SlideShare a Scribd company logo
1 of 39
Self-service IT with vRealize Automation and NSX
NET4291
Ray Budavari
VMware
Student Guide & Internal & Confidential Update Daily
https://goo.gl/VVmVZ0
vRealizeAir –NEW Cloud Management SaaS Offerings http://ouo.io/6TMPF
How to Help Customers Install, Deploy and Migrate to the
vRealizeOperations Manager 6.0 (formerly vCOps) http://ouo.io/1pL8wo
Showing Costs Back in the Virtualized Environment vRealize Business
Standard Proof of Concept (formerly ITBM) http://ouo.io/30TzE
vRealizeCloud Management Portfolio Overview and Glimpse into the
Future http://ouo.io/OpLGQB
vRealizeSuite: VMware’s vRealizeCloud Management Platform http://ouo.io/t5n5MO
vRealizeAutomation (formerly vCAC) and NSX: Automating Networking &
Security Infrastructure http://ouo.io/CyCXv
Journey of the Deal: Best Practices from a VMware Cloud Management
Partner http://ouo.io/vBVQdO
The Practical Path to NSX and Network Virtualization http://ouo.io/47hme
Why an SSDC Approach with NSX is Better for Your Channel Business http://ouo.io/1hY4l
Agenda
CONFIDENTIAL 2
1 NSX and vRealize Automation
2 NSX & vRA 6.2 Updates
3 Deployment Considerations
4 Demonstration
5 Q&A
Why NSX?
Support for Detailed, Programmable Application Topologies
Security PoliciesSecurity Groups
Logical Switching, Routing, Firewall, Load Balancing
Web
App
Database
Web
“Standard Web”
Firewall – allow inbound
HTTP/S, allow outboundANY
IPS – prevent DOS attacks,
enforce acceptable use
“Standard App”
 Firewall – allow inbound TCP
8443, allow outbound SQL
Database
“Standard Database”
 Firewall – allow inbound SQL
 Vulnerability Management –
Weekly Scan
App
VM VM
VM VM
VM
VM
“Default”
Firewall – Access shared
services (DNS, AD)
 Anti-Virus – Scan Daily
Default
Logical Switch
Logical Router
NSX
Logical Firewall
Logical Load
Balancer
NSX with vRealize Automation
Dynamic Configuration and Deployment of NSX Logical Services
On Demand Application Delivery
vRealize Automation
Service Catalog
Resource
Reservation
Multi-Machine
Blueprint
Cloud Management
Platform
Network Profiles
Security Policies
Security Groups
Web
App
Database
VM VM
VM VM VM
VM
NSX Use Case – Self Service IT
Multi-
Machine
Blueprints
Cloud
Consumer
Cloud Admin
SLA
Cost Profile
Security
Networking
Service
Catalog
Service
Request
Network Admin Load Balancer Admin
Standardized Templates
Logical Load
Balancer
Security Admin
AVAILABILITYSECURITYCONNECTIVITY
External Networks Network Profiles Security Tags Security Groups Security Policies
NSX Use Case – On Demand Micro-Segmentation
6
Web
App
Databas
e
PRIVATE
No external
connectivity
VM
VM VM
VM VM VM
Isolation
Controlled
Communication Path
Advanced Services
Communication Path
Segmentation Advanced Services
No
Communication Path
Agenda
CONFIDENTIAL 14
1 NSX and vRealize Automation
2 NSX & vRA 6.2 Updates
3 Deployment Considerations
4 Demonstration
5 Q&A
Feature Overview – NSX & vRealize Automation 6.2
Connectivity
Network Profiles for On-Demand Network Creation
– Define Routed, NAT and Private network profiles based on application topology
Connect to pre-created External networks NSX
Distributed Logical Router (DLR) Support
– Optimize east-west traffic by connecting On-Demand Logical Switches to a pre-created DLR
All On-Demand Edges use NSX 6.1 version
Security
App Isolation
– Automatic creation of security group per app with default policy to permit traffic between tiers
and block all inbound/outbound traffic
On Demand creation of Security Groups based on Security Policies
– Select pre-defined NSX security policies which apply to security groups for component VMs
– Allows self-service consumption of DFW Rules,AV, DLP, IDS/IPS, Vulnerability Mgmt
– Select pre-defined NSX security tag which is applied to VMs and used to dynamically place
workloads in security groups
Security Tags
Availability
On-demand Load Balancer in One-Armed Mode or Inline Mode
- NSX Load Balancing configuration used
Extensibility
Business Logic moved to NSX vCO Plugin
Web
App
Database
VM VM
VM VM VM
VM
Web
App
DatabaseWeb
VM
Web
App
Database
VM
Web
App
Database
VM
NSX Distributed Logical Router
NSX Logical
Distributed
Router
• Optimized routing for East/West traffic directly at the source Hypervisor, distributed
across all Hosts
• No virtual appliance required for Routing
• Dynamic Routing available (OSPF and BGP)
• Previously Distributed Logical Routing could only be leveraged on External Networks
The Network Admin will
configure a pre-defined
Distributed Logical
Router that can then be
shared by multiple
networks provisioned
on-demand by vRA
App
Database
VM
VM VM
VM VM VM
Scales up to 1000
logical interfaces!
Edge
Gateway
vRA Routed Gateways
• Blueprint with routed network profile must use a routed gateway to talk to external networks
• Routed gateway is defined at the Reservation level for routed and external profiles
• One gateway only per External Network Profile
• Determines whether Distributed Logical Router or NSX Edge Gateway will be used by a Routed
Network Profile
Routed Gateway
NSX Edge
Routed Gateway
Distributed Logical Router
Web
App
Database
VM
VM VM
VM VM VM
Web
App
Database
VM
VM VM
VM VM VM
Application Level
NSX Edge
Static route added
Directly connected
NSX Security Groups & Security Policies
• End-Users and CloudAdmins are able to select pre-defined security policies already
approved by the Security Admin in NSX
• Security policies are applied to one or more security groups where workloads are members
• These security groups are created
on-demand by vRA at deployment time
WHAT you
want to
protect
HOinbWoundyHoTuTPw/S,ant
toIPpS r–optreevcentt DitOS
attacks, enforce
acceptable use
SECURITY GROUP
SECURITY POLICY
Members (VM, vNIC)
and Context
(user identity,
security posture)
“Standard Web”
 Firewall – allow
allow outbound ANY
Services (Firewall, antivirus,
IPS etc.) and Profiles (labels
representing specific policies)
NSX Security Tags
• NSX Security Tags can be used to define IF/THEN workflows for security services, e.g. IF user
selects a “Finance” application, THEN place the VM in the “Finance” security group
INFRASTRUCTURE
APPS
Security Admin
“Finance Policy”
 IF Tag = Finance
THEN add VM to
Security Group
“Finance” with
Security Policy
“Finance”
Step 1: Security Admin pre-defines a
Security Group and a Security Policy
with dynamic membership based on a
Security Tag
“Finance App”
 Set Tag
“Finance”
Cloud Admin
Multi-
Machine
Blueprint
Step 2: Cloud Admin creates a Multi-
Machine Blueprint which sets a Security
Tag. Cloud Admin needs no knowledge
of Security Groups or Security Policies.
NSX Security Tags
• NSX Security Tags can be used to define IF/THEN workflows for security services, e.g. IF user
selects a “Finance” application, THEN place the VM in the “Finance” security group
INFRASTRUCTURE
APPS
Requests
“Finance App”
Service
Catalog
Step 3: End-User requests Application
via the Service Catalog
Cloud
Consumer
Step 4: VM is automatically deployed
with its Security Tag SGW=FiHnaAncTe you
protect
Step 5: VM is dynamically assigned
to the relevant pre-defined
Security Group
w ant to
NSX Application Isolation
• Application Isolation provides an optional first level of security. When selected all inbound and
outbound application access is blocked, while inter application traffic is permitted
• Component level Security Policies are applied
at a higher precedence to permit selected traffic
Web
App
Database
VM VM
VM VM VM
VM
Web
App
Database
VM VM
VM VM VM
VM
NSX Load Balancing
• vRA leverages NSX for both on-demand and pre-created Logical Load Balancing
• If an NSX Edge is the default gateway for component VMs, Inline Load Balancing is used
• If the component VMs are connected to a network using the Distributed Logical Router or an
