Microsoft Virtual Academy Module 4 Creating and Configuring Virtual Machine Networks.

Slides:



Advertisements
Similar presentations
Hyper-V Networking Best practice
Advertisements

And many others…. Deliver networking as part of pooled, automated infrastructure Ensure multitenant isolation, scale and performance Expand.
2  Industry trends and challenges  Windows Server 2012: Beyond virtualization  Complete virtualization platform  Improved scalability and performance.
Virtual Machine Queue Architecture Review Ali Dabagh Architect Windows Core Networking Don Stanwyck Sr. Program Manager NDIS Virtualization.
Fluffy’s Safe Right? If you want to limit a user’s functionality, don’t make them an administrator.
Transitioning to IPv6 April 15,2005 Presented By: Richard Moore PBS Enterprise Technology.
Red Corp Blue Subnet1 Blue Subnet3Blue Subnet2 Blue Subnet5 Blue Subnet4 Red Subnet2 Red Subnet1 Blue Sales Net Red HR Net Multitenant.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 5: Inter-VLAN Routing Routing & Switching.
PAGE 2 PAGE 3 INTRODUCING HYPER-V EXTENSIBLE SWITCH.
Microsoft Virtual Academy. Microsoft Virtual Academy First HalfSecond Half (01) Introduction to Microsoft Virtualization(05) Hyper-V Management (02) Hyper-V.
Highly Available Central Services An Intelligent Router Approach Thomas Finnern Thorsten Witt DESY/IT.
Must have static IP address pool and VLANs for Provider Address (PA) network – network on which NVGRE encapsulated packets are sent All subnets.
1 © 2005 Cisco Systems, Inc. All rights reserved. 111 © 2004, Cisco Systems, Inc. All rights reserved.
Lesson 9: Creating and Configuring Virtual Networks
© Wiley Inc All Rights Reserved. CCNA: Cisco Certified Network Associate Study Guide CHAPTER 8: Virtual LANs (VLANs)
(part 3).  Switches, also known as switching hubs, have become an increasingly important part of our networking today, because when working with hubs,
Didier Van Hoye Technical FGIA MVP – Virtual Machine Microsoft Extended Experts Team
Blue CorpRed Corp Blue Subnet1 Blue Subnet3Blue Subnet2 Blue Subnet5 Blue Subnet4 Red Subnet2 Red Subnet1 Blue R&D Net Blue Sales Net.
Flat or shrinking IT budgets even as business expectations increase. Efficient datacenter operations across entire customer base. Enterprise- class.
Virtual LANs. VLAN introduction VLANs logically segment switched networks based on the functions, project teams, or applications of the organization regardless.
What's New in Windows Server 2012 Hyper-V, Part 2 Jeff Woolsey Windows Server & Cloud Microsoft Corporation VIR309.
Data Center Network Redesign using SDN
Module 3: Planning and Troubleshooting Routing and Switching.
Yury Kissin Infrastructure Consultant Storage improvements Dynamic Memory Hyper-V Replica VM Mobility New and Improved Networking Capabilities.
InterVLAN Routing Design and Implementation. What Routers Do Intelligent, dynamic routing protocols for packet transport Packet filtering capabilities.
© 2006 Cisco Systems, Inc. All rights reserved. Network Security 2 Module 8 – PIX Security Appliance Contexts, Failover, and Management.
Virtual LAN Design Switches also have enabled the creation of Virtual LANs (VLANs). VLANs provide greater opportunities to manage the flow of traffic on.
1 Chapter 6: Proxy Server in Internet and Intranet Designs Designs That Include Proxy Server Essential Proxy Server Design Concepts Data Protection in.
Virtualization Infrastructure Administration Network Jakub Yaghob.
What’s new in Hyper-V in Windows Server 2012 (Part 2) Stu Fox Technical Specialist, Microsoft NZ VIR315.
Network Admin Course Plan Accede Institute Of Science & Technology.
MDC-B350: Part 1 Room: You are in it Time: Now What we introduced in SP1 recap How to setup your datacenter networking from scratch What’s new in R2.
