Enable browser cookies for improved site capabilities and performance.
Toggle Menu
Insights > Network Visibility + Security
Related Tags
- #Cloud
- #Packet Brokers
- #Performance Monitoring
- #Cybersecurity
- #Network Security
- #Network Visibility
- #Network Analyzers
- #Data Privacy
- #Software
- #CloudLens
- #Network Taps
- #Cloud Test
- #Test Automation
- #Network Test
- #SDN + NFV
- #Internet of Things
- #Industry Trends
- #Bypass Switches
- #Government
- #Healthcare
- #Network Analysis Apps
- #Data Center Infrastructure
- #Hawkeye
- © Keysight Technologies 2000–2023
Christophe Olivier
Sr. Product Manager – Network Visibility & Virtualization Solutions
Network Visibility + Security
CloudLens – East-West visibility in Nutanix Ecosystems & Integration with Nutanix AHV
2020-07-01 | 5 min read
Nutanix Hyperconverged Infrastructure (HCI).png)
When it comes to virtualization and private cloud, Nutanix is a name which is gaining momentum. The Nutanix story started with hardware, as the precursor of hyperconverged infrastructure or HCI, the combination of compute, storage and networking in the same appliance to ease deployment and scaling of data centers. Nutanix was initially tightly coupled with VMware ESXi that provided the virtualization layer.
The focus evolved to transition from hardware to an intelligent software HCI solution, with the purpose to simplify the life of the IT administrator, by hiding the complexity of managing compute, storage and networking resources; allowing them to focus on their core business applications. This transition started with the introduction of the Acropolis Hypervisor (AHV), a custom implementation of the KVM hypervisor, as an alternative to VMware ESXi commonly used until then by Nutanix customers.
Since then, the AHV ecosystem has matured, making it an appealing solution for customers building their own cloud infrastructure. New features, coupled with a monetary advantage, resulted in about half of Nutanix customers now using Acropolis (AHV) virtualization platform. However, a cloud infrastructure cannot live without a strong visibility solution to monitor and prevent security threats. Also, virtualized environments, whatever they are, need appropriate visibility solutions, to monitor the east-west activity between virtual workloads (servers, applications) which can run in VMs and/or containers.
Visibility in Nutanix AHV environments
It made sense for Keysight to extend CloudLens, a key component of its Virtual Visibility Fabric solution for virtual environments, to offer some integration with the Nutanix Ecosystem.
Today, a Nutanix customer in need of east-west network traffic visibility has several options, the solution will mostly depend on the running hypervisor.
Sensor vTaps are usually used with older versions of AHV which did not offer the redirection option. In this post I am focusing on the 2nd option that leverages the Acropolis packet redirection feature.
The Solution Nutanix and Ixia/Keysight Virtual Visibility Fabric
By deploying the Ixia Virtual Visibility Fabric in Nutanix environments, customers can remove blind spots in their virtual ecosystem by getting the critical network data from the virtual infrastructure, processing it for optimization, and “feeding” their monitoring and analyzing tools with raw network packets or flow information. In short, they can provide the right data to the right tools.
Into the details
The Nutanix certified CloudLens solution is deployed as a Service Virtual Machine (SVM) in the host that needs to be monitored (1 SVM per host). The SVM is integrated in the AHV service chain and receives the redirected traffic from the hypervisor.
The SVM can filter the traffic before forwarding it to an aggregation point (physical or virtual) via a GRE tunnel. Today, aggregation is typically done on Keysight Vision network packet brokers (NPB) which is part of the Ixia Visibility Fabric architecture.
The NPB provides additional packet processing, filtering, deduplication, as well as deep packet inspection (DPI) for layer 7 – Application level visibility and can generate NetFlow/IxFlow (IPFIX enhanced NetFlow which provides multiple additional fields) metadata information to be used by SIEMs and NetFlow collectors.
See below a high-level representation of the solution.
Integration and Workflow
For a better understanding of the implementation, the diagram below represents the workflow of the CloudLens integration in the Nutanix service chain architecture.
Beside integrating with Nutanix AHV, Ixia CloudLens can help you deploy network visibility solutions for other virtualized environments, from datacenters running VMware, KVM, Microsoft, to public cloud environments, AWS, Azure, Google Cloud.
For more information about Ixia CloudLens visibility solution, please visit: https://ixia.keysight.com/products/cloudlens-private
Related Posts
Network Visibility + Security
A Quick Look into ChatGPT's Network Traffic
Anubhab Sahu 2023.02.22
5 min read
#Network Security #Network Visibility #Data Privacy
Network Visibility + Security
KRPC Protocol: The Language of Torrent Peers
RAKESH SEAL 2023.01.31
14 min read
#Network Security #Network Analysis Apps #Network Test #Network Visibility
Network Visibility + Security
Deploying Connected Devices with Confidence
Scott Register 2022.10.20
5 min read
#Cybersecurity #Internet of Things #Network Security #Network Visibility