External Network then Load Balancing is configured for One-Arm mode
One-Arm Load
Balancing
Inline Load
Balancing
Web
App
Database
VM VM
VM VM VM
VM
Web
App
Database
VM VM
VM VM VM
VM
Application Level
NSX Edge
DEixstterrinbaulted
GaLtoegwicaayl
Router
vCAC Networking and Security Architecture – 6.0 release
vCloud Automation Center
Rest API
NSX for vSphere
ESXivCenter Server
vSphere API
vCNS Model
Business logic
AMQP
vRA Networking and Security Architecture – 6.1+ release
vRealize Automation
ESXivCenter Server
vCenter Orchestrator
NSX vCO Plugin
Rest API
NSX
Rest API
vSphere API
NSX Model
Business logic
AMQP
NSX vRealize Orchestrator Plugin
CONFIDENTIAL 25
Benefits
• Ability to support multiple product versions (vCNS, NSX)
transparently to vRA
• Network and security workflows are decoupled from cloud
management platform, enabling more rapid release and
updates/fixes to workflows
• Easier to extend/customize workflows by adding your own logic
• Provide Self Service access to NSX vCO workflows through
Advanced Service Designer
• Can also be used standalone without vRA
Note: Initial version of NSX vCO Plugin is limited to functionality
required by vRA and is only supported for these out of the
box workflows
Agenda
CONFIDENTIAL 26
1 NSX and vRealize Automation
2 NSX & vRA 6.2 Updates
3 Deployment Considerations
4 Demonstration
5 Q&A
vRO Considerations
1) Install NSX vRO Plugin if using
standalone vRO Server
2) Setup Endpoints in vRA
vCenter with NSX & vRO
3) NSX endpoint in vRO will
automatically be created
4) Manually run vRO workflow
to enable support for
overlapping subnets
vRA NSX Networking & Security Workflows
Connect to NSX using vCO REST API
Create App Isolation Security Policy
Create App Isolation Security Group
Assign Policy to Security Group
Create Component Security Group
Assign Policy to Security Group
Create VXLAN Logical Switches
Create NSX Edge Services Gateway
Connect Networks to Logical Routers
Multi Machine Provisioning Multi Machine Destroy
Configure Load Balancing & DHCP Services
Configure Default Gateway/Inject Static Route
Assign Security Tags
Add component machines to Security Groups
Connect to NSX using vCO REST API
Delete Security Groups
Disconnect DLR LIFs
Delete Edge
Delete Static Route
Delete VXLAN Logical Switches
Reclaim IP Addresses or Range
Remove NAT Rules
Remove Load Balancing
Configure Edge Firewall
vRA Data Collection
vRA IaaS
• Data Collection occurs automatically after the
endpoints are registered
• By default ‘Network and Security inventory’ Data
Collection occurs every 24 hours
• Data Collection frequency can be modified in hours
• Manual Data Collection can also be performed
NSX objects are cached by vRA using vCO inventory.
This includes the following items:
• Transport Zones
• Logical Switches
• Edge Gateways/Distributed Logical Routers
• Security Tags
• Security Groups
• Security Policies
VRM Agent -> vCenter
DEM -> vCO -> NSX
Naming Convention for NSX Objects
The vRA Multi Machine Service identifier is used within NSX for dynamically created objects:
▪ Logical switches “<NetworkNameInMMBP>-<MMS UUID>”
▪ Edge gateways “Edge-<MMS UUID>”
▪ Security groups “SG-<MMS UUID>”
▪ App Isolation Security policy “SG-<NSX Endpoint UUID>”
NSX and vRA Extensibility
31
• The NSX vRealize Orchestrator Plugin covers many common networking & security operations
• vRO also includes a HTTP-REST Plugin which allows the NSX vSphereAPI to be
directly consumed
– Allows creation of custom workflows to perform
advanced NSX operations, eg:
• Enable Edge HA
• Modify Edge sizing
• Configure additional LB features
• Create NSX Security Groups, Policies or Tags
• vRA WF stubs provide an integrated method of
calling these custom vRO workflows at specific
points in machine lifecycle
• Allows for additional NSX operations to be
inserted transparently within the requests
NSX and vRA Extensibility
32
• You can also use workflows from the NSX plugin as building blocks and augment with
custom scriptable tasks/workflows
• FToroCmomSipmlepxle
NSX and vRA Extensibility
• In addition the vRealize AutomationAdvanced Service Designer can be used to run
standalone workflows and Day 2 operations
• This provides a method of leveraging vRO workflows and plugins via the vRA Self-Service Portal
33
NSX and vRA Extensibility
• Service Blueprints are created in vRA using inputs/outputs from vRO workflows
• These Service Blueprints can then be published to the vRealize Service Catalog along with
other Infrastructure Blueprints
34
Custom Properties
• Custom Properties for Networking & Security have been available since vCAC 5.2
• Allows pre-created NSX or vCNS resources to be consumed by Component VMs
• Importantly, these custom properties apply to Single Machine Blueprints
• Custom Properties can be pre-defined, or entered at request time
• Available Properties are:
– VCNS.LoadBalancerEdgePool.Names
– VCNS.SecurityGroup.Names
– VCNS.SecurityTag.Names
Multi-Tier App,
Multiple Networks
Multi-Tier App,
Single Flat Network
vRealize Automation Application Topologies
Support for Multiple Network Topologies
Web
App
Database
VM VM
VM VM VM
VM
VM VM VM VM VM VM
NSX with vRA – On Demand Deployment Model
Provider Logical
Router (HA)
External
Networks
• 2 Tiers of Routing
– Distributed Logical Router or NSX Edge for
Application Router
– NSX Edge for Provider Router
• Dynamic Routing externally
• Dynamic Routing (DLR), Static Routing
or NAT internally (Edge)
Dynamic Routing
(OSPF, BGP)
Transit Uplink 192.168.10.0/24 (External Network Profile)
Static Route added
automatically
• On Demand Model is
typically used for more dynamic Test/Dev
style workloads, particularly when there is
a requirement for overlapping IP addresses
Dynamic Routing
(OSPF, BGP)
Web Logical
Switch (Routed)
DB Logical
Switch
(Routed)
MMS 1
Routed
App LS
(Routed)
172.16.10.0/29 172.16.10.8/29 172.16.10.16/29
Web Logical
Switch (Routed) App LS (Routed) DB LS (Routed)
MMS 2
Routed
172.16.20.0/29 172.16.20.8/29 172.16.20.16/29
Web Logical
Switch (NAT) App LS (Private) DB LS (Private)
MMS 3
NAT & Private
172.16.100.0/24 172.16.101.0/24 172.16.102.0/24
Web Logical
Switch (NAT) App LS (Private) DB LS (Private)
MMS 4
NAT & Private
172.16.100.0/24 172.16.101.0/24 172.16.102.0/24
Distributed Logical Router
NSX with vRA – Pre Created Deployment Model
Logical Switch 172.16.50.0/24 (External Network) 172.16.60.0/24 (External Network) Logical Switch
Prod Web SG A Prod App SG A Prod DB SG A Dev Web SG A Dev App SG A Dev DB
SG A
Dev Web SG B Dev App Dev DB
SG B SG B
Prod Web SG B Prod Prod DB SG B
App SG B
Dynamic Routing
(OSPF, BGP)
with ECMP
External
Networks• 2 Tiers of Routing
– Distributed Logical Router for
Application Router
– NSX Edge for Provider Router
• Dynamic Routing
• Use existing LS as external
network profiles
• One Arm Load Balancing on
demand
Prod-01 Dev-01
LB LB
LB
DynDaymnaicmRicoRutoinugting
(OS(OPSFP, BFG, BPG) P)
with ECMP
Transit Uplink
192.168.10.0/24
(External Network Profile)
Provider LoSgciaclaelOut Provider
Router (NSLXog6i.c1a)l Router (NSX 6.1)
MMS 1 VMs
MMS 2 VMs
MMS 3 VMs
MMS 4 VMs
• Pre-Created model is typically used with
Production or more static workloads and
the application topology is multi-tier on a
single network
Distributed Logical Router
LB
Agenda
CONFIDENTIAL 39
1 NSX and vRealize Automation
2 NSX & vRA 6.2 Updates
3 Deployment Considerations
4 Demonstration
5 Q&A
Live Demonstration
Agenda
CONFIDENTIAL 41
1 NSX and vRealize Automation
2 NSX & vRA 6.2 Updates
3 Deployment Considerations
4 Demonstration
5 Q&A
Questions
Please submit your feedback
via our mobile app.
Thank You
Ray Budavari (@rbudavari)
http://www.vmware.com/products/nsx/
Self service it with v realizeautomation and nsx

