NSX and vRealize Network Insight

Slides:



Advertisements
Similar presentations
The Threat Within September Copyright © 2004 Q1 Labs. All Rights Reserved Agenda Customer Pain Industry Solutions Network Behavior Enforcement Example.
Advertisements

Microsoft Operations Management Suite
How to protect your Virtual Datacenter Michiel van den Bos.
Data Center Network Redesign using SDN
©2014 Extreme Networks, Inc. All rights reserved. Microsoft Skype for Business Integration Overview Leveraging the Power of Technology Partnerships Niels.
Alert Logic Security and Compliance Solutions for vCloud Air High-level Overview.
Alert Logic Security and Compliance Solutions for vCloud Air High-level Overview.
Network security Product Group 2 McAfee Network Security Platform.
VMware vRealize Operations Management Pack for Citrix XenDesktop & XenApp.
Copyright © 2014 Juniper Networks, Inc. 1 Juniper Unite Cloud-Enabled Enterprise Juniper’s Innovation in Enterprise Networks.
© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1.
Deep Security and VMware NSX Advanced Security Framework for the Software-Defined Data Center Anand Patil National Sales Manager, SDDC CONFIDENTIAL1.
Selling SolarWinds to Sysadmins 11/14/2013 © 2013 SOLARWINDS WORLDWIDE, LLC. ALL RIGHTS RESERVED.
2V0-641 Dumps VMware Certified Professional 6 - Network Virtualization Beta Exam PDF File Download :
SDN & NFV Driving Additional Value into Managed Services.
Check Point vSEC STORY [Protected] Non-confidential content.
Service Assurance in the Age of Virtualization
Hybrid Management and Security
Mitä sovelluksia verkossasi liikkuu? Ja miten sovellukset toimivat?
MICROSOFT AZURE ISV PROFILE: BMC SOFTWARE
Stop Cyber Threats With Adaptive Micro-Segmentation
What we learnt building Carrier Neutral Cloud
Built on Microsoft Azure, 11Ants Retail Analytics Customer Science Solution Delivers Real Growth Opportunities to Retailers with Loyalty Programs MICROSOFT.
Barracuda Networks Creates Next-Generation Security Solutions That Enable Customers to Accelerate Their Adoption of Microsoft Azure MICROSOFT AZURE APP.
Hybrid Management and Security
Microsoft Operations Management Suite Insight and Analytics
Ralleo Enterprise-Grade Solution for Managing Change and Business Transformation Provides Opportunities to Better Analyze Real-Time Data MICROSOFT AZURE.
New Heights by Guiding Them into the Cloud
Free Cloud Management Portal for Microsoft Azure Empowers Enterprise Users to Govern Their Cloud Spending and Optimize Cloud Usage and Planning MICROSOFT.
HPE OneView for Microsoft System Center
Wonderware Online Cost-Effective SaaS Solution Powered by the Microsoft Azure Cloud Platform Delivers Industrial Insights to Users and OEMs MICROSOFT AZURE.
1.
Speaker’s Name, SAP Month 00, 2017
The NPD Group - Enterprise DC Agenda
Bring new levels of visibility to your datacenter with Cisco Tetration
Advanced Borderless Network Architecture Sales Exam practice-questions.html.
Threat Ready: The Benefits of Segmentation
Virtualization & Security real solutions
Maximize the value of your cloud
Your Business Opportunity
MyHealthDirect’s Enterprise Scheduling Platform, Based on Microsoft Azure, Improves the Patient Experience and Reduces Patient Readmissions MICROSOFT AZURE.
Take Control of Insurance Product Management: Build, Test, and Launch Any Product Globally 10x Faster, 10x More Cheaply with INSTANDA on Azure Partner.
VMware NSX and Micro-Segmentation
Replace with Application Image
Be Better: Achieve Customer Service Excellence and Create a Lean RMA and Returns Process with Renewity RMA and the Power of Microsoft Azure MICROSOFT AZURE.
Logsign All-In-One Security Information and Event Management (SIEM) Solution Built on Azure Improves Security & Business Continuity MICROSOFT AZURE APP.
11/17/2018 9:32 PM © Microsoft Corporation. All rights reserved. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN.
Network Optimizer Optimize Your Business & Cloud Networks
On-Premises, or Deployed in a Hybrid Environment
Ed oms team OMS: Log Analytics Ed oms team.
Is your deployment in pants-down mode?
Unitrends Enterprise Backup Solution Offers Backup and Recovery of Data in the Microsoft Azure Cloud for Better Protection of Virtual and Physical Systems.
Druva inSync: A 360° Endpoint and Cloud App Data Protection and Information Management Solution Powered by Azure for the Modern Mobile Workforce MICROSOFT.
dotmailer: A Marketing Automation Platform with at its Core
One-Stop Shop Manages All Technical Vendor Data and Documentation and is Globally Deployed Using Microsoft Azure to Support Asset Owners/Operators MICROSOFT.
Cloud Analytics for Microsoft Azure
XtremeData on the Microsoft Azure Cloud Platform:
AIMS for BizTalk, Built on the Microsoft Azure Platform, Empowers Enterprises to Automate Insight and Analytics and Boost Value Creation MICROSOFT AZURE.
See your OpenStack Network Like Never Before
Healthcare Cloud Security Stack for Microsoft Azure
NSX Data Center for Security
Single Cell’s Progenitor Powered by Microsoft Azure Improves Organisational Efficiency with Strategic Procurement, Contract Management, and Analytics MICROSOFT.
The Software-Defined Perimeter in Action
DATS International Portfolio.
SUSE CaaS and Dell EMC.
GRC - A Strategic Approach
Scrumium NetBrain Thursday, May 09, 2019.
Built on the Powerful Azure Platform, Angoss Helps Businesses Turn Data into Actionable Insights That Reduce Risk, Increase Organizational Performance.
Jason Sones VNO North America – Nuage Networks from Nokia Sherif Awad
Presentation transcript:

NSX and vRealize Network Insight

NSX Virtualized Your Network VM APP vRealize Network Insight provides converged operations plane between virtual and physical network Virtual networks “Network platform” Network and security services now in the hypervisor Virtualization layer Network, storage, compute

vRealize Network Insight Transformative Operations for NSX based Software-Defined Data Center Across Your Virtual, Physical, and Cloud Plan Micro-segmentation deployment and ensure compliance Comprehensive net flow assessment and analysis to model security groups and firewall rules Recommendations to Make micro-segmentation easier to deploy Continuously monitor and audit compliance postures over time Optimize Network Performance with 360 visibility & analytics Virtual and physical network topology mapping Performance Optimization across Overlay and Underlay Log Analytics Ensure Best Practices, Health and Availability of NSX deployments Intuitive UI, Natural language search to quickly pinpoint issues Log Analytics for troubleshooting Best practice compliance checking Plan Micro-segmentation Deployment and Ensure Compliance Optimize Network Performance with 3600 Visibility & Analytics Ensure Best Practices, Health and Availability of NSX Deployment Across Virtual, Physical and Cloud

Customer Journey with NSX & vRealized Network Insight Pre/Sell Day 1 Day 2 Assess Deploy Operate East–West Data Center Traffic Profile Micro-Segmentation Recommendations NSX ROI Map Application Connectivity Model Security Groups and DFW Rules Best Practices VXLAN / Virtual Networks Overlay-Underlay, V-to-P Visibility Operationalize NSX, Leverage Existing Skill Set (Simple Google-like Search) Rapid Trouble Shooting Audit & Compliance Analyze: Data Center Flow Analysis & Risk Assessment Understand Data Center Traffic Profile (East-West, North-South, V-to-V, V-to-P) Identify Security Gaps & Network Optimization Opportunities Quantify Benefits of NSX Deploy: Micro-Segmentation Modeling & Best Practices NSX Deployment Avoid Trial & Error and Ensure Best Practices Deployment for VXLANs, Distributed Firewalls and NSX Model Application Behavior, Security Groups and Firewall Rules for Micro- Segmentation Accelerate Time to Value for NSX (and NetX Partner) Firewalls and VXLANs Operate: Visibility, Monitoring, Troubleshooting & Compliance Deep Visibility & Rapid Problem Resolution across Overlay-Underlay Change Management, Audit & Compliance for Virtual FWs Simplified Operations for NSX and Entire SDDC. Ensure Smooth NSX Transition to Operations Team Arkin Confidential

