Introduction Server Virtualization Storage including Cloud Integrated Storage with Storsimple Networking Management and Automation Web and

Embed Size (px)

Citation preview

  • Slide 1

Slide 2 Introduction Server Virtualization Storage including Cloud Integrated Storage with Storsimple Networking Management and Automation Web and Application Platform Virtual Desktop Infrastructure Identity and Access 2 Slide 3 Slide 4 4 New apps Device proliferation Data explosion Cloud computing Slide 5 Windows Server 2012 Foundation Windows Server 2012 Essentials Windows Server 2012 Standard Windows Server 2012 Datacenter 5' Microsoft Hyper-V Server 2012 Slide 6 6' Slide 7 Slide 8 8 VIRTUAL MACHINE MOBILITY Simultaneous live migrations ease management burdens Shared-nothing live migration enables live migration between clusters CONTINUOUS SERVICES ISOLATION AND MULTITENANCY SCALE AND PERFORMANCE OPEN AND EXTENSIBLE Dynamic Memory increases capacity with no downtime Network Virtualization supports multitenancy and IP portability Resource Metering shows how many resources each tenant is using Larger virtual machines support increased workloads Hardware offloading offers better performance and scale Open, extensible switch helps support security and management needs Increased support for Windows PowerShell helps increase automation Clustering enhancements increase availability Slide 9 System Resource Maximum number Improvement factor Windows 2008 R2 Windows Server 2012 Host Logical processors on hardware64320 5 Physical memory1 terabyte4 terabytes 4 Virtual processors per host5121,024 2 Virtual machine Virtual processors per virtual machine464 16 Memory per virtual machine64 GB1 terabyte 16 Active virtual machines3841,024 2.7 Virtual disk size2 terabytes64 terabytes 32 Cluster Nodes1664 4 Virtual machines1,0008,000 8 9 Slide 10 10 Improvements Faster and simultaneous migration Live migration outside a clusteredenvironment Store virtual machines on a File Share VM Target host Live migration setup SMB network storage IP connection Configuration data Memory pages transferred Memory content MEMORY Modified pages transferred Modified memory pages Storage handle moved VIRTUAL MACHINE MOBILITY Live migration of VMs on SAN or File Share (SMB3) VM Slide 11 Computer running HyperV Target deviceSource device VIRTUAL MACHINE MOBILITY Benefits Manage storage in a cloud environmentwith greater flexibility and control Move storage with no downtime Update physical storage available to avirtual machine (such as SMB-basedstorage) Windows PowerShell cmdlets Live migration of storage Move virtual hard disks attached to a running virtual machine Reads and writes go to the source VHD Disk contents are copied to new destination VHD VHD Disk writes are mirrored; outstanding changes are replicated Reads and writes go to new destination VHD Virtual machine VHD 11 Slide 12 Destination HyperV Virtual machine Target deviceSource device Virtual machine Source HyperV IP connection Configuration data Memory content Modified memory pages VIRTUAL MACHINE MOBILITY Benefits Increase flexibility of virtual machineplacement Increase administrator efficiency Reduce downtime for migrations acrosscluster boundaries Shared-nothing live migration Reads and writes go to the source VHD Reads and writes go to the source VHD. Live Migration Begins Disk contents are copied to new destination VHD Disk writes are mirrored; outstanding changes are replicated Live Migration MEMORY VHD Live Migration ContinuesLive Migration Completes 12 Slide 13 Benefits Affordable in-box business continuity anddisaster recovery Failure recovery in minutes More secure replication across network No need for storage arrays No need for other software replicationtechnologies Automatic handling of live migration Simpler configuration and management New feature Replicate Hyper V virtual machines from a primary site to a replica site VIRTUAL MACHINE MOBILITY 13 Hyper V role and tools Hyper V cmdlets Hyper V PS integrated UI Hyper V Management Module tracks and replicates changes for each virtual machine Hyper V role and tools Hyper V cmdlets Hyper V PS integrated UI Hyper V Management Module receives and applies the changes to the replica virtual machine Primary site CRM virtual machine SQL virtual machine SharePoint virtual machine Exchange virtual machine IIS virtual machine Exchange replica virtual machine CRM replica virtual machine Replicate over WAN link SMB file share Send/receive replica traffic SAN R1 R2 R3 P1P2 Replica site Slide 14 Virtual machine failover prioritization Lets you configure virtual machine priorities Controls the order in which virtual machines fail over or start Affinity (and anti-affinity) virtual machine rules Lets you configure partnered Virtual machines to migrate simultaneously during failover. Allows you to specify that two virtual machines cannot coexist on the same node in a failover scenario (anti-affinity) CONTINUOUS SERVICES 14 Features Encrypted Cluster Volumes Use Bitlocker Drive Encryption to encrypt cluster volumes hosting virtual machines Hyper-V App Monitoring Monitors services and event logs inside WIN2012 virtual machines Restart services\vms if necessary Slide 15 Vote N = 6 Majority = 4 Last Man Standing! Cluster Survives! Last Man Standing! Cluster Survives! N = 5 Majority = 3 N = 4 Majority = 3 N = 3 Majority = 2 N = 2 Majority = 2 N = 1 Majority = 1 CONTINUOUS SERVICES Slide 16 16 Slide 17 Slide 18 ALWAYS ON, ALWAYS UP SERVICES CONTINUOUS APPLICATION AVAILABILITY ENTERPRISE-CLASS FEATURES ON LESS EXPENSIVE HARDWARE Application storage support through SMB 3.0 Server Message Block (SMB) Direct Data Deduplication Storage Spaces IMPROVED PERFORMANCE AND MORE CHOICE THROUGH INDUSTRY INNOVATION Virtual Fibre Channel for Hyper-V Windows Storage ServerWindows Cluster in a Box Offloaded Data Transfers (ODX) SMB Transparent Failover SMB Multichannel Cluster-Aware Updating (CAU) File system enhancementsOnline backup SIMPLIFIED MANAGEABILITY Unified storage management Management options 18 High availability with iSCSI and NFS Slide 19 Virtualization of storage with Storage Pools and Storage Spaces Storage resilience and availability with commodity hardware Resiliency and data redundancy through n-way mirroring (clustered or unclustered) or parity mode (unclustered) Utilization optimized through thin and trim provisioning and enclosure awareness Integration with other Windows Server 2012 capabilities Serial Attached SCSI (SAS) and Serial AT Attachment (SATA) interconnects Windows Virtualized Storage Windows Application Server or File Server Physical or virtualized deployments Physical Storage (Shared) SAS or SATA Integrated with other Windows Server 2012 capabilities Storage Pool File Server Administration Console Hyper-V Cluster Shared Volume Failover ClusteringSMB Multichannel NFS Windows Storage Mgmt. NTFS SMB Direct 19 Storage Space Slide 20 20 VHD Library Software Deployment Share General File Share User Home Folder (My Docs) 0% 20% 40% 60% 80% 100% Average savings with Data Deduplication by workload type Maximize capacity by removing duplicate data 2:1 with file shares, 20:1 with virtual storage Less data to back up, archive, and migrate Increased scale and performance Low CPU and memory impact Configurable compression schedule Transparent to primary server workload Improved reliability and integrity Redundant metadata and critical data Checksums and integrity checks Increase availability through redundancy Faster file download times with BranchCache Source: Microsoft Internal Testing" Slide 21 Windows Server file server cluster \\foo1\share1\\foo2\share1 \\foo\share High-performance, continually availablefileshares for business critical applications Failover transparent to server applicationswith zero downtime and with only a smallI/O delay Support for planned moves, load balancing,operating system restart, unplannedfailures, and client redirection (scale-outonly) Resilient for file and directory operations All servers involved should have WindowsServer 2012 21 Slide 22 22 NFS SUPPORT ALWAYS ON, ALWAYS UP SERVICES ISCSI SOFTWARE TARGET Integrated with clustering to enable a high availability iSCSI Target Faster recovery from hardware failures iSCSI network boot provides a reliable, cost effective, and highly available option for Hyper-V host and HPC boot Microsoft