Professional Documents
Culture Documents
VMWARES
BIG BET ON NSX
END-USER COMPUTING
FOR THE VMWARE ADMIN
SPECIAL REPORT
V MUG
Accelerate Your Success
at the Speed of Now
EDITORIAL POLICY
VMUG Compass is VMUGs quarterly digital publication. To submit story ideas for publication consideration, email info@vmug.com.
Publication of any article or advertisement should not be considered an endorsement of the opinions expressed or products
advertised. Statements of fact and opinion are the responsibility of the authors alone and do not imply approval or endorsement on
the part of the advisory board, membership or staff of VMUG. Copyright VMware User Group 2017 unless otherwise indicated.
All rights reserved. No part of this publication may be reproduced without permission from the editor.
VMUG is a dynamic, collaborative, independent community of VMware customers, solution partners and VMware experts.
Created to assist one another in achieving accelerated success with VMware solutions, VMUG provides a forum to network
with peers, share best practices and learn from industry leaders and solution partners. JOIN VMUG.
vmug.com 1
table of contents COMPASS Q2 2017
COVER STORY
FEATURES
IN THE NEWS
6 17 NSX MINDSET
VMWARES BIG BET ON NSX
The past, present and cloud-based future of VMwares
23 VMUG USERCON
software-defined networking technology.
18
BACKUP PLANNING FOR A
CLOUD-CONNECTED WORLD
The cloud increases options for data protection, but that
datas more distributed nature creates new challenges.
THE JOURNEY
THROUGH THE CLOUD
You cant do much these days without seeing or hearing about the Just like back in the day, we no longer need
cloud. You hear it in IT, marketing, sales and even your cars, appli- to physically touch the equipment. And now
ances and many other gadgets. Its hard to escape all of the cloud we dont have to own it, either. Most will
buzz thats been going on for some time now. The cloud means have a combination of owning or renting
many different things to many different people. For some its simply compute, but options are there and its
an afterthought, a utility that should always be there without much up to you to decide whats best for your
thought. But for IT professionals, its a whole lot more. business environment.
The compute behind the cloud, after all, is physical equipment. For most, the cloud is the buzzword, but
It may not be on-premises, owned by or physically accessible by for IT its better defined as SDDC. IT profes-
you, but it is hardware. What makes it the cloud are the options we sionals need to keep skills fresh and to stay
have now to utilize and access this compute. We all remember the relevant in the IT department of tomorrow.
days of being in the cold datacenter racking and stacking switches You can do this by learning new technologies,
and servers. Heck, I remember racking tower servers specing CD such as NSX, hyper-converged, vSAN, EUC
drives that would work horizontally. Every day, we would be in and looking at new secondary storage solu-
the datacenter. Some of us even had our desk in the datacenter. tions for the modern world. VMUG can help
with this training by providing access to
That all changed. The idea shifted to a well-run datacenter where
demo software downloads (now including
you didnt have to go inside. Where you could accomplish every-
NSX), UserCons, virtual events and online
thing from a console. Where the only reason you went into the
communities. We all want to help each other,
datacenter was for power issues or physical gear upgrades. For
and the community is a great place to ask
me, this was even before VMware. In some sense, we all were cre-
questions and share your knowledge.
ating this cloud concept even before virtual servers. No need to
touch or even see the compute, just access it remotely and make Everywhere things are changing. What will
it work. It didnt matter the datacenter was 15 feet away, we took always be here is the community to support
pride in the fact we didnt even have to open that door. your journey through the cloud and beyond.
Enter VMware. The company takes this concept to the next level
to create the cloud we know today, and the industry has grown Brad Tompkins
and continues to evolve. So, too, has the role of the IT professional. VMUG CEO
vmug.com 3
Reduce the risk with
Runecast Analyzer
Weve fixed all issues discovered with Runecast I consider this tool a must-have
Analyzer and are now running smoother than ever for any VMware admin
Reduce the time spent on troubleshooting and worrying about outages and audits.
