Click here to close now.

Welcome!

.NET Authors: Andreas Grabner, Pat Romanski, Elizabeth White, Tad Anderson, Gregor Petri

Related Topics: Virtualization, Java, SOA & WOA, .NET, Open Source, Cloud Expo

Virtualization: Article

VDI: Balancing the Efficiencies and Challenges of the New Network

The factors enterprise IT departments must consider when evaluating if and when to bring on a VDI solution

Enterprise IT has experienced a rapid evolution over the past few years. Cloud has revolutionized storage and brought with it a host of new and emerging information security challenges. Consumer adoption of mobile technology has forced enterprise networks to operate in a multi-platform environment in which the technology is largely selected, procured, and controlled without the advice or consent of IT. Of the many lessons learned in recent years, perhaps the most crucial is that IT must take a proactive approach to adopting emerging technologies, rather than being forced to react to and mitigate the inevitable fire drills. Of the transformative technologies now gaining traction in the enterprise, Virtual Desktop Infrastructure (VDI) has stayed relatively under the radar, but is nonetheless poised to play an integral role in the ongoing IT evolution. This article will discuss the benefits of integrating VDI into the new data center, and the factors enterprise IT departments must consider when evaluating if and when to bring on a VDI solution.

While the origins of virtualization reside in the drive for server consolidation, VDI is fast becoming a staple in the new data center. Today's evolving network takes virtualization well beyond servers to a means of centralizing IT, beginning with desktop PCs and expanding to encompass the wireless computing devices proliferating throughout the enterprise, including smartphones and tablets. The expansive adoption is evident in the numbers. According to a report published in September 2012 by VisionGain titled "The Cloud-Based Virtual Desktop Infrastructure Market 2012-2017,"the VDI market was expected to grow to $11.2 billion by the end of 2012.

The advantages of VDI, particularly for large enterprises, are clear. For one, VDI solutions reduce desktop support and management costs by bringing a wide array of devices and operating systems into a single control solution. For another, they also enable energy saving and green initiatives by lower overall energy requirements of virtual desktops. Moreover, VDI offers business continuity and disaster recovery capabilities as well as a means to secure data in the data center, which is paramount when meeting compliance and security regulations.

Progressive IT departments at colleges, law firms and retail establishments have quickly caught on to the potential of VDI to radically streamline enterprise networking. The business and technical efficiencies involved with VDI are relatively simple and straightforward in exchange for the significant improvements VDI can deliver to network manageability, security and energy efficiency.

Before an enterprise undertakes the transformation to VDI, however, data center managers must understand the potential network impact from a performance standpoint, while maintaining key criteria such as cost savings, delivery of multiple converged services, and power efficiency.

VDI Deployments and Network Security
Network security is of paramount importance in today's business environment, and the emergence of VDI in the network has enhanced today's security, namely network identity, by simplifying, centralizing and driving security within the network rather than the PC OS. Security for yesterday's network meant complex "application layer" elements of sign-on security such as LDAP directories, strong authentication, and Single Sign-On (SSO) systems. With the VDI network, traditional operating systems are eliminated, but IT must still require and implement user log on, secure policies, visibility and monitoring in order to ensure security across the network.

The Energy Efficient Network
The amount of energy consumed by data centers is enormous, and growing in tandem with the burgeoning amounts of electronic data being created and stored by enterprises the world over. At the same time, enterprises are increasingly called to task to demonstrate their Corporate Social Responsibility (CSR), one aspect of which is reducing their carbon footprint. The efficiency of the networking equipment deployed therefore directly impacts a data center's ‘green' credentials. As energy costs rise and CSR gains public and government mindshare, reducing energy consumption has become a focal point for many enterprises, and VDI plays an integral role in this process. By centralizing resources and bringing in much higher speeds at the port level, VDI significantly improves the energy efficiency of the network. Rather than deploying multiple tiers and distributed Gigabit Ethernet LANs, suddenly the horsepower is consolidated into a single core layer providing the bandwidth necessary for all VDI connections. This allows much higher density 10 Gigabit Ethernet port modules on chassis type switches to easily collapse all traffic into just a few network switches. VDI implementations also contribute to energy savings at the device level. By enabling IT to easily manage smartphones and tablets operating on multiple platforms, energy-gobbling desktops can be replaced with these smaller, more energy efficient mobile devices. In the end, VDI is highly efficient, more powerful and easier for IT to manage.

