SlideShare une entreprise Scribd logo
1  sur  45
8/20/2013
© 2010 Copyright Kelser Corporation – All Rights
Reserved
1
8/20/2013
© 2010 Copyright Kelser Corporation – All Rights
Reserved
2
Matt Kozloski
Kelser Corporation
 Overview of hybrid cloud
 Why VMware?
 Why Kelser?
 Technical Overview
 Demo
 Q&A
A common infrastructure that is made up of more than
one specific cloud.
Private
Public
Hybrid
Internet bandwidth is [finally] capable and affordable.
Source: www.akamai.com/stateoftheinternet
Source: www.akamai.com/stateoftheinternet
 Move to cloud at YOUR pace
 NOT all-or-nothing
 Maintain control over specific/proprietary data in your
private cloud
 Move less sensitive data/applications to the cloud
 YOU control it and get the best of both worlds!
 You can have logical (network/resource) isolation from
your peers OR have physical isolation – your choice.
 Let’s wipe out some FUD:
◦ Fear: vCHS has an ISO/IEC 27001 certified information
security management system.
◦ Uncertainty: You don’t have to move everything. Just
move what you’re comfortable with. If you aren’t happy,
move it back.
◦ Doubt: VMware’s vCHS runs on “the infrastructure you
already know and trust”. Cloud is definitely here and here
to stay.
 Virtual Private Cloud
◦ Logically Isolated
◦ Starts at:
 20GB vRAM
 5 GHz CPU
 2TB Disk
 Internet Bandwidth: 10 Mbps allocated / 50 Mbps burst / 2 public IPs
 ~ $1,200 / month **
 Monthly Term (3 / 12 month commitments)
 Dedicated Cloud
◦ Physically Isolated
◦ Starts at:
 120GB vRAM
 30 GHz CPU
 6TB Disk
 Internet Bandwidth: 50 Mbps allocated / 1Gbps burst / 3 public IPs
 ~ $12,000 / month **
 Annual Term
** Figures are approximate / budgetary for discussion purposes only. Subscription pricing may vary depending on
different options, term commitments, and final GA vCHS pricing **
 Move test/dev environments, to save cost and increase
reliability. Good way to “test” the cloud.
Private
Public
Hybrid
Test / Dev
 Create your own hosted Exchange environment, to keep
the flexibility you like and improve availability. Or,
extend your existing Exchange environment (2010+
DAG)!
Private
Public
Hybrid
 Have your stateless web farm in the cloud and your
databases on-premise
Private
Public
Hybrid
 Give legacy systems a more permanent home
Private
Public
Hybrid
The “really old
application that no
one uses but we
need to keep
forever, just in
case”
 Burst for temporary environments or times of the year.
Private
Public
Hybrid
 Securely backup/replicate for business continuity
Private
Public
Hybrid
 DCE = Data Center Extension
o “Stretch Deploy” VMs from existing vSphere networks to the
vCHS Cloud!
o VPN with Layer 2 bridge capability
Private
Public
Hybrid
 “Runs on the infrastructure you already know and trust”
 Applications function the same way they did, on your
on-premise virtual farm
 Manage your private cloud and public cloud from one
console
 One number for support, directly to the people who
essentially invented virtualization, as we know it today.
 We understand:
◦ YOU
◦ On-premise Cloud
◦ Public Cloud
◦ The “glue” or “plumbing” that connects this all together
Kelser actively participated in the Early Access program,
working closely with the vCHS technical team to iron-out
the exciting DCE offering, making it actually work “as
advertised”.
 Technical Overview
 A vApp is a logical container around a pool of VMs
providing logical and network separation.
 Every VM in vCHS is contained within a vApp
 Each vApp can have a single VM or multiple VMs
 Each vApp can have its own networking policies
 vShield Edge: Virtualized Network “swiss army knife”
◦ New Name: vCNS
◦ Features:
 NAT (DNAT and SNAT)
 Load Balancer
 DHCP
 VPN
 IPSec (point-to-point)
 SSL VPN-Plus
◦ The Edge device between your
on-premise vSphere/vCloud
infrastructure and vCHS
vShield Edge
On this screen, you see Kelser’s Edge Gateway, in vCHS. An Edge Gateway
can have up to 10 interfaces. This is deployed for you by vCHS:
We have 2 routed
networks (each consumes
an interface on the Edge
Gateway)
We have 1 isolated
network (does NOT
consume an interface on
the Edge Gateway)
Let’s look at my Exchange vApp:
You can see that the
172-16-100-0 network
is outside the vApp
and that the vApp has
an uplink connected.
The two VMs are
connected to the vApp
network, which is
connected to the VDC
Org network.
This example shows a vApp with a vShield Edge and then
uplinked to an org VDC.
Why would you want
this? Well, perhaps you
are a service provider
and want to firewall
your customers from
each other.
Or perhaps you need to
preserve an IP space,
such as the case with
DCE.
Once vCloud Connector, vCloud Server, and vCNS Edge are loaded,
you can simply right-click on a workload (server) and move it and
its network identity to vCHS!
 DCE creates a VPN tunnel between your vCNS Edge and vCHS
Edge
 The VPN supports layer 2 traffic
 You can move a VM, with its existing IP information / network
configuration, to vCHS
 Simple right-click and “Stretch Deploy”
Let’s try it out!
There is a L2 VPN Link
between the Edge
Gateway at Kelser and
the Edge Gateway
below the Routed
network, for the DCE
vApp.
Since the Edge
Gateways are listening
for broadcasts on
172.16.55.0 and know
what’s on the other
side, they proxy
broadcasts and
answer arp requests
for traffic on either side
of the VPN.
You can see this VM is
“still at home”. It’s on the
172.16.55.0/24 network,
physically at Kelser.
I can ping it’s gateway (a
Cisco 3750X stack) and a
VM that I’ve already
stretch deployed.
I could also ping it from
my lab workstation. This
just shows it’s up/running
“at home”.
To initiate the Stretch
Deploy, I’ll shut that
VM down and then
locate it in the vCloud
Connector plugin, in
vSphere.
You can see that the
vCloud Connector
“sees” both my
vSphere Private
Cloud and the vCHS
Public Cloud.
I’ll right-click on the
VM I want to move to
vCHS and click
“Stretch Deploy”.
It will then open a
wizard to guide me
through the rest.
First, I’ll select my
target.
“Strechted_k-d-rds” is
a vApp that was
created from a VM I
already deployed, so
we’ll just re-use that.
Since I already
Stretch Deployed one
VM, these fields are
greyed out and
populated with the
values that
correspond with that
vApp.
I don’t need a
proxy, so I’ll leave
this how it is and
click “Next”.
I’ll just let it power
on, when it gets
there and click
“Next”.
Summary looks OK,
so I’ll click “Finish” to
complete the wizard.
Looking good! You
can see this kicked off,
as a task on the right.
You can see the
tasks completed.
This took about an
hour, to upload the
VM to VMware’s
datacenter and then
deploy it to my VDC.
Let’s check out the network,
now that it’s been moved.
It retained its IP information
(first of all).
You can see it still has the
172.16.55.1 gateway (still
back to the core switch,
physically at Kelser) and it
can reach it.
You can see that this VM
can still ping VM’s back
home and receives replies.
There is a L2 VPN Link
between the Edge
Gateway at Kelser and
the Edge Gateway
below the Routed
network, for the DCE
vApp.
Since the Edge
Gateways are listening
for broadcasts on
172.16.55.0 and know
what’s on the other
side, they proxy
broadcasts and
answer arp requests
for traffic on either side
of the VPN.
 Hybrid means YOU consume cloud at YOUR pace
 VMware vCloud Hybrid Service was designed, built, and is
supported by the company that invented virtualization, as we
know it
 Your applications already run on vSphere; vCHS is the same
vSphere you and your applications already know.
 VMware vCloud Hybrid Service has many networking options,
to securely connect you to the cloud, almost anyway you
could imagine (including L2 VPN)
 Kelser was an active participant in the vCHS Early Access
program and understands how the “plumbing” works and
how to get it working for you.
Matthew Kozloski
Senior Virtualization Engineer
O: 860.610.2214 | F: 860.291.9088
mkozloski@kelsercorp.com
www.kelsercorp.com
111 Roberts St, Suite D
East Hartford, CT 06108

