Presentation cisco plus tech datacenter virtualisering

35
© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Hans Donnerborg, Systems Engineer, Cisco Danmark DC/V

Transcript of Presentation cisco plus tech datacenter virtualisering

Page 1: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Hans Donnerborg, Systems Engineer, Cisco Danmark

DC/V

Page 2: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Agenda

Hvorledes understøtter Datacentret BYOD Nexus

UCS

Demo

Page 3: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Nexus Family

Nexus 1000v/VSG

Nexus 3000

Nexus 5000 Nexus 2000

Nexus 7000

Page 4: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

CONVERGENCE

SCALE

INTELLIGENCE

Scalability & Mobility LISP

Nexus: Industry Leading Innovations

Deployment Flexibility Unified Ports

Virtualizes the Switch VDC

Simplified management with Scale FEX

Massive Scalable Architectures FabricPath

Active-Active Uplinks vPC

Workload Mobility OTV

VM-Aware Networking VM-FEX

Consolidated I/O DCB/FCoE

Page 5: Presentation   cisco plus tech datacenter virtualisering

Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 5

Advanced Features of the Nexus 1000V

Switching L2 Switching, 802.1Q Tagging, VLAN Segmentation, Rate Limiting (TX) IGMP Snooping, QoS Marking (COS & DSCP), Class-based WFQ

Security Policy Mobility, Private VLANs w/ local PVLAN Enforcement Access Control Lists (L2 4 w/ Redirect), Port Security Dynamic ARP inspection, IP Source Guard, DHCP Snooping

Provisioning Automated vSwitch Config, Port Profiles, Virtual Center Integration Optimized NIC Teaming with Virtual Port Channel Host Mode

Visibility VMotion Tracking, NetFlow v.9 w/ NDE, CDP v.2 VM-Level Interface Statistics SPAN & ERSPAN (policy-based)

Management Virtual Center VM Provisioning, Cisco Network Provisioning, CiscoWorks Cisco CLI, Radius, TACACs, Syslog, SNMP (v.1, 2, 3) Hitless upgrade, SW Installer

Network Services Virtual Services Datapath (vPath) support for traffic steering & fast-path off-load [leveraged by Virtual Security Gateway (VSG) and vWAAS]

Page 6: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Securing Virtual Desktops (VDI)

1000V Security Features for VDI Access Control List Port Security Private VLAN DHCP Snooping Dynamic ARP Inspection IP Source Guard

Desktop Virtualization Software

WAAS

Nexus Switch

Desktop OS

ACE

Hypervisor

Virtualized Data Center

Applications Desktop Applications

Nexus 1000V

Reference Implementation View, Citrix 1000V & VSG

Page 7: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Virtual Security Gateway Intelligent Traffic Steering with vPath

Nexus 1000V Distributed Virtual Switch

VM VM VM

VM VM

VM

VM VM VM

VM

VM

VM VM VM

VM VM VM VM

VM

vPath

VNMC

Log/Audit

Initial Packet Flow

VSG

1 Flow Access Control (policy evaluation)

2

Decision Caching 3

4

Page 8: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Securing VDI with Cisco VSG Persistent virtual workspace for the doctor Flexible workspace for

Maintain compliance while supporting IT consumerization

Records Healthcare

Portal Database

Assistant IT Admin Doctor Guest

Application

HVD Zones

Doctor

iT Admin Network

Virtual Security Gateway (VSG)

Guest

Cisco AnyConnect

ASA

Server Zones

Page 9: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Defense in Depth Security Model

Internet Edge

Filter external traffic Extensive app protocol support

VPN access, Threat mitigation

Internal Security

Segment internal network Policy applied to VLANs Application protocol inspection Virtual Contexts

Virtual Security

Policy applied to VM zones Dynamic, scale-out operation

VM context based controls

ASA 55xx

ASA 55xx

FWSM ASA-SM

VSG

*Demonstrated at VMWorld 2011

Page 10: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Virtual ASA provides consistent ASA feature set to secure the tenant edge

