Networking From Physical to Virtual

Preview:

DESCRIPTION

Networking From Physical to Virtual. 100% Physical Environment. Devices on Management Network. Devices on iSCSI /NFS Network. OS A pps. OS A pps. VLAN 15. VLAN 10. Trunk. Physical Network. Physical and Virtual Environment. Devices on Management Network. - PowerPoint PPT Presentation

Citation preview

© 2009 VMware Inc. All rights reserved

NetworkingFrom Physical to Virtual

2 Confidential

100% Physical Environment

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

Trunk

3 Confidential

Physical and Virtual Environment

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1

Trunk

4 Confidential

Creating a Virtual Machine

OSApps

5 Confidential

# of Network Cards

6 Confidential

Selecting the VLAN/Network for the Virtual Machine

7 Confidential

Selecting the Network Card

8 Confidential

A Virtual Machine is a set of files

9 Confidential

MAC Address

10 Confidential

What does the OS see for NIC?

11 Confidential

What does the OS See?

© 2009 VMware Inc. All rights reserved

Confidential

vNetwork Standard Switch

13 Confidential

Physical and Virtual Environment

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1

Trunk

14 Confidential

Base Networking Configuration

15 Confidential

Creating a Port Group for Virtual Machine

16 Confidential

Selecting the Physical Network Card(s)

17 Confidential

Setting the VLAN for 1st Port Group

18 Confidential

Adding Additional Port Groups

19 Confidential

VMkernel – Virtual Network Cards for ESX

20 Confidential

Types of Traffics for VMkernel

21 Confidential

VSS - Load Balancing

22 Confidential

VSS - Network Failover Detection

23 Confidential

VSS - Security

24 Confidential

VSS - Traffic Shaping

25 Confidential

VSS - Completed Networking

26 Confidential

Physical with 1 ESX Host

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1

Trunk

27 Confidential

Physical with 2 ESX Hosts

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

Trunk

28 Confidential

VMotion

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

NetworkOS

Apps

ESX1 ESX2

Trunk

29 Confidential

VMotion

Physical Network

VLAN 10

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

VLAN 15 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

Trunk

© 2009 VMware Inc. All rights reserved

Confidential

vNetwork Distributed Switch

31 Confidential

VMware Distributed Switch

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

UpLink1

UpLink2

UpLink3

Trunk

32 Confidential

VMware Distributed Switch

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

UpLink1

UpLink2

UpLink3

Trunk

33 Confidential

VMware Distributed Switches

34 Confidential

DVS – Base Configuration

35 Confidential

DVS – New Port Group

36 Confidential

DVS – Types of Port Groups

37 Confidential

DVS – Port Group Configuration

38 Confidential

DVS – Configured with 2 Port Groups

39 Confidential

DVS – Load Balancing

40 Confidential

DVS – Add Hosts

41 Confidential

Virtual NICs

42 Confidential

Networking – Final Configuration

© 2009 VMware Inc. All rights reserved

Confidential

Cisco Nexus 1000v

44 Confidential

Cisco Nexus 1000v

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

UpLink1

UpLink2

UpLink3

Trunk

45 Confidential

Networking – Installation VSM

46 Confidential

Networking – Installation VEM

47 Confidential

Configuration the VSM

48 Confidential

Networking

49 Confidential

Keep your process consistent

Network Administrator view

N1k-VSM# sh port-profile name Ubuntu-VMport-profile Ubuntu-VM description: status: enabled capability uplink: no capability l3control: no system vlans: none port-group: Ubuntu-VM max-ports: 32 inherit: config attributes: switchport mode access switchport access vlan 95 no shutdownassigned interfaces: Vethernet2 Vethernet4

