9. Characteristics of IaaS Clouds
Standardization. Construct virtual data
centers by pooling compute, storage, and
networking resources together
Offers self-service. Construct Service
Catalogs, application architectures can be
deployed by non-technical people or by
automated triggers such as ticketing
systems
Secure multi-tenancy, ability to run
multiple organisations on the same platform
Report consumption, permit charge or
show back of what has been consumed and
allow for different cost models
Programmatic control via open APIs,
ability to automate tasks and ensure
mobility or resources between clouds
10. To make this possible, cloud requires new resource abstractions
VMware vCloud Director
Organization: Marketing Organization: Finance
Users & Policies Organization VDCs Catalogs Users & Policies Organization VDCs Catalogs
Provider Virtual Datacenters
(Bronze)
(Silver)
(Gold)
VMware vCenter Server
Resource Pools Datastores Port Groups
VMware vSphere
Secure Private Cloud
10
11. VMware vSphere and vCenter Server
! Clusters and Resource Pools vCenter Server
• Provide cloud compute
• DRS is a requirement for the cluster vSphere Cluster/Resource Pool
o Shared storage
o vMotion compatible or EVC enabled
! Datastores vNetwork Distributed Switch
• Provide cloud storage
• Abstract away underlying storage
type
! Portgroups ESXi/ESX hosts
• Provide cloud networking
• Abstract away underlying
networking infrastructure
• vSwitch, vNetwork Distributed FC Storage
iSCSI Storage NFS Storage
Switch or Nexus 1000V
11
12. VMware vCloud Director
! Define standard infrastructure
tiers called Virtual Datacenters
• Pool virtualized infrastructure
resources across multiple vCenter
Servers
! Define standard collections of
VMs called vApps
! Create Organizations and
manage users with RBAC
! Provide UI for users to self
provision vApps into Virtual
Datacenters
! Provide secure multi-tenancy
using vShield Edge
12
13. vApp
! Container of one or more VMs, VMware
vShield
Networking & security
appliances vApp
App App App
• Package up multi-tier application
architectures OS OS OS
vApp Networks
• Upload vApp to a service catalog for
easy one-click redeployment
• Select boot order of VMs, start
delays and stop delays
• Set policies for vApp, storage lease
! Uses the OVF standard
• Captures meta data about the VMs
• Allows import and export between
clouds in standard format
13
14. Fast Provisioning using Linked Clones For Improved Agility
Overview
• Provisions new VMs from a template
without replicating the entire image
• Instead, links the images (clones) so that
common elements are stored only once
vmdk vmdk vmdk
Benefits
• Dramatically speeds up provisioning time
Template from >2 minutes to <5 seconds
vmdk
• Reduces storage footprint (and cost) by
over 60%
14
15. Networking & Security : Introducing vShield Products
Securing the Private Cloud End to End: from the Edge to the Endpoint
vShield App and
vShield Edge vShield Endpoint
Zones
Secure the edge of Create segmentation between Offload anti-virus processing
the virtual datacenter enclaves or silos of workloads
vShield Manager
DMZ Application 1 Application 2 Centralized Management
15
16. Provide Choice in Resource Consumption Models
! With Vmware Chargeback we have
set 3 “out of the box” consumption
models
! Allocated Pool – “Bill for the
virtual container”
! Reservation Pool – “Bill for
the physical container”
! Pay-Per-vApp – Purchase
VMs of specified sizes
and contents
16
17. Open standards make the hybrid cloud possible
Provisioning and Control of the Application
vApp
Private Public
Cloud Clouds
17 Confidential
18. Consumption Visibility
! Show back or Charge back to
consumers
• vCloud Director resources like
broadband network traffic, public IP
addresses, DHCP, NAT can be
metered and billed
! Setup leases to assure
resource reclamation
VMware vSphere
18
21. vSM Cloud Provisioning
! Enhance provisioning and cloud self-service for
vCloud Director
! Standardize and automate service delivery of hybrid Clouds
! Ensure policy compliance in higher governance environments
21 Confidential
22. vCloud Director and VMware Service Manager
VMware Service
Capabilities vCloud Director Manager –
Cloud Provisioning
Accelerates end user time-to-market by enabling intelligent virtual
machine provisioning across VMware vSphere® clusters with on-
demand access..
