SlideShare a Scribd company logo
1 of 49
Download to read offline
VMware NSX: A Customer’s Perspective
Taruna Gandhi, VMware
Jason Puig, Symantec
Richard Sillito, WestJet
NET5529
#NET5529
2
Agenda
 VMware NSX Overview
 Customer Deployments
• WestJet: Flight Path to a Better Network
• Symantec: Self Service Lab Cloud
 Q&A
3
Software Defined Data Center
SOFTWARE-DEFINED
DATACENTER
All infrastructure is virtualized and delivered as a
service, and the control of this datacenter is
entirely automated by software.
4
WEEKS
DAYS/
HOURS
MINUTES/
SECONDS
Storage/
Availability Servers Networking Security
Management
/
Monitoring
SOFTWARE-DEFINED
DATACENTER SERVICES
VDC
Time to Provision New Services
2008 2012 2013
5
Compute
Network
DC Services
DB DB
App App
Web Web
Corpnet/Internet
• Provisioning is slow
• Placement is limited
• Mobility is limited
• Hardware dependent
• Operationally intensive
Current Network Operational Model is a Barrier to Software Defined
Data Center
6
Provisioning Network Virtualization with NSX
• Programmatic provisioning
• Place any workload anywhere
• Move any workload anywhere
• Decoupled from hardware
• Operationally efficient
Compute
Network
DC Services
7
Provisioning Network Virtualization with NSX
• Programmatic provisioning
• Place any workload anywhere
• Move any workload anywhere
• Decoupled from hardware
• Operationally efficient
Compute
Network
VMware NSX
DC Services
8
VMware NSX – Network and Security for SDDC
Public CloudsPrivate Clouds
Hybrid Cloud
Seamlessly extend your data center to the public cloud
Virtual Workspace
Manage access to services, applications and data for any device
The New Role for IT: IT as a Service
Software-Defined Data Center
Virtualize the entire data center
Management and Automation
Storage and Availability Compute Network and SecurityNetwork and Security
Any Application
(without modification)
Virtual Networks
VMware NSX Network Virtualization Platform
Logical L2 - Switch
Any Network Hardware
Any Cloud Management Platform
Logical
Firewall
Logical
Load Balancer
Logical L3 - Router
Logical
VPN
Any Hypervisor
9
VMware NSX – Networking & Security Capabilities
Rich Networking & Security Services
• Scalable Logical Switching
• Physical to Virtual L2 Bridging
• Dynamic L3 Routing: OSPF, BGP, IS-IS
• Logical Services:
Firewall, Identity-based Firewall, Load-
balancing, VPN (IPSec, SSL, L2VPN)
Automation & Operations
• API Driven Integration
• Service Composer for Security Workflows
• Server Access Monitoring
• Troubleshooting & Visibility
Partner Extensibility
• Physical ToR L2 Integration
• Security Services – IDS / IPS, AV,
Vulnerability Mgmt
• Network Services – Load Balancers, WAN
Optimization
Any Application
(without modification)
Virtual Networks
VMware NSX Network Virtualization Platform
Logical L2
Any Network Hardware
Any Cloud Management Platform
Logical
Firewall
Logical
Load Balancer
Logical L3
Logical
VPN
Any Hypervisor
10
VMware NSX – Network Virtualization Benefits
VMware NSX Transforms the Operational Model of the Network
• Network provisioning time
reduced from 7 days to
30 sec
Reduce network
provisioning time from
days to seconds
Cost Savings
• Reduce operational costs
by 80%
• Increase compute asset
utilization upto 90%
• Reduce hardware costs
by 40-50%
Operational
Automation
Simplified IP hardware
Choice
• Any Hypervisor:
vSphere, KVM, Xen, HyperV
• Any CMP:
vCAC, Openstack
• Any Network Hardware
• Partner Ecosystem
Any hypervisor
Any CMP
with Partner
11
Customers Deploying Network Virtualization Today!
 Westjet: Flight Path to a Better Network
 Symantec: Self Service Lab Cloud
Richard Sillito
rsillito@westjet.com
Network/Security/Virtualization
Flight Path to a
Better Network
Defy Convention
Fort Henry Ontario
Flight Plan
Let’s get our bearingsNorth/South
East/West
The Current State
Navigating in an Alternate Reality (aka “the future”)
• Automation, Continuous Delivery & Self Service
• Support low CASM through reduced TCO
• Commoditization hardware
• Leverage Virtualize network components
• Less complex information environments
• Enable the future workforce with service such as Mobile
Workspace, Bring Your Own Device and Capacity on Demand
Flight Following
Security Architecture Made Simple (SAMS)
Security Architecture Made Simple (SAMS)
SAMS - Infrastructure
Flight Following
SAMS Infrastructure using a VMware Solution
Gateway Firewall (Layer 3)
Connects the outside world
Simple firewall rules
Basic Functionality
High Availability – 4 nines
Embedded Firewalls (Layer 2)
Firewall distributed into each hypervisor
Central Management and reporting
Transparent Firewall
Networking occurs at hypervisor speed
Firewall has more visibility
Innovators
The Evolution
Flight Following
Physical Network
Virtual Network
Flight Following
Software Defined Datacenter
Flight Following
Summary
Defy Convention
• Security
• Performance
• Simplicity
• Automation
Inspiration/Thanks
VMWare
• Vern Bolinius
• Ray Budavari
• Bruno germain
My Family
• Patrick, Brittney, Taz
Thanks
VTeam
• Dominador DeLeon – Sr. TSA - Infrastructure Ops
• Justin Domshy – Manager of Environments
• Mike Gromek - Technical Architect III
• Darrell Lizotte – Technical Architect III
• Randy Seabrook – Manager Architecture
• Derek Sharman - Sr. Analyst-Config Management
• Nanda Weicker - Business Architect III
• Walter Wenzl - Sr Analyst-Config Management