iSCSI Software Target now an in-box feature in Windows Create iSCSI cluster using Server Manager UI or Windows PowerShell NFS 4.1 support for early adopters Cost-effective alternative for virtualized deployments Better reliability with stateful protocol Continuous availability for applications deployed over NFSv3 or NFSv2 (specifically VMware) with transparent server-side failover Slide 23 23 Registration Sign up Billing Third-party cloud Sign up Billing Microsoft online backup service Microsoft online backup portal Third-party online backup service Third-party online backup portal Inbox engine Inbox UI Windows Server 2012 backup (extensible) Windows Server 2012 Agents Microsoft online backup Third-party agents IT Pro Registration Backup/ Restore Ability to leverage Windows Azure cloud services to back up data Reduced cost for backup storage and management Options for third-party cloud services Ideal for small businesses, branch offices, and departmental business needs Slide 24 24 Applications in Physical or Virtual Servers SAS local tier Automatic Tiering + Cloud Snapshots Most active data on SSD Inactive data + backup\archive in Azure storage Connects Windows, Hyper-V and VMware servers to Windows Azure Storage in minutes with no application modification Key Capabilities & Benefits Consolidates primary, archive, backup, DR thru seamless integration with Azure Automatic tiering of data between SSD\SATA\Azure Cloud Snapshots = revolutionary speed, simplicity & reliability for backup & recovery Reduces enterprise storage TCO by 60-80% ISCSI Connectivity Slide 25 SSD Deduplicated SAS Deduplicated Compressed Cloud Deduplicated Compressed Encrypted SSD Linear Tier ABC A B DE C D E DE E 25 Slide 26 26 Cloud Snapshots Enterprise Data Center 1 Production Data Enterprise Data Center 2 Connect many servers to cloud storage and scale data sets with StorSimple solution Rapidly recover to any data center location independent via mounting the cloud Slide 27 27 Slide 28 Slide 29 NIC Teaming Dynamic Host Configuration Protocol (DHCP) failover Private virtual local area network (PVLAN) Hyper-V Network Virtualization SIMPLIFIED MULTITENANT INFRASTRUCTURE OPERATIONAL EFFICIENCY RICHER ECOSYSTEM CONTINUOUS APPLICATION AVAILABILITY Cross-premises connectivity Hyper-V Extensible Switch Hardware partners Server Message Block (SMB) 3.0 Multichannel Quality of Service (QoS) HIGH-PERFORMANCE NETWORKING SMB Direct Single Root I/O Virtualization (SR-IOV) Receive-Side scaling (RSS) Receive Segment Coalescing (RSC) Dynamic Virtual Machine Queue (D-VMQ) IP Address Management (IPAM) Resource Metering Microsoft Windows PowerShell BranchCache 29 Slide 30 Virtual adapters Team network adapter 30 Provides network fault tolerance andcontinuous availability when network adaptersfail by teaming multiple network interfaces Vendor agnostic and shipped inbox Provides local or remote managementthrough Windows PowerShell or UI Enables teams of up to 32 network adapters Aggregates bandwidth from multiple networkadapters Includes multiple nodes: switch dependentand independent Slide 31 Benefits Layer 2 virtual interface Managed programmatically Extensible by partners or customers New feature Handles network traffic among virtual machines, external network, and host operating system 31 Virtual machine Network application Virtual network adapter HyperV host Hyper V Extensible Switch Physical network adapter Physical switch Virtual machine Network application Virtual network adapter Virtual machine Network application Virtual network adapter Slide 32 Parent Partition Other features Extension monitoring Extension uniqueness Extensions that learn virtual machine life cycle Extensions that can veto state changes Multiple extensions on same switch Two platforms for extensions Network Device Interface Specification (NDIS) filter drivers Windows Filtering Platform (WFP) callout drivers You can extend or replace NDIS filter drivers WFP callout drivers Ingress filtering Destination lookup and forwarding Egress filtering Extending the HyperV Extensible Switch For new capabilities 32 HyperV Extensible Switch architecture Extension C Extension D Extension A Extension