SlideShare a Scribd company logo
Francois Loiseau
Technical Director
@fluatovh
ROOM 5
01.00 PM
Timo Sugliani
Global Cloud Architect
@tsugliani
OVH Hosted Private Cloud
Platform Network use cases
with VMware NSX
OVH Hosted Private Cloud Platform
Network use cases with VMware NSX
In this workshop VMware will provide a quick reminder of the main contributions
of the NSX network virtualization platform: consistent network and security
management, increased application resiliency, rapid migration of workloads to
and from the cloud.
VMware and OVH will then move on to practical cases with implementation of
micro-segmentation, dynamic routing, automatic deployment of an application,
load balancing in the OVH Hosted Private Cloud. This workshop is aimed at a
technical audience
Agenda
Agenda
Ø VMware NSX Overview
Ø Advantages compared to other solutions (Comparison with PFSense appliances)
Ø Switching / Routing (Quick overview)
Ø Network Services (Firewalling, Distributed Firewalling, NAT, LB, VPN, DHCP, etc.)
Ø OVH Private Cloud Computing design & implementation
Ø How is VMware NSX-v & Networking implemented in OVH (vRack, Public routing, etc.)
Ø How to use it ?
Ø DEMOS ! (you can’t trust slides right ?)
Ø Dynamic Routing, Distributed Firewalling, Load Balancing
Ø Fully Automated Network topology
Ø Conclusion & Questions
VMware SDDC – The Most
Comprehensive & Integrated Stack
Software-Defined Data Center
Traditional
Applications
Cloud Native
ApplicationsAPP APP APPAPP APP APP
Compute Virtualization
vSphere
Software Defined Storage
Virtual SAN
Network Virtualization
NSX
Cloud Ops Analytics Chargeback Cloud Automation
vRealize Suite
Cloud Management
Build-Your-Own Converged
Infrastructure
Hyper-Converged
Infrastructure
To deliver a Software Defined Data
Center approach
Software
Hardware
Virtual
Machines
Virtual
Networks
Virtual
Storage
Compute
Capacity
Network
Capacity
Storage
Capacity
Applications
Location Independence
Data Center Virtualization
Pooled compute, network and storage capacity
Vendor independent, best price/performance
Simplified configuration & management
Automated Operational Model
Programmatically Create,
Snapshot,
Store,
Move,
Delete,
Restore
Data Center Networking Evolution to NSX
from a drone’s-eye view
DC Hardware
vSphere
Abstraction
Consolidation
Challenges
!
!
Manual config
No agility
No E-W security
Limited Scale
Bottleneck
NSX Manager
Controller Cluster
Network
Virtualization
Network & Security services
in hypervisor
Network
Virtualization
NSX Manager
Controller Cluster
Switching Routing Load
Balancing
VPN Connectivity
to Physical
Micro-
Segmentation
Cloud Consumption
• Self Service Portal
Data Plane
NSX
Edge
ESXi
Hypervisor Kernel Modules
Distributed Services
• High – Performance Data Plane
• Scale-out Distributed Forwarding Model
Management Plane
NSX Manager
• Single configuration portal
• REST API entry-point
Control Plane
NSX Controller
• Manages Logical networks
• Control-Plane Protocol
• Separation of Control and Data Plane
FirewallDistributed
Logical Router
Logical
Switch
LogicalNetworkPhysical
Network
…
…
NSX Components
13
OVH Private Cloud design & implementation
OVH Private Cloud design & implementation
OVH Private Cloud design & implementation
Edge GW
NSX
ControllersNSX
Manager
Internet
Customer private network
Customer admin network
OVH Private Cloud design & implementation
Construct Network Services in Virtual Layers
18
Provider Peripheral Network Infrastructure
SwitchingRouting Firewalling Load
Balancing
VPN
Decouple Network Services
Decouple Network Services
• Core infrastructure backbone is
agnostic of network demands at the
virtual data centers
• Flexibility of Operations
− Consumer serviced networks
− Defined Micro-segments for
various workloads
Consumer
End Customer Network Infrastructure
Virtual Data Center
VM VM VM
Private Network
(192.168.50.0/24)
VM VM VM
DMZ Network
(192.168.52.0/24)
Virtual Data Center
VM VM VM
Private Network
(192.168.50.0/24)
VM VM VM
DMZ Network
(192.168.52.0/24)
Virtual Data Center
VM VM VM
Private Network
(192.168.50.0/24)
VM VM VM
DMZ Network
(192.168.52.0/24)
Provider
Distributed networking services allow better
performance and modelling
19
NSX vSwitch and NSX Edge
20 |
22
§ NSX vSwitch (VDS)
§ VMkernel Modules
• VXLAN
• Distributed Routing
• Distributed Firewall
• Switch Security
• Message Bus
vSphere NSX Edge Services GWNSX Edge Logical Router
NSX Logical
Router Control VM
§ Control Functions only
§ Dynamic routing and
updates controller
§ Determines active ESXi
host for VXLAN to VLAN
layer 2 bridging
§ ECMP, Dynamic Routing
• BGP & OSPF
§ L3-L7 Services:
• NAT, DHCP, Load Balancer,
VPN, Firewall
§ VM form factor
§ High Availability
NSX vSwitch
ESXi
NSX Edge Services GWVDS
Hypervisor Kernel Modules
(vSphere VIBs)
FirewallLogical RouterVXLAN
NSX Logical Routing Component –
Edge Services Gateway
21
NSX Edge Services
Gateway
VPN
§ On/Off-Ramp connectivity between
logical and physical.
- Optimized for N-S Routing
Static, OSPF, BGP
- Network Services
NAT
Edge Firewall
Load Balancing
VPN (IPSec, L2, SSL VPN)
DHCP
DNS
- Internal, Uplink, Trunk Interfaces
Edge Services Gateway - Sizing
• VM form factor - 4 sizing options
• Edge form factor can be changed after initial
deployments via UI/API
NSX Edge Services
Gateway
Form
Factor
vCPU Memory (MB) Usage
X-Large 6 8192 L7 Load Balancing
*dedicated core affinity for
LB
Quad- Large 4 2048 High throughput ECMP or
High Performance Firewall
Large 2 1024 Small/Medium DC or multi-
tenant
Compact 1 512 Small Deployments, POCs
and single service use
VPN
PFSense vs NSX
Feature NSX PFSense
HA Edge HA 2 Pfsense CARP
NAT
DHCP
Firewall Portgroup Level
VPN point-to-site
VPN site-to-site
Load Balancing
CLI (local)
API Rest (FauxAPI)
VMware WebClient integrated
Firewall vNic level (DFW)
Security Groups
Data Security
SpoofGuard
OVH Private Cloud design & implementation
OVH Private Cloud design & implementation
vSphere Distributed Switch - admin
dvUplink-PG
vSphere Distributed Switch - vrack
dvUplink-PG
vSphere Distributed Switch - admin
dvUplink-PG
vSphere Distributed Switch - vrack
dvUplink-PG
OVH Private Cloud design & implementation
Management
OVH BB
VXLAN overlay
vSphere Distributed Switch - admin
dvUplink-PG
vSphere Distributed Switch - vrack
dvUplink-PG
OVH Private Cloud design & implementation
Management
OVH BB
VXLAN overlay
OVH DC – 1 – BHS
OVH DC – 2 – LIM
…
OVH DC – X – WW
4000 VLANs
vSphere Distributed Switch - admin
dvUplink-PG
vSphere Distributed Switch - vrack
dvUplink-PG
OVH Private Cloud design & implementation
Management
OVH Backbone
VXLAN overlay
OVH DC – 1 – BHS
OVH DC – 2 – LIM
…
VPN
VPN
OVH DC – X – WW
4000 VLANs
What is VXLAN ?
VDS and VXLAN
• VXLAN traffic uses a vmknic
which provides VXLAN Virtual
Tunnel End Point (VTEP)
functionality
• A single dvPortGroup per VDS is
created for all VTEPs
• A logical switch is a L2 broadcast
domain implemented using
VXLAN
– A dvPortGroup is created for each
logical switch
– Provides local switching & isolation
• VXLAN logical switches can
also span multiple VDSIP Fabric
Host A
vSphere
Distributed SwitchdvUplink-PG
Logical SW A
VM1
dvPG-VTEP
VXLAN
VTEP
IP Fabric
Host A Host B
vSphere Distributed Switch
Traffic Flow on a VXLAN Backed VDS
31
• In this setup, VM1 and VM2 are on different hosts but belong to the same logical
switch
• When these VMs communicate, a VXLAN overlay is established between the two
hosts
dvUplink-PG
Logical SW A
VM1
dvUplink-PG
dvPG-VTEP
VTEP
dvPG-VTEP
VTEP
VXLAN Overlay
Logical SW A
VM2
Host BHost A
vSphere Distributed Switch
Traffic Flow on a VXLAN Backed VDS
• Assume VM1 sends some traffic to VM2:
dvUplink-PG
Logical SW A
VM1
dvUplink-PG
dvPG-VTEP
VTEP
dvPG-VTEP
VTEP
Logical SW A
VM2L2 frame L2 frame
IP Fabric
VXLAN Overlay
IP/UDP/VXLANL2 frame
VM1 sends L2
frame to local
VTEP
1
VTEP adds VXLAN,
UDP & IP headers2
Physical Transport
Network forwards as
a regular IP packet
3
Destination
Hypervisor VTEP
de-encapsulates
frame
4
L2 frame
delivered to
VM2
5
VM to VM Routed Traffic Flow
NSX Logical Routing: Distributed, Feature-
Rich
33
§ Physical Infrastructure Scale Challenges –
Routing Scale
§ Multi-Tenant Routing Complexity
§ Traffic hair-pins
§ Distributed Routing in Hypervisor
§ Full featured – OSPF, BGP
§ Logical Router per Tenant
Challenges Benefits
L2
L2
Tenant A
Tenant B
L2
L2
L2
Tenant C
L2
L2
L2
CMP
NSX Logical Routing – Topology view
ESX Host A
LIF1 LIF2 LIF3
ESX Host B
LIF1 LIF2 LIF3
ESX Host C
LIF1 LIF2 LIF3
VM1
VM2
Peering
Peering
External
Network
NSX Edge VM
VXLAN 5001
VXLAN 5002
VXLAN 5003
VLAN based network
DLR instance DLR instance DLR instance DLR
VM2
External
VM1
Logical view
Physical view
DLR Control VM
Protocol and Forwarding Addresses
35
Controller
Cluster
Peering
DLR
NSX Mgr
Control VM
DataPath
Forwarding Address
172.16.99.3
172.16.99.2
Protocol Address
172.16.99.1
VLAN 20
Edge Uplink
Physical Routers
NSX ECMP Edges
VXLAN 5020
Transit Link
DLR Instance
Enterprise Routing Topology
36
…
…
E1 E2 E3 E8
DLR Control VMs
Routing peerings
Route updates via controller
Routing
peerings
VXLAN
VLAN
Web1 App1 DB1 WebN AppN DBN
External Network
VM VM VM VM VM VMVM VMVM VM VM VM
Multi Tenant Routing Topology
37
Tenant 9
DLR
Instance 9
Tenant 1
NSX Edge
VXLAN 5021
Transit Link
VXLAN 5029
Transit Link
…
§ Can be deployed by Enterprises, SPs and
hosting companies.
§ Up to 9 tenants (as 10vNICs on the Edge
VM)
§ No support for overlapping IP addresses
between Tenants connected to the same
NSX Edge.
ECMP
Routing peerings
Routing peering
Web1
App1 DB1 Web1 App1 DB1
External Network
DLR
Instance 1
VM VM VM VM VM
VM VM VM
VM VMVM VM
Multi Tenant Routing Topology
NSX Edge
VXLAN Trunk
§ Use of Trunk interface on the NSX Edge (in
addition to Internal and Uplink).
§ Allows up to 200 sub-interfaces on a single
vNIC and establish peering with a separate
DLR instance.
§ Routing protocols are supported over sub-
interfaces.
Routing
peerings
Tenant 1
Tenant
Tenan
Single vNIC
Web1
VM VM VM
App1
VM VM
DB1
VM
External Network
Web1 App1 DB1
VM VM VM VMVM VM
High Scale Multi Tenant Topology – 2-tier
Tenant 1
…
Tenant NSX Edge with
HA NAT/LB features
ECMP NSX Edge X-Large
(Route Aggregation Layer)
ECMP Tenant
NSX Edge
VXLAN Uplinks (or
VXLAN Trunk)
VXLAN Uplinks (or
VXLAN Trunk)
VXLAN 5100
Transit
…
E1 E8
Web1 App1 DB1
VM VM VM VMVM VM
DLR
Instance 9
Web1 App1 DB1
VM VM VM VMVM VM
External Network
Topologies Comparison
Topology Characteristics
Enterprise One DLR for all apps
DFW for VM to VM security
Typically no NAT
ECMP Edges
Multitenant Up to 9 tenants w/o trunk
Up to 200 tenants w/ trunk
DLR per tenant
No overlapping IP
High scale multitenant DLR and Edge per tenant
2-tier of Edges
Tenant IP scheme can overlap
Note: These topologies can be stretched across VC boundaries by using Cross-VC NSX.
Demo – Routing ESG & DLR with BGP
.222
178.33.19.206/28
NSX ESG
NSX DLR
.209
.1
CVM
.2 .3
172.16.99.0/24
VM Network
Internet
192.168.10.0/24
192.168.20.0/24
192.168.30.0/24
.x .x .x
LS-OVHDemo-Web
LS-OVHDemo-App
LS-OVHDemo-Db
Web App DB
LS-TransitNetwork
AS 65542
LS-OVHDemo-BGPSubnet 10.10.42.0/24
Demo – Routing ESG & DLR with BGP
Agenda
Demo – Distributed Firewall
.222
178.33.19.206/28
NSX ESG
NSX DLR
Demo-DFW-02
172.16.60.0/24
.209
.1
CVM
.2 .3
172.16.99.0/24
.11 .12
VM Network
LS-TransitNetwork
LS-OVHDemo-DFW
Internet
Demo-DFW-01
.1
Security Group
- Dynamic Membership
“VM Name”
Contains
“Demo-DFW-”
FW Rule
ICMP Echo/SSH
Allow/Reject/Block
Demo – Distributed Firewall
VIDEO RECORDING
Demo – Load Balancing
.222
178.33.19.206/28
NSX ESG
NSX DLR
Demo-LB-02
172.16.50.0/24
.209
.1
CVM
.2 .3
172.16.99.0/24
.11 .12
VM Network
LS-TransitNetwork
LS-OVHDemo-LB
Internet
Demo-LB-01
.1
LB
1 virtual server
1 Pool with 2 nodes (Demo-LB-01,02)
Both Demo VMs have docker running
with a sample nginx demo application
Demo – Load Balacing
Demo – Load Balancing
Demo - Fully Automated Network
Topology
Legacy Networking
NSX Overlay Networking
Web Frontend
172.16.250.0/24
10.0.1.0/24
vSphereDSwitch-NSXVMNetwork
Internet/WAN*
Edge Gateway
Services
10.0.2.0/24
10.0.3.0/24
Distributed
Logical Router
OSPF
Dynamic Routing
Control VM
10.0.3.1110.0.2.1110.0.1.11
Internal LIFs
10.0.1.1
10.0.2.1
10.0.3.1
172.16.250.2
172.16.250.1
172.16.250.3
178.33.19.222
Control Data
Network
Data
Optimized East/West
Traffic within the
scope of the NSX
Transport Zone
178.33.19.206/28
178.33.19.216
App Server DB Server
Demo - Fully Automated Network
Topology
VIDEO RECORDING
Agenda

