Dan Hushon19
Anyone know if we could build SDN plans in Agility yet? Here's a blueprint! http://www.via-cc.at...
Ganesh Swaminathan
That is pretty cool
Dan Hushon
I like how we might drag a component onto the canvas, and it might bring a FW configuration with it
vittal krishnasamy
Agility gives a ready made advantage because of its metadata management. It will be easily define the segments/topology and layout and then fire it out
Stephen Sandifer
The better question is, does Agility enforce policy at a level to prevent administrators from detonating their network? Will check.
Dan Hushon
From a delivery standpoint, we could be "blueprinting" for delivery with specific monitoring (out) and control (in-out) channels
Sunil Sharma
neat
Howard Smith
I think the power of executable/actionable blueprints in the form of pictures is one of the most powerful ways to engage customers. We did the same in BPM era with workflow designs. And EA tools for that matter.
Sunil Sharma
If Agility can push such configuration to FW for east-west and north-south traffic, it will be a great value add to FW security policy administration. I am not sure if such function can be achieved with agility automation with a firewall.
Randy Arthur
We have a lot of that capability in BizCloud VMware already. We are trying to keep a flat network and use security groups and distributed firewall rules to microsegment within a virtual datacenter
Randy Arthur
Even though it is very easy to create very small network segments in SDN, we didn't want to waste the unused IPV4 addresses and we can get equivalent (or better) isolation and security with security groups
Randy Arthur
Plus it is a whole lot easier to manage and operate
Dan Hushon
what do you mean "waste" IPV4 networks... we can use a ton of em... tell me you can use up 10.,192. in our estate.. much less other routable that we can re-use
Vijay Kumar
vSphere NSX LoadBalancer as a service model along with Workloads using agility blueprint work is in progress.
Randy Arthur
Waste in the sense that if are given a routable IPV4 range from a client then we have to watch how quickly we burn through them. Not all workloads do well with NAT and an overlapping IP address model.
Randy Arthur
In BizCloud VMware, we are not quite at the point where we can get the scope of the microsegmentation in a virtual datacenter to the Blueprint level. But as you can see from Vijay, we are actively working on it.