More Related Content

What's hot

VMUGbe 21 Filip Verloy
VMUGbe 21 Filip VerloyVMUGbe 21 Filip Verloy
VMUGbe 21 Filip VerloyFilip Verloy
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld
 
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...VMworld
 
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...Kristoffer Sheather
 
Network Virtualization with VMware NSX
Network Virtualization with VMware NSXNetwork Virtualization with VMware NSX
Network Virtualization with VMware NSXScott Lowe
 
VMworld 2013: VMware NSX Integration with OpenStack
VMworld 2013: VMware NSX Integration with OpenStack VMworld 2013: VMware NSX Integration with OpenStack
VMworld 2013: VMware NSX Integration with OpenStack VMworld
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld
 
NSX 9 Core Use Cases
NSX 9 Core Use CasesNSX 9 Core Use Cases
NSX 9 Core Use CasesKevin Groat
 
VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments VMworld
 
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...VMworld
 
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment Manager
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment ManagerVMworld 2015: Managing Users: A Deep Dive into VMware User Environment Manager
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment ManagerVMworld
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectDavid Pasek
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaVMUG IT
 
VMworld Europe 2014: Advanced Network Services with NSX
VMworld Europe 2014: Advanced Network Services with NSXVMworld Europe 2014: Advanced Network Services with NSX
VMworld Europe 2014: Advanced Network Services with NSXVMworld
 
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...VMworld
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld
 
VMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesVMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesAngel Villar Garea
 
VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld
 
VMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSXVMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSXVMworld
 
VMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDCVMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDCVMworld
 

What's hot (20)

VMUGbe 21 Filip Verloy
VMUGbe 21 Filip VerloyVMUGbe 21 Filip Verloy
VMUGbe 21 Filip Verloy
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX
 
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
VMworld 2013: Technical Deep Dive: Build a Collapsed DMZ Architecture for Opt...
 
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...
Scaling Your SDDC Network: Building a Highly Scalable SDDC Infrastructure wit...
 
