{"id":2315,"date":"2012-06-05T12:05:30","date_gmt":"2012-06-05T16:05:30","guid":{"rendered":"http:\/\/chriscolotti.us\/?p=2315"},"modified":"2012-06-12T16:00:26","modified_gmt":"2012-06-12T20:00:26","slug":"how-to-handle-some-vcloud-director-challenges","status":"publish","type":"post","link":"https:\/\/chriscolotti.us\/vmware\/how-to-handle-some-vcloud-director-challenges\/","title":{"rendered":"How To Handle Some vCloud Director Challenges"},"content":{"rendered":"
The other day I was sent a link to a 9-slide deck titled “Life before and after vCloud Director”, put\u00a0together by someone I do not know that takes time to point out some specific challenges with vCloud Director, mostly with networking and vShield Edge. \u00a0From what I have learned this deck was\u00a0previously\u00a0circulated and has recently re-surfaced. \u00a0It tries to explain that datacenters after vCloud Director are “Extremely Fragile” due mainly to the fact we use vShield Edge. \u00a0As a vCloud person myself I felt a bit obligated to address some of these for some of you in a more structured approach. \u00a0Some of the noteable points that are presented as “facts” in the slides are as follows:<\/p>\n
<\/p>\n
A vShield appliance is only needed if you choose to NAT route the Organization networks or the vApp networks. \u00a0These NAT routed networks are not technically required, but are used if the design considerations call for it. \u00a0Of course using them within vCLoud Director is a preferred means to achieve easy multi-tenancy. \u00a0Yes, vShield Edge devices and vShield Manager could fail. \u00a0Let’s be honest…ANYTHING can fail, so that statement is pretty broad and without much merit. \u00a0However, it is a VM protected most likely by\u00a0VMware HA as are so many other production Virtual Machines today. \u00a0There is also multiple blog posts about how VMware Fault\u00a0Tolerance\u00a0can be used to protect the vShield Manager. \u00a0Unfortunately at this time FT does not work properly on the edge devices themselves, but we should see that change in the future.<\/p>\n<\/div>\n
The appliance is the firewall, router, DHCP, and Load balancer for Selected Networks and Organizations, but not for the “vCD System”. \u00a0You can always use direct connected networks and external firewalls, as well as load balancers and VPN devices. \u00a0Again, vShield is NOT a requirement it is simply a tool to assist in the design of a multi-tenant\u00a0vCloud Director deployment. \u00a0We have also had folks deploy other Virtual Machines in the cloud itself to handle some of these functions including virtual load balancers.<\/p>\n
I have always said in public forums the networking is complex and is something that people need to start understanding. \u00a0This is no different than when VMware administrators needed to start to understand and learn about VLANs, and trunking back in the early days. \u00a0As things evolve they\u00a0inherently\u00a0become more complex. \u00a0That the nature of the beast and the new learning curve we all have to deal with. \u00a0Has storage become less complex over time? \u00a0What about networking in general with VXLAN, or other new technologies? \u00a0People in general are afraid of new complexity\u00a0because\u00a0it is hard, and most people fear change and learning something new. \u00a0Yes, it’s complex, life is complex….learn it and move onto the next thing to learn that is more complex.<\/p>\n
Let’s be honest here. \u00a0Yes, there are some challenges with vCloud Director in some cases more than the\u00a0networking\u00a0alone, nobody will deny that I think. \u00a0The difference is many good architects have designed around them with what I call “Creative Critical Thinking”. \u00a0The points above are narrowly focussed on a few aspects and don’t tell the whole story in 9 slides. \u00a0I would submit that anyone can address many of the concerns, and many have including some large service providers. \u00a0it’s about architecting around the challenges. \u00a0Some of which may even be addressed in future releases of vCloud Director. \u00a0Talk to a couple of vCloud Director customers and community experts to understand how these things can be addressed.<\/p>\n
<\/p>\n","protected":false},"excerpt":{"rendered":"
The other day I was sent a link to a 9-slide deck titled “Life before and after vCloud Director”, put\u00a0together by someone I do not know that takes time to point out some specific challenges with vCloud Director, mostly with networking and vShield Edge. \u00a0From what I have learned this deck was\u00a0previously\u00a0circulated and has recently …<\/p>\n","protected":false},"author":2,"featured_media":2317,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[19,9,11],"tags":[194,242],"jetpack_publicize_connections":[],"yoast_head":"\n