More Related Content

What's hot

VXLAN Integration with CloudStack Advanced Zone
VXLAN Integration with CloudStack Advanced ZoneVXLAN Integration with CloudStack Advanced Zone
VXLAN Integration with CloudStack Advanced Zone
Yoshikazu Nojima
 
Nutanix
NutanixNutanix
Nutanix
rosslili
 
VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020
VMware Tanzu
 
VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1
Sanjeev Kumar
 
OpenStack hands-on (All-in-One)
OpenStack hands-on (All-in-One)OpenStack hands-on (All-in-One)
OpenStack hands-on (All-in-One)
JeSam Kim
 
VMware Tanzu Introduction
VMware Tanzu IntroductionVMware Tanzu Introduction
VMware Tanzu Introduction
VMware Tanzu
 
VSAN – Architettura e Design
VSAN – Architettura e DesignVSAN – Architettura e Design
VSAN – Architettura e Design
VMUG IT
 
Webinar "Introduction to OpenStack"
Webinar "Introduction to OpenStack"Webinar "Introduction to OpenStack"
Webinar "Introduction to OpenStack"
CREATE-NET
 
OpenStack networking (Neutron)
OpenStack networking (Neutron) OpenStack networking (Neutron)
OpenStack networking (Neutron)
CREATE-NET
 
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
SAMeh Zaghloul
 
Core Concept: Software Defined Everything
Core Concept: Software Defined EverythingCore Concept: Software Defined Everything
Core Concept: Software Defined Everything
Thanakrit Lersmethasakul
 
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
Konveyor Community
 
NSX for vSphere Logical Routing Deep Dive
NSX for vSphere Logical Routing Deep DiveNSX for vSphere Logical Routing Deep Dive
NSX for vSphere Logical Routing Deep Dive
Pooja Patel
 
NFV and OpenStack
NFV and OpenStackNFV and OpenStack
NFV and OpenStack
Marie-Paule Odini
 
vSphere7 with Tanzu
vSphere7 with Tanzu vSphere7 with Tanzu
vSphere7 with Tanzu
VMware Tanzu
 
VMware
VMwareVMware
VMware
InstituteIBA
 
Aci presentation
Aci presentationAci presentation
Aci presentation
Joe Ryan
 
Using the Terraform Enterprise GUI is perfect to start working with Terraform...
Using the Terraform Enterprise GUI is perfect to start working with Terraform...Using the Terraform Enterprise GUI is perfect to start working with Terraform...
Using the Terraform Enterprise GUI is perfect to start working with Terraform...
Mitchell Pronschinske
 
Red Hat Openshift Fundamentals.pptx
Red Hat Openshift Fundamentals.pptxRed Hat Openshift Fundamentals.pptx
Red Hat Openshift Fundamentals.pptx
ssuser18b1c6
 

What's hot (20)

The kvm virtualization way
The kvm virtualization wayThe kvm virtualization way
The kvm virtualization way
 
VXLAN Integration with CloudStack Advanced Zone
VXLAN Integration with CloudStack Advanced ZoneVXLAN Integration with CloudStack Advanced Zone
VXLAN Integration with CloudStack Advanced Zone
 
Nutanix
NutanixNutanix
Nutanix
 
VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020VMware Tanzu Introduction- June 11, 2020
VMware Tanzu Introduction- June 11, 2020
 
VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1VMware vSphere 6.0 - Troubleshooting Training - Day 1
VMware vSphere 6.0 - Troubleshooting Training - Day 1
 
OpenStack hands-on (All-in-One)
OpenStack hands-on (All-in-One)OpenStack hands-on (All-in-One)
OpenStack hands-on (All-in-One)
 
VMware Tanzu Introduction
VMware Tanzu IntroductionVMware Tanzu Introduction
VMware Tanzu Introduction
 
VSAN – Architettura e Design
VSAN – Architettura e DesignVSAN – Architettura e Design
VSAN – Architettura e Design
 
Webinar "Introduction to OpenStack"
Webinar "Introduction to OpenStack"Webinar "Introduction to OpenStack"
Webinar "Introduction to OpenStack"
 
OpenStack networking (Neutron)
OpenStack networking (Neutron) OpenStack networking (Neutron)
OpenStack networking (Neutron)
 
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
SDN 101: Software Defined Networking Course - Sameh Zaghloul/IBM - 2014
 
Core Concept: Software Defined Everything
Core Concept: Software Defined EverythingCore Concept: Software Defined Everything
Core Concept: Software Defined Everything
 
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
Mass Migrate Virtual Machines to Kubevirt with Tool Forklift 2.0
 
NSX for vSphere Logical Routing Deep Dive
NSX for vSphere Logical Routing Deep DiveNSX for vSphere Logical Routing Deep Dive
NSX for vSphere Logical Routing Deep Dive
 
NFV and OpenStack
NFV and OpenStackNFV and OpenStack
NFV and OpenStack
 
vSphere7 with Tanzu
vSphere7 with Tanzu vSphere7 with Tanzu
vSphere7 with Tanzu
 
VMware
VMwareVMware
VMware
 
Aci presentation
Aci presentationAci presentation
Aci presentation
 
Using the Terraform Enterprise GUI is perfect to start working with Terraform...
Using the Terraform Enterprise GUI is perfect to start working with Terraform...Using the Terraform Enterprise GUI is perfect to start working with Terraform...
Using the Terraform Enterprise GUI is perfect to start working with Terraform...
 
Red Hat Openshift Fundamentals.pptx
Red Hat Openshift Fundamentals.pptxRed Hat Openshift Fundamentals.pptx
Red Hat Openshift Fundamentals.pptx
 

Similar to OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX

VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
VMworld
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
VMworld
 
VMUGbe 21 Filip Verloy
VMUGbe 21 Filip VerloyVMUGbe 21 Filip Verloy
VMUGbe 21 Filip Verloy
Filip Verloy
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
VMUG IT
 
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
VMworld
 
VMware nsx network virtualization tool
VMware nsx network virtualization toolVMware nsx network virtualization tool
VMware nsx network virtualization tool
Daljeet Singh Randhawa
 
VMworld 2013: An Introduction to Network Virtualization
VMworld 2013: An Introduction to Network Virtualization VMworld 2013: An Introduction to Network Virtualization
VMworld 2013: An Introduction to Network Virtualization
VMworld
 
VMworld 2013: Deploying VMware NSX Network Virtualization
VMworld 2013: Deploying VMware NSX Network Virtualization VMworld 2013: Deploying VMware NSX Network Virtualization
VMworld 2013: Deploying VMware NSX Network Virtualization
VMworld
 
Reference design for v mware nsx
Reference design for v mware nsxReference design for v mware nsx
Reference design for v mware nsx
solarisyougood
 
VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture
VMworld
 
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
VMworld
 
[OpenStack 스터디] OpenStack With Contrail
[OpenStack 스터디] OpenStack With Contrail[OpenStack 스터디] OpenStack With Contrail
[OpenStack 스터디] OpenStack With Contrail
OpenStack Korea Community
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
OpenStack Korea Community
 
Contrail Enabler for agile cloud services
Contrail Enabler for agile cloud servicesContrail Enabler for agile cloud services
Contrail Enabler for agile cloud services
Juniper Networks (日本)
 
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
PROIDEA
 
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld
 
Net1674 final emea
Net1674 final emeaNet1674 final emea
Net1674 final emeaVMworld
 
VMware NSX and Arista L2 Hardware VTEP Gateway Integration
VMware NSX and Arista L2 Hardware VTEP Gateway IntegrationVMware NSX and Arista L2 Hardware VTEP Gateway Integration
VMware NSX and Arista L2 Hardware VTEP Gateway Integration
Bayu Wibowo
 
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
Jim St. Leger
 
GAMO VMware vCloud Air
GAMO VMware vCloud AirGAMO VMware vCloud Air
GAMO VMware vCloud Air
GAMO a.s.
 