Converging Voice and Video for VDI Deployments
Once the considerations for bandwidth and system centralization have been addressed, the issue of carrying converged media (mixed voice, video and data) comes to the fore. Just like traditional networks, the VDI network backbone still must handle convergence flawlessly so that all users have a consistent, predictable experience. Critical activities such as IP phone calls and collaboration, e-learning activities using IP video, customer call centers, to name but a few, all depend on the network for a seamless, quality experience, and when implementing a VDI solution, IT must ensure that this remains and priority. In order to ensure this consistency and predictability, the network has to not only be equipped with 10 Gigabit and Gigabit to the edge, it also needs the intelligence, Quality of Service (QoS) and ultra-low latency switching, to seamlessly deliver voice and video traffic to users based on predetermined priorities.

Maintaining and Enhancing Security for Enterprise VDI Deployments
As enterprise networks increasingly adopt virtualization technology, there is a growing demand on IT to successfully meet the networking challenges posed by a highly dynamic virtual environment. On the one hand, VDI is a superior tool enabling users to access the network via multiple mobile and computing devices operating on multiple platforms and operating systems. On the other, this diversified access creates an environment in which policy and identity management are paramount network security considerations since users can connect to the data center from any location using a variety of devices. Just as old networks were unable to handle the growing number of connecting devices, the access management and lack of identity features with old networks won't be up to par in the new virtual landscape.

Recognizing this security challenge, more and more secure government facilities are using advanced identity management to ensure compliance and security when using VDI, setting the stage for similar deployments in the private sector with large mobile workforces. Identity-aware networking, defined by Enterprise Strategy Group as "a policy-based network architecture that understands and acts upon the identity and location of users and devices," will be the solution du jour for private sector business looking to securely deploy VDI.

Identity-aware networking is an integration effort where the network gathers information from multiple existing sources then enables IT managers to use this data to build and enforce access policies. The best-of-breed network has the intelligence to dynamically collect and update information about users, devices, and location as the users connect to the VDI infrastructure and just as important, enforce policies once they are on the network. The business, regulatory compliance, and security ROI benefits available with the identity-aware network become the new norm, carrying the burden away from those that had to maintain application-layer security.

Network-based identity for VDI is associated with things like IP and MAC addresses, VLAN tags, and subnets that play a role in device authentication, VPNs, and IPSEC. With VDI, network layer security takes over. It is based on a number of inputs, including the user-id and role of the user, specific device characteristics and capabilities, and user/device location. Identity-aware networking wants to know if the user is logging on from a trusted or untrusted network, or whether a user is accessing the network from a wired port or over Wi-Fi. Furthermore, network access policies may need to change from one location within a facility to the next.

With most deployments, the IT department will strive to meet the needs of varying mobile users and disparate devices. At the network level, more granular network access policies based upon user roles, device types, and physical locations are required. The network then has to scale bandwidth, handle converged communications appropriately and bring network layer security policy that is not tied to any single device or application.

There are significant advantages to VDI, including a more centralized streamlined, and energy efficient network, but before implementing VDI, enterprise IT must ensure that the necessary protocols are in place to preserve network security in this new virtual environment. VDI demands an identity approach and a more aware network in order to satisfy security and compliance requirements. Only when data center managers closely examine the network's role in meeting key criteria such as cost savings, power efficiency, user and device identity, and ease-of-use can VDI truly progress towards becoming a new norm in computing.

More Stories By Sameer Mohile

Sameer Mohile is a senior software product manager at Extreme Networks where he leads the product direction and strategic planning for Data Center and Mobile Backhaul markets. He has over 12+ years of expertise in the networking and collaboration industry and is certified Agile Product Owner with deep experience leading cross-functional teams. Prior to his position at Extreme Networks, Sameer held positions as marketing product manager and technical marketing engineer at Cisco Systems. He holds a Masters in Computer Networking from North Carolina State University and an MBA with a specialization in product marketing from the University of North Carolina Kenan-Flagler Business School.

Comments (0)

Share your thoughts on this story.

Add your comment
You must be signed in to add a comment. Sign-in | Register

In accordance with our Comment Policy, we encourage comments that are on topic, relevant and to-the-point. We will remove comments that include profanity, personal attacks, racial slurs, threats of violence, or other inappropriate material that violates our Terms and Conditions, and will block users who make repeated violations. We ask all readers to expect diversity of opinion and to treat one another with dignity and respect.


