• No results found

Webinar: Op1mize & Secure Your Hyper- V VDI Deployment. Presented by:

N/A
N/A
Protected

Academic year: 2021

Share "Webinar: Op1mize & Secure Your Hyper- V VDI Deployment. Presented by:"

Copied!
52
0
0

Loading.... (view fulltext now)

Full text

(1)

Presented  by:  

Webinar:  Op1mize  &  Secure  Your    

Hyper-­‐V  VDI  Deployment  

(2)

Partnering to Make Hyper-V Enterprise-Class

“Now virtualization is such a staple within the enterprise data center that the question has changed to: How can we save money on the virtualization stack? As companies reach the 80% to 90% virtualized server inventory threshold, VMware licensing becomes a target for cost savings.”

Why VMware may fall victim to virtualization cost cutting | June 17, 2015

Leading provider of security & management solutions

for Hyper-V

Leading provider of application layering software & Microsoft’s image

management partner for Hyper-V VDI/ RDSH & Azure

Leading provider of hyperconverged solutions for enterprise datacenter

(3)

Presented  by:  

Poll  #1  

Are  you  a  current  customer  of  any  of  these  technologies?    

a.  Nutanix   b.  Unidesk   c.  5nine  

d.  More  than  one   e.  None  

(4)

Robert Corradini

Microsoft Solutions Architect, Technical Alliances

(5)

5

About Nutanix

1750+

customers

Over

70

countries

6

continents

Make datacenter infrastructure invisible, elevating IT to

focus on applications and services

Founded in 2009

91 Net Promoter Score 1100+ employees

(6)

6

Broad Customer Adoption

Education Healthcare

Technology Retail

Manufacturing Financial Services

(7)

7

Gartner Magic Quadrant

Integrated Systems 2015

Strengths

•  Nutanix is a complete infrastructure solutions company, providing its customers flexibility in their choice of hypervisors and cloud usage •  Nutanix has gained market credibility and

established a worldwide presence

•  The Acropolis scale-out architecture, along with the ability to scale compute and storage

independently, enables users to grow Nutanix deployments incrementally to meet application needs.

(8)

8 Centralized Storage SAN/NAS Storage Network •  Complex to manage •  Costly to scale

•  Managed separately from virtualization

•  Difficult to provision

•  Performance bottleneck

(9)

9

Web-Scale: Design Point for Invisible

Design Principles

•  Unbranded x86 servers: fail-fast systems •  No special purpose appliances

•  All intelligence and services in software •  Extensive automation and rich analytics •  Distributed everything

Benefits

•  Linear, predictable scale-out •  Always-on systems

•  Fast innovation in software •  Operational simplicity •  Lower TCO

(10)

10

Enterprise Infrastructure With Web-Scale Virtues

•  Agility

•  Predictable scale

•  Lower TCO

Public Cloud

Web-scale infrastructure with all of the benefits of cloud

Uncompromising Simplicity Speed of Business

Unmatched TCO

•  SLAs

•  Privacy and control

•  Wide range of workloads

(11)

11 Storage Network SAN Scale-out Servers

Hyperconvergence Solves the Data Problem

Converged

compute and storage for virtualized environments

(12)

12

Nutanix Web-Scale Architecture

Eliminates SAN and NAS

arrays

Tier 1 Workloads

(running on all nodes)

Nutanix Controller VM

(one per node)

Node 2 VM VM VM CVM X86 Node N VM VM VM CVM X86 Node 1 VM VM VM CVM X86 Local + Remote

(Flash + HDD) Distributed Storage Fabric

intelligent tiering, VM-centric management and more…

ü  Snapshots ü  Clones ü  Compression ü  Deduplication

ESXi

Acropolis App Mobility Fabric

AHV Hyper-V ESXi AHV Hyper-V ESXi AHV Hyper-V Workload Mobility and Hypervisor Choice

(13)

13

Nutanix Prism: One-Click Simplicity

One-Click Operational Insights One-Click Infrastructure Management One-Click Remediation

