SlideShare a Scribd company logo
1 of 33
Download to read offline
How to Identify if Your vSphere Environment is
Configured to Meet Your Internal IT Standards
Becky Smith, VMware
VCM4981
#VCM4981
22
Agenda
 Introduction to vCenter Operations Suite
 vSphere Configuration and Compliance challenges
in the Cloud
 Addressing these challenges with vCenter
Configuration Manager (vCM):
• Integrated Virtual and Cloud Infrastructure
• Automated Operations
33
VMware Cloud Management
Multiplatform Hybrid Multi-provider
Broker
of IT Services
VMware simplifies and automates IT management
and empowers IT to govern services
across multiple platforms and providers
CIO
Turn management into manageability through
intelligent, policy-based automation
The VMware
Approach
44
VMware Cloud Management – Key Solution Areas
Automate the delivery
of infrastructure,
applications and
desktops as a service
across multiple clouds
and platforms.
Cloud
Operations
Manage the health,
risk, efficiency and
compliance of your
infrastructure and
applications.
Cloud
Business
Govern and manage
cloud services as a
critical element of
running IT like a
business.
 Intelligent operations
 Policy-based
automation
 Unified management
 Financial
transparency
 Industry norms
 Prescriptive guidance
 Automate everywhere
 Policy-based control
and governance
 Choice and flexibility
55
Cloud Operations – vCenter Operations Management Suite
• Prebuilt and configurable operations dashboards
provide real-time insight into infra. behavior
• Self-learning performance analytics and dynamic
thresholds enable early problem detection
• Policy-based config mgmt ensures continuous
compliance
• Capacity management optimizes resource usage
• Application discovery, monitoring and dependency
mapping enable enterprise-wide visibility
Benefits
Overview
Right Now Future Focused
vCenter Operations Management Suite
Sources: *Forrester, “The Total Economic Impact of VMware vCenter Operations Management Suite” Dec 2012;
**Management Insights Customer Survey, September 2012
Integrated performance, capacity and
configuration management
• Higher quality of service, fewer incidents and less
downtime of infra and app services
• 67% IT productivity gain from simplified
performance, incident & change mgmt tasks*
• 30% reduction in server CapEx from rightsizing
and reclaiming over-provisioned capacity*
• 60% increase in VMs managed by a single VI
admin**
66
Cloud Operations Management Value
36% reduction in application downtime
26% reduction in diagnostics and problem resolution time
40% improvement in VMware capacity utilization
37% improvement in consolidation ratios
30% increase in hardware savings
60% increase in administrator productivity
50% total IT cost savings in combination with vSphere
Source: Management Insights Customer Survey, September 2012
77
vCenter Operations Management Suite
Integrated Management Disciplines
VMware’s Approach to Cloud Operations Management
Automated Operations Management for Cloud Infrastructure
Cloud Operations Console
Performance
Patented Analytics
Capacity
App visibility Reporting LogsInventory Automation
Extensibility
Cost
APIs
SDKs
3rd Party
adapters
Content
Packs
ComplianceConfig
88
Customer Configuration and Compliance Concerns
We have fully embraced
vSphere but ensuring
compliance with internal
best practices consumes
massive amounts of my
teams time.
We lack visibility into our
cloud and the increased
velocity of change has
made our change
management process
extremely challenging.
99
Cross-cloud Compliance Governance
Govern, automate and enforce compliance in the cloud:
 For each cloud: create separate groups, configure compliance templates, collect
data for every managed system and remediate compliance breaches.
Configure separate
compliance templates
for each cloud
Track compliance
results for each cloud
1010
Integrated Virtual and Cloud
Infrastructure Configuration and
Compliance Management
1111
Configuration Management – Across Virtual Infrastructure
 Configurations for the entire
virtual infrastructure
• Across Multiple vCenters & vCloud
Directors
 1,000’s of Settings and
Configurations collected for:
• vCenter
• vSphere Hosts & Guests
• Virtual Network & Storage
• vCloud Director
• vShield
Fix settings across multiple
vCenters & ESX(i) servers at once
1212
Configuration Management – Simplified Visualization
 vSphere Host Summary Dashboard
• Provides overall vSphere Hosts Configuration Summary
State of the
Hosts
Makeup of the
Environment
Host
Compliance
Posture
Drill
in for
Details
VI Admin: “What is the status of my HOSTS in my environment? Is it what I expect?”
1313
Configuration Management – Simplified Visualization
 vSphere Guest Summary Dashboard
• Provides overall VM Configuration/Status Summary across vCenters
Accurate OS
