WHITE PAPER SEPTEMBER 2017 VCLOUD DIRECTOR 9.0. What s New

Similar documents
What s New in VMware vcloud Director 8.20

What s New with VMware vcloud Director 8.0

VMware vcloud Director Configuration Maximums vcloud Director 9.1 and 9.5 October 2018

Dedicated Hosted Cloud with vcloud Director

VMware vcloud Director for Service Providers

vcloud Director Administrator's Guide vcloud Director 9.0

vcloud Director Administrator's Guide

Certified Reference Design for VMware Cloud Providers

Customer Onboarding with VMware NSX L2VPN Service for VMware Cloud Providers

VVD for Cloud Providers: Scale and Performance Guidelines. October 2018

CLOUD PROVIDER POD. for VMware. Release Notes. VMware Cloud Provider Pod January 2019 Check for additions and updates to these release notes

vcloud Director Administrator's Guide

Installing and Configuring vcloud Connector

Cloud Provider Pod Designer User Guide. November 2018 Cloud Provider Pod 1.0.1

CLOUD PROVIDER POD RELEASE NOTES

VMware Cloud Provider Pod Designer User Guide. October 2018 Cloud Provider Pod 1.0

vcloud Director Administrator's Guide vcloud Director 8.10

Storage Considerations for VMware vcloud Director. VMware vcloud Director Version 1.0

CLOUD PROVIDER POD RELEASE NOTES

Using the vcenter Orchestrator Plug-In for vcloud Director 1.0

vsphere Replication for Disaster Recovery to Cloud vsphere Replication 6.5

Cloud Pod Architecture with VMware Horizon 6.1

vsphere Replication for Disaster Recovery to Cloud

Installing and Configuring vcloud Connector

How to Use a Tomcat Stack on vcloud to Develop Optimized Web Applications. A VMware Cloud Evaluation Reference Document

vcloud Director User's Guide 04 OCT 2018 vcloud Director 9.5

Using vrealize Operations Tenant App as a Service Provider

vshield Administration Guide

vsphere Replication for Disaster Recovery to Cloud

VMware vcloud Air. Enterprise IT Hybrid Data Center TECHNICAL MARKETING DOCUMENTATION

Advanced Architecture Design for Cloud-Based Disaster Recovery WHITE PAPER

DEPLOYING A VMWARE VCLOUD DIRECTOR INFRASTRUCTURE-AS-A-SERVICE (IAAS) SOLUTION WITH VMWARE CLOUD FOUNDATION : ARCHITECTURAL GUIDELINES

vcloud Director Tenant Portal Guide 04 OCT 2018 vcloud Director 9.5

VMware Integrated OpenStack Quick Start Guide

vrealize Orchestrator Load Balancing

VMware vcloud Director Evaluator s Guide TECHNICAL WHITE PAPER

VMware vrealize Suite and vcloud Suite

TECHNICAL WHITE PAPER - MAY 2017 MULTI DATA CENTER POOLING WITH NSX WHITE PAPER

vsphere Replication for Disaster Recovery to Cloud vsphere Replication 8.1

What s New in VMware vsphere Availability

VMware vfabric Data Director Installation Guide

NSX-T Data Center Migration Coordinator Guide. 5 APR 2019 VMware NSX-T Data Center 2.4

Using the vcenter Orchestrator Plug-In for vcloud Director 5.5. vrealize Orchestrator 5.5

VMware vfabric Data Director Installation Guide

Horizon DaaS Platform 6.1 Service Provider Installation - vcloud

Monitoring Hybrid Cloud Applications in VMware vcloud Air

Scalable Licensing with Selective Monitoring in VMware vrealize Operations

Using VMware vrealize Orchestrator with VMware vcloud Availability for vcloud Director Version 1.0 April 2017

vcloud Director User's Guide

Introducing VMware Validated Designs for Software-Defined Data Center

VMware vrealize Operations Management Pack for vcloud Director 5.0 Guide

Introducing VMware Validated Designs for Software-Defined Data Center

vcloud Director User's Guide

vrealize Operations Management Pack for NSX for vsphere 3.5 Release Notes

VMware Cloud Provider Platform

vcloud Air - Dedicated Disaster Recovery User's Guide

VMware vcloud Director Infrastructure Resiliency Case Study

VMWARE HORIZON CLOUD WITH VMWARE IDENTITY MANAGER QUICK START GUIDE WHITE PAPER MARCH 2018

vcloud Director User's Guide

VMware vcloud Architecture Toolkit Hybrid VMware vcloud Use Case

vrealize Production Test Upgrade Assessment Guide

vcenter Operations Management Pack for vcns

Configuring Single Sign-on from the VMware Identity Manager Service to Marketo

What s New in VMware vsphere 5.1 VMware vcenter Server

VMware Skyline Collector Installation and Configuration Guide. VMware Skyline 1.4

