Cisco Nexus 1000V Switch for Microsoft Hyper-V



Similar documents
Cisco Virtual Security Gateway for Nexus 1000V Series Switch

Cisco Nexus 1000V Series Switches

Business Benefits. Cisco Virtual Networking solutions offer the following benefits:

Cisco and Canonical: Cisco Network Virtualization Solution for Ubuntu OpenStack

Cisco Virtual Network Management Center

Virtual Networking Features of the VMware vnetwork Distributed Switch and Cisco Nexus 1000V Series Switches

Cisco Data Center Network Manager Release 5.1 (LAN)

Windows Server 2012 Hyper-V Extensible Switch and Cisco Nexus 1000V Series Switches

DMZ Virtualization Using VMware vsphere 4 and the Cisco Nexus 1000V Virtual Switch

How To Extend Security Policies To Public Clouds

Cisco Nexus 1000V Virtual Ethernet Module Software Installation Guide, Release 4.0(4)SV1(1)

Cisco Unified Network Services: Overcome Obstacles to Cloud-Ready Deployments

Redefine Network Visibility in the Data Center with the Cisco NetFlow Generation Appliance

Cisco ASA 1000V Cloud Firewall

The Advantages of Cloud Services

Cisco Unified Computing System with Microsoft Hyper-V Recommended Practices

NX-OS and Cisco Nexus Switching

Installing Intercloud Fabric Firewall

Implementing and Troubleshooting the Cisco Cloud Infrastructure **Part of CCNP Cloud Certification Track**

Cisco Prime Network Analysis Module Software 5.1 for Nexus 1010

Cisco NetFlow Generation Appliance (NGA) 3140

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

Feature Comparison. Windows Server 2008 R2 Hyper-V and Windows Server 2012 Hyper-V

Cisco Nexus 1000V and Cisco Nexus 1110 Virtual Services Appliance (VSA) across data centers

VMware vcloud Networking and Security Overview

Securing Virtual Applications and Servers

What s New in VMware vsphere 5.5 Networking

Virtual PortChannels: Building Networks without Spanning Tree Protocol

Cisco Advanced Routing and Switching for Field Engineers - ARSFE

Cisco Performance Visibility Manager 1.0.1

Cisco Nexus 1000V Switches

Cisco Prime Network Analysis Module Software 5.1 for WAAS VB

Expert Reference Series of White Papers. VMware vsphere Distributed Switches

How To Set Up A Virtual Network On Vsphere (Vsphere) On A 2Nd Generation Vmkernel (Vklan) On An Ipv5 Vklan (Vmklan)

NetScaler VPX FAQ. Table of Contents

Cisco Application Networking Manager Version 2.0

Windows Server 2008 R2 Hyper-V Server and Windows Server 8 Beta Hyper-V

Cisco Nexus 7000 Series Network Analysis Module (NAM-NX1)

Deliver the Next Generation Intelligent Datacenter Fabric with the Cisco Nexus 1000V, Citrix NetScaler Application Delivery Controller and Cisco vpath

Cisco Intercloud Fabric Security Features: Technical Overview

Part 1 - What s New in Hyper-V 2012 R2. Clive.Watson@Microsoft.com Datacenter Specialist

Cisco Nexus 7000 Series Supervisor Module

Cisco UCS Central Software

VXLAN: Scaling Data Center Capacity. White Paper

Aerohive Networks Inc. Free Bonjour Gateway FAQ

Cisco Catalyst 4500-X Series Switch Family

Migrate from Cisco Catalyst 6500 Series Switches to Cisco Nexus 9000 Series Switches

How To Manage A Virtualization Server

How To Use Vsphere On Windows Server 2012 (Vsphere) Vsphervisor Vsphereserver Vspheer51 (Vse) Vse.Org (Vserve) Vspehere 5.1 (V

Network Virtualization

Running a VSM and VEM on the Same Host

Impact of Virtualization on Cloud Networking Arista Networks Whitepaper

ZEN LOAD BALANCER EE v3.04 DATASHEET The Load Balancing made easy

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Securely Architecting the Internal Cloud. Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc.

