Balancing Algorithms Virtual Switchport ID Yes Yes Yes Yes Source MAC Yes Yes Yes Yes Source and Destination IP Yes Yes Yes Yes Source and Destination MAC - - - Yes Source and Destination Port IP - - - Yes Additional Hashing Options - - - Yes
Switch Feature Comparison 2 Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0:  vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Traffic Management Features Tx Rate Limiting (from virtual machine) Yes Yes Yes Yes Rx Rate Limiting (from virtual machine) - - Yes Yes iSCSI Multipathing - Yes Yes Yes Quality-of-service (QoS) marking Differentiated Services Code Point (DSCP) - - - Yes Type of Service - - - Yes Class of Service - - - Yes Security Features Port Security Yes Yes Yes Yes VMware VMSafe compatible Yes Yes Yes Yes Private VLANs (PVLANs) - - Yes Yes Local PVLAN enforcement - - - Yes Access Control Lists (ACL) - - - Yes DHCP Snooping - - - Yes IP Source Guard - - - Yes Dynamic ARP Inspection - - - Yes Virtual Service Domain - - - Yes
Switch Feature Comparison 3 ** Virtual switch network syslog information is exported and included with VMware ESX Server events. Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0:  vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Management Features VMware vCenter Support Yes Yes Yes Yes Third Party Accessible APIs Yes Yes Yes Yes Network Policy Groups Yes Yes Yes Yes VMware port mirroring (promiscuous) Yes Yes Yes - Multi-Tier Policy Groups (inheritance) - - - Yes SPAN - - - Yes ERSPAN - - - Yes Netflow v9 - - - Yes SNMP v3 Read/Write - - - Yes CDP v1/v2 Yes Yes Yes Yes Syslog ** ** ** Yes Packet Capture & Analysis - - - Yes Radius/TACACS+ - - - Yes Configuration and management console and interface VI Client VI Client VI Client to VMware vCenter Server VMware vCenter and Cisco CLI IPv6 for Management Yes Yes Yes Yes NX-OS XML API - - - Yes
[object Object]
More info… ,[object Object]
Evaluate ,[object Object]
Ďakujem za pozornosť Martin Vozár, vo [email_address]

Contenu connexe

Tendances

Rearchitecting Storage for Server Virtualization
Rearchitecting Storage for Server VirtualizationRearchitecting Storage for Server Virtualization
Rearchitecting Storage for Server Virtualization
Stephen Foskett
 
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_AliNET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
shezy22
 
ProfessionalVMware VCAP BrownBag Section 2
ProfessionalVMware VCAP BrownBag Section 2ProfessionalVMware VCAP BrownBag Section 2
ProfessionalVMware VCAP BrownBag Section 2
ProfessionalVMware
 

Tendances (20)

Inf net2227 heath
Inf net2227 heathInf net2227 heath
Inf net2227 heath
 
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
 
vSphere Container Storage
vSphere Container StoragevSphere Container Storage
vSphere Container Storage
 
Cisco Evolving virtual switching to applications & cloud
Cisco Evolving virtual switching to applications & cloudCisco Evolving virtual switching to applications & cloud
Cisco Evolving virtual switching to applications & cloud
 
VMworld 2013: Troubleshooting VXLAN and Network Services in a Virtualized Env...
VMworld 2013: Troubleshooting VXLAN and Network Services in a Virtualized Env...VMworld 2013: Troubleshooting VXLAN and Network Services in a Virtualized Env...
VMworld 2013: Troubleshooting VXLAN and Network Services in a Virtualized Env...
 
Rearchitecting Storage for Server Virtualization
Rearchitecting Storage for Server VirtualizationRearchitecting Storage for Server Virtualization
Rearchitecting Storage for Server Virtualization
 
Sdc 2012-how-can-hypervisors-leverage-advanced-storage-features-v7.6(20-9-2012)
Sdc 2012-how-can-hypervisors-leverage-advanced-storage-features-v7.6(20-9-2012)Sdc 2012-how-can-hypervisors-leverage-advanced-storage-features-v7.6(20-9-2012)
Sdc 2012-how-can-hypervisors-leverage-advanced-storage-features-v7.6(20-9-2012)
 
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_AliNET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
NET4933_vDS_Best_Practices_For_NSX_Francois_Tallet_Shahzad_Ali
 
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
VMworld 2013: Designing Network Virtualization for Data-Centers: Greenfield D...
 
NSX-MH
NSX-MHNSX-MH
NSX-MH
 
Cisco data center switch nexus series training presentation by zerone
Cisco data center switch nexus series training presentation by zeroneCisco data center switch nexus series training presentation by zerone
Cisco data center switch nexus series training presentation by zerone
 
IBM MQ V8 Security: Latest Features Deep-Dive
IBM MQ V8 Security: Latest Features Deep-DiveIBM MQ V8 Security: Latest Features Deep-Dive
IBM MQ V8 Security: Latest Features Deep-Dive
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real project
 
VMworld 2013: vSphere Networking and vCloud Networking Suite Best Practices a...
VMworld 2013: vSphere Networking and vCloud Networking Suite Best Practices a...VMworld 2013: vSphere Networking and vCloud Networking Suite Best Practices a...
VMworld 2013: vSphere Networking and vCloud Networking Suite Best Practices a...
 
ProfessionalVMware VCAP BrownBag Section 2
ProfessionalVMware VCAP BrownBag Section 2ProfessionalVMware VCAP BrownBag Section 2
ProfessionalVMware VCAP BrownBag Section 2
 
VMware vSphere 4.1 deep dive - part 1
VMware vSphere 4.1 deep dive - part 1VMware vSphere 4.1 deep dive - part 1
VMware vSphere 4.1 deep dive - part 1
 
VXLAN Practice Guide
VXLAN Practice GuideVXLAN Practice Guide
VXLAN Practice Guide
 
From virtual to high end HW routing for the adult
From virtual to high end HW routing for the adultFrom virtual to high end HW routing for the adult
From virtual to high end HW routing for the adult
 
Cisco Nexus Family Platform Overview
Cisco Nexus Family Platform OverviewCisco Nexus Family Platform Overview
Cisco Nexus Family Platform Overview
 
VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices
 

En vedette

Storage networking-technologies
Storage networking-technologiesStorage networking-technologies
Storage networking-technologies
sagaroceanic11
 

En vedette (18)

FEX -PPT By NETWORKERS HOME
FEX -PPT By NETWORKERS HOMEFEX -PPT By NETWORKERS HOME
FEX -PPT By NETWORKERS HOME
 
VDC by NETWORKERS HOME
VDC by NETWORKERS HOMEVDC by NETWORKERS HOME
VDC by NETWORKERS HOME
 
OTV PPT by NETWORKERS HOME
OTV PPT by NETWORKERS HOMEOTV PPT by NETWORKERS HOME
OTV PPT by NETWORKERS HOME
 
vPC_Final
vPC_FinalvPC_Final
vPC_Final
 
CCNA Data Center Ethernet Connections
CCNA Data Center Ethernet ConnectionsCCNA Data Center Ethernet Connections
CCNA Data Center Ethernet Connections
 
CCNA Data Center Ethernet Communication Standards
CCNA Data Center Ethernet Communication StandardsCCNA Data Center Ethernet Communication Standards
CCNA Data Center Ethernet Communication Standards
 
Storage networking-technologies
Storage networking-technologiesStorage networking-technologies
Storage networking-technologies
 
CCNA Data Center Functions of Networking
CCNA Data Center Functions of NetworkingCCNA Data Center Functions of Networking
CCNA Data Center Functions of Networking
 
CCNA Data Center Host to Host Communications
CCNA Data Center Host to Host CommunicationsCCNA Data Center Host to Host Communications
CCNA Data Center Host to Host Communications
 
Vpc notes
Vpc notesVpc notes
Vpc notes
 
A review of network concepts base on CISCO by Ali Shahbazi
A review of network concepts base on CISCO by Ali ShahbaziA review of network concepts base on CISCO by Ali Shahbazi
A review of network concepts base on CISCO by Ali Shahbazi
 
Cisco nexus series
Cisco nexus seriesCisco nexus series
Cisco nexus series
 
Inter VLAN Routing
Inter VLAN RoutingInter VLAN Routing
Inter VLAN Routing
 
Data Networking Concepts
Data Networking ConceptsData Networking Concepts
Data Networking Concepts
 
