Hyper-V Optimizations & Security for Private Clouds. from Nutanix & 5nine Software

Similar documents
Security and Billing for Azure Pack. Presented by 5nine Software and Cloud Cruiser

Webinar: Op1mize & Secure Your Hyper- V VDI Deployment. Presented by:

Making IT Infrastructure Invisible. Michael Berthiaume Systems Engineer Nutanix VCDX # 84

Embracing the power of the Enterprise Cloud. Paul Phillips - Vice President Western Europe

Nutanix Solutions for Private Cloud. Kees Baggerman Performance and Solution Engineer

Server & Cloud Management

Implementing and Managing Windows Server 2008 Hyper-V

6422: Implementing and Managing Windows Server 2008 Hyper-V (3 Days)

MICROSOFT CLOUD REFERENCE ARCHITECTURE: FOUNDATION

Microsoft Private Cloud Fast Track

Bring the cloud to your datacenter

Microsoft Private Cloud

Course Syllabus. Implementing and Managing Windows Server 2008 Hyper-V. Key Data. Audience. At Course Completion. Prerequisites

Security. Environments. Dave Shackleford. John Wiley &. Sons, Inc. s j}! '**»* t i j. l:i. in: i««;

Powering the Next Generation Cloud with Azure Stack, Nano Server & Windows Server 2016! Jeff Woolsey Principal Program Manager Cloud & Enterprise

Private Clouds Can Be Complicated: The Challenges of Building and Operating a Microsoft Private Cloud

Virtualization Support - Real Backups of Virtual Environments

Outline SSS Microsoft Windows Server 2008 Hyper-V Virtualization

Acronis Backup Product Line

Realizing the Benefits of Hybrid Cloud. Anand MS Cloud Solutions Architect Microsoft Asia Pacific

Part 1 - What s New in Hyper-V 2012 R2. Clive.Watson@Microsoft.com Datacenter Specialist

M6422A Implementing and Managing Windows Server 2008 Hyper-V

Microsoft Windows Server 2008: MS-6422 Implementing and Managing Hyper V Virtualization 6422

Availability for the modern datacentre Veeam Availability Suite v8 & Sneakpreview v9

Netzwerkvirtualisierung? Aber mit Sicherheit!

Cloud OS. Philip Meyer Partner Technology Specialist - Hosting

Building disaster-recovery solution using Azure Site Recovery (ASR) for Hyper-V (Part 1)

System Center 2012 Suite SYSTEM CENTER 2012 SUITE. BSD BİLGİSAYAR Adana

HOW TO PROTECT YOUR VIRTUAL DESKTOPS AND SERVERS? Security for Virtual and Cloud Environments

APS Connect Denver, CO

Building High Growth Services on the Microsoft Cloud Platform. Rich Cannon Senior Director, US Partner Hosting and Cloud Services

Infrastructure Provisioning with System Center Virtual Machine Manager

Simplified Private Cloud Management

VIRTUALIZATION SECURITY IN THE REAL WORLD

Comprehensive security platform for physical, virtual, and cloud servers

MS-6422A - Implement and Manage Microsoft Windows Server Hyper-V

MS-20246: Monitoring and Operating a Private Cloud

Nutanix Tech Note. Configuration Best Practices for Nutanix Storage with VMware vsphere

Course 6331A: Deploying and Managing Microsoft System Center Virtual Machine Manager

Availability for your modern datacenter

TechReady. Are you ready to implement IT solutions? Training and Consulting

Arif Goelmhd Goelammohamed Solutions Hyperconverged Infrastructure: The How-To and Why Now?

Best Practices for Deploying System Center Virtual Machine Manager in Multiple Locations

Now that you have a Microsoft private cloud, what the heck are you going to do with it?

Successfully Deploying Globalized Applications Requires Application Delivery Controllers

Configuring and Deploying a Private Cloud. Day(s): 5. Overview

Cloud Optimize Your IT

In addition to their professional experience, students who attend this training should have technical knowledge in the following areas.