(14)

14

Nutanix Solutions for Enterprises

VDI

Branch Office

Data Protection & Disaster Recovery Big Data

Private & Hybrid Clouds Unified Comm Enterprise Databases Business Applications

(15)

15

The Nutanix Technology Partner Ecosystem

Hybrid Cloud Big Data Applications Verticals UC Security Networking BCDR Containers Management Heterogeneous Cloud

(16)

16

(17)

Thank You

For more information, go to

www.nutanix.com/partners/technology-alliance-program/

(18)

Presented  by:  

Poll  #2  

How  many  Hyper-­‐V  hosts  do  you  have  in  your  infrastructure?    

a.  0  or  a  different  hypervisor   b.  1-­‐5  

c.  6-­‐20   d.  21-­‐50   e.  50+    

(19)

Copyright  ©  Unidesk  CorporaKon  

Next-­‐Genera1on  Applica1on  Delivery  

One  Windows  Image.    All  Apps.    Any  Cloud.      

(20)

© 20 15  U ni de sk  C or po raK on  

Unidesk  overview  

Founded  2008,  headquartered  outside  Boston  USA  

1,200+  customers  

500,000+  users  

 

 

“… Unidesk offers the most mature layering technology.”

“… support for Microsoft VDI in particular gives Unidesk a complete solution. Customers can eliminate third-party

connection broker and hypervisor software license fees from

other suppliers and go with a solution stack that only uses Microsoft Windows Server 2012 R2's Hyper-V and RDS components along with Unidesk for scalable provisioning and management.”

(21)

© 20 15  U ni de sk  C or po raK on  

Enterprise  app  delivery  challenge

 

Session  Hosts   VDI  

Cloud  

• 

TradiKonal  applicaKon  

management  tools  are  

complex,  have  limited  app  

compaKbility,  and  require  

senior  IT  experKse    

• 

Different  tools  create  

complex  silos  of  

management  

• 

Image  sprawl  increases  

Windows  patching  and  

app  delivery  costs  

• 

PlaXorm  lock-­‐in  limits  

(22)

© 20 15  U ni de sk  C or po raK on  

SoluKon:  Unidesk  layering  innovaKon  

Read-­‐only  virtual  disks,   shared  by  many  VMs   Writable  virtual  disk,   unique  to  each  VM  

(23)

© 20 15  U ni de sk  C or po raK on  

Layer  apps  and  Windows  once

 

Session  Hosts   VDI  

(24)

© 20 15  U ni de sk  C or po raK on  

Deliver  to  any  plaXorm  or  cloud  

Session  Hosts   VDI  

(25)

© 20 15  U ni de sk  C or po raK on  

Maximum  flexibility  and  portability

 

Session  Hosts   VDI  

(26)

© 20 15  U ni de sk  C or po raK on  

Fully  integrated  with  exisKng  plaXorms  

System  of  virtual  

appliances  enables  easy  

scale-­‐out    

Each  Unidesk  appliance  

caches  only  layers  

needed  by  VMs  it  

manages  

Composite  image  (C

:)  

built  for  each  VM  using  

assigned  layers  

Supports  all  clients,  

servers,  and  storage  by  

leveraging  your  

hypervisor,  cloud,  and  

broker  capabiliKes  

(27)

© 20 15  U ni de sk  C or po raK on  

Microso_’s  image  management  partner  for  

VDI/RDSH  on  Hyper-­‐V  &  remote  apps  in  Azure

 

Virtual  desktops   Session-­‐based  desktops   Session-­‐based  desktops  

(28)

© 20 15  U ni de sk  C or po raK on  

Microso_  VDI  +  Unidesk:  

BeNer  

Scalable  broker   Microso_  RD  ConnecKon  Broker   VMware  Horizon  View   Citrix  XenDesktop   High-­‐performance  protocol   Microso_  RDP  with  RemoteFX   PCoIP   HDX  