Network Virtualization with VMware NSX
Network Virtualization with VMware NSXNetwork Virtualization with VMware NSX
Network Virtualization with VMware NSX
 
VMworld 2013: VMware NSX Integration with OpenStack
VMworld 2013: VMware NSX Integration with OpenStack VMworld 2013: VMware NSX Integration with OpenStack
VMworld 2013: VMware NSX Integration with OpenStack
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - SegmentationVMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
VMworld 2013: NSX PCI Reference Architecture Workshop Session 1 - Segmentation
 
NSX 9 Core Use Cases
NSX 9 Core Use CasesNSX 9 Core Use Cases
NSX 9 Core Use Cases
 
VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments VMworld 2013: Operational Best Practices for NSX in VMware Environments
VMworld 2013: Operational Best Practices for NSX in VMware Environments
 
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
 
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment Manager
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment ManagerVMworld 2015: Managing Users: A Deep Dive into VMware User Environment Manager
VMworld 2015: Managing Users: A Deep Dive into VMware User Environment Manager
 
VMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real projectVMware NSX - Lessons Learned from real project
VMware NSX - Lessons Learned from real project
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
 
VMworld Europe 2014: Advanced Network Services with NSX
VMworld Europe 2014: Advanced Network Services with NSXVMworld Europe 2014: Advanced Network Services with NSX
VMworld Europe 2014: Advanced Network Services with NSX
 
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
 
VMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use casesVMware NSX for vSphere - Intro and use cases
VMware NSX for vSphere - Intro and use cases
 
VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture VMworld 2013: Advanced VMware NSX Architecture
VMworld 2013: Advanced VMware NSX Architecture
 
VMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSXVMworld 2014: Introduction to NSX
VMworld 2014: Introduction to NSX
 
VMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDCVMworld 2015: Container Orchestration with the SDDC
VMworld 2015: Container Orchestration with the SDDC
 

Similar to Self service it with v realizeautomation and nsx

VMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and SecurityVMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and SecurityVMworld
 
20151019 v mworld2015-recap-02
20151019 v mworld2015-recap-0220151019 v mworld2015-recap-02
20151019 v mworld2015-recap-02Kevin Groat
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...VMworld
 
VMware vRealize Network Insight 3.4 whats new
VMware vRealize Network Insight 3.4 whats newVMware vRealize Network Insight 3.4 whats new
VMware vRealize Network Insight 3.4 whats newVMware
 
VMworld 2016 Recap
VMworld 2016 RecapVMworld 2016 Recap
VMworld 2016 RecapKevin Groat
 
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptx
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptxNSX_Advanced_Load_Balancer_Solution_with_Oracle.pptx
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptxAvi Networks
 
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center VMworld
 
VMware vRealize Network Insight 3.5 - Whats New
VMware vRealize Network Insight 3.5 - Whats NewVMware vRealize Network Insight 3.5 - Whats New
VMware vRealize Network Insight 3.5 - Whats NewVMware
 
Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014 Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014 VMwareJenn
 
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...Amazon Web Services
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld
 
What's New VMware NSX Advanced Load Balancer (Avi Networks)
What's New VMware NSX Advanced Load Balancer (Avi Networks)What's New VMware NSX Advanced Load Balancer (Avi Networks)
What's New VMware NSX Advanced Load Balancer (Avi Networks)Avi Networks
 
Webinar Fondazione CRUI e VMware: VMware vRealize Suite
 Webinar Fondazione CRUI e VMware: VMware vRealize Suite Webinar Fondazione CRUI e VMware: VMware vRealize Suite
Webinar Fondazione CRUI e VMware: VMware vRealize SuiteJürgen Ambrosi
 
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Amazon Web Services
 
DEVNET-1009 Cisco Intercloud Fabric for Business (ICFB), Helping Enterprises...
DEVNET-1009	Cisco Intercloud Fabric for Business (ICFB),  Helping Enterprises...DEVNET-1009	Cisco Intercloud Fabric for Business (ICFB),  Helping Enterprises...
DEVNET-1009 Cisco Intercloud Fabric for Business (ICFB), Helping Enterprises...Cisco DevNet
 
Integration of pola alto and v mware nsx to protect virtual and cloud environ...
Integration of pola alto and v mware nsx to protect virtual and cloud environ...Integration of pola alto and v mware nsx to protect virtual and cloud environ...
Integration of pola alto and v mware nsx to protect virtual and cloud environ...David kankam
 
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...VMworld
 
VMware and AWS Together - VMware Cloud on AWS
VMware and AWS Together  - VMware Cloud on AWSVMware and AWS Together  - VMware Cloud on AWS
VMware and AWS Together - VMware Cloud on AWSKristana Kane
 

Similar to Self service it with v realizeautomation and nsx (20)

VMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and SecurityVMworld 2015: Introducing Application Self service with Networking and Security
VMworld 2015: Introducing Application Self service with Networking and Security
 
20151019 v mworld2015-recap-02
20151019 v mworld2015-recap-0220151019 v mworld2015-recap-02
20151019 v mworld2015-recap-02
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
 
VMware vRealize Network Insight 3.4 whats new
VMware vRealize Network Insight 3.4 whats newVMware vRealize Network Insight 3.4 whats new
VMware vRealize Network Insight 3.4 whats new
 
VMworld 2016 Recap
VMworld 2016 RecapVMworld 2016 Recap
VMworld 2016 Recap
 
Azure F5 Solutions
Azure F5 SolutionsAzure F5 Solutions
Azure F5 Solutions
 
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptx
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptxNSX_Advanced_Load_Balancer_Solution_with_Oracle.pptx
NSX_Advanced_Load_Balancer_Solution_with_Oracle.pptx
 
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
 
VMware vRealize Network Insight 3.5 - Whats New
VMware vRealize Network Insight 3.5 - Whats NewVMware vRealize Network Insight 3.5 - Whats New
VMware vRealize Network Insight 3.5 - Whats New
 
Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014 Reston Virtualization Group 9-18-2014
Reston Virtualization Group 9-18-2014
 
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...
DEM08 Use Cisco Cloud Connect to Securely Extend Private Network to AWS and M...
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
VMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep DiveVMworld 2015: VMware NSX Deep Dive
VMworld 2015: VMware NSX Deep Dive
 
What's New VMware NSX Advanced Load Balancer (Avi Networks)
What's New VMware NSX Advanced Load Balancer (Avi Networks)What's New VMware NSX Advanced Load Balancer (Avi Networks)
What's New VMware NSX Advanced Load Balancer (Avi Networks)
 
Webinar Fondazione CRUI e VMware: VMware vRealize Suite
 Webinar Fondazione CRUI e VMware: VMware vRealize Suite Webinar Fondazione CRUI e VMware: VMware vRealize Suite
Webinar Fondazione CRUI e VMware: VMware vRealize Suite
 
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
Cisco Cloud Connect Solutions Extend Your Private Network to AWS and Maintain...
 