End to end application delivery & Citrix XenServer 5. John Glendenning Vice President Server Virtualization, EMEA

Whitepaper. NexentaConnect for VMware Virtual SAN. Full Featured File services for Virtual SAN

Configuring and Deploying a Private Cloud

Comprehensive Agentless Cloud Backup and Recovery Software for the Enterprise

Configuring and Deploying a Private Cloud 20247C; 5 days

Top 5 Reasons to choose Microsoft Windows Server 2008 R2 SP1 Hyper-V over VMware vsphere 5

With Red Hat Enterprise Virtualization, you can: Take advantage of existing people skills and investments

Making a Smooth Transition to a Hybrid Cloud with Microsoft Cloud OS

How To Run A Modern Business With Microsoft Arknow

Monitoring and Operating a Private Cloud MOC 20246

Red Hat enterprise virtualization 3.0 feature comparison

Cisco for SAP HANA Scale-Out Solution on Cisco UCS with NetApp Storage

Monitoring and Operating a Private Cloud

What Is Microsoft Private Cloud Fast Track?

Cisco Cloud Architecture for the Microsoft Cloud Platform

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Monitoring and Operating a Private Cloud

The Technical Differential: Why Service Providers Choose VMware for Cloud-Hosted Desktops as a Service

Course Outline: Course 6331: Deploying and Managing Microsoft System Center Virtual Machine Manager Learning Method: Instructor-led Classroom Learning

Enterprise Storage Solution for Hyper-V Private Cloud and VDI Deployments using Sanbolic s Melio Cloud Software Suite April 2011

Het is een kleine stap naar een hybrid cloud

Asigra Cloud Backup V13.0 Provides Comprehensive Virtual Machine Data Protection Including Replication

vcloud Automation Center Support Matrix vcloud Automation Center 5.2

What You Need to Know NOW about Next Generation Data Protection. Kenny Wong Senior Consultant June 2015

Private cloud computing advances

vcloud Suite Architecture Overview and Use Cases

I D C T E C H N O L O G Y S P O T L I G H T. S e r ve r S e c u rity: N o t W h a t It U s e d t o Be!

Big data Devices Apps

F5 and Microsoft Delivering IT as a Service

Private Cloud 201 How to Build a Private Cloud

WHITE PAPER. Building Blocks of the Modern Data Center

Hybrid Cloud Backup and Recovery Software. Virtualization Support Real Backups of Virtual Environments

SimpliVity OmniStack with Vormetric Transparent Encryption

Security in the Software Defined Data Center

How To Compare The Cost Of A Microsoft Private Cloud To A Vcloud With Vsphere And Vspheon

Microsoft System Center Virtual Machine Manager 2008: Overview. Lee Chiang Yen Principal Trainer NetAssist Services

Cisco Intercloud Fabric for Business

Cloud Courses Description

Hybrid Cloud: Overview of Intercloud Fabric. Sutapa Bansal Sr. Product Manager Cloud and Virtualization Group

Microsoft SharePoint Architectural Models

Windows Server 2012 授 權 說 明

Cloud OS. Neue Geschäftsmodelle mit Microsoft Lösungen für Hoster und Service Provider. Windows Server & Windows Azure

Course 20246: Monitoring and Operating a Private Cloud

Capability VMware Hyper-V

Course 20533: Implementing Microsoft Azure Infrastructure Solutions

Meeting the Needs of the Changing Enterprise

Rethink Disaster Recovery with Microsoft

Intro to NSX. Network Virtualization VMware Inc. All rights reserved.

Comprehensive Agentless Cloud Backup and Recovery Software for the Enterprise

Symantec Backup Exec.cloud

EMC BACKUP-AS-A-SERVICE

vcloud Automation Center Support Matrix vcloud Automation Center 5.1

Transcription:

Hyper-V Optimizations & Security for Private Clouds from Nutanix & 5nine Software Robert Corradini Microsoft Solutions Architect Nutanix @netwatch Symon Perriman VP of Business Development 5nine Software @SymonPerriman

Agenda Nutanix Invisible Infrastructure & Web-Scale Design Points Building Simple & Secure Cloud Environments 5nine Cloud Security Azure Pack (WAP) Extension System Center VMM Plugin Summary & Discussion

Nutanix Enterprise Cloud Infrastructure Robert Corradini Microsoft Solutions Architect, Technical Alliances

About Nutanix Making datacenter infrastructure invisible, elevating IT to focus on applications and services 2100+ customers Over 70 countries 6 continents Founded in 2009 1,300+ employees 4

Gartner Magic Quadrant Integrated Systems 2015 Strengths Nutanix is a complete infrastructure solutions company, providing its customers flexibility in their choice of hypervisors and cloud usage Nutanix has gained market credibility and established a worldwide presence The Acropolis scale-out architecture, along with the ability to scale compute and storage independently, enables users to grow Nutanix deployments incrementally to meet application needs. 5

Global Support Overview Amsterdam San Jose Durham Tokyo Bangalore TAC Centers NBD Depots Sydney Languages 24x7x365 50+ Follow the Sun support 6 WW Support Centers 70+ Countries Spare Parts Depots +90 Net Promoter Score 6

Nutanix Global Services Offerings A unique approach to customer education, consulting, & advocacy Innovative Learning 9.8/10 CSAT Score Trusted Advisor Education Services Consulting Services Customer Advocacy Global Delivery Comprehensive Curriculum Administration, Troubleshooting and Management Courses Highly Skilled Nutanix Experts Value-based Services Workload Migration, Cloud Automation, VDI Deployment Strategy and Deployment Assistance Maximize Value from Investment Technical Relationship Manager, Nutanix Executive Sponsor 7

The Best IT Infrastructure Is You Can t See 8

Challenges With Existing Datacenter Architecture 1. Inherent Complexity 2. Inefficient Silos 3. Unpredictable Scaling 9

You Must Have Infrastructure That Invisib le 10

Ingredients of Invisible Infrastructure Enterprise-grade Engineering Consumer-grade Design 11

Web-Scale: Design Point for Invisible Infrastructure Design Principles Unbranded x86 servers: fail-fast systems No special purpose appliances All intelligence and services in software Extensive automation and rich analytics Distributed everything Benefits Linear, predictable scale-out Always-on systems Fast innovation in software Operational simplicity Lower TCO 12

The Solution: Hyperconverged Infrastructure App App App App Virtualization Virtualization Server Server Storage Controller Storage Controller Storage Controller Storage Controller Storage Controller Storage Controller Integrated, scale-out compute and storage 13

Nutanix Web-Scale Architecture Tier 1 Workloads (running on all nodes) Nutanix Controller VM (one per node) VM VM VM CVM VM VM VM CVM VM VM VM CVM Workload Mobility and Hypervisor Choice ESXi AHV Hyper -V Acropolis App Mobility Fabric ESXi AHV Hyper -V ESXi AHV Hyper -V X86 X86 X86 Node 1 Node 2 Node N Eliminates SAN and NAS arrays Local + Remote (Flash + HDD) Distributed Storage Fabric intelligent tiering, VM-centric management and more Snapshots Clones Compression Deduplication 14 Request a Demo: http://www.nutanix.com/demo/

Any Application at Any Scale Enterprise Applications Private & Hybrid Clouds VDI Big Data Data Protection & Disaster Recovery 15 Collaboration and UC Branch Office

Today and Tomorrow s App Can Live on Nutanix Hybrid App Lifecycle Dev/Test Staging Production DPDR Cloud & On- Premise On-Premise On-Premise Cloud & On- Premise 16

Nutanix s Holistic Approach to Security Robert Corradini Microsoft Solutions Architect, Technical Alliances

Nutanix s Native Security Features Ensure security without compromise Custom Security Technical Implementation Guide (STIG) Nutanix has developed its own comprehensive STIG written in open XCCDF.xml format to support the Security Content Automation Protocol (SCAP) standard. 18 *Q2CY16

Built-in Security + Partner Ecosystem Nutanix s holistic approach to security Built-in Host Security STIG Hardening, SecDL Self-Healing, TPM * End-Point Security Anti-Virus, Anti-Malware Data Security Encryption Network Security Micro- Segmentation, Firewall 19 *Q2CY16

