VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืื ืืชื” ืžืกืชื›ืœ ืขืœ ื”ืชืฆื•ืจื” ืฉืœ ื—ื•ืžืช ืืฉ ื›ืœืฉื”ื™, ืกื‘ื™ืจ ืœื”ื ื™ื— ืฉื ืจืื” ื’ื™ืœื™ื•ืŸ ืขื ื—ื‘ื•ืจื” ืฉืœ ื›ืชื•ื‘ื•ืช IP, ื™ืฆื™ืื•ืช, ืคืจื•ื˜ื•ืงื•ืœื™ื ื•ืจืฉืชื•ืช ืžืฉื ื”. ื›ืš ืžื™ื•ืฉืžืช ื‘ืื•ืคืŸ ืงืœืืกื™ ืžื“ื™ื ื™ื•ืช ืื‘ื˜ื—ืช ืจืฉืช ืขื‘ื•ืจ ื’ื™ืฉืช ืžืฉืชืžืฉื™ื ืœืžืฉืื‘ื™ื. ื‘ื”ืชื—ืœื” ื”ื ืžื ืกื™ื ืœืฉืžื•ืจ ืขืœ ืกื“ืจ ื‘ืชืฆื•ืจื”, ืื‘ืœ ืื– ื”ืขื•ื‘ื“ื™ื ืžืชื—ื™ืœื™ื ืœืขื‘ื•ืจ ืžืžื—ืœืงื” ืœืžื—ืœืงื”, ื”ืฉืจืชื™ื ืžืชืจื‘ื™ื ื•ืžืฉื ื™ื ืืช ื”ืชืคืงื™ื“ื™ื ืฉืœื”ื, ื’ื™ืฉื” ืœืคืจื•ื™ืงื˜ื™ื ืฉื•ื ื™ื ืžื•ืคื™ืขื” ื‘ืžืงื•ื ืฉื‘ื“ืจืš ื›ืœืœ ืืกื•ืจ ืœื”ื, ื•ืžืื•ืช ืฉื‘ื™ืœื™ ืขื™ื–ื™ื ืœื ื™ื“ื•ืขื™ื ืฆืฆื™ื.

ืœืฆื“ ื›ืžื” ื›ืœืœื™ื, ืื ื™ืฉ ืœืš ืžื–ืœ, ื™ืฉ ื”ืขืจื•ืช "ื•ืืกื™ื” ื‘ื™ืงืฉื” ืžืžื ื™ ืœืขืฉื•ืช ืืช ื–ื”" ืื• "ื–ื”ื• ืžืขื‘ืจ ืœ-DMZ." ืžื ื”ืœ ื”ืจืฉืช ืžืชื ืชืง, ื•ื”ื›ืœ ื”ื•ืคืš ืœื ื‘ืจื•ืจ ืœื—ืœื•ื˜ื™ืŸ. ื•ืื– ืžื™ืฉื”ื• ื”ื—ืœื™ื˜ ืœื ืงื•ืช ืืช ื”ืชืฆื•ืจื” ืฉืœ Vasya, ื•-SAP ืงืจืก, ื›ื™ Vasya ื‘ื™ืงืฉ ืคืขื ืืช ื”ื’ื™ืฉื” ื”ื–ื• ื›ื“ื™ ืœื”ืคืขื™ืœ ืืช SAP ื”ืงืจื‘ื™.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ื”ื™ื•ื ืื“ื‘ืจ ืขืœ ืคืชืจื•ืŸ VMware NSX, ืฉืขื•ื–ืจ ืœื™ื™ืฉื ื‘ืžื“ื•ื™ืง ืžื“ื™ื ื™ื•ืช ืชืงืฉื•ืจืช ื•ืื‘ื˜ื—ื” ื‘ืจืฉืช ืœืœื ื‘ืœื‘ื•ืœ ื‘ืชืฆื•ืจื•ืช ื—ื•ืžืช ื”ืืฉ. ืื ื™ ืืจืื” ืœืš ืื™ืœื• ืชื›ื•ื ื•ืช ื—ื“ืฉื•ืช ื”ื•ืคื™ืขื• ื‘ื”ืฉื•ื•ืื” ืœืžื” ืฉื”ื™ื” ืœ-VMware ื‘ืขื‘ืจ ื‘ื—ืœืง ื–ื”.

