Welcome!

Microservices Expo Authors: Jyoti Bansal, Mehdi Daoudi, Elizabeth White, Yeshim Deniz, Dan Blacharski

Related Topics: Containers Expo Blog, Java IoT, Microservices Expo, Microsoft Cloud, Open Source Cloud, @CloudExpo

Containers Expo Blog: Article

VDI: Balancing the Efficiencies and Challenges of the New Network

The factors enterprise IT departments must consider when evaluating if and when to bring on a VDI solution

Enterprise IT has experienced a rapid evolution over the past few years. Cloud has revolutionized storage and brought with it a host of new and emerging information security challenges. Consumer adoption of mobile technology has forced enterprise networks to operate in a multi-platform environment in which the technology is largely selected, procured, and controlled without the advice or consent of IT. Of the many lessons learned in recent years, perhaps the most crucial is that IT must take a proactive approach to adopting emerging technologies, rather than being forced to react to and mitigate the inevitable fire drills. Of the transformative technologies now gaining traction in the enterprise, Virtual Desktop Infrastructure (VDI) has stayed relatively under the radar, but is nonetheless poised to play an integral role in the ongoing IT evolution. This article will discuss the benefits of integrating VDI into the new data center, and the factors enterprise IT departments must consider when evaluating if and when to bring on a VDI solution.

While the origins of virtualization reside in the drive for server consolidation, VDI is fast becoming a staple in the new data center. Today's evolving network takes virtualization well beyond servers to a means of centralizing IT, beginning with desktop PCs and expanding to encompass the wireless computing devices proliferating throughout the enterprise, including smartphones and tablets. The expansive adoption is evident in the numbers. According to a report published in September 2012 by VisionGain titled "The Cloud-Based Virtual Desktop Infrastructure Market 2012-2017,"the VDI market was expected to grow to $11.2 billion by the end of 2012.

The advantages of VDI, particularly for large enterprises, are clear. For one, VDI solutions reduce desktop support and management costs by bringing a wide array of devices and operating systems into a single control solution. For another, they also enable energy saving and green initiatives by lower overall energy requirements of virtual desktops. Moreover, VDI offers business continuity and disaster recovery capabilities as well as a means to secure data in the data center, which is paramount when meeting compliance and security regulations.

Progressive IT departments at colleges, law firms and retail establishments have quickly caught on to the potential of VDI to radically streamline enterprise networking. The business and technical efficiencies involved with VDI are relatively simple and straightforward in exchange for the significant improvements VDI can deliver to network manageability, security and energy efficiency.

Before an enterprise undertakes the transformation to VDI, however, data center managers must understand the potential network impact from a performance standpoint, while maintaining key criteria such as cost savings, delivery of multiple converged services, and power efficiency.

VDI Deployments and Network Security
Network security is of paramount importance in today's business environment, and the emergence of VDI in the network has enhanced today's security, namely network identity, by simplifying, centralizing and driving security within the network rather than the PC OS. Security for yesterday's network meant complex "application layer" elements of sign-on security such as LDAP directories, strong authentication, and Single Sign-On (SSO) systems. With the VDI network, traditional operating systems are eliminated, but IT must still require and implement user log on, secure policies, visibility and monitoring in order to ensure security across the network.

The Energy Efficient Network
The amount of energy consumed by data centers is enormous, and growing in tandem with the burgeoning amounts of electronic data being created and stored by enterprises the world over. At the same time, enterprises are increasingly called to task to demonstrate their Corporate Social Responsibility (CSR), one aspect of which is reducing their carbon footprint. The efficiency of the networking equipment deployed therefore directly impacts a data center's ‘green' credentials. As energy costs rise and CSR gains public and government mindshare, reducing energy consumption has become a focal point for many enterprises, and VDI plays an integral role in this process. By centralizing resources and bringing in much higher speeds at the port level, VDI significantly improves the energy efficiency of the network. Rather than deploying multiple tiers and distributed Gigabit Ethernet LANs, suddenly the horsepower is consolidated into a single core layer providing the bandwidth necessary for all VDI connections. This allows much higher density 10 Gigabit Ethernet port modules on chassis type switches to easily collapse all traffic into just a few network switches. VDI implementations also contribute to energy savings at the device level. By enabling IT to easily manage smartphones and tablets operating on multiple platforms, energy-gobbling desktops can be replaced with these smaller, more energy efficient mobile devices. In the end, VDI is highly efficient, more powerful and easier for IT to manage.

