www.vce.com VCE Vision Intelligent Operations Version 2.6 Technical Overview



Similar documents
VCE Vision Intelligent Operations Version 2.5 Technical Overview

NMS300 Network Management System

Installing and Administering VMware vsphere Update Manager

Introduction to Junos Space Network Director

MANAGEMENT AND ORCHESTRATION WORKFLOW AUTOMATION FOR VBLOCK INFRASTRUCTURE PLATFORMS

vrealize Operations Manager Customization and Administration Guide

EMC Data Protection Advisor 6.0

About Network Data Collector

EMC Smarts Integration Guide

vsphere Client Hardware Health Monitoring VMware vsphere 4.1

VBLOCK SOLUTION FOR SAP APPLICATION HIGH AVAILABILITY

VCE PRODUCT LIFE CYCLE END OF LIFE POLICY OVERVIEW

EMC ViPR Controller. User Interface Virtual Data Center Configuration Guide. Version REV 01

INTEGRATING CLOUD ORCHESTRATION WITH EMC SYMMETRIX VMAX CLOUD EDITION REST APIs

Centerity Monitor. Technical Guide: Centerity VCE VBlock Monitoring V6.15

Juniper Networks Management Pack Documentation

SAP Landscape Virtualization Management Version 2.0 on VCE Vblock System 700 series

Cisco Application Networking Manager Version 2.0

Application Discovery Manager User s Guide vcenter Application Discovery Manager 6.2.1

HP VMware ESXi 5.0 and Updates Getting Started Guide

VBLOCK SOLUTION FOR SAP: SIMPLIFIED PROVISIONING FOR OPERATIONAL EFFICIENCY

Manage Dell Hardware in a Virtual Environment Using OpenManage Integration for VMware vcenter

Configuring and Managing Token Ring Switches Using Cisco s Network Management Products

LEVERAGE VBLOCK SYSTEMS FOR Esri s ArcGIS SYSTEM

NNMi120 Network Node Manager i Software 9.x Essentials

SapphireIMS 4.0 BSM Feature Specification

EMC ViPR Controller. ViPR Controller REST API Virtual Data Center Configuration Guide. Version

VXRACK SYSTEM Product Overview DATA SHEET

OnCommand Unified Manager

VMware vcenter Operations Manager Administration Guide

Cisco Data Center Network Manager for SAN

ENC Enterprise Network Center. Intuitive, Real-time Monitoring and Management of Distributed Devices. Benefits. Access anytime, anywhere

EMC ViPR Controller. Service Catalog Reference Guide. Version 2.3 XXX-XXX-XXX 01

Cisco Nexus 1000V Virtual Ethernet Module Software Installation Guide, Release 4.0(4)SV1(1)

vcenter Operations Management Pack for SAP HANA Installation and Configuration Guide

Server & Application Monitor

SolarWinds Network Performance Monitor powerful network fault & availabilty management

Migrating to vcloud Automation Center 6.1

White Paper. SAP NetWeaver Landscape Virtualization Management on VCE Vblock System 300 Family

Vistara Lifecycle Management

Management of VMware ESXi. on HP ProLiant Servers

McAfee Security. Management Client

vcenter Operations Manager for Horizon Supplement

SolarWinds Network Performance Monitor

VBLOCK SOLUTION FOR SAP: SAP APPLICATION AND DATABASE PERFORMANCE IN PHYSICAL AND VIRTUAL ENVIRONMENTS

Cisco Prime Data Center Network Manager Release 6.1

Forcepoint Stonesoft Management Center

SOLARWINDS NETWORK PERFORMANCE MONITOR

EMC E Exam Name: Virtualized Data Center and Cloud Infrastructure Design Specialist

Oracle Communications Session Delivery Manager

Advanced Service Design

Data Collection and Analysis: Get End-to-End Security with Cisco Connected Analytics for Network Deployment

HP Server Management Packs for Microsoft System Center Essentials User Guide

Enterprise IT is complex. Today, IT infrastructure spans the physical, the virtual and applications, and crosses public, private and hybrid clouds.