Built-in Security + Security Partner Ecosystem Nutanix s holistic approach to security Improve your Security and Compliance with a Unified Solution Designed for Hyper-V Maximize your Performance with the Fastest and Least Disruptive Security Solution Increase your VM density by up to 30% Automate Protection for Virtual Machines, Networks and Storage Hide Security from your Virtual Machines and Users with Agentless Protection Request a Demo: http://www.nutanix.com/demo/ 20 *Q2CY16

5nine Cloud Security A Unified Security and Compliance Solution Designed for Hyper-V www.5nine.com/security

5nine Software Founded in 2009 Headquartered in Chicago, with staff in 24 regions worldwide, including 18 Microsoft MVPs 80,000 Hyper-V users globally, representing companies and datacenters of all sizes The leading solutions provider of security & management applications for Hyper-V 5nine Cloud Security A unified security and compliance solution designed for Hyper-V 5nine Manager Easy, centralized and affordable management and monitoring for Hyper-V 5nine V2V Easy Converter Fast and easy migration of VMware virtual machines to Microsoft Hyper-V Visit www.5nine.com or email Info@5nine.com for more info 18x

Asia Pacific Bangkok Brisbane Colombo Kuala Lumpur Melbourne Perth 5nine s Global Presence Headquarters Chicago Americas Buenos Aires Calgary New Jersey Ottawa Seattle Europe & MEA Abu Dhabi Athens Basel Brussels Dublin Milan Moscow Munich Nice Stockholm St. Petersburg Zagreb Zurich

5nine Cloud Security A Unified Security and Compliance Solution Designed for Hyper-V Address every Hyper-V vulnerability across every virtual resource Virtual firewall Agentless antivirus & antimalware Network intrusion detection (IDS) & analysis Security as a Service (SECaaS) with Azure Pack (WAP) System Center Virtual Machine Manager (SCVMM) Plugin Avoid gaps in protection from legacy endpoint security solutions Automatically and immediately protect every virtual machine Industry s leading security and compliance solution For Hyper-V users of all sizes without needing to be a security specialist Agentless design and fastest scans in the industry More information: http://www.5nine.com/cloudsecurity 2016 Snort and the Snort Pig are registered trademarks of Cisco. All rights reserved.

How a Threat Reaches a VM

Security using the Hyper-V Extensible Switch

Hide Security with Agentless Protection No security component is required to run inside the VM User never sees it User never has to update User can never disable it Users will not even notice that they are being protected Administrators no longer need access to every VM Centralized management of policies and definitions Increase security and compliance Ideal for service providers to ensure tenant privacy Simplify VDI management Enable genuine private multi-tenant environments and VM isolation Patent-pending agentless design for Hyper-V

Multiple Layers of Security 1. Virtual Firewall 2. AV Detection on the Network 3. AV Scan on the Disk 4. Network Intrusion Detection 5. Network Anomaly Analysis 6. Extensible to Analytics Systems 2016 Snort and the Snort Pig are registered trademarks of Cisco. All rights reserved.

Security Layer 1 Virtual Firewall Intercept network traffic before it even gets to the VM Manage traffic at the network protocol level TCP, UDP, GRE, ICMP, IGMP, etc. Single solution for every guest OS supported by Hyper-V Server Windows Server 2016 Windows Server 2012 R2 Windows Server 2012 Windows Server 2008 R2 Home Server 2011 Small Business Server 2011 Windows Server 2003 Client Windows 10 Windows 8.1 Windows 8 Windows 7 Windows Vista Windows XP Linux & UNIX CentOS Debian FreeBSD Oracle Linux Red Hat RHEL SUSE Ubuntu

Security Layer 2 AV Detection on the Network Protection for all virtual networks Active detection for immediate threat notification Unencrypted HTTP traffic (more coming soon) Automatically alert admins Email, PowerShell, Event Logs

Security Layer 3 AV Security on the Disk No more scanning storms Increase VM performance Increase VM density by up to 30% 5nine uses a patent-pending Change Block Tracking (CBT) driver Scan only blocks on the disk that have changed Scan up to 70x faster

Security Layer 4 Network Intrusion Detection 5nine Cloud Security Management Server Public Internet Hyper-V Hosts 2016 Snort and the Snort Pig are registered trademarks of Cisco. All rights reserved. Database

Security Layer 5 Network Anomaly Analysis Public Internet 5nine Cloud Security Management Server 100 Unusual Normal Traffic Hyper-V Hosts Database 90 80 70 60 50 40 30 20 10 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23

Security Layer 6 Extensible to Analytics Systems Public Internet 5nine Cloud Security Management Server Cloud-Based Analytics Hyper-V Hosts Database On-Premises Analytics

Automate Protection for VMs, Networks & Storage Virtual environments are dynamic and change regularly Legacy endpoint security is impractical and unsafe Automatically and immediately protect the entire virtualized infrastructure and software-defined networks (SDNs) Guarantee higher levels of business continuity and reliability Built-in automation tools Script custom security policies with PowerShell Save time and free up valuable operational resources Reduce the risk of misconfigured security policies

Enterprise High-Availability for Security 5nine Cloud Security Management 5nine Console 5nine PowerShell Azure Pack (WAP) Extension System Center Virtual Machine Manager (SCVMM) Plugin 5nine Cloud Security Management Server Redundant Management Group Branch Office 5nine Sync Hyper-V Hosts & Clusters SQL Server SQL Server SQL Server SQL Cluster

System Center Virtual Machine Manager Plugin Centralized Security Management through System Center to Protect your Hyper-V Infrastructure and VMs Easy-to-use extension of 5nine Cloud Security Integrate into your existing management system Protect all Windows Server, Windows and Linux VMs Agentless design for easy management Fastest security scans in the industry Meet industry compliance & regulation requirements Scales to protect the largest enterprises running System Center and the Microsoft Cloud Platform Free add-on for 5nine Cloud Security

Windows Azure Pack & Microsoft Azure Stack Security

Azure Pack (WAP) Extension Security as a Service (SECaaS) to Protect your Datacenter, your Customers, and their Clouds The only Security as a Service (SECaaS) solution for Azure Pack Free add-on to 5nine Cloud Security Enable tenants to easily manage their own Windows and Linux security policies through self-service Hosting and service providers can secure multi-tenant environments and VMs Users can easily configure firewalls, intrusion detection, and more Generate revenue by offering Security as a Service (SECaaS) Differentiate yourself through achieving increased security and compliance Azure Pack (WAP) allows you to run Azure services in your datacenter on your hardware, it is not a part of the Microsoft Azure public cloud

Azure Pack SECaaS Feature Set Administrator Portal Add SECaaS to plans Protect hosts, VMs & tenants Global firewall templates View user action logs Notifications Billing & chargeback Via Cloud Cruiser or Cloud Assert Tenant Portal Protect a VM through self-service Virtual Firewall Antivirus & Antimalware Intrusion Detection Network Traffic Scanner Network Anomaly Scanner VM Groups Firewall templates View user action logs Notifications

Generate New Revenue through SECaaS Only Security as a Service solution for Azure Pack Make premium security the default offering Provide tenants with simple SECaaS features Virtual firewall, intrusion detection, security templates Stand out from your competition and public clouds Attract new customers Generate additional revenue from existing clients Also improve security for your infrastructure and users

Meet Compliance & Regulation Requirements Virtualization infrastructure is being targeted by hackers Meet expected compliance and regulation standards Meet customer s guidelines to operate in new markets Support more regulation requirements Increase your own potential customer base

5nine Cloud Security Demo www.5nine.com/security

Summary & Discussion

Resources Nutanix Nutanix website: http://www.nutanix.com Nutanix security page: http://www.nutanix.com/products/features/security/ Nutanix security certifications: http://www.nutanix.com/products/features/security/certifications/ Robert Corradini, contact: Robert.Corradi@Nutanix.com Request a Nutanix Demo: http://www.nutanix.com/demo) 5nine Software 5nine website: http://www.5nine.com 5nine videos: https://www.youtube.com/user/5ninesoftware 5nine Cloud Security: http://www.5nine.com/security Azure Pack (WAP) Extension: http://www.5nine.com/wap System Center VMM Plugin: http://www.5nine.com/scvmm Symon Perriman, contact Symon@5nine.com Info@5nine.com or Sales@5nine.com

Q&A Symon@5nine.com @SymonPerriman Robert.Corradini@Nutanix.com @netwatch