Counts
VM Tool
Status
VM
Compliance
Posture
Drill
in for
Details
VI Admin: “How do I see visibility of at a glance guest configurations to find variants?”
1414
Create Internal IT Best Practice Standards
 vCM Compliance Management
• Build compliance rules that meet your internal standards
• Across multiple vCenters and vCDs
VI & vCD Admins: “How can I be made aware of unwanted change? Drive MY Best Practices”
Create simple rules Rule Groups
span your IT
Best Practices
Severity
1515
Virtual Environment Compliance Posture
 Virtual Compliance Dashboard
• Assess compliance status across vSphere & vCD environments
• vCenters, Clusters, Hosts, Datastores, VMs, vCD Orgs, vDCs & vApps
Latest
Compliance
Results
VI & vCD Admins + Security Teams: “Is my Virtual Infrastructure compliant?”
 View Results
in VI context
• Data Centers
• Clusters
• vCD Orgs
• vShield
Security
Groups
1616
Out of the Box Standards Compliance
 Center for Policy and
Compliance
 Out of the Box Templates
• Use as is
• Leverage to start your Internal
Standards
• Use in Conjunction with your
Internal Standards
VI & vCD Admins + Security Teams: “How can quickly I meet industry standards and guidelines?”
Compliant
VI
vSphere
Hardening
Guides vCM Best
Practices
DISA ESX
PCI DSS 2.0
for
vSphere/ESX
ISO 27002 -
vSphere
Basel III -
vSphere
CIS for ESX
FISMA ESX
GLBA ESX
HIPAA ESX
SOX ESX
View
Hardening
Guidelines
1818
Let’s Walk Through a Specific Example
1919
Detect an Unwanted Change in Host Configuration
 Quickly understand what has changed
• Date, Machine, Data Type
 Uncover unwarranted virtual environment changes
• SyslogDir, SyslogDirUnique, SyslogHost
Incorrect
Syslog
settings
Search for
vSphere Host
2020
Understand the Scope of Change
 Are these misconfigurations prevalent?
• Check settings on ALL hosts in the environment at once
• Use column grouping to understand where problems lie
Incorrect
settings exist
View across
multiple hosts
and vCenters
2121
Remediate Mis-configuration Across All Hosts
 Change incorrect ESX settings from within vCM
• Run on multiple hosts across multiple vCenters at once
Change ESX
Hosts Settings
Change across
multiple hosts
and vCenters
2222
Verify and Audit the Change
 vCM verifies changes were successful
 Confirm or track changes by
• User, Date, Machine, Data Type
 vCM initiated changes include User information
Users
Tracked
Times
Tracked
Select
Date
2323
Proactively Guard Against Future Unwanted Changes
Create IT Compliance to drive your IT Internal Standards
Create new
Compliance
Rule
Chose Data
Type
1,000s of Data
Points
Build
Compliance
Rule
2424
Automated Operations
2525
Compliance Visibility in Operations
 Overview
• Roll up Hardening and
Compliance Status into
Risk Score
• Launch vCM in context
to remediate out of
Compliance systems
 Benefits
• Enable Operations to
standardize on system
configurations and
quickly know when they
change
Drill into vCM for
details and to fix
violations
Compliance Score
as part of
Operational Risk
2626
Summary
2727
A Variety of Personas Can Benefit from VCM
 Infrastructure Admins
• Templatize configuration settings for vSphere Hosts and vCenters. Replicate
settings from POC to Production.
• Consolidate configuration and execute large scale change operations across
multiple vCenters and Hosts
• Use compliance to ensure internal and external standards for vSphere
systems
 Security Admins
• Define Internal Hardening and Regulatory Compliance (HIPAA, PCI, etc) for
vSphere
• Report on compliance status and recommend remediation for non-compliance
2828
VCM Supports Private, Public and Hybrid Cloud Models
 Benefits
• vSphere change
management and
compliance assurance for
both Consumer and Provider
• Ability to leverage the cloud
for compliant sensitive work
loads
• Ability to manage guests
across Clouds
• Guest compliance
• Patching
• Change management
vSphere
DMZ
HIPAA
Private Cloud Public Cloud
vSphere
Consumer
Provider
VMware
Compliance visibility
across owned
infrastructure and
all guests
Compliance visibility across
owned infrastructure
2929
vCenter Operations Management Suite
Integrated Management Disciplines
VMware’s Approach to Cloud Operations Management
Automated Operations Management for Cloud Infrastructure
Cloud Operations Console
Performance
Patented Analytics
Capacity
App visibility Reporting LogsInventory Automation
Extensibility
Cost
APIs
SDKs
3rd Party
adapters
Content
Packs
ComplianceConfig
3030
Questions
3232
Other VMware Activities Related to This Session
 HOL:
HOL-SDC-1315 vCloud Suite Use Cases - Control & Compliance
 Group Discussions:
VCM1002-GD, VCM1004-GD
Cloud Operations with Hicham Mourad or Sam McBride
THANK YOU
How to Identify if Your vSphere Environment is
Configured to Meet Your Internal IT Standards
Becky Smith, VMware
VCM4981
#VCM4981