Miniport Extension Protocol Virtual Switch Physical NIC Virtual Machine Host NIC VM NIC Virtual Machine VM NIC Capture Extensions Filtering Extensions Forwarding Extension Slide 33 33 ExtensionPurposePotential examplesExtensible component Network packet inspection Inspecting network packets, but not altering them sFlow and network monitoring (InMon) NDIS filter driver Network packet filter Injecting, modifying, and dropping network packets SecurityNDIS filter driver Network forwarding Third-party forwarding that bypasses default forwarding OpenFlow (NEC), Virtual Ethernet Port Aggregator (VEPA), and proprietary network fabrics (Cisco Nexus V1000 \ UCS) NDIS filter driver Firewall/intrusion detection Filtering and modifying TCP/IP packets, monitoring or authorizing connections, filtering IPsec- protected traffic, and filtering RPCs Virtual firewall and connection monitoring (5nines virtual firewall\AV) WFP callout driver Slide 34 BENEFITS ARP spoofing protection DHCP guard protection Virtual port ACLs Trunk mode to virtual machines Monitoring Windows PowerShell | Windows Management Instrumentation (WMI) Enhanced security and isolation Manageability Isolation of customers networks from one another No need to set up and maintain VLANs Protection against malicious data interception OTHER TOOLS Multitenant security and isolation 34 Slide 35 NVGRE Standards based tunneling technology built on IETF standard GRE protocol Better network scalability by sharing PA among VMs Explicit Virtual Subnet ID for better multi- tenancy support Strong partner eco-system with silicon partners, switch extension partners, switch and load balancer partners and gateway partners Manage using System Center Virtual Machine Manager 2012 SQL ServerWeb Orange sees SQL ServerWeb Blue sees SQL Server Web 192.168.2.12192.168.1.10 10.1.1.1192.168.1.10 10.1.1.2192.168.2.12 Whats really happening 192.168.n.n PROVIDER ADDRESS SPACE (PA) 10.1.1.2 10.1.1.1 10.1.1.2 CUSTOMER ADDRESS SPACE 10.1.1.1192.168.1.10 10.1.1.2192.168.2.12 10.1.1.1 10.1.1.2 10.1.1.110.1.1.2 35 Slide 36 Relative minimum bandwidth Strict minimum bandwidth 36 Features Establishes either a bandwidth floor or cap Assigns specified bandwidth for each typeof traffic Helps to ensure fair sharing duringcongestion Can exceed quota with no congestion Two mechanisms Enhanced packet scheduler (software) Network adapter with DCB support (hardware) Normal priority High priority Critical Hyper V Extensible Switch W=1W=2W=5 Bronze tenant Silver tenant Gold tenant Hyper V Extensible Switch 100 MB200 MB500 MB 1 Gbps Strict maximum bandwidth Bronze tenant Silver tenant Gold tenant Hyper V Extensible Switch 100 MB200 MB500 MB 1 Gbps Be careful of oversubscription! Slide 37 General benefits Needs fewer expensive network adapters Makes best use of 10-GbE hardware For public cloud hosting providers Manages performance levels for SLAs Delivers minimal impact or compromise in shared infrastructure 37 Runtime bandwidth demand (gigabits per second) ServiceReservation T1T2T3 Virtual machine 30%442 Storage40%556 Live migration 20%032 Cluster Shared Volume 10%0.510 T1 4 5 0.5 T3 2 6 2 T2 3 4 1 2 Actual bandwidth usage by each service When bandwidth is available, each service takes as much as it can When the link is congested, each service takes its fair share When bandwidth becomes available, each service takes as much as it wants Slide 38 Slide 39 Windows PowerShell 3.0 provides more features to allow more activities to be automated across the server ecosystem Windows Management Framework provides a common platform for building automation and integration incorporating PowerShell, WS- Management and WMI STANDARDS-BASED MANAGEMENT 39 MULTISERVER MANAGEMENT ECOSYSTEM AND EXTENSIBILITY Server Manager enables a multiserver management experience that builds on the standardized approach to management and robust automation capabilities Standardized interfaces and tools extend the interoperability with DevOps Cross platform capabilities enable automation across the datacenter ROBUST AUTOMATION Slide 40 Key features Broader coverage Rich management through more than 2300 cmdlets Windows PowerShell Web Access Greater