HUAWEI TECHNOLOGIES CO., LTD. Huawei FusionCloud Desktop Solution



Similar documents
HUAWEI TECHNOLOGIES CO., LTD. Huawei FusionCloud Desktop Solution

Huawei Cloud Data Center Solution

How To Create A Network Access Control (Nac) Solution

Huawei Business Continuity and Disaster Recovery Solution

HUAWEI OceanStor Enterprise Storage System Success Cases

Doc. Code. OceanStor VTL6900 Technical White Paper. Issue 1.1. Date Huawei Technologies Co., Ltd.

HUAWEI TECHNOLOGIES CO., LTD. HUAWEI FusionServer X6800 Data Center Server

HUAWEI OceanStor Load Balancing Technical White Paper. Issue 01. Date HUAWEI TECHNOLOGIES CO., LTD.

Huawei Agile WAN Solution

HUAWEI Tecal E6000 Blade Server

SVN5800 Secure Access Gateway

Huawei One Net Campus Network Solution

Open, Agile, Reliable

Security Level: HUAWEI TECHNOLOGIES CO., LTD.

Huawei espace VTM Remote Bank Solution

Log Audit Ensuring Behavior Compliance Secoway elog System

Huawei Smart Education Solution

FOR SERVERS 2.2: FEATURE matrix

OceanStor UDS Massive Storage System Technical White Paper Reliability

RED HAT ENTERPRISE VIRTUALIZATION FOR SERVERS: COMPETITIVE FEATURES

Red Hat enterprise virtualization 3.0 feature comparison

Huawei N2000 NAS Storage System Technical White Paper

Huawei esight Brief Product Brochure

Windows Server ,500-user pooled VDI deployment guide

Windows Server 2012 R2 VDI - Virtual Desktop Infrastructure. Ori Husyt Agile IT Consulting Team Manager orih@agileit.co.il

Cloud Design and Deployment on Intel Xeon Processor-based Platforms

Introducing. Markus Erlacher Technical Solution Professional Microsoft Switzerland

Nutanix Tech Note. Configuration Best Practices for Nutanix Storage with VMware vsphere

Technical White Paper for the Oceanspace VTL6000

NET ACCESS VOICE PRIVATE CLOUD

CompTIA Cloud+ 9318; 5 Days, Instructor-led

Kaseya IT Automation Framework

CompTIA Cloud+ Course Content. Length: 5 Days. Who Should Attend:

Interact Intranet Version 7. Technical Requirements. August Interact

Customized Cloud Solution

SVN3000 Security Access Gateway SSL/IPSec VPN Access Gateway

YOUR STRATEGIC VIRTUALIZATION ALTERNATIVE. Greg Lissy Director, Red Hat Virtualization Business. James Rankin Senior Solutions Architect

Best Practices for Managing Storage in the Most Challenging Environments

Huawei FusionCloud. Agile and efficient cloud computing platform for Carrier Cloud

DigitalPersona Pro Enterprise

EMC BACKUP-AS-A-SERVICE

Dell Compellent Storage Center SAN & VMware View 1,000 Desktop Reference Architecture. Dell Compellent Product Specialist Team

Citrix MetaFrame Presentation Server 3.0 and Microsoft Windows Server 2003 Value Add Feature Guide

VMware vsphere 5.1 Advanced Administration

Desktop Virtualization. The back-end

United Security Technology White Paper

ORACLE VIRTUAL DESKTOP INFRASTRUCTURE

Cisco Application Networking Manager Version 2.0

Evolution from the Traditional Data Center to Exalogic: An Operational Perspective

VirtualclientTechnology 2011 July

Cloud Server. Parallels. Key Features and Benefits. White Paper.

Introduction to VMware EVO: RAIL. White Paper

Active Directory - User, group, and computer account management in active directory on a domain controller. - User and group access and permissions.

Features of AnyShare

Windows Embedded Security and Surveillance Solutions

Microsoft SQL Server 2008 R2 Enterprise Edition and Microsoft SharePoint Server 2010

Enterprise-class desktop virtualization with NComputing. Clear the hurdles that block you from getting ahead. Whitepaper

RED HAT ENTERPRISE VIRTUALIZATION

Contents UNIFIED COMPUTING DATA SHEET. Virtual Data Centre Support.