More Related Content

What's hot

Control Virtual Server Sprawl with HP Software
Control Virtual Server Sprawl with HP SoftwareControl Virtual Server Sprawl with HP Software
Control Virtual Server Sprawl with HP Software
1CloudRoad.com
 
Microsoft System Center 2012 R2 Overview - Presented by Atidan
Microsoft System Center 2012 R2 Overview - Presented by AtidanMicrosoft System Center 2012 R2 Overview - Presented by Atidan
Microsoft System Center 2012 R2 Overview - Presented by Atidan
David J Rosenthal
 
Presentation vmware building “your cloud”
Presentation   vmware building “your cloud”Presentation   vmware building “your cloud”
Presentation vmware building “your cloud”
solarisyourep
 
Presentation v cloud suite 5.1 – what’s new
Presentation   v cloud suite 5.1 – what’s newPresentation   v cloud suite 5.1 – what’s new
Presentation v cloud suite 5.1 – what’s new
solarisyourep
 
System Center 2012 Technical Overview
System Center 2012 Technical OverviewSystem Center 2012 Technical Overview
System Center 2012 Technical Overview
Amit Gatenyo
 
Controlling Virtual Server Sprawl with HP Software
Controlling Virtual Server Sprawl with HP SoftwareControlling Virtual Server Sprawl with HP Software
Controlling Virtual Server Sprawl with HP Software
1CloudRoad.com
 

What's hot (20)

System Center 2012 Overview
System Center 2012 OverviewSystem Center 2012 Overview
System Center 2012 Overview
 
Control Virtual Server Sprawl with HP Software
Control Virtual Server Sprawl with HP SoftwareControl Virtual Server Sprawl with HP Software
Control Virtual Server Sprawl with HP Software
 
Microsoft System Center 2012 R2 Overview - Presented by Atidan
Microsoft System Center 2012 R2 Overview - Presented by AtidanMicrosoft System Center 2012 R2 Overview - Presented by Atidan
Microsoft System Center 2012 R2 Overview - Presented by Atidan
 
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
VMworld 2015: Take Virtualization to the Next Level vSphere with Operations M...
 
[Event] Digital transformation : Empower digital workspace - PRESENTATION VMWARE
[Event] Digital transformation : Empower digital workspace - PRESENTATION VMWARE[Event] Digital transformation : Empower digital workspace - PRESENTATION VMWARE
[Event] Digital transformation : Empower digital workspace - PRESENTATION VMWARE
 
VMware vRealize Network Insight Frequently Asked Questions FAQ
VMware vRealize Network Insight Frequently Asked Questions FAQVMware vRealize Network Insight Frequently Asked Questions FAQ
VMware vRealize Network Insight Frequently Asked Questions FAQ
 
Presentation vmware building “your cloud”
Presentation   vmware building “your cloud”Presentation   vmware building “your cloud”
Presentation vmware building “your cloud”
 
Presentation v cloud suite 5.1 – what’s new
Presentation   v cloud suite 5.1 – what’s newPresentation   v cloud suite 5.1 – what’s new
Presentation v cloud suite 5.1 – what’s new
 
Lets vRealize level -100 Presentation
Lets vRealize level -100 PresentationLets vRealize level -100 Presentation
Lets vRealize level -100 Presentation
 
The Path to Streamlining and Automating Data Center Operations
The Path to Streamlining and Automating Data Center OperationsThe Path to Streamlining and Automating Data Center Operations
The Path to Streamlining and Automating Data Center Operations
 
System Center 2012 Technical Overview
System Center 2012 Technical OverviewSystem Center 2012 Technical Overview
System Center 2012 Technical Overview
 
The Age of Network Operations Management in Software Defined Data Centers
The Age of Network Operations Management in Software Defined Data CentersThe Age of Network Operations Management in Software Defined Data Centers
The Age of Network Operations Management in Software Defined Data Centers
 
