© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 UCS UCS Central Best Practices Jeff Silberman

Slides:



Advertisements
Similar presentations
Cisco Confidential © 2013 Cisco and/or its affiliates. All rights reserved. 1 Unity Connection Qualification for Prime Collaboration Development Release.
Advertisements

MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 4 Installing and Configuring the Dynamic Host Configuration Protocol.
What’s New in BMC ProactiveNet 9.5?
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
1 Chapter 1 Introduction to Windows Server Two main goals for Net Admin Make network resources available to users Files, folders, printers, etc.
Lesson 4-Installing Network Operating Systems. Overview Installing and configuring Novell NetWare 6.0. Installing and configuring Windows 2000 Server.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 9: Implementing and Using Group Policy.
Hands-On Microsoft Windows Server 2003 Networking Chapter 7 Windows Internet Naming Service.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
CCNA Guide to Cisco Networking Fundamentals Fourth Edition Chapter 9 Network Services.
Introducing VMware vSphere 5.0
Cisco Confidential 1 © 2011 Cisco and/or its affiliates. All rights reserved.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
VMware vCenter Server Module 4.
Module 1: Introduction to Active Directory
Installing Linux Redhat: A how to guide in installing and configuring Redhat 6.2.
Scalability Module 6.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Backup, Restore, and Server Replacement Josh Rose UCBU Software Engineer.
Overview of Active Directory Domain Services Lesson 1.
11 REVIEWING MICROSOFT ACTIVE DIRECTORY CONCEPTS Chapter 1.
Active Directory Administration Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Creating Users, Computers, and Groups Automate creation.
MCTS Guide to Configuring Microsoft Windows Server 2008 Active Directory Chapter 3: Introducing Active Directory.
1 © 2004, Cisco Systems, Inc. All rights reserved. Chapter 6 Configuring a Router/ Learning About Other Devices/ Managing Cisco IOS Software.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.

Windows 2003 Overview Lecture 1. Windows Networking Evolution Windows for Workgroups – peer-to-peer networking built into the OS Windows NT – separate.
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 5: Active Directory Logical Design.
Step By Step Windows Server 2003 Installation Guide Step By Step Windows Server 2003 Installation Guide.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Open MTIP Meeting April 5, Issues with current lab setup (from last meeting) Easier/faster application deployment and maintenance Client diversity.
WINDOWS AZURE PLATFORM ROADMAP Eric Nelson Slide 1.
Module 7 Active Directory and Account Management.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 MSE Virtual Appliance Presenter Name: Patrick Nicholson.
1 Administering Shared Folders Understanding Shared Folders Planning Shared Folders Sharing Folders Combining Shared Folder Permissions and NTFS Permissions.
 Identify Active Directory functions and Benefits.  Identify the major components that make up an Active Directory structure.  Identify how DNS relates.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
Page 1 Active Directory and DNS Lecture 2 Hassan Shuja 09/14/2004.
Windows Server 2003 La migrazione da Windows NT 4.0 a Windows Server 2003 Relatore: MCSE - MCT.
Clemens Rossell (clrossel) UCBU Unity Connection Virtualization TOI.
SONIC-3: Creating Large Scale Installations & Deployments Andrew S. Neumann Principal Engineer Progress Sonic.
Cisco Confidential © 2012 Cisco and/or its affiliates. All rights reserved. 1 Cisco UCS Director – Carmel (5.0) Ravikumar Pisupati Senior Manager, Engineering.
© 2008 Cisco Systems, Inc. All rights reserved.CIPT1 v6.0—1-1 Getting Started with Cisco Unified Communications Manager Installing and Upgrading Cisco.
Workforce Scheduling Release 5.0 for Windows Implementation Overview OWS Development Team.
© 2011 Cisco and/or its affiliates. All rights reserved. Cisco Public Presentation_ID 1 Assigning addresses to adapters  Prefer pools to burnt-in values.
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 Multicasting within UCS Qiese Dides.
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
Module 1: Introduction to Active Directory
© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1.
11 GLOBAL CATALOG AND FLEXIBLE SINGLE MASTER OPERATIONS (FSMO) ROLES Chapter 4.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 6: Planning, Configuring, And Troubleshooting WINS.
Windows 2003 Architecture, Active Directory & DNS Lecture # 3 Hassan Shuja 02/14/2006.
MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition (70-294) Chapter 1: Overview of the Active.
Planning Application Services Lesson 4. Deploying Application Servers Organizations supply their employees with computers so that they can get work done,
vSphere 6 Foundations Exam Training
Jenny Hobbs Consulting Systems Engineer April 2016 Business Case for Tailored Datacenter Integration (TDI)
Overview of Active Directory Domain Services Lesson 1.
APIC NXOS CLI – Vlan Domains
Windows Enterprise Services.  Introductions  UNM Directory Services  RSAT  Organizational Units (OU)  Active Directory Groups  Naming Convention.
11 IMPLEMENTING ACTIVE DIRECTORY Chapter 2. Chapter 2: IMPLEMENTING ACTIVE DIRECTORY2 REQUIREMENTS FOR ACTIVE DIRECTORY  Microsoft Windows Server 2003.
Chapter 1 Introducing Windows Server 2012/R2
UCS Director: Tenant Onboarding
Overview of Active Directory Domain Services
CHAPTER 7.
UCS Director: Tenant Onboarding
Installing Linux Redhat:
SharePoint Server Assessment Results
Cloud Migration Training
Presentation transcript:

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1 UCS UCS Central Best Practices Jeff Silberman

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2 Server Chassis Domain Single Datacenter GlobalDatacenters UCS Manager

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3 Administrative power is HIGHLY concentrated  Slightest changes can have broadest consequences Everything is “Opt-In” and “Bottom-Up” -Registration is Bottom Up -Global Policy Resolution is not the default -UCS Central does not “take control”. Control is given Migrate to Global Policies over time, as comfort increases o Global resolution can revert back to Local Global Policy resolution promotes administrative scalability UCS Central : -Depends on UCS Manager -Is an extension of UCS Manager and the UCS Management Model -Is NOT a replacement for UCS Manager

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4 Global Policies and Global Service Profiles Cluster-mode High Availability Statistics with optional External Database Support Improved Graphics Display Solid Fit For: Global Inventory Visibility, Global Faults, Global Operational Policies (Backups, TZ, DNS, …) Global Service Profiles for Net-new Workload

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5 UCS Central 1.0(1a) works with UCSM and above UCS Central 1.1(1a) works with UCSM and above (UCSM recommended) 4 vCPUs, 12GB Memory Licenses: L-UCS-CTR-INI= L-UCS-CTR-LIC= 5

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6 Admin-defined grouping Any domain can only be in one DG at a time Domains are in “Ungrouped Domain Group” by default Operational Policies resolve on DGs Domains can move between DG’s --- but it might be disruptive Domain Group Policy Qualifications allow for “auto- join” in to a DG Hierarchical Policy resolution allows local overrides 6 Domain Group EUROPE Domain Group US Domain Group ASIA-PACIFIC Domain Group ASIA-PACIFIC Sub Domain Group DALLAS Sub Domain Group LOS ANGELES Sub Domain Group NEW YORK UCS Central

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7 UCS Central 1.1(1a) supports either Local or LDAP LDAP Attribute-based authentication requires a schema change UCS Role to LDAP Group support is currently missing UCS Central uses “root” DG for authentication. If using global authentication, then do not populate the “root” DG with UCS domains 7

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 8 8

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9 9

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10 Use “G-” prefix for Global Objects Avoid using “global-default” or “default” 10

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13 Maintain the default local policy resolution. Gain comfort and understanding, prior to a broader adoption of global policies Use “Import” when possible 13 Best Practice

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14 Use the UCS Platform Emulator Use UCS Central with Global Objects for Net-New Workload deployments Leave existing workloads in Locally managed mode, until end of lifecycle Local Affinity exists for External IP Pools and Boot Policies 14 Best Practice

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15 Just Do It UCS Central Objects can’t be automatically re-created from UCS backups  Domain Groups don’t’ exist in UCSM  Operational Policies terminate on Domain Groups 15 Best Practice

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16 o Global Objects visible from “drop-down” menus, or “pulled in” to UCSM when needed upon deployment of Global Service Profiles --- but are not pushed upon creation o Maintenance Policies For user acknowledgement locally within UCSM, create and use Maintenance Policies based on “user-ack”. For acknowledgement within UCS Central, chose “timer-automatic”, and select a Schedule that uses the “user-ack”option. o Host OS version coverage. Check release notes o External Statistics Database is not backed up automatically o UCSM may require a forced Time sync o Avoid Hypervisor Resource Contention with other VMs o Cluster HA Mode requires proper configuration of Shared Disk 16

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17 UCS Central Admin policies are in “root” DG LDAP Authentication missing Group mappings Adopting Global IDs causes service interruption in UCSM and Global UUID Pools can’t be easily adopted for existing workload Domain Group Re-assignment based on DG Policy now requires “Re-evaluate Membership” Server Pool members are not masked by RBAC Fault Summary occasionally goes blank Host FW and Maintenance Policies now under “Orgs” instead of DG’s (some backward compatibility issues exist) VLANs can appear unreferenced Default FCoE VLAN is “1” (VHBAs won’t configure, since VLAN conflicts with “default”) VLANs and VSANs may persist locally, even if domain is de-registered Local backups will not have global references Moving objects from Local to Global mode (or back) is not supported SDK programmability is a work in progress 17

Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 18 The UCS Community Space UCS Central Release Notes The UCS Central Best Practice Guide The UCS Platform Emulator

© 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19 Be Conservative Create a Test/Dev Sandbox, using PE’s to get comfortable o PE’s can even be populated from live UCSM configs UCS Central is the most important and ambitious product since UCS Manager itself With Great Power Comes Great Responsibility Please Be Careful

Thank you.