VSG complements Virtual ASA to secure intra-tenant VM-to-VM traffic

Solution provides:

Increase flexibility and operational efficiency via vPath (Nexus1000V)

Dynamic, context-aware, multi-tenant management via VNMC

Tenant B Tenant A VDC

vApp

vApp

vSphere

Nexus 1000V vPath

VDC

Virtual Network Management Center (VNMC) VMware vCenter

VSG VSG

VSG

VSG

ASA 1000V ASA 1000V

Page 11: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Cisco Cloud Lab Hands on labs available for Nexus 1000V and VSG in Cloud Lab Customers/Partners require sponsorship from account team for access via CCO LoginID

Page 12: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Agenda

Hvorledes understøtter Datacentret BYOD Nexus

UCS

Demo

Page 13: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Benchmark VXI/VDI

Page 14: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS 2.0 I/O Infrastructure for M3 blades

Lars Bo Iversen, Systems Engineer, Cisco Danmark

Page 15: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

New Levels of Scalability, Flexibility, and Performance for Unified Computing

New Building Blocks at Every Level

Fabric Interconnect

Superior application performance with 2TB switching High workload density with 96 ports in 2RU Infrastructure agility with Unified ports Investment protection with back/ forward compatibility

Greater Resiliency and Utilization with Port Channeling Purchase Options with entry point Pricing

Chassis I/O Module

Up to 80Gbps bandwidth with VIC 1200

Unparalleled flexibility, performance and bandwidth to the new generation of UCS blades

I/O Options

Page 16: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Cisco UCS 6200 and 2200 with Unified Ports

Cisco UCS 6140/ 6120

Forward compatible with Second Generation

I/O Modules

At UCS Launch

Typical Deployments

UCS-FI-6248UP

48 Port Fabric Interconnect

Performance for typical deployments with 1TB switching and 48 ports in 1RU Infrastructure agility with Unified Ports Investment protection

High End Deployments

UCS-FI-6296UP

96 Port Fabric Interconnect

High Application performance with 2TB switching High workload density 96 ports in 2RU Infrastructure agility with Unified Ports Investment protection

Forward compatible with Second Generation

I/O Modules

Cisco UCS 2104 I/O Module

16 Port I/O Module

UCS-FI-2204XP

80G/ chassis, 20G to the Blade Entry point pricing Improved Utilization with Port Channels

32 Port I/O Module

UCS-IOM-2208XP

160G/ chassis, 40G to the Blade for bursty traffic Improved Resiliency Improved Utilization with Port Channels

NEW

Cisco UCS 6100 and 2100

UCS Fabric Interconnects

UCS I/O Modules

Cisco UCS Fabric Infrastructure Portfolio

NEW

Page 17: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS 6200 Series Networking Fabric 96 Unified Port Fabric Interconnect

AND FLEXIBILITY, UTILIZATION BETTER APP. PERFORMANCE

3x UCS-FI-E16UP

UCS-FI-6296UP

Q1CY12

Performance for improved Workload Density o High Density 96 Ports in 2RU o Increased 2Tbps Switching Performance

Flexibility to defer port usage type and number at design time rather than purchase time o Flexibility to configure any port at Ethernet

(1/10 Gigabit with SFP+) or FCoE or Native FC Ports (8/4/2/1G with FC Optics)

o All Ports usable as uplinks/ downlinks Latency Lowered to 2us within Switch Power Optimized with 80 PLUS Gold Efficiency Investment Protection with Backward and Forward Compatibility

Page 18: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS 2204 IO Module Enable Dual 20 Gbps to Each Blade Server

UCS-IOM-2204XP

Bandwidth increase for improved response esp for bursty Applications o 40G to the Network (4x10GB) o 160G to the Host Redundant (16x10GB) (2x10G/ Half width slot; 4x10G/ Full width slot)