Similar to OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX (20)

VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
VMUGbe 21 Filip Verloy
VMUGbe 21 Filip VerloyVMUGbe 21 Filip Verloy
VMUGbe 21 Filip Verloy
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
 
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
VMworld 2013: Bringing Network Virtualization to VMware Environments with NSX
 
VMware nsx network virtualization tool
VMware nsx network virtualization toolVMware nsx network virtualization tool
VMware nsx network virtualization tool
 
VMworld 2013: An Introduction to Network Virtualization
VMworld 2013: An Introduction to Network Virtualization VMworld 2013: An Introduction to Network Virtualization
VMworld 2013: An Introduction to Network Virtualization
 
VMworld 2013: Deploying VMware NSX Network Virtualization
VMworld 2013: Deploying VMware NSX Network Virtualization VMworld 2013: Deploying VMware NSX Network Virtualization
VMworld 2013: Deploying VMware NSX Network Virtualization
 
Reference design for v mware nsx
Reference design for v mware nsxReference design for v mware nsx
Reference design for v mware nsx
 
VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture
 
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
VMworld 2014: Advanced Topics & Future Directions in Network Virtualization w...
 
[OpenStack 스터디] OpenStack With Contrail
[OpenStack 스터디] OpenStack With Contrail[OpenStack 스터디] OpenStack With Contrail
[OpenStack 스터디] OpenStack With Contrail
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
Contrail Enabler for agile cloud services
Contrail Enabler for agile cloud servicesContrail Enabler for agile cloud services
Contrail Enabler for agile cloud services
 
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
PLNOG16: VXLAN Gateway, efektywny sposób połączenia świata wirtualnego z fizy...
 
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
 
Net1674 final emea
Net1674 final emeaNet1674 final emea
Net1674 final emea
 
VMware NSX and Arista L2 Hardware VTEP Gateway Integration
VMware NSX and Arista L2 Hardware VTEP Gateway IntegrationVMware NSX and Arista L2 Hardware VTEP Gateway Integration
VMware NSX and Arista L2 Hardware VTEP Gateway Integration
 
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
DPDK Summit - 08 Sept 2014 - Futurewei - Jun Xu - Revisit the IP Stack in Lin...
 
GAMO VMware vCloud Air
GAMO VMware vCloud AirGAMO VMware vCloud Air
GAMO VMware vCloud Air
 

More from OVHcloud

OVHcloud Startup Program : Découvrir l'écosystème au service des startups
OVHcloud Startup Program : Découvrir l'écosystème au service des startups OVHcloud Startup Program : Découvrir l'écosystème au service des startups
OVHcloud Startup Program : Découvrir l'écosystème au service des startups
OVHcloud
 
Fine tune and deploy Hugging Face NLP models
Fine tune and deploy Hugging Face NLP modelsFine tune and deploy Hugging Face NLP models
Fine tune and deploy Hugging Face NLP models
OVHcloud
 
How can you successfully migrate to hosted private cloud 2020
How can you successfully migrate to hosted private cloud 2020How can you successfully migrate to hosted private cloud 2020
How can you successfully migrate to hosted private cloud 2020
OVHcloud
 
OVHcloud Partner Webinar - Data Processing
OVHcloud Partner Webinar - Data ProcessingOVHcloud Partner Webinar - Data Processing
OVHcloud Partner Webinar - Data Processing
OVHcloud
 
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
OVHcloud
 
Webinar - VPS New Range
Webinar - VPS New RangeWebinar - VPS New Range
Webinar - VPS New Range
OVHcloud
 
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
OVHcloud
 
Webinar - Enterprise Cloud Databases
Webinar - Enterprise Cloud DatabasesWebinar - Enterprise Cloud Databases
Webinar - Enterprise Cloud Databases
OVHcloud
 
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
OVHcloud
 
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
OVHcloud
 
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
OVHcloud
 
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilitéOVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
OVHcloud
 
OVHcloud TechTalks - ML serving
OVHcloud TechTalks - ML servingOVHcloud TechTalks - ML serving
OVHcloud TechTalks - ML serving
OVHcloud
 
Logs @ OVHcloud
Logs @ OVHcloudLogs @ OVHcloud
Logs @ OVHcloud
OVHcloud
 
Les APIs OpenStack
Les APIs OpenStackLes APIs OpenStack
Les APIs OpenStack
OVHcloud
 
1 sysadmin vs 250 clusters de stockage
1 sysadmin vs 250 clusters de stockage1 sysadmin vs 250 clusters de stockage
1 sysadmin vs 250 clusters de stockage
OVHcloud
 
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
OVHcloud
 
Industrialize Machine Learning
Industrialize Machine Learning Industrialize Machine Learning
Industrialize Machine Learning
OVHcloud
 
OVHcloud – Enterprise Cloud Databases
OVHcloud – Enterprise Cloud DatabasesOVHcloud – Enterprise Cloud Databases
OVHcloud – Enterprise Cloud Databases
OVHcloud
 
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
OVHcloud
 

More from OVHcloud (20)

OVHcloud Startup Program : Découvrir l'écosystème au service des startups
OVHcloud Startup Program : Découvrir l'écosystème au service des startups OVHcloud Startup Program : Découvrir l'écosystème au service des startups
OVHcloud Startup Program : Découvrir l'écosystème au service des startups
 
Fine tune and deploy Hugging Face NLP models
Fine tune and deploy Hugging Face NLP modelsFine tune and deploy Hugging Face NLP models
Fine tune and deploy Hugging Face NLP models
 
How can you successfully migrate to hosted private cloud 2020
How can you successfully migrate to hosted private cloud 2020How can you successfully migrate to hosted private cloud 2020
How can you successfully migrate to hosted private cloud 2020
 
OVHcloud Partner Webinar - Data Processing
OVHcloud Partner Webinar - Data ProcessingOVHcloud Partner Webinar - Data Processing
OVHcloud Partner Webinar - Data Processing
 
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
OVHcloud Tech Talks S01E09 - OVHcloud Data Processing : Le nouveau service po...
 
Webinar - VPS New Range
Webinar - VPS New RangeWebinar - VPS New Range
Webinar - VPS New Range
 
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
OVHcloud Tech Talks S01E08 - GAIA-X pour les techs : OVHcloud & Scaleway vous...
 