SapphireIMS Business Service Monitoring Feature Specification

MicroStrategy Course Catalog

IMPROVING VMWARE DISASTER RECOVERY WITH EMC RECOVERPOINT Applied Technology

AUTOMATED MONITORING AND EVENT RECOVERY OF VBLOCK INFRASTRUCTURE PLATFORMS WITH IPSOFT MANAGED SERVICE

EMC Unisphere: Unified Storage Management Solution for the VNX2 Series

EMC VSPEX END-USER COMPUTING

CiscoWorks Resource Manager Essentials 4.1

CiscoWorks Resource Manager Essentials 4.3

FortiAnalyzer VM (VMware) Install Guide

EMC Virtual Infrastructure for SAP Enabled by EMC Symmetrix with Auto-provisioning Groups, Symmetrix Management Console, and VMware vcenter Converter

VMware vcenter Operations Manager Enterprise Administration Guide

RUGGEDCOM NMS. Monitor Availability Quick detection of network failures at the port and

A Comprehensive Cloud Management Platform with Vblock Systems and Cisco Intelligent Automation for Cloud

Radia Cloud. User Guide. For the Windows operating systems Software Version: Document Release Date: June 2014

PROSPHERE: DEPLOYMENT IN A VITUALIZED ENVIRONMENT

SolarWinds Network Performance Monitor

Patch Management. Module VMware Inc. All rights reserved

Vblock Systems hybrid-cloud with Cisco Intercloud Fabric

Monitor the Cisco Unified Computing System

Management Pack for vrealize Infrastructure Navigator

Network Management System (NMS) FAQ

EMC UNISPHERE FOR VNXe: NEXT-GENERATION STORAGE MANAGEMENT A Detailed Review

Consolidated Monitoring, Analysis, and Automated Remediation For Hybrid IT Infrastructures

WHITE PAPER September CA Nimsoft For Network Monitoring

EMC AVAMAR INTEGRATION WITH EMC DATA DOMAIN SYSTEMS

The Remote Infrastructure Management Platform

can you improve service quality and availability while optimizing operations on VCE Vblock Systems?

vcenter Support Assistant User's Guide

TimePictra Release 10.0

SNMP Adapter Installation and Configuration Guide

MRV EMPOWERS THE OPTICAL EDGE.

NCS. EMS/NMS Platforms for Network Equipment Providers

Security FAQs (Frequently Asked Questions) for Xerox Remote Print Services

MRV EMPOWERS THE OPTICAL EDGE.

CISCO UNIFIED COMMUNICATIONS FOR MIDSIZE DATA CENTERS ON VBLOCK SYSTEM 200

HP OneView Administration H4C04S

CONVERGE APPLICATIONS, ANALYTICS, AND DATA WITH VCE AND PIVOTAL

EMC UNISPHERE FOR VNXe: NEXT-GENERATION STORAGE MANAGEMENT A Detailed Review

VMware vcenter Operations Manager for Horizon Supplement

VCE SUPPORT OVERVIEW. Investment Protection and Welcome Peace of Mind

EMC Data Domain Management Center

Installing and Configuring vcenter Multi-Hypervisor Manager

Kaseya Traverse. Kaseya Product Brief. Predictive SLA Management and Monitoring. Kaseya Traverse. Service Containers and Views

Zenoss for Cisco ACI: Application-Centric Operations

Simplifying. Single view, single tool virtual machine mobility management in an application fluent data center network

Transcription:

www.vce.com VCE Vision Intelligent Operations Version 2.6 Technical Overview Document revision 2.0 April 2015

VCE Vision Intelligent Operations Version 2.6 Technical Overview Revision history Revision history Date Document revision Description of changes April 2015 2.0 Updated to include the RCM Content Prepositioning feature. December 2014 1.0 New release of the product. 2

Contents VCE Vision Intelligent Operations Version 2.6 Technical Overview Contents Introduction...4 Accessing VCE documentation...5 VCE Vision Intelligent Operations...6 Introduction to VCE Vision software...6 Products and features... 6 Architecture... 9 VCE Vision System Library...10 Introduction to System Library...10 Discovery...11 Identification... 12 Health monitoring... 12 Logging and events... 13 Configuration backup and recovery...14 VCE Vision Plug-in for vcenter... 17 Plug-in for vcenter overview... 17 VCE Vision software and Vblock System Compliance...18 Compliance Checker... 18 Compliance Policy Designer... 19 RCM Content Pre-positioning...20 RCM Content Pre-positioning...20 VCE Vision Adapter for vcenter Operations Manager... 22 Adapter for vcenter Operations Manager... 22 Adapter for vcenter Operations Manager dashboards... 22 Application Programming Interfaces...24 API for System Library... 24 API for Compliance Checker... 24 API for Vision Security...24 SNMP Integration...26 SNMP with VCE Vision software...26 Software Development Kit... 27 SDK for VCE Vision software... 27 3