VMWare NSX ื”ื™ื ืคืœื˜ืคื•ืจืžืช ื•ื™ืจื˜ื•ืืœื™ื–ืฆื™ื” ื•ืื‘ื˜ื—ื” ืœืฉื™ืจื•ืชื™ ืจืฉืช. NSX ืคื•ืชืจ ื‘ืขื™ื•ืช ืฉืœ ื ื™ืชื•ื‘, ืžื™ืชื•ื’, ืื™ื–ื•ืŸ ืขื•ืžืกื™ื, ื—ื•ืžืช ืืฉ ื•ื™ื›ื•ืœ ืœืขืฉื•ืช ืขื•ื“ ื”ืจื‘ื” ื“ื‘ืจื™ื ืžืขื ื™ื™ื ื™ื.

NSX ื”ื•ื ื”ื™ื•ืจืฉ ืฉืœ ืžื•ืฆืจ vCloud Networking and Security (vCNS) ืžืฉืœ VMware ื•ืฉืœ Nicira NVP ื”ื ืจื›ืฉืช.

ืž-vCNS ืœ-NSX

ื‘ืขื‘ืจ, ืœืœืงื•ื— ื”ื™ื” ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ื ืคืจื“ืช vCNS vShield Edge ื‘ืขื ืŸ ืฉื ื‘ื ื” ืขืœ VMware vCloud. ื”ื•ื ืคืขืœ ื›ืฉืขืจ ื’ื‘ื•ืœ, ืฉื‘ื• ื ื™ืชืŸ ื”ื™ื” ืœื”ื’ื“ื™ืจ ืคื•ื ืงืฆื™ื•ืช ืจืฉืช ืจื‘ื•ืช: NAT, DHCP, Firewall, VPN, ืžืื–ืŸ ืขื•ืžืกื™ื ื•ื›ื•'. vShield Edge ื”ื’ื‘ื™ืœ ืืช ื”ืื™ื ื˜ืจืืงืฆื™ื” ืฉืœ ื”ืžื›ื•ื ื” ื”ื•ื™ืจื˜ื•ืืœื™ืช ืขื ื”ืขื•ืœื ื”ื—ื™ืฆื•ืŸ ื‘ื”ืชืื ืœื›ืœืœื™ื ื”ืžืคื•ืจื˜ื™ื ื‘- ื—ื•ืžืช ืืฉ ื•-NAT. ื‘ืชื•ืš ื”ืจืฉืช, ืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ืชืงืฉืจื• ื‘ื™ื ื™ื”ืŸ ื‘ื—ื•ืคืฉื™ื•ืช ื‘ืชื•ืš ืจืฉืชื•ืช ืžืฉื ื”. ืื ืืชื” ื‘ืืžืช ืจื•ืฆื” ืœื—ืœืง ื•ืœื›ื‘ื•ืฉ ืชืขื‘ื•ืจื”, ืืชื” ื™ื›ื•ืœ ืœื™ืฆื•ืจ ืจืฉืช ื ืคืจื“ืช ืœื—ืœืงื™ื ื‘ื•ื“ื“ื™ื ืฉืœ ื™ื™ืฉื•ืžื™ื (ืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ืฉื•ื ื•ืช) ื•ืœื”ื’ื“ื™ืจ ื‘ื—ื•ืžืช ื”ืืฉ ืืช ื”ื›ืœืœื™ื ื”ืžืชืื™ืžื™ื ืœืื™ื ื˜ืจืืงืฆื™ื” ืฉืœื”ื ื‘ืจืฉืช. ืื‘ืœ ื–ื” ืืจื•ืš, ืงืฉื” ื•ืœื ืžืขื ื™ื™ืŸ, ื‘ืžื™ื•ื—ื“ ื›ืฉื™ืฉ ืœืš ื›ืžื” ืขืฉืจื•ืช ืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช.

