Professional Documents
Culture Documents
Vmware Validated Design 20 Introduction Guide
Vmware Validated Design 20 Introduction Guide
EN-002170-00
Introducing VMware Validated Designs for Software-Defined Data Center
You can find the most up-to-date technical documentation on the VMware Web site at:
http://www.vmware.com/support/
The VMware Web site also provides the latest product updates.
If you have comments about this documentation, submit your feedback to:
docfeedback@vmware.com
Copyright © 2016 VMware, Inc. All rights reserved. Copyright and trademark information.
VMware, Inc.
3401 Hillview Ave.
Palo Alto, CA 94304
www.vmware.com
2 VMware, Inc.
Contents
Index 29
VMware, Inc. 3
Introducing VMware Validated Designs for Software-Defined Data Center
4 VMware, Inc.
About Introducing VMware Validated Design for
Software-Defined Data Center
The Introducing VMware Validated Design for Software-Defined Data Center guide provides directions on using
the content of VMware Validated Design™ for Software-Defined Data Center. The guide also contains a
high-level overview of the Software-Defined Data Center (SDDC) design supported in this VMware
Validated Design version.
Introducing VMware Validated Design for Software-Defined Data Center focuses on providing guidance about
using the VMware Validated Design and includes the following information:
n Design objectives
Intended Audience
Introducing VMware Validated Design for Software-Defined Data Center is intended for cloud architects,
infrastructure administrators, cloud administrators and cloud operators who want to get familiar with
VMware Validated Design to deploy and manage an SDDC that meets the requirements for capacity,
scalability, business continuity and disaster recovery.
VMware, Inc. 5
Introducing VMware Validated Designs for Software-Defined Data Center
6 VMware, Inc.
Overview of VMware Validated
Designs 1
Use VMware Validated Design to create a Software-Defined Data Center that is based on management
components by VMware, and has a scalable and best-practice configuration.
One path to SDDC After you satisfy the deployment requirements, follow one consistent path to
deploy an SDDC.
SDDC design for use in VMware Validated Design supports an SDDC that has the following
production features:
n Backup-and-restore support
Fast SDDC standup By downloading all SDDC products , and following detailed design and
step-by-step instructions, you are able to implement a data center without
engaging in design work and product research.
Support for latest Every version of VMware Validated Design accommodates new product
product releases releases.
Foundation for VMware Validated Design provides the foundation for use cases that satisfy
development of SDDC the requirements of individual organizations or industry segments, such as
deployment use cases SDDC for microsegmentation, DevOps and automated IT.
VMware, Inc. 7
Introducing VMware Validated Designs for Software-Defined Data Center
8 VMware, Inc.
Solution Overview and Design
Objectives 2
VMware Validated Design has a number of objectives to deliver prescriptive content about an SDDC that is
fast to deploy and is suitable for use in production.
Number of regions and disaster recovery support n The design documentation provides guidance for an
SDDC that is capable of supporting a dual-region case
for failover.
n The deployment documentation provides guidance for
an SDDC that supports a single region for both
management and tenant workloads.
By design, the SDDC management components can operate
in an environment that supports failover in a dual-region
environment with one availability zone. See “Physical
Infrastructure Layer,” on page 18.
VMware, Inc. 9
Introducing VMware Validated Designs for Software-Defined Data Center
Authentication, authorization, and access control n Use of Microsoft Active Directory as a central user
repository.
n Use of service accounts with minimum required
authentication and Access Control List configuration.
n Use of basic tenant accounts.
10 VMware, Inc.
Documentation Structure and
Audience 3
The structure of the VMware Validated Design documentation reflects the best practices in designing and
deploying a data center that is capable of automated provisioning of workloads. The documentation
components of the validated design are organized according to audience and deployment stage, and you
use them in a specific order.
Design Phase
Architecture Overview
Detailed Design
Reference Architecture
Deployment Phase
Operations Phase
Operational Guidance
Architecture Overview
The first part of VMware Validated Design is Architecture Overview and it introduces the terms and
components in the design.
VMware, Inc. 11
Introducing VMware Validated Designs for Software-Defined Data Center
Detailed Design
After you learn about the basic modules in the SDDC design, you proceed with detailed design of the
management components and the required infrastructure.
12 VMware, Inc.
Chapter 3 Documentation Structure and Audience
Operational Guidance
After you deploy the SDDC, follow the Operational Guidance documentation to operate the environment and
the management workloads .
VMware, Inc. 13
Introducing VMware Validated Designs for Software-Defined Data Center
14 VMware, Inc.
VMware Software Components in the
Validated Design 4
VMware Validated Design is based on a set of individual VMware products with different versions that are
available in a common downloadable package.
VMware vRealize Business for Cloud VMware vRealize Business for Cloud 7.0.1 and 7.0.1 express patch
Standard
VMware, Inc. 15
Introducing VMware Validated Designs for Software-Defined Data Center
Product Considerations
Use the list of software components for VMware Validated Design under the certain considerations.
n VMware makes available patches and releases to address critical security issues for several products.
Verify that you are using the latest security patches and releases for a given component when
deploying VMware Validated Design.
n Because this validated design version provides instructions for a single-region SDDC implementation,
the list does not include the VMware products for disaster recovery, such as VMware Site Recovery
Manager and vSphere Replication.
16 VMware, Inc.
Overview of the SDDC Structure 5
The SDDC architecture in VMware Validated Design consists of layers. The layered structure enables you to
create the SDDC in modules and to handle each set of components separately.
For information about the design and deployment of each layer, see VMware Validated Design Reference
Architecture Guide and VMware Validated Design Deployment Guide for Region A .
Orchestration
Virtualization Control
Portfolio Backup &
Risk
Management Restore
Physical Compute
Layer
Storage
Operations
Replication Compliance
Management Network
VMware, Inc. 17
Introducing VMware Validated Designs for Software-Defined Data Center
External connection
ToR Switch ToR Switch ToR Switch ToR Switch ToR Switch ToR Switch
L3
L2
Compute pods
Pods
A pod is a logical grouping of hardware that supports a certain function and is easy to replicate. Pods can
have different configurations of server, storage, and network equipment. Usually each pod spans one rack,
but in smaller environments you can aggregate multiple pods into a single rack.
VMware Validated Design uses the following pods:
Management Pod Runs the virtual machines of the components that manage the SDDC, such as
vCenter Server, NSX Manager, NSX Controller nodes, vRealize Operations
Management, vRealize Log Insight, vRealize Automation, vRealize
Orchestrator and vRealize Business.
VMware Validated Design uses one management pods that occupies half a
rack.
Edge Pod Compute pods are usually not set up with external network connectivity. In
this case, external connectivity is pooled into edge pods. Edge pods connect
the virtual networks in NSX for vSphere and the external networks.
VMware Validated Design uses one edge pod that occupies half a rack.
18 VMware, Inc.
Chapter 5 Overview of the SDDC Structure
Availability zone Represent the fault domain of the SDDC. Multiple availability zones can
provide continuous availability of an SDDC.
Region Each region is a separate SDDC instance. You use multiple regions for
disaster recovery across individual SDDC instances.
Network
VMware Validated Design uses a Layer 3 leaf-and-spine network architecture.
Storage
VMware Validated Design provides guidance for the storage of the management components. The design
uses two storage technologies:
n Virtual SAN. Virtual SAN storage is the default storage type for the SDDC management components.
The storage devices on Virtual SAN ready servers provide the storage infrastructure. Because VMware
Validated Design uses Virtual SAN in hybrid mode, each rack server must have one SSD and two HDD
devices that form a disk group with capacity .
n NFS. NFS storage is the secondary storage for the SDDC management components. It provides space
for workload backup, archiving log data and application templates.
VMware, Inc. 19
Introducing VMware Validated Designs for Software-Defined Data Center
vCenter Server instances You deploy two vCenter Server instances in the following
way:
n One vCenter Server supporting the SDDC
management components.
n One vCenter Server supporting the compute
components and workloads.
Using this model provides the following benefits:
n Isolation of management and compute operations
n Simplified capacity planning
n Separated upgrade
n Separated roles
20 VMware, Inc.
Chapter 5 Overview of the SDDC Structure
ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi
n Pair of NSX Edge service gateways (ESGs) with ECMP enabled for north/south routing across all
regions.
n Universal distributed logical router (UDLR) for east/west routing across all regions.
