The Freedom with Cross-Cloud Architecture Scaling your business with Cross-Cloud Architecture Top IT drivers for integrating public clouds Cloud challenges and solutions Challenge 1
Trang 2VMware Cross-Cloud Architecture
Automate and orchestrate your Software-DefinedData Center on AWS
Ajit Pratap Kundan
Trang 3BIRMINGHAM - MUMBAI
Trang 4VMware Cross-Cloud Architecture
Copyright © 2018 Packt Publishing
All rights reserved No part of this book may be reproduced, stored in a retrieval system, or transmitted
in any form or by any means, without the prior written permission of the publisher, except in the case
of brief quotations embedded in critical articles or reviews.
Every effort has been made in the preparation of this book to ensure the accuracy of the information presented However, the information contained in this book is sold without warranty, either express or implied Neither the author, nor Packt Publishing or its dealers and distributors, will be held liable for any damages caused or alleged to have been caused directly or indirectly by this book.
Packt Publishing has endeavored to provide trademark information about all of the companies and products mentioned in this book by the appropriate use of capitals However, Packt Publishing cannot guarantee the accuracy of this information.
Commissioning Editor: Vijin Boricha
Acquisition Editor: Namrata Patil
Content Development Editor: Amrita Noronha
Technical Editor: Nilesh Sawakhande
Copy Editor: Safis Editing
Project Coordinator: Shweta H Birwatkar
Proofreader: Safis Editing
Indexer: Tejal Daruwale Soni
Graphics: Jisha Chirayil
Production Coordinator: Aparna Bhagat
First published: March 2018
Trang 5Mapt is an online digital library that gives you full access to over 5,000 booksand videos, as well as industry leading tools to help you plan your personaldevelopment and advance your career For more information, please visit ourwebsite
Trang 6Why subscribe?
Spend less time learning and more time coding with practical eBooksand Videos from over 4,000 industry professionals
Improve your learning with Skill Plans built especially for you
Get a free eBook or video every month
Mapt is fully searchable
Copy and paste, print, and bookmark content
Trang 7Did you know that Packt offers eBook versions of every book published, withPDF and ePub files available? You can upgrade to the eBook version at www.Pa cktPub.com and as a print book customer, you are entitled to a discount on theeBook copy Get in touch with us at service@packtpub.com for more details
At www.PacktPub.com, you can also read a collection of free technical articles,sign up for a range of free newsletters, and receive exclusive discounts andoffers on Packt books and eBooks
Trang 8Contributors
Trang 9About the author
Ajit Pratap Kundan is an infrastructure software consultant with 18 years'
experience, having has worked with Novell, Redington, PCS, and Innodata.Currently, he is a technical consultant at VMware, Delhi and provides
productive solutions for Federal Government clients, espousing the benefits
of hybrid cloud with cross-cloud services He has a graduate degree in
electronics engineering from Pune University with experience in Lotus,Tivoli, PlateSpin, IDM, SUSE Linux, Sentinel, and all of the VMware
products He is an ITIL, CCNA, Lotus, SUSE, Red Hat, and certified professional
VMware-I currently reside in New Delhi, VMware-India with my wife and two boys VMware-I would like to thank my wife for putting up with my late-night writing sessions I also give deep thanks and gratitude to my colleagues for their guidance and suggestions.
Trang 10About the reviewer
Daniel Jonathan Valik is an industry expert in unified communications and
collaboration technologies, cloud computing, and Platform as a Service
(PaaS) He has worked for large software companies and start-ups in Europe,Asia (APAC), and the US He is the founder of Hanako Consulting LLC—astrategy, product marketing, and management consulting company He hasstrong expertise in areas such as IoT, DevOps, Automation, Microservices,Containerization, Virtualization, Cloud-Native Applications, Artificial
Intelligence, and Contact Center Technologies
Trang 11Packt is searching for authors like you
If you're interested in becoming an author for Packt, please visit authors.packtp ub.com and apply today We have worked with thousands of developers andtech professionals, just like you, to help them share their insight with theglobal tech community You can make a general application, apply for aspecific hot topic that we are recruiting an author for, or submit your ownidea
Trang 12Table of Contents
Title Page
Copyright and Credits
VMware Cross-Cloud Architecture
Packt Upsell
Why subscribe?
