SlideShare una empresa de Scribd logo
1 de 27
Software Defined Networking (SDN)
with VMware NSX
Scott Hogg
Chief Technology Officer
Global Technology Resources, Inc.
©2016 Global Technology Resources, Inc., All Rights Reserved.
Contents herin contain confidential information not to be copiedFebruary 3, 2016
Hunter Hansen
Account Executive – West Region
Network & Security Business Unit
VMware
© 2016 GTRI
Agenda
 SDN Introduction and Overview
 Benefits and Drivers for SDN and Use Cases
 Operational Considerations of SDN
 VMWare NSX Review
 GTRI’s SDN Solutions and Services
 Summary
 Questions and Answers
2
© 2016 GTRI
Benefits of Network Virtualization
and Software’s Influence
 Servers have transformed from bare-metal to
virtualized OSs, and now applications are moving to
software containers (LXC, Docker, etc.).
 Storage systems now have dynamic features like
automatic tiering, thin-provisioning, de-duplication,
backups and replication.
 DevOps isn’t just a popular digital-age portmanteau,
its a movement of IT de-silo-ization that is making its
way into the data-networking realm.
 Networking hasn’t changed substantially in 15 years
 Unfortunately, most network devices are still manually configured
one at a time
 Network Admins have only managed to moved from Telnet to SSH
3
# telnet 10.2.6.9 # ssh –l cisco 10.2.6.9
© 2016 GTRI4
© 2016 GTRI
What is SDN?
 Software-Defined Networking is an approach to
networking that separates the control plane from
the forwarding plane to support virtualization.
 SDN is a new paradigm for network virtualization.
5
© 2016 GTRI
SDN High-Level Architecture
6
Controller
Network
Element
Network
Element
Network
Element
Network
Element
SDN Layer
Virtualized Application Services
Northbound API
Southbound API
Controller Layer
Data Plane Layer
Agent
Agent
Agent
Agent
Controller
East/West
Interface
© 2016 GTRI
SDN Benefits
 Greater span of control and network analytics
and response.
 Better intelligence with a global view of the
network rather than each network element
looking at the network from its own viewpoint.
 Improved application experience and empower
the network owner/operator.
 Rapid deployment of applications using
networking that supports the application’s
specific needs.
 Simplified and automated IT administration.
 Opportunity to open up the network and offer a
diverse set of vendors and disaggregation.
7
© 2016 GTRI
SDN Use Cases
8
© 2016 GTRI
SDN Operational Model
 Network and security administrators are sometimes
threatened by network programmability and software-
defined networking.
 The truth is, your networking skills and knowledge is
transferable to a software-driven/defined world.
 Operational issues can arise in the new SDDC
environment when groups don’t cooperate well.
 Silos of IT operations don’t lend themselves to NFV
and SDN and virtual security policy enforcement.
 The traditional physical demarcations and lines of
responsibility blur with SDN and NFV.
 Cross-function and interdisciplinary DevOps teams are
needed to make SDN and NFV systems viable.
9
© 2016 GTRI
VMware SDN Solutions
 VMware is a leader in virtualization
software and Software-Defined Data
Center (SDDC) solutions.
 VMware acquired Nicira and their Network
Virtualization Platform (NVP)
 This has now evolved into the VMware
NSX product which provides network
virtualization, disaster recovery, and
security.
10
© 2016 GTRI
It’s Time to Virtualize the WHOLE
Data Center
EFFICIENT SECURE
Optimized for rapid
development and delivery
of all applications, for safe
consumption on any device
The Software Defined
Data Center
AGILE
Network Virtualization is Key
Network Virtualization
is at the core of an
SDDC approach
Network, storage, compute
Virtualization layer
Non-Disrupting Deployment
© 2016 GTRI
Network, storage, compute
Virtualization layer
“Network hypervisor”
Virtual Data Centers
Network Virtualization
is at the core of an
SDDC approach
Non-Disrupting Deployment
© 2016 GTRI
The Power of Distributed Services
Switching
Routing
Firewalling/ACLs
Load Balancing
Network and security services now
distributed in the hypervisor
© 2016 GTRI
Switching
Routing
Firewalling/ACLs
Load Balancing
High throughput rates
East-west firewalling
Native platform capability
The Power of Distributed Services
© 2016 GTRI
A Virtual Network?
© 2016 GTRI
A Virtual Network?
© 2016 GTRI
Non-Disruptive Deployment
© 2016 GTRI
DR Today (simple view)
10.0.10/24 10.0.20/24
10.0.10.21 10.0.20.21 Major
RTO
Impact
Change IP Address
Reconfig Security4
Primary Site Recovery Site
Recover
the VM
3
Replicate
VM & Storage
2Physical Network Infrastructure Physical Network Infrastructure
SAN
1
Snapshot VM
SAN
Step 1&2
(e.g VMware SRM)
19
© 2016 GTRI
DR with NSX Network Virtualization
(simple view)
SAN SAN
10.0.30.21 10.0.30.21
Virtual Network
10.0.30/24
80%
RTO
Virtual Network
10.0.30/24
NSX Controller NSX Controller
Snapshot
Network &
Security
2b
Primary Site Recovery Site
1
Snapshot VM Network & Security
already exists
Recover
the VM
3
Physical Network Infrastructure Physical Network Infrastructure2a
Replicate
VM & Storage
10.0.10/24 10.0.20/24
Step 1&2
(e.g VMware SRM)
20
© 2016 GTRI
Non-Disruptive Deployment
© 2016 GTRI
The Power of Distributed Network &
Security Services & Policies
© 2016 GTRI
Problem: Data Center Network
Security
Perimeter-centric network security has proven insufficient, and micro-segmentation is operationally infeasible
Little or no
lateral controls
inside perimeter
Internet Internet
Insufficient Operationally
Infeasible
© 2016 GTRI
How an SDDC approach makes
micro-segmentation feasible
24
Internet
Security Policy
Perimeter
Firewalls
Cloud
Management
Platform
© 2016 GTRI
Align type of controls to what you
are protecting
Isolation Explicit Allow Comm. Secure Communications
NGFW
IPS
IPS
NGFW
ServiceInsertion
Application A
Application B
App Tier
DB Tier (e.gTCP,1433)
No Communication Path
© 2016 GTRI
GTRI SDN Solutions
 GTRI’s Virtualization and Advanced Networking
Professional Services (PS) practice has expertise
with SDN vendor solutions. Like VMware NSX.
 GTRI has completed the Network Virtualization
VMware specialization.
 GTRI offers an SDN readiness assessment service
to assess your organization, your applications,
and the benefits to your business gained from
using SDN.
 VMware NSX provides near-term secure network
virtualization and network automation while
laying the foundation for an SDN future.
 Let GTRI and VMware help your organization
embark on a path toward SDN.
26
© 2016 GTRI
Questions and Answers
 Q&A Session
 Next Steps
27
Scott Hogg SHogg@GTRI.com 303-949-4865 @scotthogg
Hunter Hansen HHansen@VMware.com 720-628-1189