LAN Switching and Wireless: Ch3 - Virtual Local Area Networks (VLANs)
LAN Switching and Wireless: Ch3 - Virtual Local Area Networks (VLANs)LAN Switching and Wireless: Ch3 - Virtual Local Area Networks (VLANs)
LAN Switching and Wireless: Ch3 - Virtual Local Area Networks (VLANs)
 
Data Center Architecture Trends
Data Center Architecture TrendsData Center Architecture Trends
Data Center Architecture Trends
 
CCNA 2 Routing and Switching v5.0 Chapter 3
CCNA 2 Routing and Switching v5.0 Chapter 3CCNA 2 Routing and Switching v5.0 Chapter 3
CCNA 2 Routing and Switching v5.0 Chapter 3
 
VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5VMware Advance Troubleshooting Workshop - Day 5
VMware Advance Troubleshooting Workshop - Day 5
 

Similaire à ASBIS: Virtualization Aware Networking - Cisco Nexus 1000V

vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
Chrysostomos Christofi
 
Managing The Impact Of Virtualization Technology On Your Network
Managing The Impact Of Virtualization Technology On Your NetworkManaging The Impact Of Virtualization Technology On Your Network
Managing The Impact Of Virtualization Technology On Your Network
SolarWinds
 
Vsphere 4-partner-training180
Vsphere 4-partner-training180Vsphere 4-partner-training180
Vsphere 4-partner-training180
Juan Ulacia
 

Similaire à ASBIS: Virtualization Aware Networking - Cisco Nexus 1000V (20)

Nexus 1000_ver 1.1
Nexus 1000_ver 1.1Nexus 1000_ver 1.1
Nexus 1000_ver 1.1
 
vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
vmwarenetworkingnexus1000vm-fex-v2-140125071045-phpapp01
 
Cisco Virtualized Network Services
Cisco Virtualized Network ServicesCisco Virtualized Network Services
Cisco Virtualized Network Services
 
Acceleris+ +new business+-+3iun2010
Acceleris+ +new business+-+3iun2010Acceleris+ +new business+-+3iun2010
Acceleris+ +new business+-+3iun2010
 
Presentation cisco nexus 1010 overview and deployment
Presentation   cisco nexus 1010 overview and deploymentPresentation   cisco nexus 1010 overview and deployment
Presentation cisco nexus 1010 overview and deployment
 
Cisco NetApp VMware - Long Distance VMotion
Cisco NetApp VMware - Long Distance VMotionCisco NetApp VMware - Long Distance VMotion
Cisco NetApp VMware - Long Distance VMotion
 
Managing The Impact Of Virtualization Technology On Your Network
Managing The Impact Of Virtualization Technology On Your NetworkManaging The Impact Of Virtualization Technology On Your Network
Managing The Impact Of Virtualization Technology On Your Network
 
Vsphere 4-partner-training180
Vsphere 4-partner-training180Vsphere 4-partner-training180
Vsphere 4-partner-training180
 
Iaas on xcp
Iaas on xcpIaas on xcp
Iaas on xcp
 
PLNOG 13: Jacek Wosz: User Defined Network
PLNOG 13: Jacek Wosz: User Defined NetworkPLNOG 13: Jacek Wosz: User Defined Network
PLNOG 13: Jacek Wosz: User Defined Network
 
Citrix Day 2014: NetScaler Cisco ACE
Citrix Day 2014: NetScaler Cisco ACECitrix Day 2014: NetScaler Cisco ACE
Citrix Day 2014: NetScaler Cisco ACE
 
Presentation cisco nexus enabling the cloud infrastructure
Presentation   cisco nexus enabling the cloud infrastructurePresentation   cisco nexus enabling the cloud infrastructure
Presentation cisco nexus enabling the cloud infrastructure
 
Presentation data center virtualization –setting the foundation
Presentation   data center virtualization –setting the foundationPresentation   data center virtualization –setting the foundation
Presentation data center virtualization –setting the foundation
 
VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments
 
OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX
OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSXOVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX
OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX
 
