iscsi Target Usage Guide December 15, 2017

Similar documents
Virtual Volumes FAQs First Published On: Last Updated On:

Tech Note: vsphere Replication with vsan First Published On: Last Updated On:

Introduction to Virtualization. From NDG In partnership with VMware IT Academy

Configuring and Managing Virtual Storage

Asigra Cloud Backup Provides Comprehensive Virtual Machine Data Protection Including Replication

Changes in VCP6.5-DCV exam blueprint vs VCP6

Disaster Recovery-to-the- Cloud Best Practices

BC/DR Strategy with VMware

MOVING TOWARDS ZERO DOWNTIME FOR WINTEL Caddy Tan 21 September Leaders Have Vision visionsolutions.com 1

StorageCraft OneXafe and Veeam 9.5

VMware vsphere APIs for I/O Filtering (VAIO) November 14, 2017

vsan Disaster Recovery November 19, 2017

VMware vsphere 5.5 Professional Bootcamp

StorageCraft OneBlox and Veeam 9.5 Expert Deployment Guide

vsphere Replication 6.5 Technical Overview January 08, 2018

Red Hat Enterprise Virtualization (RHEV) Backups by SEP

Virtualization And High Availability. Howard Chow Microsoft MVP

Backup and Recovery Best Practices With Tintri VMstore

Virtual Server Agent for VMware VMware VADP Virtualization Architecture

Hyper-V Innovations for the SMB. IT Pro Camp, Northwest Florida State College, Niceville, FL, October 5, 2013

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Symantec Backup Exec Blueprints

IM B09 Best Practices for Backup and Recovery of VMware - DRAFT v1

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

VMware vcenter Site Recovery Manager 5 Technical

Introducing VMware Validated Designs for Software-Defined Data Center

SnapCenter Software 2.0 Installation and Setup Guide

VPLEX & RECOVERPOINT CONTINUOUS DATA PROTECTION AND AVAILABILITY FOR YOUR MOST CRITICAL DATA IDAN KENTOR

Introducing VMware Validated Designs for Software-Defined Data Center

SRM Evaluation Guide First Published On: Last Updated On:

VMware Virtual SAN. Technical Walkthrough. Massimiliano Moschini Brand Specialist VCI - vexpert VMware Inc. All rights reserved.

Veeam Backup & Replication on IBM Cloud Solution Architecture

VMware vcloud Director Configuration Maximums vcloud Director 9.1 and 9.5 October 2018

Introducing VMware Validated Designs for Software-Defined Data Center

Detail the learning environment, remote access labs and course timings

Microsoft Azure Windows Server Microsoft System Center

Infortrend VMware Solutions

Migrating to vsan First Published On: Last Updated On:

HP Data Protector 7.0 Virtualization Support Matrix

Functional Testing of SQL Server on Kaminario K2 Storage

The vsphere 6.0 Advantages Over Hyper- V

Nutanix Tech Note. Virtualizing Microsoft Applications on Web-Scale Infrastructure

VMWARE PROTECTION WITH DELL EMC NETWORKER 9

Vmware 3V VMware Certified Advanced Professional Data Center Virtualization Design.

vsphere Replication for Disaster Recovery to Cloud

VMware vsphere: Install, Configure, Manage plus Optimize and Scale- V 6.5. VMware vsphere 6.5 VMware vcenter 6.5 VMware ESXi 6.

Backup and Recovery Best Practices with Tintri VMstore and Commvault Simpana Software

Veeam Availability Solution for Cisco UCS: Designed for Virtualized Environments. Solution Overview Cisco Public

vsphere Storage Update 1 Modified 16 JAN 2018 VMware vsphere 6.5 VMware ESXi 6.5 vcenter Server 6.5

Setup for Failover Clustering and Microsoft Cluster Service

VMWARE VIRTUAL SAN: ENTERPRISE-GRADE STORAGE FOR HYPER- CONVERGED INFRASTRUCTURES CHRISTOS KARAMANOLIS RAWLINSON RIVERA


VMware vsphere Administration Training. Course Content

Nimble Tech Preview Nimble tech preview released. VVol 2.0 GA with vsphere 6.5 3PAR & Nimble ready on Day 1

vrealize Suite 7.0 Disaster Recovery by Using Site Recovery Manager 6.1 vrealize Suite 7.0

[VMICMV6.5]: VMware vsphere: Install, Configure, Manage [V6.5]

SnapCenter Software 4.0 Concepts Guide

vsphere Replication for Disaster Recovery to Cloud vsphere Replication 6.5

Virtual Server Agent v9 with VMware. June 2011

VMware Virtual SAN Backup Using VMware vsphere Data Protection Advanced SEPTEMBER 2014

Site Recovery Manager Installation and Configuration. Site Recovery Manager 5.5

Setup for Failover Clustering and Microsoft Cluster Service. Update 1 16 OCT 2018 VMware vsphere 6.7 VMware ESXi 6.7 vcenter Server 6.

Bacula Systems Virtual Machine Performance Backup Suite

Using EonStor DS Series iscsi-host storage systems with VMware vsphere 5.x

Administering VMware vsphere and vcenter 5

SQL Saturday Jacksonville Aug 12, 2017

Redefine Data Protection: Next Generation Backup And Business Continuity

Setup for Failover Clustering and Microsoft Cluster Service. 17 APR 2018 VMware vsphere 6.7 VMware ESXi 6.7 vcenter Server 6.7

VMware - VMware vsphere: Install, Configure, Manage [V6.7]

BraindumpsIT. BraindumpsIT - IT Certification Company provides Braindumps pdf!

VMWARE VSAN LICENSING GUIDE - MARCH 2018 VMWARE VSAN 6.6. Licensing Guide

Exam Name: VMware Certified Professional on vsphere 5 (Private Beta)

Symantec Reference Architecture for Business Critical Virtualization

Microsoft E xchange 2010 on VMware

VMware Exam VCP-511 VMware Certified Professional on vsphere 5 Version: 11.3 [ Total Questions: 288 ]

Storage Strategies for vsphere 5.5 users

Your World is Hybrid:

Best Practices For Running VMware vsphere On iscsi December 15, 2017

What s New in VMware vsphere 4.1 Performance. VMware vsphere 4.1

Nutanix White Paper. Hyper-Converged Infrastructure for Enterprise Applications. Version 1.0 March Enterprise Applications on Nutanix

What's New in VMware vsan 6.6 First Published On: Last Updated On:

VMware vsphere 6.5: Install, Configure, Manage (5 Days)

UNITRENDS & NUTANIX ARCHITECTURE & IMPLEMENTATION GUIDE

VMware vsphere with ESX 4.1 and vcenter 4.1

VMware vsphere Replication Administration. vsphere Replication 8.1

VMware vsphere: Install, Configure, Manage (vsphere ICM 6.7)

Veeam Certified Engineer v9. Textbook

VMware vsphere Replication Installation and Configuration. vsphere Replication 6.5

Redefine Data Protection: Next Generation Backup & Business Continuity Solutions

VMware vsphere 5.5 Advanced Administration

vsan Stretched Cluster & 2 Node Guide January 26, 2018

Using VMware vsphere with Your System

VMware vsphere with ESX 4 and vcenter

Setup for Failover Clustering and Microsoft Cluster Service

Software-defined Shared Application Acceleration

VMware vsphere with ESX 6 and vcenter 6

VMware vsphere: Fast Track [V6.7] (VWVSFT)

2V0-622 vmware. Number: 2V0-622 Passing Score: 800 Time Limit: 120 min.

Dell EMC UnityVSA Cloud Edition with VMware Cloud on AWS

EMC Integrated Infrastructure for VMware. Business Continuity

Transcription:

December 15, 2017 1

Table of Contents 1. Native VMware Availability Options for vsan 1.1.Native VMware Availability Options for vsan 1.2.Application Clustering Solutions 1.3.Third party solutions 2. Security Guidance 2.1.Private Network 2.2.Encryption and Authentication 3. Availability and Performance Best Practices 3.1.Availability Best Practices 3.2.Performance Best Practices 4. Interoperability and Support Considerations 4.1.Interoperability Considerations 4.2.vSphere and VMware feature support 4.3.Supported Operating Systems 2

1. Native VMware Availability Options for vsan VMware vsan iscsi targets can be used to provide SCSI-3 locking, and LUNs required for a number of clustered applications. It should be noted there are many options for clustering applications 3

1.1 Native VMware Availability Options for vsan Native VMware Availability Options for vsan VMware vsan iscsi targets can be used to provide external storage for a number of operating systems and applications. It should be noted when deciding on clustering an application that there are a number of choices for providing highly available services. There are also a number of alternatives both native to vsphere and to application layers that may be preferred, and not require the use of iscsi connections to the vsan iscsi target. vsphere High Availability (HA) vsphere High Availability allows for virtual machines to fail over to other hosts in less than 10-minutes with a recovery point of zero. vsphere HA is supported on vsan datastores. VMware Fault Tolerance (FT) VMware Fault Tolerance is a process where a virtual machine, called the primary vm, replicates changes to a secondary vm created on an ESXi host other than the one hosting the primary vm. Fault Tolerance can deliver both a recover point objective (RPO) as well as a Recovery Time Objective (RTO) of zero. Fault Tolerance is supported on VMware vsan. VMware vsphere Replication VMware vsphere Replication is a virtual machine data protection and disaster recovery solution. It is fully integrated with VMware vcenter Server, providing host-based, asynchronous replication of virtual machines. When replicating from vsan to vsan vsphere Replication can deliver a 5-minute recover point objective. 1.2 Application Clustering Solutions Application Clustering Solutions While it should be noted that vsphere High Availability, Fault Tolerance, and Replication can cover the vast majority of use cases in an easy to manage, low cost manner, there are a number of use cases for application level clustering. It should be noted that iscsi will enable some new application clustering options, while others work today simply having VMDKs stored on VMware vsan. Microsoft SQL Microsoft Always ON Availability Groups Operate in a true shared nothing fashion. They can be configured for either local synchronous replication, or remote asynchronous replication. They are fully supported using native VMDK objects stored on vsan storage. Failover Clustering Instance (FCI) FCI is NOT supported on VMware vsan. 4

