<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
		>
<channel>
	<title>Comments on: Myths, Misconceptions, Half-Truths and Lies about Virtualization</title>
	<atom:link href="http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/feed/" rel="self" type="application/rss+xml" />
	<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/</link>
	<description>Observations of a Digitally Enlightened Mind</description>
	<lastBuildDate>Mon, 25 Mar 2013 00:58:14 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
	<item>
		<title>By: Top 10 Most Overhyped Technology Terms &#171; Amrit Williams Blog</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-24829</link>
		<dc:creator><![CDATA[Top 10 Most Overhyped Technology Terms &#171; Amrit Williams Blog]]></dc:creator>
		<pubDate>Wed, 21 Sep 2011 00:15:06 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-24829</guid>
		<description><![CDATA[[...] Virtualization, especially desktop virtualization (here) and (here) I know what kind of computer I am; I&#8217;m a computer, playing a computer, playing another [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Virtualization, especially desktop virtualization (here) and (here) I know what kind of computer I am; I&#8217;m a computer, playing a computer, playing another [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Client-Side Virtualization Overview Part 1; The Good, The Bad, and The Reality &#171; Amrit Williams Blog</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-19962</link>
		<dc:creator><![CDATA[Client-Side Virtualization Overview Part 1; The Good, The Bad, and The Reality &#171; Amrit Williams Blog]]></dc:creator>
		<pubDate>Tue, 09 Jun 2009 17:15:15 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-19962</guid>
		<description><![CDATA[[...] consolidation and centralization, and it has shown tremendous benefit although there are still many myths, miconceptions, and half-truths about virtualization but would centralization and consolidation offer the same benefit to the desktop environment? Are [...]]]></description>
		<content:encoded><![CDATA[<p>[...] consolidation and centralization, and it has shown tremendous benefit although there are still many myths, miconceptions, and half-truths about virtualization but would centralization and consolidation offer the same benefit to the desktop environment? Are [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Welcome to vSphere-land! &#187; Getting Started Links</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-18511</link>
		<dc:creator><![CDATA[Welcome to vSphere-land! &#187; Getting Started Links]]></dc:creator>
		<pubDate>Thu, 07 May 2009 13:15:04 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-18511</guid>
		<description><![CDATA[[...] with VMware Infrastructure 3 (VMworld 2007) Making Business Sense of Virtualization (VMworld 2007) Myths, Misconceptions, Half-Truths and Lies about Virtualization VI3 Financial Justification Virtualizing Server [...]]]></description>
		<content:encoded><![CDATA[<p>[...] with VMware Infrastructure 3 (VMworld 2007) Making Business Sense of Virtualization (VMworld 2007) Myths, Misconceptions, Half-Truths and Lies about Virtualization VI3 Financial Justification Virtualizing Server [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike DiPetrillo</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14469</link>
		<dc:creator><![CDATA[Mike DiPetrillo]]></dc:creator>
		<pubDate>Mon, 29 Sep 2008 21:30:50 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14469</guid>
		<description><![CDATA[Getting close... :)

&quot;I think you are making an assumption that an enterprise is unable to monitor point-to-point communication on the same VLAN or throughout the network, or can only do so through an IDS placed on every VLAN. Simply not the case, not only can NBA technologies monitor this communication, network management systems like Concord or Network General provide robust protocol analysis throughout the enterprise, both WAN and LAN. Visibility, especially as it pertains to security, within virtual environments is significantly hindered using traditional technologies, which is why VMware is choosing to work with Cisco - what happens to non-Cisco shops?&quot;

No assumptions on what you can and can&#039;t monitor in a network. I was a network engineer in a few major networks for the first half of my career before I crossed into the dark side of selling software. I know very well what can and can&#039;t be seen on a network. My point was most customer don&#039;t implement half of what they could to actually do this monitoring. In addition to that you can still plug in all of the stuff you just talked about (sniffers, protocol analyzers, etc). You have the ability to mirror virtual switch traffic to a physical port of your choosing so all of this stuff still works. That&#039;s been in the VMware ESX server since I&#039;ve been here (version 1.5). I don&#039;t see a lot of customers actually doing that but it&#039;s there. I think a lot more people will go down that road with the new Cisco switch. Most of the non-Cisco shops are current VMware partners so I&#039;m sure it&#039;s just a matter of time before they get around to doing something similar (the SEC and future announcements prohibit me from any more detail). Just as an example though, Checkpoint has a virtual firewall appliance now.

On the management front, I&#039;m not saying that grabbing control of Virtual Center wouldn&#039;t be bad - it would. What I&#039;m saying is that most of those customers also have some sort of lights out management device in their servers that happens to run across that same management VLAN. If you&#039;re on the management VLAN and you happen to have an admin password (something you&#039;d need to take over VC) then you also have the ability to shut down every physical server. My main point was bad guy on internal management VLAN = bad news. It&#039;s no different if you&#039;re physical or virtual. Yes, getting into VC means you have fewer keystrokes to take things down but people who are smart enough and malicious enough to get into an internal management network probably aren&#039;t going to be powering off servers - they&#039;re going to be stealing data. If they were going to power stuff off then you can bet they&#039;ll be going after the physical stuff as well.

Bottom line on the security stuff - yes you need to be concerned, but don&#039;t forget about your basic security defenses that should be in place first. If those basic systems are there (physical security, people not giving out passwords, separation of duties) then you&#039;re going to be just as protected on the virtual side as you will on the physical side.

