SlideShare ist ein Scribd-Unternehmen logo
1 von 90
Downloaden Sie, um offline zu lesen
Cloud Service Automation with NSX and vCloud
Automation Center
Gargi Keeling, VMware
Valentina Reutova, VMware
VCM5477
#VCM5477
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
A Valid Model for Consumption – Fully Stocked Inventory
Advantages
 Items always available
 Requests immediately
fulfilled
 Considerable choice
Disadvantages
 Inventory costs
 Unused items go to waste
 Requires planning
 Pay a premium for instant
gratification and
convenience (little choice)
Another Model - “Pay As You Go”
Advantages
 No inventory costs
 Only pay for what you use
Disadvantages
 Restricted by product
availability and store hours
 No instant gratification
 It could be worse…?
What Are You Trying to Optimize For Application Infrastructure?
COST
(Money)
CHOICE
(Scope)
AGILITY
(Time)
APP
DATABASE
WEB
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
End Users Still Wait Weeks for Their Apps
Network and security challenges hamper cloud
service provisioning.
VI Admin /
Cloud
Operator
I need to check with the
network team for VLANs
and IP addresses.
Hmmm….I’ll need to ask the ops team
for available addresses, put in a change
request for new firewall rules, ask for a
load balancer pool…
Get back to you in a month?
Network
Architect
They said a few
weeks…
Oh…just
forget it.
Aargh!
Business User
I need this,
NOW.
What if …
Your cloud service provisioning solution could spin up and tear
down logical networks and services as needed, to deliver
application infrastructure on-demand?
VI Admin /
Cloud
Operator
I saved a lot of time,
too. Now I can work
on other stuff.
Business User
Got my machines.
Now I’m in
business. Thanks!
I’ve got visibility and control over
virtual network infrastructure. No
complaints here.
Network
Architect
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
Most Requested Deployment Models for Multi-Tiered Apps
Cloud Automation + Network Virtualization
Leverage pre-created logical networks and services to deliver application
infrastructure on-demand.
Create On-
Demand
Leverage Existing
Infrastructure
WEB APP DATABASE
APPLICATION
APP
DATABASE
WEB
APPLICATIONNetwork
Router
Load
Balancer
Firewall
Rules
The Solution
Cloud Automation
Self - Service
IaaS PaaS DaaS XaaS
Cloud Service Automation
Heterogeneous Infrastructure
Policy-Based Governance with Automated Delivery
Network Virtualization
Any Application
(without modification)
Virtual Networks
VMware NSX Network Virtualization Platform
Logical L2
Any Network Hardware
Any Cloud Management Platform
Logical
Firewall
Logical
Load Balancer
Logical L3
Logical
VPN
Any Hypervisor
Templates Address a Big Part of the Problem
“We are really striving to create a frictionless
environment for any common, allowed,
repeatable configurations that would allow
people to point and click provision from an
approved template.”
Don Wood, Cloud Architect, McKesson
Policy Enforcement At Multiple Layers
Cloud Automation
Resource
Reservations
Enforce at
infrastructure layer
Application
Blueprints
Enforce based on end
user entitlements
Network Virtualization +
Compute Virtualization
► Logical Firewalls (Security Groups)
►Logical Switches ►Load Balancer
Resources
provisioned in
infrastructure
Provisioning
Group
Enforce based on
group entitlements
Why NSX?
Built-in, logical services that are programmable for
easy consumption by cloud automation solutions.
Logical FirewallLogical Switch
Logical
Load Balancer
Logical Router
VM
VM
VM VM
VMVM
VM
VM
VMVM
VM
VM
VM
VM
VM VM VM
VMVMVMVM
VM VM
VM VM VM
VM
VM
VM
VM
Security Groups
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
Future Direction
Cloud Automation + Network Virtualization
Spin up and tear down logical networks and services as needed, to deliver
application infrastructure on-demand.
Create On-
Demand
Leverage Existing
Infrastructure
APP
DATABASE
WEB
WEB APP DATABASE
Hierarchy of Needs for Networking & Security of Applications
Simplicity
Availability
Security
Connectivity & Scale
Connect the App
Perimeter Gateway to
External Networks
Gateway
Logical
Router
Create On-
Demand
Leverage Existing
Infrastructure
WEB
APP
DATABASE
Logical
Switch
1. Spin up the workloads
2. Attach them to new logical switches
3. Spin up a logical router and attach new switches to
router interfaces
4. Connect logical router uplink to perimeter gateway
Scale Within App, Across Apps
Perimeter Gateway
to External Networks
Gateway
Create On-
Demand
Leverage Existing
Infrastructure
1. Add more workloads to existing apps
2. Create more apps
3. Destroy apps
Secure the App
1. Place app in appropriate security zones, protected by
firewall rules
Multi Network Model
Use security group to isolate entire app,
virtual firewall to control traffic between tiers.
Flat Network Model
Use security groups to isolate entire app and
app tiers, virtual firewall to control all traffic.
APP
DATABASE
WEB
WEB APP DATABASE
APPLICATION
APPLICATION
Create On-
Demand
Leverage Existing
Infrastructure
Add Availability and Performance to App
1. Spin up a new NSX gateway edge
2. Create load balancer pool based on app workloads,
network
APP
DATABASE
WEB WEB
APP DATABASEServices
Edge
(Load Balancer) Services
Edge
(Load Balancer)
Create On-
Demand
Leverage Existing
Infrastructure
Simplify Networking for the App
1. Network team pre-defines ‘profiles’ for connectivity
2. Cloud architect defines blueprints using these profiles
PRIVATE
NAT
ROUTED
Create On-
Demand
Leverage Existing
Infrastructure
Simplify Deployment Topology for the App
1. Provide flat network topology for each new app
2. Use shared or dedicated logical router for
connectivity
3. Rely on security groups for app isolation
4. Repeat
Create On-
Demand
Leverage Existing
Infrastructure
Perimeter Gateway
to External Networks
Gateway
Automate, Then Customize
“The only time they (users) should need
to come to us is for a non-standard