DEVNET-1009 Cisco Intercloud Fabric for Business (ICFB), Helping Enterprises...
DEVNET-1009	Cisco Intercloud Fabric for Business (ICFB),  Helping Enterprises...DEVNET-1009	Cisco Intercloud Fabric for Business (ICFB),  Helping Enterprises...
DEVNET-1009 Cisco Intercloud Fabric for Business (ICFB), Helping Enterprises...
 
Integration of pola alto and v mware nsx to protect virtual and cloud environ...
Integration of pola alto and v mware nsx to protect virtual and cloud environ...Integration of pola alto and v mware nsx to protect virtual and cloud environ...
Integration of pola alto and v mware nsx to protect virtual and cloud environ...
 
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
VMworld 2013: Datacenter Transformation with Network Virtualization: Today an...
 
VMware and AWS Together - VMware Cloud on AWS
VMware and AWS Together  - VMware Cloud on AWSVMware and AWS Together  - VMware Cloud on AWS
VMware and AWS Together - VMware Cloud on AWS
 

More from solarisyougood

Emc recoverpoint technical
Emc recoverpoint technicalEmc recoverpoint technical
Emc recoverpoint technicalsolarisyougood
 
Emc vmax3 technical deep workshop
Emc vmax3 technical deep workshopEmc vmax3 technical deep workshop
Emc vmax3 technical deep workshopsolarisyougood
 
EMC Atmos for service providers
EMC Atmos for service providersEMC Atmos for service providers
EMC Atmos for service providerssolarisyougood
 
Cisco prime network 4.1 technical overview
Cisco prime network 4.1 technical overviewCisco prime network 4.1 technical overview
Cisco prime network 4.1 technical overviewsolarisyougood
 
Designing your xen desktop 7.5 environment with training guide
Designing your xen desktop 7.5 environment with training guideDesigning your xen desktop 7.5 environment with training guide
Designing your xen desktop 7.5 environment with training guidesolarisyougood
 
Ibm aix technical deep dive workshop advanced administration and problem dete...
Ibm aix technical deep dive workshop advanced administration and problem dete...Ibm aix technical deep dive workshop advanced administration and problem dete...
Ibm aix technical deep dive workshop advanced administration and problem dete...solarisyougood
 
Ibm power ha v7 technical deep dive workshop
Ibm power ha v7 technical deep dive workshopIbm power ha v7 technical deep dive workshop
Ibm power ha v7 technical deep dive workshopsolarisyougood
 
Power8 hardware technical deep dive workshop
Power8 hardware technical deep dive workshopPower8 hardware technical deep dive workshop
Power8 hardware technical deep dive workshopsolarisyougood
 
Power systems virtualization with power kvm
Power systems virtualization with power kvmPower systems virtualization with power kvm
Power systems virtualization with power kvmsolarisyougood
 
Power vc for powervm deep dive tips &amp; tricks
Power vc for powervm deep dive tips &amp; tricksPower vc for powervm deep dive tips &amp; tricks
Power vc for powervm deep dive tips &amp; trickssolarisyougood
 
Emc data domain technical deep dive workshop
Emc data domain  technical deep dive workshopEmc data domain  technical deep dive workshop
Emc data domain technical deep dive workshopsolarisyougood
 
Ibm flash system v9000 technical deep dive workshop
Ibm flash system v9000 technical deep dive workshopIbm flash system v9000 technical deep dive workshop
Ibm flash system v9000 technical deep dive workshopsolarisyougood
 
Emc vnx2 technical deep dive workshop
Emc vnx2 technical deep dive workshopEmc vnx2 technical deep dive workshop
Emc vnx2 technical deep dive workshopsolarisyougood
 
Emc isilon technical deep dive workshop
Emc isilon technical deep dive workshopEmc isilon technical deep dive workshop
Emc isilon technical deep dive workshopsolarisyougood
 
Emc ecs 2 technical deep dive workshop
Emc ecs 2 technical deep dive workshopEmc ecs 2 technical deep dive workshop
Emc ecs 2 technical deep dive workshopsolarisyougood
 
Cisco mds 9148 s training workshop
Cisco mds 9148 s training workshopCisco mds 9148 s training workshop
Cisco mds 9148 s training workshopsolarisyougood
 
Cisco cloud computing deploying openstack
Cisco cloud computing deploying openstackCisco cloud computing deploying openstack
Cisco cloud computing deploying openstacksolarisyougood
 
Se training storage grid webscale technical overview
Se training   storage grid webscale technical overviewSe training   storage grid webscale technical overview
Se training storage grid webscale technical overviewsolarisyougood
 

More from solarisyougood (20)

Emc vipr srm workshop
Emc vipr srm workshopEmc vipr srm workshop
Emc vipr srm workshop
 
Emc recoverpoint technical
Emc recoverpoint technicalEmc recoverpoint technical
Emc recoverpoint technical
 
Emc vmax3 technical deep workshop
Emc vmax3 technical deep workshopEmc vmax3 technical deep workshop
Emc vmax3 technical deep workshop
 
EMC Atmos for service providers
EMC Atmos for service providersEMC Atmos for service providers
EMC Atmos for service providers
 
Cisco prime network 4.1 technical overview
Cisco prime network 4.1 technical overviewCisco prime network 4.1 technical overview
Cisco prime network 4.1 technical overview
 
Designing your xen desktop 7.5 environment with training guide
Designing your xen desktop 7.5 environment with training guideDesigning your xen desktop 7.5 environment with training guide
Designing your xen desktop 7.5 environment with training guide
 
Ibm aix technical deep dive workshop advanced administration and problem dete...
Ibm aix technical deep dive workshop advanced administration and problem dete...Ibm aix technical deep dive workshop advanced administration and problem dete...
Ibm aix technical deep dive workshop advanced administration and problem dete...
 
Ibm power ha v7 technical deep dive workshop
Ibm power ha v7 technical deep dive workshopIbm power ha v7 technical deep dive workshop
Ibm power ha v7 technical deep dive workshop
 
Power8 hardware technical deep dive workshop
Power8 hardware technical deep dive workshopPower8 hardware technical deep dive workshop
Power8 hardware technical deep dive workshop
 
Power systems virtualization with power kvm
Power systems virtualization with power kvmPower systems virtualization with power kvm
Power systems virtualization with power kvm
 
Power vc for powervm deep dive tips &amp; tricks
Power vc for powervm deep dive tips &amp; tricksPower vc for powervm deep dive tips &amp; tricks
Power vc for powervm deep dive tips &amp; tricks
 
Emc data domain technical deep dive workshop
Emc data domain  technical deep dive workshopEmc data domain  technical deep dive workshop
Emc data domain technical deep dive workshop
 
Ibm flash system v9000 technical deep dive workshop
Ibm flash system v9000 technical deep dive workshopIbm flash system v9000 technical deep dive workshop
Ibm flash system v9000 technical deep dive workshop
 
Emc vnx2 technical deep dive workshop
Emc vnx2 technical deep dive workshopEmc vnx2 technical deep dive workshop
Emc vnx2 technical deep dive workshop
 
Emc isilon technical deep dive workshop
Emc isilon technical deep dive workshopEmc isilon technical deep dive workshop
Emc isilon technical deep dive workshop
 
Emc ecs 2 technical deep dive workshop
Emc ecs 2 technical deep dive workshopEmc ecs 2 technical deep dive workshop
Emc ecs 2 technical deep dive workshop
 
Emc vplex deep dive
Emc vplex deep diveEmc vplex deep dive
Emc vplex deep dive
 
Cisco mds 9148 s training workshop
Cisco mds 9148 s training workshopCisco mds 9148 s training workshop
Cisco mds 9148 s training workshop
 
Cisco cloud computing deploying openstack
Cisco cloud computing deploying openstackCisco cloud computing deploying openstack
Cisco cloud computing deploying openstack
 
Se training storage grid webscale technical overview
Se training   storage grid webscale technical overviewSe training   storage grid webscale technical overview
Se training storage grid webscale technical overview
 

Recently uploaded

Build your next Gen AI Breakthrough - April 2024
Build your next Gen AI Breakthrough - April 2024Build your next Gen AI Breakthrough - April 2024
Build your next Gen AI Breakthrough - April 2024Neo4j
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Wonjun Hwang
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfjimielynbastida
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Commit University
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksSoftradix Technologies
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptxLBM Solutions
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Enterprise Knowledge
 
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024BookNet Canada
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 

Recently uploaded (20)

Build your next Gen AI Breakthrough - April 2024
Build your next Gen AI Breakthrough - April 2024Build your next Gen AI Breakthrough - April 2024
Build your next Gen AI Breakthrough - April 2024
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
Bun (KitWorks Team Study 노별마루 발표 2024.4.22)
 
Science&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdfScience&tech:THE INFORMATION AGE STS.pdf
Science&tech:THE INFORMATION AGE STS.pdf
 
Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!Nell’iperspazio con Rocket: il Framework Web di Rust!
Nell’iperspazio con Rocket: il Framework Web di Rust!
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
Pigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping ElbowsPigging Solutions Piggable Sweeping Elbows
Pigging Solutions Piggable Sweeping Elbows
 
Benefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other FrameworksBenefits Of Flutter Compared To Other Frameworks
Benefits Of Flutter Compared To Other Frameworks
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
Key Features Of Token Development (1).pptx
Key  Features Of Token  Development (1).pptxKey  Features Of Token  Development (1).pptx
Key Features Of Token Development (1).pptx
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024
 
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 

Self service it with v realizeautomation and nsx

  • 1. Self-service IT with vRealize Automation and NSX NET4291 Ray Budavari VMware
  • 2. Student Guide & Internal & Confidential Update Daily https://goo.gl/VVmVZ0 vRealizeAir –NEW Cloud Management SaaS Offerings http://ouo.io/6TMPF How to Help Customers Install, Deploy and Migrate to the vRealizeOperations Manager 6.0 (formerly vCOps) http://ouo.io/1pL8wo Showing Costs Back in the Virtualized Environment vRealize Business Standard Proof of Concept (formerly ITBM) http://ouo.io/30TzE vRealizeCloud Management Portfolio Overview and Glimpse into the Future http://ouo.io/OpLGQB vRealizeSuite: VMware’s vRealizeCloud Management Platform http://ouo.io/t5n5MO vRealizeAutomation (formerly vCAC) and NSX: Automating Networking & Security Infrastructure http://ouo.io/CyCXv Journey of the Deal: Best Practices from a VMware Cloud Management Partner http://ouo.io/vBVQdO The Practical Path to NSX and Network Virtualization http://ouo.io/47hme Why an SSDC Approach with NSX is Better for Your Channel Business http://ouo.io/1hY4l
  • 3. Agenda CONFIDENTIAL 2 1 NSX and vRealize Automation 2 NSX & vRA 6.2 Updates 3 Deployment Considerations 4 Demonstration 5 Q&A
  • 4. Why NSX? Support for Detailed, Programmable Application Topologies Security PoliciesSecurity Groups Logical Switching, Routing, Firewall, Load Balancing Web App Database Web “Standard Web” Firewall – allow inbound HTTP/S, allow outboundANY IPS – prevent DOS attacks, enforce acceptable use “Standard App”  Firewall – allow inbound TCP 8443, allow outbound SQL Database “Standard Database”  Firewall – allow inbound SQL  Vulnerability Management – Weekly Scan App VM VM VM VM VM VM “Default” Firewall – Access shared services (DNS, AD)  Anti-Virus – Scan Daily Default
  • 5. Logical Switch Logical Router NSX Logical Firewall Logical Load Balancer NSX with vRealize Automation Dynamic Configuration and Deployment of NSX Logical Services On Demand Application Delivery vRealize Automation Service Catalog Resource Reservation Multi-Machine Blueprint Cloud Management Platform Network Profiles Security Policies Security Groups Web App Database VM VM VM VM VM VM
  • 6. NSX Use Case – Self Service IT Multi- Machine Blueprints Cloud Consumer Cloud Admin SLA Cost Profile Security Networking Service Catalog Service Request Network Admin Load Balancer Admin Standardized Templates Logical Load Balancer Security Admin AVAILABILITYSECURITYCONNECTIVITY External Networks Network Profiles Security Tags Security Groups Security Policies
  • 7. NSX Use Case – On Demand Micro-Segmentation 6 Web App Databas e PRIVATE No external connectivity VM VM VM VM VM VM Isolation Controlled Communication Path Advanced Services Communication Path Segmentation Advanced Services No Communication Path
  • 8. Agenda CONFIDENTIAL 14 1 NSX and vRealize Automation 2 NSX & vRA 6.2 Updates 3 Deployment Considerations 4 Demonstration 5 Q&A
  • 9. Feature Overview – NSX & vRealize Automation 6.2 Connectivity Network Profiles for On-Demand Network Creation – Define Routed, NAT and Private network profiles based on application topology Connect to pre-created External networks NSX Distributed Logical Router (DLR) Support – Optimize east-west traffic by connecting On-Demand Logical Switches to a pre-created DLR All On-Demand Edges use NSX 6.1 version Security App Isolation – Automatic creation of security group per app with default policy to permit traffic between tiers and block all inbound/outbound traffic On Demand creation of Security Groups based on Security Policies – Select pre-defined NSX security policies which apply to security groups for component VMs – Allows self-service consumption of DFW Rules,AV, DLP, IDS/IPS, Vulnerability Mgmt – Select pre-defined NSX security tag which is applied to VMs and used to dynamically place workloads in security groups Security Tags Availability On-demand Load Balancer in One-Armed Mode or Inline Mode - NSX Load Balancing configuration used Extensibility Business Logic moved to NSX vCO Plugin Web App Database VM VM VM VM VM VM
  • 10. Web App DatabaseWeb VM Web App Database VM Web App Database VM NSX Distributed Logical Router NSX Logical Distributed Router • Optimized routing for East/West traffic directly at the source Hypervisor, distributed across all Hosts • No virtual appliance required for Routing • Dynamic Routing available (OSPF and BGP) • Previously Distributed Logical Routing could only be leveraged on External Networks The Network Admin will configure a pre-defined Distributed Logical Router that can then be shared by multiple networks provisioned on-demand by vRA App Database VM VM VM VM VM VM Scales up to 1000 logical interfaces! Edge Gateway
  • 11. vRA Routed Gateways • Blueprint with routed network profile must use a routed gateway to talk to external networks • Routed gateway is defined at the Reservation level for routed and external profiles • One gateway only per External Network Profile • Determines whether Distributed Logical Router or NSX Edge Gateway will be used by a Routed Network Profile Routed Gateway NSX Edge Routed Gateway Distributed Logical Router Web App Database VM VM VM VM VM VM Web App Database VM VM VM VM VM VM Application Level NSX Edge Static route added Directly connected
  • 12. NSX Security Groups & Security Policies • End-Users and CloudAdmins are able to select pre-defined security policies already approved by the Security Admin in NSX • Security policies are applied to one or more security groups where workloads are members • These security groups are created on-demand by vRA at deployment time WHAT you want to protect HOinbWoundyHoTuTPw/S,ant toIPpS r–optreevcentt DitOS attacks, enforce acceptable use SECURITY GROUP SECURITY POLICY Members (VM, vNIC) and Context (user identity, security posture) “Standard Web”  Firewall – allow allow outbound ANY Services (Firewall, antivirus, IPS etc.) and Profiles (labels representing specific policies)
  • 13. NSX Security Tags • NSX Security Tags can be used to define IF/THEN workflows for security services, e.g. IF user selects a “Finance” application, THEN place the VM in the “Finance” security group INFRASTRUCTURE APPS Security Admin “Finance Policy”  IF Tag = Finance THEN add VM to Security Group “Finance” with Security Policy “Finance” Step 1: Security Admin pre-defines a Security Group and a Security Policy with dynamic membership based on a Security Tag “Finance App”  Set Tag “Finance” Cloud Admin Multi- Machine Blueprint Step 2: Cloud Admin creates a Multi- Machine Blueprint which sets a Security Tag. Cloud Admin needs no knowledge of Security Groups or Security Policies.
  • 14. NSX Security Tags • NSX Security Tags can be used to define IF/THEN workflows for security services, e.g. IF user selects a “Finance” application, THEN place the VM in the “Finance” security group INFRASTRUCTURE APPS Requests “Finance App” Service Catalog Step 3: End-User requests Application via the Service Catalog Cloud Consumer Step 4: VM is automatically deployed with its Security Tag SGW=FiHnaAncTe you protect Step 5: VM is dynamically assigned to the relevant pre-defined Security Group w ant to
  • 15. NSX Application Isolation • Application Isolation provides an optional first level of security. When selected all inbound and outbound application access is blocked, while inter application traffic is permitted • Component level Security Policies are applied at a higher precedence to permit selected traffic Web App Database VM VM VM VM VM VM Web App Database VM VM VM VM VM VM