Quidway SVN3000 Security Access Gateway

Eudemon1000E Series Firewall HUAWEI TECHNOLOGIES CO., LTD.

alcatel-lucent vitalqip Appliance manager End-to-end, feature-rich, appliance-based DNS/DHCP and IP address management

Improving IT Operational Efficiency with a VMware vsphere Private Cloud on Lenovo Servers and Lenovo Storage SAN S3200

Overview of Avaya Aura System Platform

Why Choose VMware vsphere for Desktop Virtualization? WHITE PAPER

Enterprise Solution for Remote Desktop Services System Administration Server Management Server Management (Continued)...

An Oracle White Paper November Oracle Real Application Clusters One Node: The Always On Single-Instance Database

Feature Comparison. Windows Server 2008 R2 Hyper-V and Windows Server 2012 Hyper-V

An Analysis of Propalms TSE and Microsoft Remote Desktop Services

Enterprise Storage Solution for Hyper-V Private Cloud and VDI Deployments using Sanbolic s Melio Cloud Software Suite April 2011

IOmark- VDI. Nimbus Data Gemini Test Report: VDI a Test Report Date: 6, September

MODULE 3 VIRTUALIZED DATA CENTER COMPUTE

Trademark Notice. General Disclaimer

IBM TSM DISASTER RECOVERY BEST PRACTICES WITH EMC DATA DOMAIN DEDUPLICATION STORAGE

Cisco Nexus 7000 Series Supervisor Module

MaxDeploy Ready. Hyper- Converged Virtualization Solution. With SanDisk Fusion iomemory products

VMware vsphere Data Protection 6.0

The last 18 months. AutoScale. IaaS. BizTalk Services Hyper-V Disaster Recovery Support. Multi-Factor Auth. Hyper-V Recovery.

Paragon Protect & Restore

HUAWEI 9000 HD Video Endpoint V100R011. Security Maintenance. Issue 02. Date HUAWEI TECHNOLOGIES CO., LTD.

VMware vsphere 5.0 Boot Camp

Software to Simplify and Share SAN Storage Sanbolic s SAN Storage Enhancing Software Portfolio

LANDesk White Paper. LANDesk Management Suite for Lenovo Secure Managed Client

Veeam Cloud Connect. Version 8.0. Administrator Guide

1 Introduction to Microsoft Enterprise Desktop Virtualization (MED-V) Terminology Key Capabilities... 4

QULU VMS AND SERVERS Elegantly simple, Ultimately scalable

CloudEngine Series Data Center Switches. Cloud Fabric Data Center Network Solution

Fujitsu Private Cloud Customer Service Description

Whitepaper. NexentaConnect for VMware Virtual SAN. Full Featured File services for Virtual SAN

APC Enterprise KVM Switches

Cloud Hosting. Quick Guide 7/30/ EarthLink. Trademarks are property of their respective owners. All rights reserved.

OnApp Cloud. The complete platform for cloud service providers. 114 Cores. 286 Cores / 400 Cores

Dell Desktop Virtualization Solutions Stack with Teradici APEX 2800 server offload card

1 Network Service Development Trends and Challenges

Virtual Machine in Data Center Switches Huawei Virtual System

What is Virtualization and How Do I Audit It? Rick Schnierer and Chris Tennant

Transcription:

HUAWEI TECHNOLOGIES CO., LTD. Huawei FusionCloud Desktop Solution

TC FusionAccess desktop software Login page WI Connection control HDC User information DB Unified system FusionManager CT3100 VM Graphics processing VM Application Virtualization /Shared desktop ITA service User side CT5100 Data center Cloud platform software FusionSphere Cloud OS FusionCompute FusionStorage FusionNetwork VRM virtual resource CT6100 S-Box8V40 Hardware FusionCube 6000 E9000 S5500/S5300 V3 UHM unified hardware The Huawei FusionCloud desktop solution delivers virtual desktop applications based on the Huawei cloud platform. Huawei desktop access software is deployed on the cloud platform, enabling users to access cross-platform applications and even the entire desktop using thin clients (TCs) or any other device connected to the Internet. The Huawei FusionCloud desktop solution is an end-to-end solution covering cloud terminals, cloud hardware, cloud software, network and security, and consulting and integration design services. The Huawei FusionCloud desktop solution is highly secure and reliable, and delivers an agile, efficient and superior user experience. Huawei currently has more than 2,200 partners worldwide, provides services for about 400 institutions in 42 countries, and has deployed over 200,000 desktops. Based on extensive project implementation experience, the Huawei FusionCloud desktop solution is widely deployed in sectors such as government, healthcare, finance, education, telecom, energy, transportation, media, and manufacturing. Solution Highlights High Security and Reliability The Huawei FusionCloud desktop solution adopts a systematic multi-layered cloud-pipe-device-control security design covering terminals, networks, the cloud platform, and. The security design focuses on prevention to ensure enterprise information security. At the same time, providing customers with reliable protection from the terminal to the platform. Terminal security measures: terminal certificate; fingerprint;,usb Key multifactor authentication; desktop system without the active directory (AD); integrated port and peripheral Network security measures: VM security group isolation; secure VPN connections; encrypted transmission; secure Internet access Cloud platform security measures: distributed and hierarchical storage; data disk encryption; traceless data processing Management security measures: rights- and domain-based ; separation of rights; administrator behavior ; bastion hosts Desktop system high reliability: desktop connection diagnosis and recovery; port negotiation for desktop connections; desktop agent software protection; virtual desktop backup; Service disaster recovery. Superior User Experience Based on different application scenarios, the Huawei FusionCloud desktop solution optimizes high performance desktops to meet users' personalization requirements and provide a superior user experience. The SoftClient-split and TC-based SoftClient solutions ensure that the perceptual evaluation of speech quality (PESQ) averages 3.8. The system supports highly efficient image encoding and decoding. Lossless compression is used for non-natural images, repeated image data is not transmitted, and the display frame rate is auto-adaptive. These technologies

are used to smoothly display high-definition images with less bandwidth. The system supports intelligent video scenario recognition, dynamic video data auto-adaptation and dynamic frame rate adjustment, multimedia redirection and video hardware acceleration redirection technologies, as well as TCs with strengthened video decoding capabilities, providing smooth HD video experience. GPU passthrough, GPU sharing, and GPU hardware virtualization technologies meet the performance requirements of professional drawing applications, such as AutoCAD, and ProE. Server-based computing (SBC) implements centralized deployment and remote releasing of applications as well as mobile office.the system supports mainstream application software and is compatible with 1800+ service systems, 200+ peripherals, and 20+ TCs. High Agility and Efficiency The Huawei FusionCloud desktop solution supports integrated hardware and software optimization, simplifies operation and maintenance (O&M), and balances enterprise IT O&M cost and efficiency Service deployment can be reduced to only 2 hours, achieving rapid service rollout and capacity expansion. Additionally, resources can be flexibly scheduled to meet service scalability demands. These features improve IT service support capabilities and response speeds. Huawei FusionCloud desktop solution provides a unified cloud computing O&M platform, to achieve unified of physical and virtual resources, and desktop cloud business, unified alarm and fault. The system provides automatic tools to automatically collect and analyze enterprises' office environments (such as CPU, memory, and disk information), optimize user experience, migrate user data, simplify maintenance, and improve O&M efficiency. Automatic, flexible, rapid capacity expansion and automatic hardware poweron detection are supported. Linked clone and full memory desktops improve user experience and efficiency. Desktop self-service feature enables desktop operating scenarios for efficient self- of enterprises. Huawei's core software has independent intellectual property rights. Standard interfaces are opened to flexibly adapt to various industry applications, and solutions can be rapidly customized to meet industry requirements Main Features Feature High Security Terminal security User access security Transmission security Network security Cloud platform security Data security Management security Description TCs are verified to prevent unauthorized access. Terminal's ports are under control, such as USB interfaces, serial ports, and parallel ports. Some ports can be disabled. For example, USB reading/writing can be disabled to prevent illegal copying of data. TCs have no hard disk to store data. Data is stored in the data center to prevent information security breach. Fingerprint login authentication is supported. USB key login authentication is supported. Dynamic password login authentication is supported. Binding between TCs and user accounts is supported. After binding, users can log in to virtual desktops only in specified places. Desktop System Without the Active Directory (AD). Portal over HTTPS is supported. All transmission from the portal is encrypted. HDP over SSL is supported. To ensure information transmission security, the FusionCloud desktop system uses the SSL-based encryption and authentication mechanism for transmitting information from clients to servers and between internal components. The internal network is physically isolated from external networks. Remote access is secure. Employees on business trips can access their enterprise's data and application over SSL-VPN. The secure Internet access solution is provided to ensure that data cannot be transmitted from the intranet to the Internet. Cloud terminals with dual network ports for network isolation are provided. Working with the dual-screen display feature, the cloud terminals with two physical NICs isolate two virtual desktops and can display virtual desktops delivered by physically isolated networks. The desktop cloud system is hardened, and the Linux operating system is customized and hardened. Security patches, patch delivery, and upgrades are centrally managed. VM live migration is supported to enable seamless handover of services when a VM becomes faulty. Distributed storage and automatic backup are supported for data. Large files can be fragmented and stored in different physical areas. When one physical storage is damaged, the data can be restored using the backups stored somewhere else. VM snapshots can be provided based on the storage virtualization capability of the computing side. The snapshot function is independent of storage devices. Data disks are encrypted to prevent data loss. Data is completely removed from the disks of a reclaimed VM to prevent malicious users from using data recovery software to restore data. Virtual desktop isolation: Each virtual desktop user has logically independent VMs. Each VM has independent virtual CPUs (vcpus), virtual memory, and virtual network resources. Users can access only the VMs that are assigned to them. Virtual desktop antivirus security:user VMs are compatible with various antivirus software to protect user VMs against virus attacks. Support virtualization layer antivirus feature. Security hardening for the system OS and database Antivirus protection Management System Certificate Authentication Administrator operation log audit Rights- and domain-based

Feature High Reliability Redundancy of nodes VM HA mechanism Storage data reliability mechanism Rapid detection of BSOD faults Service performance fault monitoring Migration of disks on a faulty VM Excellent Experience Various terminals Carrier-class speech quality Professional graphics processing 120 Mbit/s HD video editing Multimedia playing SBC VIP desktop Multiple peripherals Full-memory desktop Efficient O&M Virtual desktop task Resource monitoring Unified user interface (UI) User experience optimization tool Branch office Unified Virtual Desktop Agent (HDA) upgrade User self-help console O&M tools Resource Reuse Memory Overcommitment Linked clone Storage thin provisioning Smart cache (icache) Description Major nodes work in active/standby mode. The standby node detects the health status of the active node through the heartbeat signal over the plane in real time. When detecting that the active node is faulty, the standby node immediately takes over services from the active node The desktop cloud system monitors the VM operating status in real time. When detecting that a VM or the PM is faulty, the system automatically re-creates the VM on a server that is running properly. This HA mechanism ensures quick recovery of faulty VMs. User data is stored on SAN devices. The SAN devices provide high reliability by using the redundant array of independent disk (RAID) technology and two hot spare disks for data backup. When detecting a BSOD in the VM OS, the FusionManager O&M System automatically restarts the VM. The automatic hardware diagnosis function enables the desktop cloud system to monitor hardware status in real time. When detecting a fault of a hardware component, the system automatically isolates the component, performs a switchover, restarts the component, and reloads software to it. If a VM is faulty and cannot start, you can mount the disk to a temporary VM and access the disk from this VM to copy the data on the disk. The system automatically reclaims the disk to release disk resources after a user backs up the data on the disk. Users can use a variety of terminals to access virtual desktops. The terminals have a wide choice for the OS, such as Windows, ios, Linux, and mobile platforms such as Android, ios, and BlackBerry. SoftClient-split and TC-based SoftClient solutions are supported, providing high speech quality and low delay. The delay is less than 500 ms, and the PESQ averages3.8. Mainstream IP call center software, such as CosmoCall Universe and Avaya are supported. The Huawei FusionCloud desktop solution provides GPU Pass-through, GPU Sharing and GPU hardware virtualization to support high-performance 2D/3D graphics processing and be compatible 2D/3D graphics software such as AutoCAD, Revit,3DS MAX, ProE, and Allegro. The HDP-based GPU passthrough solution supports 120 Mbit/s HD video editing. Multimedia redirection and video hardware acceleration redirection are supported to provide users with smooth multimedia experience over the desktop cloud system. The contents in the Flash can be redirected to clients for processing. Shared desktops are released based on SBC. Remote applications are released based on SBC. CPU and memory resources are guaranteed and monitored in real time for VIP desktops to provide better user experience for VIP users. Device mapping and port mapping modes can be used to support multiple dedicated peripherals, control virtual desktops, and share local resources. More than 200 peripherals are supported, including USB flash disk, USB printer, scanner, USB key, and fingerprint reader. System disks of VMs reside in the memory so that the VM disk read/write operation transfers to memory operations, which improves user experience, supports shutdown restoration, and improves efficiency. Tasks for periodically creating, starting, restarting, stopping, waking up, and hibernating VMs in batches can manage VMs in the system in an unattended manner. Scheduled tasks, periodical tasks, and task policies can be configured. The desktop cloud system monitors the CPU, memory, and network resource usage of VMs, and allows administrators to query VM status, unused VMs, and user login information so that the administrators can reclaim idle resources in a timely manner., and exports reports to provide northbound interface to achieve self-monitoring. The cloud system FusionManager incorporates desktop cloud service, virtualization platform O&M, and hardware, and provides a unified portal to improve efficiency. The desktop user experience optimization tool provides various functions, including the risk check, system optimization, voice quality optimization, historical case library, and software compatibility check. The branch office networking supports local deployment of remote modules. The VMs of branch offices can be provisioned and maintained in a unified manner, includes hardware and monitoring, virtual resource and monitoring, centralized alarm and operation log, single sign-on (SSO), and TC. The desktop cloud system provides the HDA automatic upgrade function, which enables administrators to manage software in a centralized manner. The desktop cloud system supports multiple upgrade modes, such as silent upgrade by using the PV driver, AD group policy upgrade, TSM software pushing, and upgrade by updating the linked clone parent volume. If the VM login fails due to VM system faults, a user can rectify the faults on the self-help console conveniently. This reduces the workload of system administrators. Complete tools are provided to collect the desktop system planning information. A log analysis tool is provided to analyze FusionAccess logs. A health check tool is provided to check the health of a system, display the check results, and generate health check reports. The hypervisor scheduling implements memory over commitment, which improves memory usage and VM density without deteriorating user experience. A shared read-only parent volume is used to provide the original VM OS, which reduces the used system disk space and system disk capacity configuration. The thin provisioning allows more virtual memory space to be allocated than the physical memory available. The physical memory space is allocated only for the virtual memory space where data is recorded. The virtual memory space where no data is recorded does not occupy the physical memory space. In linked clone virtual desktop scenarios, icache technology is used to dynamically identify and cache user shared storage resources in the memory, which greatly improves the data access performance.

