1、VMware NSX | The New Role of Software NetworkingVMware VMware 的的 SDDC SDDC 体系结构体系结构软件定义的数据中心软件定义的数据中心抽象化抽象化池化池化自动化自动化服务器虚拟化服务器虚拟化 vs 网络虚拟化网络虚拟化物理网络(Arista, Cisco, HP, Juniper, Cumulus,) 网络虚拟化平台需求: IP 可达的网络虚拟网络虚拟网络虚拟网络网络连线网络连线网络连线L2, L3, L4-7 网络服务物理运算单元及内存(Dell, HP, IBM, Quanta,)服务器虚拟化软件需求: x86硬件架构虚拟
2、机虚拟机虚拟机应用服务应用服务应用服务X86 服务环境脱钩4The New Role of Software NetworkingHalf of all Server Access Ports are already virtualon track be 67% in 2 years80% of VMware customers are preparing for network virtualization40% of vAdmins manage virtual switching0102030405060201020112012201320142015百万百万Virtual Server
3、 Access Ports 32% CAGRPhysical Server Access Ports 15% CAGRCREHAN RESEARCH Inc.50102030405060201020112012201320142015百万百万Virtual Server Access Ports 32% CAGRPhysical Server Access Ports 15% CAGRCREHAN RESEARCH Inc.The New Role of Software NetworkingHypervisor6HypervisorX86 Hosts40 GbpsPer hostPhysic
4、al orVirtual30K Logical SwitchesHardwareSoftwareHardwareSoftwareAny Cloud Management Platform40 GbpsPer hostNo Tromboning1,000Logical RoutersPer domain30 GbpsPer hostKernel Integrated25,000 CPS2.5 millionSessionsScale-Out150 Gbpsthroughput1M CPS10M ConcurrentFW, LB, VPNThe New Role of Software Netwo
5、rking1101001,000Hosts30 Gbps300 Gbps3 Tbps30 TbpsThe Power of a Distributed SystemDistributedSwitchingDistributedRoutingDistributedFirewallEdgeServicesVMware NSX Software Virtual NetworksExisting Network InfrastructureSwitchingRoutingFirewallLB, VPNEdgeServices30 Terabits per secondVMware NSX API7Hy
6、pervisorX86 HostsHardwareSoftwareCAPEXOPEXHardwareSoftwareForwardingCapacityAgility& SpeedThe New Role of Software Networking1101001,000Hosts30 Gbps300 Gbps3 Tbps30 Terabits per secondThe Power of a Distributed SystemExisting Network InfrastructureSimplifiedNo VLAN, No ACL, No Firewall RulesNew Func
7、tionalityNew EconomicsExisting InfrastructureDistributedSwitchingDistributedRoutingDistributedFirewallEdgeServicesVMware NSX Software 8ConfidentialNSX | The “Network Hypervisor”9ConfidentialA data center networkInternet10ConfidentialInternetCompute infrastructure.11ConfidentialInternetHypervisors an
8、d vSwitches12ConfidentialInternetNSX | The “Network Hypervisor”13ConfidentialInternetVirtual Networks Like Virtual Machines for the Network14ConfidentialA Virtual Network?15ConfidentialNo Change to Workloads16ConfidentialProgrammatically Provisioned17ConfidentialServices Distributed to the Virtual S
9、witch18ConfidentialVirtual Network A complete network in software19ConfidentialVirtual Network A complete network in software20ConfidentialOn ANY Network Hardware21ConfidentialSecurity22ConfidentialSecurity Complete IsolationVirtual Networks are isolated from each other(Overlapping IP Addresses)Virt
10、ual Networks are isolated from underlyingphysical network (IPv6 over IPv4)23ConfidentialInternetCentral Policies, Distributed Enforcement, Move with VMsSecurity PolicySecurity Policy- Reduce Choke Point Security- Centrally Define Policies, Distribute Rule Enforcement- Security Policies Move with VMs
11、- Changes to central policies automatically distributed to affected VMs24ConfidentialScale25ConfidentialScale-out Controller Cluster100,000 Virtual Machines10,000 Virtual Networks26客客户户案例案例iLand27eBay“NVP allows us to repurposenetwork infrastructure on-demand, and reduces the time it takes to deploy
12、 test/dev environmentsfrom days to minutes.JC MARTINCLOUD ARCHITECT, EBAY7 days to 30 secondsTransform the time it takes to deploy complex test & development environments for developers and QA.28Rackspace“NVP, combined with OpenStackis a game changer. Together we arebringing enterprise private netwo
13、rkingto the cloud.LEW MOORMANPRESIDENT, RACKSPACERackspace Cloud Networks$15-$20 million a year savings by not overprovisioning serversDeliver enterprise-class private networking in a public,multi-tenant cloud.29Improved Server Utilization less overprovisioning of serversWithout Network Virtualizati
14、on 60% Asset UtilizationWith Network Virtualization 90% Asset Utilization30NTT“Network virtualization is the key to cloudand NVP transcends anything weve seen.EIJI KUWANAVICE PRESIDENT, GENERAL MANAGER, SECURE PLATFORMInter-Data Center VM mobilityDisaster RecoveryTransform NTTs cloud into a common c
15、omputing platform that accelerates delivery of services and maximizes NTTs worldwide assets, data centers and carrier-grade networks.31Layer 3 NetworkServer HypervisorServer HypervisorLogical ViewTransport View VM 5VM 6VM7VM 5VM 6VM7Open vSwitch in Server HypervisorOpen vSwitch in Server HypervisorN
16、VP Extender #1 Data CenterVM 3VM 4VM 1VM 2 VM 3VM 4VM 1VM 2Controller ClusterAPINTT跨数据中心整合跨数据中心整合, ,实现实现云迁移服云迁移服务务Solution Benefit: 支持在线虚拟机迁移vMotion虚拟机网络地址不需更改简化物理网络配置不需要数据中心之间二层网络打通InternetPM8Physical MachineInternetNVP Extender #232Do you need NSX?Do you need todeliver cloud services?support multi
17、-tenancy in your cloud?reduce the time it takes to deliver network services?dramatically reduce network operational costs?repurpose your physical infrastructure on demand?increase the time between hardware refreshes?deliver complex, unique network topologies on demand?speed an applications transition from dev to test to production?access data center compute assets, without network reconfiguration?make frequent VLAN, ACL or firewall configuration changes?go faster, be more innovative, increase business velocity?do more with less?33Next Steps