VMware NSX: Install, Configure, Manage [V4.0]

H9TR6S

Course ID

H9TR6S

Duration

5 days

Format

ILT/VILT

Overview

This fast-paced course provides comprehensive training to install, configure, and manage a VMware NSX® environment. This course covers key features and functionality offered in the NSX 4.0.0.1 and NSX 4.0.1 releases, including the overall infrastructure, logical switching, logical routing, networking and security services, firewalls and advanced threat prevention, and more.

Course ID

H9TR6S

Duration

5 days

Format

ILT/VILT

  • Audience

    Experienced security administrators or network administrators

  • Prerequisites

    • Good understanding of TCP/IP services and protocols
    • Knowledge and working experience ofcomputer networking, including switchingand routing technologies, and L2-L3 andL2-L7 firewalls
    • Knowledge and working experience withVMware vSphere® environments
    • Knowledge and working experience withKubernetes or vSphere with VMwareTanzu™ environments
    • Solid understanding of concepts presentedin the following courses:
      • VMware Virtual Cloud Network: Core Technical Skills
      • VMware Data Center Virtualization: CoreTechnical Skills
      • Kubernetes Fundamentals
  • Objectives

    After completing this course, you should be able to:

    • Describe the architecture and main components of NSX
    • Explain the features and benefits of NSX
    • Deploy the NSX Management cluster andVMware NSX® Edge™ nodes
    • Prepare VMware ESXi™ hosts to participate inNSX networking
    • Create and configure segments for layer 2forwarding
    • Create and configure Tier-0 and Tier-1gateways for logical routing
    • Use distributed and gateway firewall policiesto filter east-west and north-south traffic inNSX
    • Configure Advanced Threat Preventionfeatures
    • Configure network services on NSX Edgenodes
    • Use VMware Identity Manager™ and LDAP tomanage users and access
    • Explain the use cases, importance, andarchitecture of Federation
  • Course outline

Course Introduction

  • Introduction and course logistics
  • Course objectives

VMware Virtual Cloud Network and VMware NSX

  • Introduce the VMware Virtual Cloud Network vision
  • Describe the NSX product portfolio
  • Discuss NSX features, use cases, and benefits
  • Explain NSX architecture and components
  • Explain the management, control, data, and consumptionplanes and their functions.

Preparing the NSX Infrastructure

  • Deploy VMware NSX® Manager™ nodes on ESXi hypervisors
  • Navigate through the NSX UI
  • Explain data plane components such as N-VDS/VDS,transport nodes, transport zones, profiles, and more
  • Perform transport node preparation, and configure the dataplane infrastructure
  • Verify transport node status and connectivity
  • Explain DPU-based acceleration in NSX
  • Install NSX using DPUs

NSX Logical Switching

  • Introduce key components and terminology in logical switching
  • Describe the function and types of L2 segments
  • Explain tunneling and the Geneve encapsulation
  • Configure logical segments and attach hosts using NSX UI
  • Describe the function and types of segment profiles
  • Create segment profiles and apply them to segments and ports
  • Explain the function of MAC, ARP, and TEP tables used in packet forwarding
  • Demonstrate L2 unicast packet flow
  • Explain ARP suppression and BUM traffic handling

NSX Logical Routing

  • Describe the logical routing function and use cases
  • Introduce the two-tier routing architecture, topologies, andcomponents
  • Explain the Tier-0 and Tier-1 gateway functions
  • Describe the logical router components: Service Router andDistributed Router
  • Discuss the architecture and function of NSX Edge nodes
  • Discuss deployment options of NSX Edge nodes
  • Configure NSX Edge nodes and create NSX Edge clusters
  • Configure Tier-0 and Tier-1 gateways
  • Examine single-tier and multitier packet flows
  • Configure static routing and dynamic routing, includingBGP and OSPF
  • Enable ECMP on a Tier-0 gateway
  • Describe NSX Edge HA, failure detection, and failbackmodes
  • Configure VRF Lite

NSX Bridging

  • Describe the function of logical bridging
  • Discuss logical bridging use cases
  • Compare routing and bridging solutions
  • Explain the components of logical bridging
  • Create bridge clusters and bridge profiles

NSX Firewalls

  • Describe NSX segmentation
  • Identify the steps to enforce zero trust with NSX segmentation
  • Describe Distributed Firewall architecture, components, andfunction
  • Configure Distributed Firewall sections and rules
  • Configure the Distributed Firewall on VDS
  • Describe Gateway Firewall architecture, components, andfunction
  • Configure Gateway Firewall sections and rules

NSX Advanced Threat Prevention

  • Explain NSX IDS/IPS and its use cases
  • Configure NSX IDS/IPS
  • Deploy NSX Application Platform
  • Identify the components and architecture of NSX MalwarePrevention
  • Configure NSX Malware Prevention for east-west and northsouth traffic
  • Describe the use cases and architecture of VMware NSX®Intelligence™
  • Identify the components and architecture of VMwareNSX® Network Detection and Response™
  • Use NSX Network Detection and Response to analyzenetwork traffic events.

NSX Services

  • Explain and configure Network Address Translation (NAT)
  • Explain and configure DNS and DHCP services
  • Describe VMware NSX® Advanced Load Balancer™ architecture, components, topologies, and use cases.
  • Configure NSX Advanced Load Balancer
  • Discuss the IPSec VPN and L2 VPN function and use cases
  • Configure IPSec VPN and L2 VPN using the NSX UI

NSX User and Role Management

  • Describe the function and benefits of VMware Identity Manager™ in NSX
  • Integrate VMware Identity Manager with NSX
  • Integrate LDAP with NSX
  • Identify the various types of users, authenticationpolicies, and permissions
  • Use role-based access control to restrict user access
  • Explain object-based access control in NSX

NSX Federation

  • Introduce NSX Federation key concepts, terminology, and use cases.
  • Explain the onboarding process of NSX Federation
  • Describe NSX Federation switching and routingfunctions.
  • Describe NSX Federation security concepts.

5 reasons to choose HPE as your training partner

  1. Learn HPE and in-demand IT industry technologies from expert instructors.
  2. Build career-advancing power skills.
  3. Enjoy personalized learning journeys aligned to your company’s needs.
  4. Choose how you learn: in-person, virtually, or online—anytime, anywhere.
  5. Sharpen your skills with access to real environments in virtual labs.

Explore our simplified purchase options, including HPE Education Services – Learning Credits.

Recommended for you