Vsphere 4-partner-training180
Vsphere 4-partner-training180Vsphere 4-partner-training180
Vsphere 4-partner-training180
 
Ottawa e-NFV Session
Ottawa e-NFV Session Ottawa e-NFV Session
Ottawa e-NFV Session
 
Cisco nexus 1010
Cisco nexus 1010Cisco nexus 1010
Cisco nexus 1010
 
VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture
 
Virtualization meisen 042811
Virtualization meisen 042811Virtualization meisen 042811
Virtualization meisen 042811
 

Plus de ASBIS SK

DataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage HypervisorDataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage Hypervisor
ASBIS SK
 
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
ASBIS SK
 
VMware: Ekonomický pohľad na cloud
VMware: Ekonomický pohľad na cloudVMware: Ekonomický pohľad na cloud
VMware: Ekonomický pohľad na cloud
ASBIS SK
 

Plus de ASBIS SK (20)

ICT služby ASBIS-u
ICT služby ASBIS-uICT služby ASBIS-u
ICT služby ASBIS-u
 
Dell Fluid Data Management vo virtuálnych prostrediach
Dell Fluid Data Management vo virtuálnych prostrediachDell Fluid Data Management vo virtuálnych prostrediach
Dell Fluid Data Management vo virtuálnych prostrediach
 
Zimbra: Vytvorte si privátny email cloud za 10 minút. Zadarmo.
Zimbra: Vytvorte si privátny email cloud za 10 minút. Zadarmo.Zimbra: Vytvorte si privátny email cloud za 10 minút. Zadarmo.
Zimbra: Vytvorte si privátny email cloud za 10 minút. Zadarmo.
 
Evolúcia, alebo revolúcia? vSphere 5 update
Evolúcia, alebo revolúcia? vSphere 5 updateEvolúcia, alebo revolúcia? vSphere 5 update
Evolúcia, alebo revolúcia? vSphere 5 update
 
SafeNet - Data Protection Company
SafeNet - Data Protection CompanySafeNet - Data Protection Company
SafeNet - Data Protection Company
 
VMware world news
VMware world newsVMware world news
VMware world news
 
DataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage HypervisorDataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage Hypervisor
 
DataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage HypervisorDataCore Software - The one and only Storage Hypervisor
DataCore Software - The one and only Storage Hypervisor
 
Veeam Backup & Replication v6: More great reasons to choose Veeam
Veeam Backup & Replication v6: More great reasons to choose VeeamVeeam Backup & Replication v6: More great reasons to choose Veeam
Veeam Backup & Replication v6: More great reasons to choose Veeam
 
Deduplikované zálohovanie vo virtualizovaných prostrediach
Deduplikované zálohovanie vo virtualizovaných prostrediachDeduplikované zálohovanie vo virtualizovaných prostrediach
Deduplikované zálohovanie vo virtualizovaných prostrediach
 
VMware Enterprise Manager s ICZ
VMware Enterprise Manager s ICZVMware Enterprise Manager s ICZ
VMware Enterprise Manager s ICZ
 
Cisco VXI - Virtual eXperience Infrastructure
Cisco VXI - Virtual eXperience InfrastructureCisco VXI - Virtual eXperience Infrastructure
Cisco VXI - Virtual eXperience Infrastructure
 
IBM Cloud Burst postavená na platforme IBM System x
IBM Cloud Burst postavená na platforme IBM System xIBM Cloud Burst postavená na platforme IBM System x
IBM Cloud Burst postavená na platforme IBM System x
 
ATOS - Siemens IT solutions and Services pod novou značkou
ATOS - Siemens IT solutions and Services pod novou značkouATOS - Siemens IT solutions and Services pod novou značkou
ATOS - Siemens IT solutions and Services pod novou značkou
 
HP Storage pre virtuálne systémy (Prehľad riešení na zálohovanie a ukladanie ...
HP Storage pre virtuálne systémy (Prehľad riešení na zálohovanie a ukladanie ...HP Storage pre virtuálne systémy (Prehľad riešení na zálohovanie a ukladanie ...
HP Storage pre virtuálne systémy (Prehľad riešení na zálohovanie a ukladanie ...
 
