Hyper-V Networking. Aidan Finn



Similar documents
High Availability (HA) Aidan Finn

Cool New Hyper-V Features in Windows Server 2012 R2. Aidan Finn

Scale-Out File Server. Subtitle

Part 1 - What s New in Hyper-V 2012 R2. Clive.Watson@Microsoft.com Datacenter Specialist

Windows Server 2012 R2 Hyper-V: Designing for the Real World

Intel Ethernet and Configuring Single Root I/O Virtualization (SR-IOV) on Microsoft* Windows* Server 2012 Hyper-V. Technical Brief v1.

Dell Networking Solutions Guide for Microsoft Hyper-V

Microsoft Hyper-V Performance Tuning

Broadcom Ethernet Network Controller Enhanced Virtualization Functionality

What s new in Hyper-V 2012 R2

MS Configuring and Administering Hyper-V in Windows Server 2012

Windows Server 2012 Hyper-V: Deploying Hyper-V Enterprise Server Virtualization Platform Zahir Hussain Shah

Simplify VMware vsphere* 4 Networking with Intel Ethernet 10 Gigabit Server Adapters

Quantum Hyper- V plugin

Feature Comparison. Windows Server 2008 R2 Hyper-V and Windows Server 2012 Hyper-V

Virtual Network Exceleration OCe14000 Ethernet Network Adapters

Windows Server 2008 R2 Hyper-V Server and Windows Server 8 Beta Hyper-V

Hybrid Cloud with NVGRE (Cloud OS)

Cloud Optimize Your IT

Optimize Server Virtualization with QLogic s 10GbE Secure SR-IOV

Network Troubleshooting & Configuration in vsphere VMware Inc. All rights reserved

The safer, easier way to help you pass any IT exams. Exam : Installing and Configuring Windows Server 2012 R2.

Live Migration. Aidan Finn

Introduction to MPIO, MCS, Trunking, and LACP

Expert Reference Series of White Papers. VMware vsphere Distributed Switches

Hyper-V Replica. Aidan Finn

Microsoft SQL Server 2012 on Cisco UCS with iscsi-based Storage Access in VMware ESX Virtualization Environment: Performance Study

Windows Server 2012 Hyper-V Installation and Configuration Guide

EXAM Installing and Configuring Windows Server Buy Full Product.

vsphere Networking vsphere 5.5 ESXi 5.5 vcenter Server 5.5 EN

Accelerating Network Virtualization Overlays with QLogic Intelligent Ethernet Adapters

Veeam Study Webinar Server Virtualization with Windows Server Hyper-V and System Center. Orin

IBM Tivoli Composite Application Manager for Microsoft Applications: Microsoft Hyper-V Server Agent Version Fix Pack 2.

Configuring DHCP Snooping

Windows Server 2012 Hyper-V Virtual Switch Extension Software UNIVERGE PF1000 Overview. IT Network Global Solutions Division UNIVERGE Support Center

Hyper-V over SMB Remote File Storage support in Windows Server 8 Hyper-V. Jose Barreto Principal Program Manager Microsoft Corporation

Implementing and Troubleshooting the Cisco Cloud Infrastructure **Part of CCNP Cloud Certification Track**

Security Overview of the Integrity Virtual Machines Architecture

Top 5 Reasons to choose Microsoft Windows Server 2008 R2 SP1 Hyper-V over VMware vsphere 5

Quorum DR Report. Top 4 Types of Disasters: 55% Hardware Failure 22% Human Error 18% Software Failure 5% Natural Disasters

VMware vsphere Design. 2nd Edition

How To Use Vsphere On Windows Server 2012 (Vsphere) Vsphervisor Vsphereserver Vspheer51 (Vse) Vse.Org (Vserve) Vspehere 5.1 (V

Intel Ethernet Switch Load Balancing System Design Using Advanced Features in Intel Ethernet Switch Family

Brocade Solution for EMC VSPEX Server Virtualization

Hyper-V over SMB: Remote File Storage Support in Windows Server 2012 Hyper-V. Jose Barreto Principal Program Manager Microsoft Corporation

Virtual networking technologies at the server-network edge

Silver Peak Virtual Appliances

Network Virtualization

In addition to their professional experience, students who attend this training should have technical knowledge in the following areas.

ADVANCED NETWORK CONFIGURATION GUIDE

Nutanix Tech Note. VMware vsphere Networking on Nutanix

Broadcom Ethernet Network Controller Enhanced Virtualization Functionality

vsphere Networking vsphere 6.0 ESXi 6.0 vcenter Server 6.0 EN

A Comparison of VMware and {Virtual Server}

Red Hat enterprise virtualization 3.0 feature comparison

Windows Server 2008 R2 Hyper V. Public FAQ

Chapter 14 Virtual Machines

Dell High Availability Solutions Guide for Microsoft Hyper-V

Cisco Unified Computing System with Microsoft Hyper-V Recommended Practices

Running a VSM and VEM on the Same Host

How To Connect Virtual Fibre Channel To A Virtual Box On A Hyperv Virtual Machine

Creating Overlay Networks Using Intel Ethernet Converged Network Adapters

Securely Architecting the Internal Cloud. Rob Randell, CISSP Senior Security and Compliance Specialist VMware, Inc.

VMware Virtual Networking Concepts I N F O R M A T I O N G U I D E

Bosch Video Management System High Availability with Hyper-V

Where IT perceptions are reality. Test Report. OCe14000 Performance. Featuring Emulex OCe14102 Network Adapters Emulex XE100 Offload Engine

Installation Guide Avi Networks Cloud Application Delivery Platform Integration with Cisco Application Policy Infrastructure

iscsi Top Ten Top Ten reasons to use Emulex OneConnect iscsi adapters

I/O Virtualization Using Mellanox InfiniBand And Channel I/O Virtualization (CIOV) Technology

Virtualization Security Checklist

Windows Server 2012 Hyper-V Extensible Switch and Cisco Nexus 1000V Series Switches

Windows Server 2012 R2 Networking

VMware vsphere-6.0 Administration Training

Best Practices for Virtualised SharePoint

How to Configure Intel Ethernet Converged Network Adapter-Enabled Virtual Functions on VMware* ESXi* 5.1

Virtual Ethernet Bridging

IPOP-TinCan: User-defined IP-over-P2P Virtual Private Networks

Best Practices: Microsoft Private Cloud Implementation

vsphere Networking ESXi 5.0 vcenter Server 5.0 EN

Install Guide for JunosV Wireless LAN Controller

Maximizing SQL Server Virtualization Performance

Simplified, High-Performance 10GbE Networks Based on a Single Virtual Distributed Switch, Managed by VMware vsphere* 5.1

RUNNING vtvax FOR WINDOWS

ZEN LOAD BALANCER EE v3.04 DATASHEET The Load Balancing made easy

How To Use Ecx In A Data Center

MODULE 3 VIRTUALIZED DATA CENTER COMPUTE

Emulex OneConnect 10GbE NICs The Right Solution for NAS Deployments

Control Tower for Virtualized Data Center Network

5nine Virtual Firewall 2.1 for Microsoft Hyper-V

HP Operations Orchestration Software

Boosting Data Transfer with TCP Offload Engine Technology

Citrix XenServer Design: Designing XenServer Network Configurations

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Windows Server 2012 授 權 說 明

Network Virtualization Technologies and their Effect on Performance

Transcription:

Hyper-V Networking Aidan Finn

About Aidan Finn Technical Sales Lead at MicroWarehouse (Dublin) Working in IT since 1996 MVP (Virtual Machine) Experienced with Windows Server/Desktop, System Center, virtualisation, and IT infrastructure @joe_elway http://www.aidanfinn.com http://www.petri.co.il/author/aidan-finn Published author/contributor of several books

Books System Center 2012 VMM Windows Server 2012 Hyper-V

Networking Basics

Hyper-V Networking Basics Management OS Virtual Machines VLAN ID = 101 VLAN ID = 102 VLAN Trunk 6

Virtual NICs Generation 1 VMs can have: (Synthetic) network adapter Requires drivers (Hyper-V integration components/services) Does not do PXE boot Best performance Legacy network adapter Emulated - does not require Hyper-V drivers Does offer PXE Bad performance Generation 2 VMs have synthetic network adapters with PXE 7

Hyper-V Extensible Switch Hyper-V Extensible Switch Replaces Virtual Network Handles network traffic between: Virtual machines The physical network The management OS NIC = network adapter Layer-2 virtual interface Programmatically managed Extensible 8

Virtual Switch Types External: Allow VMs to talk to each other physical network and host Normally used Internal Allow VMs to talk to each other and host VMs cannot communicate to VMs on another host Normally only ever seen in a lab Private Allow VMs to talk to each other VMs cannot communicate to VMs on another host Sometimes seen but replaced by Hyper-V network virtualization or VLANs 9

Switch Extensibility Extension Types Capturing Monitoring Example: InMon sflow Filtering Packet monitoring/security Example: 5nine Security Forwarding Does all the above & more Example: Cisco Nexus 1000V

NIC Teaming

Provides load balancing and failover (LBFO) Load balancing: Spread traffic across multiple physical NICs. This provides link aggregation not necessarily a single virtual pipe. Failover: NIC Teaming If one physical path (NIC or top-of-rack switch) fails then traffic automatically moved to another NIC in the team. Built-in and fully supported for Hyper-V and Failover Clustering since WS2012

Microsoft supported no more calls to NIC vendors for teaming support or getting told to turn off teaming Vendor agnostic can mix NIC manufacturers in a single team Up to: NIC Teaming Features 32 NICs at same speed in physical machines 2 virtual NICs at same speed in a VM Configure teams to meet server needs Team management is easy! Server Manger, LBFOADMIN.EXE, VMM, or

Terminology Team Interfaces, Team NICs, or tnics Team Team members --or-- Network Adapters

Switch Independent mode Doesn t require any configuration of a switch Protects against adjacent switch failures Allows Standby NIC Switch dependent modes 1. Static Teaming Configured on switch 2. LACP Teaming Connection Modes Also known as IEEE 802.1ax or 802.3ad Requires configuration of the adjacent switch Switch independent team Switch dependent team

1. Address Hash comes in 3 flavors 4-tuple hash: (Default distribution mode) uses the RSS hash if available, otherwise hashes the TCP/UDP ports and the IP addresses. If ports not available, uses 2-tuple instead. 2-tuple hash: hashes the IP addresses. If not IP traffic uses MACaddress hash instead. MAC address hash: hashes the MAC addresses. 2. Hyper-V port Load Distribution Modes Hashes the port number on the Hyper-V switch that the traffic is coming from. Normally this equates to per-vm traffic. Best if using DVMQ. 3. Dynamic (Added in WS2012 R2) Spread a single stream of data across team members using flowlets. The default option in WS2012 R2.

NIC Teaming Virtual Switch Choose the team connection mode that is required by your switches Choose either Hyper-V Port or Dynamic (WS2012 R2) load distribution Hyper-V Port provides predictable incoming paths and DVMQ acceleration. Dynamic enables a single virtual NIC to spread traffic across multiple team members at once. NIC Team

NIC Teaming Physical NICs Choose the team connection mode that is required by your switches Choose either Address Hash or Dynamic load distribution Address Hash will isolate a single stream of traffic on one physical NIC. Dynamic enables a since virtual NIC to spread traffic across multiple team members at once. Networking Stack NIC Team

NIC Teaming Virtual Machines Can be configured in guest OS of a WS2012 or later VM. Teams the VM s virtual NICs. Configuration is locked. You must allow NIC teaming in the advanced properties of the virtual NIC in the VM settings. Set-VMNetworkAdapter VM01 AllowTeaming On/Off Virtual Machine NIC Team

Demo: NIC Teaming

Hardware Offloads

100% utilized RSS Logical Processors { 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 Cores { Core 1 Core 2 Core 3 Core 4 Core 5 Core 6 Core 7 Core 8 Core 9 Core 10 Core 11 Core 12 Processors (Hyperthreading) { CPU 0 CPU 1 Management OS Management Backup SMB 3.0 Cluster Live Migration Virtual Machine NIC Team rnic1 rnic2