ื‘-NSX, VMware ื”ื˜ืžื™ืขื” ืืช ื”ืจืขื™ื•ืŸ ืฉืœ ืžื™ืงืจื•-ืคื™ืœื•ื— ื‘ืืžืฆืขื•ืช ื—ื•ืžืช ืืฉ ืžื‘ื•ื–ืจืช ื”ืžื•ื‘ื ื™ืช ื‘ืœื™ื‘ืช ื”-Hypervisor. ื”ื•ื ืžืคืจื˜ ืžื“ื™ื ื™ื•ืช ืื‘ื˜ื—ื” ื•ืื™ื ื˜ืจืืงืฆื™ื” ื‘ืจืฉืช ืœื ืจืง ืขื‘ื•ืจ ื›ืชื•ื‘ื•ืช IP ื•-MAC, ืืœื ื’ื ืขื‘ื•ืจ ืื•ื‘ื™ื™ืงื˜ื™ื ืื—ืจื™ื: ืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช, ื™ื™ืฉื•ืžื™ื. ืื NSX ื ืคืจืก ื‘ืชื•ืš ืืจื’ื•ืŸ, ืื•ื‘ื™ื™ืงื˜ื™ื ืืœื” ื™ื›ื•ืœื™ื ืœื”ื™ื•ืช ืžืฉืชืžืฉ ืื• ืงื‘ื•ืฆืช ืžืฉืชืžืฉื™ื ืž- Active Directory. ื›ืœ ืื•ื‘ื™ื™ืงื˜ ื›ื–ื” ื”ื•ืคืš ืœืžื™ืงืจื•-ืงื˜ืข ื‘ืœื•ืœืืช ืื‘ื˜ื—ื” ืžืฉืœื•, ื‘ืจืฉืช ื”ืžืฉื ื” ื”ื ื“ืจืฉืช, ืขื DMZ ื ืขื™ื ืžืฉืœื• :).

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1
ื‘ืขื‘ืจ, ื”ื™ื” ืจืง โ€‹โ€‹ื”ื™ืงืฃ ืื‘ื˜ื—ื” ืื—ื“ ืœื›ืœ ืžืื’ืจ ื”ืžืฉืื‘ื™ื, ืžื•ื’ืŸ ืขืœ ื™ื“ื™ ืžืชื’ ืงืฆื”, ืื‘ืœ ืขื NSX ืืชื” ื™ื›ื•ืœ ืœื”ื’ืŸ ืขืœ ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ื ืคืจื“ืช ืžืคื ื™ ืื™ื ื˜ืจืืงืฆื™ื•ืช ืžื™ื•ืชืจื•ืช, ืืคื™ืœื• ื‘ืชื•ืš ืื•ืชื” ืจืฉืช.

ืžื“ื™ื ื™ื•ืช ื”ืื‘ื˜ื—ื” ื•ื”ืจืฉืช ืžื•ืชืืžืช ืื ื™ืฉื•ืช ืขื•ื‘ืจืช ืœืจืฉืช ืื—ืจืช. ืœื“ื•ื’ืžื”, ืื ื ืขื‘ื™ืจ ืžื›ื•ื ื” ืขื ืžืกื“ ื ืชื•ื ื™ื ืœืคืœื— ืจืฉืช ืื—ืจ ืื• ืืคื™ืœื• ืœืžืจื›ื– ื ืชื•ื ื™ื ื•ื™ืจื˜ื•ืืœื™ ืžื—ื•ื‘ืจ ืื—ืจ, ืื–ื™ ื”ื›ืœืœื™ื ืฉื ื›ืชื‘ื• ืขื‘ื•ืจ ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ื–ื• ื™ืžืฉื™ื›ื• ืœื—ื•ืœ ืœืœื ืงืฉืจ ืœืžื™ืงื•ืžื” ื”ื—ื“ืฉ. ืฉืจืช ื”ื™ื™ืฉื•ืžื™ื ืขื“ื™ื™ืŸ ื™ื•ื›ืœ ืœืชืงืฉืจ ืขื ืžืกื“ ื”ื ืชื•ื ื™ื.