Webinar - Enterprise Cloud Databases
Webinar - Enterprise Cloud DatabasesWebinar - Enterprise Cloud Databases
Webinar - Enterprise Cloud Databases
 
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
OVHcloud Tech Talks S01E07 – Introduction à l’intelligence artificielle pour ...
 
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
OVHcloud Tech Talks Fr S01E06 – BeeGFS, un filesystem orienté performance, ma...
 
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
OVHcloud Tech Talks Fr S01E05 – L’opérateur Harbor, une nécessité pour certai...
 
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilitéOVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
OVHcloud Tech-Talk S01E04 - La télémétrie au service de l'agilité
 
OVHcloud TechTalks - ML serving
OVHcloud TechTalks - ML servingOVHcloud TechTalks - ML serving
OVHcloud TechTalks - ML serving
 
Logs @ OVHcloud
Logs @ OVHcloudLogs @ OVHcloud
Logs @ OVHcloud
 
Les APIs OpenStack
Les APIs OpenStackLes APIs OpenStack
Les APIs OpenStack
 
1 sysadmin vs 250 clusters de stockage
1 sysadmin vs 250 clusters de stockage1 sysadmin vs 250 clusters de stockage
1 sysadmin vs 250 clusters de stockage
 
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
Migrer 3 millions de sites sans maitriser leur code source ? Impossible mais ...
 
Industrialize Machine Learning
Industrialize Machine Learning Industrialize Machine Learning
Industrialize Machine Learning
 
OVHcloud – Enterprise Cloud Databases
OVHcloud – Enterprise Cloud DatabasesOVHcloud – Enterprise Cloud Databases
OVHcloud – Enterprise Cloud Databases
 
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
Pilotage et gestion proactive de vos machines virtuelles dans le Hosted Priva...
 

Recently uploaded

When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...
Elena Simperl
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Aggregage
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
Product School
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdfSAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
Peter Spielvogel
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
Laura Byrne
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
KatiaHIMEUR1
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
DianaGray10
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
Cheryl Hung
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
nkrafacyberclub
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
BookNet Canada
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Ramesh Iyer
 
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
Sri Ambati
 
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Product School
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
Jemma Hussein Allen
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
James Anderson
 
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdfFIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
FIDO Alliance
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
Prayukth K V
 
Quantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIsQuantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIs
Vlad Stirbu
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
DianaGray10
 

Recently uploaded (20)

When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdfSAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
 
Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !Securing your Kubernetes cluster_ a step-by-step guide to success !
Securing your Kubernetes cluster_ a step-by-step guide to success !
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
 
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptxSecstrike : Reverse Engineering & Pwnable tools for CTF.pptx
Secstrike : Reverse Engineering & Pwnable tools for CTF.pptx
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
 
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
 
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
 
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdfFIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
FIDO Alliance Osaka Seminar: Passkeys and the Road Ahead.pdf
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
 
Quantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIsQuantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIs
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
 

