Download presentation
Presentation is loading. Please wait.
Published byHope Stokes Modified over 9 years ago
1
What’s new in Hyper-V in Windows Server 2012 (Part 2) Stu Fox (@stufox) Technical Specialist, Microsoft NZ VIR315
5
Networking
6
How do I ensure network multi-tenancy? IP Address Management is a pain. What if VMs are competing for bandwidth? Fully Leverage Network Fabric How do I integrate with existing fabric? Network Metering? Can I dedicate a NIC to a workload?
7
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads
8
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads LEARN MORE
9
Cloud Data Center Woodgrove Bank Blue 10.1.0.0/16 Contoso Bank Red 10.1.0.0/16
10
u u Win 8 Host Blue 10.1.1.21 Red1 10.1.1.11 To Internet ( 10.1.1.1 ) Hyper-V Switch Red2 10.1.1.12 Green 10.1.1.31 Isolated 4, 7 Isolated Community 4, 9 Community
11
Physical network Physical server Woodgrove VMContoso VM Woodgrove networkContoso network Hyper-V Machine Virtualisation Run multiple virtual servers on a physical server Each VM has illusion it is running as a physical server Hyper-V Network Virtualisation Run multiple virtual networks on a physical network Each virtual network has illusion it is running as a physical fabric
12
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads TEAMING LEARN MORE
13
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads 15 25 $$ $$$$
14
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads
15
Tenant 2: Multiple VM Workloads Data Center Tenant 1: Multiple VM Workloads
16
Physical NIC Root Partition Extensible Switch Extension Protocol Extension Miniport Capture Extensions WFP Extensions Filtering Extensions Forwarding Extensions Host NIC VM NIC VM1 VM NIC VM2 Capture extensions can inspect traffic and generate new traffic for report purposes Capture extensions do not modify existing Extensible Switch traffic Example: sflow by inMon Windows Filter Platform (WFP) Extensions can inspect, drop, modify, and insert packets using WFP APIs Windows Antivirus and Firewall software uses WFP for traffic filtering Example: Virtual Firewall by 5NINE Software Filtering extensions can also be implemented using NDIS filtering APIs Example: VM DoS Prevention by Broadcom Forwarding extensions direct traffic, defining the destination(s) of each packet Forwarding extensions can capture and filter traffic Examples: – Cisco Nexus 1000V and UCS – NEC ProgrammableFlow's vPFS OpenFlow Capture Extensions WFP Extensions Filtering Extensions Forwarding Extensions Filtering Engine BFE Service Firewall Callout
17
Hyper-V Extensible Virtual Switch
18
Open, Extensible Virtual Switch Nexus 1000 Support Openflow Support Network Introspection Much more… Advanced Networking ACLs PVLAN …much more… Windows NIC Teaming Network QoS Per VNIC bandwidth reservation & limits Network Metering DVMQ SR-IOV Network Support Reduce Latency & CPU Utilization Supports Live Migration
19
Network I/O path with SR-IOV Network I/O path without SR-IOV Physical NIC Root Partition Hyper-V Switch Routing VLAN Filtering Data Copy Routing VLAN Filtering Data Copy Virtual Machine Virtual NIC SR-IOV Physical NIC Virtual Function
20
Virtual Machine Network Stack Software NIC Enable IOV (VM NIC Property) Virtual Function is “Assigned” Team automatically created Traffic flows through VF Turn On IOV Break Team Reassign Virtual Function Assuming resources are available Migrate as normal Live MigrationPost Migration Remove VF from VM VM has connectivity even if Switch not in IOV mode IOV physical NIC not present Different NIC vendor Different NIC firmware SR-IOV Enabling & Live Migration SR-IOV Physical NIC Physical NIC Software Switch (IOV Mode) “TEAM”“TEAM” Software NIC Virtual Function SR-IOV Physical NIC Software Switch (IOV Mode) “TEAM”“TEAM” Virtual Function Software path is not used
22
IPsec Task Offload: Microsoft expects deployment of Internet Protocol security (IPsec) to increase significantly in the coming years. The large demands placed on the CPU by the IPsec integrity and encryption algorithms can reduce the performance of your network connections. IPsec Task Offload is a technology built into the Windows operating system that moves this workload from the main computer's CPU to a dedicated processor on the network adapter. SR-IOV is a specification that allows a PCIe device to appear to be multiple separate physical PCIe devices. The SR-IOV specification was created and is maintained by the PCI SIG, with the idea that a standard specification will help promote interoperability. SR-IOV works by introducing the idea of physical functions (PFs) and virtual functions (VFs). Physical functions (PFs) are full-featured PCIe functions; virtual functions (VFs) are “lightweight” functions that lack configuration resources. Dynamic Virtual Machine Queue (VMQ) is a feature available to computers running Windows Server 2008 R2 with the Hyper-V server role installed, that have VMQ-capable network hardware. VMQ uses hardware packet filtering to deliver packet data from an external virtual machine network directly to virtual machines, which reduces the overhead of routing packets and copying them from the management operating system to the virtual machine.
25
Port ACL & QoS
26
Windows Server 2008Windows Server 2008 R2Windows Server 2012 NIC TeamingYes, via partners Windows NIC Teaming in box. VLAN TaggingYes MAC Spoofing ProtectionNoYes, with R2 SP1Yes ARP Spoofing ProtectionNoYes, with R2 SP1Yes SR-IOV NetworkingNo Yes Network QoSNo Yes Network MeteringNo Yes Network Monitor ModesNo Yes IPsec Task OffloadNo Yes VM Trunk ModeNo Yes
27
VM Mobility
28
Don’t provide new features that preclude Live Migration. I want to be able to securely move any part of a VM anywhere at anytime. No Limits. No Downtime Servicing SAN Upgrades/Migrations When VMs migrate, move the historical data with the VM Fully Leverage hardware to speed migrations
29
Concurrent Migration: Limited Only By Hardware Resources
30
Hyper-V Virtual Machine Source Device Destination Device VHD VHD Stack 1 2 3 4 5
33
demo Name Title Group VM Mobility
34
LEARN MORE
35
Disaster Recovery
36
36
37
Disaster Recovery Challenges Cost Complexity Inflexibility Initial Replication Distance Requirements 37
38
LEARN MORE
39
demo Hyper-V Replica
40
Replication Provider CostManagementPerformance Hyper-V Replica Microsoft Flexible Storage Options Available Unlimited VM Replication included VM Granularity Open APIs provide extensibility, interoperability and prevent vendor lock-in 5 minutes RPOs Application Level Consistency File Level Consistency Storage Based Replication NetApp, HP, Fujitsu, IBM, Hitachi, FalconStor, 3Par, EMC, LSI, Compellent, EqualLogic and more… High end replicating storage Additional replication software LUN-VM Layout Coordination with storage team Synchronous Replication High Data Volumes LEARN MORE
42
Linux & BSD VM’s
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.