PacktPub.com
Contributors
About the author
About the reviewer
Packt is searching for authors like you
Preface
Who this book is for
What this book covers
To get the most out of this book
Download the color images Conventions used
Get in touch
Reviews
1 The Freedom with Cross-Cloud Architecture
Scaling your business with Cross-Cloud Architecture
Top IT drivers for integrating public clouds
Cloud challenges and solutions
Challenge 1 – connection and security with full compliance and control
Challenge 2 – managing/integrating across clouds VMware Cross-Cloud Architecture
Secure connectivity across clouds
The backbone of a private cloud
Extending services to public clouds
Multi-cloud/mixed cloud use cases Cloud solutions supporting business objectives
Modernizing your data center VMware hybrid clouds
VMware – a partner for every cloud
VMware vCloud Air AWS hybrid cloud IBM Cloud for VMware solutions
Trang 13Solution features Reference architecture IBM Cloud for VMware solutions Conceptual view
Logical view Deployment view Summary
2 Implementing Service Architecture for Cross-Cloud Services
Scalability and performance Workload domains
Management workload domain Workload domains
VDI workload domains Hardware architecture – rack architecture
Rack hardware Rack sizing Rack wiring Storage architecture (software-defined storage)
vSAN storage policies Network architecture (network virtualization or software-defined network) Logical network design
VMware Cloud Foundation software design
SDDC Manager Physical Resource Manager Logical Resource Manager LRM Controller LRM logical resources and LRM services Hardware Management Service (HMS) Lifecycle management
vSphere products NSX
vRealize products vRealize Operations Manager vRealize Log Insight
vRealize Automation, VMware vRealize Business, and VMware
Trang 14vRealize Orchestrator Summary
3 Transforming a Data Center from Silos to Software-Defined Services
Need for VMware in data center transformation
Business requirements of customers
Interoperability and integration
Logical design Orchestrator topology choice Orchestrator server mode choice vRealize Orchestrator SDDC cluster choice Integrated architecture design model for private and public clouds
Private cloud integrated architecture design with network and security Integrated architecture design for virtual machines and applications
Consumption model of network services components Components and processes for logical switching vRealize Automation with logical switching consumption overview Introduction to DevOps and its benefits
Building, deploying, and running services in an innovative way SDDC object life cycle
vRealize code stream functionality Automating application release without manual intervention Advantages of DevOps
Summary
4 Designing a Mixed Cloud Model with VMware
Core elements of VMware's Cross-Cloud Architecture
Cross-Cloud Services Choosing suitable applications to move in the cloud VMware Cloud on AWS
Components/technologies used in VMware-AWS partnerships Migrating your existing applications to AWS
Application migration phases with supporting tools Migration assessment
Schema conversion Conversion of embedded SQL and application code Data migration
Testing converted code Data replication Deployment to AWS and Go-Live Post-deployment monitoring Managing AWS with vCenter
Managing administrators on the management portal Steps for adding an administrator
Trang 15Steps for removing an administrator
VPCs and subnets management
Steps for creating a VPC and subnets
Steps for deleting a VPC
Security groups management
Steps for creating a security group
Steps for deleting a security group
Environment management in AWS
Steps for creating an environment
Steps for deleting an environment
User permissions management
VM migration to Amazon EC2 with AWS Connector for vCenter The VM import authorization process
Virtual machine migration process
Backing up the instance
Migrated EC2 instance export process
Troubleshooting migration
Validation of the certificates
VMware Cross-Cloud Model with IBM Cloud
Prerequisites
Components/services used in this architecture
VMware Cloud services architecture on SoftLayer
Physical infrastructure
Physical operational model
Logical operational model
Cluster (compute, storage, and network) architecture Compute clusters
Management cluster Edge cluster Storage cluster Physical network provided by SoftLayer
Simplicity Scalability High bandwidth Fault-tolerant transport Physical storage
vSAN Network File System (NFS) Storage virtualization
VMware SDS is vSAN Virtual Machine Disks (VMDK) Virtual infrastructure
Trang 16Compute virtualization Provisioning
Resource scheduling Availability
Performance Network virtualization Network virtualization components Distributed virtual switches Network I/O control details Network virtualization services Infrastructure management
Compute management Storage management Network management Common services