ืฉืขืจ ื”ืงืฆื” ืขืฆืžื•, vCNS vShield Edge, ื”ื•ื—ืœืฃ ื‘-NSX Edge. ื™ืฉ ืœื• ืืช ื›ืœ ื”ืชื›ื•ื ื•ืช ื”ื’'ื ื˜ืœืžื ื™ื•ืช ืฉืœ ื”-Edge ื”ื™ืฉืŸ, ื‘ืชื•ืกืคืช ื›ืžื” ืชื›ื•ื ื•ืช ืฉื™ืžื•ืฉื™ื•ืช ื—ื“ืฉื•ืช. ืขื•ื“ ื ื“ื‘ืจ ืขืœื™ื”ื.

ืžื” ื—ื“ืฉ ื‘-NSX Edge?

ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉืœ NSX Edge ืชืœื•ื™ื” ืžึทื”ึฒื“ื•ึผืจึธื” NSX. ื™ืฉื ื ื—ืžื™ืฉื” ืžื”ื: Standard, Professional, Advanced, Enterprise, Plus Remote Branch Office. ื›ืœ ื“ื‘ืจ ื—ื“ืฉ ื•ืžืขื ื™ื™ืŸ ื ื™ืชืŸ ืœืจืื•ืช ืจืง ื”ื—ืœ ืž-Advanced. ื›ื•ืœืœ ืžืžืฉืง ื—ื“ืฉ, ืฉืขื“ ืฉ-vCloud ื™ืขื‘ื•ืจ ืœื—ืœื•ื˜ื™ืŸ ืœ-HTML5 (VMware ืžื‘ื˜ื™ื—ื” ืงื™ืฅ 2019), ื ืคืชื— ื‘ืœืฉื•ื ื™ืช ื—ื“ืฉื”.

ื—ื•ืžืช ืืฉ. ืืชื” ื™ื›ื•ืœ ืœื‘ื—ื•ืจ ื›ืชื•ื‘ื•ืช IP, ืจืฉืชื•ืช, ืžืžืฉืงื™ ืฉืขืจ ื•ืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ื›ืื•ื‘ื™ื™ืงื˜ื™ื ืฉืขืœื™ื”ื ื™ื—ื•ืœื• ื”ื›ืœืœื™ื.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

DHCP ื‘ื ื•ืกืฃ ืœืงื‘ื™ืขืช ื”ืชืฆื•ืจื” ืฉืœ ื˜ื•ื•ื— ื›ืชื•ื‘ื•ืช ื”-IP ืฉื™ื•ื ืคืงื• ืื•ื˜ื•ืžื˜ื™ืช ืœืžื›ื•ื ื•ืช ื•ื™ืจื˜ื•ืืœื™ื•ืช ื‘ืจืฉืช ื–ื•, ืœ-NSX Edge ื™ืฉ ื›ืขืช ืืช ื”ืคื•ื ืงืฆื™ื•ืช ื”ื‘ืื•ืช: ืขืงื™ื“ื” ะธ ืžืžืกืจ.

ื‘ื›ืจื˜ื™ืกื™ื™ื” ื›ืจื™ื›ื•ืช ืืชื” ื™ื›ื•ืœ ืœืื’ื“ ืืช ื›ืชื•ื‘ืช ื”-MAC ืฉืœ ืžื—ืฉื‘ ื•ื™ืจื˜ื•ืืœื™ ืœื›ืชื•ื‘ืช IP ืื ืืชื” ืฆืจื™ืš ืฉื›ืชื•ื‘ืช ื”-IP ืœื ืชืฉืชื ื”. ื”ืขื™ืงืจ ืฉื›ืชื•ื‘ืช ื”-IP ื”ื–ื• ืœื ื›ืœื•ืœื” ื‘ืžืื’ืจ ื”-DHCP.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ื‘ื›ืจื˜ื™ืกื™ื™ื” ืžืžืกืจ ืžืžืกืจ ื”ื•ื“ืขื•ืช DHCP ืžื•ื’ื“ืจ ืœืฉืจืชื™ DHCP ื”ืžืžื•ืงืžื™ื ืžื—ื•ืฅ ืœืืจื’ื•ืŸ ืฉืœืš ื‘-vCloud Director, ื›ื•ืœืœ ืฉืจืชื™ DHCP ืฉืœ ื”ืชืฉืชื™ืช ื”ืคื™ื–ื™ืช.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ื ื™ืชื•ื‘. vShield Edge ื™ื›ื•ืœ ืœื”ื’ื“ื™ืจ ืจืง ื ื™ืชื•ื‘ ืกื˜ื˜ื™. ื ื™ืชื•ื‘ ื“ื™ื ืžื™ ืขื ืชืžื™ื›ื” ื‘ืคืจื•ื˜ื•ืงื•ืœื™ OSPF ื•-BGP ื”ื•ืคื™ืข ื›ืืŸ. ื”ื’ื“ืจื•ืช ECMP (Active-active) ื”ืคื›ื• ื’ื ื›ืŸ ืœื–ืžื™ื ื•ืช, ืžื” ืฉืื•ืžืจ ืžืขื‘ืจ ื›ืฉืœ ืืงื˜ื™ื‘ื™ ืœื ืชื‘ื™ื ืคื™ื–ื™ื™ื.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1
ื”ื’ื“ืจืช OSPF

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1
ื”ื’ื“ืจืช BGP

ื“ื‘ืจ ื—ื“ืฉ ื ื•ืกืฃ ื”ื•ื ื”ื’ื“ืจืช ื”ืขื‘ืจืช ืžืกืœื•ืœื™ื ื‘ื™ืŸ ืคืจื•ื˜ื•ืงื•ืœื™ื ืฉื•ื ื™ื,
ื—ืœื•ืงื” ืžื—ื“ืฉ ืฉืœ ื”ืžืกืœื•ืœ.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืžืื–ืŸ ืขื•ืžืกื™ื L4/L7. X-Forwarded-For ื”ื•ืฆื’ ืขื‘ื•ืจ ื›ื•ืชืจืช HTTPs. ื›ื•ืœื ื‘ื›ื• ื‘ืœืขื“ื™ื•. ืœื“ื•ื’ืžื”, ื™ืฉ ืœืš ืืชืจ ืฉืืชื” ืžืื–ืŸ. ื‘ืœื™ ืœื”ืขื‘ื™ืจ ืืช ื”ื›ื•ืชืจืช ื”ื–ื• ื”ื›ืœ ืขื•ื‘ื“, ืื‘ืœ ื‘ืกื˜ื˜ื™ืกื˜ื™ืงื” ืฉืœ ืฉืจืช ื”ืื™ื ื˜ืจื ื˜ ืจืื™ืช ืœื ืืช ื”-IP ืฉืœ ื”ืžื‘ืงืจื™ื, ืืœื ืืช ื”-IP ืฉืœ ื”ืžืื–ืŸ. ืขื›ืฉื™ื• ื”ื›ืœ ื‘ืกื“ืจ.

ื›ืžื• ื›ืŸ, ื‘ืœืฉื•ื ื™ืช ื™ื™ืฉื•ื ื›ืœืœื™ ื ื™ืชืŸ ื›ืขืช ืœื”ื•ืกื™ืฃ ืกืงืจื™ืคื˜ื™ื ืฉื™ืฉืœื˜ื• ื™ืฉื™ืจื•ืช ื‘ืื™ื–ื•ืŸ ื”ืชืขื‘ื•ืจื”.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

VPNs. ื‘ื ื•ืกืฃ ืœ-IPSec VPN, NSX Edge ืชื•ืžืš ื‘:

  • L2 VPN, ื”ืžืืคืฉืจ ืœืžืชื•ื— ืจืฉืชื•ืช ื‘ื™ืŸ ืืชืจื™ื ืžืคื•ื–ืจื™ื ื’ื™ืื•ื’ืจืคื™ืช. ื™ืฉ ืฆื•ืจืš ื‘-VPN ื›ื–ื”, ืœืžืฉืœ, ื›ื“ื™ ืฉื‘ืขืช ืžืขื‘ืจ ืœืืชืจ ืื—ืจ, ื”ืžื›ื•ื ื” ื”ื•ื™ืจื˜ื•ืืœื™ืช ืชื™ืฉืืจ ื‘ืื•ืชื” ืชืช-ืจืฉืช ื•ืฉื•ืžืจืช ืขืœ ื›ืชื•ื‘ืช ื”-IP ืฉืœื”.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

  • SSL VPN Plus, ื”ืžืืคืฉืจ ืœืžืฉืชืžืฉื™ื ืœื”ืชื—ื‘ืจ ืžืจื—ื•ืง ืœืจืฉืช ืืจื’ื•ื ื™ืช. ื‘ืจืžืช vSphere ื”ื™ื™ืชื” ืคื•ื ืงืฆื™ื” ื›ื–ื•, ืื‘ืœ ืขื‘ื•ืจ vCloud Director ื–ื” ื—ื™ื“ื•ืฉ.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืชืขื•ื“ื•ืช SSL. ื›ืขืช ื ื™ืชืŸ ืœื”ืชืงื™ืŸ ืชืขื•ื“ื•ืช ื‘-NSX Edge. ื–ื” ืฉื•ื‘ ืžื’ื™ืข ืœืฉืืœื” ืžื™ ื”ื™ื” ืฆืจื™ืš ืžืื–ืŸ ืœืœื ืชืขื•ื“ื” ืœ-https.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืงื™ื‘ื•ืฅ ืื•ื‘ื™ื™ืงื˜ื™ื. ื‘ืœืฉื•ื ื™ืช ื–ื•, ืžืฆื•ื™ื ื•ืช ืงื‘ื•ืฆื•ืช ืฉืœ ืื•ื‘ื™ื™ืงื˜ื™ื ืฉืขืœื™ื”ื ื™ื—ื•ืœื• ื›ืœืœื™ ืื™ื ื˜ืจืืงืฆื™ื” ืžืกื•ื™ืžื™ื ื‘ืจืฉืช, ืœืžืฉืœ ื—ื•ืงื™ ื—ื•ืžืช ืืฉ.

ืื•ื‘ื™ื™ืงื˜ื™ื ืืœื” ื™ื›ื•ืœื™ื ืœื”ื™ื•ืช ื›ืชื•ื‘ื•ืช IP ื•-MAC.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1
 
VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ื™ืฉ ื’ื ืจืฉื™ืžื” ืฉืœ ืฉื™ืจื•ืชื™ื (ืฉื™ืœื•ื‘ ืคืจื•ื˜ื•ืงื•ืœ-ื™ืฆื™ืื•ืช) ื•ื™ื™ืฉื•ืžื™ื ืฉื‘ื”ื ื ื™ืชืŸ ืœื”ืฉืชืžืฉ ื‘ืขืช ื™ืฆื™ืจืช ื—ื•ืงื™ ื—ื•ืžืช ืืฉ. ืจืง ืžื ื”ืœ ืคื•ืจื˜ืœ vCD ื™ื›ื•ืœ ืœื”ื•ืกื™ืฃ ืฉื™ืจื•ืชื™ื ื•ื™ื™ืฉื•ืžื™ื ื—ื“ืฉื™ื.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1
 
VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืกื˜ึธื˜ึดื™ืกื˜ึดื™ืงึธื”. ืกื˜ื˜ื™ืกื˜ื™ืงื•ืช ื—ื™ื‘ื•ืจ: ืชืขื‘ื•ืจื” ืฉืขื•ื‘ืจืช ื“ืจืš ื”ืฉืขืจ, ื—ื•ืžืช ื”ืืฉ ื•ื”ืื™ื–ื•ืŸ.

ืกื˜ื˜ื•ืก ื•ืกื˜ื˜ื™ืกื˜ื™ืงื” ืขื‘ื•ืจ ื›ืœ IPSEC VPN ื•-L2 VPN ืžื ื”ืจื”.

