VMware NSX: Install, Configure, Manage [V4.0]
COD: NSXICM40
Categorie: VMware NSX
• NSX 4.0.0.1
• NSX 4.0.1
Metodologia didattica
Il corso prevede laboratori didattici in cui ciascuno studente potrà lavorare ai fini di portare a termine esercizi formativi che forniranno esperienza pratica nell’utilizzo dello strumento, per ciascuno degli argomenti affrontati durante il corso.
Prerequisiti:
- Buona conoscenza dei servizi e dei protocolli TCP/IP.
- Conoscenza ed esperienza lavorativa delle reti informatiche, comprese le tecnologie di switching e routing (da L2 a L3) e i firewall da L2 a L7.
- Conoscenza ed esperienza lavorativa con gli ambienti VMware vSphere®.
- Conoscenza ed esperienza lavorativa con Kubernetes o VMware vSphere® con ambienti VMware Tanzu®.
Solida comprensione dei concetti presentati nei seguenti corsi:
- VMware Virtual Cloud Network Core Technical Skills
- VMware Data Center Virtualization: Core Technical Skills
- Kubernetes Fundamentals
Conoscenze/Competenze in uscita
Al termine del corso, dovreste essere in grado di raggiungere i seguenti obiettivi:
- Descrivere l’architettura e i componenti principali di NSX.
- Spiegare le caratteristiche e i vantaggi di NSX
- Implementare il cluster di gestione NSX e i nodi VMware NSX® Edge™.
- Preparare gli host VMware ESXi™ a partecipare alla rete NSX.
- Creare e configurare i segmenti per l’inoltro di livello 2.
- Creare e configurare gateway Tier-0 e Tier-1 per il routing logico.
- Utilizzare criteri firewall distribuiti e gateway per filtrare il traffico est-ovest e nord-sud in NSX.
- Configurare le funzionalità di prevenzione avanzata delle minacce
- Configurazione dei servizi di rete sui nodi NSX Edge
- Utilizzare VMware Identity Manager™ e LDAP per gestire utenti e accessi.
- Spiegare i casi d’uso, l’importanza e l’architettura di Federation
Programma didattico
1 Course Introduction
• Introductions and course logistics
• Course objectives
2 VMware Virtual Cloud Network and VMware NSX
• Introduce the VMware Virtual Cloud Network vision
• Describe the NSX product portfolio
• Discuss NSX features, use cases, and benefits
• Explain NSX architecture and
components
• Explain the management, control, data, and consumption planes and their functions.
3 Preparing the NSX Infrastructure
• Deploy VMware NSX® ManagerTM nodes on ESXi hypervisors
• Navigate through the NSX UI
• Explain data plane components such as
N-VDS/VDS, transport nodes, transport zones, profiles, and more
• Perform transport node preparation and configure the data plane infrastructure
• Verify transport node status and connectivity
• Explain DPU-based acceleration in NSX
• Install NSX using DPUs
4 NSX Logical Switching
• Introduce key components and terminology in logical switching
• Describe the function and types of L2 segments
• Explain tunneling and the Geneve encapsulation
• Configure logical segments and attach hosts using NSX UI
• Describe the function and types of segment profiles
• Create segment profiles and apply them to segments and ports
• Explain the function of MAC, ARP, and TEP tables used in packet forwarding
• Demonstrate L2 unicast packet flow
• Explain ARP suppression and BUM traffic handling
5 NSX Logical Routing
• Describe the logical routing function and use cases
• Introduce the two-tier routing architecture, topologies, and components
• Explain the Tier-0 and Tier-1 gateway functions
• Describe the logical router components: Service Router and Distributed Router
• Discuss the architecture and function of NSX Edge nodes
• Discuss deployment options of NSX Edge nodes
• Configure NSX Edge nodes and create NSX Edge clusters
• Configure Tier-0 and Tier-1 gateways
• Examine single-tier and multitier packet flows
• Configure static routing and dynamic routing, including BGP and OSPF
• Enable ECMP on a Tier-0 gateway
• Describe NSX Edge HA, failure detection, and failback modes
• Configure VRF Lite
6 NSX Bridging
• Describe the function of logical bridging
• Discuss the logical bridging use cases
• Compare routing and bridging solutions
• Explain the components of logical bridging
• Create bridge clusters and bridge profiles
7 NSX Firewalls
• Describe NSX segmentation
• Identify the steps to enforce Zero-Trust with NSX segmentation
• Describe the Distributed Firewall architecture, components, and function
• Configure Distributed Firewall sections and rules
• Configure the Distributed Firewall on VDS
• Describe the Gateway Firewall architecture, components, and function
• Configure Gateway Firewall sections and rules
8 NSX Advanced Threat Prevention
• Explain NSX IDS/IPS and its use cases
• Configure NSX IDS/IPS
• Deploy NSX Application Platform
• Identify the components and architecture of NSX Malware Prevention
• Configure NSX Malware Prevention for east-west and north-south traffic
• Describe the use cases and architecture of VMware NSX® Intelligence™
• Identify the components and architecture of VMware NSX® Network Detection and Response™
• Use NSX Network Detection and Response to analyze network traffic events.
9 NSX Services
• Explain and configure Network Address Translation (NAT)
• Explain and configure DNS and DHCP services
• Describe VMware NSX® Advanced Load Balancer™ architecture, components, topologies, and use cases.
• Configure NSX Advanced Load Balancer
• Discuss the IPSec VPN and L2 VPN function and use cases
• Configure IPSec VPN and L2 VPN using the NSX UI
10 NSX User and Role Management
• Describe the function and benefits of VMware Identity Manager™ in NSX
• Integrate VMware Identity Manager with NSX
• Integrate LDAP with NSX
• Identify the various types of users, authentication policies, and permissions
• Use role-based access control to restrict user access
• Explain object-based access control in NSX
11 NSX Federation
• Introduce the NSX Federation key concepts, terminology, and use cases.
• Explain the onboarding process of NSX Federation
• Describe the NSX Federation switching and routing functions.
• Describe the NSX Federation security concepts.
Durata – 5 giorni
Erogazione – in Aula, On Site, Remoto
Requisiti PC e SW:
- Connessione Internet
- Web browser, Google Chrome
- Zoom
Language
Trainer: Italiano
Labs: Inglese
Slides: Inglese