HP Blade matrix, HP Cloud a HP Virtual systém (prehľad HP virtualizačných rie...
HP Blade matrix, HP Cloud a HP Virtual systém (prehľad HP virtualizačných rie...HP Blade matrix, HP Cloud a HP Virtual systém (prehľad HP virtualizačných rie...
HP Blade matrix, HP Cloud a HP Virtual systém (prehľad HP virtualizačných rie...
 
Acronis Backup and Recovery 11 - physical, virtual and cloud
Acronis Backup and Recovery 11 - physical, virtual and cloudAcronis Backup and Recovery 11 - physical, virtual and cloud
Acronis Backup and Recovery 11 - physical, virtual and cloud
 
Sada cloudovej infraštruktúry a VMware vSphere 5 - základ pre firemný hybridn...
Sada cloudovej infraštruktúry a VMware vSphere 5 - základ pre firemný hybridn...Sada cloudovej infraštruktúry a VMware vSphere 5 - základ pre firemný hybridn...
Sada cloudovej infraštruktúry a VMware vSphere 5 - základ pre firemný hybridn...
 
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
Zutom: Uvažujete o cloude? Spoznajte služby poskytovateľa cloudu a tých, ktor...
 
VMware: Ekonomický pohľad na cloud
VMware: Ekonomický pohľad na cloudVMware: Ekonomický pohľad na cloud
VMware: Ekonomický pohľad na cloud
 

Dernier

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 

Dernier (20)

Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 

ASBIS: Virtualization Aware Networking - Cisco Nexus 1000V

  • 1. Nexus 1000V Switch Nexus 1010 Appliance Martin Vo zár, [email_address] Consultant
  • 2.
  • 3. Server Virtualization Issues 1 vMotion Moves VMs Across Physical Ports—the Network Policy Should Follow
  • 4. Server Virtualization Issues 2 Impossible to View or Apply Network Policy to Locally Switched Traffic
  • 5. Server Virtualization Issues Need Shared Nomenclature Between Network Admin and Server Admin 3 VMware vCenter Manager Switch Supervisor Interface
  • 6. Key Findings of the 1000V ROI Study Virtualize More Apps with 1000V Spend Fewer Hours Running the vNetwork With 1000V 30% APPS 30% HOURS
  • 7.
  • 8. Spend 30% Less Hours/Yr on vNetwork Fewer Hours “ Keeping the Lights on” Means More Hours “ Innovating”
  • 9.
  • 10. Policy-Based VM Connectivity Mobility of Network and Security Properties Non-Disruptive Operational Model Nexus 1000V VM VM VM VM Nexus 1000V VM VM VM VM Nexus 1000V VSM Server Server Physical Switches vSphere vSphere VMware vCenter
  • 11.
  • 12.
  • 13.
  • 14.
  • 15.
  • 16. Port Profile: Server Admin View
  • 17.
  • 18.
  • 19.
  • 20.
  • 21. Nexus Switch Family Product Technology Cisco Nexus 7000 Cisco Nexus 5000 Cisco Nexus 1000V Cisco Nexus 1010 Cisco Nexus 2000 NX-OS: Unified OS for the data center Unified Fabric: Lossless 10Gb transport for next-generation DC Fibre Channel over Ethernet (FCoE): Unified transport for LAN and FC VN-Link: Virtual Machine Aware Network RAB, DAL: High performance for HPC environments 10GbE: Enhanced speed for growing demand Access Access Core Server
  • 22.
  • 23.
  • 24. Architecture Comparison Nexus 1000V VM VM VM 1000V VSM x 1 Server VSM on Virtual Machine Nexus 1000V VEM VM VM VM Server VM Cisco Nexus 1010 1000V VSM x 4 VSM on Nexus 1010 Physical Switches Physical Switches vSphere vSphere
  • 25. Benefits for Both Teams Server Admin Network Admin Offload VSM Install/Mgmt to Network Team VSM Doesn’t Need VMware ESX Licensing Install The VSM Like a Standard Cisco Switch Prepare for VM Sprawl with Ample Scalability (256 Hosts Per Nexus 1010 Appliance)
  • 26. Feature Comparison VSM on Virtual Machine VSM on Nexus 1010 Nexus 1000V features and scalability VEM running on vSphere 4 Enterprise Plus NX-OS high availability of VSM 64 hosts per VSM Nexus 1000V features and scalability VEM running on vSphere 4 Enterprise Plus NX-OS high availability of VSM 64 hosts per VSM, 4 VSMs, 256 hosts in total Installation like a standard Cisco switch Network Team manages the switch hardware Dedicated services appliance (NAM, etc.) Pure software deployment
  • 27.
  • 28.
  • 29. Switch Feature Comparison 1 Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0: vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Switching Features Layer 2 Forwarding Yes Yes Yes Yes IEEE 802.1Q VLAN Tagging Yes Yes Yes Yes Multicast Support (IGMP v2 and v3) Yes Yes Yes Yes IGMPv3 Snooping - - - Yes VMware VMotion Support Yes Yes Yes Yes Network VMware VMotion (Network Policy) - - Yes Yes Upstream Switch Connectivity Virtual MAC Pinning Yes Yes Yes Yes EtherChannel Yes Yes Yes Yes Virtual Port Channels - - - Yes Link Aggregation Control Protocol (LACP) - - - Yes Load Balancing Algorithms Virtual Switchport ID Yes Yes Yes Yes Source MAC Yes Yes Yes Yes Source and Destination IP Yes Yes Yes Yes Source and Destination MAC - - - Yes Source and Destination Port IP - - - Yes Additional Hashing Options - - - Yes
  • 30. Switch Feature Comparison 2 Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0: vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Traffic Management Features Tx Rate Limiting (from virtual machine) Yes Yes Yes Yes Rx Rate Limiting (from virtual machine) - - Yes Yes iSCSI Multipathing - Yes Yes Yes Quality-of-service (QoS) marking Differentiated Services Code Point (DSCP) - - - Yes Type of Service - - - Yes Class of Service - - - Yes Security Features Port Security Yes Yes Yes Yes VMware VMSafe compatible Yes Yes Yes Yes Private VLANs (PVLANs) - - Yes Yes Local PVLAN enforcement - - - Yes Access Control Lists (ACL) - - - Yes DHCP Snooping - - - Yes IP Source Guard - - - Yes Dynamic ARP Inspection - - - Yes Virtual Service Domain - - - Yes
  • 31. Switch Feature Comparison 3 ** Virtual switch network syslog information is exported and included with VMware ESX Server events. Feature ESX 3.5: Standard vSwitch ESX 4.0: vNetwork Standard Switch (U1) ESX 4.0: vNetwork Distributed Switch (U1) Cisco Nexus 1000V (U1) Management Features VMware vCenter Support Yes Yes Yes Yes Third Party Accessible APIs Yes Yes Yes Yes Network Policy Groups Yes Yes Yes Yes VMware port mirroring (promiscuous) Yes Yes Yes - Multi-Tier Policy Groups (inheritance) - - - Yes SPAN - - - Yes ERSPAN - - - Yes Netflow v9 - - - Yes SNMP v3 Read/Write - - - Yes CDP v1/v2 Yes Yes Yes Yes Syslog ** ** ** Yes Packet Capture & Analysis - - - Yes Radius/TACACS+ - - - Yes Configuration and management console and interface VI Client VI Client VI Client to VMware vCenter Server VMware vCenter and Cisco CLI IPv6 for Management Yes Yes Yes Yes NX-OS XML API - - - Yes
  • 32.
  • 33.
  • 34.
  • 35. Ďakujem za pozornosť Martin Vozár, vo [email_address]

Notes de l'éditeur

  1. Bullet1: vMotion moves VMs across physical ports—the network policy must follow From a network perspective, one would like to have a security policy that is attached to the virtual machine as it moves.  Unfortunately, today’s tools only allow for network policy to be attached to the physical server.  In fact, VMware has a tool called DRS, or Dynamic Resource Scheduler, that automatically migrates the VM depending on CPU and memory loads. Regardless of the time of day, network administrators need to know what the VMs are doing.  What they really need is mobile security policy attached to the VM   Bullet2: Impossible to view or apply network policy to locally switched traffic The second issue with server virtualization is the virtual switch inside the hypervisor that switches packets between virtual machines.  It is actually fairly difficult to see which VM is actually talking to other VMs inside the server.  Customers are demanding troubleshooting and debugging capabilities inside the server.   Bullet3: Need collaboration between network and server admin There is muddled ownership of the virtual switch.  Nowadays, server admins manage the virtual switch, and they need constant communication with their nework administrator to configure the virtual switch. On one hand, Server admins want their network team to configure the virtual network. On the other hand, network admins are demanding network tools to configure the virtual switch and they want visibility down to the virtual machine. Nexus 1000V overcomes these three server virtualization issues, and accelerates datacenter virtualization.
  2. Bullet1: vMotion moves VMs across physical ports—the network policy must follow From a network perspective, one would like to have a security policy that is attached to the virtual machine as it moves.  Unfortunately, today’s tools only allow for network policy to be attached to the physical server.  In fact, VMware has a tool called DRS, or Dynamic Resource Scheduler, that automatically migrates the VM depending on CPU and memory loads. Regardless of the time of day, network administrators need to know what the VMs are doing.  What they really need is mobile security policy attached to the VM   Bullet2: Impossible to view or apply network policy to locally switched traffic The second issue with server virtualization is the virtual switch inside the hypervisor that switches packets between virtual machines.  It is actually fairly difficult to see which VM is actually talking to other VMs inside the server.  Customers are demanding troubleshooting and debugging capabilities inside the server.   Bullet3: Need collaboration between network and server admin There is muddled ownership of the virtual switch.  Nowadays, server admins manage the virtual switch, and they need constant communication with their nework administrator to configure the virtual switch. On one hand, Server admins want their network team to configure the virtual network. On the other hand, network admins are demanding network tools to configure the virtual switch and they want visibility down to the virtual machine. Nexus 1000V overcomes these three server virtualization issues, and accelerates datacenter virtualization.
  3. Bullet1: vMotion moves VMs across physical ports—the network policy must follow From a network perspective, one would like to have a security policy that is attached to the virtual machine as it moves.  Unfortunately, today’s tools only allow for network policy to be attached to the physical server.  In fact, VMware has a tool called DRS, or Dynamic Resource Scheduler, that automatically migrates the VM depending on CPU and memory loads. Regardless of the time of day, network administrators need to know what the VMs are doing.  What they really need is mobile security policy attached to the VM   Bullet2: Impossible to view or apply network policy to locally switched traffic The second issue with server virtualization is the virtual switch inside the hypervisor that switches packets between virtual machines.  It is actually fairly difficult to see which VM is actually talking to other VMs inside the server.  Customers are demanding troubleshooting and debugging capabilities inside the server.   Bullet3: Need collaboration between network and server admin There is muddled ownership of the virtual switch.  Nowadays, server admins manage the virtual switch, and they need constant communication with their nework administrator to configure the virtual switch. On one hand, Server admins want their network team to configure the virtual network. On the other hand, network admins are demanding network tools to configure the virtual switch and they want visibility down to the virtual machine. Nexus 1000V overcomes these three server virtualization issues, and accelerates datacenter virtualization.
  4. How will the Nexus 1000V allow me to virtualize 30% more of my datacenter?... Mileage may vary. 30% is conservative. Many customers are seeking to virtualize in excess of 60% of their datacenter. Operational readiness assessments across a variety of VMware customers have shown that network hurdles are some of the most difficult challenges in virtualizing more servers. That is where the Nexus 1000V comes in to increase the rate of server virtualization and allow companies to realize the benefits of more server virtualization right away. Virtualize 30% more applications DMZ applications can be virtualized with the help of private VLAN isolation, and security policy enforcement with ACL Regulatory applications can be virtualized with Netflow, ERSPAN, port statistics that persist after vMotion Tier-1 applications can be virtualized with increased visibility and IO optimization with LACP, vPC host mode How will the Nexus 1000V allow me to spend 30% less time maintaining my virtual network?...
