Book Image

VMware NSX Network Essentials

By : sreejith c
Book Image

VMware NSX Network Essentials

By: sreejith c

Overview of this book

VMware NSX is at the forefront of the software-defined networking revolution. It makes it even easier for organizations to unlock the full benefits of a software-defined data center – scalability, flexibility – while adding in vital security and automation features to keep any sysadmin happy. Software alone won’t power your business – with NSX you can use it more effectively than ever before, optimizing your resources and reducing costs. Getting started should be easy – this guide makes sure it is. It takes you through the core components of NSX, demonstrating how to set it up, customize it within your current network architecture. You’ll learn the principles of effective design, as well as some things you may need to take into consideration when you’re creating your virtual networks. We’ll also show you how to construct and maintain virtual networks, and how to deal with any tricky situations and failures. By the end, you’ll be confident you can deliver, scale and secure an exemplary virtualized network with NSX.
Table of Contents (15 chapters)
VMware NSX Network Essentials
Credits
Foreword
About the Author
About the Reviewer
www.PacktPub.com
Preface

Chapter 6. NSX Security Features

Traditionally, isolating and securing a network was done at the perimeter level of any data center, which was an error-prone and time-consuming activity. In the current Software Defined Data Center world, where most workloads are dynamic, we need better control over the security feature, and at the same time we expect configuration and management of these tasks to be automated without compromising any security features. If there is a virtual machine migration from one server to another server all my polices should move along with that irrespective of Layer 2 and Layer 3 boundaries. But the real question would be, is that really possible? In this chapter, we will discuss how NSX has changed the view of modern-day data center security. We will be covering the following topics with some classic examples:

  • NSX Distributed Firewall

  • NSX Service Composer

  • NSX Distributed Firewall monitoring

  • NSX SpoofGuard

  • DFW takeaways