Identity and access services DNS
NTP services Simple Mail Transfer Protocol (SMTP) services Certificate Authority (CA) services
Cloud management services Service catalogue Self-service portal Infrastructure and process orchestration Software orchestration
Operational services Backup and restore Disaster recovery Monitoring
Log consolidation and analysis Patching
Business services Business management
IT financials
IT benchmarking Cloud-based approaches for Disaster Recovery as a Service (DRaaS) solutions Summary
5 Implementing Service Redundancy Across All Layers
vSphere virtualization software
VMware vCenter Management Server
Trang 17vCenter main components
Environment preparation
Certificate for the vSphere Web Client and the Log Browser Verify that the environment is working properly
Comparison of the vCenter deployment topologies
vSphere HA/redundancy features
vSphere HA
vSphere vMotion details
EVC feature details
vSphere DRS feature details
VMware vSphere Distributed Power Management Resource pools feature details
vSphere Fault Tolerance
Relevance of vSphere Fault Tolerance for vCenter HA
Maximizing memory performance
CPU and memory shares, reservations, and limits Virtual machine disks
Multiple virtual disks
Virtual disk location
Swap file location
Virtual SCSI HBA type
Virtual NICs
Virtual GPUs
VMware vSphere Flash Read Cache
Guest operating system considerations
VMware Tools
Templates
Templates and multiple sites
Snapshot management
Virtual machine security considerations
Encryption and security certificates
Monitoring and management design practices
Time synchronization
Trang 18Syslog logging Performance monitoring Virtual machine backup and restore VM-to-VM affinity rules
Backup and recovery - embedded deployment model Backup and recovery - external deployment model Migration architecture design
Migration process flow Migration scheduling
Migration execution Migration validation Customer business objectives Migrated virtual machine framework Responsibility matrix
Design risks IaaS migration portal logical design VMware CMP physical design
VMware Converter Linux migration process VMware Converter agent
 Network/security changes Port requirements
Operational readiness for migration Pre-migration activities
P2V migration options Hot clone - full outage Hot clone – post-synchronisation V2V migration options
V2V conversion V2V requirements CMP migration process Timing estimate (P2V/V2V timing) Post-migration activities
Summary
6 Designing Software-Defined Storage Services
Software-defined storage overview
Purpose and applicability to the SDDC solution Business requirements
Requirements and dependencies Architecture overview
Conceptual design Logical design
Trang 19Virtual SAN (vSAN)
vSAN design workflow
Design parameters/considerations for vSAN
Host memory requirements
Host CPU overhead
Hardware design decisions
Network design
vSAN network port group
Network speed requirements
Type of virtual switch
vSAN cluster and datastore design
vSAN disk format
Disk groups
Failures to tolerate policy
Fault domains
Hosts per cluster
Deduplication, compression, and RAID 5/RAID 6 erasure coding Datastore sizing
Virtual SAN TCO and Sizing Calculator
vSAN cluster and datastore design decisions
vSAN design assumptions
vSAN policy design
Application demand assessment
Policy design decisions
vSAN monitoring design
General monitoring practices
Virtual SAN Health Check Plug-in
Virtual SAN Observer
vRealize Operations Manager monitoring
Trang 20Monitoring design Scalability limits of vSAN Product documentation and tools
VMware product documentation Supporting documentation Tools
Summary
7 VMware Cloud Assess, Design, and Deploy Services
VMware Cloud (SDDC) assessment, design, and deploy service solution overvie w
Virtualization conceptual design Logical design
Virtualization logical design Cloud tenant design
Comparison of single tenant and multi-tenant deployments Single tenant deployment
Multitenant deployment Cloud automation IaaS design vSphere infrastructure
Infrastructure source endpoints vRealize Operations Manager Application architecture overview vRealize Infrastructure Navigator Application architecture overview Security
Authentication Communication Licensing
vRealize Hyperic Application architecture overview vRealize Log Insight
Application architecture overview Deployment architecture
Scalability Security and authentication Communication
Integration with different cloud components
vSphere integration vRealize Operations Manager integration VMware vRealize Business Manager
Conceptual design vRealize Business Standard architecture Data collection service
Trang 21Data Transformation Service FactsRepo inventory service Server
Reference database External interfaces vRealize Business Standard appliance role Supported product integrations
VMware vSphere VMware vCloud Director VMware vRealize Business Advanced and Enterprise VMware vRealize Operations Manager
