VMware Microsegmentation Solution Overview
VMware Microsegmentation Solution Overview
O V E R V I E W
NSX Micro-segmentation
Advanced security inside the data center network
T he S o l u t i o n: V M w a r e N S X & M i c r o- s e g m e n t a t i o n
VMware NSX is a network virtualization platform that for the first time makes microsegmentation economically and operationally feasible. NSX provides the networking
and security foundation for the software-defined data center (SDDC), enabling the
three key functions of micro-segmentation: isolation, segmentation, and segmentation
with advanced services. Businesses gain key benefits with micro-segmentation:
1.
2.
3.
Network security inside the data center: flexible security policies aligned to
virtual network, VM, OS type, dynamic security tag, and more, for granularity of
security down to the virtual NIC.
Automated deployment for data center agility: security policies are applied
when a VM spins up, are moved when a VM is migrated, and are removed when
a VM is deprovisioned no more stale firewall rules.
Integration with leading networking and security infrastructure: NSX is the
platform enabling an ecosystem of partners to integrate adapting to constantly
changing conditions in the data center to provide enhanced security. Best of all,
NSX runs on existing data center networking infrastructure.
VMware, Inc. 3401 Hillview Avenue Palo Alto CA 94304 USA Tel 877-486-9273 Fax 650-427-5001 www.vmware.com
Copyright 2014 VMware, Inc. All rights reserved. This product is protected by U.S. and international copyright and intellectual property laws. VMware products are covered by one or more patents listed at
http://www.vmware.com/go/patents. VMware is a registered trademark or trademark of VMware, Inc. in the United States and/or other jurisdictions. All other marks and names mentioned herein may be trademarks of their
respective companies.
S O L UT I O N S
O V E R V I E W
NSX Micro-segmentation
Advanced security inside the data center network
Segmentation with
Advanced Services
Isolation
Segmentation
Bringing it Together
These micro-segmentation capabilities make NSX ideal for securing intra-data center
network traffic, for fully isolating disparate networks (e.g., for highly sensitive
workloads or for multi-tenancy), and for simplifying networks that would otherwise
require complex access policies such as virtual desktop infrastructure (VDI).
F in d O u t M o r e
For more information on NSX and micro-segmentation, visit the VMware NSX site at
http://www.vmware.com/go/nsx. For information or to purchase VMware products, call
1-877-4VMWARE (outside of North America dial +1-650-427-5000), visit
http://www.vmware.com/products, or search online for an authorized reseller.
i
Security Week: Cyber Attacks Are The Root Cause in 30 Percent of Data Center
Outages: Study, December 13, 2013.
S O L U T I O N S
O V E R V I E W