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืจื™ืฉื•ื. ื‘ื›ืจื˜ื™ืกื™ื™ื” Edge Settings, ืืชื” ื™ื›ื•ืœ ืœื”ื’ื“ื™ืจ ืืช ื”ืฉืจืช ืœื”ืงืœื˜ืช ื™ื•ืžื ื™ื. ืจื™ืฉื•ื ืขื•ื‘ื“ ืขื‘ื•ืจ DNAT/SNAT, DHCP, ื—ื•ืžืช ืืฉ, ื ื™ืชื•ื‘, ืื™ื–ื•ืŸ, IPsec VPN, SSL VPN Plus.
 
ืกื•ื’ื™ ื”ื”ืชืจืื•ืช ื”ื‘ืื™ื ื–ืžื™ื ื™ื ืขื‘ื•ืจ ื›ืœ ืื•ื‘ื™ื™ืงื˜/ืฉื™ืจื•ืช:

-ืœื ืคื•ืช
-ืขึตืจึธื ึดื™
-ืงืจื™ื˜ื™
- ืฉื’ื™ืื”
- ืื–ื”ืจื”
- ื”ื•ื“ืขื”
- ืžื™ื“ืข

VMware NSX ืœืงื˜ื ื˜ื ื™ื. ื—ืœืง 1

ืžื™ื“ื•ืช NSX Edge

ืชืœื•ื™ ื‘ืžืฉื™ืžื•ืช ืฉื ืคืชืจื•ืช ื•ื‘ื ืคื— ืฉืœ VMware ืžืžืœื™ืฆื” ืฆื•ืจ NSX Edge ื‘ื’ื“ืœื™ื ื”ื‘ืื™ื:

NSX Edge
(ืงื•ึนืžืคึผึธืงื˜ึดื™)

NSX Edge
(ื’ึธื“ื•ึนืœ)

NSX Edge
(Quad-Large)

NSX Edge
(ืืงืกื˜ืจื” ืœืืจื’)

vCPU

1

2

4

6

ื–ื›ืจื•ืŸ

512MB

1GB

1GB

8GB

ื“ื™ืกืง

512MB

512MB

512MB

4.5GB + 4GB

ืคื’ื™ืฉื”

ืื—ื“
ื™ื™ืฉื•ื, ืžื‘ื—ืŸ
ืžืจื›ื– ื”ื ืชื•ื ื™ื

ืงื˜ืŸ
ืื• ืžืžื•ืฆืข
ืžืจื›ื– ื”ื ืชื•ื ื™ื

ืขืžื•ืก
ื—ื•ืžืช ืืฉ

ืžึฐืึทื–ึตืŸ
ืขื•ืžืกื™ื ื‘ืจืžื” L7

ืœืžื˜ื” ื‘ื˜ื‘ืœื” ืžื•ืฆื’ื™ื ืžื“ื“ื™ ื”ืชืคืขื•ืœ ืฉืœ ืฉื™ืจื•ืชื™ ืจืฉืช ื‘ื”ืชืื ืœื’ื•ื“ืœ NSX Edge.

NSX Edge
(ืงื•ึนืžืคึผึธืงื˜ึดื™)

NSX Edge
(ื’ึธื“ื•ึนืœ)

NSX Edge
(Quad-Large)

NSX Edge
(ืืงืกื˜ืจื” ืœืืจื’)

ืžืžืฉืงื™ื

10

10

10

10

ืžืžืฉืงื™ ืžืฉื ื” (ืžื˜ืขืŸ)

200

200

200

200

ื›ืœืœื™ NAT

2,048

4,096

4,096

8,192

ืขืจื›ื™ ARP
ืขื“ ืœื”ื—ืœืคื”