Two more things to say before signing off:
1) I love the picture for this whole post. Just saw the movie yesterday. Pretty sure I&#039;m dumber after those 2 hours. :)
2) I hope we get to sit on a panel together at some point. Should be some good conversation. :)]]></description>
		<content:encoded><![CDATA[<p>Getting close&#8230; <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>&#8220;I think you are making an assumption that an enterprise is unable to monitor point-to-point communication on the same VLAN or throughout the network, or can only do so through an IDS placed on every VLAN. Simply not the case, not only can NBA technologies monitor this communication, network management systems like Concord or Network General provide robust protocol analysis throughout the enterprise, both WAN and LAN. Visibility, especially as it pertains to security, within virtual environments is significantly hindered using traditional technologies, which is why VMware is choosing to work with Cisco &#8211; what happens to non-Cisco shops?&#8221;</p>
<p>No assumptions on what you can and can&#8217;t monitor in a network. I was a network engineer in a few major networks for the first half of my career before I crossed into the dark side of selling software. I know very well what can and can&#8217;t be seen on a network. My point was most customer don&#8217;t implement half of what they could to actually do this monitoring. In addition to that you can still plug in all of the stuff you just talked about (sniffers, protocol analyzers, etc). You have the ability to mirror virtual switch traffic to a physical port of your choosing so all of this stuff still works. That&#8217;s been in the VMware ESX server since I&#8217;ve been here (version 1.5). I don&#8217;t see a lot of customers actually doing that but it&#8217;s there. I think a lot more people will go down that road with the new Cisco switch. Most of the non-Cisco shops are current VMware partners so I&#8217;m sure it&#8217;s just a matter of time before they get around to doing something similar (the SEC and future announcements prohibit me from any more detail). Just as an example though, Checkpoint has a virtual firewall appliance now.</p>
<p>On the management front, I&#8217;m not saying that grabbing control of Virtual Center wouldn&#8217;t be bad &#8211; it would. What I&#8217;m saying is that most of those customers also have some sort of lights out management device in their servers that happens to run across that same management VLAN. If you&#8217;re on the management VLAN and you happen to have an admin password (something you&#8217;d need to take over VC) then you also have the ability to shut down every physical server. My main point was bad guy on internal management VLAN = bad news. It&#8217;s no different if you&#8217;re physical or virtual. Yes, getting into VC means you have fewer keystrokes to take things down but people who are smart enough and malicious enough to get into an internal management network probably aren&#8217;t going to be powering off servers &#8211; they&#8217;re going to be stealing data. If they were going to power stuff off then you can bet they&#8217;ll be going after the physical stuff as well.</p>
<p>Bottom line on the security stuff &#8211; yes you need to be concerned, but don&#8217;t forget about your basic security defenses that should be in place first. If those basic systems are there (physical security, people not giving out passwords, separation of duties) then you&#8217;re going to be just as protected on the virtual side as you will on the physical side.</p>
<p>Two more things to say before signing off:<br />
1) I love the picture for this whole post. Just saw the movie yesterday. Pretty sure I&#8217;m dumber after those 2 hours. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
2) I hope we get to sit on a panel together at some point. Should be some good conversation. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: amritw</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14468</link>
		<dc:creator><![CDATA[amritw]]></dc:creator>
		<pubDate>Mon, 29 Sep 2008 18:01:54 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14468</guid>
		<description><![CDATA[Hey Mike,

Thanks for the thoughtful response, there are some things we may need to agree to disagree on, but mostly we agree =) 

Comments below:

&lt;em&gt;“I’m just saying most corporate networks aren’t loosing visibility with VM-VM communication since they really didn’t have that visibility implemented in the first place. Never-the-less VMware saw this as a problem. This is why we partnered with Cisco (to start with) to embed your normal IOS-based virtual switch into the environment. http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html. Now you get the visibility you were probably wanting but never knew you lost in the first place.”&lt;/em&gt;

You do agree that traditional network security mechanisms will need to be augmented – good - that alone means that implementing virtual environments MAY increase management complexity and CAN impact security visibility and control.

I think you are making an assumption that an enterprise is unable to monitor point-to-point communication on the same VLAN or throughout the network, or can only do so through an IDS placed on every VLAN. Simply not the case, not only can NBA technologies monitor this communication, network management systems like Concord or Network General provide robust protocol analysis throughout the enterprise, both WAN and LAN. Visibility, especially as it pertains to security, within virtual environments is significantly hindered using traditional technologies, which is why VMware is choosing to work with Cisco - what happens to non-Cisco shops? 

&lt;em&gt;“Yes, attacking the management stack can be a real issue - one that people often overlook in virtual or physical. I’m not saying it’s not an issue in the virtual world, but it’s no worse than the physical world. What happens if you attach your OpenView or Tivoli or IBM, Dell, or HP hardware managers? You still have the same problem.”&lt;/em&gt;

The “single point of failure/single point of attack” is actually far worse in the virtual environment, unlike physical systems management technologies, like the ones you listed, virtual environments allow an attacker to take down an entire bank of servers in a single click, many companies do not use HP Openview or Unicenter for command and control, they use them to aggregate information, so attacking one of them will not disrupt an entire data center, it will only disrupt visibility into the data center. That isn’t to say that systems management tools cannot be owned, but again there is a usually one to one relationship fin the physical world for an attack vs. one to many relationship within virtual environments – you own vCenter or an ESX server and you own the enterprise, you own CA Unicenter or HP Openview and you annoy some of the folks in the NOC. What virtual environments have on the backside in a single point of failure also means a single point of continuity, let&#039;s say I bring down a bank of servers that are part of my customer portal (Web server, database, application server, middleware, etc...) in a physical world vs. a virtual world, it would be far easier to return to homeostasis in the virtual world since problem resolution, just like problem creation, have a one to many relationship - that is good!

&lt;em&gt;&quot;I agree that there are over-zealous marketers in the world. I would also agree that there have been plenty of broken virtualization implementations out there. I’ve been in the space for 6 1/2 years which in x86 virtualization is an eternity. I’ve seen plenty of those botched implementations. They got botched for a lot of the reasons you talk about here. Mainly they got botched because there wasn’t a lot of good documentation or best practices or real world experience readily available to the end user.&quot;&lt;/em&gt;

This is the real point of my post and I think you sum it up nicely - there are over zealous marketers (many of them), plenty of broken and botched virtualization implementations, many botched for the reasons we talked about and people need to level set, properly plan, and engage the right resources.