  5. How will the Nexus 1000V allow me to spend 30% less time maintaining my virtual network?... Example, in a 3 server cluster it would take 30 minutes each (or 1.5 hours) for a typical change request. With the 1000V this same change takes 1 hour for all 3 servers in the cluster. This is a 30% reduction in the number of hours to manage the virtual network, which grows as the cluster grows. Let’s try it out for ourselves… With a distributed switch, network change requests take 1 hour per domain rather than 30 minutes per server (for 3 servers that is 30% less hours/yr) With Nexus 1000V, regulatory and organizational audits take 20 minutes per server rather than 1 hour With Nexus 1000V, the server admin may offload network configuration to the network admin, this division of labor increases productivity
  6. Accelerate & Simplify deployment of new ESX hosts Network Admin provisions physical switch trunks & ESX host PNICs in a uniform and consistent way (takes care of both sides of physical connection) Virtualization Admin 1) plugs in a new ESX host, 2) assigns PNICs to Cisco vNetwork Distributed Switch in vCenter, 3) ESX PNIC configuration (including vMotion & Console) automatically assigned and enabled, 4) ESX host ready for VMs Ensure proper connectivity & networking safeguards are in place Virtualization Admin leverages existing workflow (vCenter & Port Groups) to assign VNIC policy. Network Admin responsible for ensuring Port Groups provide proper VLAN access & DC network security policy Cisco Nexus 1000V extends VM networking to include IP/Port security rules, multi-host PVLAN, Flow Statistics, Quality of Service.
  7. VM workflow doesn’t change Virtualization administrator continues to leverage vCenter for VM creation, maintenance, monitoring ESX vSwitch configuration & management responsibility offloaded vSwitch and Port Groups now provisioned along with the physical network infrastructure ensuring consistency, virtualization administrator subscribes VMs to available Port Groups and vSwitch is dynamically provisioned Equip Data Center operations teams to respond to applications issues By extending the data center network operations model and troubleshooting toolkit down to the virtualization infrastructure, customers can leverage physical world tools and diagnostic procedures for their VM-based applications – 1 consistent model for the whole data center
  8. 1000V overcomes network hurdles to virtualize tier-1, regulatory and DMZ applications 1000V makes ESX deployment faster, “one and done” 1000V offloads network workflow to the network admin Three largest hurdles to server virtualization (once the low hanging fruit has been virtualized) are highly secure DMZ applications, high risk regulatory applications, and high uptime Tier-1 applications. The applications are hard to virtualize without the 1000V’s VM-level visibility and port-profile security.
  9. 1000V overcomes hurdles to virtualize applications with DMZ, high bandwidth, highly secure applications 1000V standardizes workflow for virtual and physical networks 1000V allows visibility into VM traffic
  10. -- slide 4 – [Nexus-An Unmatched rate of Innovation] Soni and Rajiv, I think we would all clearly agree that not only has Cisco delivered a number of high impact announcements in the last year, there has been major technology innovation in these announcements. In quick review we first introduced the Cisco Nexus 7000 in January at CiscoLive in Barcelona, This device formed the basis a new product category, the Data Center Class switch, that fundamentally reinvented and elevated what a switch must do in a core datacenter role. At the same time, we introduced NX-OS, a unified OS for the data center that drew on the legacy of all we had learned with IOS and SAN-OS and combined them At our Partner conference in April, with the Introduction of the Nexus 5000, we delivered both Data Center Ethernet (lossless 10 Gb transport for this next generation data center and FCOE, that provides the unified transport of both LAN and FC. There was also the very important news about a series of ecosystem partner and their announcements so crucial to making this effort a success. Finally, at the recently created VMWorld we revolutionized virtual machine internetworking with the introduction of Nexus 1000V ..—our theme there was Virtual machine Aware network, storage and unified fabric, given that the virtual machine is the new Data Center atomic unit.
  11. NAM Virtual Blade on Nexus 1010 appliance is the first step of multi-phased NAM product strategy to address virtualization challenges Offers Nexus 1000v differentiation through integrated solution for performance monitoring and operational manageability
  12. Can I evaluate the Nexus 1000V?... Yes, for 60-days. Special promotion for $795 for bundled upgrade of both vSphere and Nexus 1000V Want to learn more about the Nexus 1000V?...
  13. Can I evaluate the Nexus 1000V?... Yes, for 60-days. Special promotion for $795 for bundled upgrade of both vSphere and Nexus 1000V Want to learn more about the Nexus 1000V?...