Focus on innovation instead.
vmug.com 5
TREVOR POTT
NSX
VMWARES
BESTFOTO77; TORIA/SHUTTERSTOCK.COM/COMPASS STAFF
BIG BET
ON
One result of this was virtual eXtensible local area networks (VXLANs)
in RFC 7348. Though the formal document landed in 2014, it was a
long road to get there. The IT industry isnt really great about open
standards; before they land, everyone tries to cement their own pro-
prietary solution. Lock-in is always the name of the game.
hen VMware purchased Nicira in 2012, it VXLAN, however, wasnt the only piece of the puzzle. In order for
wasnt merely making a play to block a VXLAN to work, some form of distributed switch needed to exist.
competitor. Nor was it merely throwing some This distributed switch needed to live on top of an existing infra-
money against the wall to see if it would turn structure. At the time of VMwares purchase of Nicira, that meant
into something useful; I considered Nicira, x86 virtualization, because containers werent a thing quite yet.
which eventually turned into VMwares NSX,
Niciras technology was arguably the best of the bunch; however,
to be the future of networking.
without the backing of one of the industrys tech titans, there was
Yet, despite my personal bullishness, gaps little chance it would become the future of networking. In 2012 net-
remain in NSX and the battle is not yet won. works were Ciscos turf, and it was pointless to pretend otherwise.
Cisco set the agenda and the rest of the world followed along.
At the time of purchase, Nicira was one of a
handful of overlay network startups looking Two tech titans wereand remainkey to the future of networking.
to redefine how you do networking. Tradi- While the hardware side of the industry is experiencing a period of
tional networking companies, as well as the market share diversification, Cisco is unquestionably at the forefront
open source community, were all working of technology advances. Similarly, while x86 virtualization plateaus,
toward solutions to the problems of net- VMware is charging ahead into the private, services provider and
working at scale that x86 virtualizationand hybrid cloud spaces, as well as tackling containers with Photon.
especially large-scale self-service cloud
The largesse and customer base of both organizations will
computinghad brought to the table.
ensure their relevance for quite some time. Cisco has focused its
The biggest problems to be solved were software-defined networking (SDN) efforts on its application-
the limit of 4096 virtual local area networks centric infrastructure (ACI). VMware has focused on NSX. Several
(VLANs), the requirements of tenants in a smaller players still linger, some pushing proprietary solutions, but
multi-tenant environment to have overlapping many are building upon open standards and open source technologies.
vmug.com 7
feature > the nsx bet
switches at all.
Network
VMwares NSX is also more or less what you Overlays
Fabric
would expect. VMware doesnt really care if
your network is a bunch of whitebox tin or Figure 1. One possible NSX setup.
This is the reason NSX isnt flooding the commercial midmarket and To defeat its enemies and emerge the
small to midsize business (SMB) space. It isnt because NSX has no unchallenged victor of network virtualization,
value here: For a 100-employee SMB shop with 15 sites, NSX would achieving a dominance it hasnt enjoyed
be absolutely transformative. The issue, as always, is ease of use. since the golden heyday of x86 virtual-
ization, VMware must convince direct
Individually, VMware has all the pieces to make a hybrid self-service
competitors to join it. These range from
cloud environment where workloads move between sites on the
hyperconverged and cloud-in-a-can vendors,
company premises, services provider hosts and select public cloud
to services providers, public cloud providers
environments, all while preserving a companys network configura-
and networking vendors. VMwares recent
tions. Tying it together is where the difficulty lies.
ban on third-party virtual switches compli-
cates the issue a great deal and, in fact, may
HETEROGENEITY have started at least one no-holds-barred
Beyond the ease-of-use argument lies the cold reality that datacen- corporate war.
ters are heterogeneous. If they werent, wed all be using Microsoft
VMwares future as a tech titan rests on its
on Microsoft with some added Microsoft, and Microsoft in the cloud.
ability to turn the amazing technologies it
It is the only one that owns all the pieces in a convincing enough
has assembled into a single management
state of readiness to deliver a great-big, vertically integrated stack.
suite that can address a diverse and con-
In most of the IT industry, when people say virtualization, they stantly evolving heterogeneous environment
mean VMware oh, and Microsoft sometimes, too. Similarly, when where all the bits under management arent
people say public cloud, they mean Amazon Web Services oh, even owned by the customer buying the
and Microsoft sometimes, too. That vertically integrated play has tools. A daunting challenge, indeed, but one
created for Microsoft a block of absolutely loyal customers willing to VMware is better positioned to tackle than
consume the whole stack. The rest of the world mixes and matches. any other player in the industry today.