Virtualization benefits are not a given and you do not receive &quot;money for nothing&quot;]]></description>
		<content:encoded><![CDATA[<p>Hey Mike,</p>
<p>Thanks for the thoughtful response, there are some things we may need to agree to disagree on, but mostly we agree =) </p>
<p>Comments below:</p>
<p><em>“I’m just saying most corporate networks aren’t loosing visibility with VM-VM communication since they really didn’t have that visibility implemented in the first place. Never-the-less VMware saw this as a problem. This is why we partnered with Cisco (to start with) to embed your normal IOS-based virtual switch into the environment. <a href="http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html" rel="nofollow">http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html</a>. Now you get the visibility you were probably wanting but never knew you lost in the first place.”</em></p>
<p>You do agree that traditional network security mechanisms will need to be augmented – good &#8211; that alone means that implementing virtual environments MAY increase management complexity and CAN impact security visibility and control.</p>
<p>I think you are making an assumption that an enterprise is unable to monitor point-to-point communication on the same VLAN or throughout the network, or can only do so through an IDS placed on every VLAN. Simply not the case, not only can NBA technologies monitor this communication, network management systems like Concord or Network General provide robust protocol analysis throughout the enterprise, both WAN and LAN. Visibility, especially as it pertains to security, within virtual environments is significantly hindered using traditional technologies, which is why VMware is choosing to work with Cisco &#8211; what happens to non-Cisco shops? </p>
<p><em>“Yes, attacking the management stack can be a real issue &#8211; one that people often overlook in virtual or physical. I’m not saying it’s not an issue in the virtual world, but it’s no worse than the physical world. What happens if you attach your OpenView or Tivoli or IBM, Dell, or HP hardware managers? You still have the same problem.”</em></p>
<p>The “single point of failure/single point of attack” is actually far worse in the virtual environment, unlike physical systems management technologies, like the ones you listed, virtual environments allow an attacker to take down an entire bank of servers in a single click, many companies do not use HP Openview or Unicenter for command and control, they use them to aggregate information, so attacking one of them will not disrupt an entire data center, it will only disrupt visibility into the data center. That isn’t to say that systems management tools cannot be owned, but again there is a usually one to one relationship fin the physical world for an attack vs. one to many relationship within virtual environments – you own vCenter or an ESX server and you own the enterprise, you own CA Unicenter or HP Openview and you annoy some of the folks in the NOC. What virtual environments have on the backside in a single point of failure also means a single point of continuity, let&#8217;s say I bring down a bank of servers that are part of my customer portal (Web server, database, application server, middleware, etc&#8230;) in a physical world vs. a virtual world, it would be far easier to return to homeostasis in the virtual world since problem resolution, just like problem creation, have a one to many relationship &#8211; that is good!</p>
<p><em>&#8220;I agree that there are over-zealous marketers in the world. I would also agree that there have been plenty of broken virtualization implementations out there. I’ve been in the space for 6 1/2 years which in x86 virtualization is an eternity. I’ve seen plenty of those botched implementations. They got botched for a lot of the reasons you talk about here. Mainly they got botched because there wasn’t a lot of good documentation or best practices or real world experience readily available to the end user.&#8221;</em></p>
<p>This is the real point of my post and I think you sum it up nicely &#8211; there are over zealous marketers (many of them), plenty of broken and botched virtualization implementations, many botched for the reasons we talked about and people need to level set, properly plan, and engage the right resources.</p>
<p>Virtualization benefits are not a given and you do not receive &#8220;money for nothing&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike DiPetrillo</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14467</link>
		<dc:creator><![CDATA[Mike DiPetrillo]]></dc:creator>
		<pubDate>Mon, 29 Sep 2008 17:03:09 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14467</guid>
		<description><![CDATA[Amrit, we&#039;re definitely getting closer to agreeing on the few points we don&#039;t already agree on. Some more comments to keep the conversation going.

&quot;you work for VMware and you can only sort of see my thinking that firewalls and physical security won’t cut it - really? How does one stop attacks that move between guest OS systems never traversing the network? How about attack vectors introduced by the virtual layer? The increase in poorly administered and misconfigured systems? The reality is that virtual environments CAN significantly reduce a traditional IT departments visibility and control, and loss of visibility and control will impact an organizations ability to limit the potential of a security incident and to limit the impact once one occurs.&quot;

Yes, there is traffic that will move between VMs without hitting a physical network switch. This happens when 2 VMs are on the same subnet (VLAN). If you&#039;re going between subnets which often demark a security zone then you have to go out to a router and back in - there&#039;s no VM-VM communication. There are things you can do to address VM-VM communication. First, in a VMware environment you can turn this off per VM is you&#039;d like. I haven&#039;t met any customers that go that route but it is possible and in the admin manual. Second, I haven&#039;t seen too many corporate networks that actually implement IDS inside a subnet between every physical system today. Sure there are some out there but most don&#039;t. That doesn&#039;t mean you shouldn&#039;t - quite the opposite. I&#039;m just saying most corporate networks aren&#039;t loosing visibility with VM-VM communication since they really didn&#039;t have that visibility implemented in the first place. Never-the-less VMware saw this as a problem. This is why we partnered with Cisco (to start with) to embed your normal IOS-based virtual switch into the environment. http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html. Now you get the visibility you were probably wanting but never knew you lost in the first place.

&quot;One of the biggest problems with virtual environments is that I can now attack a single physical device or vCenter and bring down multiple Guest systems without actually having to attack the guest systems themselves - I now have to deal with a single point of failure and a single point of attack.&quot;

Yes, attacking the management stack can be a real issue - one that people often overlook in virtual or physical. I&#039;m not saying it&#039;s not an issue in the virtual world, but it&#039;s no worse than the physical world. What happens if you attach your OpenView or Tivoli or IBM, Dell, or HP hardware managers? You still have the same problem. Like I tell lots of customers, if you have someone that&#039;s on your internal management network attacking you then you have real serious issues - you shouldn&#039;t blame virtualization or any of the other management vendors for that unless they were the ones that opened the door for that attack in the first place.