Contenu connexe

Tendances

VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld
 
Secure SDN
Secure SDNSecure SDN
Secure SDNAPNIC
 
SDN, Network Virtualization, and the Right Abstraction
SDN, Network Virtualization, and the Right AbstractionSDN, Network Virtualization, and the Right Abstraction
SDN, Network Virtualization, and the Right AbstractionScott Lowe
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectDavid Pasek
 
SDN in CloudStack
SDN in CloudStackSDN in CloudStack
SDN in CloudStackbuildacloud
 
VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices VMworld
 
Virtualize All the Things!
Virtualize All the Things!Virtualize All the Things!
Virtualize All the Things!David Pechon
 
Cisco Cloud Networking Workshop
Cisco Cloud Networking Workshop Cisco Cloud Networking Workshop
Cisco Cloud Networking Workshop Cisco Canada
 
OVH Webinar: 10 questions you should ask your Cloud Service Provider
OVH Webinar: 10 questions you should ask your Cloud Service ProviderOVH Webinar: 10 questions you should ask your Cloud Service Provider
OVH Webinar: 10 questions you should ask your Cloud Service ProviderOVHcloud
 
Workshop eNovance/OpenStack 20-12-2012
Workshop eNovance/OpenStack 20-12-2012Workshop eNovance/OpenStack 20-12-2012
Workshop eNovance/OpenStack 20-12-2012eNovance
 
NSX Reference Design version 3.0
NSX Reference Design version 3.0NSX Reference Design version 3.0
NSX Reference Design version 3.0Doddi Priyambodo
 
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)Scott Lowe
 
VMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesVMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesAngel Villar Garea
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld
 
Business Agility and Security with VMware
Business Agility and Security with VMwareBusiness Agility and Security with VMware
Business Agility and Security with VMwareAngel Villar Garea
 
Automating CloudStack and hypervisor installation and configuration
Automating CloudStack and hypervisor installation and configurationAutomating CloudStack and hypervisor installation and configuration
Automating CloudStack and hypervisor installation and configurationDag Sonstebo
 
VMware NSX primer 2014
VMware NSX primer 2014VMware NSX primer 2014
VMware NSX primer 2014Sanjay Basu
 
VMworld 2014: Virtualize your Network with VMware NSX
VMworld 2014: Virtualize your Network with VMware NSXVMworld 2014: Virtualize your Network with VMware NSX
VMworld 2014: Virtualize your Network with VMware NSXVMworld
 
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...VMworld
 

Tendances (20)

VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture
 
Secure SDN
Secure SDNSecure SDN
Secure SDN
 
SDN, Network Virtualization, and the Right Abstraction
SDN, Network Virtualization, and the Right AbstractionSDN, Network Virtualization, and the Right Abstraction
SDN, Network Virtualization, and the Right Abstraction
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real project
 
SDN in CloudStack
SDN in CloudStackSDN in CloudStack
SDN in CloudStack
 
VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices VMworld 2013: vSphere Distributed Switch – Design and Best Practices
VMworld 2013: vSphere Distributed Switch – Design and Best Practices
 
Virtualize All the Things!
Virtualize All the Things!Virtualize All the Things!
Virtualize All the Things!
 
Cisco Cloud Networking Workshop
Cisco Cloud Networking Workshop Cisco Cloud Networking Workshop
Cisco Cloud Networking Workshop
 
OVH Webinar: 10 questions you should ask your Cloud Service Provider
OVH Webinar: 10 questions you should ask your Cloud Service ProviderOVH Webinar: 10 questions you should ask your Cloud Service Provider
OVH Webinar: 10 questions you should ask your Cloud Service Provider
 
Workshop eNovance/OpenStack 20-12-2012
Workshop eNovance/OpenStack 20-12-2012Workshop eNovance/OpenStack 20-12-2012
Workshop eNovance/OpenStack 20-12-2012
 
NSX Reference Design version 3.0
NSX Reference Design version 3.0NSX Reference Design version 3.0
NSX Reference Design version 3.0
 
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)
The Vision for the Future of Network Virtualization with VMware NSX (Q2 2016)
 
VMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesVMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use cases
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
Business Agility and Security with VMware
Business Agility and Security with VMwareBusiness Agility and Security with VMware
Business Agility and Security with VMware
 
Automating CloudStack and hypervisor installation and configuration
Automating CloudStack and hypervisor installation and configurationAutomating CloudStack and hypervisor installation and configuration
Automating CloudStack and hypervisor installation and configuration
 
VMware NSX primer 2014
VMware NSX primer 2014VMware NSX primer 2014
VMware NSX primer 2014
 
VMworld 2014: Virtualize your Network with VMware NSX
VMworld 2014: Virtualize your Network with VMware NSXVMworld 2014: Virtualize your Network with VMware NSX
VMworld 2014: Virtualize your Network with VMware NSX
 
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...
VMworld 2013: VMware NSX Extensibility: Network and Security Services from 3r...
 