• Dallas Young - Security Support Analyst III
Inspiration
• Dump your DMZ by Joern Wettern
• BYOD and the Death of the DMZ by Lori MacVittie
• Zero Trust Model John Kindervag
32
Granite Labs -
Symantec’s Self Service Lab Cloud
Real-World Experiences with a VMware Software-Defined Data Center
Jason Puig
Symantec
Manager, Cloud Services – Global Symantec Labs
Current Deployment Summary
• Symantec Granite Labs is a large scale implementation of a
Software-Defined Data Center (SDDC)
– Based on VMware and Symantec technologies
– 250,000 VMs deployed, 27,000 under management today with 3,800
users
– 15-month implementation
– Have saved 32,000 Symantec staff hours
– While delivering better quality to end-users, in less time
IT Pressures – a Constant Over the Decades
“Are you getting the
maximum efficiency
out of your
infrastructure?”
“How quickly can IT
respond to LOB
requests?”
• Legislative Compliance
• Risk Reduction – SLAs & Business Continuity
• Security – Corp Assets & IP
Why a Cloud Lab in an SDDC?
• Cost
– Single shared pool of networking, storage, and compute resources.
– Reduced administration
– Reduced integration costs
• Agility
– Data Centers available in minutes instead of days or weeks.
– Abstraction of hardware at all layers allows flexibility and reduced downtime.
– Faster turn around when implementing new solutions
– Reduce provisioning effort allowing employees to focus on their primary job - helping
customers.
– Removing the burden of managing labs from engineers and trainers.
– Helps to break down barriers between departments and reduces silos
• Governance
– Secured within the Symantec Firewall / Private Enterprise Cloud
– Complete oversight into the datacenter topologies allow for improved control.
Cloud Based Labs: The ultimate challenge.
• Legacy Labs
Cloud Based Labs: The ultimate challenge.
• Legacy Labs
• Lab Complexity
• Dynamic Workloads
• “Hands On” / Self Service Required
• Scale
• Security / Protection
• Multiple Geographies
• Virtual on Virtual
• Hybrid Physical and Virtual Provisioning
• Cost
What we Deployed
• vCloud Suite
– vCloud Director
– vSphere
– vCloud Networking &
Security
– vCenter Orchestrator
• NetBackup
• Endpoint Protection
• IT Management Suite
– Deployment Solution
– Asset Management
Suite
– Service Desk
• 7xxx Core Switching
• UCS Blades
• FAS6240
• FAS6280
Demo
Metrics / Lessons Learned
• Cost
– Single shared pool of networking, storage, and compute resources.
• Explosive adoption, over 3,800 employees have used the solution since launch. Average
over 2,000 active users every month.
• Over 250,000 virtual machines deployed since launch.
• Over 27,000 virtual machines under management
• Unified library of over 700 lab topologies within our Software Defined Data Center
– Reduced administration
• While fewer admins are needed, they need to be cross functional and understand the
latest virtualization trends.
• Choosing the right vendors who understand cloud
– Reduced integration costs
• Cloud integration is complex, use as many integrated solutions as you can which are
proven to work together. Symantec is seeing the savings in the ability to leverage
integrations across the cloud.
• Agility
– Software Defined Data Centers available in minutes instead of weeks or months
• Average Provisioning Time: 14 Minutes, completely changes the way employees work.
– Abstraction of hardware at all layers allows flexibility and reduced downtime.
• Multiple hardware transitions since inception, zero user impact.
• Orchestration is a must
– Faster turn around when implementing new solutions
• Our entire cloud topology is actually stored in an SDDC vApp inside of the cloud, allowing for on the fly
testing of new solutions even with the cloud itself.
– Reduce provisioning effort allowing employees to refocus their actual jobs - helping
customers.
• Saved over 11,000 weeks of effort
– Removing the burden of managing labs from engineers and trainers.
• Transitioned to Cloud Operations
– Helps to break down barriers between departments and reduces silos
• Over 700 shared labs covering most Symantec product lines currently available
• Support Services, Training, and Engineering are finally able to share… everything.
Metrics / Lessons Learned
• Governance
– Secured within the Symantec Firewall / Private Enterprise Cloud
– Complete oversight into the datacenter topologies allow for improved
control.
• Auditing of topologies to reduce human error.
• Ensure proper security is in place prior to allowing deployment.
Metrics / Lessons Learned
Future
• Unparalleled Cloud Integration with Symantec Products
• Incorporate enhancements to virtual networking (VMware NSX)
• Reference Architectures
Visit the VMware and Symantec booths.
Talk to us about how we can help your organization get to IT-as-a-
Service, and a Software-Defined Data Center
45
Thoughts & Questions
 Richard Sillito
rsillito@westjet.com
 Jason Puig
Jason_puig@symantec.com
 Taruna Gandhi
gandhit@vmware.com
46
Other VMware Activities Related to This Session
 HOL:
HOL-SDC-1303
VMware NSX Network Virtualization Platform
 Group Discussions:
NET1001-GD
vCloud Networking and Security & NSX for VMware Environments with
Ray Budavari
THANK YOU
VMware NSX: A Customer’s Perspective
Taruna Gandhi, VMware
Jason Puig, Symantec
Richard Sillito, WestJet
NET5529
#NET5529