resiliency Robust session connectivity Disconnected sessions Session configuration files Job scheduling Windows PowerShell Workflow More intuitive Integrated Scripting Environment 3.0: IntelliSense | Code Snippets Syntax simplification Cmdlet discovery and module autoloading Updatable help Script-sharing Higher performance On-the-fly compilationup to six times faster Performance improvements 40 ROBUST AUTOMATION Slide 41 Server with a GUI Minimal Server Interface Server Core NEW Full Server without Server Graphical Shell No Explorer, Internet Explorer or associated files MMC, Server Manager, and a subset of Control Panel applets are still installed Provides many of the benefits of Server Core for those applications or users that havent yet made the transition Server Core NEW Can move between Server Core and Full Server by simply installing or uninstalling components Classic Full Server Full Modern-style GUI shell Install Desktop Experience to run Metro-style apps Slide 42 POWERSHELL Uninstall-WindowsFeature Server-Gui-Mgmt-Infra -Restart POWERSHELL Install-WindowsFeature Server-Gui-Mgmt-Infra,Server-Gui-Shell - Restart NEW Can install multiple features with one command by separating with commas Single reboot required to restart all services Slide 43 POWERSHELL Uninstall-WindowsFeature Server-Gui-Shell -Restart POWERSHELL Install-WindowsFeature Server-Gui-Shell -Restart POWERSHELL Install-WindowsFeature Server-Gui-Mgmt-Infra -Restart Slide 44 Slide 45 45 Application Initialization improves user experience of first requests CPU throttling helps ensure that no single web application affects the performance of others Dynamic FTP and IP restrictions set policies to block unwanted access Server Name Indication (SNI) allows high- density sites that are more secure Non-Uniform Memory Architecture (NUMA) takes advantage of hardware that has complex specifications Centralized SSL store dynamically maps sites to certificates MUTLTENANT HIGH-DENSITY WEBSITES CONSISTENT AND REPEATABLE CONFIGURATIONS ECOSYSTEM AND EXTENSIBILITY Configuration Editor provides a rich, visual method to edit web configurations and create repeatable actions Shared configuration helps ensure consistency across web farms Provides a common development platform across clouds Embraces web standards to work more easily with PHP and node.js HIGH-PERFORMANCE WEB APPLICATIONS Slide 46 Slide 47 User Profile Disk maintains user personalization in pooled deployments Fair Share dynamically distributes bandwidth, CPU, and disk use Multiple storage options support direct- attached, network- attached, or storage area network (SAN) storage of virtual machines Easy deployment automates deploying and configuring server roles Unified administration uses a single, integrated console for management Streamlined management helps IT manage pooled and personal virtual machines EFFICIENT MANAGEMENT 47 RICH USER EXPERIENCE USB redirection enables access to locally attached devices in remote desktops RemoteFX for wide area network (WAN) dynamically detects network conditions and tunes experience Seamless experience supports multitouch, new Windows Experience, and Start menu integration Graphics processing unit (GPU) support for both physical and software GPUs BEST VALUE FOR VDI Slide 48 Maintain user personalization in pooled deployments Dynamically distribute bandwidth, CPU, and disk use Support direct, attached, network, or SAN storage of virtual machines 48 User Profile Disk Multiple storage options Fair Share High availability for all roles Slide 49 Hardware and software GPUs Rich multimedia USB redirection Multitouch WAN acceleration Single sign-on Corporate LAN RemoteFX delivers a consistently rich user experience to users over LAN or WAN (regardless of deployment model) RICH USER EXPERIENCE 49 Internet or WAN Slide 50 50 Slide 51 Slide 52 Protection of corporate resources Data access management and protection Simplified deployment and management of identity infrastructure Dynamic Access Control Active Directory virtualization Active Directory cloning Kerberos constrained delegationPrivate VLAN Multitenant security and isolation ClassificationDirectAccess Simpler