En vedette

S cnet fp u hercegovini pover point show
S cnet fp u hercegovini pover point showS cnet fp u hercegovini pover point show
S cnet fp u hercegovini pover point showPucola Euroblic
 
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u Sarajevo
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u SarajevoSCnet organizacija putovanja za 20 07 2014 iz Hercegovine u Sarajevo
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u SarajevoPucola Euroblic
 
VP Exports, Inc. Introduction Presentation
VP Exports, Inc. Introduction PresentationVP Exports, Inc. Introduction Presentation
VP Exports, Inc. Introduction PresentationShauna Vo
 
Benefits of voting
Benefits of votingBenefits of voting
Benefits of votingVasu Saha
 
Employment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityEmployment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityExpoco
 
Outsourcing human resources
Outsourcing human resourcesOutsourcing human resources
Outsourcing human resourcesExpoco
 
Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Expoco
 
Preparing for your annual review
Preparing for your annual reviewPreparing for your annual review
Preparing for your annual reviewExpoco
 
Corporate Security and the Organisational Frontline
Corporate Security and the Organisational FrontlineCorporate Security and the Organisational Frontline
Corporate Security and the Organisational FrontlineExpoco
 
Networking and Career Development
Networking and Career DevelopmentNetworking and Career Development
Networking and Career DevelopmentExpoco
 
Diffusing and managing workplace conflict
Diffusing and managing workplace conflictDiffusing and managing workplace conflict
Diffusing and managing workplace conflictExpoco
 
Project management 101
Project management 101 Project management 101
Project management 101 Expoco
 
Issues in Business Etiquette
Issues in Business EtiquetteIssues in Business Etiquette
Issues in Business EtiquetteExpoco
 
Team Leading
Team LeadingTeam Leading
Team LeadingExpoco
 

En vedette (15)

Prigovori i odgovori
Prigovori i odgovoriPrigovori i odgovori
Prigovori i odgovori
 
S cnet fp u hercegovini pover point show
S cnet fp u hercegovini pover point showS cnet fp u hercegovini pover point show
S cnet fp u hercegovini pover point show
 
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u Sarajevo
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u SarajevoSCnet organizacija putovanja za 20 07 2014 iz Hercegovine u Sarajevo
SCnet organizacija putovanja za 20 07 2014 iz Hercegovine u Sarajevo
 
VP Exports, Inc. Introduction Presentation
VP Exports, Inc. Introduction PresentationVP Exports, Inc. Introduction Presentation
VP Exports, Inc. Introduction Presentation
 
Benefits of voting
Benefits of votingBenefits of voting
Benefits of voting
 
Employment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market EquityEmployment Branding - Building Talent Market Equity
Employment Branding - Building Talent Market Equity
 
Outsourcing human resources
Outsourcing human resourcesOutsourcing human resources
Outsourcing human resources
 
Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market Load Profiling for the NSW Gas Mass Market
Load Profiling for the NSW Gas Mass Market
 
Preparing for your annual review
Preparing for your annual reviewPreparing for your annual review
Preparing for your annual review
 
Corporate Security and the Organisational Frontline
Corporate Security and the Organisational FrontlineCorporate Security and the Organisational Frontline
Corporate Security and the Organisational Frontline
 
Networking and Career Development
Networking and Career DevelopmentNetworking and Career Development
Networking and Career Development
 
Diffusing and managing workplace conflict
Diffusing and managing workplace conflictDiffusing and managing workplace conflict
Diffusing and managing workplace conflict
 
Project management 101
Project management 101 Project management 101
Project management 101
 
Issues in Business Etiquette
Issues in Business EtiquetteIssues in Business Etiquette
Issues in Business Etiquette
 
Team Leading
Team LeadingTeam Leading
Team Leading
 

Similaire à Are you Ready for vCloud?

