Building Hybrid Cloud: for publication From Edge To CloudEnterprise Data Centers Branch Sites. NSX...
Transcript of Building Hybrid Cloud: for publication From Edge To CloudEnterprise Data Centers Branch Sites. NSX...
#vmworld
HYP1223BE
#HYP1223BE
Building Hybrid Cloud:From Edge To Cloud
Serge MaskalikSr. Director, R&D, HCX Services
Nimisha MahuvakarManager, Product Marketing, HCX Services
VMworld 2018 Content: Not for publication or distribution
Disclaimer
2©2018 VMware, Inc.
This presentation may contain product features orfunctionality that are currently under development.
This overview of new technology represents no commitment from VMware to deliver these features in any generally available product.
Features are subject to change, and must not be included in contracts, purchase orders, or sales agreements of any kind.
Technical feasibility and market demand will affect final delivery.
Pricing and packaging for any new features/functionality/technology discussed or presented, have not been determined.
VMworld 2018 Content: Not for publication or distribution
©2018 VMware, Inc. 3
From Edge To Cloud
VMworld 2018 Content: Not for publication or distribution
4©2018 VMware, Inc.
The digital transformation era is upon us
VMworld 2018 Content: Not for publication or distribution
5©2018 VMware, Inc.
The Application Is a NetworkApps need to move freely in network, seamlessly and securely
Applications are moving from branch to the edge and cloud: Public, Private, Hybrid.
Increasing control is within apps. (IoT, Self-driving cars)
Higher utilization of cloud services: Storage, Compute and other rich application services
Apps demand seamless and secure movement across Edge and cloud.
0%
25%
50%
75%
100%
2011 2016 2021 2030
Enterprise Cloud IT-SDX Central
Changing Traffic Flows to the Cloud
30-50%of large Enterprise traffic is shifting to the cloud,
changing traffic flows —Gartner
VMworld 2018 Content: Not for publication or distribution
6©2018 VMware, Inc.
Legacy Networks Cannot Support Today’s Edge
Applications Run SlowCapex of $20K-$50K per Branch
Private Line is 100X the Cost of Broadband Deployment Takes Months
Branch100s to 1000s
Private Line(MPLS) Datacenter
VMworld 2018 Content: Not for publication or distribution
7©2018 VMware, Inc. 7
Data center Cloud Edge / Branch
SaaS
PaaS IaaS
Apps Require Seamless Mobility
7
App and Data Everywhere
Free movement Across DC and Cloud
VMworld 2018 Content: Not for publication or distribution
8©2018 VMware, Inc.
Identity
Apps and Data
Policy ScalabilityAnalytics and Insights
Secure Connectivity Availability
Users
Private Data Centers
VMs, Containers, Microservices
Branch Offices
Public Clouds
Telco Networks
Things
Virtual Cloud NetworkingAny workload across any environment
Built-in
Automated
Programmable
Application Centric
VMworld 2018 Content: Not for publication or distribution
9©2018 VMware, Inc.
Minimum Requirements From Edge to Cloud
Connect Protect Migrate Automate
VMworld 2018 Content: Not for publication or distribution
10©2018 VMware, Inc.
InternetPrivate
Cellular (4G/5G)
Enterprise Data Centers
Branch Sites
NSX SD-WANby VeloCloud NSX Data CenterWAN Connectivity Services Networking & Security
for all workloads
VMworld 2018 Content: Not for publication or distribution
11©2018 VMware, Inc.
InternetPrivate
Cellular (4G/5G)
Enterprise Data Centers
NSX Hybrid ConnectNSX CloudNSX Data CenterNetworking & Security for all workloads
Cloud Native Network Services
Data Center and Cloud Workload Migration and Hybridity
Cloud
VMware Cloud On AWS
VMworld 2018 Content: Not for publication or distribution
12©2018 VMware, Inc.
InternetPrivate
Cellular (4G/5G)
Enterprise Data Centers
Branch Sites
NSX SD-WANby VeloCloud NSX Hybrid ConnectNSX CloudNSX Data CenterWAN Connectivity Services Networking & Security
for all workloadsCloud Native Network Services
Data Center and Cloud Workload Migration and Hybridity
Cloud
VMware Cloud On AWS
VMworld 2018 Content: Not for publication or distribution
13©2018 VMware, Inc.
NSX Product Family + VMware Cloud on AWS
Network Virtualization Platform
Security
IntegrationExtensibility
Automation
Elasticity
vSphere vSAN NSX
AWS Global Infrastructure
AWS services
Operational Management : vRealize Suite, ISV ecosystem, vCenter
vCenter
VMware CloudTM
on AWS
Hybrid Cloud Extension
Enables Hybrid And Multi Cloud Architectures
VMworld 2018 Content: Not for publication or distribution
©2018 VMware, Inc. 14
Building Cloud With HCX
VMworld 2018 Content: Not for publication or distribution
Enabling App Mobility
& Infrastructure Hybridity
Across Private & Public Clouds
While maintaining Business Continuity & Compliance
HCX
Want ‘Lift and Shift’
Have varied vSphere versions
Want Private And Public Cloud
Need zero downtime migration
Do not want to re-IP
Private/Public Cloud Migration
Challenges
Private/Public Cloud Adoption
Inertia
Delayed by App Dependency Mapping
Time To Get High Bandwidth Connection
Want to maintain the same network architecture
Need Future Proof Cloud Architecture
HCX
VMworld 2018 Content: Not for publication or distribution
Public cloud
Private cloud
Legacy On-premises
HCX
App MobilityAccelerate Live Large Scale Cloud Migration
Between Any vSphere Versions
Infrastructure HybridityTether Cloud to On-Premises Securely With WAN Optimized, Multisite DC Interconnect
Operational AutomationReduce Operational Complexity. Seamless
Cloud Adoption. Eliminates Need Of Retrofit, Redesign, re-IP or Network Re-
architectureMulti Cloud App Mobility And Infrastructure Hybridity
HCX: Driving the Hybrid Cloud and Multi Cloud Future
VMworld 2018 Content: Not for publication or distribution
17©2018 VMware, Inc.
Private Cloud Public Cloud
HCX: Enabling App Mobility in a Multi-Cloud World
VCF VCPP
App Mobility
SDDC Hybridity
HCX
AWS Cloud
VMCvSphere
Infra Abstraction
Legacy DC
vSphere 5.0+ NSX DC with Latest SDDCVMworld 2018 Content: Not for publication or distribution
18©2018 VMware, Inc.
Cloud adoption delays because of VM dependency mapping
Want to maintain compliance and governance
$ Want to lower TCO
Cloud Adoption Concerns HCX
Extend networks in few clicks to cloud and maintain the same network architecture
Feature rich. Multiple technologies together as a service. No separate appliances to manage. Auto VPN Set up. Migrate from non-NSX switches to cloud.
Want to maintain present network architecture
Hybridity tethers On-Premises to Cloud reducing need and time for extensive VM dependency analysis
Maintain governance and compliance on premises and migrate VMs to Cloud
Future proof cloud architecture Hybridity enables multi site and distributed cloud architectures
Accelerate Cloud Adoption
VMworld 2018 Content: Not for publication or distribution
19©2018 VMware, Inc. .
OLD Have Older Version Of vSphere
Have Limited WAN Bandwidth
Cloud Migration Requirements HCX
No need for vSphere upgrade at source. Migrate from 5.0+ vSphere version on premises
Simplified and Unified Hybrid Management. Day2 Operational monitoring, metrics and meters.
Retain IP addressing schemes and security policies for app migration
Reduce the WAN bandwidth requirements with WAN optimization.
Want to maintain IP address schemes.
High grade Encrypted Interconnect. Secured With VPN, loosely coupled, non-interfering vSphere tethering
Need Secured Migration?
Migrate 1000s of VMs LIVE with high throughput
Need Large Scale Migration At Speed
Need Simplified Management
Migrate Rapidly, Seamlessly, Securely
VMworld 2018 Content: Not for publication or distribution
20©2018 VMware, Inc.
How To Get HCXHCX is available with various routes to meet different customer needs
Bundled with VMware Cloud
on AWS
Through VCF partners and private cloud
Available with NSX Ent+ License
Available through
various VCPP partners
Public Cloud
Cloud Foundation
Private Cloud
PartnerProgram
VMworld 2018 Content: Not for publication or distribution
©2018 VMware, Inc. 21
Technical Overview
VMworld 2018 Content: Not for publication or distribution
22©2018 VMware, Inc.