OVHcloud Hosted Private Cloud Platform Network use cases with VMware NSX

  • 1. Francois Loiseau Technical Director @fluatovh ROOM 5 01.00 PM Timo Sugliani Global Cloud Architect @tsugliani OVH Hosted Private Cloud Platform Network use cases with VMware NSX
  • 2. OVH Hosted Private Cloud Platform Network use cases with VMware NSX In this workshop VMware will provide a quick reminder of the main contributions of the NSX network virtualization platform: consistent network and security management, increased application resiliency, rapid migration of workloads to and from the cloud. VMware and OVH will then move on to practical cases with implementation of micro-segmentation, dynamic routing, automatic deployment of an application, load balancing in the OVH Hosted Private Cloud. This workshop is aimed at a technical audience Agenda
  • 3. Agenda Ø VMware NSX Overview Ø Advantages compared to other solutions (Comparison with PFSense appliances) Ø Switching / Routing (Quick overview) Ø Network Services (Firewalling, Distributed Firewalling, NAT, LB, VPN, DHCP, etc.) Ø OVH Private Cloud Computing design & implementation Ø How is VMware NSX-v & Networking implemented in OVH (vRack, Public routing, etc.) Ø How to use it ? Ø DEMOS ! (you can’t trust slides right ?) Ø Dynamic Routing, Distributed Firewalling, Load Balancing Ø Fully Automated Network topology Ø Conclusion & Questions
  • 4. VMware SDDC – The Most Comprehensive & Integrated Stack Software-Defined Data Center Traditional Applications Cloud Native ApplicationsAPP APP APPAPP APP APP Compute Virtualization vSphere Software Defined Storage Virtual SAN Network Virtualization NSX Cloud Ops Analytics Chargeback Cloud Automation vRealize Suite Cloud Management Build-Your-Own Converged Infrastructure Hyper-Converged Infrastructure
  • 5. To deliver a Software Defined Data Center approach Software Hardware Virtual Machines Virtual Networks Virtual Storage Compute Capacity Network Capacity Storage Capacity Applications Location Independence Data Center Virtualization Pooled compute, network and storage capacity Vendor independent, best price/performance Simplified configuration & management Automated Operational Model Programmatically Create, Snapshot, Store, Move, Delete, Restore
  • 6. Data Center Networking Evolution to NSX from a drone’s-eye view
  • 10. Challenges ! ! Manual config No agility No E-W security Limited Scale Bottleneck
  • 12. Network Virtualization NSX Manager Controller Cluster Switching Routing Load Balancing VPN Connectivity to Physical Micro- Segmentation
  • 13. Cloud Consumption • Self Service Portal Data Plane NSX Edge ESXi Hypervisor Kernel Modules Distributed Services • High – Performance Data Plane • Scale-out Distributed Forwarding Model Management Plane NSX Manager • Single configuration portal • REST API entry-point Control Plane NSX Controller • Manages Logical networks • Control-Plane Protocol • Separation of Control and Data Plane FirewallDistributed Logical Router Logical Switch LogicalNetworkPhysical Network … … NSX Components 13
  • 14. OVH Private Cloud design & implementation
  • 15. OVH Private Cloud design & implementation
  • 16. OVH Private Cloud design & implementation
  • 17. Edge GW NSX ControllersNSX Manager Internet Customer private network Customer admin network OVH Private Cloud design & implementation
  • 18. Construct Network Services in Virtual Layers 18 Provider Peripheral Network Infrastructure SwitchingRouting Firewalling Load Balancing VPN Decouple Network Services Decouple Network Services • Core infrastructure backbone is agnostic of network demands at the virtual data centers • Flexibility of Operations − Consumer serviced networks − Defined Micro-segments for various workloads Consumer End Customer Network Infrastructure Virtual Data Center VM VM VM Private Network (192.168.50.0/24) VM VM VM DMZ Network (192.168.52.0/24) Virtual Data Center VM VM VM Private Network (192.168.50.0/24) VM VM VM DMZ Network (192.168.52.0/24) Virtual Data Center VM VM VM Private Network (192.168.50.0/24) VM VM VM DMZ Network (192.168.52.0/24) Provider
  • 19. Distributed networking services allow better performance and modelling 19
  • 20. NSX vSwitch and NSX Edge 20 | 22 § NSX vSwitch (VDS) § VMkernel Modules • VXLAN • Distributed Routing • Distributed Firewall • Switch Security • Message Bus vSphere NSX Edge Services GWNSX Edge Logical Router NSX Logical Router Control VM § Control Functions only § Dynamic routing and updates controller § Determines active ESXi host for VXLAN to VLAN layer 2 bridging § ECMP, Dynamic Routing • BGP & OSPF § L3-L7 Services: • NAT, DHCP, Load Balancer, VPN, Firewall § VM form factor § High Availability NSX vSwitch ESXi NSX Edge Services GWVDS Hypervisor Kernel Modules (vSphere VIBs) FirewallLogical RouterVXLAN
  • 21. NSX Logical Routing Component – Edge Services Gateway 21 NSX Edge Services Gateway VPN § On/Off-Ramp connectivity between logical and physical. - Optimized for N-S Routing Static, OSPF, BGP - Network Services NAT Edge Firewall Load Balancing VPN (IPSec, L2, SSL VPN) DHCP DNS - Internal, Uplink, Trunk Interfaces
  • 22. Edge Services Gateway - Sizing • VM form factor - 4 sizing options • Edge form factor can be changed after initial deployments via UI/API NSX Edge Services Gateway Form Factor vCPU Memory (MB) Usage X-Large 6 8192 L7 Load Balancing *dedicated core affinity for LB Quad- Large 4 2048 High throughput ECMP or High Performance Firewall Large 2 1024 Small/Medium DC or multi- tenant Compact 1 512 Small Deployments, POCs and single service use VPN
  • 23. PFSense vs NSX Feature NSX PFSense HA Edge HA 2 Pfsense CARP NAT DHCP Firewall Portgroup Level VPN point-to-site VPN site-to-site Load Balancing CLI (local) API Rest (FauxAPI) VMware WebClient integrated Firewall vNic level (DFW) Security Groups Data Security SpoofGuard
  • 24. OVH Private Cloud design & implementation
  • 25. OVH Private Cloud design & implementation vSphere Distributed Switch - admin dvUplink-PG vSphere Distributed Switch - vrack dvUplink-PG
  • 26. vSphere Distributed Switch - admin dvUplink-PG vSphere Distributed Switch - vrack dvUplink-PG OVH Private Cloud design & implementation Management OVH BB VXLAN overlay