Installation and Configuration Guide. vcloud Availability for vcloud Director 2.0

IaaS Integration for Multi-Machine Services

vcloud Director User's Guide

VMware Skyline Collector Installation and Configuration Guide. VMware Skyline Collector 2.0

vcloud Usage Meter 3.6 User's Guide vcloud Usage Meter 3.6

IaaS Integration for Multi- Machine Services. vrealize Automation 6.2

Solution Brief: VMware vcloud Director and Cisco Nexus 1000V

Introducing VMware Validated Design Use Cases. Modified on 21 DEC 2017 VMware Validated Design 4.1

Introducing VMware Validated Designs for Software-Defined Data Center

VMware vcloud Air User's Guide

Introducing VMware Validated Design Use Cases

Table of Contents HOL-HBD-1301

vcenter Server Installation and Setup Modified on 11 MAY 2018 VMware vsphere 6.7 vcenter Server 6.7

VMware vrealize Operations Management Pack for vcloud Director 4.5 Guide

vrealize Suite Lifecycle Manager 1.0 Installation and Management vrealize Suite 2017

DISASTER RECOVERY- AS-A-SERVICE FOR VMWARE CLOUD PROVIDER PARTNERS WHITE PAPER - OCTOBER 2017

What s New in VMware vcloud Automation Center 5.1

Configuring Single Sign-on from the VMware Identity Manager Service to Trumba

vrealize Orchestrator Load Balancing

Workload Mobility and Disaster Recovery to VMware Cloud IaaS Providers

vsphere Upgrade Update 1 Modified on 4 OCT 2017 VMware vsphere 6.5 VMware ESXi 6.5 vcenter Server 6.5

Deploying VMware Identity Manager in the DMZ. JULY 2018 VMware Identity Manager 3.2

vshield Quick Start Guide

VMware vcloud Air Key Concepts

VMware vshield Edge Design Guide

Deploying VMware Identity Manager in the DMZ. SEPT 2018 VMware Identity Manager 3.3

VMware vcloud Networking and Security Overview

VMware vcloud Service Definition for a Public Cloud. Version 1.6

Configuring Single Sign-on from the VMware Identity Manager Service to Exterro E-Discovery

What s New with VMware vcloud Director 9.1. Feature Overview

Architecting Tenant Networking with VMware NSX in VMware vcloud Director

Cisco Virtual Application Container Services 2.0 Lab v1

Using VMware Horizon Workspace to Enable SSO in VMware vcloud Director 5.1

Infrastructure Navigator User's Guide

VMware Integrated OpenStack with Kubernetes Getting Started Guide. VMware Integrated OpenStack 4.0

Transcription:

WHITE PAPER SEPTEMBER 2017 VCLOUD DIRECTOR 9.0 What s New

Contents Summary 3 Features Update 3 Enhanced User Interface.................................................... 3 Multisite Management....................................................... 5 Distributed Logical Router................................................... 7 Support for Trunked vlan backed Networks................................. 8 Flexibility to place Edge Gateways in separate Pool........................... 9 VM Monitoring and Metrics.................................................. 11 Extensibility 11 Architecture Changes 11 PostgreSQL Support........................................................ 11 vcenter Guest OS and Hardware Version Consistency........................ 12 vcd-vcenter Latency...................................................... 12 Networking Enhancements 12 Security Groups........................................................... 12 Storage Enhancements 13 Migrate Tenants between Storage Arrays.................................... 13 Support for Virtual Volumes(vVols)......................................... 15 Conclusion 16 More Information 16 About the Author 16 WHITE PAPER 2