SCOM 2012 & SCCM 2012
SCOM 2012 & SCCM 2012SCOM 2012 & SCCM 2012
SCOM 2012 & SCCM 2012
 
Operational Management Challenges for Converged Infrastructure
Operational Management Challenges for Converged Infrastructure Operational Management Challenges for Converged Infrastructure
Operational Management Challenges for Converged Infrastructure
 
VMware vCloud Suite
VMware vCloud SuiteVMware vCloud Suite
VMware vCloud Suite
 
Server update management optimization
Server update management optimizationServer update management optimization
Server update management optimization
 
Controlling Virtual Server Sprawl with HP Software
Controlling Virtual Server Sprawl with HP SoftwareControlling Virtual Server Sprawl with HP Software
Controlling Virtual Server Sprawl with HP Software
 
VMware 2015: Next Horizon for Cloud Networking and Security
VMware 2015: Next Horizon for Cloud Networking and SecurityVMware 2015: Next Horizon for Cloud Networking and Security
VMware 2015: Next Horizon for Cloud Networking and Security
 
Cloud Management with vRealize Operations
Cloud Management with vRealize OperationsCloud Management with vRealize Operations
Cloud Management with vRealize Operations
 
vSphere and private cloud - Marek Bražina
vSphere and private cloud - Marek BražinavSphere and private cloud - Marek Bražina
vSphere and private cloud - Marek Bražina
 

Viewers also liked

VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
VMworld
 

Viewers also liked (20)

VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part Two
VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part TwoVMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part Two
VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part Two
 
VMworld 2013: Everything You Want to Know About vCloud Hybrid Service - But W...
VMworld 2013: Everything You Want to Know About vCloud Hybrid Service - But W...VMworld 2013: Everything You Want to Know About vCloud Hybrid Service - But W...
VMworld 2013: Everything You Want to Know About vCloud Hybrid Service - But W...
 
VMworld 2013: Meaningful Mobility: The Future of End-User Computing in Public...
VMworld 2013: Meaningful Mobility: The Future of End-User Computing in Public...VMworld 2013: Meaningful Mobility: The Future of End-User Computing in Public...
VMworld 2013: Meaningful Mobility: The Future of End-User Computing in Public...
 
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
VMworld 2013: Part 1: Getting Started with vCenter Orchestrator
 
VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
VMworld 2013: Gaining Insight in Meditech with vCenter Operations Management ...
 
VMworld 2013: VMware Compliance Reference Architecture Framework: Accelerate ...
VMworld 2013: VMware Compliance Reference Architecture Framework: Accelerate ...VMworld 2013: VMware Compliance Reference Architecture Framework: Accelerate ...
VMworld 2013: VMware Compliance Reference Architecture Framework: Accelerate ...
 
VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part One
VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part OneVMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part One
VMworld 2013: Implementing a Holistic BC/DR Strategy with VMware - Part One
 
VMworld 2013: vCenter Operations Management –Troubleshooting Best Practices
VMworld 2013: vCenter Operations Management –Troubleshooting Best Practices VMworld 2013: vCenter Operations Management –Troubleshooting Best Practices
VMworld 2013: vCenter Operations Management –Troubleshooting Best Practices
 
VMworld 2013: IaaS Case Study: How the University of New Mexico Improved Serv...
VMworld 2013: IaaS Case Study: How the University of New Mexico Improved Serv...VMworld 2013: IaaS Case Study: How the University of New Mexico Improved Serv...
VMworld 2013: IaaS Case Study: How the University of New Mexico Improved Serv...
 
VMworld 2013: VMware Virtual SAN
VMworld 2013: VMware Virtual SAN VMworld 2013: VMware Virtual SAN
VMworld 2013: VMware Virtual SAN
 
VMworld 2013: A Technical Deep Dive on VMware Horizon View 5.2 Performance an...
VMworld 2013: A Technical Deep Dive on VMware Horizon View 5.2 Performance an...VMworld 2013: A Technical Deep Dive on VMware Horizon View 5.2 Performance an...
VMworld 2013: A Technical Deep Dive on VMware Horizon View 5.2 Performance an...
 
VMworld 2013: Graphics and Users in VDI
VMworld 2013: Graphics and Users in VDI VMworld 2013: Graphics and Users in VDI
VMworld 2013: Graphics and Users in VDI
 
VMworld 2013: VMware vSphere Replication: Technical Walk-Through with Enginee...
VMworld 2013: VMware vSphere Replication: Technical Walk-Through with Enginee...VMworld 2013: VMware vSphere Replication: Technical Walk-Through with Enginee...
VMworld 2013: VMware vSphere Replication: Technical Walk-Through with Enginee...
 