VMware vRealize Automation Integrating vRealize Business with public clouds Solution logical design
Service orientation principle VMware vRealize Operations Manager
Business scenario Interoperability requirements Integration with vRealize Operations Manager Integration between vRealize Operations Manager and vRealize Automation Business objective
Integration requirements Credentials
Firewall rules Specific configuration with specific objects to be created and c onsumed
Application release automation with Zero Touch Deployment
Summary
8 Transforming Your Network Architecture
Assumptions, risks, constraints, and use cases
Distributed firewall Service composer NSX for vSphere system requirements Micro-segmentation conceptual design
Trang 22Network virtualization logical design
NSX for vSphere component placement High Availability of NSX for vSphere components Scalability of NSX for vSphere Components Firewall logical design
Distributed firewall Security groups and policies NSX Manager design
Network virtualization platform management
Consumption layer NSX for vSphere logging environment NSX for vSphere management layer NSX for vSphere deployed components Distributed firewall logs Distributed firewall monitoring Backup and recovery – backing up the NSX Manager data Backing up the vSphere Distributed Switch
Monitoring and troubleshooting Flow monitoring
Activity monitoring vSphere Distributed Switch monitoring Port mirroring
vSphere Distributed Switch alerts vSphere Distributed Switch network health check SNMP
NetFlow/Internet Protocol Flow Information Export (IPFIX) Performance and scalability
Scalability considerations VXLAN
MTU on the transport network NSX Controller
IGMP usage Hybrid mode Brownfield migration Migration inside the same hardware infrastructure Migration to a new hardware infrastructure
NSX for vSphere port and protocol requirements
Trang 23Lockdown mode Securing vCenter Server Encryption and security certificates
Virtual network security considerations Network firewalls and vCenter Server Securing virtual machines with vLANs Securing virtual switch ports
Securing iSCSI storage connectivity Securing NFS storage connectivity Virtual machine security considerations Security design decisions
Micro-segmentation – how to define security on east-west traffi c
PAN security – integrating NSX with Palo Alto Application modeling for micro-segmentation – protecting your a pps from east-west traffic in a data center
VMware vRealize Configuration Manager architecture design
Backup and restore General use cases of customers vRealize Configuration Manager logical architecture overview VCM platform
Summary
10 Designing Effective Compliance Regulations to Fix Violations
Best practices to follow for compliance regulations
Data collection Data analysis Report generation and data integration Standard use cases
Network virtualization NSX Edge Gateway Firewall and Trust Groups VMware vCloud Hybrid Manager
Phase 1 – Planning Phase 2 – Kickoff Phase 3 – Solution overview Phase 4 – Assess
Phase 5 – Design Conceptual design
Logical design VMware vRealize Configuration Manager platform vRealize Configuration Manager guest OS compliance
Trang 2411 Lower TCO and Greater ROI with Maximum Agility
Operational readiness for the cloud
Phase 1 – Cost Center Phase 2 – Service Provider Phase 3 – Business Partner Contrasting approaches to building a private cloud
VMware Cloud Foundation
VMware Cloud Foundation infrastructure management
A traditional 3-tier architecture-based private cloud
Cost comparison methodology and approach
Hardware and software cost analysis
Cost comparison results - upfront costs for hardware, software, and su pport
Comparing the key technical capabilities and business benefits
Integrated provisioning and life-cycle management Support experience
Comparison of the key technical and business value attributes
OpEx costs savings analysis
Virtualization First Policy Summary
12 VMware Pricing and Licensing for a Cross-Cloud Model
Transforming a data center with Cloud Foundation
VMware pricing and licensing in AWS Cloud
Summary
13 The Economics of Cross-Cloud Services
Total cost of ownership with cost categories
Summary
Other Books You May Enjoy
Leave a review - let other readers know what you think
Trang 25VMware Cross-Cloud Architecture is the most trusted platform, not only fornew applications, but also for existing legacy applications This book willintroduce you to tried and tested cloud design and deployment methodologies
to help you achieve your business objectives and overcome all of the
challenges faced by traditional data centers Cloud Foundation and vRealizeSuite will help you to set up and integrate private clouds with public cloudssuch as AWS and IBM Soft Layer
Trang 26Who this book is for
This book is intended for those planning, designing, and implementing thevirtualization components of the SDDC foundational infrastructure Theintended audience is core technical teams, including those responsible forproduct development, servers, storage, networking, security, and backup andrecovery It is assumed that the reader has knowledge of and familiarity withvirtualization concepts and related topics (including storage and networking)
Trang 27What this book covers
Chapter 1, The Freedom with Cross-Cloud Architecture, introduces different
types of clouds, where we will learn about all of the cloud benefits that canhelp you to overcome traditional or multi-cloud challenges with Cross CloudArchitecture
Chapter 2, Implementing Service Architecture for Cross-Cloud Services, makes
use of VMware Cloud Foundation deployment to achieve a unified defined data center (SDDC) platform for the hybrid cloud, that is based on
software-VMware compute, storage, and network virtualization, a natively integratedsoftware stack that can be used on-premises for private cloud deployment orrun as a service from the public cloud with consistent, simple operations byintegrating it with VMware vRealize Suite, VMware Horizon, and VMwareIntegrated OpenStack to deliver a comprehensive SDDC platform
Chapter 3, Transforming a Data Center from Silos to Software-Defined
Services, explains how to host applications in the cloud world to provide
administrators with flexibility and best control along with business valuesfrom Cross Cloud Architecture
Chapter 4, Designing a Mixed Cloud Model with VMware, combines a
best-in-class private cloud with leading public clouds, all powered by the
ever-reliable and most flexible hybrid cloud platform offered by VMware
Chapter 5, Implementing Service Redundancy Across All Layers, talks about
different vCenter Server deployment topologies with redundant operations,and all of the High availability functionalities of vSphere, such as vMotion,and different Fault Tolerance options comparing their strengths and
weaknesses
Chapter 6, Designing Software-Defined Storage Services, discusses how to
design and scale a software defined storage service and deep dives into
reference deployment scenarios of VMware vSAN
Trang 28Chapter 7, VMware Cloud Assess, Design, and Deploy Service, discusses the
technical analysis of all VMware Cloud components (including their designand configuration) in detail and also helps you to design correctly with bestpractices to follow for specific use cases and the orchestration of all cloudcomponents
Chapter 8, Transforming Your Network Architecture, provides examples ofcreating, provisioning, and managing networks in a software-defined wayusing the underlying physical network as a simple packet‐forwarding
backplane, and also explains how to migrate from legacy network
architectures to new network virtualization techniques
Chapter 9, Dealing with Data Sovereignty, explains sovereignty compliance
strategies and how to use an encryption solution to secure data at all stages ofthe cloud journey This chapter also shows you how to ensure that data
backup and secondary data centers for data recovery/disaster recovery
purposes remain local
Chapter 10, Designing Effective Compliance Regulations to Fix Violations,explains design compliance regulations for multiple purposes by aligning line
of business divisions with the best technology, such as VMware, to be
compliant in this versatile market Security and compliance must be a sharedresponsibility between IT and its cloud service provider
Chapter 11, Lower TCO and Greater ROI with Maximum Agility, explains that,
in order to achieve the goal of cloud, we need to extend virtualization
techniques across the entire data center to lower the capital and operationalexpenditure, achieving maximum ROI
Chapter 12, VMware Pricing and Licensing for a Cross-Cloud Model,
discusses VMware Cloud Foundation pricing and licensing as well as otherVMware Cloud component licensing models
Chapter 13, The Economics of Cross-Cloud Services, explains a cost analysis of
different cost categories and compares competitive existing solutions on themarket
Trang 29To get the most out of this book
This book is intended for administrators with different levels of server,
storage, and networking experience:
All administrators can learn network design and storage scaling to
manage and monitor hosts in the vSphere environment
Experienced VMware administrators can learn about private/hybridcloud design and deployment in different scenarios They can customizetheir designs as per customer requirements
Trang 30Download the color images
We also provide a PDF file that has color images of the screenshots/diagramsused in this book You can download it here: http://www.packtpub.com/sites/defaul t/files/downloads/VMwareCrossCloudArchitecture_ColorImages.pdf
Trang 31Conventions used
There are a number of text conventions used throughout this book
CodeInText: Indicates code words in text, database table names, folder names,filenames, file extensions, pathnames, dummy URLs, user input, and Twitterhandles Here is an example: "Open Services.msc from the run command."