Summary VMware vcloud Director(vCD) for Service Providers is the only Industry tested solution that helps Cloud service providers (CSP s) deliver Multi-Tenant Infrastructureas-a-service (IaaS). vcloud Director offers service providers turn key solutions to enabling Hybrid Cloud offerings on vsphere managed infrastructure. vcloud Director 9.0 extends the Tenant portal to add simplified Tenant Operations. Further, Tenants with multiple Organization Virtual Data Centers (Org vdc s) spread across multiple sites can manage their Virtual Data Centers (vdc s) from a single Pane of glass. Features Update Enhanced User Interface The Tenant user interface has gone through some major updates that make day-today operations faster and easier to work around. One of the major changes end users will see when logging in to the newly updated vcd portal is the completely revamped user interface. The new Tenant UI is oriented towards making common Tenant workflows like instantiating a vapp, deploying new VM, Networking changes etc., simpler and more efficient. The look and feel of the new Tenant facing UI is simplified as well, some of the enhancements Tenants will see in the new UI are but not limited to: Virtual Machines in My Cloud will now appear in the Compute section of the new UI Virtual Machines can now be viewed like cards. Each card has ability to click through actions like, Power, Properties, taking snapshots etc. Org vdc Networks can now be viewed under the Network tab, this allows to create/edit org vdc Networks Standalone Virtual machines can be instantiated and viewed along with virtual machines that part of a vapp container. A filter button creates a list based on Virtual machines, virtual appliances or both. The old flex based Web Console still stays, to access the new Tenant facing UI, users will have to logon with the URL: https://{vcd _URP_IP}/Tenant/{organization_name} WHITE PAPER 3

Figure 1 New Tenant UI vcd 9.0 relieves the requirement to have a Virtual Appliance (vapp) to build a single virtual machine, with this release of vcloud Director users can create virtual machines without having to necessarily create a vapp first. vapps can also be created however they are not required to operate individual virtual machines. vcd creates a vapp container automatically for virtual machines. Figure 2 Create a VM using Template WHITE PAPER 4

Multisite Management The Multisite feature lets service providers offer a single port of entry to Tenants having multiple Virtual Data Centers (Org vdc s) in different instances of vcd. A Tenant can access and manage multiple Org vdc s that are managed by different vcloud Director instances using the same pair of credentials in a single session. Service Providers managing two or more instances of vcd will have to associate/map one site to the other, this establishes a site-site association. A Site can have multiple association but an association between sites can only have two entities. Once two sites that are managed by individual vcd instances are associated by a System Admin then Organization Admins can start establishing trust across Organizations from the two sites. Each Organization will generate a Public/Private Key Value Pair to establish trust amongst themselves. Local and LDAP users across sites must have the same username and role associations across sites to manage Multisite. Users created with SAML identification must use the same identification server across the associated sites. After the Sites and Organizations have been associated, Tenants Users can log in via the Tenant Portal and access various Org vdc s across sites via a dropdown menu as shown in Figure 3. Figure 3 Multi Site view of Org vdc s To generate Site data, the below API will give attributes about the Site as shown in Figure 4. GET: https://{{vcloud.example.com}}/api/site WHITE PAPER 5

Figure 4 REST API to get Site Data The below API will generate local Site data that can be used to associate with a Remote Site as shown in Figure 5. GET: https://{{vcloud.example.com}}/api/site/associations/localassociationdata Figure 5 Site Association Data WHITE PAPER 6

A System Admin will have to post this reference data to the site association data of Site B and vice versa. Once the Sites have been associated, Organizations between two sites can be similarly associated by getting the Organization association reference of Site A and posting it to Organization association API of Site B. GET: https://{{vcloud.example.com}}/api/admin/org/sitea-orga/associations/ localassociationdata To authenticate via the REST API an additional attribute in the Login API header determines whether you are logging in to the local vcd instance or the federated site instance. Distributed Logical Router vcd 9.0 gives the ability to deploy distributed Logical Router to manage routing needs between two or more Org vdc Networks. The Distributed Logical Router (DLR) provides a faster method to resolving routing tables between org vdc networks. It allows for workloads to route traffic without needing to route traffic via the Edge Gateway. Up until vcd 9.0, a Tenant can have multiple org vdc networks, routing between these networks was always done by the Edge Gateway that sat in between these networks and the external service provider network. vcd works with NSX to deploy a DLR that will have its logic reside in kernel modules across the ESXi hosts that are part of the cluster backing the Provider vdc. The DLR will be hierarchal sitting in between the organization networks and the Edge Gateway. vcd will automatically create an uplink for the DLR that will connect to a network interface on the Edge Gateway. Tenant Networks being backed by the DLR will be able to utilize DHCP and DNS functions of the Edge Gateway via a relay, this relay will be managed by vcd. By default, when an Edge Gateway is created, the Tenant can choose to enable a DLR for that edge as show in Figure 5. This will enable the distributed Logical Router to be networked to the Edge Gateway in the backend for North South traffic flow from the org networks that will be connected to the DLR via the Edge Gateway. After an upgrade to vcd 9.0, existing Edge Gateways will have an option to enable DLR by right clicking on the Edge Gateway. WHITE PAPER 7