request or a request that requires an
additional level of security sign-off.”
Don Wood, Cloud Architect, McKesson
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
Network Profiles Simplify Network Consumption in Cloud
Cloud Operator creates network profiles based on guidance
from networking team.
Is this
what you
wanted?
VI Admin /
Cloud Operator
Yup.
Looks
good.
Network
Architect
Blueprints Can Provision Logical Networks and Services
VI Admin /
Cloud
Operator
Good to know.
We’ll spin it up and
tear it down when
you’re done.
Blueprints can now create infrastructure on demand - networks,
routers, firewall and load balancer services. Infrastructure can
be torn down when lease is up.
Business User
I only need
this for 2
months.
I get to optimize my
cloud resource pools
AND I didn’t have to
deal with the physical
network!
Optimize with vCloud Automation Center + NSX
COST CHOICE
AGILITY
APP
DATABASE
WEB
Agenda
 Consumption Models and Tradeoffs
 What Users Want from Cloud Infrastructure
 Where We Are Today
 Technology Preview + DEMO – vCloud Automation Center
with NSX
 Summary of Automation Capabilities – vCloud Automation
Center with NSX
 Next Steps
Back at the Office…
VI Admin /
Cloud
Operator
What do you
need from us?
Network
Architect
Plan your evaluation of NSX with vCloud Automation Center.
Talk to your networking team about collaborating to build network
profiles, for on-demand creation of logical networks and services.
Anything
else? Let us know how to
connect these apps
to the IP network.OK. We’ll help
you define
network profiles.
Any hardware, any IP
fabric. We will deploy NSX.
Thanks!
Our users need app infrastructure
on-demand, but relying on physical
networks is slowing us down.
It IS Possible
Your cloud service automation solution CAN spin up and tear down
logical networks and services on-demand, with configurable
options, and with optimal value.
VI Admin / Cloud
Operator
I saved a lot of time,
too. Now I can work
on other stuff.
Business User
Got my machines.
Now I’m in
business. Thanks!
I’ve got visibility and control over
virtual network infrastructure.
No complaints here.
Network
Architect
 Templates: Pre-defined,
some customization
 Infrastructure: On-demand
Consumption, Your Way
 Templates: Pre-defined,
no customization
 Infrastructure: Pre-created
Other VMware Activities Related to This Session
 HOL:
HOL-SDC-1303
VMware NSX Network Virtualization Platform
 Group Discussions:
VCM1003-GD
Cloud Automation with Naomi Sullivan
THANK YOU
Cloud Service Automation with NSX and vCloud
Automation Center
Gargi Keeling, VMware
Valentina Reutova, VMware
VCM5477
#VCM5477
Background Slides
vCloud Automation Center, NSX
Most Requested Deployment Models for Multi-Tiered Apps
Multiple
Networks
Flat
Network
APP
DATABASE
WEB
WEB APP DATABASE
Most Requested Network and Security Services
Built-in, logical services that are programmable for easy consumption
by cloud automation solutions.
FirewallNetwork
Load Balancer Router
Where We Are Today
Create On-
Demand
Leverage Existing
Infrastructure
APP
DATABASE
WEB
Pre-Created, Logical Networks
Applications can be spun up on-demand, using logical networks that have
already been created.
APP DATABASEWEB
Routed
Network A.B.C.#
A.B.C.#
NAT
Network
A.B.C.#X.Y.Z.#
Where We Are Today
Create On-
Demand
Leverage Existing
Infrastructure
Pre-created, Firewall Rules
Apps can be added to existing security groups.
APP
DATABASE
WEB
WEB APP DATABASE
APPLICATION
APPLICATION
Where We Are Today
Pre-created, Load Balancer Pool
Apps can be added to existing load balancer pools.
APP
DATABASE
WEB
WEB APP DATABASEServices
Edge
(Load Balancer) Services
Edge
(Load Balancer)
Create On-
Demand
Leverage Existing
Infrastructure
vCloud Automation Center Extensibility Spectrum
Flexibility without Complexity
Key Software-Defined Data Center Capabilities
 Hybrid cloud
extensibility
 App deployment across
multiple hardware
stacks physical or
virtual
 Support for multiple
hypervisors (Hyper-V,
KVM) and clouds
(OpenStack, Amazon
AWS)
Choice
 Compute virtualization
 Network and security
virtualization
 Software-defined
storage
 Automated operations
management
Control
 Automated Business
Continuity / Disaster
Recovery
 Virtualization aware
security and
compliance across
clouds
 Management across
private and public
clouds
 Operational analytics
Agility
 Service provisioning
across multi-platform
multi- cloud
 Policy driven
automation
 Self-service portal and
catalog
VMware Cloud Service Provisioning Solution
vCloud Automation Center
Business Impact
• Increase customer satisfaction by reducing
service delivery times
• Reduce OPEX - reallocate resources to high
impact projects
• Reduce CAPEX – eliminate over provisioning
and automate resource reclamation
• Improve perception & relevancy of IT
• Automate delivery of Infrastructure and
Desktop as a Service
Rapidly deploy the right size machine at the right service level
Self - Service
IaaS PaaS DaaS XaaS
Cloud Service Provisioning
Heterogeneous Infrastructure
Policy-Based Governance with Automated Delivery
The VMware User Centric, Business Relevant Cloud
Desktop
Production
Dev/Test
vCloud Automation Center Shared Infrastructure
vCloud Automation Center Policy Management
Business
Groups
B
A
C
USERS
A
C
B
A
Authentication &
Role-Based
Authorization
Authorized
Users
Resource
Reservations
Cost Profile
A
Tier 1
Public
Physical
Virtual
Shared Infrastructure
Service
Blueprints
A
Requisition
Cost Profile
Provision
Manage
Retire
Public
Physical
Virtual
C
B
B
A
B
A
C
BA
VMware NSX – The Platform for Network Virtualization
VMware NSX Transforms the Operational Model of the Network
• Network provisioning time
reduced from 7 days to
30 sec
Reduce network
provisioning time from
days to seconds
Cost Savings
• Reduce operational costs
by 80%
• Increase compute asset
utilization upto 90%
• Reduce hardware costs
by 40-50%
Operational
Automation
Simplified IP hardware
Choice
• Any Hypervisor:
vSphere, KVM, Xen, HyperV
• Any CMP:
vCAC, Openstack
• Any Network Hardware
• Partner Ecosystem
Any hypervisor
Any CMP
with Partner
VMware NSX – Networking & Security Capabilities
Rich Networking & Security Services
• Scalable Logical Switching
• Physical to Virtual L2 Bridging
• Dynamic L3 Routing: OSPF, BGP, IS-IS
• Logical Services:
Firewall, Identity-based Firewall, Load-
balancing, VPN (IPSec, SSL, L2VPN)
Automation & Operations
• API Driven Integration
• Service Composer for Security Workflows
• Server Access Monitoring
• Troubleshooting & Visibility
Partner Extensibility
• Physical ToR L2 Integration
• Security Services – IDS / IPS, AV,
Vulnerability Mgmt
• Network Services – Load Balancers, WAN
Optimization
Any Application
(without modification)
Virtual Networks
VMware NSX Network Virtualization Platform
Logical L2
Any Network Hardware
Any Cloud Management Platform
Logical
Firewall
Logical
Load Balancer
Logical L3
Logical
VPN
Any Hypervisor
VMware NSX – Networking & Security Capabilities
Any Application
(without modification)
Virtual Networks
VMware NSX Network Virtualization Platform
Logical L2
Any Network Hardware
Any Cloud Management Platform
Logical
Firewall
Logical
Load Balancer
Logical L3
Logical
VPN
Any Hypervisor
Logical Switching– Layer 2 over Layer 3,
decoupled from the physical network
Logical Routing– Routing between virtual
networks without exiting the software
container
Logical Firewall – Distributed Firewall,
Kernel Integrated, High Performance
Logical Load Balancer – Application Load
Balancing in software
Logical VPN – Site-to-Site & Remote
Access VPN in software
NSX API – RESTful API for integration into
any Cloud Management Platform
Partner Eco-System
Comparing vCNS 5.5 to NSX Optimized for vSphere
vCNS (part of vCloud Suite) NSX
Layer 2 - Switching
• Virtual Distributed Switch (vDS),+
VXLAN Overlay, requires multicast in
physical network
• NSX vSwitch
• Complete Network Virtualization Overlay
(no multicast required)
• L2 logical to physical bridging
(VXLAN to VLAN)
Layer 3 – Routing
• Centralized Virtual Router Appliance
• Static Routing
• NAT
• E-W Distributed Routing
• N-S Centralized Routing
• Dynamic Routing (BGP, OSPF)
• Static Routing
• NAT
Firewall Services
• Firewall Virtual Appliance (~2Gbps)
• Virtualization Aware
• Distributed Virtual Firewall
• Kernel enabled line rate (~18+Gbps)
• Virtualization and Identity Aware
• Activity Monitoring
Load Balancer Services
• Load Balancer Virtual Appliance • Logical Load Balancer
• Layer 7 rules
• SSL Termination
Virtual Private Network (VPN) • Site-to-Site & Remote Access VPN • Site-to-Site & Remote Access VPN
Hypervisor Support • ESXi • ESXi
Management
• Basic management UI • Full NGC Integration
• Service Composer
• NSX Manager
• NSX API 1
Cloud Management Platforms • vCenter/vCD, vCAC • vCenter/vCD, vCAC, Custom
THIS IS NOT A ROADMAP 1 POC only
Reserving Resources for Each Group
• VXLANs appear as
network paths
in resource reservations
• Security Groups, Load
Balancers
− Can be specified as custom
properties on the reservation or
on the blueprint
VXLANs can be reserved by
Provisioning Group
Current Release: vCloud Automation Center
5.2 with vCloud Networking and Security 5.1
Configuring Service Blueprints
VCAC Blueprint Custom Properties define the
Load Balancer and Security Groups, that will be associated
with the Machine being provisioned.
Current Release: vCloud Automation Center
5.2 with vCloud Networking and Security 5.1
End User Experience
Completely Pre-defined Partially Customizable
Organizations can have users select templates with networking and security that
is completely pre-defined or partially customizable.
FW
FW
LB
NW
New Network Profiles
PRIVATE
No routes to outside app. Routing only
between networks within app. Can use
distributed router for optimal scalability
and performance.
ROUTED
Network addresses are routable (no
private addresses). Routes enabled to
outside application boundary. Routing
inside app supported.
NAT
Private addressing for application
networks. External IP is routable. Routing
inside app supported. Supports DNAT
(destination), SNAT (source), 1:1 NAT)
NSX – Existing Logical Switches
NSX – Existing Edge Gateways
NSX – Existing Edge Gateway, Network Interfaces
NSX – Existing Edge Gateway, Dynamic Routing
vCloud Automation Center – Service Catalog
vCloud Automation Center – Multi-Machine Blueprint (Request)
vCloud Automation Center – Multi-Machine Blueprint (Manage)
vCloud Automation Center – Manage Network for Blueprint
NSX – Networks Created On-Demand by vCloud Automation
Center
NSX - Logical Router Created On-Demand by vCloud
Automation Center
NSX – Network Interfaces Configured by vCloud Automation
Center
NSX – VM Connected to Network by vCloud Automation Center
NSX – VMs Placed in Security Groups Protected by Firewall
Rules, by vCloud Automation Center
vCloud Automation Center – Reservations
NSX – VMs Placed in Security Groups by vCloud Automation
Center
vCloud Automation Center – Scale Blueprint by Adding VM
vCloud Automation Center – Specify Load Balancer Rules
vCloud Automation Center – Specify Virtual IP for Load
Balancer Rule
NSX – Load Balancer Rules Configured by vCloud Automation
Center
vCloud Automation Center – Two Different Networks for Multi-
Machine Blueprint
vCloud Automation Center – Network Profile for Private
Network
vCloud Automation Center – IP Addressing for Private Network
Profile
vCloud Automation Center – Network Profile for NAT
vCloud Automation Center – Load Balancer Configuration
NSX – Multiple Logical Routers Created by Different Blueprints
from vCloud Automation Center
NSX – NAT Configured by vCloud Automation Center
NSX – NAT Firewall Rule Configured by vCloud Automation
Center
vCloud Automation Center – Blueprint with Flat, Logical Switch
(Network)
vCloud Automation Center – Configure Flat Network
vCloud Automation Center – Add Load Balancer to Blueprint
with Flat Network