Bold: Indicates a new term, an important word, or words that you see
onscreen For example, words in menus or dialog boxes appear in the textlike this Here is an example: "The syslog service can be configured on ESXiusing host profiles, the VMware vSphere command line interface, or
the Advanced Configuration options in the vSphere Web Client"
Warnings or important notes appear like this.
Tips and tricks appear like this.
Trang 32Get in touch
Feedback from our readers is always welcome
General feedback: Email feedback@packtpub.com and mention the book title inthe subject of your message If you have questions about any aspect of thisbook, please email us at questions@packtpub.com
Errata: Although we have taken every care to ensure the accuracy of our
content, mistakes do happen If you have found a mistake in this book, wewould be grateful if you would report this to us Please visit www.packtpub.com/su bmit-errata, selecting your book, clicking on the Errata Submission Form link,and entering the details
Piracy: If you come across any illegal copies of our works in any form on the
Internet, we would be grateful if you would provide us with the location
address or website name Please contact us at copyright@packtpub.com with a link
to the material
If you are interested in becoming an author: If there is a topic that you
have expertise in and you are interested in either writing or contributing to abook, please visit authors.packtpub.com
Trang 33Please leave a review Once you have read and used this book, why not leave
a review on the site that you purchased it from? Potential readers can then seeand use your unbiased opinion to make purchase decisions, we at Packt canunderstand what you think about our products, and our authors can see yourfeedback on their book Thank you!
For more information about Packt, please visit packtpub.com
Trang 34The Freedom with Cross-Cloud
Architecture
This chapter briefs you on cloud service architectures The chapter includesthe following sections:
Cloud benefits and challenges
VMware solutions to overcome different cloud challenges
VMware Cross-Cloud Architecture
Overview of private, public, and hybrid clouds
Overview of vCloud Air, AWS, and the IBM Cloud
Readers will be able to design elastic IT infra capabilities and set up a basicapplication hosting and DevOps environment with VMware components aftergoing through this book You will be able to install and configure all thebuilding blocks to get the benefits of VMware SDDC components in an on-premises private cloud, a public cloud such as IBM or AWS, or a mix of both
—a hybrid cloud
Trang 35Scaling your business with
Cross-Cloud Architecture
Digital transformation is taking place in each and every market segment,including financial services, healthcare, retail, education, and government.The world is being redefined by software and data, creating new priorities forevery business, and new imperatives for every IT organization IT has to beagile enough to drive growth and extend the capabilities and services that
they deliver to lines of business (LOBs) IT organizations have to transform
their legacy setup and extend their IT environments to public clouds to boostinnovation, agility, and cost savings
IT is playing a key role in business growth IT organizations work as strategicpartners, and business leaders are seeking better alignment with their
technical teams as they evaluate go-to-market strategies and important
decisions, such as mergers and acquisitions
Organizations expect their technical teams to support them with a modern ITenvironment that helps them accelerate innovation and agility, so they cancompete with new services and applications that will help them to grow theirbusiness rapidly IT organizations are expected to help keep costs in line Toaddress these expectations, IT teams are embracing public cloud solutions
Trang 36Top IT drivers for integrating
public clouds
IT leaders cite three primary drivers for integrating public clouds:
Disruptive approach: In today's disrupted, accelerated, app-centric
marketplace, speeding up time-to-market is critical; LOBs and
developers see public clouds as the fastest option for meeting their ITplatform requirements
CapEx pressures: IT teams are under considerable pressure to take
advantage of potential cost savings They are replacing on-premisesinfrastructures with public cloud-based hosting models or services, toincrease capacity while reducing operational efforts and costs
According to a Gartner research director, "Customers are saving 14
percent of their budgets because of public cloud adoption, which
subsequently grow public cloud businesses."