Converging Voice and Video for VDI Deployments
Once the considerations for bandwidth and system centralization have been addressed, the issue of carrying converged media (mixed voice, video and data) comes to the fore. Just like traditional networks, the VDI network backbone still must handle convergence flawlessly so that all users have a consistent, predictable experience. Critical activities such as IP phone calls and collaboration, e-learning activities using IP video, customer call centers, to name but a few, all depend on the network for a seamless, quality experience, and when implementing a VDI solution, IT must ensure that this remains and priority. In order to ensure this consistency and predictability, the network has to not only be equipped with 10 Gigabit and Gigabit to the edge, it also needs the intelligence, Quality of Service (QoS) and ultra-low latency switching, to seamlessly deliver voice and video traffic to users based on predetermined priorities.

Maintaining and Enhancing Security for Enterprise VDI Deployments
As enterprise networks increasingly adopt virtualization technology, there is a growing demand on IT to successfully meet the networking challenges posed by a highly dynamic virtual environment. On the one hand, VDI is a superior tool enabling users to access the network via multiple mobile and computing devices operating on multiple platforms and operating systems. On the other, this diversified access creates an environment in which policy and identity management are paramount network security considerations since users can connect to the data center from any location using a variety of devices. Just as old networks were unable to handle the growing number of connecting devices, the access management and lack of identity features with old networks won't be up to par in the new virtual landscape.

Recognizing this security challenge, more and more secure government facilities are using advanced identity management to ensure compliance and security when using VDI, setting the stage for similar deployments in the private sector with large mobile workforces. Identity-aware networking, defined by Enterprise Strategy Group as "a policy-based network architecture that understands and acts upon the identity and location of users and devices," will be the solution du jour for private sector business looking to securely deploy VDI.

Identity-aware networking is an integration effort where the network gathers information from multiple existing sources then enables IT managers to use this data to build and enforce access policies. The best-of-breed network has the intelligence to dynamically collect and update information about users, devices, and location as the users connect to the VDI infrastructure and just as important, enforce policies once they are on the network. The business, regulatory compliance, and security ROI benefits available with the identity-aware network become the new norm, carrying the burden away from those that had to maintain application-layer security.

Network-based identity for VDI is associated with things like IP and MAC addresses, VLAN tags, and subnets that play a role in device authentication, VPNs, and IPSEC. With VDI, network layer security takes over. It is based on a number of inputs, including the user-id and role of the user, specific device characteristics and capabilities, and user/device location. Identity-aware networking wants to know if the user is logging on from a trusted or untrusted network, or whether a user is accessing the network from a wired port or over Wi-Fi. Furthermore, network access policies may need to change from one location within a facility to the next.

With most deployments, the IT department will strive to meet the needs of varying mobile users and disparate devices. At the network level, more granular network access policies based upon user roles, device types, and physical locations are required. The network then has to scale bandwidth, handle converged communications appropriately and bring network layer security policy that is not tied to any single device or application.

There are significant advantages to VDI, including a more centralized streamlined, and energy efficient network, but before implementing VDI, enterprise IT must ensure that the necessary protocols are in place to preserve network security in this new virtual environment. VDI demands an identity approach and a more aware network in order to satisfy security and compliance requirements. Only when data center managers closely examine the network's role in meeting key criteria such as cost savings, power efficiency, user and device identity, and ease-of-use can VDI truly progress towards becoming a new norm in computing.