Weitere ähnliche Inhalte

Was ist angesagt?

Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
Server Virtualization and Cloud Computing: Four Hidden Impacts on ...Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
webhostingguy
 
Client presentation ibm private modular cloud_082013
Client presentation ibm private modular cloud_082013Client presentation ibm private modular cloud_082013
Client presentation ibm private modular cloud_082013
jimmykibm
 

Was ist angesagt? (20)

CloudOps evening presentation from IBM
CloudOps evening presentation from IBMCloudOps evening presentation from IBM
CloudOps evening presentation from IBM
 
Accelerate Digital Transformation with IBM Cloud Private
Accelerate Digital Transformation with IBM Cloud PrivateAccelerate Digital Transformation with IBM Cloud Private
Accelerate Digital Transformation with IBM Cloud Private
 
Cloud computing
Cloud computingCloud computing
Cloud computing
 
Cloud Computing - Challenges and Opportunities - Jens Nimis
Cloud Computing - Challenges and Opportunities  -  Jens NimisCloud Computing - Challenges and Opportunities  -  Jens Nimis
Cloud Computing - Challenges and Opportunities - Jens Nimis
 
Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
Server Virtualization and Cloud Computing: Four Hidden Impacts on ...Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
Server Virtualization and Cloud Computing: Four Hidden Impacts on ...
 
Moving Windows Server Apps to the cloud in 3 Easy Steps
Moving Windows Server Apps to the cloud in 3 Easy StepsMoving Windows Server Apps to the cloud in 3 Easy Steps
Moving Windows Server Apps to the cloud in 3 Easy Steps
 
Convergence of Private Clouds
Convergence of Private CloudsConvergence of Private Clouds
Convergence of Private Clouds
 
IBM Cloud Manager with OpenStack Overview
IBM Cloud Manager with OpenStack OverviewIBM Cloud Manager with OpenStack Overview
IBM Cloud Manager with OpenStack Overview
 
CloudOps evening presentation from Savvis
CloudOps evening presentation from SavvisCloudOps evening presentation from Savvis
CloudOps evening presentation from Savvis
 
An introduction to the cloud 11 v1
An introduction to the cloud 11 v1An introduction to the cloud 11 v1
An introduction to the cloud 11 v1
 
What if you're the SaaS?
What if you're the SaaS?What if you're the SaaS?
What if you're the SaaS?
 
Basic cloud
Basic cloudBasic cloud
Basic cloud
 
Pure application system
Pure application systemPure application system
Pure application system
 
IBM SmartCloud Orchestrator
IBM SmartCloud OrchestratorIBM SmartCloud Orchestrator
IBM SmartCloud Orchestrator
 
EMC Cloud Management
EMC Cloud ManagementEMC Cloud Management
EMC Cloud Management
 
Deep Dive Into a Cloud Enabled Data Center
Deep Dive Into a Cloud Enabled Data CenterDeep Dive Into a Cloud Enabled Data Center
Deep Dive Into a Cloud Enabled Data Center
 
The Cloud Enabled Datacenter - Smarter Business 2013
The Cloud Enabled Datacenter - Smarter Business 2013The Cloud Enabled Datacenter - Smarter Business 2013
The Cloud Enabled Datacenter - Smarter Business 2013
 
ERP IN CLOUD
ERP IN CLOUDERP IN CLOUD
ERP IN CLOUD
 
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
 
Client presentation ibm private modular cloud_082013
Client presentation ibm private modular cloud_082013Client presentation ibm private modular cloud_082013
Client presentation ibm private modular cloud_082013
 

Andere mochten auch

AI A Slight Intro
AI A Slight IntroAI A Slight Intro
AI A Slight Intro
Omar Enayet
 

Andere mochten auch (20)

vRA + NSX Technical Deep-Dive
vRA + NSX Technical Deep-DivevRA + NSX Technical Deep-Dive
vRA + NSX Technical Deep-Dive
 
VMworld 2013: How To Build Your Hybrid Cloud and Consume the Public Cloud
VMworld 2013: How To Build Your Hybrid Cloud and Consume the Public Cloud VMworld 2013: How To Build Your Hybrid Cloud and Consume the Public Cloud
VMworld 2013: How To Build Your Hybrid Cloud and Consume the Public Cloud
 
VMworld 2013: What it Took to Stretch Higher Education and Take It to the Clo...
VMworld 2013: What it Took to Stretch Higher Education and Take It to the Clo...VMworld 2013: What it Took to Stretch Higher Education and Take It to the Clo...
VMworld 2013: What it Took to Stretch Higher Education and Take It to the Clo...
 
VMworld 2013: Operations Transformation – Expanding the Value of Cloud Comput...
VMworld 2013: Operations Transformation – Expanding the Value of Cloud Comput...VMworld 2013: Operations Transformation – Expanding the Value of Cloud Comput...
VMworld 2013: Operations Transformation – Expanding the Value of Cloud Comput...
 
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
 
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
 
VMworld 2013: Designing the Next Generation Application for the Public Cloud
VMworld 2013: Designing the Next Generation Application for the Public Cloud VMworld 2013: Designing the Next Generation Application for the Public Cloud
VMworld 2013: Designing the Next Generation Application for the Public Cloud
 
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
 
VMworld 2013: SDDC IT Operations Transformation: Multi-customer Lessons Learned
VMworld 2013: SDDC IT Operations Transformation:  Multi-customer Lessons LearnedVMworld 2013: SDDC IT Operations Transformation:  Multi-customer Lessons Learned
VMworld 2013: SDDC IT Operations Transformation: Multi-customer Lessons Learned
 
Flash 101
Flash 101Flash 101
Flash 101
 
VMworld 2013: Organizing for Cloud Operations – Challenges and Lessons Learned
VMworld 2013: Organizing for Cloud Operations – Challenges and Lessons Learned VMworld 2013: Organizing for Cloud Operations – Challenges and Lessons Learned
VMworld 2013: Organizing for Cloud Operations – Challenges and Lessons Learned
 
VMworld 2013: VMware Customer Journey - Where Are We with ITaaS and Ops Trans...
VMworld 2013: VMware Customer Journey - Where Are We with ITaaS and Ops Trans...VMworld 2013: VMware Customer Journey - Where Are We with ITaaS and Ops Trans...
VMworld 2013: VMware Customer Journey - Where Are We with ITaaS and Ops Trans...
 
VMworld 2013: Network Function Virtualization in the Cloud: Case for Enterpri...
VMworld 2013: Network Function Virtualization in the Cloud: Case for Enterpri...VMworld 2013: Network Function Virtualization in the Cloud: Case for Enterpri...
VMworld 2013: Network Function Virtualization in the Cloud: Case for Enterpri...
 
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
 
VMworld 2013: The Transformative Power and Business Case for Cloud Automation
VMworld 2013: The Transformative Power and Business Case for Cloud Automation VMworld 2013: The Transformative Power and Business Case for Cloud Automation
VMworld 2013: The Transformative Power and Business Case for Cloud Automation
 
VMworld 2013: VMware Virtual SAN Technical Best Practices
VMworld 2013: VMware Virtual SAN Technical Best Practices VMworld 2013: VMware Virtual SAN Technical Best Practices
VMworld 2013: VMware Virtual SAN Technical Best Practices
 
AI A Slight Intro
AI A Slight IntroAI A Slight Intro
AI A Slight Intro
 
VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations! VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations!
 
Self service it with v realizeautomation and nsx
Self service it with v realizeautomation and nsxSelf service it with v realizeautomation and nsx
Self service it with v realizeautomation and nsx
 
Building Cognitive Applications with Watson APIs
Building Cognitive Applications with Watson APIs Building Cognitive Applications with Watson APIs
Building Cognitive Applications with Watson APIs
 

Ähnlich wie VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center

System Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & RoadmapSystem Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & Roadmap
Amit Gatenyo
 
Deployment of private cloud infrastructure copy
Deployment of private cloud infrastructure   copyDeployment of private cloud infrastructure   copy
Deployment of private cloud infrastructure copy
prabhat kumar
 
All About Cloud Computing by Callender Creates
All About Cloud Computing by Callender CreatesAll About Cloud Computing by Callender Creates
All About Cloud Computing by Callender Creates
News UK
 

Ähnlich wie VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center (20)

VMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSXVMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSX
 
20151019 v mworld2015-recap-02
20151019 v mworld2015-recap-0220151019 v mworld2015-recap-02
20151019 v mworld2015-recap-02
 
Cisco ACI for the Microsoft Cloud Platform
Cisco ACI for the Microsoft Cloud PlatformCisco ACI for the Microsoft Cloud Platform
Cisco ACI for the Microsoft Cloud Platform
 
Introduction to cloud computing
Introduction to cloud computingIntroduction to cloud computing
Introduction to cloud computing
 
Cloud computing
Cloud computingCloud computing
Cloud computing
 
Cloud computing Disambiguation using Kite Model
Cloud computing Disambiguation using Kite ModelCloud computing Disambiguation using Kite Model
Cloud computing Disambiguation using Kite Model
 
Cloud Computing & Sun Vision 03262009
Cloud Computing & Sun Vision 03262009Cloud Computing & Sun Vision 03262009
Cloud Computing & Sun Vision 03262009
 
System Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & RoadmapSystem Center Datacenter Cloud Management Vision & Roadmap
System Center Datacenter Cloud Management Vision & Roadmap
 
Deployment of private cloud infrastructure copy
Deployment of private cloud infrastructure   copyDeployment of private cloud infrastructure   copy
Deployment of private cloud infrastructure copy
 
Presentation v mware virtualization & cloud vision 2010
Presentation   v mware virtualization & cloud vision 2010Presentation   v mware virtualization & cloud vision 2010
Presentation v mware virtualization & cloud vision 2010
 
Hybridní cloud s F5 v prostředí kontejnerů
Hybridní cloud s F5 v prostředí kontejnerůHybridní cloud s F5 v prostředí kontejnerů
Hybridní cloud s F5 v prostředí kontejnerů
 
VMworld 2014: VMware NSX and vCloud Automation Center Integration Technical D...
VMworld 2014: VMware NSX and vCloud Automation Center Integration Technical D...VMworld 2014: VMware NSX and vCloud Automation Center Integration Technical D...
VMworld 2014: VMware NSX and vCloud Automation Center Integration Technical D...
 
VMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and SecurityVMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and Security
 
Deployment of private cloud infrastructure.
Deployment of private cloud infrastructure.Deployment of private cloud infrastructure.
Deployment of private cloud infrastructure.
 
All About Cloud Computing by Callender Creates
All About Cloud Computing by Callender CreatesAll About Cloud Computing by Callender Creates
All About Cloud Computing by Callender Creates
 
Unit 1
Unit 1Unit 1
Unit 1
 
Internship Presentation.pptx
Internship Presentation.pptxInternship Presentation.pptx
Internship Presentation.pptx
 
Build & Deploy Scalable Cloud Applications in Record Time
Build & Deploy Scalable Cloud Applications in Record TimeBuild & Deploy Scalable Cloud Applications in Record Time
Build & Deploy Scalable Cloud Applications in Record Time
 
Introduction to Cloud Computing
Introduction to Cloud ComputingIntroduction to Cloud Computing
Introduction to Cloud Computing
 
Simplify Migration with RISC Network’s Complete App Analysis
Simplify Migration with RISC Network’s Complete App AnalysisSimplify Migration with RISC Network’s Complete App Analysis
Simplify Migration with RISC Network’s Complete App Analysis
 

Mehr von VMworld

Mehr von VMworld (20)

VMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep DiveVMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep Dive
 
VMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for HorizonVMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for Horizon
 
VMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSXVMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSX
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
 
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI AutomationVMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
 
VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7
 
VMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep DiveVMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep Dive
 
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
 
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
 
VMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts PanelVMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts Panel
 
VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way! VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way!
 
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
 
VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6
 
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
 
VMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphereVMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphere
 
VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!
 