Application virtual networks provide support for limited access to the nodes of the applications through
published access points. Three application virtual networks exist:
n Common application virtual network that connects the components that are designed to fail over to a
recovery region.
n Application virtual network in Region A for components that are not designed to fail over.
n Application virtual network in Region B for components that are not design to fail over.
VMware, Inc. 21
Introducing VMware Validated Designs for Software-Defined Data Center
Internet/
Enterprise Compute Edge
Network PODs PODs
ToR
Switches
ECMP
ESG's
ESG
Load
Balancer
192.168.11/24 192.168.31/24
Mgmt-xRegion01-VXLAN Mgmt-xRegionА01-VXLAN
vROps vRLI
vRA/vRO/vRB vROps Collector
vRA Proxy
Applications store their data according to the default storage policy for Virtual SAN.
22 VMware, Inc.
Chapter 5 Overview of the SDDC Structure
APP APP
OS OS
NSX NSX
Controller Edge
(Mgmt) (Mgmt)
OS OS OS OS
NSX NSX
Virtual Infrastructure Manager Manager
Compute Edge (Compute) (Mgmt)
No Virtual SAN Used Here Virtual SAN Datastore (Edge) Virtual SAN Datastore (Management)
ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi ESXi
vSphere Data Protection, vRealize Log Insight and vRealize Automation Content Library use NFS exports.
You create two datastores: one in the management cluster for vSphere Data Protection and one in the
compute cluster for vRealize Automation.
Region A Region B
VMware, Inc. 23
Introducing VMware Validated Designs for Software-Defined Data Center
Deployment model of vRealize Automation Distributed deployment with support for vSphere
endpoints by using vSphere Proxy Agent virtual machines.
You install the vRealize Automation components on
multiple machines.
High availability and load balancing Supported for all nodes except the Microsoft SQL database
server and vRealize Business.
Fabric groups One fabric group in a region with all resources in the
compute and edge cluster assigned.
Business groups Two business groups, one for production and one for
development.
24 VMware, Inc.
Chapter 5 Overview of the SDDC Structure
Rainpole Tenant
https://vra.mycompany.com/vcac/org/rainpole
Region A Region B
Data Center Infrastructure Fabric Data Center Infrastructure Fabric
Default Tenant
• Tenant Creation
• System Branding
• System Notification
Providers
System Admin • Event Logs
https://vra.mycompany.com/vcac
Operations Layer
The operations layer of the SDDC provides capabilities for performance and capacity monitoring, and for
backup and restore of the cloud management components.
vRealize Operations Manager is also sized to accommodate the number of tenant workloads per the design
objectives.
VMware, Inc. 25
Introducing VMware Validated Designs for Software-Defined Data Center
Region A Region B
Management/ vRealize Management/
Compute Automation Compute
vCenter Server vCenter Server
Analytics Cluster
Master
Master Data Data
Replica
26 VMware, Inc.
Chapter 5 Overview of the SDDC Structure
Region A Region B
Management/ vRealize Management/
Compute Automation Compute
vCenter Server vCenter Server
NSX vRealize Log Insight Cluster vRealize Log Insight Cluster NSX
event
forwarding
VMware, Inc. 27
Introducing VMware Validated Designs for Software-Defined Data Center
Authentication Authentication
28 VMware, Inc.
Index
B
bill of material 15
D
design objectives 9
documentation
guides 11
flow 11
structure 11
documentation overview 5
G
glossary 5
I
intended audience 5
M
main features 7
S
SDDC
application virtual network 20
architecture 17
backup and restore 25
capabilities 9
cloud management 24
dynamic routing 20
layers 17
logging 25
monitoring and alerting 25
NFS 20
operations 25
physical infrastructure 18
pods 18
regions 18
service catalog 24
software components 15
software-defined networking 20
software-defined storage 20
tenant configuration 24
virtual infrastructure 20
Virtual SAN 20
VMware, Inc. 29
Introducing VMware Validated Designs for Software-Defined Data Center
30 VMware, Inc.