Module 3: Designing IP Addressing. Module Overview Designing an IPv4 Addressing Scheme Designing DHCP Implementation Designing DHCP Configuration Options.
Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core LP Processor or Socket NUMA Node Core.
Microsoft Virtual Academy. Microsoft Virtual Academy Part 1 | Windows Server 2012 Hyper-V &. VMware vSphere 5.1 Part 2 | System Center 2012 SP1 & VMware’s.
Cloud Scale Performance & Diagnosability Comprehensive SDN Core Infrastructure Enhancements vRSS Remote Live Monitoring NIC Teaming Hyper-V Network.
Microsoft Virtual Academy Module 8 Managing the Infrastructure with VMM.
Enable Multi Tenant Clouds Network Virtualization. Dynamic VM Placement. Secure Isolation. … High Scale & Low Cost Datacenters Leverage Hardware. High.
Windows Server 2012 Hyper-V Networking
Virtual Machine Queue Driver Development Sambhrama Mundkur Sr. Software Design Engineer Core Networking
IT Pro Day Windows Server 2012 Hyper-V – The next chapter Michel Luescher, Senior Consultant Microsoft Thomas Roettinger, Program Manager Microsoft.
Hyper-V Performance, Scale & Architecture Changes Benjamin Armstrong Senior Program Manager Lead Microsoft Corporation VIR413.
Chapter 3 - VLANs. VLANs Logical grouping of devices or users Configuration done at switch via software Not standardized – proprietary software from vendor.
BNL PDN Enhancements. Perimeter Load Balancers Scaleable Performance Fault Tolerance Server Maintainability User Convenience Perimeter Security.
Chapter 4 Version 1 Virtual LANs. Introduction By default, switches forward broadcasts, this means that all segments connected to a switch are in one.
Module 10: Windows Firewall and Caching Fundamentals.
Microsoft Virtual Academy. System Center 2012 Virtual Machine Manager SQL Server Windows Server Manages Microsoft Hyper-V Server 2008 R2 Windows Server.
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
WS-B327 Dynamic, policy-driven network (re)configuration Consistent, profile- based deployment of SDN traffic policies through distributed.
| Basel Fabric Management with Virtual Machine Manager Philipp Witschi – Cloud Architect & Microsoft vTSP Thomas Maurer – Cloud Architect & Microsoft MVP.
Marko Ugrin Integra Group Budućnost mrežne infrastrukture na MS način.
Brian Lauge Pedersen Senior DataCenter Technology Specialist Microsoft Danmark Johnnie Krewald Direktør solvo it.
Level 300 Windows Server 2012 Networking Marin Franković, Visoko učilište Algebra.
IT Pro Day Windows Server 2012 Hyper-V – The next chapter Michel Luescher, Senior Consultant Microsoft Thomas Roettinger, Program Manager Microsoft.
Brian Lauge Pedersen Senior DataCenter Technology Specialist Microsoft Danmark.
Windows Server 2012 Overview Michael Leworthy Senior Product Manager Microsoft Corporation WSV205.
CCNA3: Switching Basics and Intermediate Routing v3.0 CISCO NETWORKING ACADEMY PROGRAM Chapter 8 – Virtual LANs Virtual LANs VLAN Concepts VLAN Configuration.
Lesson 8: Configuring Hyper-V MOAC : Configuring Windows 8.1.
Hyper-V Networking Symon Perriman Jeff Woolsey
InterVLAN Routing 1. InterVLAN Routing 2. Multilayer Switching.
Server Virtualization
Heitor Moraes, Marcos Vieira, Italo Cunha, Dorgival Guedes
Planning and Troubleshooting Routing and Switching
Chapter 5: Inter-VLAN Routing
9/15/2018 8:14 PM SAC-442T Building Secure, Scalable Multi-Tenant Clouds using Hyper-V Network Virtualization Murari Sridharan Yu-Shun Wang Principal.
Aled Edwards, Anna Fischer, Antonio Lain HP Labs
Network Virtualization
20409A 7: Installing and Configuring System Center 2012 R2 Virtual Machine Manager Module 7 Installing and Configuring System Center 2012 R2 Virtual.
Re-think Networking Windows Server 2012 R2
MICROSOFT NETWORK VIRTUALIZATION
Presentation transcript:

Microsoft Virtual Academy Module 4 Creating and Configuring Virtual Machine Networks

Module Overview Creating and Using Hyper-V Virtual Switches Advanced Hyper-V Networking Features Configuring and Using Hyper-V Network Virtualization

Lesson 1: Creating and Using Hyper-V Virtual Switches Overview of the Hyper-V Virtual Switch Types of Virtual Switches What Is VLAN Tagging?

Overview of the Hyper-V Virtual Switch Software implemented layer two switch Connects virtual machines to virtual and physical networks Parent partition is also A virtual machine Extensible, has advanced features, can be replaced Policy enforcement, isolation, traffic shaping, protection Managed by Hyper-V Manager and Windows PowerShell Get-VMSwitch Parent partition can have multiple virtual NICs Can be connected to different virtual switches Can have different bandwidth limitations

Overview of the Hyper-V Virtual Switch

Types of Virtual Switches Parent has physical network adapter(s) Each virtual machine (and parent) has virtual network adapter(s) Each virtual network adapter is connected to a virtual switch Type of virtual switch is: External – connects to a physical or wireless adapter Internal – parent and virtual machine connections only Private – virtual machine connections only Configuration Use Virtual Switch Manager to create virtual switches Use virtual machine settings to connect a virtual network adapter to a switch

Types of Virtual Switches - Physical network adapter - Virtual network adapter - Virtual switch Parent App Virtual machine App Virtual machine App Parent App Virtual machine App Virtual machine App Private Parent App Virtual machine App Virtual machine App Internal External Parent App Virtual machine App Virtual machine App No IP IP NAT

Types of Virtual Switches

What Is VLAN Tagging? Used to isolate network traffic for nodes that are connected to the same physical network VLANs are used by Hyper-V to Isolate Hyper-V server management networks Isolate virtual machines that are connected to external virtual switches Isolate virtual machines on a single Hyper-V server VLAN ID can be configured on Virtual machine network adapter External and Internal virtual switch VLAN is limited to a single physical subnet VLAN ID has 12 bits (up to 4,094 VLAN IDs)

Lesson 2: Advanced Hyper-V Networking Features Virtual Switch Expanded Functionality Virtual Switch Extensibility What Is SR-IOV? What Is Dynamic Virtual Machine Queue? Network Adapter Advanced Features NIC Teaming in Virtual Machines

Virtual Switch Expanded Functionality ARP/Neighbor Discovery Poisoning protection Protects against ARP and Neighbor Discovery spoofing DHCP Guard protection Protects against rogue DHCP server in virtual machine Port ACLs Enables isolation by allowing/denying traffic Trunk mode to a virtual machine Trunk mode forwards traffic from multiple VLANs Network traffic monitoring Bandwidth limit and burst support

Virtual Switch Extensibility Extensible NDIS filter drivers WFP callout drivers Extensions Ingress Forwarding Egress Monitoring Virtual switch can be replaced Parent partition Extension miniport Extension protocol Hyper-V virtual switch Physical NIC Virtual machine Host NIC Virtual machine NIC Virtual machine Virtual machine NIC Filtering extensions Forwarding extension WFP extensions Capture extensions