Feature Load Balancing Scheduling Dynamic power Elastic Resource Reuse Backup and Disaster Recovery Virtual desktop online backup Service disaster recovery Open Interfaces Operations support system (OSS) interface Service provisioning interface Enterprise self-service interface Description The system will migrate some VMs to other computing servers with low CPU load, if the CPU load of a computing server exceeds the scheduling threshold. This ensures CPU load balancing between computing servers. If only a few VMs are used in a cluster, the VMs can be aggregated to a few hosts in the cluster and the other hosts can be stopped. This helps achieve energy conservation and emission reduction. When more VMs are required, the system must dynamically power on hosts to provide sufficient VMs. Elastic resource reuse allows services to use system resources of the cloud computing platform at different time periods, which maximizes the usage of cloud platform resources. Users use virtual desktops for work in daytime and release the computing resources at night. The system can use the released resources for other service tasks (such as image rendering and supercomputing) and release the resources after the service tasks are done. Individual users can manually or periodically back up the important data to the backup system. If virtual desktop data is lost due to faults, such as disk damage and unexpected deletion, users can restore data using the data in the backup system. Three backup modes, network attached storage (NAS) backup, VM HyperDP Backup and VM snapshot backup, are supported. Two remote desktop cloud system sites working in active/standby mode can be constructed. If the desktop cloud system on the active site is faulty and unavailable, the users of the active site can be automatically switched to the desktop cloud system on the standby site, achieving virtual desktop service disaster recovery. With the FusionManager OSS interface, enterprises can use their operation and maintenance (O&M) system to provide O&M services for the desktop cloud system. This facilitates centralized of the cloud platform and allows for optimal use of cloud platform resources. Users can customize service provisioning portal by using the virtual desktop service provisioning interface provided by the FusionAccess. In the desktop rented scene, FusionAccess provides enterprise self-service NBI. The enterprise platform can integrate this feature, complete service provisioning and billing; Technical Specifications VM Specifications VDI OS type APS server OS type Windows XP 32-bit Windows 7 32-bit/64-bit Windows 8.1 32-bit/64-bit Windows Server 2008 R2 64-bit Windows Server 2012 R2 64-bit Windows Server 2012 R2 64-bit Memory size supported by a VM 1GB-4GB(32bit) 1GB-512GB(64bit) Number of virtual network interface cards (NICs) per VM 1 to 12 Number of attached volumes supported by a VM 1 to 11 (1 system volume and 0 to 10 user volumes) System disk capacity supported by a VM 5 GB to 2 TB User disk capacity supported by a VM 1 GB to 2 TB Desktop color depth 24 bit/32 bit Desktop maximum resolution 2560*1600 System Specifications Maximum number of users supported by a set of FusionAccess Reference Architecture :20,000 FusionCube :5000 1 Maximum number of users supported by an HDC 5,000 Maximum number of concurrent users supported by an HDC 10 users per second Number of desktop groups supported by a set of FusionAccess 600 Number of VMs supported by a desktop group 600 Maximum number of clone volumes supported by a linked clone base volume 128 Maximum number of VMs with GPU hardware virtualization (Nvidia Grid K1) 4 pgpus/32 vgpus Maximum number of VMs with GPU hardware virtualization (Nvidia Grid K2) 2 pgpus/16 vgpus 50 full memory VMs On a single server startup time <5 minutes Note: 1: If FusionCube is deployed, a set of FusionAccess supports a maximum of 5,000 users. FusionManager centrally manages multiple sets of FusionCube, and therefore a maximum of 20,000 users are supported.