HCX Deployment Overview
Multi-tenant & Dedicated
CloudsVCD
On-PREM Modern SDDCVCF, VC > 6.7
Legacy On-prem(Enterprise DCs)vSphere 5.5 & 5.1
SI/SO Managed Hosting
vSphere <5.0-6.7
VCF/SDDC Cloud(IBM, VMC, OVH, …)
VCF, VC>6.7
VCD
HCX C&C
Other Hypervisors, Physical
(Coming Soon)
HCX-E HCX-C HCX-E HCX-EHCX-C HCX-C
HCX (Mobility & Replication, Migration)
New Version
New VersionTelemetry
VMworld 2018 Content: Not for publication or distribution
23©2018 VMware, Inc.
Example Multi-site, Multi-version, Multi-Cloud Topologies with HCX
Migrate from Openstack/KVM to vSphere (Roadmap)
Traditional EnterpriseApplications
VIRTUALMACHINES
ESX 5.0
VC 5.1
Legacy Site Via M&A
Enterprise Cloud
VMVM
VIRTUALMACHINES
VDC
VC 6.5
IBM
Provider Cloud
VMVM
HCX Cloud
VIRTUALMACHINES
VDC
VC 6.8
VMC
Provider Cloud
VMVM
HCX Cloud
VIRTUALMACHINES
ESX
VC 6.0
Site 1
Enterprise Cloud
VMVM
HCX Enterprise
VIRTUALMACHINES
ESX
VC 6.0
Site 2
Enterprise Cloud
VMVM
VIRTUALMACHINES
ESX
VC 5.5
Site 3
Enterprise Cloud
VMVM
HCX Enterprise
HCX Enterprise
HCX Enterprise
VMworld 2018 Content: Not for publication or distribution
Migration using HCX
Cold migration
vMotion
Bulk
Cloud Motion with vSphere Replication*
Offline
Online
Online
Online
Data TransferVM State
Off
On
On
On
VM Migration
Cold
Live
Live
Warm
HCX Migration Options (as of Q4CY18)
* Available for VMCVMworld 2018 Content: Not for publication or distribution
ESX ESX
vMotion
vCenter 5.5+ Server
vCenter6.8+ Server
Select VMs to Migrate1
Schedule for migration
VMs are replicated to cloud
At scheduled time, delta vMotion to sync VMs
2
4
3
VMs go live on Cloud5
L3 vMotion Network
L2 VM Network
HCX
Cloud Motion With vSphere Replication
VMworld 2018 Content: Not for publication or distribution
26©2018 VMware, Inc.
HCX
Hybrid Infrastructure
SecureProxies
Hybrid Interconnect
Hybrid Services
vCenterLegacy SSOvMotion 5.5 – 6.x+vSphere Replication.oldESX Any Hardware & Legacy CPUs
Security Proxies Dedicated or Multi-tenant
VCF or Latest vSpherePSCX-Cloud vMotionvSphere Replication.newESX.nextVSAN Encryption
Application Landscape
Application Landscape
Move/Protect, Low Downtime & Maint. WindowsMulti-site DR Protection & Data Governance
Transform/rightsize Virtual Disks Thick to ThinRightsize VM, UpgradeVmTools & Virtual H/W
Extend Storage, Firewall, LB, DNS and RoutingBest-in-class Suite-B Encryption
Extends L2 Networks for any virtual switchPrioritize Interactive Apps over Backups/replication
Traffic Reduction & WAN Fairness High Throughput Internet Path Optimization
Transform to NSXUpgrade VDS Avoid VLAN SprawlMicro-segmentRetain LB & FW VendorMobility-aware
Works best with NSX Supports N1k & VSSVLANs or VXLANsLeverage Existing Perimeter
Components & Capabilities
VMworld 2018 Content: Not for publication or distribution
27©2018 VMware, Inc.
HCX Comparison to “DIY” Approaches
Includes Build It YourselfWith:
Build It With VMware:
High Throughput Network Extension w/ TE & QoS, no MTU or Latency Issues! Hardware (OTV, etc) HCX
EnhancedWorkloadPortability
Legacy DR solutions(low downtime migrations)
HCX
vMotion, Replicate & Migrate between different versions Only HCX
Securely proxy vMotion//ReplicationAbstract and Protect ESX
Only HCX
Proximity RoutingElephant/Mice application controlvMotion+vR Aware proxies
Only HCX
Migration Traffic ReductionCompression, De-DupIntelligent Routing, TE
WAN Opt Vendors, Specialized SPs HCX
vSphere 6.xvSphere 5.0
VMworld 2018 Content: Not for publication or distribution
28©2018 VMware, Inc.
Customer Case Studies
VMworld 2018 Content: Not for publication or distribution
29©2018 VMware, Inc.