  • 16. NSX Load Balancing • vRA leverages NSX for both on-demand and pre-created Logical Load Balancing • If an NSX Edge is the default gateway for component VMs, Inline Load Balancing is used • If the component VMs are connected to a network using the Distributed Logical Router or an External Network then Load Balancing is configured for One-Arm mode One-Arm Load Balancing Inline Load Balancing Web App Database VM VM VM VM VM VM Web App Database VM VM VM VM VM VM Application Level NSX Edge DEixstterrinbaulted GaLtoegwicaayl Router
  • 17. vCAC Networking and Security Architecture – 6.0 release vCloud Automation Center Rest API NSX for vSphere ESXivCenter Server vSphere API vCNS Model Business logic AMQP
  • 18. vRA Networking and Security Architecture – 6.1+ release vRealize Automation ESXivCenter Server vCenter Orchestrator NSX vCO Plugin Rest API NSX Rest API vSphere API NSX Model Business logic AMQP
  • 19. NSX vRealize Orchestrator Plugin CONFIDENTIAL 25 Benefits • Ability to support multiple product versions (vCNS, NSX) transparently to vRA • Network and security workflows are decoupled from cloud management platform, enabling more rapid release and updates/fixes to workflows • Easier to extend/customize workflows by adding your own logic • Provide Self Service access to NSX vCO workflows through Advanced Service Designer • Can also be used standalone without vRA Note: Initial version of NSX vCO Plugin is limited to functionality required by vRA and is only supported for these out of the box workflows
  • 20. Agenda CONFIDENTIAL 26 1 NSX and vRealize Automation 2 NSX & vRA 6.2 Updates 3 Deployment Considerations 4 Demonstration 5 Q&A
  • 21. vRO Considerations 1) Install NSX vRO Plugin if using standalone vRO Server 2) Setup Endpoints in vRA vCenter with NSX & vRO 3) NSX endpoint in vRO will automatically be created 4) Manually run vRO workflow to enable support for overlapping subnets
  • 22. vRA NSX Networking & Security Workflows Connect to NSX using vCO REST API Create App Isolation Security Policy Create App Isolation Security Group Assign Policy to Security Group Create Component Security Group Assign Policy to Security Group Create VXLAN Logical Switches Create NSX Edge Services Gateway Connect Networks to Logical Routers Multi Machine Provisioning Multi Machine Destroy Configure Load Balancing & DHCP Services Configure Default Gateway/Inject Static Route Assign Security Tags Add component machines to Security Groups Connect to NSX using vCO REST API Delete Security Groups Disconnect DLR LIFs Delete Edge Delete Static Route Delete VXLAN Logical Switches Reclaim IP Addresses or Range Remove NAT Rules Remove Load Balancing Configure Edge Firewall
  • 23. vRA Data Collection vRA IaaS • Data Collection occurs automatically after the endpoints are registered • By default ‘Network and Security inventory’ Data Collection occurs every 24 hours • Data Collection frequency can be modified in hours • Manual Data Collection can also be performed NSX objects are cached by vRA using vCO inventory. This includes the following items: • Transport Zones • Logical Switches • Edge Gateways/Distributed Logical Routers • Security Tags • Security Groups • Security Policies VRM Agent -> vCenter DEM -> vCO -> NSX
  • 24. Naming Convention for NSX Objects The vRA Multi Machine Service identifier is used within NSX for dynamically created objects: ▪ Logical switches “<NetworkNameInMMBP>-<MMS UUID>” ▪ Edge gateways “Edge-<MMS UUID>” ▪ Security groups “SG-<MMS UUID>” ▪ App Isolation Security policy “SG-<NSX Endpoint UUID>”
  • 25. NSX and vRA Extensibility 31 • The NSX vRealize Orchestrator Plugin covers many common networking & security operations • vRO also includes a HTTP-REST Plugin which allows the NSX vSphereAPI to be directly consumed – Allows creation of custom workflows to perform advanced NSX operations, eg: • Enable Edge HA • Modify Edge sizing • Configure additional LB features • Create NSX Security Groups, Policies or Tags • vRA WF stubs provide an integrated method of calling these custom vRO workflows at specific points in machine lifecycle • Allows for additional NSX operations to be inserted transparently within the requests
  • 26. NSX and vRA Extensibility 32 • You can also use workflows from the NSX plugin as building blocks and augment with custom scriptable tasks/workflows • FToroCmomSipmlepxle
  • 27. NSX and vRA Extensibility • In addition the vRealize AutomationAdvanced Service Designer can be used to run standalone workflows and Day 2 operations • This provides a method of leveraging vRO workflows and plugins via the vRA Self-Service Portal 33
  • 28. NSX and vRA Extensibility • Service Blueprints are created in vRA using inputs/outputs from vRO workflows • These Service Blueprints can then be published to the vRealize Service Catalog along with other Infrastructure Blueprints 34
  • 29. Custom Properties • Custom Properties for Networking & Security have been available since vCAC 5.2 • Allows pre-created NSX or vCNS resources to be consumed by Component VMs • Importantly, these custom properties apply to Single Machine Blueprints • Custom Properties can be pre-defined, or entered at request time • Available Properties are: – VCNS.LoadBalancerEdgePool.Names – VCNS.SecurityGroup.Names – VCNS.SecurityTag.Names
  • 30. Multi-Tier App, Multiple Networks Multi-Tier App, Single Flat Network vRealize Automation Application Topologies Support for Multiple Network Topologies Web App Database VM VM VM VM VM VM VM VM VM VM VM VM
  • 31. NSX with vRA – On Demand Deployment Model Provider Logical Router (HA) External Networks • 2 Tiers of Routing – Distributed Logical Router or NSX Edge for Application Router – NSX Edge for Provider Router • Dynamic Routing externally • Dynamic Routing (DLR), Static Routing or NAT internally (Edge) Dynamic Routing (OSPF, BGP) Transit Uplink 192.168.10.0/24 (External Network Profile) Static Route added automatically • On Demand Model is typically used for more dynamic Test/Dev style workloads, particularly when there is a requirement for overlapping IP addresses Dynamic Routing (OSPF, BGP) Web Logical Switch (Routed) DB Logical Switch (Routed) MMS 1 Routed App LS (Routed) 172.16.10.0/29 172.16.10.8/29 172.16.10.16/29 Web Logical Switch (Routed) App LS (Routed) DB LS (Routed) MMS 2 Routed 172.16.20.0/29 172.16.20.8/29 172.16.20.16/29 Web Logical Switch (NAT) App LS (Private) DB LS (Private) MMS 3 NAT & Private 172.16.100.0/24 172.16.101.0/24 172.16.102.0/24 Web Logical Switch (NAT) App LS (Private) DB LS (Private) MMS 4 NAT & Private 172.16.100.0/24 172.16.101.0/24 172.16.102.0/24 Distributed Logical Router
  • 32. NSX with vRA – Pre Created Deployment Model Logical Switch 172.16.50.0/24 (External Network) 172.16.60.0/24 (External Network) Logical Switch Prod Web SG A Prod App SG A Prod DB SG A Dev Web SG A Dev App SG A Dev DB SG A Dev Web SG B Dev App Dev DB SG B SG B Prod Web SG B Prod Prod DB SG B App SG B Dynamic Routing (OSPF, BGP) with ECMP External Networks• 2 Tiers of Routing – Distributed Logical Router for Application Router – NSX Edge for Provider Router • Dynamic Routing • Use existing LS as external network profiles • One Arm Load Balancing on demand Prod-01 Dev-01 LB LB LB DynDaymnaicmRicoRutoinugting (OS(OPSFP, BFG, BPG) P) with ECMP Transit Uplink 192.168.10.0/24 (External Network Profile) Provider LoSgciaclaelOut Provider Router (NSLXog6i.c1a)l Router (NSX 6.1) MMS 1 VMs MMS 2 VMs MMS 3 VMs MMS 4 VMs • Pre-Created model is typically used with Production or more static workloads and the application topology is multi-tier on a single network Distributed Logical Router LB
  • 33. Agenda CONFIDENTIAL 39 1 NSX and vRealize Automation 2 NSX & vRA 6.2 Updates 3 Deployment Considerations 4 Demonstration 5 Q&A
  • 35. Agenda CONFIDENTIAL 41 1 NSX and vRealize Automation 2 NSX & vRA 6.2 Updates 3 Deployment Considerations 4 Demonstration 5 Q&A
  • 37. Please submit your feedback via our mobile app.
  • 38. Thank You Ray Budavari (@rbudavari) http://www.vmware.com/products/nsx/