More Related Content

What's hot

What's hot (20)

VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
 
Network Virtualization with VMware NSX
Network Virtualization with VMware NSXNetwork Virtualization with VMware NSX
Network Virtualization with VMware NSX
 
MT17_Building Integrated and Secure Networks with limited IT Support
MT17_Building Integrated and Secure Networks with limited IT SupportMT17_Building Integrated and Secure Networks with limited IT Support
MT17_Building Integrated and Secure Networks with limited IT Support
 
Jump Start your XenApp 7.5 Deployment
Jump Start your XenApp 7.5 DeploymentJump Start your XenApp 7.5 Deployment
Jump Start your XenApp 7.5 Deployment
 
Flintstones or Jetsons? Jump Start Your Virtual Test Lab
Flintstones or Jetsons? Jump Start Your Virtual Test LabFlintstones or Jetsons? Jump Start Your Virtual Test Lab
Flintstones or Jetsons? Jump Start Your Virtual Test Lab
 
Moving Forward with Network Virtualization (VMware NSX)
Moving Forward with Network Virtualization (VMware NSX)Moving Forward with Network Virtualization (VMware NSX)
Moving Forward with Network Virtualization (VMware NSX)
 
VMware Log Insight
VMware Log Insight VMware Log Insight
VMware Log Insight
 
Using NetScaler Insight to Troubleshoot Network and Server Performance Issues
Using NetScaler Insight to Troubleshoot Network and Server Performance IssuesUsing NetScaler Insight to Troubleshoot Network and Server Performance Issues
Using NetScaler Insight to Troubleshoot Network and Server Performance Issues
 
20150311 NSX update 301
20150311 NSX update 30120150311 NSX update 301
20150311 NSX update 301
 
Desktop as a service (daas)
Desktop as a service (daas)Desktop as a service (daas)
Desktop as a service (daas)
 
VMworld 2015: Extreme Performance Series - vSphere Compute & Memory
VMworld 2015: Extreme Performance Series - vSphere Compute & MemoryVMworld 2015: Extreme Performance Series - vSphere Compute & Memory
VMworld 2015: Extreme Performance Series - vSphere Compute & Memory
 
Co je nového v XenDesktop 7.6 a XenApp 7.6
Co je nového v XenDesktop 7.6 a XenApp 7.6 Co je nového v XenDesktop 7.6 a XenApp 7.6
Co je nového v XenDesktop 7.6 a XenApp 7.6
 
VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations! VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations!
 
VMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDCVMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDC
 
Troubleshooting XenApp with the Citrix Diagnostic Toolkit
Troubleshooting XenApp with the Citrix Diagnostic ToolkitTroubleshooting XenApp with the Citrix Diagnostic Toolkit
Troubleshooting XenApp with the Citrix Diagnostic Toolkit
 
Nsx security deep dive
Nsx security deep diveNsx security deep dive
Nsx security deep dive
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX
 
Earthlink introduction and its overview eb 01-16-04
Earthlink introduction and its overview   eb  01-16-04 Earthlink introduction and its overview   eb  01-16-04
Earthlink introduction and its overview eb 01-16-04
 
Cloud computing
Cloud computingCloud computing
Cloud computing
 
Citrix XenApp 6.5 Performance - How To Ensure a Great End User Experience Bef...
Citrix XenApp 6.5 Performance - How To Ensure a Great End User Experience Bef...Citrix XenApp 6.5 Performance - How To Ensure a Great End User Experience Bef...
Citrix XenApp 6.5 Performance - How To Ensure a Great End User Experience Bef...
 

Viewers also liked

Viewers also liked (20)

VMworld 2013: The Economics of vCloud: Which Cloud Do I Need and How Do I Get...
VMworld 2013: The Economics of vCloud: Which Cloud Do I Need and How Do I Get...VMworld 2013: The Economics of vCloud: Which Cloud Do I Need and How Do I Get...
VMworld 2013: The Economics of vCloud: Which Cloud Do I Need and How Do I Get...
 
VMworld 2013: Moving Beyond Infrastructure: Meeting Demands on App Lifecycle ...
VMworld 2013: Moving Beyond Infrastructure: Meeting Demands on App Lifecycle ...VMworld 2013: Moving Beyond Infrastructure: Meeting Demands on App Lifecycle ...
VMworld 2013: Moving Beyond Infrastructure: Meeting Demands on App Lifecycle ...
 
VMworld 2013: vCloud Hybrid Service Customer Panel Moderator: Angelos Kottas,...
VMworld 2013: vCloud Hybrid Service Customer Panel Moderator: Angelos Kottas,...VMworld 2013: vCloud Hybrid Service Customer Panel Moderator: Angelos Kottas,...
VMworld 2013: vCloud Hybrid Service Customer Panel Moderator: Angelos Kottas,...
 
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
VMworld 2013: Separating Cloud Hype from Reality in Healthcare – a Real-Life ...
 
VMworld 2013: Balancing Agility with Service Standardization: Easy to Say But...
VMworld 2013: Balancing Agility with Service Standardization: Easy to Say But...VMworld 2013: Balancing Agility with Service Standardization: Easy to Say But...
VMworld 2013: Balancing Agility with Service Standardization: Easy to Say But...
 
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
VMworld 2013: Unified Endpoint Management in Scale: What’s New with VMware Ho...
 
VMworld 2013: Provisioning and Managing a Heterogeneous Cloud with vCloud Aut...
VMworld 2013: Provisioning and Managing a Heterogeneous Cloud with vCloud Aut...VMworld 2013: Provisioning and Managing a Heterogeneous Cloud with vCloud Aut...
VMworld 2013: Provisioning and Managing a Heterogeneous Cloud with vCloud Aut...
 
VMworld 2013: On the Way to GPU Virtualization – 3D Acceleration in Virtual M...
VMworld 2013: On the Way to GPU Virtualization – 3D Acceleration in Virtual M...VMworld 2013: On the Way to GPU Virtualization – 3D Acceleration in Virtual M...
VMworld 2013: On the Way to GPU Virtualization – 3D Acceleration in Virtual M...
 
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
VMworld 2013: From Virtualization to Cloud: How Automation Drives Agility
 
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
 
VMworld 2013: Virtualize Active Directory ‒ The Right Way!
VMworld 2013: Virtualize Active Directory ‒ The Right Way!VMworld 2013: Virtualize Active Directory ‒ The Right Way!
VMworld 2013: Virtualize Active Directory ‒ The Right Way!
 
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
 
VMworld 2013: VMware Virsto Technical Overview:Optimizing Your SAN Infrastruc...
VMworld 2013: VMware Virsto Technical Overview:Optimizing Your SAN Infrastruc...VMworld 2013: VMware Virsto Technical Overview:Optimizing Your SAN Infrastruc...
VMworld 2013: VMware Virsto Technical Overview:Optimizing Your SAN Infrastruc...
 
VMworld 2013: vSphere Data Protection 5.5 Advanced VMware Backup and Recovery...
VMworld 2013: vSphere Data Protection 5.5 Advanced VMware Backup and Recovery...VMworld 2013: vSphere Data Protection 5.5 Advanced VMware Backup and Recovery...
VMworld 2013: vSphere Data Protection 5.5 Advanced VMware Backup and Recovery...
 
VMworld 2013: VMware Horizon View Business Process Desktop
VMworld 2013: VMware Horizon View Business Process Desktop VMworld 2013: VMware Horizon View Business Process Desktop
VMworld 2013: VMware Horizon View Business Process Desktop
 
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
vVMworld 2013: Deploying, Troubleshooting, and Monitoring VMware NSX Distribu...
 
VMworld 2013: Successfully Virtualize Microsoft Exchange Server
VMworld 2013: Successfully Virtualize Microsoft Exchange Server VMworld 2013: Successfully Virtualize Microsoft Exchange Server
VMworld 2013: Successfully Virtualize Microsoft Exchange Server
 
Journée ASIT VD 2014 - session 2
Journée ASIT VD 2014 - session 2Journée ASIT VD 2014 - session 2
Journée ASIT VD 2014 - session 2
 
Les chiffres clés de l'E-Mailing
Les chiffres clés de l'E-MailingLes chiffres clés de l'E-Mailing
Les chiffres clés de l'E-Mailing
 
Guide du logement étudiant 2016
Guide du logement étudiant 2016Guide du logement étudiant 2016
Guide du logement étudiant 2016
 

Similar to VMworld 2013: VMware NSX: A Customer’s Perspective

Similar to VMworld 2013: VMware NSX: A Customer’s Perspective (20)

VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
 
Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014 Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014
 
Cloud Technology Brief 2013 Q1 - Thailand
Cloud Technology Brief 2013 Q1 - ThailandCloud Technology Brief 2013 Q1 - Thailand
Cloud Technology Brief 2013 Q1 - Thailand
 
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
 
IT Resilience Use Case
IT Resilience Use CaseIT Resilience Use Case
IT Resilience Use Case
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
 
VMworld 2013: Case Study: VMware vCloud Ecosystem Framework for Network and S...
VMworld 2013: Case Study: VMware vCloud Ecosystem Framework for Network and S...VMworld 2013: Case Study: VMware vCloud Ecosystem Framework for Network and S...
VMworld 2013: Case Study: VMware vCloud Ecosystem Framework for Network and S...
 
Managed Services Cloud Computing
Managed Services Cloud Computing Managed Services Cloud Computing
Managed Services Cloud Computing
 
IBM Software Defined Networking = Brave New World of IT
IBM Software Defined Networking = Brave New World of  ITIBM Software Defined Networking = Brave New World of  IT
IBM Software Defined Networking = Brave New World of IT
 
Private cloud with vmware
Private cloud with vmwarePrivate cloud with vmware
Private cloud with vmware
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
VMworld 2013: Three Advantages of Running Cloud Foundry in a VMware Private C...
VMworld 2013: Three Advantages of Running Cloud Foundry in a VMware Private C...VMworld 2013: Three Advantages of Running Cloud Foundry in a VMware Private C...
VMworld 2013: Three Advantages of Running Cloud Foundry in a VMware Private C...
 
6° Sessione VMware NSX: la piattaforma di virtualizzazione della rete per il ...
6° Sessione VMware NSX: la piattaforma di virtualizzazione della rete per il ...6° Sessione VMware NSX: la piattaforma di virtualizzazione della rete per il ...
6° Sessione VMware NSX: la piattaforma di virtualizzazione della rete per il ...
 
在小學有效運用雲端電腦以促進電子學習(第一節筆記)
在小學有效運用雲端電腦以促進電子學習(第一節筆記)在小學有效運用雲端電腦以促進電子學習(第一節筆記)
在小學有效運用雲端電腦以促進電子學習(第一節筆記)
 
Security as an Enabler – Cloud Security
Security as an Enabler – Cloud SecuritySecurity as an Enabler – Cloud Security
Security as an Enabler – Cloud Security
 
tcp cloud in AVG
tcp cloud in AVGtcp cloud in AVG
tcp cloud in AVG
 
Deployment of Juniper Contrail in AVG Technologies
Deployment of Juniper Contrail in AVG TechnologiesDeployment of Juniper Contrail in AVG Technologies
Deployment of Juniper Contrail in AVG Technologies
 