Figure 6 Distributed Logical Router option during Edge creation Support for Trunked vlan backed Networks Service providers may have Tenants that want to bring in their own vlan s into Org vdc Networks. vcloud Director supported creation of External Networks that were backed by vlan s but not Trunked vlan s. Tenants may to run multiple vlan s in the Org Networks. With vcd 9.0, vcd now adds trunking support for External and Routed Org Networks. Virtual Machines that run on the trucked vlan backed networks can create vlan tags within the guest Operating System(OS). To enable support for trunked vlan backed Org Networks, create an External Network in vcd that has been configured with trunked vlans. For Routed Org Network check the box, Guest vlan Allowed while creating the Network as shown below. WHITE PAPER 8

Flexibility to place Edge Gateways in separate Pool vcloud Director created a System Resource pool within the compute cluster that would back a Provider Virtual Data Center. vcd used this System resource pool to store management VM s that it would deploy to operate Tenant function. When an organization would create an Edge Gateway, vcd would work with NSX Manager to deploy an new instance of Edge Virtual machine and would place the virtual machine under the System resource pool. Service Providers often architect separate resource pods to place management applications to better operate their Data Centers. With vcd 9.0 a Service Provider can define a resource pool/cluster that can be used to place the NSX Edge Gateway virtual machines. This is done by defining an attribute in the Provider vdc s meta -data. The meta-data attribute called placement.resourcepool.edge = <resourcepool moref> can be defined on the Provider vdc. The <resourcepool moref> is the moref ID of the resource pool/edge cluster identified by vcd. Resource pools and their moref are can be obtained by querying the vcd API. Please refer to Figure 5. WHITE PAPER 9

Right click a Provider vdc Click Properties Meta-Data tab Figure 7 Meta-Data created to place Edge gateways in cluster identified with moref resgroup-28 Note: The creation of a default Network pool when a Provider vdc is created is now an option. A user can choose to create a default network pool or choose from an existing custom VxLAN backed network pool as shown in the below. WHITE PAPER 10

VM Monitoring and Metrics vcloud Director can collect and store various metrics around performance of workload in the cloud. These metrics collect data for virtual machine CPU/memory/ storage utilization, the average latency of disk operations, etc. Previous releases of vcloud Director needed Kairos DB managed by Apache Cassandra to store data. With vcd 9.0, the need to have Kairos DB to store and collect metric data has been relieved. Metrics data can be stored in Cassandra database directly using the cell management tool. Extensibility vcd s UI extensibility framework lets you extend the Tenant Portal User Interface to add more sections. Currently there are Compute, Network default sections in the Portal, with the Extensibility of the UI a new section can be added which can link to another solution portal or can be an embedded iframe. Architecture Changes PostgreSQL Support vcloud Director 9.0 supports PostgreSQL database as an External Database. PostgreSQL is supported as external database apart from Microsoft SQL and Oracle. This release support PostgreSQL version 9.5 and clustered database support. vcd also supports PostgreSQL database with SSL connectivity. For customers having existing MSSQL or Oracle databases, the Cell Management Tool (CMT) will help migrate existing databases to a pre-installed PostgreSQL database instance. The dbmigrate option in CMT will help migrate an existing database to a new PostgreSQL instance. [bash]# cell-management-tool dbmigrate WHITE PAPER 11