BYOD  &  support  for  any  client   Microso_  RD  clients   VMware  Horizon  View  clients   Citrix  Receiver  clients   Enterprise-­‐class  hypervisor   Windows  Server  2012  Hyper-­‐V   VMware  vSphere   Citrix  XenServer   Desktop  provisioning   VMware  View  Composer   Citrix  PVS,  MCS   Storage  opKmizaKon   VMware  Linked  Clones   Citrix  vDisk   ApplicaKon  virtualizaKon   Microso_  App-­‐V   VMware  ThinApp   Citrix  XenApp   ApplicaKon  layering   VMware  App  Volumes   -­‐  

Windows  OS  layering   -­‐   -­‐  

PersonalizaKon  layering   Citrix  Personal  vDisk   Profile  management/UEM   Microso_  UE-­‐V   VMware  View  Persona,  UEM   Citrix  User  Profile  Management   Scalable  collecKon/pool  management   VMware  Horizon  View  Manager   Citrix  XenDesktop  

Azure  remote  app  layering   -­‐   -­‐   Single  pane  of  glass    for  Tier  1  IT   -­‐   -­‐  

(29)

© 20 15  U ni de sk  C or po raK on  

Microso_  VDI  +  Unidesk:  

Simpler  

Patch  Windows  once  to  update  

an  enKre  RDS  collecKon  (undo  

patches,  too)  

Deliver  layered  apps  to  any  

number  of  desktops  with  simple  

assignment  (no  installs)    

Provision  custom  VMs  into  RDS  

collecKons  with  any  set  of  app  

and  OS  layers  

Create  and  edit  RDS  collecKons  

through  point-­‐and-­‐click  (no  

PowerShell  scripKng  required)  

Save  all  personalizaKon  –  even  

(30)

© 20 15  U ni de sk  C or po raK on  

Microso_  VDI  +  Unidesk:  

Lower  Cost  

500  User  Example  

VMware  Horizon  

on  vSphere  

Unidesk  on  Hyper-­‐V  

MicrosoV  VDI  +  

SoVware  License  

(500  licenses  Horizon  Enterprise  &    

$218,750  

1  license  vCenter  Server)

 

$120,000    

(500  MicrosoV  RDS  CALs  &    

(31)

© 20 15  U ni de sk  C or po raK on  

VDI  success  with  Nutanix  and  Unidesk  

“The  desktops  we  are  now   delivering  with  Nutanix  and   Unidesk  are  much  more  robust   than  any  physical  machine  we   have  ever  been  able  to  provide.“  

-­‐  Jay  Cawley   Director  of  Technology    

Morgan  County  Charter  Schools  

“Nutanix  and  Unidesk  are  the  keys  to  our  VDI  success.   You  can  have  your  OS  and  apps  layered  by  Unidesk  and   your  desktops  up  and  running  in  half  a  day.  It’s  so  easy   our  Tier  1  IT  admins  are  managing  VDI  day-­‐to-­‐day.”  

-­‐  Aaron  Merriam   Infrastructure  and  Security  Engineer  

Auto  Europe  

“I  have  total  control  over  our  desktop  environment.  I   don't  have  to  ask  anyone  for  any  resources  with  

Nutanix.  I  can  do  app  delivery,  image  management,     and  personalizaKon  all  centrally  with  Unidesk.”  

-­‐  Ryan  Ogburn   Senior  System  Administrator  

Peninsula  Regional  Medical  Center  

“Unidesk's  no-­‐fuss  method  of  layering  applicaKons  and   Windows  is  what  we  needed.  It  has  taken  us  a  from  a   reacKve  IT  staff  to  a  proacKve,  people-­‐focused  team   where  innovaKon  and  freedom  are  the  new  norm.“  

-­‐  Ben  Vorster   Systems  Engineer  

South  Taranaki  District  Council  

“If  someone  wants  an  

applicaKon,  with  Unidesk  I  can   create  a  new  app  layer  and  

deploy  it  as  quickly  as  I  can  with  a   regular  install.  It’s  that  simple.”  