  • 27. vSphere Distributed Switch - admin dvUplink-PG vSphere Distributed Switch - vrack dvUplink-PG OVH Private Cloud design & implementation Management OVH BB VXLAN overlay OVH DC – 1 – BHS OVH DC – 2 – LIM … OVH DC – X – WW 4000 VLANs
  • 28. vSphere Distributed Switch - admin dvUplink-PG vSphere Distributed Switch - vrack dvUplink-PG OVH Private Cloud design & implementation Management OVH Backbone VXLAN overlay OVH DC – 1 – BHS OVH DC – 2 – LIM … VPN VPN OVH DC – X – WW 4000 VLANs
  • 30. VDS and VXLAN • VXLAN traffic uses a vmknic which provides VXLAN Virtual Tunnel End Point (VTEP) functionality • A single dvPortGroup per VDS is created for all VTEPs • A logical switch is a L2 broadcast domain implemented using VXLAN – A dvPortGroup is created for each logical switch – Provides local switching & isolation • VXLAN logical switches can also span multiple VDSIP Fabric Host A vSphere Distributed SwitchdvUplink-PG Logical SW A VM1 dvPG-VTEP VXLAN VTEP
  • 31. IP Fabric Host A Host B vSphere Distributed Switch Traffic Flow on a VXLAN Backed VDS 31 • In this setup, VM1 and VM2 are on different hosts but belong to the same logical switch • When these VMs communicate, a VXLAN overlay is established between the two hosts dvUplink-PG Logical SW A VM1 dvUplink-PG dvPG-VTEP VTEP dvPG-VTEP VTEP VXLAN Overlay Logical SW A VM2
  • 32. Host BHost A vSphere Distributed Switch Traffic Flow on a VXLAN Backed VDS • Assume VM1 sends some traffic to VM2: dvUplink-PG Logical SW A VM1 dvUplink-PG dvPG-VTEP VTEP dvPG-VTEP VTEP Logical SW A VM2L2 frame L2 frame IP Fabric VXLAN Overlay IP/UDP/VXLANL2 frame VM1 sends L2 frame to local VTEP 1 VTEP adds VXLAN, UDP & IP headers2 Physical Transport Network forwards as a regular IP packet 3 Destination Hypervisor VTEP de-encapsulates frame 4 L2 frame delivered to VM2 5
  • 33. VM to VM Routed Traffic Flow NSX Logical Routing: Distributed, Feature- Rich 33 § Physical Infrastructure Scale Challenges – Routing Scale § Multi-Tenant Routing Complexity § Traffic hair-pins § Distributed Routing in Hypervisor § Full featured – OSPF, BGP § Logical Router per Tenant Challenges Benefits L2 L2 Tenant A Tenant B L2 L2 L2 Tenant C L2 L2 L2 CMP
  • 34. NSX Logical Routing – Topology view ESX Host A LIF1 LIF2 LIF3 ESX Host B LIF1 LIF2 LIF3 ESX Host C LIF1 LIF2 LIF3 VM1 VM2 Peering Peering External Network NSX Edge VM VXLAN 5001 VXLAN 5002 VXLAN 5003 VLAN based network DLR instance DLR instance DLR instance DLR VM2 External VM1 Logical view Physical view DLR Control VM
  • 35. Protocol and Forwarding Addresses 35 Controller Cluster Peering DLR NSX Mgr Control VM DataPath Forwarding Address 172.16.99.3 172.16.99.2 Protocol Address 172.16.99.1
  • 36. VLAN 20 Edge Uplink Physical Routers NSX ECMP Edges VXLAN 5020 Transit Link DLR Instance Enterprise Routing Topology 36 … … E1 E2 E3 E8 DLR Control VMs Routing peerings Route updates via controller Routing peerings VXLAN VLAN Web1 App1 DB1 WebN AppN DBN External Network VM VM VM VM VM VMVM VMVM VM VM VM
  • 37. Multi Tenant Routing Topology 37 Tenant 9 DLR Instance 9 Tenant 1 NSX Edge VXLAN 5021 Transit Link VXLAN 5029 Transit Link … § Can be deployed by Enterprises, SPs and hosting companies. § Up to 9 tenants (as 10vNICs on the Edge VM) § No support for overlapping IP addresses between Tenants connected to the same NSX Edge. ECMP Routing peerings Routing peering Web1 App1 DB1 Web1 App1 DB1 External Network DLR Instance 1 VM VM VM VM VM VM VM VM VM VMVM VM
  • 38. Multi Tenant Routing Topology NSX Edge VXLAN Trunk § Use of Trunk interface on the NSX Edge (in addition to Internal and Uplink). § Allows up to 200 sub-interfaces on a single vNIC and establish peering with a separate DLR instance. § Routing protocols are supported over sub- interfaces. Routing peerings Tenant 1 Tenant Tenan Single vNIC Web1 VM VM VM App1 VM VM DB1 VM External Network Web1 App1 DB1 VM VM VM VMVM VM
  • 39. High Scale Multi Tenant Topology – 2-tier Tenant 1 … Tenant NSX Edge with HA NAT/LB features ECMP NSX Edge X-Large (Route Aggregation Layer) ECMP Tenant NSX Edge VXLAN Uplinks (or VXLAN Trunk) VXLAN Uplinks (or VXLAN Trunk) VXLAN 5100 Transit … E1 E8 Web1 App1 DB1 VM VM VM VMVM VM DLR Instance 9 Web1 App1 DB1 VM VM VM VMVM VM External Network
  • 40. Topologies Comparison Topology Characteristics Enterprise One DLR for all apps DFW for VM to VM security Typically no NAT ECMP Edges Multitenant Up to 9 tenants w/o trunk Up to 200 tenants w/ trunk DLR per tenant No overlapping IP High scale multitenant DLR and Edge per tenant 2-tier of Edges Tenant IP scheme can overlap Note: These topologies can be stretched across VC boundaries by using Cross-VC NSX.
  • 41. Demo – Routing ESG & DLR with BGP .222 178.33.19.206/28 NSX ESG NSX DLR .209 .1 CVM .2 .3 172.16.99.0/24 VM Network Internet 192.168.10.0/24 192.168.20.0/24 192.168.30.0/24 .x .x .x LS-OVHDemo-Web LS-OVHDemo-App LS-OVHDemo-Db Web App DB LS-TransitNetwork AS 65542 LS-OVHDemo-BGPSubnet 10.10.42.0/24
  • 42. Demo – Routing ESG & DLR with BGP Agenda
  • 43. Demo – Distributed Firewall .222 178.33.19.206/28 NSX ESG NSX DLR Demo-DFW-02 172.16.60.0/24 .209 .1 CVM .2 .3 172.16.99.0/24 .11 .12 VM Network LS-TransitNetwork LS-OVHDemo-DFW Internet Demo-DFW-01 .1 Security Group - Dynamic Membership “VM Name” Contains “Demo-DFW-” FW Rule ICMP Echo/SSH Allow/Reject/Block
  • 44. Demo – Distributed Firewall VIDEO RECORDING
  • 45. Demo – Load Balancing .222 178.33.19.206/28 NSX ESG NSX DLR Demo-LB-02 172.16.50.0/24 .209 .1 CVM .2 .3 172.16.99.0/24 .11 .12 VM Network LS-TransitNetwork LS-OVHDemo-LB Internet Demo-LB-01 .1 LB 1 virtual server 1 Pool with 2 nodes (Demo-LB-01,02) Both Demo VMs have docker running with a sample nginx demo application
  • 46. Demo – Load Balacing
  • 47. Demo – Load Balancing
  • 48. Demo - Fully Automated Network Topology Legacy Networking NSX Overlay Networking Web Frontend 172.16.250.0/24 10.0.1.0/24 vSphereDSwitch-NSXVMNetwork Internet/WAN* Edge Gateway Services 10.0.2.0/24 10.0.3.0/24 Distributed Logical Router OSPF Dynamic Routing Control VM 10.0.3.1110.0.2.1110.0.1.11 Internal LIFs 10.0.1.1 10.0.2.1 10.0.3.1 172.16.250.2 172.16.250.1 172.16.250.3 178.33.19.222 Control Data Network Data Optimized East/West Traffic within the scope of the NSX Transport Zone 178.33.19.206/28 178.33.19.216 App Server DB Server
  • 49. Demo - Fully Automated Network Topology VIDEO RECORDING Agenda