Windows Server on WAAS: Reduce Branch-Office Cost and Complexity with WAN Optimization and Secure, Reliable Local IT Services

Lecture 02b Cloud Computing II

VMware vcloud Networking and Security

Cisco Intercloud Fabric for Business

Deliver Fabric-Based Infrastructure for Virtualization and Cloud Computing

Configuring DHCP Snooping

Control Tower for Virtualized Data Center Network

Server Virtualization

Implementing Cisco Data Center Unified Computing (DCUCI)

IINS Implementing Cisco Network Security 3.0 (IINS)

Implementing Cisco IOS Network Security

Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure

Virtualization, SDN and NFV

A Case for Overlays in DCN Virtualization Katherine Barabash, Rami Cohen, David Hadas, Vinit Jain, Renato Recio and Benny Rochwerger IBM

Introduction... 4 Purpose... 4 Scope... 4 Audience... 5 Feedback... 5

Secure Networks for Process Control

Cisco Prime Data Center Network Manager Release 6.1

Cisco Application Networking for IBM WebSphere

50. DFN Betriebstagung

Evolution of Software Defined Networking within Cisco s VMDC

Cisco WAAS Express. Product Overview. Cisco WAAS Express Benefits. The Cisco WAAS Express Advantage

vsphere 6.0 Advantages Over Hyper-V

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs

TABLE OF CONTENTS NETWORK SECURITY 1...1

TABLE OF CONTENTS NETWORK SECURITY 2...1

Next Generation Data Center Networking.

Simplify IT. With Cisco Application Centric Infrastructure. Barry Huang Nov 13, 2014

How to Configure an Initial Installation of the VMware ESXi Hypervisor

Cisco Application Control Engine in the Virtual Data Center

How To Design A Data Centre

WAN Optimization Integrated with Cisco Branch Office Routers Improves Application Performance and Lowers TCO

Deploying F5 BIG-IP Virtual Editions in a Hyper-Converged Infrastructure

Cisco Virtual Wide Area Application Services: Technical Overview

ZEN LOAD BALANCER EE v3.02 DATASHEET The Load Balancing made easy

Security Considerations in IP Telephony Network Configuration

HP VSR1000 Virtual Services Router Series

HP E-PCM Plus Network Management Software Series

Application-Centric WLAN. Rob Mellencamp

How To Understand and Configure Your Network for IntraVUE

Transcription:

Data Sheet Cisco Nexus 1000V Switch for Microsoft Hyper-V Product Overview Cisco Nexus 1000V Switches provide a comprehensive and extensible architectural platform for virtual machine and cloud networking. The switches are designed to accelerate server virtualization and multitenant cloud deployments in a secure and operationally transparent manner. The Cisco Nexus 1000V Switch for Microsoft Hyper-V is a distributed software switching platform for Microsoft Windows Server 2012 environments. It provides: Advanced Cisco NX-OS Software feature set and associated partner ecosystem Innovative network services architecture to support scalable, multitenant environments Consistent operating model across physical and virtual environments and across hypervisors Tight integration with Microsoft System Center Virtual Machine Manager (SCVMM) 2012 SP1 The Cisco Nexus 1000V Switch brings the robust architecture associated with traditional Cisco physical modular switches to Microsoft Hyper-V environments. The solution has two main components (Figure 1): Figure 1. Cisco Nexus 1000V Switch for Microsoft Hyper-V Components The Cisco Nexus 1000V virtual Ethernet module (VEM) is a software component deployed on each Microsoft Hyper-V host as a forwarding extension. Each virtual machine on the host is connected to the VEM through virtual Ethernet (veth) ports. The Cisco Nexus 1000V virtual supervisor module (VSM) is the management component that controls multiple VEMs and helps in the definition of virtual machine-focused network policies. It is a virtual machine running Cisco NX-OS on a Microsoft Hyper-V host and is similar to the supervisor module on a physical modular switch. In addition to the VEM and VSM, Cisco Nexus 1000V Switches include Cisco vpath technology and provide a scalable, multitenant network services infrastructure for Microsoft Hyper-V environments. 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 1 of 6

For customers seeking a dedicated hardware appliance to host all virtual appliances relevant to the Cisco Nexus 1000V Switch (the VSM and other virtual services blades), Cisco offers the Cisco Nexus 1100 Virtual Services Appliances. With the Cisco Nexus 1100, all critical Cisco Nexus virtual appliances are hosted on a single platform, reducing operational complexity. The Cisco Nexus 1000V uses the extensible switch framework offered by Microsoft Windows Server 2012 with Hyper-V and the management ecosystem offered by Microsoft SCVMM 2012 SP1 and thus provides a transparent operating experience for Microsoft Hyper-V environments. Benefits Cisco Nexus 1000V Switches reduce the operational complexities associated with virtual machine networking and thus help customers gain more of the benefits of server virtualization technology. They offer the following benefits: Preserve your existing investments in operational processes and management tools. Network administrators can manage network policies across both physical and virtual environments using the same interfaces, and staff does not need to be retrained. Customers can use existing network monitoring, management, and troubleshooting tools to manage both physical and virtual environments. Simplify your virtual networking operations. Visibility into the traffic between virtual machines simplifies network troubleshooting. Virtualization-aware networking features simplify virtual machine network policy management. Tight integration with Microsoft SCVMM allows faster policy provisioning. Provide better security. Virtualization-aware networking provides better security by extending network policies and network visibility to the virtual machine level. Features Cisco Nexus 1000V offers advanced networking features to Microsoft Hyper-V environments, including: Advanced switching features such as private virtual LANs (PVLANs), quality of service (QoS), access control lists (ACLs), port security, and Cisco vpath. Security features such as Dynamic Host Configuration Protocol (DHCP) snooping, Dynamic Address Resolution Protocol (ARP) Inspection, and IP source guard. Monitoring features such as Cisco NetFlow, packet statistics, Switched Port Analyzer (SPAN), and Encapsulated Remote SPAN (ERSPAN). Manageability features such as Simple Network Management Protocol (SNMP), NetConf, syslog, and advanced troubleshooting command-line interface (CLI) features. Virtual services using Cisco vpath such as Cisco Virtual Security Gateway (VSG). Virtualized Network Services with Cisco vpath Cisco vpath is an innovative architecture that extends the Cisco Nexus 1000V platform to support multiple network services, including firewalls, load balancers, and WAN-optimization services. 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 2 of 6

The Cisco vpath architecture provides: Intelligent traffic steering Redirect traffic from the server requesting network service to the virtual services node (VSN) Extend the port profile to include the network services profile Flexible deployment Each VSN can serve multiple physical servers The VSN can be hosted on a separate or dedicated server Network service acceleration Using network service decision caching, the Cisco Nexus 1000V remembers network service policy from prior traffic, reducing the need for traffic steering The performance of virtual network services can be accelerated through enforcement in the hypervisor kernel Integration with Microsoft Hyper-V and SCVMM The Cisco Nexus 1000V VEM is a forwarding extension in the Microsoft Hyper-V extensible switch framework, and it is deployed on each Microsoft Hyper-V host managed by the Cisco Nexus 1000V. The Cisco Nexus 1000V VSM communicates with VEMs as well as with Microsoft SCVMM. All configuration policies defined on the VSM are automatically propagated to Microsoft SCVMM, so the Microsoft SCVMM administrator can use these policies when creating virtual machines. The Microsoft SCVMM networking model introduces multiple user-defined constructs, including logical networks, network sites, and virtual machine networks to abstract the underlying physical network. A new CLI has been added to the Cisco Nexus 1000V Switch to define these constructs from the VSM. Figure 2 shows the operating model for the Cisco Nexus 1000V Switch for Microsoft Hyper-V. Figure 2. Operating Model for Cisco Nexus 1000V Switch for Microsoft Hyper-V 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 3 of 6

Security The Cisco Nexus 1000V includes Cisco integrated security features that are found on Cisco physical switches to prevent a variety of attack scenarios, as shown in Table 1. In addition, Cisco Virtual Security Gateway (VSG) a virtual firewall available on the Cisco Nexus 1000V, allows you to provide secure logical isolation of virtual machines in a multitenant Microsoft Hyper-V environment. Table 1. Cisco Integrated Security Features Feature Capability Prevents Port security Restricts MAC addresses on a port MAC address spoofing by rogue virtual machine IP source guard Maps IP addresses to MAC addresses IP and MAC address spoofing Dynamic ARP Inspection DHCP snooping Monitors virtual machine ARP transactions, which are also used for VMware vmotion Prevents DHCP client requests from reaching untrusted entities Prevents untrusted entities from acting as DHCP servers Rate-limits DHCP requests to prevent denial-of-service (DoS) attacks ARP cache poisoning on other virtual machines, hosts, and network devices Rogue DHCP servers DoS to DHCP services High Availability The Cisco Nexus 1000V is designed to be resilient, and high-availability is built into the system at multiple levels: Cisco NX-OS, the OS run by the VSM, is specifically designed for high availability at the network, system, and process levels. Critical processes run independently for ease of isolation, fault containment, and upgrading. Processes can restart independently in milliseconds without losing state information, affecting data forwarding, or affecting adjacent devices or services. VSMs are typically deployed in active-standby pairs for high availability. The state and configuration remain constantly synchronized between the two VSMs to provide stateful switchover if the active VSM fails. VSM and VEM communication is built for reliability. In the event of loss of communication with the VSM, the VEMs can use nonstop forwarding (NSF) to continue to switch traffic according to the last-known configuration. Maximum Supported Configurations 64 Microsoft Windows Server 2012 with Hyper-V hosts per VSM 2048 virtual Ethernet ports per VSM, with 216 virtual Ethernet ports per physical host 2048 active VLANs 2048 port profiles 32 physical NICs per physical host Microsoft Windows Server 2012 with Hyper-V (Standard or Data Center) Microsoft SCVMM 2012 SP1 (UR2) Cisco Nexus 1000V VSM The VSM can be deployed as a virtual machine on Microsoft Windows Server 2012 with Hyper-V or on a Cisco Nexus 1110 appliance Hard disk: 4 GB System Requirements 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 4 of 6