VMworld 2015: vSphere Distributed Switch 6 –Technical Deep Dive
VMworld 2015: vSphere Distributed Switch 6 –Technical Deep DiveVMworld 2015: vSphere Distributed Switch 6 –Technical Deep Dive
VMworld 2015: vSphere Distributed Switch 6 –Technical Deep DiveVMworld
 
VMware - vCloud Hybrid Services
VMware - vCloud Hybrid Services VMware - vCloud Hybrid Services
VMware - vCloud Hybrid Services VMUG IT
 
Cheap OpenVZ VPS Hosting
Cheap OpenVZ VPS Hosting Cheap OpenVZ VPS Hosting
Cheap OpenVZ VPS Hosting hostnamaste
 
Discover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarDiscover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarOVHcloud
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld
 
MuleSoft Meetup Vancouver 5th Virtual Event
MuleSoft Meetup Vancouver 5th Virtual EventMuleSoft Meetup Vancouver 5th Virtual Event
MuleSoft Meetup Vancouver 5th Virtual EventVikalp Bhalia
 
AWS virtual private clould
AWS virtual private clouldAWS virtual private clould
AWS virtual private clouldMegha Sahu
 
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld
 
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Amazon Web Services
 
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...Amazon Web Services
 
SDE Solution Overview v1.5
SDE Solution Overview v1.5SDE Solution Overview v1.5
SDE Solution Overview v1.5Joe Kaluza
 
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdfShahedHasib1
 
Virtualize All The Things!
Virtualize All The Things!Virtualize All The Things!
Virtualize All The Things!Sparkhound Inc.
 
How I reshaped my lab environment
How I reshaped my lab environmentHow I reshaped my lab environment
How I reshaped my lab environmentsubtitle
 
Frank Denneman keynote
Frank Denneman keynoteFrank Denneman keynote
Frank Denneman keynoteVMUG IT
 
A Deepdive into Azure Networking
A Deepdive into Azure NetworkingA Deepdive into Azure Networking
A Deepdive into Azure NetworkingKarim Vaes
 
VirtSec, and the Open Source impact
VirtSec,  and the Open Source impactVirtSec,  and the Open Source impact
VirtSec, and the Open Source impactKris Buytaert
 

Similaire à Are you Ready for vCloud? (20)

VMworld 2015: vSphere Distributed Switch 6 –Technical Deep Dive
VMworld 2015: vSphere Distributed Switch 6 –Technical Deep DiveVMworld 2015: vSphere Distributed Switch 6 –Technical Deep Dive
VMworld 2015: vSphere Distributed Switch 6 –Technical Deep Dive
 
VMware - vCloud Hybrid Services
VMware - vCloud Hybrid Services VMware - vCloud Hybrid Services
VMware - vCloud Hybrid Services
 
Cheap OpenVZ VPS Hosting
Cheap OpenVZ VPS Hosting Cheap OpenVZ VPS Hosting
Cheap OpenVZ VPS Hosting
 
Discover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud WebinarDiscover the OVH Dedicated Cloud Webinar
Discover the OVH Dedicated Cloud Webinar
 
Cloud Technology: Virtualization
Cloud Technology: VirtualizationCloud Technology: Virtualization
Cloud Technology: Virtualization
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
 
Web Werks Cloud Hosting FAQ
Web Werks Cloud Hosting FAQWeb Werks Cloud Hosting FAQ
Web Werks Cloud Hosting FAQ
 
MuleSoft Meetup Vancouver 5th Virtual Event
MuleSoft Meetup Vancouver 5th Virtual EventMuleSoft Meetup Vancouver 5th Virtual Event
MuleSoft Meetup Vancouver 5th Virtual Event
 
Virtualization & tipping point
Virtualization & tipping pointVirtualization & tipping point
Virtualization & tipping point
 
AWS virtual private clould
AWS virtual private clouldAWS virtual private clould
AWS virtual private clould
 
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep DiveVMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
VMworld 2014: vCloud Hybrid Service Networking Technical Deep Dive
 
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
 
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...
GPSTEC322-GPS Creating Your Virtual Data Center VPC Fundamentals Connectivity...
 
SDE Solution Overview v1.5
SDE Solution Overview v1.5SDE Solution Overview v1.5
SDE Solution Overview v1.5
 
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf
2017DellEMCForum-ConsistentCloudOperations-VMwareCloudonAWS-FV.pdf
 
Virtualize All The Things!
Virtualize All The Things!Virtualize All The Things!
Virtualize All The Things!
 