Microsoft File Services Microsoft has a number of of availability solutions for file services. Built into their server operating system. Distributed File System Replication DFS-R The Distributed File System Replication (DFS-R) service replication engine that can keep folders synchronized using compression and differential comparison. DFS-R works in a shared nothing environment and is fully supported using native VMDK objects stored on VMware vsan storage. File Server Failover clustering 2008R2 2012R2 Failover Cluster Traditional File Server clustering in windows server requires SCSI-3 locking, and shared storage. This is not supported on VMware vsan. 2012/2012R2 SoFS Cluster Traditional File Server clustering in windows server requires SCSI-3 locking, and shared storage. While SoFS has advantages over traditional failover clustering there are limitations on what is recommended or supported in using SoFS vs. traditional failover clusters. Windows 2016 Storage Replica (SR) Storage Replicas are agnostic to storage hardware and has no specific storage hardware requirements. It is supported and will run on top of VMware vsan. Exchange Exchange as of Exchange 2010 no longer uses shared volumes for clustering. Database Availability Groups (DAG) use a shared nothing design, and is fully supported using native VMDK objects stored on a vsan datastore. Oracle Virtualized Oracle on vsan is fully supported using native VMDK objects stored on a vsan datastore. Note, you will need to use the multi-writer flag and there are a number of considerations (no HotExtend, VADP, CBT support). See KB 2121181 for more information. Physical servers running Oracle RAC are supported with VMware vsan using the iscsi Target Service. Support is being extended specifically for Oracle RAC 12c, 11gR2. 1.3 Third party solutions 5

Third party solutions 3 rd party solutions also offer a variety of replication solutions using both VMware vsphere Storage APIs Data Protection (Formerly known as VADP) as well as using vsphere APIs for I/O Filtering (VAIO). VMware guidance: vsphere High availability offers an excellent RPO and RTO for most workloads, and vsphere replication. When lower recovery times are needed, should be application level clustering often no longer requires clustered volumes. 6

2. Security Guidance iscsi, like any storage protocol, requires proper security considerations. 7

2.1 Private Network Private Network iscsi storage traffic is transmitted in an unencrypted format across the LAN. Therefore, it is considered best practice to use iscsi on trusted networks only and to isolate the traffic on separate physical switches or to leverage a private VLAN. All iscsi-array vendors agree that it is good practice to isolate iscsi traffic for security reasons. This would mean isolating the iscsi traffic on its own separate physical switches or leveraging a dedicated VLAN (IEEE 802.1Q). 2.2 Encryption and Authentication Authentication CHAP (Challenge Handshake Authentication Protocol) verifies identity using a hashed transmission. The target initiates the challenge. Both parties know the secret key. It periodically repeats the challenge to guard against replay attacks. CHAP is supported by the vsan iscsi Target service. bidirectional CHAP is supported. 8

9

3. Availability and Performance Best Practices Best practices for scaling availability and performance. 10

3.1 Availability Best Practices Availability Best Practices Multi-Path IO (MPIO) is supported with the vsan iscsi Target Service. Every target has an owner and initial connections will be redirected using iscsi redirects to the owning path. In the event of failure reconnection attempts will be redirected to the new owning target. An initiator can connect to any host, but will always be redirected to the current active host. 3.2 Performance Best Practices Performance Considerations iscsi Targets have a limited maximum queue depth and it is recommended to utilize more targets to increase performance. It should be noted that a given target will only be active for a single host so 11

deploying more targets will lead to a more even usage of paths for performance balancing. You can see the I/O owning Host from within the UI. It should be noted that iscsi utilizes more compute overhead, and because of added pathing will add additional latency and overhead compared to running Virtual Machine disks directly on the VSAN datastore. If performance is a concern, iscsi should only be used when native VSAN is not an options. 12

4. Interoperability and Support Considerations Discussions on supported configurations. 13

4.1 Interoperability Considerations vsan policies and capabilities As the iscsi LUNs are stored as VMDK s SPBM (Storage Policy Based Management) can be used to manage the characteristics of the LUNs. Space efficiency features including RAID-5 and Deduplication and Compression are fully supported. 4.2 vsphere and VMware feature support ESXi host support Use of the Virutal SAN iscsi Target for providing storage directly to vsphere is not currently supported. The intent of this feature is to provide for extended use cases where application clustering requires it, as well as physical workloads outside of the VSAN cluster. vsphere and VSAN features not currently supported The following features are not supported by iscsi Target service volumes. vsphere Replication vsphere Data Protection API s Snapshots SRM 14

For data protection, in guest tools, agents, or application level data replication tools will need to be leveraged. For failing over to a second site, a stretched vsan cluster would need to be used. 4.3 Supported Operating Systems Supported Operating Systems Windows 10, Windows 2016, 2012 R2, 2012, 2008 R2, 2008 RHEL 7, RHEL 6, RHEL 5 SUSE Linux Enterprise Server 12, SLES 11 SP4/SP3/SP1 Hardware HBA's are not supported at this time. 15