VCE Vision Intelligent Operations Version 2.6 Technical Overview Introduction Introduction This document provides a high-level technical overview of the VCE Vision Intelligent Operations software. The target audience for this document includes customers, VCE varchitects, and VCE partners. The VCE Glossary provides terms, definitions, and acronyms that are related to the Vblock System. To suggest documentation changes and provide feedback on this book, send an e-mail to docfeedback@vce.com. Include the name of the topic to which your feedback applies. 4

Accessing VCE documentation VCE Vision Intelligent Operations Version 2.6 Technical Overview Accessing VCE documentation Select the documentation resource that applies to your role. Role Customer VCE Partner Cisco, EMC, VCE, or VMware employee VCE employee Resource support.vce.com A valid username and password are required. Click VCE Download Center to access the technical documentation. partner.vce.com A valid username and password are required. portal.vce.com sales.vce.com/saleslibrary or vblockproductdocs.ent.vce.com 5

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision Intelligent Operations VCE Vision Intelligent Operations Introduction to VCE Vision software The VCE Vision software suite provides an integrated set of software products for managing a data center. VCE Vision software is the first software suite to provide an intelligent solution for managing operations in a converged infrastructure environment. These tools enable and simplify converged operations by dynamically providing a high level of intelligence into your existing management toolset. VCE Vision software enables VCE customers and third-party consumers to know that the Vblock System exists, where it is located, and what components it contains. It reports on the health or operating status of the Vblock System. VCE Vision software also lets you rapidly verify that a Vblock System is running the currently supported software or firmware for a particular Release Certification Matrix (RCM). Additionally, you can use VCE Vision software to ensure your Vblock System complies with VCE security best practices. VCE Vision software effectively acts as a mediation layer between your system and the management tools you use now. The software allows for intelligent discovery by providing a continuous, near real-time perspective of your compute, network, storage, and virtualization resources as a single object, ensuring that your management tools reflect the most current state of your Vblock System. VCE Vision software provides the Vblock System information natively through VMware vcenter Server and vcenter Operations Manager. You can also consume information about a Vblock System through a public REST API or SNMP interface. Products and features VCE Vision software is a suite of products that provide a robust feature set for your data center. VCE Vision software includes the following products: VCE Vision System Library VCE Vision Plug-in for vcenter VCE Vision Adapter for vcenter Operations Manager VCE Vision Compliance Checker VCE Vision API for Compliance Checker VCE Vision API for Vision Security VCE Vision SDK VCE Vision software provides the following features: Discovery 6

VCE Vision Intelligent Operations VCE Vision Intelligent Operations Version 2.6 Technical Overview Allows you to manage your Vblock System components based on their most current state by: Performing an initial discovery in the factory to identify the Vblock System as it was built. Building a comprehensive Vblock System model including the management infrastructure. Discovering both logical and physical components of the Vblock System and updating management tools in near real time. Performing periodic rediscovery during operation ensuring an up-to-date representation of the Vblock System. Performing regular backups of the Vblock System component configuration files to allow for disaster recovery. Identification Provides a converged, single system view of each Vblock System by: Presenting a unique identity for each Vblock System. Providing system-specific information, such as the serial number, model, and location. Health monitoring Expedites the diagnosis of potential problems and speeds remediation through: Providing a health score that is based on VCE design principles. Producing a consolidated health status at the Vblock System level, while also providing the ability to drill down into issues at the component level. Identifying potential issues in the health of the system. Producing a streamlined information flow. Security Enables you to control access to VCE Vision software and provides security hardening guidelines: Using role-based access control (RBAC) to perform security authorization checks for any client applications making an API call. Integrating with Active Directory for authentication and authorization. Providing best practices that you can use to easily assess your Vblock System security. Logging and event messaging 7

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision Intelligent Operations Enables rapid troubleshooting with built-in logging capabilities that: Forwards aggregated log data from VCE Vision software to other log hosts. Translates events from vendor formats and protocols to standard formats and protocols. Segregates application logs from authentication and authorization (AA) logs. Expedites data collection for troubleshooting. Uses the RabbitMQ event messaging model (messaging system based on the AMQP standard) to publish messages to the RabbitMQ broker. Allows clients to subscribe to the broker using customized routing keys to filter and receive messages. Validation Ensures reliability and performance of your Vblock System by: Verifying the Vblock System is compliant with the VCE Release Certification Matrixes and Security Hardening Guides. Enabling you to validate successful upgrades to Vblock System software. Presenting output in SCAP Result Format for easy integration into other services. Open API Simplifies and speeds integration with third-party management solutions by: Providing an easy way for third-party developers to integrate with the VCE Vision software application programming interfaces (Open APIs). Supporting a RESTful model of application development. Providing Java bindings that allow developers to access the APIs from Java without having to make REST calls. Providing a software development kit (SDK) that provides sample code and tools. Native integration with VMware products Seamlessly integrates with familiar management tools by: Displaying information from the Vblock System in VMware vcenter. Enabling data center managers to use the optional VCE Vision Adapter for vcenter Operations Manager to view metrics from a Vblock System. Toolkit for third-party developers 8

VCE Vision Intelligent Operations VCE Vision Intelligent Operations Version 2.6 Technical Overview Provides the foundation for the VCE Developer Program through: A new VCE Developer portal Open APIs API reference documentation Release Certification Matrix (RCM) Content Pre-positioning Provides an inventory of RCM content on your Vblock System that you can use to: Easily maintain compliance with the current RCM. Quickly and reliably upgrade to new RCM versions. Quickly and reliably upgrade to new RCM versions. Architecture Depending on your Vblock System, VCE Vision software resides on either the logical or physical Advanced Management Platform (AMP). Logical AMP Vblock System 100 Vblock System 200 Physical AMP Vblock System 540 Vblock System 300 family Vblock System 700 family 9

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision System Library VCE Vision System Library Introduction to System Library VCE Vision System Library provides the foundation for the VCE Vision software suite. System Library performs core functions and enables communication between VCE Vision software, Vblock System components, and applications in your network. System Library performs the following core functions: Discovering the Vblock System and its components Discovering identity information about the Vblock System Calculating the health or operating status of the Vblock System and its components Forwarding events and messages from the Vblock System The following diagram is a high-level overview of integration between System Library and various products and protocols: 10

VCE Vision System Library VCE Vision Intelligent Operations Version 2.6 Technical Overview Discovery To perform discovery, System Library uses different protocols to gather the inventory, location, and health of the Vblock System. System Library then populates the information that it discovers into an object model. That object model resides within a database and is exposed through REST and SNMP interfaces. What does System Library discover? System Library discovers the Vblock System itself and the following physical components and logical entities: Group Physical components Logical entities Compute All ESXi Network All VLANs Storage All Storage groups RAID groups LUN relationships to RAID and storage groups Masking records Mapping records - LUNs mapped to FA ports so that ports can see the LUNs for access Management All Not applicable How does System Library discover a Vblock System? The initial discovery process takes place when the Vblock System is manufactured. Initial discovery relies on an XML file that contains build and configuration information about the Vblock System. System Library uses that XML file to populate basic information about the Vblock System and establish communication with components. After initial discovery System Library uses the following methods to discover the Vblock System and its physical components and logical entities: XML API Simple Network Management Protocol (SNMP) Storage Management Initiative Specification (SMI-S) Vendor CLI's, such as EMC Unisphere CLI (UEMCLI) How often does discovery occur? System Library performs discovery every 15 minutes by default. However, you can change how often discovery runs to meet your business requirements. 11

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision System Library Identification A Vblock System and the components within a Vblock System have properties that uniquely identify them to System Library. System Library populates these properties to the object model so that you can access them and identify each Vblock System and all components. Properties that System Library uses for identification include the following: Vblock System serial number Vblock System model Vblock System location System Library updates the object model during the regular discovery process if you make any changes to the properties. Health monitoring System Library performs health monitoring of your Vblock System to reflect the operational status of the system itself as well as the health of each component and subcomponent. Review what components System Library monitors for health status and learn what each possible health status means. System Library monitors health or operational status of the following: Individual sub-components of a Vblock System The compute, network, storage, and management components of a Vblock System Vblock System as a whole The health of a Vblock System reflects the operational status of each component and the overall ability of a Vblock System to function. System Library calculates the health status of each component in a Vblock System, such as a network switch, a compute server, or a storage array, based on the health status of the subcomponents. System Library then calculates the health status of a Vblock System as a whole from the health status of each component. Health status Operable Minor Description All components have optimal health. The Vblock System is operating as expected. An issue exists with one or more components. This status does not represent a significant impact to the overall health of a Vblock System. 12

