Deploying Gigamon Cloud Suite to Gain Visibility Across AWS and Azure Cloud (5.14)
Introduction
Enterprises prefer to use multiple public cloud vendors to prevent vendor lock-in, ensure service redundancy, and take advantage of ‘best-of-breed’ solutions. Gigamon Cloud Suite provides pervasive visibility across such varying environments and provides rich filtering and traffic optimization capabilities to achieve better operational efficiencies. Moreover, enterprises can leverage their existing orchestration tools to deploy and undeploy the Gigamon visibility fabric components, such as GvTAP controller, V-Series Proxy, and V-Series Node. This Gigamon Validated Design (GVD) illustrates deploying these capabilities across AWS and Azure.
Refer to Gigamon Validated Designs in the Gigamon community's knowledge base for more such designs. Please contact your Gigamon Sales contact for more information about the Gigamon solutions.
Design Topology
Design Overview
The design depicts deployingGigaVUE Cloud Suite across AWS and Azure clouds that have the target VMs located in the Web tier and App tier. GvTAP agents are installed on the target VMs to acquire and forward the traffic to the V Series nodes. The V Series node aggregates, filters, and forwards the traffic to the tool/s over the VXLAN tunnel.
This design presumes monitoring all the EC2 targets in AWS and VNET targets in Azure that are under consideration. Hence, the V Series nodes will be configured to pass all IPv4 traffic. However, you can choose to monitor specific EC2 targets or VNET targets either by configuring filtering rules to match the IP address of the specific hosts/interfaces or by configuring the inclusion and exclusion maps (refer to the Deployment Steps section). In addition, the V Series nodes can be configured to apply various traffic optimization techniques (GigaSMART apps). Please refer to the validated design in the Gigamon Community portal for the related use cases.
A typical cloud deployment requires the following components in AWS and Azure clouds:
- GigaVUE-FM (Fabric Manager): It provides an unified interface to deploy, configure, and troubleshoot the Gigamon solution.
- V-Series Node: It is the traffic aggregator for the EC2 targets in AWS cloud and VNET targets in Azure cloud. It supports various filtering and traffic optimization techniques to sanitize the traffic before forwarding to the tool/s.
- V-Series Proxy: It is a forward proxy for managing the communication between the FM and the V Series nodes.
- GvTAP Controller: It manages multiple G-vTAP Agents and orchestrates the flow of mirrored traffic to GigaVUE V Series nodes.
In this design we had used manual instantiation of VM's along with custom script settings on both the clouds.
To learn more about this solution, read complete details on the Gigamon Community: Deploying Gigamon Cloud Suite to Gain Visibility Across AWS and Azure Cloud 5.14.