More Stories By Sameer Mohile

Sameer Mohile is a senior software product manager at Extreme Networks where he leads the product direction and strategic planning for Data Center and Mobile Backhaul markets. He has over 12+ years of expertise in the networking and collaboration industry and is certified Agile Product Owner with deep experience leading cross-functional teams. Prior to his position at Extreme Networks, Sameer held positions as marketing product manager and technical marketing engineer at Cisco Systems. He holds a Masters in Computer Networking from North Carolina State University and an MBA with a specialization in product marketing from the University of North Carolina Kenan-Flagler Business School.

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


@MicroservicesExpo Stories
Is your application too difficult to manage? Do changes take dozens of developers hundreds of hours to execute, and frequently result in downtime across all your site’s functions? It sounds like you have a monolith! A monolith is one of the three main software architectures that define most applications. Whether you’ve intentionally set out to create a monolith or not, it’s worth at least weighing the pros and cons of the different architectural approaches and deciding which one makes the most s...
A Man in the Middle attack, or MITM, is a situation wherein a malicious entity can read/write data that is being transmitted between two or more systems (in most cases, between you and the website that you are surfing). MITMs are common in China, thanks to the “Great Cannon.” The “Great Cannon” is slightly different from the “The Great Firewall.” The firewall monitors web traffic moving in and out of China and blocks prohibited content. The Great Cannon, on the other hand, acts as a man in the...
Enterprise architects are increasingly adopting multi-cloud strategies as they seek to utilize existing data center assets, leverage the advantages of cloud computing and avoid cloud vendor lock-in. This requires a globally aware traffic management strategy that can monitor infrastructure health across data centers and end-user experience globally, while responding to control changes and system specification at the speed of today’s DevOps teams. In his session at 20th Cloud Expo, Josh Gray, Chie...
Cloud Expo, Inc. has announced today that Aruna Ravichandran, vice president of DevOps Product and Solutions Marketing at CA Technologies, has been named co-conference chair of DevOps at Cloud Expo 2017. The @DevOpsSummit at Cloud Expo New York will take place on June 6-8, 2017, at the Javits Center in New York City, New York, and @DevOpsSummit at Cloud Expo Silicon Valley will take place Oct. 31-Nov. 2, 2017, at the Santa Clara Convention Center in Santa Clara, CA.
Cloud promises the agility required by today’s digital businesses. As organizations adopt cloud based infrastructures and services, their IT resources become increasingly dynamic and hybrid in nature. Managing these require modern IT operations and tools. In his session at 20th Cloud Expo, Raj Sundaram, Senior Principal Product Manager at CA Technologies, will discuss how to modernize your IT operations in order to proactively manage your hybrid cloud and IT environments. He will be sharing be...
When you decide to launch a startup company, business advisors, counselors, bankers and armchair know-it-alls will tell you that the first thing you need to do is get funding. While there is some validity to that boilerplate piece of wisdom, the availability of and need for startup funding has gone through a dramatic transformation over the past decade, and the next few years will see even more of a shift. A perfect storm of events is causing this seismic shift. On the macroeconomic side this ...
To more closely examine the variety of ways in which IT departments around the world are integrating cloud services, and the effect hybrid IT has had on their organizations and IT job roles, SolarWinds recently released the SolarWinds IT Trends Report 2017: Portrait of a Hybrid Organization. This annual study consists of survey-based research that explores significant trends, developments, and movements related to and directly affecting IT and IT professionals.
NHK, Japan Broadcasting, will feature the upcoming @ThingsExpo Silicon Valley in a special 'Internet of Things' and smart technology documentary that will be filmed on the expo floor between November 3 to 5, 2015, in Santa Clara. NHK is the sole public TV network in Japan equivalent to the BBC in the UK and the largest in Asia with many award-winning science and technology programs. Japanese TV is producing a documentary about IoT and Smart technology and will be covering @ThingsExpo Silicon Val...
This recent research on cloud computing from the Register delves a little deeper than many of the "We're all adopting cloud!" surveys we've seen. They found that meaningful cloud adoption and the idea of the cloud-first enterprise are still not reality for many businesses. The Register's stats also show a more gradual cloud deployment trend over the past five years, not any sort of explosion. One important takeaway is that coherence across internal and external clouds is essential for IT right n...