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
VMworld 2013: Cloud Service Automation with NSX and vCloud Automation Center
 
VMworld 2013: VMware NSX with Next-Generation Security by Palo Alto Networks
VMworld 2013: VMware NSX with Next-Generation Security by Palo Alto Networks VMworld 2013: VMware NSX with Next-Generation Security by Palo Alto Networks
VMworld 2013: VMware NSX with Next-Generation Security by Palo Alto Networks
 
VMworld 2013: SDDC is Here and Now: A Success Story
VMworld 2013: SDDC is Here and Now: A Success Story VMworld 2013: SDDC is Here and Now: A Success Story
VMworld 2013: SDDC is Here and Now: A Success Story
 
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
VMworld 2013: Moving Enterprise Application Dev/Test to VMware’s Internal Pri...
 
VMworld 2013: VMware Horizon View with Rich Media, Unified Communications and...
VMworld 2013: VMware Horizon View with Rich Media, Unified Communications and...VMworld 2013: VMware Horizon View with Rich Media, Unified Communications and...
VMworld 2013: VMware Horizon View with Rich Media, Unified Communications and...
 
VMworld 2013: NSX PCI Reference Architecture Workshop Session 2 - Privileged ...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 2 - Privileged ...VMworld 2013: NSX PCI Reference Architecture Workshop Session 2 - Privileged ...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 2 - Privileged ...
 
Batir sa strategie editoriale pour seduire ses clients et google - CCI Bordea...
Batir sa strategie editoriale pour seduire ses clients et google - CCI Bordea...Batir sa strategie editoriale pour seduire ses clients et google - CCI Bordea...
Batir sa strategie editoriale pour seduire ses clients et google - CCI Bordea...
 

Similar to VMworld 2013: How to Identify if Your vSphere Environment is Configured to Meet Your Internal IT Standards

VMware and Puppet: How to Plan, Deploy & Manage Modern Applications
VMware and Puppet: How to Plan, Deploy & Manage Modern ApplicationsVMware and Puppet: How to Plan, Deploy & Manage Modern Applications
VMware and Puppet: How to Plan, Deploy & Manage Modern Applications
Puppet
 

Similar to VMworld 2013: How to Identify if Your vSphere Environment is Configured to Meet Your Internal IT Standards (20)

VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
VMworld 2013: NSX PCI Reference Architecture Workshop Session 3 - Operational...
 
VMware Outlines Its Own Journey to the Cloud
VMware Outlines Its Own Journey to the CloudVMware Outlines Its Own Journey to the Cloud
VMware Outlines Its Own Journey to the Cloud
 
VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
VMworld 2013: Symantec’s Real-World Experience with a VMware Software-Defined...
 
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
VMworld 2013: VMware and Puppet: How to Plan, Deploy & Manage Modern Applicat...
 
vbrownbag dcd6-2.4-merged
vbrownbag dcd6-2.4-mergedvbrownbag dcd6-2.4-merged
vbrownbag dcd6-2.4-merged
 
Webinar Fondazione CRUI e VMware: VMware vRealize Suite
 Webinar Fondazione CRUI e VMware: VMware vRealize Suite Webinar Fondazione CRUI e VMware: VMware vRealize Suite
Webinar Fondazione CRUI e VMware: VMware vRealize Suite
 
Systemology presentation- System Center & the modern datacenter
Systemology presentation- System Center & the modern datacenterSystemology presentation- System Center & the modern datacenter
Systemology presentation- System Center & the modern datacenter
 
Gain Insights, Make Decisions, and Take Action Across a Streamlined and Autom...
Gain Insights, Make Decisions, and Take Action Across a Streamlined and Autom...Gain Insights, Make Decisions, and Take Action Across a Streamlined and Autom...
Gain Insights, Make Decisions, and Take Action Across a Streamlined and Autom...
 