&quot;This is where I think marketing hype and reality need to get together and become friends. Claiming a 5 month complete ROI is misleading. I believe that an organization that is looking to implement something new, like a new office or new data center, will experience cost-savings with virtualization, they are going through a refresh - desktop or server - assuming, of course, they take into account the contractors, SI’s, and solution providers involved, the new FTE’s with virtualization specialization, the new eco-system of systems and security management tools needed to manage the systems and the increase in licensing costs.&quot;

This is just something we&#039;re going to have to disagree on. I could sit here and talk about customer after customer I&#039;ve seen with real sub-5 month ROIs. I could point you to VMware&#039;s public case studies or Citrix&#039;s or Microsoft&#039;s or Red Hat&#039;s or SUN&#039;s or anyone else in the virtualization space where customer after customer talks about their near-immediate ROIs. In my mind that&#039;s proof enough. I guess in your mind they&#039;re all blind to their true ROI. Who knows. Bottom line here  is it does happen. Not sure how to convince you of that.

&quot;Bottom line: There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency, but between the ideal and the reality is a chasm of broken promises, mismatched expectations and shady vendors waiting to gobble up your dollars and leave a trail of misery and despair in their wake. Virtualization can improve the efficiency of your operating environment but it requires proper planning, expectation setting and careful deployment.&quot;

I agree that there are over-zealous marketers in the world. I would also agree that there have been plenty of broken virtualization implementations out there. I&#039;ve been in the space for 6 1/2 years which in x86 virtualization is an eternity. I&#039;ve seen plenty of those botched implementations. They got botched for a lot of the reasons you talk about here. Mainly they got botched because there wasn&#039;t a lot of good documentation or best practices or real world experience readily available to the end user. That&#039;s where you and I and other people come in. We need to help these people with real, concrete stuff on how to do this right. The IT industry as a whole needs to come together to help our joint customers. After all, we both sell to the same people and I know of plenty joint customers that we have. Actually the real bottom line is customers need to engage their partners or their customers more and let us help them through the process to make sure they&#039;re successful. I think too many admins try to go it alone. I used to be one of those when I worked in corporate america. Not sure if it was pride or what it was. Usually there&#039;s an eager SE from your vendor just waiting to help you the customer be a rockstar and succeed.