A cloud-first strategy: Most senior leadership mandates a cloud-first
strategy to drive reduced time to value by leveraging shared
infrastructure and paying only for the resources consumed Many
enterprises are already using hybrid clouds; some mix of private andpublic clouds, for greater flexibility and resilience
Businesses are strongly embracing the cloud for every challenge Enterprisesrecognize the value of public cloud flexibility and agility, but still must
address key challenges to integrate hybrid cloud solutions into their
operations
Trang 37Cloud challenges and solutions
We have cloud options, such as a private cloud, different service provideroptions, and large public clouds The best solution is possible without addingcost and complexity The VMware Cross-Cloud Architecture helps you tochoose the cloud that fulfills your business objective
Trang 38Challenge 1 – connection and
security with full compliance and
control
We have to manage incompatibility between different cloud models or
service providers, otherwise it will create new silos and create overhead Youmust avoid these silos and get a unified console to fulfill the requirements ofthe business objective IT organizations are looking for ways to take
advantage of the flexibility and agility that various clouds offer, even thoughmany mission-critical and data-sensitive apps are currently running on-
premises We need to take a close look at how we can migrate applicationsrunning on-premises or in a private cloud to the public cloud, without addingany cost to their existing investments We have to utilize the applicationdesign, SDLC processes, and maintain security and compliance best
practices
Solution: VMware overcomes this issue by extending a network to public
clouds through a network virtualization technique It interacts with publicclouds and services in a secure manner by applying all governance regulatorycompliance You can maintain all on-premises network policies, even
extending your applications across multiple clouds You have all the freedom
to host/publish your applications anywhere and anytime with end-to-endcontrol and compliance
Trang 39Challenge 2 – managing/integrating across clouds
We want to host our applications and manage resources in various clouds Asorganizations invest in multiple clouds, they are also creating more complex,siloed environments that don't have common management tools or enterprise-class security across their cloud infrastructure They may even build newteams to own and operate these different silos, reducing efficiency and
driving up costs Customers are looking for a solution that can help them tomanage mixed clouds from a single console
Solution: VMware will give you the holistic view from a single console of
the entire infrastructure, and also management tools to monitor and manageresources, applications, and operations across different clouds This approachprevents you from experiencing cloud vendor lock-in, monitoring operations,
and managing specific service-level agreements (SLAs) You have holistic
management and your end users can connect to public clouds with
confidence A single unified management layer with automated processesdelivers a fully customized cloud management platform, which gears upservice delivery, enhances operations, and delivers end-user choice withcontrol and compliance, across heterogeneous, multi-cloud environments
Trang 40VMware Cross-Cloud Architecture
The VMware Cross-Cloud Architecture provides freedom for end users andcontrol from a service provider perspective, helping a customer to makehybrid cloud decisions, when running, managing, connecting, and securingall of their applications across any cloud in a common operating
environment
The Cross-Cloud Architecture enables uniform deployment models, securitypolicies, visibility, and governance for all applications running on-premisesand off, irrespective of the underlying cloud or hypervisor
The following architecture consists of SDDC-based VMware Cloud
Foundation with a hyper-converged software solution, a set of VMwareCross-Cloud Services, and the vRealize cloud management platform:
VMware Cross-Cloud Architecture