Debunking VMware NSX

18
© 2010 VMware Inc. All rights reserved vBrownBag TechTalks Debunking VMware NSX

Transcript of Debunking VMware NSX

© 2010 VMware Inc. All rights reserved

vBrownBag TechTalks

Debunking VMware NSX

2

Chi sono

Andrea Mauro

• IT Architect, VCP/VCAP/VCDX-DCV, VCP/VCAP-Cloud/DT, VCP/VCIX-NV

• vExpert 2010-2015

• http://vinfrastructure.it

• @Andrea_Mauro

• it.linkedin.com/in/andreamauro

• https://about.me/amauro

3

Due approcci…

Hardware Defined

Data Center (HDDC)

Any Application

HDDC Platform

Integrated x86

Integrated Storage

Vendor Specific

Network

Ve

rtic

al In

teg

ratio

n

Software Defined

Data Center (SDDC)

Any Application

SDDC Platform

Any x86

Any Storage

Any IP network

Data Center Virtualization

OR

Software

Controller

4

Confronto ESX - NSX

5

Architettura di NSX

6

Networking… ultima frontiera

Network Virtualization (NV)

Network Functions Virtualization (NFV)

Software Defined Networking (SDN)

OpenNetworking

OpenFlow

Leaf-Spine

7

Alcune possibili definizioni

SDN’s “reason for being” was the “separation of control and data

[and] centralization of control and programmability”

• OpenFlow è un possibile protocollo tra control e data plane

NFV’s purpose was the “relocation of network functions from

dedicated appliances to generic servers”

NV is an overlay; it’s a tunnel. Rather than physically connecting

two domains in a network, NV creates a tunnel through the existing

network to connect two domains.

In contrast to SDN, in which hardware remains the driving force,

VMware network virtualization technology truly decouples network

resources from underlying hardware.

• Virtualization principles are applied to physical network infrastructure,

abstracting network services to create a flexible pool of transport capacity that

can be allocated, utilized and repurposed on demand

8

Network overlay

9

Network underlay

10

Open Networking

Transforming networking with Software-Defined Networking (SDN) and

standardizing the OpenFlow protocol and related technologies

• https://www.opennetworking.org/

• Fondata nel 2011

Gli switch sono basati su hardware commodity?

• Broadcom Tridend chipset

• http://www.dell.com/us/business/p/open-networking-switches/pd

• http://whiteboxswitch.com/

Player importanti

• http://cumulusnetworks.com/

• http://www.bigswitch.com/

11

Nuova topologia per switch fisici

12

Vantaggi di ogni approccio

13

Sfatiamo alcuni miti di NSX

Virtualizzazione della rete

• Possibile solo con NSX?

Distributed switch

• Possibile solo con NSX?

Distributed routing

Possibile solo con NSX?

Distributed firewall

Possibile solo con NSX?

Hybrid cloud networking?

Possibile con NSX?

14

Traffico east-west – Stesso host

15

Traffico east-west – Host diversi

16

Limiti di NSX

Costo elevato

• Versioni «lite»? Bundle?

• Alternative a vCloud Network & Security?

Architettura complessa?

• Management cluster e Edge cluster

Traffico non VM?

• vMotion ha bisogno di NSX?

• iSCSI o NFS con NSX?

Complesso?

• Non più di altri sistemi

• Comunque molto VM-centric

• Gestibile con vRealize Automation & Orchestrator

Vincolato a vSphere?

• Esiste una versione multi-hypervisor

17

Differenze vSphere NSX – Multi-hypervisor NSX

vSphere NSX

dvSwitch

VXLAN encapsulation

NSX edge

East-west firewalling in-kernel

distributed firewall

In-kernel distributed routing

Load balancing, VPN

capabilities

Multi-hypervisor NSX

Open vSwitch

GRE, STT, VXLAN

encapsulation

East-west firewalling by ACL

and security groups

Physical NSX gateway

appliances

Open vSwitch provides

routing capabilities

HOL-SDC-1319 - VMware NSX for

Multi-Hypervisor

18

Enjoy The Day!

Join the Conversation!

@vmugit

@MyVMUG

#VMUGIT

www.vmug.com/italy

Milanofiori

12 Novembre 2015