1,024

2,048

2,048

2,048

ื—ื•ืงื™ FW

2000

2000

2000

2000

ื‘ื™ืฆื•ืขื™ FW

3Gbps

9.7Gbps

9.7Gbps

9.7Gbps

ื‘ืจื™ื›ื•ืช DHCP

20,000

20,000

20,000

20,000

ื ืชื™ื‘ื™ ECMP

8

8

8

8

ืžืกืœื•ืœื™ื ืกื˜ื˜ื™ื™ื

2,048

2,048

2,048

2,048

ื‘ืจื™ื›ื•ืช LB

64

64

64

1,024

ืฉืจืชื™ื ื•ื™ืจื˜ื•ืืœื™ื™ื ืฉืœ LB

64

64

64

1,024

ืฉืจืช/ื‘ืจื™ื›ื” LB

32

32

32

32

ื‘ื“ื™ืงื•ืช ื‘ืจื™ืื•ืช LB

320

320

320

3,072

ื›ืœืœื™ ื™ื™ืฉื•ื LB

4,096

4,096

4,096

4,096

ืจื›ื–ืช ืœืงื•ื—ื•ืช L2VPN ืœื“ื™ื‘ื•ืจ

5

5

5

5

ืจืฉืชื•ืช L2VPN ืœื›ืœ ืœืงื•ื—/ืฉืจืช

200

200

200

200

ืžื ื”ืจื•ืช IPSec

512

1,600

4,096

6,000

ืžื ื”ืจื•ืช SSLVPN

50

100

100

1,000

SSLVPN ืจืฉืชื•ืช ืคืจื˜ื™ื•ืช

16

16

16

16

ืžื•ืฉื‘ื™ื ื‘ืžืงื‘ื™ืœ

64,000

1,000,000

1,000,000

1,000,000

ืžืคื’ืฉื™ื/ืฉื ื™ื™ื”

8,000

50,000

50,000

50,000

LB ืชืคื•ืงื” L7 Proxy)

2.2Gbps

2.2Gbps

3Gbps

LB ืชืคื•ืงื” L4 ืžืฆื‘)

6Gbps

6Gbps

6Gbps

LB Connections/s (L7 Proxy)

46,000

50,000

50,000

LB ื—ื™ื‘ื•ืจื™ื ื‘ืžืงื‘ื™ืœ (L7 Proxy)

8,000

60,000

60,000

LB ื—ื™ื‘ื•ืจื™ื/ื™ื (ืžืฆื‘ L4)

50,000

50,000

50,000

LB ื—ื™ื‘ื•ืจื™ื ื‘ืžืงื‘ื™ืœ (ืžืฆื‘ L4)

600,000

1,000,000

1,000,000

ืžืกืœื•ืœื™ BGP

20,000

50,000

250,000

250,000

BGP ืฉื›ื ื™ื

10

20

100

100

ื ืชื™ื‘ื™ BGP ืžื•ืคืฆื™ื ืžื—ื“ืฉ

ื ื• ืœื™ืžื™ื˜

ื ื• ืœื™ืžื™ื˜

ื ื• ืœื™ืžื™ื˜

ื ื• ืœื™ืžื™ื˜

ื ืชื™ื‘ื™ OSPF

20,000

50,000

100,000

100,000

OSPF LSA Entries Max 750 Type-1

20,000

50,000

100,000

100,000

OSPF Adjacencies

10

20

40

40

ื ืชื™ื‘ื™ OSPF ืžื•ืคืฆื™ื ืžื—ื“ืฉ

2000

5000

20,000

20,000

ืกืš ื”ื›ืœ ืžืกืœื•ืœื™ื

20,000

50,000

250,000

250,000

โ†’ ืžืงื•ืจ

ื”ื˜ื‘ืœื” ืžืจืื” ืฉืžื•ืžืœืฅ ืœืืจื’ืŸ ืื™ื–ื•ืŸ ื‘-NSX Edge ืขื‘ื•ืจ ืชืจื—ื™ืฉื™ื ืคืจื•ื“ื•ืงื˜ื™ื‘ื™ื™ื ืจืง ื”ื—ืœ ืžื’ื•ื“ืœ Large.

ื–ื” ื›ืœ ืžื” ืฉื™ืฉ ืœื™ ืœื”ื™ื•ื. ื‘ื—ืœืงื™ื ื”ื‘ืื™ื ืืขื‘ื•ืจ ื‘ืคื™ืจื•ื˜ ื›ื™ืฆื“ ืœื”ื’ื“ื™ืจ ื›ืœ ืฉื™ืจื•ืช ืจืฉืช NSX Edge.

ืžืงื•ืจ: www.habr.com

ื”ื•ืกืคืช ืชื’ื•ื‘ื”