RAM: 4 GB Compatible with any upstream physical switches, including all Cisco Nexus and Cisco Catalyst switches as well as Ethernet switches from other vendors Essential and Advanced Editions Cisco Nexus 1000V Switches are offered in two editions: Essential Edition: Provides all the basic Layer 2 networking features needed for your Microsoft Hyper-V environments and is available at no cost; this free version enables you to adopt Cisco's virtual network technology without any cost or risk Advanced Edition: Includes Cisco VSG, a virtual firewall, and other advanced security capabilities such as DHCP snooping, IP source guard, and Dynamic ARP Inspection Table 2 summarizes the features of the Cisco Nexus 1000V Editions. Table 2. Feature Comparison of Nexus 1000V Editions Feature Essential (Free) Advanced VLANs, PVLANs, ACLs, QoS, Link Aggregation Control Protocol (LACP), and multicast Cisco vpath (for virtual services) Cisco NetFlow, SPAN, and ERSPAN (for traffic visibility) SNMP, NetConf, syslogs, etc. (for manageability) Microsoft SCVMM integration DHCP snooping IP source guard Dynamic ARP Inspection Cisco VSG * Licensing and Ordering Information The Cisco Nexus 1000V Switch is licensed based on the number of physical CPUs on the server on which the VEM is running. Table 3 provides ordering information for the Cisco Nexus 1000V Switch. Table 3. Ordering Information Part Number N1K-MLCPU-01 N1K-MLCPU-04 N1K-MLCPU-16 N1K-MLCPU-32 L-N1K-MLCPU-01 L-N1K-MLCPU-04 L-N1K-MLCPU-16 L-N1K-MLCPU-32 Description Nexus 1000V Paper CPU License Qty. 1-Pack Nexus 1000V Paper CPU License Qty. 4-Pack Nexus 1000V Paper CPU License Qty. 16-Pack Nexus 1000V Paper CPU License Qty. 32-Pack Nexus 1000V edelivery CPU License Qty. 1-Pack Nexus 1000V edelivery CPU License Qty. 4-Pack Nexus 1000V edelivery CPU License Qty. 16-Pack Nexus 1000V edelivery CPU License Qty. 32-Pack 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 5 of 6

Cisco Services Cisco Software Application Support plus Upgrades (SASU) is a comprehensive support service that helps you maintain and enhance the availability, security, and performance of your business-critical applications. Cisco SASU includes the following resources: Software updates and upgrades: The Cisco SASU service provides timely, uninterrupted access to software updates and upgrades to help you keep existing systems stable and network release levels current. Update releases, including major upgrade releases that may include significant architectural changes and new capabilities for your licensed feature set, are available by software download from Cisco.com or by CD-ROM shipment. Cisco Technical Assistance Center (TAC): Cisco TAC engineers provide accurate, rapid diagnosis and resolution of software application problems to help you reduce outages and performance degradation. These specialized software application experts are trained to support the Cisco Nexus 1000V Switch. Their expertise is available to you 24 hours a day, 365 days a year, by telephone, fax, email, or the Internet. Online support: Cisco SASU provides access to a wide range of online tools and communities to help you resolve problems quickly, support business continuity, and improve competitiveness. For More Information For more information about the Cisco Nexus 1000V Switches, visit http://www.cisco.com/go/1000v. For more information about the Cisco Nexus 1100 Series Cloud Services Platforms, visit http://www.cisco.com/go/1100. For more information about the Cisco Virtual Security Gateway, visit http://www.cisco.com/go/vsg. For more information about the Cisco Nexus 1000V community, visit http://communities.cisco.com/community/technology/datacenter/nexus1000v. For more information about Cisco NX-OS Software, visit http://www.cisco.com/go/nxos. For more information about Microsoft Hyper-V, visit http://www.microsoft.com/hyper-v. For more information about Microsoft System Center Virtual Machine Manager, visit http://www.microsoft.com/scvmm. For more information about how Cisco and Microsoft are working together, visit http://www.cisco.com/go/microsoft. Printed in USA C78-727679-01 06/13 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. Page 6 of 6