VMware and Puppet: How to Plan, Deploy & Manage Modern Applications
VMware and Puppet: How to Plan, Deploy & Manage Modern ApplicationsVMware and Puppet: How to Plan, Deploy & Manage Modern Applications
VMware and Puppet: How to Plan, Deploy & Manage Modern Applications
 
VMworld 2013: Extend VMware’s Cloud Automation Solution with vCenter Orchestr...
VMworld 2013: Extend VMware’s Cloud Automation Solution with vCenter Orchestr...VMworld 2013: Extend VMware’s Cloud Automation Solution with vCenter Orchestr...
VMworld 2013: Extend VMware’s Cloud Automation Solution with vCenter Orchestr...
 
vCAC and VMware SDE
vCAC and VMware SDEvCAC and VMware SDE
vCAC and VMware SDE
 
Private cloud for_partners
Private cloud for_partnersPrivate cloud for_partners
Private cloud for_partners
 
VMworld 2013: Architecting the Software-Defined Data Center
VMworld 2013: Architecting the Software-Defined Data Center VMworld 2013: Architecting the Software-Defined Data Center
VMworld 2013: Architecting the Software-Defined Data Center
 
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
VMworld 2013: Keep it Simple and Integrated - Out-of the Box Cross-System Aut...
 
New ThousandEyes Product Features and Release Highlights: July 2023
New ThousandEyes Product Features and Release Highlights: July 2023New ThousandEyes Product Features and Release Highlights: July 2023
New ThousandEyes Product Features and Release Highlights: July 2023
 
Wipro's Compliance as a Service [CAAS]
Wipro's Compliance as a Service [CAAS]Wipro's Compliance as a Service [CAAS]
Wipro's Compliance as a Service [CAAS]
 
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
VMworld 2013: How to Build a Hybrid Cloud in Less than a Day
 
VMworld 2016 Recap
VMworld 2016 RecapVMworld 2016 Recap
VMworld 2016 Recap
 
VAS - VMware CMP
VAS - VMware CMPVAS - VMware CMP
VAS - VMware CMP
 
VMworld 2013: Architectural Changes in vCenter Platform
VMworld 2013: Architectural Changes in vCenter Platform VMworld 2013: Architectural Changes in vCenter Platform
VMworld 2013: Architectural Changes in vCenter Platform
 

More from VMworld

More from VMworld (20)

VMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep DiveVMworld 2016: vSphere 6.x Host Resource Deep Dive
VMworld 2016: vSphere 6.x Host Resource Deep Dive
 
VMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for HorizonVMworld 2016: Troubleshooting 101 for Horizon
VMworld 2016: Troubleshooting 101 for Horizon
 
VMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSXVMworld 2016: Advanced Network Services with NSX
VMworld 2016: Advanced Network Services with NSX
 
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco InfrastructureVMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
VMworld 2016: How to Deploy VMware NSX with Cisco Infrastructure
 
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI AutomationVMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
VMworld 2016: Enforcing a vSphere Cluster Design with PowerCLI Automation
 
VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7VMworld 2016: What's New with Horizon 7
VMworld 2016: What's New with Horizon 7
 
VMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep DiveVMworld 2016: Virtual Volumes Technical Deep Dive
VMworld 2016: Virtual Volumes Technical Deep Dive
 
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
VMworld 2016: Advances in Remote Display Protocol Technology with VMware Blas...
 
VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations! VMworld 2016: The KISS of vRealize Operations!
VMworld 2016: The KISS of vRealize Operations!
 
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
VMworld 2016: Getting Started with PowerShell and PowerCLI for Your VMware En...
 
VMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts PanelVMworld 2016: Ask the vCenter Server Exerts Panel
VMworld 2016: Ask the vCenter Server Exerts Panel
 
VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way! VMworld 2016: Virtualize Active Directory, the Right Way!
VMworld 2016: Virtualize Active Directory, the Right Way!
 
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
VMworld 2016: Migrating from a hardware based firewall to NSX to improve perf...
 
VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6VMworld 2015: Troubleshooting for vSphere 6
VMworld 2015: Troubleshooting for vSphere 6
 
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
VMworld 2015: Monitoring and Managing Applications with vRealize Operations 6...
 
VMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphereVMworld 2015: Advanced SQL Server on vSphere
VMworld 2015: Advanced SQL Server on vSphere
 
VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!VMworld 2015: Virtualize Active Directory, the Right Way!
VMworld 2015: Virtualize Active Directory, the Right Way!
 
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
VMworld 2015: Site Recovery Manager and Policy Based DR Deep Dive with Engine...
 
VMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SANVMworld 2015: Building a Business Case for Virtual SAN
VMworld 2015: Building a Business Case for Virtual SAN
 
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes ConfigurationsVMworld 2015: Explaining Advanced Virtual Volumes Configurations
VMworld 2015: Explaining Advanced Virtual Volumes Configurations
 

Recently uploaded

+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 

Recently uploaded (20)

Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 

VMworld 2013: How to Identify if Your vSphere Environment is Configured to Meet Your Internal IT Standards

  • 1. How to Identify if Your vSphere Environment is Configured to Meet Your Internal IT Standards Becky Smith, VMware VCM4981 #VCM4981
  • 2. 22 Agenda  Introduction to vCenter Operations Suite  vSphere Configuration and Compliance challenges in the Cloud  Addressing these challenges with vCenter Configuration Manager (vCM): • Integrated Virtual and Cloud Infrastructure • Automated Operations
  • 3. 33 VMware Cloud Management Multiplatform Hybrid Multi-provider Broker of IT Services VMware simplifies and automates IT management and empowers IT to govern services across multiple platforms and providers CIO Turn management into manageability through intelligent, policy-based automation The VMware Approach
  • 4. 44 VMware Cloud Management – Key Solution Areas Automate the delivery of infrastructure, applications and desktops as a service across multiple clouds and platforms. Cloud Operations Manage the health, risk, efficiency and compliance of your infrastructure and applications. Cloud Business Govern and manage cloud services as a critical element of running IT like a business.  Intelligent operations  Policy-based automation  Unified management  Financial transparency  Industry norms  Prescriptive guidance  Automate everywhere  Policy-based control and governance  Choice and flexibility
  • 5. 55 Cloud Operations – vCenter Operations Management Suite • Prebuilt and configurable operations dashboards provide real-time insight into infra. behavior • Self-learning performance analytics and dynamic thresholds enable early problem detection • Policy-based config mgmt ensures continuous compliance • Capacity management optimizes resource usage • Application discovery, monitoring and dependency mapping enable enterprise-wide visibility Benefits Overview Right Now Future Focused vCenter Operations Management Suite Sources: *Forrester, “The Total Economic Impact of VMware vCenter Operations Management Suite” Dec 2012; **Management Insights Customer Survey, September 2012 Integrated performance, capacity and configuration management • Higher quality of service, fewer incidents and less downtime of infra and app services • 67% IT productivity gain from simplified performance, incident & change mgmt tasks* • 30% reduction in server CapEx from rightsizing and reclaiming over-provisioned capacity* • 60% increase in VMs managed by a single VI admin**
  • 6. 66 Cloud Operations Management Value 36% reduction in application downtime 26% reduction in diagnostics and problem resolution time 40% improvement in VMware capacity utilization 37% improvement in consolidation ratios 30% increase in hardware savings 60% increase in administrator productivity 50% total IT cost savings in combination with vSphere Source: Management Insights Customer Survey, September 2012
  • 7. 77 vCenter Operations Management Suite Integrated Management Disciplines VMware’s Approach to Cloud Operations Management Automated Operations Management for Cloud Infrastructure Cloud Operations Console Performance Patented Analytics Capacity App visibility Reporting LogsInventory Automation Extensibility Cost APIs SDKs 3rd Party adapters Content Packs ComplianceConfig
  • 8. 88 Customer Configuration and Compliance Concerns We have fully embraced vSphere but ensuring compliance with internal best practices consumes massive amounts of my teams time. We lack visibility into our cloud and the increased velocity of change has made our change management process extremely challenging.
  • 9. 99 Cross-cloud Compliance Governance Govern, automate and enforce compliance in the cloud:  For each cloud: create separate groups, configure compliance templates, collect data for every managed system and remediate compliance breaches. Configure separate compliance templates for each cloud Track compliance results for each cloud
  • 10. 1010 Integrated Virtual and Cloud Infrastructure Configuration and Compliance Management
  • 11. 1111 Configuration Management – Across Virtual Infrastructure  Configurations for the entire virtual infrastructure • Across Multiple vCenters & vCloud Directors  1,000’s of Settings and Configurations collected for: • vCenter • vSphere Hosts & Guests • Virtual Network & Storage • vCloud Director • vShield Fix settings across multiple vCenters & ESX(i) servers at once
  • 12. 1212 Configuration Management – Simplified Visualization  vSphere Host Summary Dashboard • Provides overall vSphere Hosts Configuration Summary State of the Hosts Makeup of the Environment Host Compliance Posture Drill in for Details VI Admin: “What is the status of my HOSTS in my environment? Is it what I expect?”