VCE Vision System Library VCE Vision Intelligent Operations Version 2.6 Technical Overview Health status Degraded Major Critical Inoperable Not Applicable Description One or more components are operating with degraded bandwidth, capacity, or redundancy. The Vblock System might be operating with decreased performance. One or more components has a significant issue. The Vblock System might be operating with decreased performance and at risk of failure. One or more components has a fatal or otherwise serious issue. The Vblock System might not be fully operational and is at significant risk of failure. The Vblock System, or a component of the Vblock System, is not operating by design or a failure has occurred. One or more components does not report health status to System Library. This status occurs when components are disabled or excluded from health monitoring. This status does not affect the overall health of the Vblock System. Logging and events Each component in a Vblock System generates events or log messages. System Library collects and standardizes these messages and writes them to a local log file or forwards to a remote server. You can use these log files to analyze and isolate possible issues with your Vblock System. Syslog Messages System Library makes the following syslog messages available: Component log messages Application log messages SNMP and Advanced Message Queuing Protocol (AMQP) Events SNMP and AMQP handle events from the following sources: SNMP traps CIM indications Cisco's XML API System Library does not discover the following components. As a result, System Library does not capture events or logs from these components: EMC Avamar EMC Data Domain 13

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision System Library EMC RecoverPoint Configuration backup and recovery Configuration backup and recovery ensures that you do not lose any configuration data for your Vblock System or System Library. System Library configuration backup VCE Vision software automatically backs up System Library configuration files. When the backup task runs, it creates a.tar file that contains: System Library configuration files from the following directories: /opt/vce/fm/conf /etc/snmp/snmpd.conf /etc/logrotate.d/syslog /etc/srconf/agt/snmpd.cnf JBoss configuration files System Library administrative, configuration, and model database schemas and data files By default, the backup occurs every day at 12:00 AM. A maximum of seven backups are saved on the system. System Library configuration files are backed up to /opt/vce/fm/backup/. PostgreSQL database backup In addition to System Library configuration files, VCE Vision software automatically backs up PostgreSQL database schema and data so that you can restore VCE Vision software to a working state, if required. VCE Vision software creates backups of the database in tar.gz file format to the /opt/vce/fm/ backup/postgres/ directory. By default, VCE Vision software stores the PostgreSQL database backups for the current day and the previous two days. The following example describes how VCE Vision software stores PostgreSQL database backup files: At 11:59 PM on Tuesday, VCE Vision software stores backup files for Tuesday, Monday, and Sunday. At 12:00 AM on Wednesday, VCE Vision software stores backup files for Wednesday, Tuesday, and Monday. VCE Vision software deletes the backup files for Sunday. 14

VCE Vision System Library VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision software runs the task to back up the database schema and data every 10 minutes. You can change the schedule and frequency of the backup tasks. Likewise, you can run backups on demand outside of the scheduled tasks. Vblock System configuration backup A Vblock System is deployed with configuration backups for each Vblock System component, as follows: Vblock System Vblock System 100 Vblock System 200 family Component Cisco Catalyst 3750-X Switch Cisco Nexus 3064-T Switch Vblock compute servers (CIMC) Management servers (CIMC) Cisco Nexus 5000 Switch Cisco Nexus 1000V Switch Cisco Nexus 3000 Cisco C-Series server(s) Vblock Compute Servers (CIMC) EMC VNX Management servers (CIMC) Vblock System 300 family Cisco MDS 9000 Cisco Nexus 5000 Cisco Nexus 1000V Cisco Nexus 3000 Cisco UCS fabric interconnects (UCS Manager) EMC VNX EMC VNXe (AMP-2HA) Management servers (CIMC) Vblock System 540 Cisco MDS 9000 Cisco Nexus 3000, 5000, 7000, and/or 9000 Cisco Nexus 1000V Cisco UCS fabric interconnects (UCS Manager) EMC XtremIO EMC VNXe (AMP-2HA) Management servers (CIMC) 15