The battle for SDN is going to be won not by the company with the
best technology, but by the company that makes the best partner- Trevor Pott is a full-time nerd from Edmonton,
ships. Arguments about VMwares primacy are similar to those about Alberta, Canada. A columnist for Virtualization &
Microsoft and the desktop. Cloud Review, he splits his time between systems
administration, technology writing and consulting.
Yes, Microsoft owns most of the desktop market share. But when you As a consultant, he helps Silicon Valley startups
look at endpoints as a whole, Android crushes Microsoft like a bug. Yes, better understand systems administrators and
VMware dominates x86 virtualization. But when you look at workload how to sell to them.
END-USER
BESTFOTO77; VIKTORIA KURPAS; TAKITO/SHUTTERSTOCK.COM/COMPASS STAFF
COMPUTING
FOR THE VMWARE ADMIN
After procuring the hardware, there was the OS install, unless it came
embedded with Windows XP or a similar OS. Once installed, a security
scan had to be run and a backup of the physical hard disk created,
which was usually a 40GB SATA disk. After that, the device was
but it wasnt a cheap model of EUC. While
clunky, the 40GB physical hard disks that the
desktop PC contained were fairly expensive.
At first, virtual desktops were configured User Experience Virtual Desktop OS, Data, Apps
with persistence or persistent disks. If you
wanted a virtual desktop with a 40GB drive,
OS, Provisioning
it was thick provisioned and delivered to the Thin Client & Update
end user as such.
User Data &
That end user received a full 40GB hard disk, Desktop Desktop VM Personalization
Disaster
and any changes that were made by the end Recovery
user were permanent. Each time the end Laptop Security Application
Availability Virtualization
user logged in, they logged into the same & Backup
desktop, which retained the same settings,
day in and day out. Again, this was great, Figure 1. How VMware saw virtual desktop infrastructure in the early days.
vmug.com 13
feature > vmware euc
For example, an admin might not have Will that mean continuing to maintain an expertise in VDI? Its unclear at
root-level access to vCenter, like he would present. Maybe VDI belongs to the past and will slowly become phased
for an on-premises installation. Cloud provid- out. What we are seeing today is the ever-growing need for mobility
ers often strip access to vCenter and instead and less of a reliance on desktops, either physical or virtual. Were
Interpod
View View Communication View View
Connection Connection Connection Connection Remote
Server Server Server Server Desktop or
Application
Global Data Layer
vmug.com 15
feature > vmware euc
Self-service access and Secure, enterprise- Complete lifecycle First-class user experience
password management to optimized e-mail and management for all apps over remote networks,
reduce tickets messaging with Developer SDK including 3D-graphics-
internally developed apps intensive apps
Integrated multi-factor Ensure basic device Advanced device Ensure no corporate data
authentication for system- compliance (jailbreak, PIN, compliance-based touches the endpoint
of-record apps app wipe) conditional access
heading in the direction of full-on EUC, which may or may not include With Workspace you can customize a
VDI. With VMware purchasing and fully integrating AirWatch into its catalog of resources for your organizations
suite of products, VMware is quickly building its mobility portfolio. applications and provide secure, multi-device,
managed-user access to those resources.
Such resources include Web applications,
ALL ABOUT MOBILE
Windows applications captured as ThinApp
In todays society, its all about the mobile device, whether thats a
packages; Citrix- based applications, and View
tablet, phone or laptop. The way in which data is being consumed
desktop and application pools. Workspace
today is not in the form of logging into a desktop or workstation; its
provides users with a unified experience and
on the go and its in chunks. For instance, how many of you still log
offers your IT department unified security
into a desktop to check your online banking? Instead, weve experi-
and management for all services and appli-
enced a shift to simply pulling out our mobile device and launching
cations across multiple devices.
an app to check in on the balance, transfer money or pay a bill.
The era of the mobile app is in full swing, and apps are being devel-
PUTTING IT ALL TOGETHER
oped and used daily. These days our Internet usage has effectively
In this article Ive explored where end-user
become a la carte, or in smaller chunks as opposed to the days of
computing came from, where it is and
Web surfing. How is the administrator managing all of this data?
where its headed. As an administrator, you
In February 2016, VMware released Workspace ONE, a mobility plat- should have a good idea of how to draw on
form that modernizes how users consume all things enterprise. Devices your past experience and lean on your cur-
compliant with fingerprint biometrics allow one-touch, single sign-on rent experience, in order to create a future
access to all enterprise applications, desktops and cloud resources experience for you and your enterprise
to the users endpoint device. (The Workspace ONE editions and a environment.
description of what they offer are shown in Figure 3.)
Workspace ONE is the future of mobility, and the administrator Greg Stuart has 20 years of experience in the IT field,
who wants to stay relevant in the field needs to understand the and has been a VMware vExpert every year from 2011
requirements both for on-premises and cloud deployments. From to 2017. He also holds the following certifications:
an end users perspective, this sounds appealing; but for an admin- VCP4-DCV, VCP5-DCV/DTM/Cloud, VCP6-DCV/DTM/
istrator, its important to understand whats involved in managing NV/CMA. Hes a virtualization blogger at
the VMware Workspace Portal. Heres an excerpt from the VMware vDestination.com, holds an MBA and is a senior
Workspace Portal Administrators Guide (VMware, 2014): consultant at VMware Inc. He resides in southeast Idaho.
NSX
MINDSET
CHRIS MCCAIN, DIRECTOR OF TECHNICAL CERTIFICATION,
NETWORKING AND SECURITY, VMWARE
The NSX Mindset represents a new paradigm in the IT jobs we are commonly bound to a fixed mind-
industry. Overall, it represents the monumental changes occurring set. We get stuck in patterns and rhythms
as network virtualization rapidly rises to the forefront of and routines that allow us to move through
datacenter architecture. the days in a manner that makes earning a
paycheck comfortable. We know what to do.
To VMware, as a company, the NSX Mindset is symbolic of the com-
We know how to do it. Why should we intro
panys growth, innovation and leadership in the industry. Much like
duce something new that will impact the
VMware ESX began as ripple and became a tidal wave in a global
status quo? This fixed mindset is an obstacle
industry, the stone of NSX has been cast into the pond. Only this
to experiencing the personal career growth
time the stone is much bigger and being thrown by a much stronger
that we tell ourselves we want. Its easy for
arm. With more than 500,000 VMware vSphere customers and a
actions and words to contradict when a fixed
dominant market share in the compute virtualization space, VMware
mindset dominates. Its easy for fear of failure
is immediately in the most strategic position to bring customers a
to facilitate fear of change when a fixed mind-
next-generation networking and security platform that solves busi-
set dominates. The NSX Mindset symbolizes
ness problems with integrated technology.
a growth mindset. A growth mindset person
To the small, midsize and large enterprises that have a digital footprint is not only open to change and challenge,
of any size, the NSX Mindset has a different meaning. Organizations but will embrace it. A growth mindset person
with an NSX Mindset are focused on agility, scale, efficiency, security, doesnt blindly accept or welcome change.
automation and optimization. The business impact of VMware NSX is The growth mindset person is, however, will-
quantifiable while its immediate challenge to IT operations is equally ing to investigate, learn and try. The growth
undeniable. In an industry traditionally built on silos and pods of mindset person is willing to persist even
independent jobs, roles and workforces, VMware NSX breaks down through failure. VMware NSX undoubtedly
the natural lines that separate IT organizations. Outdated, compart- represents change. This change undoubtedly
mentalized operations are eliminated when NSX Mindset begins to represents opportunity for you to grow.
dominate the enterprise. The ONE TEAM strategy will prevail and
The efforts of VMware and VMUG that
lead IT organizations into building cross-functional, multi-disciplinary
began on April 1, 2017, have intensified on
teams of individuals that work in unison with one another.