Más contenido relacionado

La actualidad más candente

La actualidad más candente (20)

Let's Talk About: Azure Networking
Let's Talk About: Azure NetworkingLet's Talk About: Azure Networking
Let's Talk About: Azure Networking
 
Cloud Migration: Moving to the Cloud
Cloud Migration: Moving to the CloudCloud Migration: Moving to the Cloud
Cloud Migration: Moving to the Cloud
 
Cloud security and security architecture
Cloud security and security architectureCloud security and security architecture
Cloud security and security architecture
 
Webinar: Simplifying the Enterprise Hybrid Cloud with Azure Stack HCI
Webinar: Simplifying the Enterprise Hybrid Cloud with Azure Stack HCIWebinar: Simplifying the Enterprise Hybrid Cloud with Azure Stack HCI
Webinar: Simplifying the Enterprise Hybrid Cloud with Azure Stack HCI
 
What SD-WAN Means for Enterprise
What SD-WAN Means for EnterpriseWhat SD-WAN Means for Enterprise
What SD-WAN Means for Enterprise
 
SDWAN.pdf
SDWAN.pdfSDWAN.pdf
SDWAN.pdf
 
Microsoft Azure Cloud Services
Microsoft Azure Cloud ServicesMicrosoft Azure Cloud Services
Microsoft Azure Cloud Services
 
Enterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANEnterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WAN
 
Data Lake na área da saúde- AWS
Data Lake na área da saúde- AWSData Lake na área da saúde- AWS
Data Lake na área da saúde- AWS
 
A Software Defined WAN Architecture
A Software Defined WAN ArchitectureA Software Defined WAN Architecture
A Software Defined WAN Architecture
 
Hyper-Converged Infrastructure Vx Rail
Hyper-Converged Infrastructure Vx Rail Hyper-Converged Infrastructure Vx Rail
Hyper-Converged Infrastructure Vx Rail
 
Vce vxrail-customer-presentation new
Vce vxrail-customer-presentation newVce vxrail-customer-presentation new
Vce vxrail-customer-presentation new
 
Cloud Security
Cloud SecurityCloud Security
Cloud Security
 
Introduction to CloudStack
Introduction to CloudStack Introduction to CloudStack
Introduction to CloudStack
 
VMware NSX 101: What, Why & How
VMware NSX 101: What, Why & HowVMware NSX 101: What, Why & How
VMware NSX 101: What, Why & How
 
VMware virtual SAN 6 overview
VMware virtual SAN 6 overviewVMware virtual SAN 6 overview
VMware virtual SAN 6 overview
 
Amazon Virtual Private Cloud
Amazon Virtual Private CloudAmazon Virtual Private Cloud
Amazon Virtual Private Cloud
 
Azure Networking (1).pptx
Azure Networking (1).pptxAzure Networking (1).pptx
Azure Networking (1).pptx
 
Presentation citrix desktop virtualization
Presentation   citrix desktop virtualizationPresentation   citrix desktop virtualization
Presentation citrix desktop virtualization
 
Mission (Not) Impossible: Applying NIST 800-53 High Impact-Controls on AWS fo...
Mission (Not) Impossible: Applying NIST 800-53 High Impact-Controls on AWS fo...Mission (Not) Impossible: Applying NIST 800-53 High Impact-Controls on AWS fo...
Mission (Not) Impossible: Applying NIST 800-53 High Impact-Controls on AWS fo...
 

Destacado

Emc isilon config requirements w tips & tricks
Emc isilon config requirements w tips & tricksEmc isilon config requirements w tips & tricks
Emc isilon config requirements w tips & tricks
karlosgaleano
 
Paul Marcoux - Cisco - Cisco's Green Story CUD
Paul Marcoux - Cisco - Cisco's Green Story CUDPaul Marcoux - Cisco - Cisco's Green Story CUD
Paul Marcoux - Cisco - Cisco's Green Story CUD
Shane Mitchell
 

Destacado (20)

VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
The Future of Cloud Networking is VMware NSX
The Future of Cloud Networking is VMware NSXThe Future of Cloud Networking is VMware NSX
The Future of Cloud Networking is VMware NSX
 
VMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesVMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use cases
 
Network Virtualization with VMware NSX
Network Virtualization with VMware NSXNetwork Virtualization with VMware NSX
Network Virtualization with VMware NSX
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
 
Reference design for v mware nsx
Reference design for v mware nsxReference design for v mware nsx
Reference design for v mware nsx
 
VMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSXVMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSX
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real project
 
SDN Dependability: Assessment, Techniques, and Tools - SDN Research Group - I...
SDN Dependability: Assessment, Techniques, and Tools - SDN Research Group - I...SDN Dependability: Assessment, Techniques, and Tools - SDN Research Group - I...
SDN Dependability: Assessment, Techniques, and Tools - SDN Research Group - I...
 
NSX, un salt natural cap a SDN
NSX, un salt natural cap a SDNNSX, un salt natural cap a SDN
NSX, un salt natural cap a SDN
 
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
Webinář: Dell VRTX - datacentrum vše-v-jednom za skvělou cenu / 7.10.2013
 
Software-Defined Networking: Evolution or Revolution?
Software-Defined Networking: Evolution or Revolution?Software-Defined Networking: Evolution or Revolution?
Software-Defined Networking: Evolution or Revolution?
 
Support Software Defined Networking with Dynamic Network Architecture
Support Software Defined Networking with Dynamic Network ArchitectureSupport Software Defined Networking with Dynamic Network Architecture
Support Software Defined Networking with Dynamic Network Architecture
 
Emc isilon config requirements w tips & tricks
Emc isilon config requirements w tips & tricksEmc isilon config requirements w tips & tricks
Emc isilon config requirements w tips & tricks
 
Real Application Security (RAS) and Oracle Application Express (APEX)
Real Application Security (RAS) and Oracle Application Express (APEX)Real Application Security (RAS) and Oracle Application Express (APEX)
Real Application Security (RAS) and Oracle Application Express (APEX)
 
Black Duck & IBM Present: Application Security in the Age of Open Source
Black Duck & IBM Present: Application Security in the Age of Open SourceBlack Duck & IBM Present: Application Security in the Age of Open Source
Black Duck & IBM Present: Application Security in the Age of Open Source
 
Strategy considerations for building a security operations center
Strategy considerations for building a security operations centerStrategy considerations for building a security operations center
Strategy considerations for building a security operations center
 
Emc isilon overview
Emc isilon overview Emc isilon overview
Emc isilon overview
 
Emc isilon technical deep dive workshop
Emc isilon technical deep dive workshopEmc isilon technical deep dive workshop
Emc isilon technical deep dive workshop
 
Paul Marcoux - Cisco - Cisco's Green Story CUD
Paul Marcoux - Cisco - Cisco's Green Story CUDPaul Marcoux - Cisco - Cisco's Green Story CUD
Paul Marcoux - Cisco - Cisco's Green Story CUD
 

Similar a Software Defined Networking (SDN) with VMware NSX

V mware sddc-micro-segmentation-white-paper
V mware sddc-micro-segmentation-white-paperV mware sddc-micro-segmentation-white-paper
V mware sddc-micro-segmentation-white-paper
EMC
 
Citrix Synergy 2014 - Syn231 Why cloud projects fail
Citrix Synergy 2014 - Syn231 Why cloud projects failCitrix Synergy 2014 - Syn231 Why cloud projects fail
Citrix Synergy 2014 - Syn231 Why cloud projects fail
Citrix
 

Similar a Software Defined Networking (SDN) with VMware NSX (20)

VMware Developer-Ready Transformation
VMware Developer-Ready TransformationVMware Developer-Ready Transformation
VMware Developer-Ready Transformation
 
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
 
Contrail Launch: Capitalize on SDN and Cloud. Now.
Contrail Launch: Capitalize on SDN and Cloud. Now.Contrail Launch: Capitalize on SDN and Cloud. Now.
Contrail Launch: Capitalize on SDN and Cloud. Now.
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
 
Designing CloudStack Clouds
Designing CloudStack CloudsDesigning CloudStack Clouds
Designing CloudStack Clouds
 
Mastering the move
Mastering the moveMastering the move
Mastering the move
 
How to use SDN to Innovate, Expand and Deliver for your business
How to use SDN to Innovate, Expand and Deliver for your businessHow to use SDN to Innovate, Expand and Deliver for your business
How to use SDN to Innovate, Expand and Deliver for your business
 
VMware Tanzu Service Mesh from the Developer’s Perspective
VMware Tanzu Service Mesh from the Developer’s PerspectiveVMware Tanzu Service Mesh from the Developer’s Perspective
VMware Tanzu Service Mesh from the Developer’s Perspective
 
Understanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN SolutionUnderstanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN Solution
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
Security and Virtualization in the Data Center
Security and Virtualization in the Data CenterSecurity and Virtualization in the Data Center
Security and Virtualization in the Data Center
 
20150311 NSX update 301
20150311 NSX update 30120150311 NSX update 301
20150311 NSX update 301
 
V mware sddc-micro-segmentation-white-paper
V mware sddc-micro-segmentation-white-paperV mware sddc-micro-segmentation-white-paper
V mware sddc-micro-segmentation-white-paper
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 
Citrix Synergy 2014 - Syn231 Why cloud projects fail
Citrix Synergy 2014 - Syn231 Why cloud projects failCitrix Synergy 2014 - Syn231 Why cloud projects fail
Citrix Synergy 2014 - Syn231 Why cloud projects fail
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitive
 
A Pulsar Use Case In Federated Learning - Pulsar Summit NA 2021
A Pulsar Use Case In Federated Learning - Pulsar Summit NA 2021A Pulsar Use Case In Federated Learning - Pulsar Summit NA 2021
A Pulsar Use Case In Federated Learning - Pulsar Summit NA 2021
 
Putting the M in MANO: Major new Ensemble release delivers NFV management and...
Putting the M in MANO: Major new Ensemble release delivers NFV management and...Putting the M in MANO: Major new Ensemble release delivers NFV management and...
Putting the M in MANO: Major new Ensemble release delivers NFV management and...
 
Síla virtuality - virtualizovaná bezpečnost softwarově definovaných datových ...
Síla virtuality - virtualizovaná bezpečnost softwarově definovaných datových ...Síla virtuality - virtualizovaná bezpečnost softwarově definovaných datových ...
Síla virtuality - virtualizovaná bezpečnost softwarově definovaných datových ...
 
IRJET- Cloud Computing Review
IRJET-  	  Cloud Computing ReviewIRJET-  	  Cloud Computing Review
IRJET- Cloud Computing Review
 

Más de Zivaro Inc

Single Glass of Pain: See Your World, Maybe You Wish You Hadn't
Single Glass of Pain: See Your World, Maybe You Wish You Hadn'tSingle Glass of Pain: See Your World, Maybe You Wish You Hadn't
Single Glass of Pain: See Your World, Maybe You Wish You Hadn't
Zivaro Inc
 

Más de Zivaro Inc (20)

How to Rightsize Your Citrix Investment
How to Rightsize Your Citrix InvestmentHow to Rightsize Your Citrix Investment
How to Rightsize Your Citrix Investment
 
On-Prem vs. Cloud Collaboration Showdown
On-Prem vs. Cloud Collaboration ShowdownOn-Prem vs. Cloud Collaboration Showdown
On-Prem vs. Cloud Collaboration Showdown
 
Beyond the Phish with GTRI and Wombat Security Technologies
Beyond the Phish with GTRI and Wombat Security TechnologiesBeyond the Phish with GTRI and Wombat Security Technologies
Beyond the Phish with GTRI and Wombat Security Technologies
 
Big Data Workshop: Splunk and Dell EMC...Better Together
Big Data Workshop: Splunk and Dell EMC...Better TogetherBig Data Workshop: Splunk and Dell EMC...Better Together
Big Data Workshop: Splunk and Dell EMC...Better Together
 
Organizational Change Management
Organizational Change ManagementOrganizational Change Management
Organizational Change Management
 
Software-Defined WAN 101
Software-Defined WAN 101Software-Defined WAN 101
Software-Defined WAN 101
 
Insider Threat Solution from GTRI
Insider Threat Solution from GTRIInsider Threat Solution from GTRI
Insider Threat Solution from GTRI
 
SDN Security: Two Sides of the Same Coin
SDN Security: Two Sides of the Same CoinSDN Security: Two Sides of the Same Coin
SDN Security: Two Sides of the Same Coin
 
Denver Big Data Analytics Day
Denver Big Data Analytics DayDenver Big Data Analytics Day
Denver Big Data Analytics Day
 
Cisco ACI: A New Approach to Software Defined Networking
Cisco ACI: A New Approach to Software Defined NetworkingCisco ACI: A New Approach to Software Defined Networking
Cisco ACI: A New Approach to Software Defined Networking
 
Software Defined Networking (SDN) Technology Brief
Software Defined Networking (SDN) Technology BriefSoftware Defined Networking (SDN) Technology Brief
Software Defined Networking (SDN) Technology Brief
 
Splunk Enterprise 6.3 - Splunk Tech Day
Splunk Enterprise 6.3 - Splunk Tech DaySplunk Enterprise 6.3 - Splunk Tech Day
Splunk Enterprise 6.3 - Splunk Tech Day
 
Splunk Fundamentals: Investigations with Core Splunk - Splunk Tech Day
Splunk Fundamentals: Investigations with Core Splunk - Splunk Tech DaySplunk Fundamentals: Investigations with Core Splunk - Splunk Tech Day
Splunk Fundamentals: Investigations with Core Splunk - Splunk Tech Day
 
GTRI Splunk Case Studies - Splunk Tech Day
GTRI Splunk Case Studies - Splunk Tech DayGTRI Splunk Case Studies - Splunk Tech Day
GTRI Splunk Case Studies - Splunk Tech Day
 
GTRI Splunk Overview - Splunk Tech Day
GTRI Splunk Overview - Splunk Tech DayGTRI Splunk Overview - Splunk Tech Day
GTRI Splunk Overview - Splunk Tech Day
 
Successfully Deploying IPv6
Successfully Deploying IPv6Successfully Deploying IPv6
Successfully Deploying IPv6
 
Single Glass of Pain: See Your World, Maybe You Wish You Hadn't
Single Glass of Pain: See Your World, Maybe You Wish You Hadn'tSingle Glass of Pain: See Your World, Maybe You Wish You Hadn't
Single Glass of Pain: See Your World, Maybe You Wish You Hadn't
 
Good Guys vs Bad Guys: Using Big Data to Counteract Advanced Threats
Good Guys vs Bad Guys: Using Big Data to Counteract Advanced ThreatsGood Guys vs Bad Guys: Using Big Data to Counteract Advanced Threats
Good Guys vs Bad Guys: Using Big Data to Counteract Advanced Threats
 
Successfully Deploying IPv6
Successfully Deploying IPv6Successfully Deploying IPv6
Successfully Deploying IPv6
 
Using Big Data to Counteract Advanced Threats
Using Big Data to Counteract Advanced ThreatsUsing Big Data to Counteract Advanced Threats
Using Big Data to Counteract Advanced Threats
 

Último

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
vu2urc
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
Enterprise Knowledge
 

Último (20)

Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...Driving Behavioral Change for Information Management through Data-Driven Gree...
Driving Behavioral Change for Information Management through Data-Driven Gree...
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Histor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slideHistor y of HAM Radio presentation slide
Histor y of HAM Radio presentation slide
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 

Software Defined Networking (SDN) with VMware NSX

  • 1. Software Defined Networking (SDN) with VMware NSX Scott Hogg Chief Technology Officer Global Technology Resources, Inc. ©2016 Global Technology Resources, Inc., All Rights Reserved. Contents herin contain confidential information not to be copiedFebruary 3, 2016 Hunter Hansen Account Executive – West Region Network & Security Business Unit VMware
  • 2. © 2016 GTRI Agenda  SDN Introduction and Overview  Benefits and Drivers for SDN and Use Cases  Operational Considerations of SDN  VMWare NSX Review  GTRI’s SDN Solutions and Services  Summary  Questions and Answers 2
  • 3. © 2016 GTRI Benefits of Network Virtualization and Software’s Influence  Servers have transformed from bare-metal to virtualized OSs, and now applications are moving to software containers (LXC, Docker, etc.).  Storage systems now have dynamic features like automatic tiering, thin-provisioning, de-duplication, backups and replication.  DevOps isn’t just a popular digital-age portmanteau, its a movement of IT de-silo-ization that is making its way into the data-networking realm.  Networking hasn’t changed substantially in 15 years  Unfortunately, most network devices are still manually configured one at a time  Network Admins have only managed to moved from Telnet to SSH 3 # telnet 10.2.6.9 # ssh –l cisco 10.2.6.9
  • 5. © 2016 GTRI What is SDN?  Software-Defined Networking is an approach to networking that separates the control plane from the forwarding plane to support virtualization.  SDN is a new paradigm for network virtualization. 5
  • 6. © 2016 GTRI SDN High-Level Architecture 6 Controller Network Element Network Element Network Element Network Element SDN Layer Virtualized Application Services Northbound API Southbound API Controller Layer Data Plane Layer Agent Agent Agent Agent Controller East/West Interface
  • 7. © 2016 GTRI SDN Benefits  Greater span of control and network analytics and response.  Better intelligence with a global view of the network rather than each network element looking at the network from its own viewpoint.  Improved application experience and empower the network owner/operator.  Rapid deployment of applications using networking that supports the application’s specific needs.  Simplified and automated IT administration.  Opportunity to open up the network and offer a diverse set of vendors and disaggregation. 7
  • 8. © 2016 GTRI SDN Use Cases 8
  • 9. © 2016 GTRI SDN Operational Model  Network and security administrators are sometimes threatened by network programmability and software- defined networking.  The truth is, your networking skills and knowledge is transferable to a software-driven/defined world.  Operational issues can arise in the new SDDC environment when groups don’t cooperate well.  Silos of IT operations don’t lend themselves to NFV and SDN and virtual security policy enforcement.  The traditional physical demarcations and lines of responsibility blur with SDN and NFV.  Cross-function and interdisciplinary DevOps teams are needed to make SDN and NFV systems viable. 9
  • 10. © 2016 GTRI VMware SDN Solutions  VMware is a leader in virtualization software and Software-Defined Data Center (SDDC) solutions.  VMware acquired Nicira and their Network Virtualization Platform (NVP)  This has now evolved into the VMware NSX product which provides network virtualization, disaster recovery, and security. 10
  • 11. © 2016 GTRI It’s Time to Virtualize the WHOLE Data Center EFFICIENT SECURE Optimized for rapid development and delivery of all applications, for safe consumption on any device The Software Defined Data Center AGILE Network Virtualization is Key
  • 12. Network Virtualization is at the core of an SDDC approach Network, storage, compute Virtualization layer Non-Disrupting Deployment
  • 13. © 2016 GTRI Network, storage, compute Virtualization layer “Network hypervisor” Virtual Data Centers Network Virtualization is at the core of an SDDC approach Non-Disrupting Deployment
  • 14. © 2016 GTRI The Power of Distributed Services Switching Routing Firewalling/ACLs Load Balancing Network and security services now distributed in the hypervisor
  • 15. © 2016 GTRI Switching Routing Firewalling/ACLs Load Balancing High throughput rates East-west firewalling Native platform capability The Power of Distributed Services
  • 16. © 2016 GTRI A Virtual Network?
  • 17. © 2016 GTRI A Virtual Network?
  • 19. © 2016 GTRI DR Today (simple view) 10.0.10/24 10.0.20/24 10.0.10.21 10.0.20.21 Major RTO Impact Change IP Address Reconfig Security4 Primary Site Recovery Site Recover the VM 3 Replicate VM & Storage 2Physical Network Infrastructure Physical Network Infrastructure SAN 1 Snapshot VM SAN Step 1&2 (e.g VMware SRM) 19
  • 20. © 2016 GTRI DR with NSX Network Virtualization (simple view) SAN SAN 10.0.30.21 10.0.30.21 Virtual Network 10.0.30/24 80% RTO Virtual Network 10.0.30/24 NSX Controller NSX Controller Snapshot Network & Security 2b Primary Site Recovery Site 1 Snapshot VM Network & Security already exists Recover the VM 3 Physical Network Infrastructure Physical Network Infrastructure2a Replicate VM & Storage 10.0.10/24 10.0.20/24 Step 1&2 (e.g VMware SRM) 20
  • 22. © 2016 GTRI The Power of Distributed Network & Security Services & Policies
  • 23. © 2016 GTRI Problem: Data Center Network Security Perimeter-centric network security has proven insufficient, and micro-segmentation is operationally infeasible Little or no lateral controls inside perimeter Internet Internet Insufficient Operationally Infeasible
  • 24. © 2016 GTRI How an SDDC approach makes micro-segmentation feasible 24 Internet Security Policy Perimeter Firewalls Cloud Management Platform
  • 25. © 2016 GTRI Align type of controls to what you are protecting Isolation Explicit Allow Comm. Secure Communications NGFW IPS IPS NGFW ServiceInsertion Application A Application B App Tier DB Tier (e.gTCP,1433) No Communication Path
  • 26. © 2016 GTRI GTRI SDN Solutions  GTRI’s Virtualization and Advanced Networking Professional Services (PS) practice has expertise with SDN vendor solutions. Like VMware NSX.  GTRI has completed the Network Virtualization VMware specialization.  GTRI offers an SDN readiness assessment service to assess your organization, your applications, and the benefits to your business gained from using SDN.  VMware NSX provides near-term secure network virtualization and network automation while laying the foundation for an SDN future.  Let GTRI and VMware help your organization embark on a path toward SDN. 26
  • 27. © 2016 GTRI Questions and Answers  Q&A Session  Next Steps 27 Scott Hogg SHogg@GTRI.com 303-949-4865 @scotthogg Hunter Hansen HHansen@VMware.com 720-628-1189