What Is SR-IOV? Requires support in network adapter Provides Direct Memory Access to virtual machines Increases network throughput Reduces network latency Reduces CPU overhead on the Hyper-V server Virtual machine bypasses virtual switch Supports Live Migration Network I/O with SR-IOV Network I/O without SR-IOV Physical NIC Parent partition Virtual switch Routing VLAN Filtering Routing VLAN Filtering Virtual machine Virtual NIC SR-IOV Physical NIC Virtual Function VMBUS Even when different SR- IOV adapters are used

What Is Dynamic Virtual Machine Queue? Network adapter uses receive queues to route traffic to the appropriate virtual machine Physical network adapter must support VMQ Dynamically use multiple CPUs when processing virtual machine network traffic DMA reduces CPU overhead on Hyper-V server Beneficial when virtual machines receive lot of network traffic VMQ is automatically configured and tuned Based on processor networking and CPU load VMQ is enabled by default on a virtual network adapter Used only if the physical network adapter supports VMQ

Network Adapter Advanced Features Same features available for all virtual network adapters Features are implemented in Hyper-V virtual switch

NIC Teaming in Virtual Machines Provides redundancy and aggregates bandwidth Can be used at the operating system and virtual machine level Multiple physical network adapters in an NIC team If a physical adapter fails, virtual switch has connectivity Multiple virtual network adapters in an NIC team If a virtual switch fails, virtual machine has connectivity Particularly important when SR-IOV is used SR-IOV traffic bypasses the virtual switch Intended and optimized to support teaming of SR-IOV May be used with any virtual network interface Virtual machine must have multiple network adapters Connected to different virtual switches MAC address spoofing must be enabled

Lesson 3: Configuring & Using Hyper-V Network Virtualization Providing Multitenant Network Isolation What Is Network Virtualization? Benefits of Network Virtualization What Is Network Virtualization Generic Routing Encapsulation? What Are Network Virtualization Policies?

Providing Multitenant Network Isolation Multiple isolated networks on the same infrastructure VLANs are often used Limited scalability (maximum of 4094 VLANs) VLANs cannot span multiple subnets Challenging to reconfigure when adding or moving virtual machine VLAN ID Switch Virtual machines Switch

Providing Multitenant Network Isolation Private VLANs Addresses some VLAN scalability issues Reduces number of IP subnets and VLANs Virtual switch can limit virtual machines to the same VLAN Port ACLs Challenging to manage and update ACLs Hyper-V virtual switch supports private VLANs and port ACLs The solution is Software Defined Networking Network virtualization is an implementation of Software Defined Networking Hyper-V enables network virtualization

What Is Network Virtualization? Server virtualization Multiple virtual machines on a same physical server Each virtual machine is isolated from others Physical server Blue virtual machine Red virtual machine Blue networkRed network Physical network Network virtualization Multiple virtual networks on a same physical network Each virtual network is isolated from others

Benefits of Network Virtualization Flexible virtual machine placement Multitenant network isolation without VLANs IP address reuse Live migration across subnets Is compatible with existing network infrastructure Transparent moving of virtual machines to shared IaaS cloud Can be configured using Windows PowerShell Can also use System Center 2012 R2 Virtual Machine Manager

What Is Network Virtualization Generic Routing Encapsulation?    GRE Key=5001 GRE Key=6001 MAC      (Provider address ) (Provider address) (Customer address) (Customer address) Customer address space based on virtual machine configuration Provider address space based on physical network Not visible to the virtual machines

What Are Network Virtualization Policies? SQL WEB SQL WEB Blue Yonder Airlines Customer Address Provider Address Woodgrove Bank Customer Address Provider Address Policy Settings Provider Address Space Data Center Network Hyper-V Host 1Hyper-V Host SQL WEB Customer Address Spaces Blue Yonder Airlines Woodgrove Bank Define customer address-provider address mappings Specify on which Hyper-V server virtual machines are running Hyper-V implements policies by translating incoming and outgoing packets If a virtual machine is moved, policies are modified Virtual machine configuration stays the same