Ensures secure isolation and enforce control with policy-based user
controls and VMware vShield™ security technologies.
Uses open standards for interoperability and application portability
between clouds
Consolidates infrastructure and delivers resources as configurable,
easy-to-manage virtual datacenters.
Provides vCloud Director services in a service catalog for easiest
end-user consumption
Standardizes and automates services from request, approvals,
provisioning, changes, to notification
Provides tracking and reporting for higher governance environments
22 Confidential
24. Major considerations.
! Users
• Who can do what with which resources?
! What controls/policies should be in place?
• Who needs to authorise what?
! Services
• What does your catalog need to look like?
! Technical considerations
• Storage, CPU, RAM, Networks
24 Confidential
25. Where are you now?
! What percentage are you virtualised?
• Do you want t got further?
! What is our infrastructure costing?
• Can you achieve savings within current estate?
! What barriers are stopping you maximising the potential?
• People, Budget
25 Confidential
26. Where do you want to go?
! Public/Private/Hybrid?
• Where to go and what goes where?
26 Confidential
28. Cloud Director architecture … the basics
vCD Portal “Build your Own tool/portal”
3rd party portals
vSphere Client (Plug-in) (i.e. iWave ITO)
vCloud APIs
vCD!
Cell(s)!
vSphere
Client!
Resource Pod
vCenter! vCenter! vCenter!
! ! ! ! ! !
ESX! ESX! ESX! ESX! ESX! ESX!
28 Confidential
29. VMware vCloud Director Installation and Licensing
! Installs on RHEL 5 U4 or higher
64-bit machine
! VMware vCloud Director
supports
• VMware vSphere Editions
VMware vCloud
• VMware vSphere Enterprise* vCenter Server Director
• VMware vSphere Enterprise Plus
• VMware vCenter Server Editions
• VMware vCenter Server Standard
• Minimum requirements
• vSphere and vCenter Server versions
4.0 U2 and 4.1.
VMware vCloud Director licensed by concurrent
powered-on VMs managed by VCD
*vSphere Enterprise will not support VLAN backed Network Pools and VMware vCloud Director Network Isolation (VCDNI) backed Network Pools
29 Confidential
30. Network Fencing
! Allows developers to provision Layer-2
isolated networks in seconds…
! Deploy multiple copies of the vApp on
the same Org/External network without
modifying hostname or IP address
• Each VM keep original hostname/IP
information inside the fence
• Each VM assigned a new IP outside the fence
30 Confidential
31. vShield Edge – simplifying complex virtual networking
! Provides virtual routing between physical and virtual networks
! Brings firewalling/NATing ‘inside’ the virtual environment
! Provides more flexibility, without the need to always go to external
physical firewalls, but centrally managed
! Extremely useful for test/dev environments
! VCD-Network Isolation reduces the need for VLANs in crowded
datacentres
! Enables secure multi-tenancy for Service Providers
31 Confidential
32. vShield Edge networking
vApp
vApp network
Tenant A
Secure routed network
Tenant A Tenant A
DMZ routed network Tenant A Secure direct network
DMZ direct network Physical
Secure network
Physical
DMZ network
Internet
32 Confidential
33. Connecting the Clouds
Cloud Service
Private Cloud Providers
Traditional
vSphere/vCenter
33 Confidential
35. Five Tuple Firewalls
! Create complex firewall rules
for enhanced security
• Firewall rules now can be
configured for <source address,
source port, protocol, destination
port, destination address>
• Support for ICMP protocol in
addition to tcp and udp
35 Confidential
37. Chargeback and Billing in VMware Cloud Director
• vCloud Service Director itself does NOT do billing or chargeback
• There is NO billing information or metering information presented in the
interface
• All chargeback is done through vCenter Chargeback
Availability
vCenter Chargeback
vCenter Self-Service • Monitor and charge for vCloud
Chargeback Cloud resources
• Deliver targeted multi-tenant
reports
• Integrate with 3rd-party billing
3rd-Party Billing
37 Confidential
39. vCenter Chargeback
! Chargeback awareness and metering for vCD
• Organizations
• Virtual Datacenters (VDCs)
• vApps, templates, media file storage
! Support for vCSD Resource Allocation Models
• Pay as you go – pay for each vApp deployed
• Reservation Pool – pay for a guaranteed set of resources
• Allocation Pool – aka burst charging, pay for a guaranteed set of
resources, can use more than guaranteed but that
gets charged at a premium rate
! Applicable Charges
• Count of public IP addresses
• Broadband traffic (Tx/Rx), per public IP
• CPU, Memory, Storage (base and premium, templates and media file storage)
• Fixed monthly charges for a vApp
39 Confidential
40. VMware Service Manager Cloud Provisioning
! Utilizes the VMware Service
Manager and vCloud Director
Connector
! Provides additional functionality to
vCloud Director:
• Customized Customer Entry Portal
• Configurable and Extendable Request
Forms
• Change Request Management for
Owned Items
• Flexible Workflows
• Plug into vCO to kick off 3rd party
workflows
40 Confidential
41. Standardize and Automate Service Delivery of Hybrid Clouds
The automation engine helps Cloud providers standardize
and deliver Cloud infrastructure.
Electronic
approval Error
process notification,
if any
Request Successful
initiated by service
end-user deployment
Policy-based Provisioning Database
logic in vCloud update
Director
41 Confidential
42. Enhanced Provisioning Automation with vCO
! VSM includes a connector to vCenter Orchestrator (vCO)
! Introducing vCO in the Provisioning Process can enhance service
automation by providing advanced technical orchestration
capabilities
! While VSM acts as the ‘Traffic Cop’ enforcing
the service oriented workflow
vCloud
Director Oracle EM
VMware
Service
Manager 3rd Party
vCO Systems
vCloud vCenter
Director
42 Confidential
49. Introducing vFabric Data Director
! Do for Databases what vSphere
does for Servers
• Extends vSphere benefits to Databases
• Drastic Cost Savings for Databases
• CAPEX
• OPEX
• Consolidates Thousands of Databases &
Simplifies Management
! Built on and Integrated with
vSphere 5.0
49 Confidential
50. Path to PaaS
Infrastructure-as-a- IaaS + Database-as-a- Platform-as-a-Service
Service (IaaS) Service (PaaS)
• Centralized management of • Centralized management of • Centralized applications
Compute, Storage, and Databases development framework
Network resources • Self-service database optimized for the cloud
• Self-service management of operations • Integrates automation
Infrastructure resources • Leverages IaaS architecture provided by IaaS and
• Dependent on Virtualization DBaaS
vSphere + vCloud Director vFabric Data Director Cloud Foundry
50 Confidential
51. vFabric Data Director
• Powers database-as-a-service
across private and public App App App App App App App App
vClouds
vFabric Data Director
Graphical User Interface/API
• Self-service database
virtualization platform for
Self-service IT Control vSphere-Optimized
traditional and new databases
• First database enabled is
PostgreSQL database with
optimization for vSphere
• Oracle support in 2012 VMware vSphere 5
• MS SQL support in 2013
• Will integrate with vCD
51 Confidential
52. Backup/Restore: Built-in Policies
! DBA’s have limited time to enable, monitor, and test backup and
recovery policies for all databases.
! Solution: Built-In Backup Policies
• Fully integrated backup & restore process (backup templates)
• Automated scheduled backups
• Policy driven backup retention
• Self-service manual backups
• Database remains on line during
backup
• Dual backup techniques integrated
into single policy
• External Backups
• Resilient external backups
• Snapshots with Database Consistency
• Faster to take and restore
52 Confidential
53. Backup/Restore - Point-in-Time Recovery
! Database recovery is cumbersome and error prone
! Solution: Fully automated point-in-time recovery
• Comprehensive view of database backups
• Point in time recover with a few clicks
53 Confidential
54. Innovative Database Cloning
! The average production database has 6 clones (dev, qa) and each
clone takes days to create.
! Solution: Innovative Database Cloning
• Automation and flexibility
• Choice of what to clone
• Data and schema
• Schema only
• Choice of clone point
• Backup (include PITR)
• Current state of database
• Choice of destination database
configuration
• Copy parent database configuration
• Specify destination database configuration
54 Confidential
55. Innovative Database Cloning
• Full Database Clone
• Complete physical copy of parent
• Isolation between parent and clone
• Linked Database Clone Production
• Clone created from parent snapshot “House of Brick has always
• Clone in minutes regardless of database size found that VMware outshines
Full DB Clone
• Delta disk to track change from parent the competition when it comes to
Staging
the tools supporting their cloud
• Application transparent
infrastructure. With vFabric
• Great of diagnostic scenarios
Data Director, even routine
Linked DB Clones
operations such as database
cloning are now automated and
are as easy as one simple click.”
Dev
- David Woodward, COO,
QA Perf
House of Brick
55 Confidential
57. Flexible Database Templates
! Database provisioning and configuration requires sophisticated DBA with
limited time.
! Solution: Flexible Database Templates
• Customize templates for database
configuration and backup
• Robust role-based access control which
templates users can access
• Search and browse templates
• Fast provisioning
! Benefits
• Enforce IT standards and control
• Ease of use
• Ensure reliability and repeatability
57 Confidential
58. Monitoring – Manage by exception
! Dashboards
• Database performance
• Resource utilization
• Capacity planning
• System health, etc.
! End to End Monitoring
• System, Organization, Database Group, Database
! Alarms and Notifications
• Out-of-the-Box alarms
• Custom alarms and thresholds
58 Confidential
59. vFabric AppDirector
! AppDirector automates application deployments on hybrid clouds,
specifically on VCD 1.5
Applications
Custom'or'Packaged'
App'binaries,'config'
.war,&.jar,&.tar,&.zip&etc&
Application Stack Middleware,'OS'
App&servers,&&messaging,&web&
servers,&databases,&&opera7ng&
systems,&load&balancers,&etc&
vCloud Director 1.5
59 Confidential
60. Proliferation of Middleware, OS 2
A forward-looking large enterprise
load balancer load balancer
appserver appserver appserver worker
messaging database cache
Infrastructure teams
Application teams
Middleware, OS – Standardization, Collaboration, Policy-based enforcement?
Application Infrastructure teams
1. Too many combinations of OS, middleware, scripts
2. Post deployment compliance headaches
3. Environment readiness for middleware adding to deployment time
60 Confidential
6
61. What are key goals for AppDirector
!
1 Simplicity
• Automated deployment on cloud
• Intuitive graphical user interface
2 Cloud Ready
!
• Model-once, deploy anywhere (portability)
• Standardization of middleware, OS
• Open and Extensible
!
3 Active App Management
• Integrated Application Performance Management for dynamic remediation of apps
61 Confidential
62. vFabric AppDirector
load load
1 balancer balancer
2
appserv appserv appserv
worker
er er er
messaging database cache
Open architecture for model-driven, Standardization of heterogeneous
orchestrated provisioning on any IaaS cloud middleware, packaged apps, OS
3 4
Best-practice application blueprints for Collaborative, integrated application
deployment patterns management
62 Confidential
63. vFabric AppDirector – “Model-driven” cloud-ready App provisioning
Application Blueprint Logical Application Topology with
Application Binaries
Application Policies, Configurations
Pre-instrumented with App Monitoring
Application Stack - (Middleware, OS)
Architect
Deployment Deployment Deployment Collection of deployment settings
Profile Profile Profile Makes blueprints portable across clouds
(dev) (test) (prod)
App Dev, QA,
Release Standardized configurations of
OS, Middleware
Automated Deployment Plans with Orchestration
Catalog
Deployment Environments
Dev Org VDC Test Org VDC Prod Org VDC
Middleware Admin
Cloud Admin
63 Confidential
64. Model Application Blueprint
Use canvas to create
deployment topology
Standardized templates Standardized scripted
64 from catalog Confidential services from catalog
65. Select Deployment Environment, Cloud Templates, Networks
Steps in deployment profile
Based on logical names used for templates and NICs in the blueprint, system picks cloud
65 templates and networks on the selected deployment environment
Confidential
67. Agenda
Introduction Company Background, Focus and Customer Success Stories
Technical Overview Deep Dive into technology and benefits
Demo Overview of testing completed and results
68. Atlantis Computing
! Software Company focused on I/O optimization for virtualized environments
! HQ in Silicon Valley – Mountain View, CA
! Offices in North America, Europe – London, Amsterdam
! Partnerships with over 70 resellers globally
! Venture Capital funded
! Strategic Relationships with Key Industry vendors
! Industry experts on Large Scale Desktop Virtualization Deployments
69. Atlantis Addresses VDI Costs and User Acceptance
! Software only! - Complements Citrix, Microsoft and VMware
! Cuts VDI CAPEX & OPEX – below PC cost!