Success Stories By the end of 2014, Huawei FusionCloud Desktop solution is serving around 400 customers in 42 countries with over 400,000 users. Customers include government and public utilities, telecom, energy, finance, transportation, healthcare, education, media, manufacturing and other industries. Typical Industries Government Finance Telecom Education Healthcare Media Large enterprises Success Stories African Union International Conference Center, CETC (China Electronics Technology Group Corporation) Shenzhen Stock Exchange, Chongqing Rural Commercial Bank, Bank of China South Africa Branch Zhejiang Mobile, Shandong Unicom, Jiangsu Mobile TVTC (Technical and Vocational Training Corporation, Saudi Arabia), Ethiopia schoolnet, Huazhong University of Science and Technology, Philippines APC University, Nigeria Obafemi Awolowo University Spain Madrid Hospital, Fujian Longyan People Hospital, Hebei Qianan People Hospital CCTV, Phoenix CNE Hong Kong Airlines, Dagang Oilfield Group Co., Chilean copper company Codelco Copyright Huawei Technologies Co., Ltd. 2015. All rights reserved. No part of this document may be reproduced or transmitted in any form or by any means without prior written consent of Huawei Technologies Co., Ltd. Trademark Notice, HUAWEI, and are trademarks or registered trademarks of Huawei Technologies Co., Ltd. Other trademarks, product, service and company names mentioned are the property of their respective owners. General Disclaimer The information in this document may contain predictive statements including, without limitation, statements regarding the future financial and operating results, future product portfolio, new technology, etc. There are a number of factors that could cause actual results and developments to differ materially from those expressed or implied in the predictive statements. Therefore, such information is provided for reference purpose only and constitutes neither an offer nor an acceptance. Huawei may change the information at any time without notice. HUAWEI TECHNOLOGIES CO., LTD. Huawei Industrial Base Bantian Longgang Shenzhen 518129, P.R. China Tel: +86-755-28780808 Version No.: M3-035261-20150814-C-7.0 www.huawei.com