
NSX Edge Services
Dynamic Routing
Provides the necessary forwarding information between layer 2 broadcast
domains, thereby allowing you to decrease layer 2 broadcast domains and
improve network efficiency and scale. NSX extends this intelligence to where
the workloads reside for doing East-West routing. This allows more direct
virtual machine to virtual machine communication without the costly or
timely need to extend hops. At the same time, NSX also provides North-
South connectivity, thereby enabling tenants to access public networks.
Firewall
Supported rules include IP 5-tuple configuration with IP and port ranges for
stateful inspection for all protocols.
Network Address
Translation
Separate controls for Source and Destination IP addresses, as well as port
translation.
Dynamic Host
Configuration Protocol
(DHCP)
Configuration of IP pools, gateways, DNS servers, and search domains.
Site-to-Site Virtual
Private Network (VPN)
Uses standardized IPsec protocol settings to interoperate with all major VPN
vendors.
L2 VPN
Provides the ability to stretch your L2 network.
SSL VPN-Plus
SSL VPN-Plus enables remote users to connect securely to private networks
behind a NSX Edge gateway.
Load Balancing
Simple and dynamically configurable virtual IP addresses and server groups.
High Availability
High availability ensures an active NSX Edge on the network in case the
primary NSX Edge virtual machine is unavailable.
NSX Edge supports syslog export for all services to remote servers.
Figure 1‑2. Multi-Interface Edge
NSX Edge
MPLS VPN
Internet
Interface 1
Interface 3
Interface 2
Interface 4
Interface 6
Interface 5
DMZ
network
Accounting
network
Marketing
network
Engineering
network
VPN
Load
Balancing
DNS
DHCP
availability
High
NSX Edge
Chapter 1 Overview of NSX
VMware, Inc. 11
Kommentare zu diesen Handbüchern