! Use less storage – Over 90% less storage needed
! Use any storage – Shared SAN/NAS, local disks, or SSDs
! Deploy with NO storage – Any server with ILIO Diskless VDI
! Delivers fastest VDI – better than PC, even with iPads
! Mitigate Operational Risks
! Use same infrastructure to move from persistent to stateless desktops
! Address Win7 IOPs and A/V issues
70. Atlantis Addresses VDI Costs and User Acceptance
! Software only! Virtual Machine (VM)
! VMware vSphere, Citrix XenServer, and Microsoft Hyper-V
! No agents or changes to desktop images
! Cuts VDI CAPEX & OPEX – below PC cost!
! Use less storage – Over 90% less storage needed
! Use any storage – Shared SAN/NAS, local disks, or SSDs
! Deploy with NO storage – Any server with ILIO Diskless VDI
! For Stateless and Persistent deployments
! Supports Windows XP and Windows 7, Server 2003/2008
! Accelerates Application Virtualization – ThinApp, App-V, etc.
71. Existing
Relevant Customers
Overview Established Customer, 65,000 users in production
Cost effective, high performance solution without Shared Storage
Overview Initial 10,000 users for internal use and Desktop-as-a-Service
Completely diskless architecture for lowest cost and best performance
Overview Hit performance issues with SAN – needed better than a PC
ILIO provides huge performance improvements – no further storage
Overview Strategic Engagement for Desktop Transformation
Global VDI initiative for 40,000 users
73. Atlantis ILIO: How
Identify and map Intelligent NTFS
block to file Processing
semantics
Shared Storage
Local Storage
Or Memory
Intelligent IO Scatter/Gather
Characterization Characterization
I/O De-duplication Processing Coalescing
Atlantis ilio
Eliminate duplicate Sequentialize
Write Requests on reduced I/O streams
wire & on disk for efficient writing
VDI Session Servers
74. Atlantis ILIO: Why
Virtualization-Aware Virtualized
Borderless Network Collaborative Workspace
Cisco Virtualization
Cisco® Experience Clients
MS Office
Identity
AnyConnect
Services
Engine Cisco VXC 6215
Thin Client
PC
Hypervisor
Cisco VXC 4000
PC Client
AnyConnect WAAS
Thin Client
Tablet
! Storage IOPS traffic reduction in Compute – up to 90% reduce
Windows NTFS IO traffic processed locally to greatly reduce storage traffic
! Inline Deduplication for VDI Workloads – 90-99% Reduction
Deduplicates Windows Image components “on-the-wire” before reaching storage
75. Atlantis ILIO Diskless
Citrix
VDI
XenDesktop
Or
VMware View
Server / Blade And WITH JUST
SOFTWARE
VMware ESX
! Scale with servers and software only! " No SAN, No SSD and No drive
! NO storage to run desktops " CAPEX below $200/user and low OPEX
! High performance end-user experience @360 IOPS / user
! Simple to set up and scalable on demand
76. Simplest Way to Deploy VDI
! Simpler design Desktop Density
! Eliminates risks in storage sizing and networking Cisco B230 M2 Blade – 160
virtual desktops per blade
! No PCI-e cards or SSD’s to install or support Chassis (6U) – 1,280 virtual
desktops per chassis
! Simpler deployment Rack (30U) – 6,400 virtual
desktops per rack
! ILIO Fast Clone feature provisions a new desktop
– Full Clone every 5 seconds
! Go from 0 to 100’s of desktops in just minutes
! Simpler at scale
! No storage to provision, monitor, or maintain Read whitepaper at
! VMware vCenter and Atlantis ILIO Center to manage large bit.ly/ciscoatlantisdisklessvdi
scale deployments
77. Atlantis ILIO for XenApp
Atlantis ILIO for XenApp
Performance
Bringing benefits of Atlantis ILIO to virtualised XenApp (12 XenApp Instances)
server workloads 45
40
! 97% faster provisioning and 4x faster boot time 35
30
! Provides faster user access to XenApp
Time (Minutes)
25
20
! Increases user density – 16% more 15
10
! Saves on storage – 10x storage user density 5
0
Provisioning Time Boot Time