VMware Outlines Its Own Journey to the Cloud
VMware Outlines Its Own Journey to the CloudVMware Outlines Its Own Journey to the Cloud
VMware Outlines Its Own Journey to the Cloud
 
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
 
VMworld 2013: vCloud Hybrid Service –Building Your Business Case for the Move
VMworld 2013: vCloud Hybrid Service –Building Your Business Case for the Move VMworld 2013: vCloud Hybrid Service –Building Your Business Case for the Move
VMworld 2013: vCloud Hybrid Service –Building Your Business Case for the Move
 

More from VMworld

More from VMworld (20)

VMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep DiveVMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep Dive
 
VMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for HorizonVMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for Horizon
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
 
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI AutomationVMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
 
VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7
 
VMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep DiveVMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep Dive
 
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
 
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
 
VMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts PanelVMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts Panel
 
VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way! VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way!
 
VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6
 
VMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphereVMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphere
 
VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!
 
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
 
VMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SANVMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SAN
 
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes ConfigurationsVMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
 
VMworld 2015: Virtual Volumes Technical Deep Dive
VMworld 2015: Virtual Volumes Technical Deep DiveVMworld 2015: Virtual Volumes Technical Deep Dive
VMworld 2015: Virtual Volumes Technical Deep Dive
 
VMworld 2015: Networking Virtual SAN's Backbone
VMworld 2015: Networking Virtual SAN's BackboneVMworld 2015: Networking Virtual SAN's Backbone
VMworld 2015: Networking Virtual SAN's Backbone
 
VMworld 2015: The Best SDDC!
VMworld 2015: The Best SDDC!VMworld 2015: The Best SDDC!
VMworld 2015: The Best SDDC!
 
VMworld 2015: Conversation with the VMware CIO Suggestions on being an IT Leader
VMworld 2015: Conversation with the VMware CIO Suggestions on being an IT LeaderVMworld 2015: Conversation with the VMware CIO Suggestions on being an IT Leader
VMworld 2015: Conversation with the VMware CIO Suggestions on being an IT Leader
 

Recently uploaded

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Victor Rentea
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
WSO2
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 

Recently uploaded (20)

Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​Elevate Developer Efficiency & build GenAI Application with Amazon Q​
Elevate Developer Efficiency & build GenAI Application with Amazon Q​
 
Introduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDMIntroduction to use of FHIR Documents in ABDM
Introduction to use of FHIR Documents in ABDM
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Architecting Cloud Native Applications
Architecting Cloud Native ApplicationsArchitecting Cloud Native Applications
Architecting Cloud Native Applications
 
Exploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with MilvusExploring Multimodal Embeddings with Milvus
Exploring Multimodal Embeddings with Milvus
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
JohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptxJohnPollard-hybrid-app-RailsConf2024.pptx
JohnPollard-hybrid-app-RailsConf2024.pptx
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...Stronger Together: Developing an Organizational Strategy for Accessible Desig...
Stronger Together: Developing an Organizational Strategy for Accessible Desig...
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by Anitaraj
 

VMworld 2013: VMware NSX: A Customer’s Perspective

  • 1. VMware NSX: A Customer’s Perspective Taruna Gandhi, VMware Jason Puig, Symantec Richard Sillito, WestJet NET5529 #NET5529
  • 2. 2 Agenda  VMware NSX Overview  Customer Deployments • WestJet: Flight Path to a Better Network • Symantec: Self Service Lab Cloud  Q&A
  • 3. 3 Software Defined Data Center SOFTWARE-DEFINED DATACENTER All infrastructure is virtualized and delivered as a service, and the control of this datacenter is entirely automated by software.
  • 4. 4 WEEKS DAYS/ HOURS MINUTES/ SECONDS Storage/ Availability Servers Networking Security Management / Monitoring SOFTWARE-DEFINED DATACENTER SERVICES VDC Time to Provision New Services 2008 2012 2013
  • 5. 5 Compute Network DC Services DB DB App App Web Web Corpnet/Internet • Provisioning is slow • Placement is limited • Mobility is limited • Hardware dependent • Operationally intensive Current Network Operational Model is a Barrier to Software Defined Data Center
  • 6. 6 Provisioning Network Virtualization with NSX • Programmatic provisioning • Place any workload anywhere • Move any workload anywhere • Decoupled from hardware • Operationally efficient Compute Network DC Services
  • 7. 7 Provisioning Network Virtualization with NSX • Programmatic provisioning • Place any workload anywhere • Move any workload anywhere • Decoupled from hardware • Operationally efficient Compute Network VMware NSX DC Services
  • 8. 8 VMware NSX – Network and Security for SDDC Public CloudsPrivate Clouds Hybrid Cloud Seamlessly extend your data center to the public cloud Virtual Workspace Manage access to services, applications and data for any device The New Role for IT: IT as a Service Software-Defined Data Center Virtualize the entire data center Management and Automation Storage and Availability Compute Network and SecurityNetwork and Security Any Application (without modification) Virtual Networks VMware NSX Network Virtualization Platform Logical L2 - Switch Any Network Hardware Any Cloud Management Platform Logical Firewall Logical Load Balancer Logical L3 - Router Logical VPN Any Hypervisor
  • 9. 9 VMware NSX – Networking & Security Capabilities Rich Networking & Security Services • Scalable Logical Switching • Physical to Virtual L2 Bridging • Dynamic L3 Routing: OSPF, BGP, IS-IS • Logical Services: Firewall, Identity-based Firewall, Load- balancing, VPN (IPSec, SSL, L2VPN) Automation & Operations • API Driven Integration • Service Composer for Security Workflows • Server Access Monitoring • Troubleshooting & Visibility Partner Extensibility • Physical ToR L2 Integration • Security Services – IDS / IPS, AV, Vulnerability Mgmt • Network Services – Load Balancers, WAN Optimization Any Application (without modification) Virtual Networks VMware NSX Network Virtualization Platform Logical L2 Any Network Hardware Any Cloud Management Platform Logical Firewall Logical Load Balancer Logical L3 Logical VPN Any Hypervisor
  • 10. 10 VMware NSX – Network Virtualization Benefits VMware NSX Transforms the Operational Model of the Network • Network provisioning time reduced from 7 days to 30 sec Reduce network provisioning time from days to seconds Cost Savings • Reduce operational costs by 80% • Increase compute asset utilization upto 90% • Reduce hardware costs by 40-50% Operational Automation Simplified IP hardware Choice • Any Hypervisor: vSphere, KVM, Xen, HyperV • Any CMP: vCAC, Openstack • Any Network Hardware • Partner Ecosystem Any hypervisor Any CMP with Partner
  • 11. 11 Customers Deploying Network Virtualization Today!  Westjet: Flight Path to a Better Network  Symantec: Self Service Lab Cloud
  • 15. Let’s get our bearingsNorth/South East/West
  • 17. Navigating in an Alternate Reality (aka “the future”) • Automation, Continuous Delivery & Self Service • Support low CASM through reduced TCO • Commoditization hardware • Leverage Virtualize network components • Less complex information environments • Enable the future workforce with service such as Mobile Workspace, Bring Your Own Device and Capacity on Demand
  • 19. Security Architecture Made Simple (SAMS)
  • 20. Security Architecture Made Simple (SAMS) SAMS - Infrastructure
  • 22. SAMS Infrastructure using a VMware Solution Gateway Firewall (Layer 3) Connects the outside world Simple firewall rules Basic Functionality High Availability – 4 nines Embedded Firewalls (Layer 2) Firewall distributed into each hypervisor Central Management and reporting Transparent Firewall Networking occurs at hypervisor speed Firewall has more visibility Innovators
  • 30. Summary Defy Convention • Security • Performance • Simplicity • Automation
  • 31. Inspiration/Thanks VMWare • Vern Bolinius • Ray Budavari • Bruno germain My Family • Patrick, Brittney, Taz Thanks VTeam • Dominador DeLeon – Sr. TSA - Infrastructure Ops • Justin Domshy – Manager of Environments • Mike Gromek - Technical Architect III • Darrell Lizotte – Technical Architect III • Randy Seabrook – Manager Architecture • Derek Sharman - Sr. Analyst-Config Management • Nanda Weicker - Business Architect III • Walter Wenzl - Sr Analyst-Config Management • Dallas Young - Security Support Analyst III Inspiration • Dump your DMZ by Joern Wettern • BYOD and the Death of the DMZ by Lori MacVittie • Zero Trust Model John Kindervag
  • 32. 32 Granite Labs - Symantec’s Self Service Lab Cloud Real-World Experiences with a VMware Software-Defined Data Center Jason Puig Symantec Manager, Cloud Services – Global Symantec Labs
  • 33. Current Deployment Summary • Symantec Granite Labs is a large scale implementation of a Software-Defined Data Center (SDDC) – Based on VMware and Symantec technologies – 250,000 VMs deployed, 27,000 under management today with 3,800 users – 15-month implementation – Have saved 32,000 Symantec staff hours – While delivering better quality to end-users, in less time
  • 34. IT Pressures – a Constant Over the Decades “Are you getting the maximum efficiency out of your infrastructure?” “How quickly can IT respond to LOB requests?” • Legislative Compliance • Risk Reduction – SLAs & Business Continuity • Security – Corp Assets & IP
  • 35. Why a Cloud Lab in an SDDC? • Cost – Single shared pool of networking, storage, and compute resources. – Reduced administration – Reduced integration costs • Agility – Data Centers available in minutes instead of days or weeks. – Abstraction of hardware at all layers allows flexibility and reduced downtime. – Faster turn around when implementing new solutions – Reduce provisioning effort allowing employees to focus on their primary job - helping customers. – Removing the burden of managing labs from engineers and trainers. – Helps to break down barriers between departments and reduces silos • Governance – Secured within the Symantec Firewall / Private Enterprise Cloud – Complete oversight into the datacenter topologies allow for improved control.
  • 36. Cloud Based Labs: The ultimate challenge. • Legacy Labs
  • 37. Cloud Based Labs: The ultimate challenge. • Legacy Labs • Lab Complexity • Dynamic Workloads • “Hands On” / Self Service Required • Scale • Security / Protection • Multiple Geographies • Virtual on Virtual • Hybrid Physical and Virtual Provisioning • Cost
  • 38. What we Deployed • vCloud Suite – vCloud Director – vSphere – vCloud Networking & Security – vCenter Orchestrator • NetBackup • Endpoint Protection • IT Management Suite – Deployment Solution – Asset Management Suite – Service Desk • 7xxx Core Switching • UCS Blades • FAS6240 • FAS6280
  • 39. Demo
  • 40.
  • 41. Metrics / Lessons Learned • Cost – Single shared pool of networking, storage, and compute resources. • Explosive adoption, over 3,800 employees have used the solution since launch. Average over 2,000 active users every month. • Over 250,000 virtual machines deployed since launch. • Over 27,000 virtual machines under management • Unified library of over 700 lab topologies within our Software Defined Data Center – Reduced administration • While fewer admins are needed, they need to be cross functional and understand the latest virtualization trends. • Choosing the right vendors who understand cloud – Reduced integration costs • Cloud integration is complex, use as many integrated solutions as you can which are proven to work together. Symantec is seeing the savings in the ability to leverage integrations across the cloud.
  • 42. • Agility – Software Defined Data Centers available in minutes instead of weeks or months • Average Provisioning Time: 14 Minutes, completely changes the way employees work. – Abstraction of hardware at all layers allows flexibility and reduced downtime. • Multiple hardware transitions since inception, zero user impact. • Orchestration is a must – Faster turn around when implementing new solutions • Our entire cloud topology is actually stored in an SDDC vApp inside of the cloud, allowing for on the fly testing of new solutions even with the cloud itself. – Reduce provisioning effort allowing employees to refocus their actual jobs - helping customers. • Saved over 11,000 weeks of effort – Removing the burden of managing labs from engineers and trainers. • Transitioned to Cloud Operations – Helps to break down barriers between departments and reduces silos • Over 700 shared labs covering most Symantec product lines currently available • Support Services, Training, and Engineering are finally able to share… everything. Metrics / Lessons Learned
  • 43. • Governance – Secured within the Symantec Firewall / Private Enterprise Cloud – Complete oversight into the datacenter topologies allow for improved control. • Auditing of topologies to reduce human error. • Ensure proper security is in place prior to allowing deployment. Metrics / Lessons Learned
  • 44. Future • Unparalleled Cloud Integration with Symantec Products • Incorporate enhancements to virtual networking (VMware NSX) • Reference Architectures Visit the VMware and Symantec booths. Talk to us about how we can help your organization get to IT-as-a- Service, and a Software-Defined Data Center
  • 45. 45 Thoughts & Questions  Richard Sillito rsillito@westjet.com  Jason Puig Jason_puig@symantec.com  Taruna Gandhi gandhit@vmware.com
  • 46. 46 Other VMware Activities Related to This Session  HOL: HOL-SDC-1303 VMware NSX Network Virtualization Platform  Group Discussions: NET1001-GD vCloud Networking and Security & NSX for VMware Environments with Ray Budavari
  • 48.
  • 49. VMware NSX: A Customer’s Perspective Taruna Gandhi, VMware Jason Puig, Symantec Richard Sillito, WestJet NET5529 #NET5529