Server Administrator view

© 2009 VMware Inc. All rights reserved

Confidential

Blade Chassis Configuration

51 Confidential

Blade Chassis with 2 Blades using Standard Switch

Blade Chassis

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

52 Confidential

Blade Chassis with 2 Blades using Distributed Switch

Blade Chassis

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

UpLink1

UpLink2

UpLink3

© 2009 VMware Inc. All rights reserved

Confidential

VMware Network IO Control

54 Confidential

Network IO Control

Blade Chassis

Physical Network

VLAN 10 VLAN 15

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

VLAN 10 VLAN 20

Devices on iSCSI/NFS

Network

Devices on Management

Network

OSApps

OSApps

ESX1 ESX2

© 2009 VMware Inc. All rights reserved

Confidential

Switch Feature Comparison

56 Confidential

Switch Feature Comparison – 1 of 3

FeatureESX 3.5: Standard vSwitch

VMware 4u1: vNetwork Standard

Switch

VMware 4u1: vNetwork

Distributed Switch

Cisco Nexus 1000V 1.2

Switching FeaturesLayer 2 Forwarding Yes Yes Yes Yes

IEEE 802.1Q VLAN Tagging Yes Yes Yes Yes

Multicast Support (IGMP v2 and v3) Yes Yes Yes Yes

IGMPv3 Snooping - - - Yes

VMware VMotion Support Yes Yes Yes Yes

Network VMware VMotion (Network Policy) - - Yes Yes

Upstream Switch ConnectivityVirtual MAC Pinning Yes Yes Yes Yes

EtherChannel Yes Yes Yes Yes

Virtual Port Channels - - - Yes

Link Aggregation Control Protocol (LACP) - - - Yes

Load Balancing Algorithms Virtual Switchport ID Yes Yes Yes Yes

Source MAC Yes Yes Yes Yes

Source and Destination IP Yes Yes Yes Yes

Source and Destination MAC - - - Yes

Source and Destination Port IP - - - Yes

Additional Hashing Options - - - Yes

57 Confidential

Switch Feature Comparison – 2 of 3

FeatureESX 3.5: Standard vSwitch

VMware 4u1: vNetwork Standard

Switch

VMware 4u1: vNetwork

Distributed Switch

Cisco Nexus 1000V 1.2

Traffic Management Features Tx Rate Limiting (from virtual machine) Yes Yes Yes Yes

Rx Rate Limiting (from virtual machine) - - Yes Yes

iSCSI Multipathing - Yes Yes Yes

Quality-of-service (QoS) markingDifferentiated Services Code Point (DSCP) - - - Yes

Type of Service - - - Yes

Class of Service - - - Yes

Security FeaturesPort Security Yes Yes Yes Yes

VMware VMSafe compatible Yes Yes Yes Yes

Private VLANs (PVLANs) - - Yes Yes

Local PVLAN enforcement - - - Yes

Access Control Lists (ACL) - - - Yes

DHCP Snooping - - - Yes

IP Source Guard - - - Yes

Dynamic ARP Inspection - - - Yes

Virtual Service Domain - - - Yes

58 Confidential

Switch Feature Comparison – 3 of 3

FeatureESX 3.5: Standard vSwitch

VMware 4u1: vNetwork Standard

Switch

VMware 4u1: vNetwork

Distributed Switch

Cisco Nexus 1000V 1.2

Management FeaturesVMware vCenter Support Yes Yes Yes Yes

Third Party Accessible APIs Yes Yes Yes Yes

Network Policy Groups Yes Yes Yes Yes

VMware port mirroring (promiscuous) Yes Yes Yes -

Multi-Tier Policy Groups (inheritance) - - - Yes

SPAN - - - Yes

ERSPAN - - - Yes

Netflow v9 - - - Yes

SNMP v3 Read/Write - - - Yes

CDP v1/v2 Yes Yes Yes Yes

Syslog ** ** ** Yes

Packet Capture & Analysis - - - Yes

Radius/TACACS+ - - - YesConfiguration and management console and interface VI Client VI Client VI Client to VMware

vCenter ServerVMware vCenter

and Cisco CLIIPv6 for Management - Yes Yes Yes

NX-OS XML API - - - Yes

59 Confidential

ICONS

Nexus 1000

Nexus 1KV VSM

Workgroup Switch

Recommended