May 1, 2017, and will continue to persist so
To you, the engineer, the administrator, the architect, the individual, that you can investigate, learn, try, fail, persist
the NSX Mindset takes on yet another, different meaning. The NSX and grow. Join the VMUG NSX community
Mindset is most certainly about opportunity for personal growth and and be active. Join the VMUG Advantage
success. People of all occupations, races, religions and geographies program and install the software. Buy the
understand clearly the rate at which technology has impacted our discounted NSX education package and
lives. Much like a business looks at business problems and turns to use it. The goal is to provide you with the
technology to solve them, we humans do the same. The rapid rise tools you need to get trained and certified
and constant evolution of smartphones and respective applications on VMware NSX and with that new knowl-
is enough evidence to show that, as human beings, we are open to edge you will be a catalyst for change as
making our personal lives easier, efficient, agile, automated and more. your organization evolves into ONE TEAM.
This open mindset toward personal devices is often contradictory to It starts with a growth mindset. It starts with
the mindset we have toward our own careers. When it comes to our the NSX Mindset.
vmug.com 17
BRIEN POSEY
BACKUP
BESTFOTO77; DEOMIS; CIENPIE DESIGN/SHUTTERSTOCK.COM/COMPASS STAFF
PLANNING
FOR A CLOUD-CONNECTED WORLD
vmug.com 19
feature > cloud backup
Fortunately, cloud services have existed for long enough that enter- Production Backup
Workloads USA-West
prise backup vendors have begun to provide plug-ins to protect the USA-East Region
data residing within some of the more popular SaaS applications. Region
Even so, the backup vendors dont provide protection for every
SaaS application, and the level of protection provided for a SaaS
application might be somewhat lacking.
Figure 1. Backing up to different cloud regions protects against
Take Microsoft Office 365, for example. There are a number of backup localized disasters.
vendors that offer backup solutions for Office 365. Of the backup
products available, most do a good job of protecting Exchange
cloud-based backup targets, and these targets
Online. However, many of the backup vendors dont have a solution
can accommodate backups of data residing
for protecting Office 365 applications such as SharePoint Online or
on-premises or in the public cloud.
OneDrive for Business; and those that do offer the ability to back up
SharePoint data often have extremely limited capabilities. When evaluating public cloud-based backup
targets, one of the first considerations to take
When it comes to backing up SaaS data, the best approach is to
into account is cost. IaaS cloud providers
talk to the cloud provider directly and ask what it recommends with
usually charge a monthly fee for storage con-
regard to data protection.
sumed and for data transfers. In other words,
Of course, protecting an organizations data requires more than just subscribers are leasing the storage space that
identifying the resources that need to be backed up, and determining their data is consuming, but must usually pay
the best backup mechanism to use. The backup target must also be an additional fee to upload or download data.
considered. When it comes to protecting data within an organiza-
Another consideration is whether the target
tions own datacenter, the backup target might be a tape drive, or
provides the required degree of protection.
perhaps a virtual tape library. However, these resources might be
If your data resides within the AWS cloud,
inadequate when it comes to protecting data residing in the cloud.
for example, does it make sense to back the
data up to an AWS backup target?
BANDWIDTH ISSUES
Large public cloud providers group cloud
The primary issue with backing up cloud data to on-premises
resources by region. Resources residing in
backup targets is bandwidth. If an organization is producing large
different regions usually exist within different
quantities of data in the cloud, backing that data up to a backup
datacenters. Hence, an organization that
target residing on-premises could deplete the organizations avail-
wants to back up its AWS data to the AWS
able Internet bandwidth.
cloud should place the backup in (or replicate
Organizations commonly find it easiest to back up data residing in the the backup to) a different region from the
cloud to cloud-based backup targets. IaaS providers such as Microsoft data that needs to be protected, as shown
Azure and Amazon Web Services (AWS) provide the ability to create in Figure 1.
Brien Posey is a seven-time Microsoft MVP with more than two decades of IT
experience. As a freelance writer, Posey has written thousands of articles and
Production Backup written and contributed to several dozen books on a wide variety of IT topics.