Latency Lowered to 0.5us within IOM Investment Protection with Backward and Forward Compatibility

Q1CY12

BANDWIDTH BURSTY APPLICATIONS FOR

Page 19: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Innovation Vectors Interface: 256 PCIe devices

eCPU: 30% improvement

PCIe Gen-2 x 16

Bandwidth: Dual 4x10 Gb to single slot B-series blade server

Uses 4x10 EtherChannel, HW 40Gb Capable

vNICs/vHBAs NOT limited to 10Gb

Orderability: Q1 CY 2012, with B200 M3

OSes supported N and N-1 version of OSes supported on M81KR will be supported on 1200 (same driver)

2nd Gen Virtual Interface Card, VIC 1200

Page 20: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

February 2012

Cisco UCS M3 servers based on Intel E5-2600 series (2S EP)

Page 21: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Cisco UCS M3 Family Features

Cisco Virtual Interface Card VIC 1280

Cisco Flexible Flash

Common Form-Factor Power Supply

Industrial Design Enhancements

Common Mechanical Components

Page 22: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Xeon® 2S Platform Comparison Sandy Bridge Platform

Up to 24 DIMMs Up to 80 PCIe 3.0 lanes Two QPI links between CPUs One-chip Platform Controller Hub (PCH)

Sandy Bridge

Core

Sandy Bridge

Core

DDR3

DDR3

DDR3

DDR3

DDR3

DDR3

DDR3

DDR3

x8 x4

QPI

QPI

Xeon® 5500 / 5600 Platform

Xeon® 5500 Xeon® 5600

Core

Xeon® 5500 Xeon® 5600

Core

DDR3

DDR3

DDR3

DDR3

DDR3

DDR3

x4

QPI

Intel C600 Series (PCH)

Serial Attached SCSI (SAS) 4 ports, 6Gb/s

up to DDR3 1333

up to 6.4 GT/s

Intel 5500 Series (IOH)

Intel ICH 10

QP

I

QP

I

up to 36 lanes PCIe 2.0

up to DDR3 1600 up to

8.0 GT/s

up to 40 lanes PCIe 3.0 per socket

Up to 18 DIMMs per 2S platform Up to 36 PCIe2 lanes Two-chip IOH / ICH

Page 23: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

B200 M3 Blade Server Expanding the Unified Computing Portfolio Unified Computing in an enterprise-class blade server for memory-intensive collaboration, decision support and virtualized applications

UCS B200 M3 Performance-Optimized Enterprise

Blade Server

UCS Advantages Standard:

Unified Fabric UCS Manager Optimized for virtualized environments Adapter_FEX and VM_FEX Expanded feature set I/O and integrated dual 20GbE Cisco Flexible Flash Up to 16 processor cores 384 GB of memory 24 DIMM 1 mezzanine 2 x 20 GbE mLOM (LAN on Motherboard) 2 SAS/SATA/SSD Half-with form factor

Page 24: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

C220 M3 Rack Server Expanding the Unified Computing Portfolio

Unified Computing in an enterprise-class, rack-mount server for EDA, decision support and virtualized applications

UCS C220 M3 Dense, Enterprise-class 1 RU Rack Server

UCS Advantages Standard:

Unified Fabric UCS Manager Optimized for virtualized environments Adapter_FEX and VM_FEX Up to 16 processor cores 512 GB of memory 16 DIMM 2 PCIe 4/8 SAS/SATA/SSD 1RU

Page 25: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

C240 M3 Rack Server Expanding the Unified Computing Portfolio

Unified Computing in an enterprise-class, rack-mount for storage-intensive, collaboration, decision support and virtualized applications

UCS Advantages Standard:

Unified Fabric UCS Manager Optimized for virtualized environments Adapter_FEX and VM_FEX Up to 16 processor cores 768 GB of memory 24 DIMM 5 PCIe 12/24 SAS/SATA/SSD 2RU