  • 13. 1313 Configuration Management – Simplified Visualization  vSphere Guest Summary Dashboard • Provides overall VM Configuration/Status Summary across vCenters Accurate OS Counts VM Tool Status VM Compliance Posture Drill in for Details VI Admin: “How do I see visibility of at a glance guest configurations to find variants?”
  • 14. 1414 Create Internal IT Best Practice Standards  vCM Compliance Management • Build compliance rules that meet your internal standards • Across multiple vCenters and vCDs VI & vCD Admins: “How can I be made aware of unwanted change? Drive MY Best Practices” Create simple rules Rule Groups span your IT Best Practices Severity
  • 15. 1515 Virtual Environment Compliance Posture  Virtual Compliance Dashboard • Assess compliance status across vSphere & vCD environments • vCenters, Clusters, Hosts, Datastores, VMs, vCD Orgs, vDCs & vApps Latest Compliance Results VI & vCD Admins + Security Teams: “Is my Virtual Infrastructure compliant?”  View Results in VI context • Data Centers • Clusters • vCD Orgs • vShield Security Groups
  • 16. 1616 Out of the Box Standards Compliance  Center for Policy and Compliance  Out of the Box Templates • Use as is • Leverage to start your Internal Standards • Use in Conjunction with your Internal Standards VI & vCD Admins + Security Teams: “How can quickly I meet industry standards and guidelines?” Compliant VI vSphere Hardening Guides vCM Best Practices DISA ESX PCI DSS 2.0 for vSphere/ESX ISO 27002 - vSphere Basel III - vSphere CIS for ESX FISMA ESX GLBA ESX HIPAA ESX SOX ESX View Hardening Guidelines
  • 17. 1818 Let’s Walk Through a Specific Example
  • 18. 1919 Detect an Unwanted Change in Host Configuration  Quickly understand what has changed • Date, Machine, Data Type  Uncover unwarranted virtual environment changes • SyslogDir, SyslogDirUnique, SyslogHost Incorrect Syslog settings Search for vSphere Host
  • 19. 2020 Understand the Scope of Change  Are these misconfigurations prevalent? • Check settings on ALL hosts in the environment at once • Use column grouping to understand where problems lie Incorrect settings exist View across multiple hosts and vCenters
  • 20. 2121 Remediate Mis-configuration Across All Hosts  Change incorrect ESX settings from within vCM • Run on multiple hosts across multiple vCenters at once Change ESX Hosts Settings Change across multiple hosts and vCenters
  • 21. 2222 Verify and Audit the Change  vCM verifies changes were successful  Confirm or track changes by • User, Date, Machine, Data Type  vCM initiated changes include User information Users Tracked Times Tracked Select Date
  • 22. 2323 Proactively Guard Against Future Unwanted Changes Create IT Compliance to drive your IT Internal Standards Create new Compliance Rule Chose Data Type 1,000s of Data Points Build Compliance Rule
  • 24. 2525 Compliance Visibility in Operations  Overview • Roll up Hardening and Compliance Status into Risk Score • Launch vCM in context to remediate out of Compliance systems  Benefits • Enable Operations to standardize on system configurations and quickly know when they change Drill into vCM for details and to fix violations Compliance Score as part of Operational Risk
  • 26. 2727 A Variety of Personas Can Benefit from VCM  Infrastructure Admins • Templatize configuration settings for vSphere Hosts and vCenters. Replicate settings from POC to Production. • Consolidate configuration and execute large scale change operations across multiple vCenters and Hosts • Use compliance to ensure internal and external standards for vSphere systems  Security Admins • Define Internal Hardening and Regulatory Compliance (HIPAA, PCI, etc) for vSphere • Report on compliance status and recommend remediation for non-compliance
  • 27. 2828 VCM Supports Private, Public and Hybrid Cloud Models  Benefits • vSphere change management and compliance assurance for both Consumer and Provider • Ability to leverage the cloud for compliant sensitive work loads • Ability to manage guests across Clouds • Guest compliance • Patching • Change management vSphere DMZ HIPAA Private Cloud Public Cloud vSphere Consumer Provider VMware Compliance visibility across owned infrastructure and all guests Compliance visibility across owned infrastructure
  • 28. 2929 vCenter Operations Management Suite Integrated Management Disciplines VMware’s Approach to Cloud Operations Management Automated Operations Management for Cloud Infrastructure Cloud Operations Console Performance Patented Analytics Capacity App visibility Reporting LogsInventory Automation Extensibility Cost APIs SDKs 3rd Party adapters Content Packs ComplianceConfig
  • 30. 3232 Other VMware Activities Related to This Session  HOL: HOL-SDC-1315 vCloud Suite Use Cases - Control & Compliance  Group Discussions: VCM1002-GD, VCM1004-GD Cloud Operations with Hicham Mourad or Sam McBride
  • 32.
  • 33. How to Identify if Your vSphere Environment is Configured to Meet Your Internal IT Standards Becky Smith, VMware VCM4981 #VCM4981