Leverage Your Existing Investments Customer Benefits Fast Time to Value Increase speed and accuracy of micro-segmentation deployment Rapidly operationalize NSX environments with out of the box best practice Ease of Use Modern, simple, Google-like search Easy access to NSX activities and security events Leverage Your Existing Investments Integrates with all major 3rd party network vendors with out of the box discovery of virtual & physical topology Quickly onboard existing teams to operate NSX easily

Customer Momentum Customers Span F500/G2000 Retail Pharma Airline Winner Best of VMworld Finalist Award (Networking and Virtualization) September 2015 Customers Span F500/G2000 Retail Pharma Airline Security State/Local Financial Healthcare Education PANW Ignite Conference 2016 Panel Session: CA-DWR, USAA & Columbia Sports Case Study - NSX, PANW & vRealize Network Insight Cyber Defense Magazine – Most Innovative Enterprise Security Solution February 2016 Gartner Cool Vendor for Enterprise Networking April 2016 Case Study: CA Dept. of Water Rolls Out Secure Cloud Using vRealize Network Insight 6

TargetTech: Data center operations score new glasses with VMware buy “Visibility is the key… visibility across technology domains and across virtual and physical networks” John Spiegel, Global IT Communications Manager TargetTech: Data center operations score new glasses with VMware buy

East-West Traffic Analysis East-West Traffic Flow Analysis Breakdown of Data Center Traffic by East- West, VM-to-VM, VM-to-Physical, Switched, Routed, etc. Get Detailed Flow stats behind each number Problem Statement: Over 80% East-West Largely Unprotected (Not Traversing Physical Firewalls) Not Optimized for Networking (Multi Hops Through Physical Networks) Now let us look at how vRealize Network Insight with network virtualization and Micro-Segmentation software like NSX or palo alto firewalls can help to help secure your software defined data center. But before we do that let us briefly consider Why technologies such as network virtualization and Micro-Segmentation based security have become so important 80% of traffic remains within the DC East west flow (hard to send through physical firewalls – routing/hairpinning issues, capacity and bandwidth issues) To secure them using phy infra is not easy. Once perimeter is breached, lateral movement of the attack becomes very easy without Micro-Segmentation

Security Policy Automation – Micro-Segmentation Discover vCenter and NSX constructs (folders, clusters, vlans, security tags) Automated Security Groupings Based on vCenter and NSX Constructs, Workload Characteristics, Ports, Common Services Recommended Security Policies / Firewall Rules (Zero-Trust Model) See Network Traffic Per Host, Per VM Export as CSV DWR: Use of Flow visibility. Transition from one set to another set Now let us look at how Micro-Segmentation can be achieved using vRealize Network Insight Explain all the elemetns (don’t bring out preNSX tool and report). Combine the elements of compute is configured and network is behaving to provide a comprehensive analysis. Call out the bullets (1 and 3 especially). Implication  Lets say you have a complex env with 1000 to 2000 machines. We understand the communication patterns between them, model it out, help plan the security groups and make distributed firewall rules recommendations.

Data Paths Across Overlay And Underlay Connectivity Graphs VM to VM, VM to Physical, VM to Internet Hop-by-Hop Path across Overlay (LDRs, Edge Gateways) and Underlay (Physical VDCs & VRFs). See V-To-P Boundary Correlated Problems And Performance Metrics Across Virtual and Physical See Effective Firewall Rules and Security Policies across NSX and PANW in Service- Chained Environment NSX Firewall PANW Virtual FW VXLAN Converged Infrastructure (Ex: UCS) VLAN Physical Network Switch, Router PANW Physical Firewall

Simple & Contextual Search Hi Shiv, what do you need help with today? Single pane of glass between virtual & physical Google-like search for ease of use Time aware search (go back in time) Fewer clicks to find and identify issues Simplified interface, reduce learning curve across admin teams

NSX Infrastructure Monitoring and Best Practices Checks Configuration, Health and Consistency Validation VTEP Level Misconfigurations VTEPS – Underlay Mapping Checks Netcpa Health Hosts Version Validation LDR and Edge Config Issues Routing Misconfigurations/ Issues between LDR, Edge and Physical Routers We converge visibility across management, control and data plane and highlight any inconsistencies and issues across them.

Thank You