Once the database has been migrated, use the reconfigure-database option in CMT to ask vcd to start using the new PostgreSQL database. Figure 8 CMT Tool to migrate database vcenter Guest OS and Hardware Version Consistency vcloud Director now works more efficiently with the vcenter Server to determine the hardware version supported for virtual machines. vcd now dynamically determines the highest hardware version supported by polling the backend vcenter and ESXi servers mapping to a compute cluster and determining the highest version supported by all hosts in the cluster. When a service provider admin starts building a Provider vdc, the hardware version highlighted by vcd will be the highest the compute cluster can support. This allows vcd to expand the guest OS s it can support. vcd will support all the guest OS s that the underlying vsphere environment support. vcd-vcenter Latency vcloud Director can now support a latency of 100 Milli Seconds(ms) between itself and the vcenter Server/s. This helps service providers use a single instance of vcd to manage vcenter Servers that maybe located off-site/remote. Networking Enhancements Security Groups vcloud Director 8.20 introduced Distributed Firewall (DFW) capabilities of NSX to be self-serviced by individual Tenants. Tenants could define DFW policies by creating individual rules per virtual machine or vapp. At the same time, they could also apply these policies in a blanket fashion to a set of IP addresses MAC address or Objects like Virtual Machines, Org vdc Networks, etc. However, to efficiently apply DFW policies Tenant admins would have to know exactly what IP/MAC sets/objects to apply these policies to. vcloud Director 9.0 introduces Security Groups that help define security policies dynamically. A Tenant Admin can define a criterion to match individual Virtual machines via Security Groups and DFW policies can be applied to these Security Groups. To create Security groups, Right Click Edge Gateway Grouping Objects Security Groups Edge Gateway Services WHITE PAPER 12

Figure 9 Create Security Group Storage Enhancements Migrate Tenants between Storage Arrays Service Providers may need to migrate/offload data from one datastore to other. They may need to migrate data to manage a storage subsystem maintenance or if they want to change the service level of Tenants from once storage tier to another. WHITE PAPER 13

With vcloud Director 9.0 Service Providers will be able to live migrate storage of individual Tenants from one datastore to another. All the objects that are specific to an Organization including Virtual Machines, Catalogs, Images etc. will be migrated to another datastore. This operation can only be done by a Service Provider Admin or a custom role that has access. Figure 10 Migrate Storage for Organizations To Migrate storage of Tenants, login to vcd Mange & Monitor Organizations Right click Organization Migrate Tenant Data This will start a wizard that will help select source and destination datastores to migrate Tenant data. SP s can migrate more than one Tenant s data at a time. Things to keep in mind are the destination datastore should be visible to all the hosts that are part of the cluster/resource pool that is backing the Provider vdc. Also, Storage Profiles should map to the new destination datastores as well. WHITE PAPER 14

Figure 11 Select Source and Destination Datastores to Migrate Tenant data Support for Virtual Volumes(vVols) vcloud Director 9.0 adds support to datastores that are created in vcenter using Virtual Volumes. While creating provider vdc, vcd lets you add datastores that are being backed by vvols. WHITE PAPER 15

Conclusion vcloud Director 9.0 completely refreshes the way day-to-day operations are handled by both service providers and Tenants. This release focuses on making service provider operations simpler by adding support for multisite management, adding support for PostgreSQL, at the same time making Tenant operations simpler and efficient with the new Tenant User interface. More Information For more information about the VMware vcloud Director solution, visit the product pages at https://www.vmware.com/products/vcloud-director.html Access the documentation for vcloud Director software at https://docs.vmware.com Access reference design and architecture documentation at https://www.vmware.com/cloud-computing/cloud-architecture/vcat-sp.html To purchase the vcloud Director solution or to find out how you can join the VMware Cloud Provider Program visit, http://www.vmware.com/go/partner-enrollment About the Author Boskey Savla is a Technical Product Line Marketing Manager working in the Cloud Provider Program at VMware. She works on developing resources for vcloud Air Network partners with various VMware product stacks, focusing on the VMware vcloud Director software solution. She has more than 12 years of experience in systems and solution engineering. She has worked with various VMware partners in certifying and architecting Software-Defined Data Centers and hybrid cloud solutions. WHITE PAPER 16

VMware, Inc. 3401 Hillview Avenue Palo Alto CA 94304 USA Tel 877-486-9273 Fax 650-427-5001 www.vmware.com Copyright 2017 VMware, Inc. All rights reserved. This product is protected by U.S. and international copyright and intellectual property laws. VMware products are covered by one or more patents listed at http://www.vmware.com/go/patents. VMware is a registered trademark or trademark of VMware, Inc. in the United States and/or other jurisdictions. All other marks and names mentioned herein may be trademarks of their respective companies. Item No: Whats New Vcloud Director 9.0 WP_092117_v3 9/17