100% utilized DVMQ Logical Processors { 0 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 Cores { Core 1 Core 2 Core 3 Core 4 Core 5 Core 6 Core 7 Core 8 Core 9 Core 10 Core 11 Core 12 Processors (Hyperthreading) { CPU 0 CPU 1 Management OS Management Backup SMB 3.0 Cluster Live Migration Virtual Machine NIC Team rnic1 rnic2

RSS and DVMQ Consult your network card/server manufacturer Can use Get- Set- NetAdapterRSS to configure. Don t change anything unless you need to RSS and DVMQ are incompatible on the same NIC so design hosts accordingly

Added in WS2012 R2 vrss RSS provides extra processing capacity for inbound traffic to a physical server Using cores beyond Core 0. vrss does the same thing in the guest OS of a VMM Using additional virtual processors. Allows inbound networking to VMM to scale out. Obviously requires VMs with additional virtual processors. The physical NICs used by the virtual switch must support DVMQ. Enable RSS in the advanced NIC properties in the VM s guest OS

SMB 3.0 100% utilized vrss CPU 0 CPU 1 CPU 2 CPU 3 CPU 4 CPU 5 CPU 6 CPU 7 Management OS Management Backup Cluster Live Migration Virtual Machine NIC Team rnic1 rnic2

Demo: vrss

Single-Root I/O (SR-IOV) Virtual function on capable NIC presented directly to VM Bypasses user mode in Management OS Network stack Virtual Switch (logical connection present) Cannot team NICs in Management OS can team NICs in VM Super low latency virtual networking, less h/w usage Requires SR-IOV ready: Motherboard BIOS NIC Windows Server 2012/Hyper-V Server 2012 (or later) host Can Live Migrate to/from capable/incapable hosts

SR-IOV Illustrated Host Host Root Partition Virtual Machine Root Partition Virtual Machine Hyper-V Switch Virtual NIC Hyper-V Switch Virtual Function Routing VLAN Filtering Data Copy Routing VLAN Filtering Data Copy Physical NIC Network I/O path without SRIOV SR-IOV Physical NIC Network I/O path with SRIOV

Implementing SR-IOV All management OS networking features are bypassed You must create SR-IOV virtual switches to begin with: New-VMSwitch IOVSwitch1 - NetAdapterName pnic1 EnableIOV $True Install Virtual Function driver in guest OS To get teaming: Create 2 virtual switches Enable guest OS teaming in vnic advanced settings Team in the guest OS SR-IOV Enabled Virtual Switch 1 NIC Team Virtual NIC 1 Virtual NIC 2 SR-IOV Enabled Virtual Switch 2 Physical NIC 1 Physical NIC 2

The Real World: SR-IOV Not cloud or admin friendly: Requires customization in the guest OS How many hosting or end users can you trust with admin rights over in-guest NIC teams? In reality: SR-IOV is intended for huge hosts or few VMs with low latency requirements You might never implement SR-IOV outside of a lab

IPsec Task Offload (IPSecTO) IPsec encrypts/decrypts traffic between a client and server. Done automatically based on some rule. Can be implemented by a tenant independently of the cloud administrators It uses processor resources in a cloud this could have a significant impact. Using IPSecOffloadV2 enabled NICs, Hyper-V can offload IPsec processing from VMs to the host s NIC(s).

Consistent Device Naming (CDN) Every Windows admin hates Local Area Connection, Local Area Connection 2, etc. Network devices randomly named based on order of PNP discovery Modern servers (Dell 12 th gen, HP Gen8) can store network port device names WS2012 and later can detect these names Uses device name to name network connections: Port 1 Port 2 Slot 1 1 Slot 1 1

Converging Networks Not a new concept from hardware vendors Introduces as a software solution in WS2012 Will cover this topic in the High Availability session

SMB 3.0 No longer just a file & print protocol Learn more in the SMB 3.0 and Scale-Out File Server session

Thank You! Aidan Finn @joe_elway www.aidanfinn.com Petri IT Knowledgebase