Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Build VMWare Super Fusion NSX HORIZON and CISCO Test Environment for Household equipment

2025-01-31 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

How to use household equipment to build an omnipotent testing environment, such as NSX VIEW FMC, etc., amateur can also dig mines, programming, doing testing.

If you use the skull Canyon before, buy three at a time, full 32G also solid-state hard drive, 18k cost is too high, and all-solid-state vsan can not adapt to the household gigabit network, power consumption.

If you assemble your own computer with itx motherboard to assemble three, i5/i7, the maximum memory 32g memory 14k cost is too high (do not want to make do, buy military version, and MTS enterprise memory chip is really expensive), too much electricity.

If you use minipc, it is not good-looking, lack of artistry, and costs 10k

I've been thinking about the final solution. With AMD RYZEN 1700 cpu (AMD comeback masterpiece, high frequency, 16 logic cores, forced Intel to reduce the price of a new product) with MSI ARCTIC motherboard, 16G*4 Zhiqi memory (cpu memory can be small overclocked, fortunately bought early, now sold more expensive than at that time. ), Toshiba 512G NVME (read 1.8G/s and write 1.2G/s) costs 6666, full set of owls dissipate heat (unsuitable, must be the best, no, no, no. ),

IN WIN301 small chassis has a simple and profound appearance, slightly fresh style, and fully modular design. The most important thing is to exchange a few thousand yuan for a platform with 16 cores of 64 gigabytes of memory, which can do things that even entry-level enterprise storage cannot match (not to mention the reliability, just do experiments). Use a particularly good platform alone or virtual to use more than one, so that you can do unlimited things as much as possible in a variety of limited situations.

It is always on, usually saving electricity, just like an ordinary refrigerator under heavy load. Because it's always on, it's really important to save electricity.

Tuhao can bypass and even build an omnipotent rack in the villa.

The wireless network does not use Netware, but uses a minority of baffulo, a solid brand of devils, and flagship products.

The wired network should have used cisco asa 5506 and 2960L. You can set the mtu of NSX 1600 to support pim Multicast ospf, but now you can only make do. Try a fake asav963 (seemingly no certificate, unlimited features, 100k traffic).

At the beginning of the experiment, it took two days for pure hands to practice on and off.

Throw a brick to attract more. I just want to provide a way of thinking and change my mind.

A little bit on the surface is good, the description of the results, but to use a down-to-earth understanding of the essence. That little hard process is where the essence lies.

For detailed configuration, you can go to the current Ming religious leader or business.

PART 1 builds the infrastructure

Several virtual esxi ad ntp on workstation must have infrastructure such as full domain name resolution, full ntp synchronization, full certificate server, etc.

Install vcenter 6.5. the new vcenter looks like the structure has changed and looks forward to 7.

Build a cluster and add a host

Configure vsan

Vsan, all right, we have storage. I am nvme, the speed lever. )

Build a basic network in addition to standard switches and distributed switches for NSX

Install NSX's easy-to-use and stable software-defined network, a powerful tool for the software-defined data center. Look at the icon to know what functions nsx has, it seems that most of them, there are all kinds of scenes, and there are also third-party NB manufacturers to make up for the shortcomings.

Nsx, it's okay.

Configure nsx

To create controller, only one of the most experimental resources is used.

Controller, it's okay.

Try the command line, the status is appropriate, the command line is similar to Cisco, but click the mouse all the way, rarely use the command line, unless troubleshooting.

Install the network components on esxi

Firewall also prepared it for you by the way.

Configure vxlan

There are a lot of things in distributed switches.

The number of vxlan can be much larger than the number of vlan as shown in the figure

Configure the transmission area of vxlan

The classic three layers of web app db are all in vxlan, you know, edge plays the role of routing connection.

Changes in distributed switches

Set up the router, here this is not a distributed router, can be changed, the classic design should be to use a distributed router, all kinds of good.

Bring your own four-layer firewall, do all the strategies of east, west, north and south, compare NB, almost directly to the network port of vm, it is really cool, few people can do this, they can still transfer, strategies can also pass, and very few can do this. No, no, no.

Overview

Almost done.

Go in and take a look at the route

It is recommended to set ospf. My device does not support it, and I have to change the MFT value of my device.

That's it, with computing, networking, storage. You don't have to do anything.

Building applications with PART2

A HORIZON VIEW 7.1machine is fast, installed in all environments, and should be done with peace of mind. It should be no more than 2 hours. Tuning is very time-consuming and time-consuming.

When sql composer connection is installed together, a good machine is wayward.

Sql2016 enterprise beta

Configure ODBC on composer

Install composer

Install connection

Configure connection

So far, I have used 80% of the 64 GB memory for cpu disk reading and writing, and virtualization is still a lot of memory consumption. Overclocking, vmware also supports micro-segmentation, it is no problem to continue to deploy a few virtual desktops, the heat dissipation is still so quiet, the owl is good, but it consumes less power than the refrigerator (buying level 1 power-saving equipment and high conversion rate power supply can save you countless ice cream in summer)

Testing various applications of PART3

It feels good for a good machine to do network experiments with UNL. Needless to say, you can see tutorials. The key is that there are some experiments that cannot be done, such as Cisco's software definition, various data center management software, such as PI, which often requires 64GB of memory, and this machine can play PI.

Applications such as NSX and PI have rigid requirements for configuration, which are lower than direct non-startup.

Let's take ISE as an example. in fact, it's better to use FMC or PI, but the image is not at hand.

These are easy to install, that is, testing your memory cpu and your hard disk read and write during installation. If you don't pass, you may not be able to install it.

Install component

Help me test my hard drive read and write, I can also read 616MB/s and write 431MB/s in a nested virtual environment, I am very relieved.

It takes a lot of time to start the service.

It takes about 25 minutes to install into the interface, and you can't get in if the machine doesn't perform well for 250 minutes.

All right. With this, it can be linked with the security device.

What the machine looks like.

Hologram.

Joke picture

Although it is a joke, it is obvious that the integrator who drew this picture already knows it. The virtual things in the picture have become an unavoidable reality in just a few years.

Please correct the deficiencies and welcome to communicate.

Thank you for not robbing me for TV in the way of falling asleep all the time.

I would like to thank my friend for his experience and knowledge, otherwise he would not have made such a good mistake.

Thank you all for your help and professors. I wish you sunflower at an early date and wield a knife XX. Do not forget the original ideal and ambition, sharpen and move forward.

Praise good luck.

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report