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision System Library Vblock System Component Vblock System 700 family Cisco MDS 9000 Cisco Nexus 3000, 5000, 7000, and/or 9000 Cisco Nexus 1000V Cisco UCS fabric interconnects (UCS Manager) EMC Symmetrix VMAX EMC VNXe (AMP-2HA) Management servers (CIMC) Vblock Specialized Systems for Extreme Applications Cisco UCS fabric interconnects (UCS Manager) Cisco Nexus 3000 Cisco Nexus 5000 Cisco Nexus 1000V EMC VNXe EMC XtremIO Management servers (CIMC) By default, the Vblock System Configuration Collector backs up configuration files twice a day at 1:30 AM and 1:30 PM to the following directories: /opt/vce/backup/amp2 /opt/vce/backup/storage /opt/vce/backup/network /opt/vce/backup/compute 16

VCE Vision Plug-in for vcenter VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision Plug-in for vcenter Plug-in for vcenter overview The Plug-in for vcenter integrates with the VMware vsphere Web Client. It uses the API for System Library to provide a system-level view of a Vblock System cluster. The Plug-in for vcenter also enables you to view and monitor information about all the components in a Vblock System. The graphical user interface of the Plug-in for vcenter provides a list view that displays the name of a Vblock System, as well as its overall system health, description, prior state, serial number, and location. Additional information, such as the health status of the Vblock System and its components are displayed in the list view. The Plug-in for vcenter integrates with the VCE Vision Compliance Checker, which is required for complete monitoring of your Vblock System. Together, they enable you to run reports that provide detailed information about how closely your Vblock System complies with established policies and profiles you select. 17

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision software and Vblock System Compliance VCE Vision software and Vblock System Compliance Compliance Checker The Compliance Checker works with the Plug-in for vcenter to determine if your Vblock System is compliant with a Release Certification Matrix (RCM) and established security policies. How the Compliance Checker works The Compliance Checker scans your Vblock System settings and compares those values to the expected values in VCE compliance policies and profiles. The Compliance Checker displays the results of the scans in detailed compliance reports. These reports show an overall compliance score that tells you how closely the Vblock System complies to a policy. The Compliance Checker uses these compliance policy groups to ensure that your Vblock System is compliant. The compliance report also lists all components that were scanned for compliance and displays each individual result. You can save the results of the compliance scan to your local system in order to: Send report content to the VCE Support organization for help in analyzing and correcting errors Compare with other scan reports You can save compliance results as follows: PDF document Comma-separated value (CSV) file ZIP archive of the Security Content Automation Protocol (SCAP) content (OVAL and XCCDF files) ZIP archive of the PDF document, CSV file, and SCAP content The Compliance Checker also provides enhanced features such as: Profile tailoring that lets you modify existing compliance policies to fit your environment. Scheduling compliance scans with an intuitive wizard style user interface. 18

VCE Vision software and Vblock System Compliance VCE Vision Intelligent Operations Version 2.6 Technical Overview Available compliance content packs VCE provide the following content packs for Vblock System compliance: Vblock System Release Certification Matrix (RCM) RCMs define software, firmware, and hardware that VCE tests and validates as supported for a Vblock System. You can run compliance scans against an RCM to easily identify Vblock System compliance with that RCM. VCE security hardening guidelines (Security Compliance Validation) VCE security hardening guidelines optionally provide security best practices that help you identify risks that might exist on the Vblock System. The scan uses the VCE security standards described in the VCE Vblock System Security Guide: Configuration. VCE Security Alert (VSA) and VCE Technical Alert (VTA) The VSA enables you to rapidly identify and remediate security vulnerabilities for Vblock System components. The VTA enables you to quickly assess and resolve technical issues for Vblock System components. Compliance Policy Designer The Compliance Policy Designer (CPD) is a standalone HTML5 application that allows you to create or edit VCE Vision software compliance policies. This application allows for a customized extension of the compliance framework to support additional objects discovered in the VCE Vision software object model. Policies that are generated from the CPD can be added to the VCE Vision Plug-in for vcenter to take full advantage of the VCE Vision software compliance framework. 19

VCE Vision Intelligent Operations Version 2.6 Technical Overview RCM Content Pre-positioning RCM Content Pre-positioning RCM content pre-positioning VCE Vision software enables you to retrieve software and firmware for components in your Vblock System to easily maintain compliance with the current Release Certification Matrix (RCM) and more efficiently upgrade to new RCM versions. RCM content pre-positioning enables you to perform tasks such as the following either through the VCE Vision Plug-in for vcenter or a command line interface in VCE Vision software: Viewing RCM content downloaded to your Vblock System. Discovering RCM content available for download. Downloading RCM content. Monitoring the status of RCM content downloads. Managing downloaded RCM content. When you decide to upgrade your Vblock System to a new RCM version, VCE Vision software provides you with a list of all available RCM versions on the RCM content distribution network. To ensure you get a list of RCM content that applies to your Vblock System, VCE Vision software performs an entitlement check using the Vblock System serial number. 20

RCM Content Pre-positioning VCE Vision Intelligent Operations Version 2.6 Technical Overview The following diagram illustrates how RCM content is uploaded to the RCM content distribution network and then downloaded to the Vblock System: Figure 1: RCM content management 21

VCE Vision Intelligent Operations Version 2.6 Technical Overview VCE Vision Adapter for vcenter Operations Manager VCE Vision Adapter for vcenter Operations Manager Adapter for vcenter Operations Manager The Adapter for vcenter Operations Manager is an optional product that discovers and monitors Vblock System hardware and VMware vcenter software components. The Adapter for vcenter Operations Manager works with VMware vcenter Operations Manager to collect and analyze component metrics. Metric data include health, operability, and resource availability that measure the performance of Vblock System components and determine the health and status of the system. The Adapter for vcenter Operations Manager uses the following processes to gather and analyze metrics: Process Describe Auto-discovery Manual discovery Description Determines the types of resources to import and the set of metrics to collect from each type of resource. This process runs automatically during deployment. Identifies Vblock System resources. The Adapter for vcenter Operations Manager queries the Vblock System and retrieves a list of the monitored components, or resources. After the query is complete, new resources are created in VMware vcenter Operations Manager and metric data is collected. This is the default method for collecting Vblock System resource information. Monitors components that are manually discovered and added by users. Use the Resource Discovery option in VMware vcenter Operations Manager to manually add Vblock System resources. Manual discovery is useful if you want to monitor only a subset of Vblock System components. Adapter for vcenter Operations Manager dashboards The Adapter for vcenter Operations Manager adds four dashboards to vcenter Operations Manager. These dashboards use widgets to show the health of your Vblock System and each component. Dashboards Metrics dashboard Presents a consolidated view of Vblock System resource metrics. Heat Maps dashboard Shows the health score of your Vblock System. Inventory dashboard Shows a full inventory of Vblock System resources with associated relationships in a tree structure. Alerts dashboard 22

VCE Vision Adapter for vcenter Operations Manager VCE Vision Intelligent Operations Version 2.6 Technical Overview Shows all the operational alerts from Vblock System resources. Dashboard widgets Vblock System component dashboards use widgets to show the health of compute, storage, and network components. You can connect dashboard widgets to more than one Vblock System. Dashboard widget Resources Alerts Metric Selector Health Tree Metric Sparklines Heat Map Description Lists all Vblock Systems discovered by all Adapter for vcenter Operations Manager instances. This widget shows all categorical components in a Vblock System, such as compute, network, and storage. The widget shows the current health score for all discovered Vblock System component groups. Resource health scores are determined by comparing current metric values to reference values. vcenter Operations Manager determines a metric's reference value by combining values observed over time with predefined hard thresholds. Shows alerts for components selected in the Health Tree. The Alerts widget also shows alerts for compute, network, or storage components and their subcomponents. Alerts shown here are also shown in the Alert Summary page and on component icons in the Health Tree. Shows available metrics for components selected in the Health Tree. Shows Vblock System components in the following categories: compute, storage, and network. Connected components are shown in a hierarchical manner. Alerts and sparklines are shown for selected components. Health alerts are shown for the Vblock System, compute, storage, and network categories. The Health Tree widget can also show the parent-child relationship between blade servers and active vsphere ESXi hosts. Shows a line graph of health values over time. The widget shows the values collected for aggregate Vblock System components selected in the Health Tree. Shows all components for all Vblock Systems that the Adapter monitors. The rectangles in this widget represent all components in each Vblock System that you monitor. Components that are not in collection mode are displayed as white squares. Note: This widget is available only in the Main dashboard. 23

