VMware NSX and vRA - how to make vRA compliant with your NSX system-wide security guardrails
Автор: Anders Krus
Загружено: 2023-01-16
Просмотров: 970
Hands-on demo to show how you can use Negated Blocking to create a system-wide security posture in NSX-T, and have vRA (vRealize Automation aka VMware Aria Automation) to deploy into it.
Speakers:
Anders Krus, VMware
Lars Olsson, VMware
Negated Blocking is a well-known approach to create an iterative policy rule-set in VMware NSX, that bit by bit creates system-wide guardrails within your virtual datacenter.
It is the NSX Security Admin that creates the system guardrails. vRA as an authorized system creates deployment separation. The vRA consumer may influence ingress, but only within the guardrails.
Index:
00:28 ”Negated Blocking” explained
05:08 NW topology overview
06:12 Blocking dimensions overview
15:44 vRA setup overview
18:09 Confirm dynamic security groups deployed from vRA
19:43 Expected behavior verification
22:30 Launch of second deployment
26:50 vRA Extensibility python script explained
28:02 vRA Consumer Day-2 action example
31:41 vRA Deployment cleanup
33:36 Making security dimensions mandatory
36:01 Bye
Github: (kudos to Lars Olsson)
https://github.com/larols/vmware-aria...
Доступные форматы для скачивания:
Скачать видео mp4
-
Информация по загрузке: