VMware NSX: Install, Configure, Manage [V4] Course Content
- Introductions and course logistics.
- Review of the VMware certification path (leading to VCP-NV).
- Evolution of NSX: Moving from NSX-T to NSX 4.0/4.1+.
- Key Use Cases: Micro-segmentation, multi-cloud networking, and disaster recovery.
- Architecture: Understanding the Management, Control, and Data planes.
- NSX Manager: Deployment and sizing of the manager cluster.
- Host Preparation: Preparing ESXi and KVM hosts as Transport Nodes.
- Transport Zones: Configuring Overlay and VLAN transport zones for traffic flow.
- Segments: Creating and managing logical switches (segments).
- N-VDS vs. VDS 7.0+: Understanding the integration with vSphere Distributed Switches.
- Traffic Flow: Layer 2 switching and the role of Geneve encapsulation.
- Tier-0 and Tier-1 Gateways: Building a multi-tenant routing hierarchy.
- Gateway Services: Configuring Static Routing and Dynamic Routing (BGP).
- High Availability: Active-Standby and Active-Active gateway configurations.
- Edge Nodes: Deploying physical and virtual NSX Edge nodes.
- Logical Bridging: Connecting virtual segments to physical VLANs.
- Bridge Clusters: Ensuring high availability for layer 2 extensions.
- Distributed Firewall (DFW): Implementing micro-segmentation at the VM vNIC level.
- Gateway Firewall: Protecting the perimeter at the Tier-0/Tier-1 levels.
- Policy Management: Using Tags, Groups, and Profiles for automated security.
- Intrusion Detection/Prevention (IDS/IPS): Deep packet inspection for threat mitigation.
- NSX Intelligence: Overview of automated policy recommendations and network visibility.
- Malware Prevention: Integrating sandbox technology and file analysis.
- Load Balancing: Deploying Small, Medium, and Large Load Balancer instances.
- VPN Services: Setting up IPsec VPN and L2 VPN for site-to-site connectivity.
- DHCP & DNS: Configuring centralized or local network services.
- RBAC: Configuring Restricted/Full Access roles for different administrators.
- Identity Firewall: Applying security policies based on Active Directory user groups.
- Alarms & Dashboards: Real-time health monitoring via the NSX Manager UI.
- Traceflow: Visually mapping the path of a packet through the logical network.
- Log Management: Utilizing Syslog and the Support Bundle tool for diagnostics.