Page 26: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

A major market transformation in unified server management

No management barriers between blades and rack optimized servers

Extending fabric computing to rack optimized servers

Add capacity without complexity

Cisco UCS Fabric Interconnect

Unified Management Administrative Parity for Blades and Rack Servers

Cisco Fabric Extender

C-Series Rack Optimized Servers

Unified Management A Single Unified System

B-Series Blade Servers

Page 27: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Fabric and IO advancements Support for M3 servers

Page 28: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS Virtual Interface Card mLOM Implementation on Servers with 2104

3   4  

1   8  

2104 IOM (A)

1   2   Fabric  Ports  

Downstream  Ports  

3   4  

1  

1   2   Fabric  Ports  

Downstream  Ports  

2104 IOM (B)

0  

vNIC2  vNIC1   vNIC4  vNIC3  

mLOM  

HBA  1  HBA  0  eth1  eth0   eth3  eth2  

Host  

8  

Mezz  Slot  

1  

2104:    1  link  to  mLOM  only  (10GE)  

NO Port Expander Card

Page 29: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS Virtual Interface Card mLOM Implementation on Servers with 2204

3   4  

1   16  

2204 IOM (A)

1   2   Fabric  Ports  

Downstream  Ports  

3   4  

1  

1   2   Fabric  Ports  

Downstream  Ports  

2  2  

2204 IOM (B)

0  

HBA  1  HBA  0  

16  

Mezz  Slot  

1  

2204:    1  link  to  Mezz  slot,  1  to  mLOM  

mLOM  

vNIC2  vNIC1   vNIC4  vNIC3  eth1  eth0   eth3  eth2  

Host  

NO Port Expander Card

Page 30: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS Virtual Interface Card mLOM Implementation on Servers with 2204

3   4  

1   16  

2204 IOM (A)

1   2   Fabric  Ports  

Downstream  Ports  

3   4  

1  

1   2   Fabric  Ports  

Downstream  Ports  

2  2  

2204 IOM (B)

0  

vNIC2  vNIC1   vNIC4  vNIC3  

HBA  1  HBA  0  eth1  eth0   eth3  eth2  

Host  

16  

Mezz  Slot  

1  

2204:    2  x  10GE  links  in  a  port  channel  to  mLOM  

mLOM  

Port Expander Card

Page 31: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS Virtual Interface Card mLOM Implementation on Romley Servers with 2208

3   8  

1   3   4   32  

2208 IOM (A)

1   2   Fabric  Ports  

Downstream  Ports  

3   8  

1   3   4  

1   2  Fabric  Ports  

Downstream  Ports  

2  2  

2208 IOM (B)

0  

HBA  1  HBA  0  

32  

Mezz  Slot  

1  

2208:    2  link  to  Mezz  slot,  2  to  mLOM  

mLOM  

vNIC2  vNIC1   vNIC4  vNIC3  eth1  eth0   eth3  eth2  

Host  

NO Port Expander Card

Page 32: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

UCS Virtual Interface Card mLOM Implementation on Servers with 2208

3   8  

1   3   4   32  

2208 IOM (A)

1   2   Fabric  Ports  

Downstream  Ports  

3   8  

1   3   4  

1   2  Fabric  Ports  

Downstream  Ports  

2  2  

2208 IOM (B)

0  

HBA  1  HBA  0  

32  

Mezz  Slot  

1  

mLOM  

vNIC2  vNIC1   vNIC4  vNIC3  eth1  eth0   eth3  eth2  

vNIC-­‐n  Eth-­‐n  

2208:    4x10GE  to  mLOM  

Port Expander Card

Page 33: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Agenda

Hvorledes understøtter Datacentret BYOD Nexus

UCS

Demo

Page 34: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Demo setup

Quickly re-purpose servers for other tasks

Cluster 1 Cluster 2 Cluster 3

vCenter

UCS Manager Change network ports?!

Page 35: Presentation   cisco plus tech datacenter virtualisering

© 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Thank you