-­‐  Andre  Plante   IT  Manager  

(32)

© 20 15  U ni de sk  C or po raK on  

Unidesk  Demo

 

(33)

Presented  by:  

Poll  #3  

What  is  your  vendor  focus?    

a.  Citrix  XenDesktop   b.  VMware  Horizon   c.  Microso_  VDI   d.  Other  

(34)

5nine Cloud Security

A Unified Security and Compliance

Solution Designed for Hyper-V

Symon Perriman

VP of 5nine Software & Hyper-V MVP

(35)

5nine Software

•  Founded in 2009

•  Headquartered in Chicago, with staff in 15 regions worldwide, including 10 Microsoft

MVPs

•  Over 75,000 Hyper-V users globally, representing companies and datacenters of all sizes

•  The leading solutions provider of security & management applications for Hyper-V

–  5nine Cloud Security – A unified security and compliance solution designed for Hyper-V –  5nine Manager – Easy, centralized and affordable management and monitoring for Hyper-V –  5nine V2V Easy Converter – Fast and easy migration of VMware virtual machines to Microsoft

Hyper-V

•  Visit

www.5nine.com

or email

[email protected]

for more info

(36)

5nine Cloud Security

A Unified Security and Compliance Solution Designed for Hyper-V

•  Designed to specifically address every

Hyper-V security vulnerability

–  Universal Firewall

–  Antivirus & Antimalware

–  Network Detection

–  Intrusion Detection

–  Security as a Service (SECaaS)

with Azure Pack (WAP)

–  System Center Virtual Machine Manager

(SCVMM) Plugin

•  More information:

http://www.5nine.com/CloudSecurity

(37)

Automatic & Immediate Protection

•  Security for virtualized environments is different

•  Shared environments are never secure

•  It is impossible to guarantee security

using traditional “endpoint protection”

–  Requires installation

–  Slows deployment

–  Complicates management

•  Virtualized environments are dynamic

–  Virtual machines

–  Virtual disks

–  Virtual networks

–  Virtual switches

(38)
(39)
(40)

Abstract & Hide Security from Users

•  Non-technical users or the public are using your hardware

•  Remove the burden of security from the clients

–  Manage security for the clients

–  Update signatures for the clients

–  Ensure the clients cannot disable security

•  Accidently

•  Purposely with bad intentions

•  Centrally manage security rules

(41)

Guarantee Isolation & Resource Access

•  Isolation and privacy is critical in a

cloud

– An admin should not access a tenant’s

VM

– A VM cannot affect the host

– A VM cannot affect another VM

•  Use Quality of Service (QoS) or

throttling for memory, CPU, network &

storage bandwidth

(42)

Protect All Virtual Networks

•  Traditional security protect traffic between hosts

–  Does not protect traffic between VMs on the same host

–  Threats can spread if one client becomes infected

•  Virtual Network Types

–  External

–  Internal

–  Private

Network   Security   Appliance  

(43)

Universal Firewall for all VMs

•  Intercept network traffic before it even gets to the VM

•  Manage traffic at the network protocol level

–  TCP, UDP, GRE, ICMP, IGMP, etc.

•  Hyper-V Guest OS List: aka.ms/HyperVGuestOS

Server   •  Windows  Server  2016   •  Windows  Server  2012  R2   •  Windows  Server  2012   •  Windows  Server  2008  R2   •  Home  Server  2011  

•  Small  Business  Server  2011   •  Windows  Server  2003   Client   •  Windows  10   •  Windows  8.1   •  Windows  8   •  Windows  7   •  Windows  Vista   •  Windows  XP  

Linux  &  UNIX  

•  CentOS   •  Debian   •  FreeBSD   •  Oracle  Linux   •  Red  Hat  RHEL   •  SUSE  

(44)

Active Detection of Incoming Threats

•  Immediately identify incoming threats

–  Unencrypted traffic

–  HTTP (more coming soon)