I look forward to more open conversations with you and hopefully together we can sort through the FUD, truly dispel some of these myths, get some good joint best practices out there, and lead this IT space into the next evolution of computing.]]></description>
		<content:encoded><![CDATA[<p>Amrit, we&#8217;re definitely getting closer to agreeing on the few points we don&#8217;t already agree on. Some more comments to keep the conversation going.</p>
<p>&#8220;you work for VMware and you can only sort of see my thinking that firewalls and physical security won’t cut it &#8211; really? How does one stop attacks that move between guest OS systems never traversing the network? How about attack vectors introduced by the virtual layer? The increase in poorly administered and misconfigured systems? The reality is that virtual environments CAN significantly reduce a traditional IT departments visibility and control, and loss of visibility and control will impact an organizations ability to limit the potential of a security incident and to limit the impact once one occurs.&#8221;</p>
<p>Yes, there is traffic that will move between VMs without hitting a physical network switch. This happens when 2 VMs are on the same subnet (VLAN). If you&#8217;re going between subnets which often demark a security zone then you have to go out to a router and back in &#8211; there&#8217;s no VM-VM communication. There are things you can do to address VM-VM communication. First, in a VMware environment you can turn this off per VM is you&#8217;d like. I haven&#8217;t met any customers that go that route but it is possible and in the admin manual. Second, I haven&#8217;t seen too many corporate networks that actually implement IDS inside a subnet between every physical system today. Sure there are some out there but most don&#8217;t. That doesn&#8217;t mean you shouldn&#8217;t &#8211; quite the opposite. I&#8217;m just saying most corporate networks aren&#8217;t loosing visibility with VM-VM communication since they really didn&#8217;t have that visibility implemented in the first place. Never-the-less VMware saw this as a problem. This is why we partnered with Cisco (to start with) to embed your normal IOS-based virtual switch into the environment. <a href="http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html" rel="nofollow">http://cisco.com/cdc_content_elements/flash/dataCenter/nexus1000/index.html</a>. Now you get the visibility you were probably wanting but never knew you lost in the first place.</p>
<p>&#8220;One of the biggest problems with virtual environments is that I can now attack a single physical device or vCenter and bring down multiple Guest systems without actually having to attack the guest systems themselves &#8211; I now have to deal with a single point of failure and a single point of attack.&#8221;</p>
<p>Yes, attacking the management stack can be a real issue &#8211; one that people often overlook in virtual or physical. I&#8217;m not saying it&#8217;s not an issue in the virtual world, but it&#8217;s no worse than the physical world. What happens if you attach your OpenView or Tivoli or IBM, Dell, or HP hardware managers? You still have the same problem. Like I tell lots of customers, if you have someone that&#8217;s on your internal management network attacking you then you have real serious issues &#8211; you shouldn&#8217;t blame virtualization or any of the other management vendors for that unless they were the ones that opened the door for that attack in the first place.</p>
<p>&#8220;This is where I think marketing hype and reality need to get together and become friends. Claiming a 5 month complete ROI is misleading. I believe that an organization that is looking to implement something new, like a new office or new data center, will experience cost-savings with virtualization, they are going through a refresh &#8211; desktop or server &#8211; assuming, of course, they take into account the contractors, SI’s, and solution providers involved, the new FTE’s with virtualization specialization, the new eco-system of systems and security management tools needed to manage the systems and the increase in licensing costs.&#8221;</p>
<p>This is just something we&#8217;re going to have to disagree on. I could sit here and talk about customer after customer I&#8217;ve seen with real sub-5 month ROIs. I could point you to VMware&#8217;s public case studies or Citrix&#8217;s or Microsoft&#8217;s or Red Hat&#8217;s or SUN&#8217;s or anyone else in the virtualization space where customer after customer talks about their near-immediate ROIs. In my mind that&#8217;s proof enough. I guess in your mind they&#8217;re all blind to their true ROI. Who knows. Bottom line here  is it does happen. Not sure how to convince you of that.</p>
<p>&#8220;Bottom line: There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency, but between the ideal and the reality is a chasm of broken promises, mismatched expectations and shady vendors waiting to gobble up your dollars and leave a trail of misery and despair in their wake. Virtualization can improve the efficiency of your operating environment but it requires proper planning, expectation setting and careful deployment.&#8221;</p>
<p>I agree that there are over-zealous marketers in the world. I would also agree that there have been plenty of broken virtualization implementations out there. I&#8217;ve been in the space for 6 1/2 years which in x86 virtualization is an eternity. I&#8217;ve seen plenty of those botched implementations. They got botched for a lot of the reasons you talk about here. Mainly they got botched because there wasn&#8217;t a lot of good documentation or best practices or real world experience readily available to the end user. That&#8217;s where you and I and other people come in. We need to help these people with real, concrete stuff on how to do this right. The IT industry as a whole needs to come together to help our joint customers. After all, we both sell to the same people and I know of plenty joint customers that we have. Actually the real bottom line is customers need to engage their partners or their customers more and let us help them through the process to make sure they&#8217;re successful. I think too many admins try to go it alone. I used to be one of those when I worked in corporate america. Not sure if it was pride or what it was. Usually there&#8217;s an eager SE from your vendor just waiting to help you the customer be a rockstar and succeed.</p>
<p>I look forward to more open conversations with you and hopefully together we can sort through the FUD, truly dispel some of these myths, get some good joint best practices out there, and lead this IT space into the next evolution of computing.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matt Lachberg</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14461</link>
		<dc:creator><![CDATA[Matt Lachberg]]></dc:creator>
		<pubDate>Sat, 27 Sep 2008 04:58:01 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14461</guid>
		<description><![CDATA[Excellent post Amrit and great dialog between you and Mike DiPetrillo in the comments, you both have great points and insights, very enjoyable!!]]></description>
		<content:encoded><![CDATA[<p>Excellent post Amrit and great dialog between you and Mike DiPetrillo in the comments, you both have great points and insights, very enjoyable!!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Interesting Information Security Bits for 09/26/2008 &#171; Infosec Ramblings</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14459</link>
		<dc:creator><![CDATA[Interesting Information Security Bits for 09/26/2008 &#171; Infosec Ramblings]]></dc:creator>
		<pubDate>Fri, 26 Sep 2008 21:11:53 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14459</guid>
		<description><![CDATA[[...] Myths, Misconceptions, Half-Truths and Lies about Virtualization &lt;&lt; Amrit Williams Blog A great post by Amrit discussing virtualization and many of the challenges associated with it that people tend to overlook. [...]]]></description>
		<content:encoded><![CDATA[<p>[...] Myths, Misconceptions, Half-Truths and Lies about Virtualization &lt;&lt; Amrit Williams Blog A great post by Amrit discussing virtualization and many of the challenges associated with it that people tend to overlook. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: amritw</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14456</link>
		<dc:creator><![CDATA[amritw]]></dc:creator>
		<pubDate>Fri, 26 Sep 2008 15:35:15 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14456</guid>
		<description><![CDATA[Hey Mike,

Thanks for commenting, I appreciate your time. Note that I said &quot;There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency...&quot; 

Comments below...
&lt;em&gt;
&quot;I would have thought the CTO from BigFix (a company I admire) would have put some truth to the myths rather than just perpetuating a lot of them. Some comments below.&quot;&lt;/em&gt;

Thank-you I admire the hell out of VMware as well. Remember that the views expressed on this site are personal opinions of the contributors, and may not reflect those of their employers. But just because you don’t agree with my opinions doesn’t mean that they aren&#039;t true. 

&lt;em&gt;&quot;Virtualization Reduces Complexity: Yes and no.&quot; &lt;/em&gt;

Exactly, that&#039;s what I said, I however focused on the no in this post, while VMware has focused on the yes!
&lt;em&gt;
&quot;Patching also gets simplified in a VMware world with VMware Update Manager. The great thing here is if you patch something and it blows up the OS or App you can just revert to the snapshot that Update Manager automatically took before the update was applied. This greatly reduces the complexity in recovering from a bad patch. As the CTO for a patch management company you obviously know that not every patch is successful.&quot;&lt;/em&gt;

 Yes, of course i know that not all patches are successful, but as for patching being simplified in VMware -  this isn&#039;t true at all, what does become easier is rolling back to a pre-patch image, but that doesn&#039;t provide a lot since most patch management systems have fairly mature roll-back capabilities, in fact in terms of patching one now has to worry about patching each guest OS, as well as the virtual layer

Again: One now has to patch each guest OS, as well as the virtual layer, and one does have to actually patch VMware - remember the update on August 12, 2008 that blocked users from starting their corporate servers (&lt;a href=&quot;http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9112439&quot; rel=&quot;nofollow&quot;&gt;here&lt;/a&gt;)

&lt;em&gt;&quot;Virtualization Increases Security: I’d agree with you that it doesn’t necessarily make things safer.&quot; &lt;/em&gt;

great, so you agree on complexity, and now security =)
&lt;em&gt;
&quot;However, you do state that just having firewalls and physical security won’t cut it when you move from physical to virtual. I can sort of see your thinking there&quot;&lt;/em&gt;

 you work for VMware and you can only sort of see my thinking that firewalls and physical security won&#039;t cut it - really? How does one stop attacks that move between guest OS systems never traversing the network? How about attack vectors introduced by the virtual layer? The increase in poorly administered and misconfigured systems? The reality is that virtual environments CAN significantly reduce a traditional IT departments visibility and control, and loss of visibility and control will impact an organizations ability to limit the potential of a security incident and to limit the impact once one occurs.