VCE Vision Intelligent Operations Version 2.6 Technical Overview Application Programming Interfaces Application Programming Interfaces API for System Library The API for System Library provides a set of RESTful resources for retrieving information about a Vblock System. The API provides a complete set of resources that allow you to retrieve data on the entire model associated with each Vblock System. Representational State Transfer (REST) is an application architecture for distributed systems that relies on HTTP. Each REST call specifies a URL for a resource along with an HTTP method such as GET, PUT, or POST. The URLs can be tested with most standard browsers. The response for each URL is typically formatted in XML. All URLs for the API for System Library that retrieve data about the model use the GET method and return an XML response. Some URLs retrieve configuration information about the system and return archived content in.zip files. You can find complete reference documentation for the API for System Library on the VCE Developer Portal. API for Compliance Checker The API for Compliance Checker is a set of RESTful resources that enable you to work with Vblock System compliance. The API for Compliance Checker allows you to: Perform compliance checks. Customize or add new policies and profiles. Create, update, or delete schedules to perform scans at desired intervals. Obtain detailed reports for further analysis. You can find complete reference documentation for the API for Compliance Checker on the VCE Developer Portal. API for Vision Security The API for Vision Security provides a set of RESTful resources for controlling access to system resources through role-based access control (RBAC). You use RBAC to restrict access to system resources to only those users who have been authorized to use them. 24

Application Programming Interfaces VCE Vision Intelligent Operations Version 2.6 Technical Overview The API for Vision Security allows you to perform the following tasks to manage users: Create users Create roles Assign roles to permissions Assign users to roles The API for Vision Security relies on a set of predefined permissions. Each permission has a name, a description, and one or more internal resource identifiers that specify the type of access granted with the permission. Some resource identifiers apply to REST API calls, whereas others apply to application functions that are not REST-based. All URLs for the API for Vision Security that retrieve data use the GET method and return an XML response. Several of the URLs use the POST, PUT, and DELETE methods to create, modify, and delete RBAC objects. These operations also use XML as the content type. You can find complete reference documentation for the API for Vision Security on the VCE Developer Portal. 25

VCE Vision Intelligent Operations Version 2.6 Technical Overview SNMP Integration SNMP Integration SNMP with VCE Vision software You can enable communication between VCE Vision software and your network management system (NMS) using SNMP to monitor and maintain your Vblock System. VCE Vision software provides a set of Management Information Base (MIB) modules, and supports various RFC MIB modules, that define the structure of the Vblock System. System Library populates these MIB modules so that your NMS can access the various objects in the Vblock System. System Library can also send SNMP traps and events to your NMS to facilitate discovery polling and report health status changes or issues with physical and logical components. 26

Software Development Kit VCE Vision Intelligent Operations Version 2.6 Technical Overview Software Development Kit SDK for VCE Vision software The SDK provides a set of examples and components that third-party developers can use to build custom applications that run with VCE Vision software. The examples provide an introduction to application development with VCE Vision software APIs. SDK components Sample code that illustrates how to use the VCE Vision software APIs. The sample code shows you how to: Use Java and REST to access Vblock System resource information through the API for System Library. Access information about Vblock System events using AMQP. Work with the API for Compliance Checker. Use the API for Vision Security. Java binding library that accesses the VCE Vision software APIs without having to make REST calls. Schema files for the following: API for System Library System Library FM Event API for Compliance Checker API for Vision Security SNMP MIBs for the Vblock System SDK simulator The SDK works with a simulator for VCE Vision software. The SDK simulator lets you interact with data through REST and SNMP to develop applications without having to access VCE Vision software on an actual Vblock System. 27

VCE Vision Intelligent Operations Version 2.6 Technical Overview Software Development Kit Access the SDK You can download the SDK for VCE Vision software from the VCE Developer Portal. The Developer Portal provides registered developers with quick and easy access to all of the resources necessary to develop functionality using VCE Vision software APIs. Related information VCE Developer Portal 28

www.vce.com About VCE VCE accelerates the adoption of converged infrastructure and cloud-based computing models that dramatically reduce the cost of IT while improving time to market for enterprises and service providers globally. Through its leading Vblock Systems, VCE delivers the industry's only true converged infrastructure, leveraging Cisco compute and network technology, EMC storage and data protection, and VMware virtualization and virtualization management. VCE solutions are available through an extensive partner network and cover horizontal applications, vertical industry offerings and application development environments, enabling customers to focus on business innovation instead of integrating, validating, and managing IT infrastructure. For more information, go to http://www.vce.com. All rights reserved. VCE, Vblock, VCE Vision, and the VCE logo are registered trademarks or trademarks of VCE Company, LLC. and/or its affiliates in the United States or other countries. All other trademarks used herein are the property of their respective owners. 29