Softverski definirani data centri - 2. dio
Vmware NSX
To Deliver a Software Defined Data Center Implementation Automated Operational Model Programmatically Create, Snapshot, Store, Move, Delete, Restore Software Virtual Machines Applications Virtual Networks Data Center Virtualization Virtual Storage Hardware Compute Capacity Network Capacity Storage Capacity Pooled compute, network and storage capacity Vendor independent, best price/performance Simplified configuration & management Location Independence
Network Virtualization Overview Application Application Application Workload Workload Workload x86 Environment Software L2, L3, L4-7 Network Services Virtual Machine Virtual Machine Virtual Machine Virtual Network Virtual Network Virtual Network Server Hypervisor Requirement: x86 Decoupled Network Hypervisor Requirement: IP Transport Hardware General Purpose Server Hardware General Purpose Networking Hardware 5
Virtualne mreže? 192.168.2.11 192.168.2.11 192.168.2.10 Network & Security Services Now in the Hypervisor 192.168.2.10 Load Balancing L3 Routing L2 Switching Firewalling/ ACLs
Problem: Data Center Network Security Perimeter-centric network security has proven insufficient, and micro-segmentation is operationally infeasible Internet Internet Little or no lateral controls inside perimeter Insufficient Operationally Infeasible
Micro-Segmentation Simplifies Network Security Perimeter firewall Inside firewall Finance HR Engineering DMZ App DB Each VM can now be its own perimeter Policies align with logical groups Prevents threats from spreading Services AD NTP DHCP DNS CERT
Automated Security in a Software Defined Data Center Quarantine Vulnerable Systems until Remediated Policy Definition Standard Desktop VM Policy Anti-Virus Scan Quarantined VM Policy Firewall Block all except security tools Anti-Virus Scan and remediate 9
NSX for vsphere Use Case VDI Internet Access Virtual Desktop Virtual Desktop Virtual Desktop WEB Tier APP Tier DB Tier Virtual Desktop Virtual Desktop Virtual Desktop Back End VDI Web browsing protocols inspection SDDC DFW INTERNET VM-Series FW
NSX for vsphere 6.2 Major Enhancements Pooling network capacity across multiple VMware vcenter instances Enhanced network and security services New connectivity options for physical workloads and services Improved operations and visibility
NSX for vsphere Ecosystem Technology Partners
VMware NSX - DEMO
vsphere Replication
vsphere Replication (VR) Hypervisor-based Replication for vsphere VMs Site A Site B Solution Description VR is VMware s proprietary technology for hypervisor-based replication of vsphere virtual machines vsphere vsphere Replication vsphere SAN NAS Virtual SAN Virtual SAN NAS SAN Key Features VM-centric, storage-independent Flexible RPO (15 min. to 24 hrs.) MPIT (1) recovery (up to 24 replicas) Network-efficient light-weight delta replication (1) Multiple point-in-time (2) Included with vsphere Essentials Plus or higher editions Key Benefits Simplifies replication of virtual machines Reduces storage and bandwidth investments Integrated with the VMware product stack Included with vsphere (2) at no additional cost
vsphere Replication Provides The Most Flexible VM Protection VM-centric replication simplifies management Storage-independence eliminates need for matching storage across source and target Flexible RPO enables protection according to app needs and available bandwidth MPIT recovery ensures recoverability in case of data corruption 1
What s New in vsphere Replication 6.0 End-to-end network compression Further reduces bandwidth requirements Network traffic isolation Control bandwidth, improve performance and security Host Mgmt vmknic0 VR Traffic vmknic1 LAN WAN Linux file system quiescing Increased reliability when recovering Linux VMs VMware Tools Faster full sync Improves performance, reduces bandwidth consumption Allocated? Y N Compare Skip Allocated? Y N Move replicas without full sync Balance storage utilization while avoiding RPO violation Replica Storage vmotion Replica
vsphere 6 Data Protection
vsphere 6.0 VMware vsphere Data Protection vsphere Data Protection includes all functionality previously included with vsphere Data Protection Advanced Data protection and disaster recovery for VMs integrated with vsphere Simple to deploy, easy to manage with the vsphere Web Client Based on EMC Avamar and utilizes changed block tracking (CBT) VDP VDP Backup Data Replication
vsphere 6.0 - vsphere Data Protection Use Cases Data protection for small and medium sized organizations Backup of up to 800 VMs per vcenter Server environment Protect nearly any workload running in a VM Remote office - branch office (ROBO), distributed environments Up to 20 VDP appliances per vcenter Server, external proxies Data center migration and disaster recovery Backup VMs locally, replicate backup data to target location, restore VMs
vsphere 6.0 vsphere Data Protection Features and Benefits Up to 8TB of deduplicated backup data capacity per VDP appliance Protect approximately 150-200 VMs per appliance, minimal storage consumption Agent-less VM backup and restore, file level restore Reduce complexity and cost Application level backup and restore of SQL Server, Exchange, SharePoint Select individual databases, app-consistent quiescing, transaction log management Robust protection for mission-critical workloads
vsphere Data Protection - DEMO
VMware Site Recovery Manager - SRM
Of businesses that lose 93% their data center for 10 days go bankrupt within one year Source: National Archives & Records Administration
Uptime And Protection Of Data Are Critical For Business Productivity Revenue Reputation Compliance Source: Forrester - The State Of Business Technology Resiliency, Q2 2014
Data Center Outages Can Happen In Many Different Ways 43% 31% Power outage IT Hardware Failure 13% 12% Human error Hurricanes Source: Q2 2014 Forrester - The State Of Business Technology Resiliency, 2
Traditional Disaster Recovery Continues To Be Challenging Expensive Complex Unreliable Software Hosts Storage Facilities Apps? Storage????? Hosts?? Network DR Test Once a Year 2
The Three Building Blocks For Disaster Recovery VMware Ecosystem DR Orchestration Replication Backup and Recovery Compute Storage Networking Site Recovery Manager vsphere Replication vsphere Data Protection vsphere Virtual SAN NSX Array-based Backup copies External Storage External IP
vcenter Site Recovery Manager (SRM) Automated Disaster Recovery Orchestration Solution Description Production Site Recovery Site SRM is the industry-leading disaster recovery automation solution for vsphere environments vcenter Server Site Recovery Manager vsphere Replication vcenter Server Site Recovery Manager Key Features Centralized recovery plans for thousands of VMs vsphere vsphere Non-disruptive recovery testing Automated DR workflows Integrated with the VMware product stack Key Benefits Servers Array-based replication Servers Lowers the cost of DR management by 50% or more Eliminates complexity and risk of manual processes Enables fast and highly predictable RTOs Provides policy-driven DR control for any virtualized app * Disaster Avoidance
SRM Is An Award-Winning Solution With Proven Track Record Mature product introduced in 2008 Over 14,000 customers Thousands of Customers Over 2.4 Million VMs protected Award-winning three years in a row Virtualization Review s Reader s Choice Awards Best Business Continuity Product...In Venezuela, our factory suffered a massive fire. Two hours and 40 minutes after we were notified, that factory was running in our DR site in New Jersey. David Giabruna, SVP and CIO, Revlon
SRM Supports Several DR Topologies Production Active- Passive Failover Active-Active Failover Production Bi-directional Failover Production Shared Recovery Sites Recovery Recovery Production Dedicated resources for recovery Run low-priority apps on recovery infrastructure Production applications at both sites Each site acts as the recovery site for the other Many-to-one failover Useful for Remote Office / Branch Office
Beyond DR: Typical Uses Cases For SRM Disaster Recovery Least frequent but mostcritical use case Ensure fastest RTO Avoid $145,000 per hour of downtime (Forrester) Disaster Avoidance Proactive, controlled workflow Ensures app-consistency and zero data loss Planned Migration Frequent on-ramp use case for SRM Enables data center maintenance and global load balancing
Reasons To Choose Site Recovery Manager DR at ½ the Cost 1-Click Recovery Test to Rest No Apps Left Behind Reduces costs for DR management and testing by 50% (1) Decreases DR costs by 21% eliminating replication software (1) Decreases TCO for recovery storage by 50% using Virtual SAN Centralized recovery plans for thousands of VMs Automated DR failover with RTO as low as 30 min Planned migrations and disaster avoidance with zero data loss Automated re-protection and failback using original recovery plan Frequent non-disruptive testing, even during business hours Eliminate the infamous DR testing weekend Testing reports simplify regulatory audit compliance App-agnostic solution to protect any virtualized app vsphere Replication at no cost increases DR protection Array-based replication with options for synchronous (zero RPO) Ecosystem of Service Providers offer DRaaS based on SRM (1) The Total Economic Impact of VMware vcenter Site Recovery Manager, Forrester, May 2013 3
SRM Automates Every Workflow Of DR Orchestration Non-disruptive Testing Automated Failover Automated testing in isolated network Increases predictability of recovery time objectives (RTO) Main site SRM Recovery site Single-click initiation Emphasizes fastest possible recovery after an outage Automated Failback Re-protect from Site B to A using original recovery plan Streamlines bidirectional migrations Replication Planned Migrations Ensures zero data loss and app consistency Enables proactive disaster avoidance and DC maintenance
Site Recovery Manager - DEMO
Pitanja?