Job to Be Done: Migrate & Transform to IBM Cloud
Goals
Migrate without service impact Key applications like aa.com, airport kiosks, cargo, etc
Modernize via VMware SDDC Transform to NSX, VSAN, new version of vSphere
Transform to IBM Cloud Adopt IBM IaaS, shutdown 2 datacenters
Constraints / Requirements
Frequent Production Freezes Migrations must be planned and scheduled
Limited set of team members available Migration tech must be simple to operate
Limited Bandwidth Network designed for serving users, not large scale mobility
Mix of networks (Internet, private, MPLS) Large number of airports & legacy DCs, plus new IBM sites
DR must be available during migration period Implies moving data to multiple sites at the same time
Limited time to evacuate legacy sites Driven by contract penalties, no time to retrofit/upgade
~500 VMs, 4 vBlocks, 120 TBs of data on ~80 VLANs Large dataset and complex topology to replicate
Locations & Sites
Two Legacy sites: California (Primary) & Texas (DR) with WAN-connections to all airports must move to IBM Cloud SJC and WDC locationsVMworld 2018 Content: Not for publication or distribution
30©2018 VMware, Inc.
Infrastructure Restrictions
Legacy S/W & H/W: vSphere 5.1 & 5.5, 2011 vBlock/UCS (old CPUs), Nexus 1000v
Compatibility issues: need to move to vSphere 6.5, NSX, new CPUs
WAN Conditions: MTU problems (small WAN, jumbo LAN), latency constraints, limited throughput, multiple security domains, separate fault domains
Bandwidth Limitations: 500Mb/s shared Internet connectivity used by critical apps and migration traffic, limited private line capacity towards airports, lots of end users
Complex network: lots of firewalls in the path (AA DCs + IBM Softlayer), many PoPs (AA, Softlayer VRFs, Airport PoPs)
VMworld 2018 Content: Not for publication or distribution
31©2018 VMware, Inc.
Migration Complexity
Complex Pre-migration process: app assessment / planning / transformation discussions without movement in 1 year
Need a way to migrate without breaking app dependencies (multi-tier apps with different networks/zones, filer shares, backups)
Lots of migration waves – AA has SDLC, QE/DEV/Staging/Prod
Must move to multiple sites at once: to primary site, and DR site in parallel
Move templates and seed DR site, like-for-like bulk migration and complex apps like Oracle RAC
Applications like AA.com, cargo & airport kiosk back-ends must have no or minimal downtime
VMworld 2018 Content: Not for publication or distribution
32©2018 VMware, Inc.
Ease of Use / Operational Concerns
Recreate same topology and zoning on the target site and migrate 100% to NSX
AA must retain IP addressing schemes for applications and not be impacted by restrictions in cloud or virtualization infrastructure (i.e. overlap of 10.0.0.0/8)
Should be possible to extend many networks in a few clicks
Migration tech and WAN overlays must traverse the firewalls easily, no complex VPN / tunnel configs and fully automated deployment & upgrades
Manage migration traffic over Internet and network extensions with application via private line
Prevent migration traffic from overrunning shared network paths
VMworld 2018 Content: Not for publication or distribution
HCX: What’s New
New Technical Advancements:
• Best-In-Class Cloud Motion Technology GA For VMC:
Cloud Motion With vSphere Replication : Accelerate Live Migration At Scale
• Simplified HCX On-boarding With HTML5 Enabled APIs GA
Past Quarter Announcements:
• HCX (aka NSX Hybrid Connect) Availability with NSX Enterprise + License
• VCPP Partners : IBM, OVH, Fujitsu, NTT, CTC, GBM, Rackspace and many more
• HCX with Hybrid Cloud Bundle And Multi Tenancy
Know More
Check Out HCX at: https://cloud.vmware.com/vmware
-hcx
Check us out at : https://hcx.vmware.com
Take Hands On Lab
Read HCX Blogs
Watch HCX Podcasts and Webinars
Strong Customer Momentum Across Industry Verticals
VMworld 2018 Content: Not for publication or distribution
Q & A
VMworld 2018 Content: Not for publication or distribution
Thank You!
VMworld 2018 Content: Not for publication or distribution
DON’T FORGET TO FILL OUT YOUR SURVEY.
#vmworld #HYP1223BE
VMworld 2018 Content: Not for publication or distribution
THANK YOU!
#vmworld #HYP1223BE
VMworld 2018 Content: Not for publication or distribution