&lt;em&gt;&quot;Of course with physical systems couldn’t you copy the data to your laptop and leave as well? If not, then why all of a sudden do you have more access to the VM files? They’re stored in that same physical datacenter. If you now have access to a lot more than you had before then you have some other serious security concerns to worry about outside of being virtual or physical.&quot; &lt;/em&gt;

 It is easier to copy a file that is the OS, but yes this is true virtual environments are as insecure as physical environments if an IT organization cannot even implement basic controls to limit data leakage. The issue with Virtual environments is that data now moves around in ways that are difficult to monitor - i.e guest OS to guest OS, and most are attempting to monitor this data flow on the network.

&lt;em&gt;&quot;With advancements such as VMSafe security is taking a whole new interesting turn in the virtual world to where VMs will actually become safer to run in than physical machines. &quot;&lt;/em&gt;

 safer to run, ok this is just BS, yes VMsafe offers interesting capabilities, such as monitoring I/O access while not sitting on the guest OS, but there are so many methods one can use that VMsafe based security technologies would simply be blond to the activity. - also I now have to worry about the security of the virtual layer.

One of the biggest problems with virtual environments is that I can now attack a single physical device or vCenter and bring down multiple Guest systems without actually having to attack the guest systems themselves - I now have to deal with a single point of failure and a single point of attack.
&lt;em&gt;
&quot;With that said, virtualization is VERY easy to implement.&quot;&lt;/em&gt;

 sure it is, it is also easy to install a Windows server, or launch a new Linux disro - implementing isn&#039;t the main thing that requires specialization. A large enterprise, say 30k end-points, 3-4k servers, will need to properly plan how to implement, how to decommission legacy systems, now to handle access controls, how to maintain, manage, and administer, how to properly optimize, how to secure, how to control, and how to report the state of all of this.

&lt;em&gt;&quot;The average payback is less than 5 months. No joke. If it’s longer than that for anyone reading this then you either (a) way overspent upfront, (b) are moving way too slow, or (c) have done the math wrong.&quot;&lt;/em&gt;

 This is where I think marketing hype and reality need to get together and become friends. Claiming a 5 month complete ROI is misleading. I believe that an organization that is looking to implement something new, like a new office or new data center, will experience cost-savings with virtualization, they are going through a refresh - desktop or server - assuming, of course, they take into account the contractors, SI&#039;s, and solution providers involved, the new FTE&#039;s with virtualization specialization, the new eco-system of systems and security management tools needed to manage the systems and the increase in licensing costs. 

&lt;em&gt;&quot;While you did hit on some major myths in virtualization you did nothing to dispel them in which case their not myths to you but rather facts.&quot;&lt;/em&gt;

 I don&#039;t work for VMware marketing, but I imagine they have an army of resources doing nothing but trying to dispel the myths and propagating the hype - and there is nothing wrong with that. But these are my personal opinions, I never stated they were facts, but they are based on almost 2 decades of IT experience.

Bottom line: There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency, but between the ideal and the reality is a chasm of broken promises, mismatched expectations and shady vendors waiting to gobble up your dollars and leave a trail of misery and despair in their wake. Virtualization can  improve the efficiency of your operating environment but it requires proper planning, expectation setting and careful deployment.