Before Atlantis ILIO After Atlantis ILIO
Boot time Source: Independent Testing by Shawn Bass, CTP
Provisioning Source: Internal Atlantis Computing Testing
12
83. The easiest, most secure and on premises way to
share files on the go for enterprise users
44
84. RES HyperDrive Benefits
• Easy for users
– Seamless follow-me-data across any device
– Ad-hoc file sharing
– Endorsed by corporate IT
• Easy for IT
– Secure, on premises and client independent
– Easy to set up
• Innovative approach
– End-to-end solution
– Flexible subscription model
– Independent from virtualization and cloud providers
55
85. Simplicity &
Flexibility
Dropbox
SugarSync
Syncplicity
Zumodrive ShareFile*
Box.NET*
Business
Security
On Premises
File Server
Microsoft
SharePoint
* Off premises / cloud offering
6
86. Introduction to RES HyperDrive
• RES HyperDrive creates a
virtual drive on your
computer
• Drag-and-drop a file onto
the RES HyperDrive and it
is automatically…
• Encrypted and stored locally on your computer; offline availability
• Synchronized to your other computers (Windows and MacOS);
• Backed-up to your own secure corporate data center;
• Mobilized and made accessible to smartphones
(iPhone, Android, Blackberry, Windows Phone) and tablets (iPad);
• Shared with other people you’ve invited.
7
91. File Security
Capability Description
Encrypted Local Drive Protected by 256-bit encryption. Not accessible
without running HyperDrive and without password.
TheftGuard Remotely destroy files and folders on HyperDrive.
Automatic Backup No data loss when device is lost.
File Revisions Keep track of multiple versions of the same file.
12
92. Ad Hoc Sharing
Capability Description
FileLink / FolderLink Instead of e-mailing large files recipient clicks on link
to download file from RES HyperDrive dashboard. This
can be done directly through Explorer/Finder
integration. Optionally links can be protected with
passwords, expiration dates and number of downloads.
Outlook Plugin A Microsoft Outlook Plugin automatically converts
email attachments into FileLinks.
File Download Tracking Receive notifications whenever recipient downloads a
file that has been shared.
Collaboration Share files and collaborate amongst team members.
13
93. Access Anywhere
Capability Description
Windows Explorer & A drive lets you easily access your files and folders
Finder Integration on Windows and Macs.
Online File Manager The RES HyperDrive online dashboard gives you the
ability to easily manage your files from any device
through a secure connection.
Smartphones & Tablets RES HyperDrive offers 5 mobile apps enabling easy
access to your files from Android Phone, iPhone,
iPad, Windows Phone and Blackberry Phone.
14
94. Smart Synching
Capability Description
Automatic Sync Simply drag and drop or save files directly on your
HyperDrive and your files are automatically
synchronized.
Smart Sync Only the changed portions of files are synchronized
increasing performance and bandwidth.
Smart Filters Some files are too sensitive to be shared or are too
large to be synchronized. Set up filters to exclude
these files from sharing or syncing.
Smart Notifications Keep track of when other contributors add, delete or
modify files on your shared HyperDrive.
15
96. Subscription Models
Monthly Subscription Yearly Subscription
(Pay-as-you-Go) (Pre-Paid - Save 10%)
£ 3.5 per user per month £ 38 per user per year
€ 4 per user per month € 43 per user per year
$ 5 per user per month $ 54 per user per year
1. Automated transaction 1. Manual transaction
2. Customers subscribe online 2. Customers buy through partners
3. Virtual Appliance needs to be 3. Virtual Appliance needs to be
activated and will report actual activated and will support the
usage for monthly billing number of pre-paid users
17