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
 
VMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SANVMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SAN
 
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes ConfigurationsVMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
 
VMworld 2015: Virtual Volumes Technical Deep Dive
VMworld 2015: Virtual Volumes Technical Deep DiveVMworld 2015: Virtual Volumes Technical Deep Dive
VMworld 2015: Virtual Volumes Technical Deep Dive
 

Kürzlich hochgeladen

Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

Kürzlich hochgeladen (20)

Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Corporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptxCorporate and higher education May webinar.pptx
Corporate and higher education May webinar.pptx
 
Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024Manulife - Insurer Transformation Award 2024
Manulife - Insurer Transformation Award 2024
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
MS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectorsMS Copilot expands with MS Graph connectors
MS Copilot expands with MS Graph connectors
 
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
Apidays Singapore 2024 - Scalable LLM APIs for AI and Generative AI Applicati...
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 

VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center

  • 1. Cloud Service Automation with NSX and vCloud Automation Center Gargi Keeling, VMware Valentina Reutova, VMware VCM5477 #VCM5477
  • 2. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 3. A Valid Model for Consumption – Fully Stocked Inventory Advantages  Items always available  Requests immediately fulfilled  Considerable choice Disadvantages  Inventory costs  Unused items go to waste  Requires planning  Pay a premium for instant gratification and convenience (little choice)
  • 4. Another Model - “Pay As You Go” Advantages  No inventory costs  Only pay for what you use Disadvantages  Restricted by product availability and store hours  No instant gratification  It could be worse…?
  • 5. What Are You Trying to Optimize For Application Infrastructure? COST (Money) CHOICE (Scope) AGILITY (Time) APP DATABASE WEB
  • 6. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 7. End Users Still Wait Weeks for Their Apps Network and security challenges hamper cloud service provisioning. VI Admin / Cloud Operator I need to check with the network team for VLANs and IP addresses. Hmmm….I’ll need to ask the ops team for available addresses, put in a change request for new firewall rules, ask for a load balancer pool… Get back to you in a month? Network Architect They said a few weeks… Oh…just forget it. Aargh! Business User I need this, NOW.
  • 8. What if … Your cloud service provisioning solution could spin up and tear down logical networks and services as needed, to deliver application infrastructure on-demand? VI Admin / Cloud Operator I saved a lot of time, too. Now I can work on other stuff. Business User Got my machines. Now I’m in business. Thanks! I’ve got visibility and control over virtual network infrastructure. No complaints here. Network Architect
  • 9. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 10. Most Requested Deployment Models for Multi-Tiered Apps Cloud Automation + Network Virtualization Leverage pre-created logical networks and services to deliver application infrastructure on-demand. Create On- Demand Leverage Existing Infrastructure WEB APP DATABASE APPLICATION APP DATABASE WEB APPLICATIONNetwork Router Load Balancer Firewall Rules
  • 11. The Solution Cloud Automation Self - Service IaaS PaaS DaaS XaaS Cloud Service Automation Heterogeneous Infrastructure Policy-Based Governance with Automated Delivery Network Virtualization Any Application (without modification) Virtual Networks VMware NSX Network Virtualization Platform Logical L2 Any Network Hardware Any Cloud Management Platform Logical Firewall Logical Load Balancer Logical L3 Logical VPN Any Hypervisor
  • 12. Templates Address a Big Part of the Problem “We are really striving to create a frictionless environment for any common, allowed, repeatable configurations that would allow people to point and click provision from an approved template.” Don Wood, Cloud Architect, McKesson
  • 13. Policy Enforcement At Multiple Layers Cloud Automation Resource Reservations Enforce at infrastructure layer Application Blueprints Enforce based on end user entitlements Network Virtualization + Compute Virtualization ► Logical Firewalls (Security Groups) ►Logical Switches ►Load Balancer Resources provisioned in infrastructure Provisioning Group Enforce based on group entitlements
  • 14. Why NSX? Built-in, logical services that are programmable for easy consumption by cloud automation solutions. Logical FirewallLogical Switch Logical Load Balancer Logical Router VM VM VM VM VMVM VM VM VMVM VM VM VM VM VM VM VM VMVMVMVM VM VM VM VM VM VM VM VM VM Security Groups
  • 15. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 16. Future Direction Cloud Automation + Network Virtualization Spin up and tear down logical networks and services as needed, to deliver application infrastructure on-demand. Create On- Demand Leverage Existing Infrastructure APP DATABASE WEB WEB APP DATABASE
  • 17. Hierarchy of Needs for Networking & Security of Applications Simplicity Availability Security Connectivity & Scale
  • 18. Connect the App Perimeter Gateway to External Networks Gateway Logical Router Create On- Demand Leverage Existing Infrastructure WEB APP DATABASE Logical Switch 1. Spin up the workloads 2. Attach them to new logical switches 3. Spin up a logical router and attach new switches to router interfaces 4. Connect logical router uplink to perimeter gateway
  • 19.
  • 20. Scale Within App, Across Apps Perimeter Gateway to External Networks Gateway Create On- Demand Leverage Existing Infrastructure 1. Add more workloads to existing apps 2. Create more apps 3. Destroy apps
  • 21. Secure the App 1. Place app in appropriate security zones, protected by firewall rules Multi Network Model Use security group to isolate entire app, virtual firewall to control traffic between tiers. Flat Network Model Use security groups to isolate entire app and app tiers, virtual firewall to control all traffic. APP DATABASE WEB WEB APP DATABASE APPLICATION APPLICATION Create On- Demand Leverage Existing Infrastructure
  • 22.
  • 23. Add Availability and Performance to App 1. Spin up a new NSX gateway edge 2. Create load balancer pool based on app workloads, network APP DATABASE WEB WEB APP DATABASEServices Edge (Load Balancer) Services Edge (Load Balancer) Create On- Demand Leverage Existing Infrastructure
  • 24.
  • 25. Simplify Networking for the App 1. Network team pre-defines ‘profiles’ for connectivity 2. Cloud architect defines blueprints using these profiles PRIVATE NAT ROUTED Create On- Demand Leverage Existing Infrastructure
  • 26.
  • 27. Simplify Deployment Topology for the App 1. Provide flat network topology for each new app 2. Use shared or dedicated logical router for connectivity 3. Rely on security groups for app isolation 4. Repeat Create On- Demand Leverage Existing Infrastructure Perimeter Gateway to External Networks Gateway
  • 28.
  • 29. Automate, Then Customize “The only time they (users) should need to come to us is for a non-standard request or a request that requires an additional level of security sign-off.” Don Wood, Cloud Architect, McKesson
  • 30. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 31. Network Profiles Simplify Network Consumption in Cloud Cloud Operator creates network profiles based on guidance from networking team. Is this what you wanted? VI Admin / Cloud Operator Yup. Looks good. Network Architect
  • 32. Blueprints Can Provision Logical Networks and Services VI Admin / Cloud Operator Good to know. We’ll spin it up and tear it down when you’re done. Blueprints can now create infrastructure on demand - networks, routers, firewall and load balancer services. Infrastructure can be torn down when lease is up. Business User I only need this for 2 months. I get to optimize my cloud resource pools AND I didn’t have to deal with the physical network!
  • 33. Optimize with vCloud Automation Center + NSX COST CHOICE AGILITY APP DATABASE WEB
  • 34. Agenda  Consumption Models and Tradeoffs  What Users Want from Cloud Infrastructure  Where We Are Today  Technology Preview + DEMO – vCloud Automation Center with NSX  Summary of Automation Capabilities – vCloud Automation Center with NSX  Next Steps
  • 35. Back at the Office… VI Admin / Cloud Operator What do you need from us? Network Architect Plan your evaluation of NSX with vCloud Automation Center. Talk to your networking team about collaborating to build network profiles, for on-demand creation of logical networks and services. Anything else? Let us know how to connect these apps to the IP network.OK. We’ll help you define network profiles. Any hardware, any IP fabric. We will deploy NSX. Thanks! Our users need app infrastructure on-demand, but relying on physical networks is slowing us down.
  • 36. It IS Possible Your cloud service automation solution CAN spin up and tear down logical networks and services on-demand, with configurable options, and with optimal value. VI Admin / Cloud Operator I saved a lot of time, too. Now I can work on other stuff. Business User Got my machines. Now I’m in business. Thanks! I’ve got visibility and control over virtual network infrastructure. No complaints here. Network Architect
  • 37.  Templates: Pre-defined, some customization  Infrastructure: On-demand Consumption, Your Way  Templates: Pre-defined, no customization  Infrastructure: Pre-created
  • 38. Other VMware Activities Related to This Session  HOL: HOL-SDC-1303 VMware NSX Network Virtualization Platform  Group Discussions: VCM1003-GD Cloud Automation with Naomi Sullivan
  • 40.
  • 41. Cloud Service Automation with NSX and vCloud Automation Center Gargi Keeling, VMware Valentina Reutova, VMware VCM5477 #VCM5477
  • 43. Most Requested Deployment Models for Multi-Tiered Apps Multiple Networks Flat Network APP DATABASE WEB WEB APP DATABASE
  • 44. Most Requested Network and Security Services Built-in, logical services that are programmable for easy consumption by cloud automation solutions. FirewallNetwork Load Balancer Router
  • 45. Where We Are Today Create On- Demand Leverage Existing Infrastructure APP DATABASE WEB Pre-Created, Logical Networks Applications can be spun up on-demand, using logical networks that have already been created. APP DATABASEWEB Routed Network A.B.C.# A.B.C.# NAT Network A.B.C.#X.Y.Z.#
  • 46. Where We Are Today Create On- Demand Leverage Existing Infrastructure Pre-created, Firewall Rules Apps can be added to existing security groups. APP DATABASE WEB WEB APP DATABASE APPLICATION APPLICATION
  • 47. Where We Are Today Pre-created, Load Balancer Pool Apps can be added to existing load balancer pools. APP DATABASE WEB WEB APP DATABASEServices Edge (Load Balancer) Services Edge (Load Balancer) Create On- Demand Leverage Existing Infrastructure
  • 48. vCloud Automation Center Extensibility Spectrum Flexibility without Complexity
  • 49. Key Software-Defined Data Center Capabilities  Hybrid cloud extensibility  App deployment across multiple hardware stacks physical or virtual  Support for multiple hypervisors (Hyper-V, KVM) and clouds (OpenStack, Amazon AWS) Choice  Compute virtualization  Network and security virtualization  Software-defined storage  Automated operations management Control  Automated Business Continuity / Disaster Recovery  Virtualization aware security and compliance across clouds  Management across private and public clouds  Operational analytics Agility  Service provisioning across multi-platform multi- cloud  Policy driven automation  Self-service portal and catalog
  • 50. VMware Cloud Service Provisioning Solution vCloud Automation Center Business Impact • Increase customer satisfaction by reducing service delivery times • Reduce OPEX - reallocate resources to high impact projects • Reduce CAPEX – eliminate over provisioning and automate resource reclamation • Improve perception & relevancy of IT • Automate delivery of Infrastructure and Desktop as a Service Rapidly deploy the right size machine at the right service level Self - Service IaaS PaaS DaaS XaaS Cloud Service Provisioning Heterogeneous Infrastructure Policy-Based Governance with Automated Delivery
  • 51. The VMware User Centric, Business Relevant Cloud Desktop Production Dev/Test vCloud Automation Center Shared Infrastructure
  • 52. vCloud Automation Center Policy Management Business Groups B A C USERS A C B A Authentication & Role-Based Authorization Authorized Users Resource Reservations Cost Profile A Tier 1 Public Physical Virtual Shared Infrastructure Service Blueprints A Requisition Cost Profile Provision Manage Retire Public Physical Virtual C B B A B A C BA