Do you disagree with any of that?]]></description>
		<content:encoded><![CDATA[<p>Hey Mike,</p>
<p>Thanks for commenting, I appreciate your time. Note that I said &#8220;There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency&#8230;&#8221; </p>
<p>Comments below&#8230;<br />
<em><br />
&#8220;I would have thought the CTO from BigFix (a company I admire) would have put some truth to the myths rather than just perpetuating a lot of them. Some comments below.&#8221;</em></p>
<p>Thank-you I admire the hell out of VMware as well. Remember that the views expressed on this site are personal opinions of the contributors, and may not reflect those of their employers. But just because you don’t agree with my opinions doesn’t mean that they aren&#8217;t true. </p>
<p><em>&#8220;Virtualization Reduces Complexity: Yes and no.&#8221; </em></p>
<p>Exactly, that&#8217;s what I said, I however focused on the no in this post, while VMware has focused on the yes!<br />
<em><br />
&#8220;Patching also gets simplified in a VMware world with VMware Update Manager. The great thing here is if you patch something and it blows up the OS or App you can just revert to the snapshot that Update Manager automatically took before the update was applied. This greatly reduces the complexity in recovering from a bad patch. As the CTO for a patch management company you obviously know that not every patch is successful.&#8221;</em></p>
<p> Yes, of course i know that not all patches are successful, but as for patching being simplified in VMware &#8211;  this isn&#8217;t true at all, what does become easier is rolling back to a pre-patch image, but that doesn&#8217;t provide a lot since most patch management systems have fairly mature roll-back capabilities, in fact in terms of patching one now has to worry about patching each guest OS, as well as the virtual layer</p>
<p>Again: One now has to patch each guest OS, as well as the virtual layer, and one does have to actually patch VMware &#8211; remember the update on August 12, 2008 that blocked users from starting their corporate servers (<a href="http://www.computerworld.com/action/article.do?command=viewArticleBasic&amp;articleId=9112439" rel="nofollow">here</a>)</p>
<p><em>&#8220;Virtualization Increases Security: I’d agree with you that it doesn’t necessarily make things safer.&#8221; </em></p>
<p>great, so you agree on complexity, and now security =)<br />
<em><br />
&#8220;However, you do state that just having firewalls and physical security won’t cut it when you move from physical to virtual. I can sort of see your thinking there&#8221;</em></p>
<p> you work for VMware and you can only sort of see my thinking that firewalls and physical security won&#8217;t cut it &#8211; really? How does one stop attacks that move between guest OS systems never traversing the network? How about attack vectors introduced by the virtual layer? The increase in poorly administered and misconfigured systems? The reality is that virtual environments CAN significantly reduce a traditional IT departments visibility and control, and loss of visibility and control will impact an organizations ability to limit the potential of a security incident and to limit the impact once one occurs.</p>
<p><em>&#8220;Of course with physical systems couldn’t you copy the data to your laptop and leave as well? If not, then why all of a sudden do you have more access to the VM files? They’re stored in that same physical datacenter. If you now have access to a lot more than you had before then you have some other serious security concerns to worry about outside of being virtual or physical.&#8221; </em></p>
<p> It is easier to copy a file that is the OS, but yes this is true virtual environments are as insecure as physical environments if an IT organization cannot even implement basic controls to limit data leakage. The issue with Virtual environments is that data now moves around in ways that are difficult to monitor &#8211; i.e guest OS to guest OS, and most are attempting to monitor this data flow on the network.</p>
<p><em>&#8220;With advancements such as VMSafe security is taking a whole new interesting turn in the virtual world to where VMs will actually become safer to run in than physical machines. &#8220;</em></p>
<p> safer to run, ok this is just BS, yes VMsafe offers interesting capabilities, such as monitoring I/O access while not sitting on the guest OS, but there are so many methods one can use that VMsafe based security technologies would simply be blond to the activity. &#8211; also I now have to worry about the security of the virtual layer.</p>
<p>One of the biggest problems with virtual environments is that I can now attack a single physical device or vCenter and bring down multiple Guest systems without actually having to attack the guest systems themselves &#8211; I now have to deal with a single point of failure and a single point of attack.<br />
<em><br />
&#8220;With that said, virtualization is VERY easy to implement.&#8221;</em></p>
<p> sure it is, it is also easy to install a Windows server, or launch a new Linux disro &#8211; implementing isn&#8217;t the main thing that requires specialization. A large enterprise, say 30k end-points, 3-4k servers, will need to properly plan how to implement, how to decommission legacy systems, now to handle access controls, how to maintain, manage, and administer, how to properly optimize, how to secure, how to control, and how to report the state of all of this.</p>
<p><em>&#8220;The average payback is less than 5 months. No joke. If it’s longer than that for anyone reading this then you either (a) way overspent upfront, (b) are moving way too slow, or (c) have done the math wrong.&#8221;</em></p>
<p> This is where I think marketing hype and reality need to get together and become friends. Claiming a 5 month complete ROI is misleading. I believe that an organization that is looking to implement something new, like a new office or new data center, will experience cost-savings with virtualization, they are going through a refresh &#8211; desktop or server &#8211; assuming, of course, they take into account the contractors, SI&#8217;s, and solution providers involved, the new FTE&#8217;s with virtualization specialization, the new eco-system of systems and security management tools needed to manage the systems and the increase in licensing costs. </p>
<p><em>&#8220;While you did hit on some major myths in virtualization you did nothing to dispel them in which case their not myths to you but rather facts.&#8221;</em></p>
<p> I don&#8217;t work for VMware marketing, but I imagine they have an army of resources doing nothing but trying to dispel the myths and propagating the hype &#8211; and there is nothing wrong with that. But these are my personal opinions, I never stated they were facts, but they are based on almost 2 decades of IT experience.</p>
<p>Bottom line: There is no question that virtualization holds a lot of promise for the enterprise, from decreased cost to increased efficiency, but between the ideal and the reality is a chasm of broken promises, mismatched expectations and shady vendors waiting to gobble up your dollars and leave a trail of misery and despair in their wake. Virtualization can  improve the efficiency of your operating environment but it requires proper planning, expectation setting and careful deployment.</p>
<p>Do you disagree with any of that?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Mike DiPetrillo</title>
		<link>http://techbuddha.wordpress.com/2008/09/26/myths-misconceptions-half-truths-and-lies-about-virtualization/#comment-14455</link>
		<dc:creator><![CDATA[Mike DiPetrillo]]></dc:creator>
		<pubDate>Fri, 26 Sep 2008 14:51:26 +0000</pubDate>
		<guid isPermaLink="false">http://techbuddha.wordpress.com/?p=464#comment-14455</guid>
		<description><![CDATA[I would have though the CTO from BigFix (a company I admire) would have put some truth to the myths rather than just perpetuating a lot of them. Some comments below.

Virtualization Reduces Complexity: Yes and no. Yes since each guest doesn&#039;t need the complexities of NIC teaming, 3rd party HBA failover drivers, backup agents, and soon virus scanning agents. All of this is taken over by the virtualization layer. This means the OS and apps run longer with more reliability. It also means standard OS builds are actually a reality now. Backups get easier and centralized and open the door for actually doing SAN based backups for all of your servers instead of just a handful. Live, file-level based backups can also go on day and night so you don&#039;t have to rely on a narrow backup window. Patching also gets simplified in a VMware world with VMware Update Manager. The great thing here is if you patch something and it blows up the OS or App you can just revert to the snapshot that Update Manager automatically took before the update was applied. This greatly reduces the complexity in recovering from a bad patch. As the CTO for a patch management company you obviously know that not every patch is successful. There are many parts of virtualization that reduce complexity in the environment and it&#039;s only getting better as the industry moves forward.

Virtualization Increases Security: I&#039;d agree with you that it doesn&#039;t necessarily make things safer. However, you do state that just having firewalls and physical security won&#039;t cut it when you move from physical to virtual. I can sort of see your thinking there. VMs are just files and you could copy those to your laptop and leave. I&#039;ve heard that argument before. Of course with physical systems couldn&#039;t you copy the data to your laptop and leave as well? If not, then why all of a sudden do you have more access to the VM files? They&#039;re stored in that same physical datacenter. If you now have access to a lot more than you had before then you have some other serious security concerns to worry about outside of being virtual or physical. With advancements such as VMSafe security is taking a whole new interesting turn in the virtual world to where VMs will actually become safer to run in than physical machines. Imagine if you had a new virus that no one had definitions for yet. With VMSafe (from VMware) you could fingerprint the CPU and memory instructions that looked suspicious, flag it as a bad thing, and then watch for those on every other VM in the environment - all before virus definitions ever created, distributed, and updated. Advantage VMs.

Virtualization Will Not Require Specialization: Everything in IT requires specialization if you want to really fine tune it. Anyone who claims otherwise is a liar or has been in IT for less than 1 day. With that said, virtualization is VERY easy to implement. That&#039;s part of the downfall of a lot of implementations of virtualization. The software is so easy to setup and use and move workloads to that people don&#039;t take the time to learn the new environment they have setup until problems start to creep up. Education is and always will be fundamental in anything you do in life.

Virtualization Will Save You Money Today: It depends. If it doesn&#039;t save you money today it will tomorrow. I&#039;ve been implementing virtualization solutions for 6 1/2 years. I&#039;ve personally helped over 4,000 different companies go virtual. The average payback is less than 5 months. No joke. If it&#039;s longer than that for anyone reading this then you either (a) way overspent upfront, (b) are moving way too slow, or (c) have done the math wrong. In some environments it can save you right up front. I was with a customer that was out of power in their datacenter (not uncommon). It was going to cost them $1.2 MM to run a new power line. They spent $120k in VMware software, $200k in some new hardware (they reused a lot of stuff they had already), and probably used about $350k in man hours from their team to consolidate. They put off that power upgrade for 4 years through this project. That&#039;s immediate payback through virtualization. I could list hundreds of examples like that.

While you did hit on some major myths in virtualization you did nothing to dispel them in which case their not myths to you but rather facts. I personally believe every last one of them is a myth based on my personal experience in this space. Yes, you need to be careful when moving forward with virtualization. That&#039;s why there are thousands of partners out there just waiting to help. Get engaged and get virtual!

DISCLAIMER: I work for VMware as a Principal Systems Engineer. Click on my name for my blog and bio.]]></description>
		<content:encoded><![CDATA[<p>I would have though the CTO from BigFix (a company I admire) would have put some truth to the myths rather than just perpetuating a lot of them. Some comments below.</p>
<p>Virtualization Reduces Complexity: Yes and no. Yes since each guest doesn&#8217;t need the complexities of NIC teaming, 3rd party HBA failover drivers, backup agents, and soon virus scanning agents. All of this is taken over by the virtualization layer. This means the OS and apps run longer with more reliability. It also means standard OS builds are actually a reality now. Backups get easier and centralized and open the door for actually doing SAN based backups for all of your servers instead of just a handful. Live, file-level based backups can also go on day and night so you don&#8217;t have to rely on a narrow backup window. Patching also gets simplified in a VMware world with VMware Update Manager. The great thing here is if you patch something and it blows up the OS or App you can just revert to the snapshot that Update Manager automatically took before the update was applied. This greatly reduces the complexity in recovering from a bad patch. As the CTO for a patch management company you obviously know that not every patch is successful. There are many parts of virtualization that reduce complexity in the environment and it&#8217;s only getting better as the industry moves forward.</p>
<p>Virtualization Increases Security: I&#8217;d agree with you that it doesn&#8217;t necessarily make things safer. However, you do state that just having firewalls and physical security won&#8217;t cut it when you move from physical to virtual. I can sort of see your thinking there. VMs are just files and you could copy those to your laptop and leave. I&#8217;ve heard that argument before. Of course with physical systems couldn&#8217;t you copy the data to your laptop and leave as well? If not, then why all of a sudden do you have more access to the VM files? They&#8217;re stored in that same physical datacenter. If you now have access to a lot more than you had before then you have some other serious security concerns to worry about outside of being virtual or physical. With advancements such as VMSafe security is taking a whole new interesting turn in the virtual world to where VMs will actually become safer to run in than physical machines. Imagine if you had a new virus that no one had definitions for yet. With VMSafe (from VMware) you could fingerprint the CPU and memory instructions that looked suspicious, flag it as a bad thing, and then watch for those on every other VM in the environment &#8211; all before virus definitions ever created, distributed, and updated. Advantage VMs.</p>
<p>Virtualization Will Not Require Specialization: Everything in IT requires specialization if you want to really fine tune it. Anyone who claims otherwise is a liar or has been in IT for less than 1 day. With that said, virtualization is VERY easy to implement. That&#8217;s part of the downfall of a lot of implementations of virtualization. The software is so easy to setup and use and move workloads to that people don&#8217;t take the time to learn the new environment they have setup until problems start to creep up. Education is and always will be fundamental in anything you do in life.</p>
<p>Virtualization Will Save You Money Today: It depends. If it doesn&#8217;t save you money today it will tomorrow. I&#8217;ve been implementing virtualization solutions for 6 1/2 years. I&#8217;ve personally helped over 4,000 different companies go virtual. The average payback is less than 5 months. No joke. If it&#8217;s longer than that for anyone reading this then you either (a) way overspent upfront, (b) are moving way too slow, or (c) have done the math wrong. In some environments it can save you right up front. I was with a customer that was out of power in their datacenter (not uncommon). It was going to cost them $1.2 MM to run a new power line. They spent $120k in VMware software, $200k in some new hardware (they reused a lot of stuff they had already), and probably used about $350k in man hours from their team to consolidate. They put off that power upgrade for 4 years through this project. That&#8217;s immediate payback through virtualization. I could list hundreds of examples like that.</p>
<p>While you did hit on some major myths in virtualization you did nothing to dispel them in which case their not myths to you but rather facts. I personally believe every last one of them is a myth based on my personal experience in this space. Yes, you need to be careful when moving forward with virtualization. That&#8217;s why there are thousands of partners out there just waiting to help. Get engaged and get virtual!</p>
<p>DISCLAIMER: I work for VMware as a Principal Systems Engineer. Click on my name for my blog and bio.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