deployment of Active Directory Domain Name System Security Extensions 52 Slide 53 Activate clients using existing Active Directory infrastructure Computers running Windows 8 or Windows Server 2012 automatically activate Activation object is maintained in the configuration partition Beyond installation and service-specific requirements, no data is written back to the directory 53 Slide 54 ClassificationAccess controlAuditing Rights Management Services protection Files inherit classification tags from parent folder File owners tag files manually Files are tagged automatically Files are tagged by applications Central access policies are based on classification Access conditions for user claims, device claims, and file tags are based on expressions Assistance is available for denial of access Central audit policies can be applied across multiple file servers Audits for user claims, device claims, and file tags are based on expressions Audits can be staged to simulate policy changes in a real environment Automatic Rights Management Services (RMS) protection is available for Microsoft Office documents Protection is in near-real time when a file is tagged RMS protection extends to files not created in Microsoft Office 54 Slide 55 User claims User.Department = Finance User.Clearance = High Access policy For access to financial information that has high business impact, a user must be a finance department employee with a high security clearance, and must use a managed device registered with the finance department. Device claims Device.Department = Finance Device.Managed = True Resource properties Resource.Department = Finance Resource.Impact = High Active Directory Domain Services 55 File server Slide 56 Active Directory Domain Services Characteristics Composed of central access rules Applied to file servers through Group Policy objects Supplement (not replace) native file and folder access control lists from New Technology File System (NTFS) 56 Corporate file servers Personally identifiable information policy Finance policy User folders Finance folders Organizational policies High business impact Personally identifiable information High business impact policy Finance department policies High business impact Personally identifiable information Finance Slide 57 Audit everyone who does not have a high security clearance and who tries to access a document that has a high impact on business Audit all vendors when they try to access documents related to projects that they are not working on Audit | Everyone | All-Access | Resource.BusinessImpact=HBI AND User.SecurityClearance!=High Audit | Everyone | All-Access | User.EmploymentStatus=Vendor AND User.Project Not_AnyOf Resource.Project. 57 Slide 58 Ease of deployment Express setup wizard Ability to work with existing network equipment Connectivity to IPv4 and IPv6 servers Deployment mode supporting only remote management of mobile computers Improved manageability Unified remote access management experience Enriched experience for monitoring remote client activity and status Reporting and accounting capabilities for audit/compliance Rich Windows PowerShell management interface Enhanced troubleshooting tools Enabling new scenarios Multisite and hybrid cloud Support for one-time password and Trusted Platform Module authentication Provisioning support for off- premises clients Deployment of DirectAccess server behind network address translation device Improved scale and performance Support for high availability and external load balancers Improved performance in virtualized environments Dramatically more users per server 58 Slide 59 59 Slide 60 Get the evaluation 60 Microsoft Server and Cloud Platform: http://www.microsoft.com/en-us/server-cloud/windows- server/2012-default.aspx http://www.microsoft.com/en-us/server-cloud/windows- server/2012-default.aspx Microsoft Learning: http://www.microsoft.com/learning/ http://www.microsoft.com/learning/ Microsoft Virtual Academy: http://www.microsoftvirtualacademy.com http://www.microsoftvirtualacademy.com Microsoft Technet Library: Windows Server 2012 http://technet.microsoft.com/en-gb/library/hh801901.aspx Get certified Get trained Slide 61