@ThingsExpo Stories
Hadoop as a Service (as offered by handful of niche vendors now) is a cloud computing solution that makes medium and large-scale data processing accessible, easy, fast and inexpensive. In his session at Big Data Expo, Kumar Ramamurthy, Vice President and Chief Technologist, EIM & Big Data, at Virtusa, will discuss how this is achieved by eliminating the operational challenges of running Hadoop, so one can focus on business growth. The fragmented Hadoop distribution world and various PaaS solutions that provide a Hadoop flavor either make choices for customers very flexible in the name of opti...
SYS-CON Events announced today that Dyn, the worldwide leader in Internet Performance, will exhibit at SYS-CON's 16th International Cloud Expo®, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Dyn is a cloud-based Internet Performance company. Dyn helps companies monitor, control, and optimize online infrastructure for an exceptional end-user experience. Through a world-class network and unrivaled, objective intelligence into Internet conditions, Dyn ensures traffic gets delivered faster, safer, and more reliably than ever.
As organizations shift toward IT-as-a-service models, the need for managing and protecting data residing across physical, virtual, and now cloud environments grows with it. CommVault can ensure protection &E-Discovery of your data – whether in a private cloud, a Service Provider delivered public cloud, or a hybrid cloud environment – across the heterogeneous enterprise. In his session at 16th Cloud Expo, Randy De Meno, Chief Technologist - Windows Products and Microsoft Partnerships, will discuss how to cut costs, scale easily, and unleash insight with CommVault Simpana software, the only si...
Even as cloud and managed services grow increasingly central to business strategy and performance, challenges remain. The biggest sticking point for companies seeking to capitalize on the cloud is data security. Keeping data safe is an issue in any computing environment, and it has been a focus since the earliest days of the cloud revolution. Understandably so: a lot can go wrong when you allow valuable information to live outside the firewall. Recent revelations about government snooping, along with a steady stream of well-publicized data breaches, only add to the uncertainty
Cloud data governance was previously an avoided function when cloud deployments were relatively small. With the rapid adoption in public cloud – both rogue and sanctioned, it’s not uncommon to find regulated data dumped into public cloud and unprotected. This is why enterprises and cloud providers alike need to embrace a cloud data governance function and map policies, processes and technology controls accordingly. In her session at 15th Cloud Expo, Evelyn de Souza, Data Privacy and Compliance Strategy Leader at Cisco Systems, will focus on how to set up a cloud data governance program and s...
Roberto Medrano, Executive Vice President at SOA Software, had reached 30,000 page views on his home page - http://RobertoMedrano.SYS-CON.com/ - on the SYS-CON family of online magazines, which includes Cloud Computing Journal, Internet of Things Journal, Big Data Journal, and SOA World Magazine. He is a recognized executive in the information technology fields of SOA, internet security, governance, and compliance. He has extensive experience with both start-ups and large companies, having been involved at the beginning of four IT industries: EDA, Open Systems, Computer Security and now SOA.
The Workspace-as-a-Service (WaaS) market will grow to $6.4B by 2018. In his session at 16th Cloud Expo, Seth Bostock, CEO of IndependenceIT, will begin by walking the audience through the evolution of Workspace as-a-Service, where it is now vs. where it going. To look beyond the desktop we must understand exactly what WaaS is, who the users are, and where it is going in the future. IT departments, ISVs and service providers must look to workflow and automation capabilities to adapt to growing demand and the rapidly changing workspace model.
The industrial software market has treated data with the mentality of “collect everything now, worry about how to use it later.” We now find ourselves buried in data, with the pervasive connectivity of the (Industrial) Internet of Things only piling on more numbers. There’s too much data and not enough information. In his session at @ThingsExpo, Bob Gates, Global Marketing Director, GE’s Intelligent Platforms business, to discuss how realizing the power of IoT, software developers are now focused on understanding how industrial data can create intelligence for industrial operations. Imagine ...
Operational Hadoop and the Lambda Architecture for Streaming Data Apache Hadoop is emerging as a distributed platform for handling large and fast incoming streams of data. Predictive maintenance, supply chain optimization, and Internet-of-Things analysis are examples where Hadoop provides the scalable storage, processing, and analytics platform to gain meaningful insights from granular data that is typically only valuable from a large-scale, aggregate view. One architecture useful for capturing and analyzing streaming data is the Lambda Architecture, representing a model of how to analyze rea...
SYS-CON Events announced today that Vitria Technology, Inc. will exhibit at SYS-CON’s @ThingsExpo, which will take place on June 9-11, 2015, at the Javits Center in New York City, NY. Vitria will showcase the company’s new IoT Analytics Platform through live demonstrations at booth #330. Vitria’s IoT Analytics Platform, fully integrated and powered by an operational intelligence engine, enables customers to rapidly build and operationalize advanced analytics to deliver timely business outcomes for use cases across the industrial, enterprise, and consumer segments.
The Internet of Things (IoT) promises to evolve the way the world does business; however, understanding how to apply it to your company can be a mystery. Most people struggle with understanding the potential business uses or tend to get caught up in the technology, resulting in solutions that fail to meet even minimum business goals. In his session at @ThingsExpo, Jesse Shiah, CEO / President / Co-Founder of AgilePoint Inc., showed what is needed to leverage the IoT to transform your business. He discussed opportunities and challenges ahead for the IoT from a market and technical point of vie...
Advanced Persistent Threats (APTs) are increasing at an unprecedented rate. The threat landscape of today is drastically different than just a few years ago. Attacks are much more organized and sophisticated. They are harder to detect and even harder to anticipate. In the foreseeable future it's going to get a whole lot harder. Everything you know today will change. Keeping up with this changing landscape is already a daunting task. Your organization needs to use the latest tools, methods and expertise to guard against those threats. But will that be enough? In the foreseeable future attacks w...
HP and Aruba Networks on Monday announced a definitive agreement for HP to acquire Aruba, a provider of next-generation network access solutions for the mobile enterprise, for $24.67 per share in cash. The equity value of the transaction is approximately $3.0 billion, and net of cash and debt approximately $2.7 billion. Both companies' boards of directors have approved the deal. "Enterprises are facing a mobile-first world and are looking for solutions that help them transition legacy investments to the new style of IT," said Meg Whitman, Chairman, President and Chief Executive Officer of HP...
Containers and microservices have become topics of intense interest throughout the cloud developer and enterprise IT communities. Accordingly, attendees at the upcoming 16th Cloud Expo at the Javits Center in New York June 9-11 will find fresh new content in a new track called PaaS | Containers & Microservices Containers are not being considered for the first time by the cloud community, but a current era of re-consideration has pushed them to the top of the cloud agenda. With the launch of Docker's initial release in March of 2013, interest was revved up several notches. Then late last...
Disruptive macro trends in technology are impacting and dramatically changing the "art of the possible" relative to supply chain management practices through the innovative use of IoT, cloud, machine learning and Big Data to enable connected ecosystems of engagement. Enterprise informatics can now move beyond point solutions that merely monitor the past and implement integrated enterprise fabrics that enable end-to-end supply chain visibility to improve customer service delivery and optimize supplier management. Learn about enterprise architecture strategies for designing connected systems tha...
The explosion of connected devices / sensors is creating an ever-expanding set of new and valuable data. In parallel the emerging capability of Big Data technologies to store, access, analyze, and react to this data is producing changes in business models under the umbrella of the Internet of Things (IoT). In particular within the Insurance industry, IoT appears positioned to enable deep changes by altering relationships between insurers, distributors, and the insured. In his session at @ThingsExpo, Michael Sick, a Senior Manager and Big Data Architect within Ernst and Young's Financial Servi...
The explosion of connected devices / sensors is creating an ever-expanding set of new and valuable data. In parallel the emerging capability of Big Data technologies to store, access, analyze, and react to this data is producing changes in business models under the umbrella of the Internet of Things (IoT). In particular within the Insurance industry, IoT appears positioned to enable deep changes by altering relationships between insurers, distributors, and the insured. In his session at @ThingsExpo, Michael Sick, a Senior Manager and Big Data Architect within Ernst and Young's Financial Servi...
PubNub on Monday has announced that it is partnering with IBM to bring its sophisticated real-time data streaming and messaging capabilities to Bluemix, IBM’s cloud development platform. “Today’s app and connected devices require an always-on connection, but building a secure, scalable solution from the ground up is time consuming, resource intensive, and error-prone,” said Todd Greene, CEO of PubNub. “PubNub enables web, mobile and IoT developers building apps on IBM Bluemix to quickly add scalable realtime functionality with minimal effort and cost.”
Sensor-enabled things are becoming more commonplace, precursors to a larger and more complex framework that most consider the ultimate promise of the IoT: things connecting, interacting, sharing, storing, and over time perhaps learning and predicting based on habits, behaviors, location, preferences, purchases and more. In his session at @ThingsExpo, Tom Wesselman, Director of Communications Ecosystem Architecture at Plantronics, will examine the still nascent IoT as it is coalescing, including what it is today, what it might ultimately be, the role of wearable tech, and technology gaps stil...
In the consumer IoT, everything is new, and the IT world of bits and bytes holds sway. But industrial and commercial realms encompass operational technology (OT) that has been around for 25 or 50 years. This grittier, pre-IP, more hands-on world has much to gain from Industrial IoT (IIoT) applications and principles. But adding sensors and wireless connectivity won’t work in environments that demand unwavering reliability and performance. In his session at @ThingsExpo, Ron Sege, CEO of Echelon, will discuss how as enterprise IT embraces other IoT-related technology trends, enterprises with i...