Back in February of 2017, Andrew Clay Schafer of Pivotal tweeted the following: “seriously tho, the whole software industry is stuck on deployment when we desperately need architecture and telemetry.” Intrigue in a 140 characters. For me, I hear Andrew saying, “we’re jumping to step 5 before we’ve successfully completed steps 1-4.”
In his session at 20th Cloud Expo, Scott Davis, CTO of Embotics, will discuss how automation can provide the dynamic management required to cost-effectively deliver microservices and container solutions at scale. He will discuss how flexible automation is the key to effectively bridging and seamlessly coordinating both IT and developer needs for component orchestration across disparate clouds – an increasingly important requirement at today’s multi-cloud enterprise.
Keeping pace with advancements in software delivery processes and tooling is taxing even for the most proficient organizations. Point tools, platforms, open source and the increasing adoption of private and public cloud services requires strong engineering rigor – all in the face of developer demands to use the tools of choice. As Agile has settled in as a mainstream practice, now DevOps has emerged as the next wave to improve software delivery speed and output. To make DevOps work, organization...
Today we can collect lots and lots of performance data. We build beautiful dashboards and even have fancy query languages to access and transform the data. Still performance data is a secret language only a couple of people understand. The more business becomes digital the more stakeholders are interested in this data including how it relates to business. Some of these people have never used a monitoring tool before. They have a question on their mind like “How is my application doing” but no id...
In large enterprises, environment provisioning and server provisioning account for a significant portion of the operations team's time. This often leaves users frustrated while they wait for these services. For instance, server provisioning can take several days and sometimes even weeks. At the same time, digital transformation means the need for server and environment provisioning is constantly growing. Organizations are adopting agile methodologies and software teams are increasing the speed ...
Developers want to create better apps faster. Static clouds are giving way to scalable systems, with dynamic resource allocation and application monitoring. You won't hear that chant from users on any picket line, but helping developers to create better apps faster is the mission of Lee Atchison, principal cloud architect and advocate at New Relic Inc., based in San Francisco. His singular job is to understand and drive the industry in the areas of cloud architecture, microservices, scalability ...
In his general session at 19th Cloud Expo, Manish Dixit, VP of Product and Engineering at Dice, discussed how Dice leverages data insights and tools to help both tech professionals and recruiters better understand how skills relate to each other and which skills are in high demand using interactive visualizations and salary indicator tools to maximize earning potential. Manish Dixit is VP of Product and Engineering at Dice. As the leader of the Product, Engineering and Data Sciences team at D...
Software as a service (SaaS), one of the earliest and most successful cloud services, has reached mainstream status. According to Cisco, by 2019 more than four-fifths (83 percent) of all data center traffic will be based in the cloud, up from 65 percent today. The majority of this traffic will be applications. Businesses of all sizes are adopting a variety of SaaS-based services – everything from collaboration tools to mission-critical commerce-oriented applications. The rise in SaaS usage has m...
The proper isolation of resources is essential for multi-tenant environments. The traditional approach to isolate resources is, however, rather heavyweight. In his session at 18th Cloud Expo, Igor Drobiazko, co-founder of elastic.io, drew upon his own experience with operating a Docker container-based infrastructure on a large scale and present a lightweight solution for resource isolation using microservices. He also discussed the implementation of microservices in data and application integrat...
We'd all like to fulfill that "find a job you love and you'll never work a day in your life" cliché. But in reality, every job (even if it's our dream job) comes with its downsides. For you, the constant fight against shadow IT might get on your last nerves. For your developer coworkers, infrastructure management is the roadblock that stands in the way of focusing on coding. As you watch more and more applications and processes move to the cloud, technology is coming to developers' rescue-most r...
2016 has been an amazing year for Docker and the container industry. We had 3 major releases of Docker engine this year , and tremendous increase in usage. The community has been following along and contributing amazing Docker resources to help you learn and get hands-on experience. Here’s some of the top read and viewed content for the year. Of course releases are always really popular, particularly when they fit requests we had from the community.