•  Automatically alert admins

– Email

– PowerShell

– Event Logs

01010011  01111001  01101101  01101111  01101110  00100000  01110010  01110101  01101110  01110011  00100000  00110101  01101110  01101001   01101110  01100101  00100000  01010011  01101111  01100110  01110100  01110111  01100001  01110010  01100101  00100000  00111010  00101001    

(45)

Fast AV Scanning with No Performance Impact

•  Agent-based scanning causes “scanning storms”

–  Decreases VM performance for all clients

–  Reduces VM density on the hosts

•  5nine uses its proprietary

Change Block Tracking (CBT) driver

–  Scan only changed

blocks on the disk

(46)

System Center Virtual Machine Manager Plugin

•  Centrally manage security for all your virtual

resources through System Center Virtual Machine

Manager

•  Automatically apply security policies to guarantee

immediate protection for hosts and virtual machines

•  Accelerate and secure VM deployments with the

only agentless solution designed for Hyper-V

•  Requires only Virtual Machine Manager to minimize

your management footprint

•  Scales to protect the largest enterprises running

System Center and the Microsoft Cloud Platform

•  Free add-on for 5nine Cloud Security

(47)

Azure Pack (WAP) Extension

•  Security as a Service (SECaaS) to protect your datacenter, your customers, and their clouds

•  Generate new revenue by offering an higher security tier

•  Meet the latest compliance and regulation requirements with multi-layered unified security

•  Avoid “blind spots” and protect your virtual infrastructure from inbound, outbound and internal

threats

•  Automatically and immediately secure your tenants with non-invasive protection

•  Support more VMs and tenants on each host with the most efficient security solution for Hyper-V

•  Simplify security management for tenants through on/off buttons

–  Firewall, Network Detection & Intrusion Detection –  Preconfigure firewall templates for different VM roles

•  Free add-on for 5nine Cloud Security

(48)

Demo

(49)

Better Together

Nutanix

Unidesk

(50)

Nutanix, Unidesk & 5nine Software

Management  

Cloud  Security  

Converged infrastructure,

management,

and security for Hyper-V

(51)

Summary

•  Nutanix provides industry-leading HCI for Hyper-V

•  Unidesk provides industry-leading management for Hyper-V

•  5nine provides industry-leading security for Hyper-V

•  Together you get the most scalable, easiest to manage, and

most secure platform for your infrastructure and your clients

(52)

Thank  You,  Q&A  and  Next  Steps  

Products:   hop://www.nutanix.com/products/     SoluKons:   hop://www.nutanix.com/soluKons/    

Email  us  at  [email protected]     So_ware:   hop://www.unidesk.com/so_ware     Resources:   hop://www.unidesk.com/resources    

Email  us  at  [email protected]       Products:   hop://www.5nine.com/products.aspx     SoluKons:   hop://www.5nine.com/SoluKons.aspx    

Email  us  at  [email protected]    

References

Related documents

Planning Server Upgrade and Migration Implementing Server Deployment Strategy Understanding Hyper-V Managing Hyper-V by using VMM Planning Address Management Strategy by

5NINE Virtual Firewall (v-Firewall) allows you to programmatically manage the network security of your Hyper-V virtual infrastructure on per-VM basis, defining network traffic

Hyper-V Virtual Machine Communication Security For Hyper-V environments, the Agent for Windows is installed to each Hyper-V host and once again the communication path between

Unidesk is a virtual desktop and application management platform. It works in conjunction with the Hyper-V hypervisor and the Remote Desktop Services broker to deliver desktops to

Citrix Essentials for Microsoft Hyper-V extends the management capabilities of Hyper-V and System Center Virtual Machine Manager giving Microsoft customers a scalable, advanced

5nine Security 3.0 for Hyper-V Datacenter Edition Plugin for Microsoft System Center 2012 Virtual Machine Manager is a program module designed to allow managing Security Manager

If you want to overview the current alert settings click Alert Settings button in right-upper corner of the 5nine Cloud Monitor for Hyper-V main window:.. If you want to change

To start Host Management Service remote installation click Remote install in the 5nine Cloud Security Setup dialog of the single setup application.. The remote installation