Workload
Prior to going freelance, Posey was a CIO for a national chain of hospitals and
health-care facilities. He has also served as a network administrator for some of
Figure 2. Backing up to separate public cloud providers can the countrys largest insurance companies and for the Department of Defense at
provide an extra level of protection. Fort Knox. You can visit his personal Web site at brienposey.com.
vmug.com 21
VMUG USERCON
If youve never been to a VMUG event, you cannot afford to miss a local
VMUG UserCon! At this one-day conference, you will:
Connect with hundreds of VMware users in your area
Attend educational sessions on the latest industry trends and topics
Get an inside look at exciting VMware and partner products and services
Experience product demonstrations firsthand
Mingle with industry experts
And more!
VMUG is excited to feature the newly created VMworld offers the education, connections
EUC Explore: Empower the Digital Workspace and inspiration for technology professionals
experience during four unique events this who are inventing the future. Dont miss
year. EUC Explore was created to connect IT your opportunity to hear from industry
professionals, who use or have interest in EUC thought leaders, network with peers, and
solutions, to industry experts from VMware, attend a wide range of breakout sessions
EUC vendors, and community members. and trainings. Register today!
vmug.com 23
VMUG LOCAL GROUP MEETINGS
More than 200 VMUG groups meet locally to learn from industry experts,
discover technology solutions, and share stories and chellenges with peers.
21 JUN 2017
22 JUN 2017 23 JUN 2017 7 JUL 2017
Halifax, Nova Scotia,
Lexington, KY Southeast Idaho Dallas-Fort Worth
Canada
Local Community Meeting Local Community Meeting Local Community Meeting
Local Community Meeting
ONLINE COMMUNITIES
VMUG Online Communities is a great place to connect and interact with other VMUG
members. Join these and other online communities!
VMUG Advantage Online Community: Home labs. NSX. EVALexperience. Its what
everyone is buzzing about in the VMUG Advantage Online Community. Get connected
and stay informed!
NSX Online Community: Learn more about VMware NSX and its tremendous impact on the
data centers of today and tomorrow. The community offers an opportunity for Q&As with
NSX experts and product managers, special community content, and discussions with peers.
WEBCASTS
VMUG webcasts feature live interaction through online discussions and
real-time Q&As with VMware experts and technology partners.
View on-demand webcasts and register for upcoming webcasts.
Steve Athanas Bonnie Bauder Ann Johnson Brian Kirsch Mariano Maluf
Director Director VMware Representative Director Past President,
Tyngsboro, MA, USA Pierre, SD, USA Palo Alto, CA, USA Milwaukee, WI, USA Atlanta, GA, USA
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
Suzan Pickett David Sandberg Ravi Venkatasubbaiah Jean Williams Brad Tompkins
Director Director Director VMware Representative Chief Executive Officer,
Beaverton, OR, USA Minneapolis, MN, USA San Jose, CA, USA Palo Alto, CA, USA Nashville, TN, USA
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
vmug.com 25
vmug staff
Brad Tompkins Teresa Streit Colleen Jamieson Ann Saari Heather Mayes
Chief Executive Officer VP of Strategy and Director of Operations Director of Membership and Controller
Member Programs Community Engagementr
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
Madison Soave Erika Erkel Sara Brandon Cassie Pitts Kelsey Canfield
Business Development Program Coordinator Program Coordinator Senior Coordinator Operations Associate
Coordinator Leader Development
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
EVENTS MARKETING
Jen Ortner Candice Davis Susan Joiner Denis Janis Turner Uligian
Director of Partner Sr. Program Coordinator Account Executive IT Director IT Coordinator
Engagement - Virtual Events and
Webcasts
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
EUROPEAN OFFICE
Esther Westerweele Willem van Vugt Miranda Paridaen Iris Stoffels Esther van Hal
Head of EMEA Office Communications/Branding Sponsor Engagement Project Support Project Support
Coordinator Coordinator
SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL SEND EMAIL
vmug.com 27
330 N. Wabash Ave.
Chicago, IL 60611
Phone: 312.321.6886
Email: info@vmug.com