How I reshaped my lab environment
How I reshaped my lab environmentHow I reshaped my lab environment
How I reshaped my lab environment
 
Frank Denneman keynote
Frank Denneman keynoteFrank Denneman keynote
Frank Denneman keynote
 
A Deepdive into Azure Networking
A Deepdive into Azure NetworkingA Deepdive into Azure Networking
A Deepdive into Azure Networking
 
VirtSec, and the Open Source impact
VirtSec,  and the Open Source impactVirtSec,  and the Open Source impact
VirtSec, and the Open Source impact
 

Dernier

Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024The Digital Insurer
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesBoston Institute of Analytics
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingEdi Saputra
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfsudhanshuwaghmare1
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?Igalia
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...Neo4j
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Principled Technologies
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 

Dernier (20)

Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
Deploy with confidence: VMware Cloud Foundation 5.1 on next gen Dell PowerEdg...
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 

Are you Ready for vCloud?

  • 1. 8/20/2013 © 2010 Copyright Kelser Corporation – All Rights Reserved 1
  • 2. 8/20/2013 © 2010 Copyright Kelser Corporation – All Rights Reserved 2 Matt Kozloski Kelser Corporation
  • 3.  Overview of hybrid cloud  Why VMware?  Why Kelser?  Technical Overview  Demo  Q&A
  • 4.
  • 5. A common infrastructure that is made up of more than one specific cloud. Private Public Hybrid
  • 6. Internet bandwidth is [finally] capable and affordable. Source: www.akamai.com/stateoftheinternet
  • 8.  Move to cloud at YOUR pace  NOT all-or-nothing  Maintain control over specific/proprietary data in your private cloud  Move less sensitive data/applications to the cloud  YOU control it and get the best of both worlds!  You can have logical (network/resource) isolation from your peers OR have physical isolation – your choice.
  • 9.  Let’s wipe out some FUD: ◦ Fear: vCHS has an ISO/IEC 27001 certified information security management system. ◦ Uncertainty: You don’t have to move everything. Just move what you’re comfortable with. If you aren’t happy, move it back. ◦ Doubt: VMware’s vCHS runs on “the infrastructure you already know and trust”. Cloud is definitely here and here to stay.
  • 10.  Virtual Private Cloud ◦ Logically Isolated ◦ Starts at:  20GB vRAM  5 GHz CPU  2TB Disk  Internet Bandwidth: 10 Mbps allocated / 50 Mbps burst / 2 public IPs  ~ $1,200 / month **  Monthly Term (3 / 12 month commitments)  Dedicated Cloud ◦ Physically Isolated ◦ Starts at:  120GB vRAM  30 GHz CPU  6TB Disk  Internet Bandwidth: 50 Mbps allocated / 1Gbps burst / 3 public IPs  ~ $12,000 / month **  Annual Term ** Figures are approximate / budgetary for discussion purposes only. Subscription pricing may vary depending on different options, term commitments, and final GA vCHS pricing **
  • 11.  Move test/dev environments, to save cost and increase reliability. Good way to “test” the cloud. Private Public Hybrid Test / Dev
  • 12.  Create your own hosted Exchange environment, to keep the flexibility you like and improve availability. Or, extend your existing Exchange environment (2010+ DAG)! Private Public Hybrid
  • 13.  Have your stateless web farm in the cloud and your databases on-premise Private Public Hybrid
  • 14.  Give legacy systems a more permanent home Private Public Hybrid The “really old application that no one uses but we need to keep forever, just in case”
  • 15.  Burst for temporary environments or times of the year. Private Public Hybrid
  • 16.  Securely backup/replicate for business continuity Private Public Hybrid
  • 17.  DCE = Data Center Extension o “Stretch Deploy” VMs from existing vSphere networks to the vCHS Cloud! o VPN with Layer 2 bridge capability Private Public Hybrid
  • 18.  “Runs on the infrastructure you already know and trust”  Applications function the same way they did, on your on-premise virtual farm  Manage your private cloud and public cloud from one console  One number for support, directly to the people who essentially invented virtualization, as we know it today.
  • 19.  We understand: ◦ YOU ◦ On-premise Cloud ◦ Public Cloud ◦ The “glue” or “plumbing” that connects this all together Kelser actively participated in the Early Access program, working closely with the vCHS technical team to iron-out the exciting DCE offering, making it actually work “as advertised”.
  • 21.
  • 22.  A vApp is a logical container around a pool of VMs providing logical and network separation.  Every VM in vCHS is contained within a vApp  Each vApp can have a single VM or multiple VMs  Each vApp can have its own networking policies
  • 23.
  • 24.  vShield Edge: Virtualized Network “swiss army knife” ◦ New Name: vCNS ◦ Features:  NAT (DNAT and SNAT)  Load Balancer  DHCP  VPN  IPSec (point-to-point)  SSL VPN-Plus ◦ The Edge device between your on-premise vSphere/vCloud infrastructure and vCHS vShield Edge
  • 25. On this screen, you see Kelser’s Edge Gateway, in vCHS. An Edge Gateway can have up to 10 interfaces. This is deployed for you by vCHS:
  • 26. We have 2 routed networks (each consumes an interface on the Edge Gateway) We have 1 isolated network (does NOT consume an interface on the Edge Gateway)
  • 27. Let’s look at my Exchange vApp: You can see that the 172-16-100-0 network is outside the vApp and that the vApp has an uplink connected. The two VMs are connected to the vApp network, which is connected to the VDC Org network.
  • 28. This example shows a vApp with a vShield Edge and then uplinked to an org VDC. Why would you want this? Well, perhaps you are a service provider and want to firewall your customers from each other. Or perhaps you need to preserve an IP space, such as the case with DCE.
  • 29. Once vCloud Connector, vCloud Server, and vCNS Edge are loaded, you can simply right-click on a workload (server) and move it and its network identity to vCHS!  DCE creates a VPN tunnel between your vCNS Edge and vCHS Edge  The VPN supports layer 2 traffic  You can move a VM, with its existing IP information / network configuration, to vCHS  Simple right-click and “Stretch Deploy” Let’s try it out!
  • 30. There is a L2 VPN Link between the Edge Gateway at Kelser and the Edge Gateway below the Routed network, for the DCE vApp. Since the Edge Gateways are listening for broadcasts on 172.16.55.0 and know what’s on the other side, they proxy broadcasts and answer arp requests for traffic on either side of the VPN.
  • 31. You can see this VM is “still at home”. It’s on the 172.16.55.0/24 network, physically at Kelser. I can ping it’s gateway (a Cisco 3750X stack) and a VM that I’ve already stretch deployed. I could also ping it from my lab workstation. This just shows it’s up/running “at home”.
  • 32. To initiate the Stretch Deploy, I’ll shut that VM down and then locate it in the vCloud Connector plugin, in vSphere. You can see that the vCloud Connector “sees” both my vSphere Private Cloud and the vCHS Public Cloud.
  • 33. I’ll right-click on the VM I want to move to vCHS and click “Stretch Deploy”. It will then open a wizard to guide me through the rest.
  • 34. First, I’ll select my target. “Strechted_k-d-rds” is a vApp that was created from a VM I already deployed, so we’ll just re-use that.
  • 35. Since I already Stretch Deployed one VM, these fields are greyed out and populated with the values that correspond with that vApp.
  • 36. I don’t need a proxy, so I’ll leave this how it is and click “Next”.
  • 37. I’ll just let it power on, when it gets there and click “Next”.
  • 38. Summary looks OK, so I’ll click “Finish” to complete the wizard.
  • 39. Looking good! You can see this kicked off, as a task on the right.
  • 40. You can see the tasks completed. This took about an hour, to upload the VM to VMware’s datacenter and then deploy it to my VDC.
  • 41. Let’s check out the network, now that it’s been moved. It retained its IP information (first of all). You can see it still has the 172.16.55.1 gateway (still back to the core switch, physically at Kelser) and it can reach it. You can see that this VM can still ping VM’s back home and receives replies.
  • 42. There is a L2 VPN Link between the Edge Gateway at Kelser and the Edge Gateway below the Routed network, for the DCE vApp. Since the Edge Gateways are listening for broadcasts on 172.16.55.0 and know what’s on the other side, they proxy broadcasts and answer arp requests for traffic on either side of the VPN.
  • 43.  Hybrid means YOU consume cloud at YOUR pace  VMware vCloud Hybrid Service was designed, built, and is supported by the company that invented virtualization, as we know it  Your applications already run on vSphere; vCHS is the same vSphere you and your applications already know.  VMware vCloud Hybrid Service has many networking options, to securely connect you to the cloud, almost anyway you could imagine (including L2 VPN)  Kelser was an active participant in the vCHS Early Access program and understands how the “plumbing” works and how to get it working for you.
  • 44.
  • 45. Matthew Kozloski Senior Virtualization Engineer O: 860.610.2214 | F: 860.291.9088 mkozloski@kelsercorp.com www.kelsercorp.com 111 Roberts St, Suite D East Hartford, CT 06108

Notes de l'éditeur

  1. Update Whiteboard Slide