  • 53. VMware NSX – The Platform for Network Virtualization VMware NSX Transforms the Operational Model of the Network • Network provisioning time reduced from 7 days to 30 sec Reduce network provisioning time from days to seconds Cost Savings • Reduce operational costs by 80% • Increase compute asset utilization upto 90% • Reduce hardware costs by 40-50% Operational Automation Simplified IP hardware Choice • Any Hypervisor: vSphere, KVM, Xen, HyperV • Any CMP: vCAC, Openstack • Any Network Hardware • Partner Ecosystem Any hypervisor Any CMP with Partner
  • 54. VMware NSX – Networking & Security Capabilities Rich Networking & Security Services • Scalable Logical Switching • Physical to Virtual L2 Bridging • Dynamic L3 Routing: OSPF, BGP, IS-IS • Logical Services: Firewall, Identity-based Firewall, Load- balancing, VPN (IPSec, SSL, L2VPN) Automation & Operations • API Driven Integration • Service Composer for Security Workflows • Server Access Monitoring • Troubleshooting & Visibility Partner Extensibility • Physical ToR L2 Integration • Security Services – IDS / IPS, AV, Vulnerability Mgmt • Network Services – Load Balancers, WAN Optimization Any Application (without modification) Virtual Networks VMware NSX Network Virtualization Platform Logical L2 Any Network Hardware Any Cloud Management Platform Logical Firewall Logical Load Balancer Logical L3 Logical VPN Any Hypervisor
  • 55. VMware NSX – Networking & Security Capabilities Any Application (without modification) Virtual Networks VMware NSX Network Virtualization Platform Logical L2 Any Network Hardware Any Cloud Management Platform Logical Firewall Logical Load Balancer Logical L3 Logical VPN Any Hypervisor Logical Switching– Layer 2 over Layer 3, decoupled from the physical network Logical Routing– Routing between virtual networks without exiting the software container Logical Firewall – Distributed Firewall, Kernel Integrated, High Performance Logical Load Balancer – Application Load Balancing in software Logical VPN – Site-to-Site & Remote Access VPN in software NSX API – RESTful API for integration into any Cloud Management Platform Partner Eco-System
  • 56. Comparing vCNS 5.5 to NSX Optimized for vSphere vCNS (part of vCloud Suite) NSX Layer 2 - Switching • Virtual Distributed Switch (vDS),+ VXLAN Overlay, requires multicast in physical network • NSX vSwitch • Complete Network Virtualization Overlay (no multicast required) • L2 logical to physical bridging (VXLAN to VLAN) Layer 3 – Routing • Centralized Virtual Router Appliance • Static Routing • NAT • E-W Distributed Routing • N-S Centralized Routing • Dynamic Routing (BGP, OSPF) • Static Routing • NAT Firewall Services • Firewall Virtual Appliance (~2Gbps) • Virtualization Aware • Distributed Virtual Firewall • Kernel enabled line rate (~18+Gbps) • Virtualization and Identity Aware • Activity Monitoring Load Balancer Services • Load Balancer Virtual Appliance • Logical Load Balancer • Layer 7 rules • SSL Termination Virtual Private Network (VPN) • Site-to-Site & Remote Access VPN • Site-to-Site & Remote Access VPN Hypervisor Support • ESXi • ESXi Management • Basic management UI • Full NGC Integration • Service Composer • NSX Manager • NSX API 1 Cloud Management Platforms • vCenter/vCD, vCAC • vCenter/vCD, vCAC, Custom THIS IS NOT A ROADMAP 1 POC only
  • 57. Reserving Resources for Each Group • VXLANs appear as network paths in resource reservations • Security Groups, Load Balancers − Can be specified as custom properties on the reservation or on the blueprint VXLANs can be reserved by Provisioning Group Current Release: vCloud Automation Center 5.2 with vCloud Networking and Security 5.1
  • 58. Configuring Service Blueprints VCAC Blueprint Custom Properties define the Load Balancer and Security Groups, that will be associated with the Machine being provisioned. Current Release: vCloud Automation Center 5.2 with vCloud Networking and Security 5.1
  • 59. End User Experience Completely Pre-defined Partially Customizable Organizations can have users select templates with networking and security that is completely pre-defined or partially customizable. FW FW LB NW
  • 60. New Network Profiles PRIVATE No routes to outside app. Routing only between networks within app. Can use distributed router for optimal scalability and performance. ROUTED Network addresses are routable (no private addresses). Routes enabled to outside application boundary. Routing inside app supported. NAT Private addressing for application networks. External IP is routable. Routing inside app supported. Supports DNAT (destination), SNAT (source), 1:1 NAT)
  • 61. NSX – Existing Logical Switches
  • 62. NSX – Existing Edge Gateways
  • 63. NSX – Existing Edge Gateway, Network Interfaces
  • 64. NSX – Existing Edge Gateway, Dynamic Routing
  • 65. vCloud Automation Center – Service Catalog
  • 66. vCloud Automation Center – Multi-Machine Blueprint (Request)
  • 67. vCloud Automation Center – Multi-Machine Blueprint (Manage)
  • 68. vCloud Automation Center – Manage Network for Blueprint
  • 69. NSX – Networks Created On-Demand by vCloud Automation Center
  • 70. NSX - Logical Router Created On-Demand by vCloud Automation Center
  • 71. NSX – Network Interfaces Configured by vCloud Automation Center
  • 72. NSX – VM Connected to Network by vCloud Automation Center
  • 73. NSX – VMs Placed in Security Groups Protected by Firewall Rules, by vCloud Automation Center
  • 74. vCloud Automation Center – Reservations
  • 75. NSX – VMs Placed in Security Groups by vCloud Automation Center
  • 76. vCloud Automation Center – Scale Blueprint by Adding VM
  • 77. vCloud Automation Center – Specify Load Balancer Rules
  • 78. vCloud Automation Center – Specify Virtual IP for Load Balancer Rule
  • 79. NSX – Load Balancer Rules Configured by vCloud Automation Center
  • 80. vCloud Automation Center – Two Different Networks for Multi- Machine Blueprint
  • 81. vCloud Automation Center – Network Profile for Private Network
  • 82. vCloud Automation Center – IP Addressing for Private Network Profile
  • 83. vCloud Automation Center – Network Profile for NAT
  • 84. vCloud Automation Center – Load Balancer Configuration
  • 85. NSX – Multiple Logical Routers Created by Different Blueprints from vCloud Automation Center
  • 86. NSX – NAT Configured by vCloud Automation Center
  • 87. NSX – NAT Firewall Rule Configured by vCloud Automation Center
  • 88. vCloud Automation Center – Blueprint with Flat, Logical Switch (Network)
  • 89. vCloud Automation Center – Configure Flat Network
  • 90. vCloud Automation Center – Add Load Balancer to Blueprint with Flat Network