6

DPU solution could change the game for VMware's network and application security...

 1 year ago
source link: https://siliconangle.com/2022/09/23/dpu-solution-change-game-vmwares-network-application-security-model-vmwareexplore/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

DPU solution could change the game for VMware's network and application security model

Tom-Clean.png
SECURITY

VMware Inc. announced an intriguing development on the security front during its recent annual conference. The virtualization pioneer unveiled an enhancement for its NSX network platform that leverages data processing unit acceleration using smart network interface controllers.

Behind the technical jargon of VMware’s announcement can be found a simple reality: The DPU has the potential to be a game-changer for VMware when it comes to network security.

“There is an isolation angle to this, which is that firewall we’re putting everywhere,” said Tom Gillis (pictured), senior vice president and general manager of the Networking and Advanced Security Business Group at VMware. “We put it in each little piece of the server, and when it runs on one of these DPUs, it’s in a different memory space. It puts an air gap into the server itself so that if the server is compromised, it’s not going to get into the network. Really powerful.”

Gillis spoke with theCUBE industry analysts John Furrier and Dave Vellante at VMware Explore, during an exclusive broadcast on theCUBE, SiliconANGLE Media’s livestreaming studio. They discussed details surrounding VMware’s NSX platform announcement and a drive to fundamentally change security. (* Disclosure below.)

Focus on east-west traffic

VMware’s SmartNIC solution provides greater visibility into east-west traffic, the movement of information laterally across a network. This is a key element for security because major intrusions have been engineered by malicious actors to provide a damaging level of database access.

“We’re very focused on lateral security or the east-west movement of an attacker, because, frankly, that’s the name of the game these days,” Gillis said. “How do we make it hard for them to move around within the infrastructure and get to the really valuable assets? If they get code running on your machine, they might find some interesting things, but they’re not going to find 250 million credit cards.”

The latest security enhancements are focused on securing applications from within. Using the DPU, VMware now has an ability to secure both virtual machine and container-based applications, according to Gillis.

“For virtual machines, we do it with the hypervisor, with NSX, and we see all in the inner workings,” he  said. “In the container world, we have a service mesh that lets us look at each little snippet of code and how they talk to each other. The anomalies stick out like a sore thumb, and with our unique focus on the infrastructure, we can see each one of these little transactions and understand the conversation. We see the inner plumbing of the app and therefore we can protect the app.”

Gillis joined VMware in 2018, during a time when Pat Gelsinger was still the company’s chief executive. Gelsinger has since departed to lead Intel, but Gillis still remembered a directive from VMware’s top executive when he came on board.

“When I started at VMware four years ago, Pat sat me down in his office and said: ‘Tom, I feel like we have fundamentally changed servers, we fundamentally changed storage, we fundamentally changed networking, but the last piece of the puzzle is security, and I want you to go fundamentally change it,’” Gillis recalled. “The stakes are incredibly high. Just look at the impact these security attacks are having. Companies get taken down.”

Here’s the complete video interview, part of SiliconANGLE’s and theCUBE’s coverage of VMware Explore:

(* Disclosure: VMware Inc. sponsored this segment of theCUBE. Neither VMware nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)

Photo: SiliconANGLE

A message from John Furrier, co-founder of SiliconANGLE:

Show your support for our mission by joining our Cube Club and Cube Event Community of experts. Join the community that includes Amazon Web Services and Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger and many more luminaries and experts.

Join Our Community 

Click here to join the free and open Startup Showcase event.

“TheCUBE is part of re:Invent, you know, you guys really are a part of the event and we really appreciate your coming here and I know people appreciate the content you create as well” – Andy Jassy

We really want to hear from you, and we’re looking forward to seeing you at the event and in theCUBE Club.

Click here to join the free and open Startup Showcase event.


About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK