JUNIPER DATA CENTER EDGE CONNECTIVITY SOLUTIONS. Michael Pergament, Data Center Consultant EMEA (JNCIE 2 )
|
|
|
- Virgil Stone
- 10 years ago
- Views:
Transcription
1 JUNIPER DATA CENTER EDGE CONNECTIVITY SOLUTIONS Michael Pergament, Data Center Consultant EMEA (JNCIE 2 )
2 AGENDA Reasons to focus on Data Center Interconnect MX as Data Center Interconnect Connectivity options towards DC Interconnect Providing L2 services across multiple DC locations with VPLS EVPN Overview Network support for Seamless VM Mobility 2 Copyright 2012 Juniper Networks, Inc.
3 REASONS TO FOCUS ON DC-INTERCONNECT REASON #1 Data-Center Consolidation and Distribution Scalability High Availability Compliance Multi- Tenancy 3 Copyright 2012 Juniper Networks, Inc.
4 REASONS TO FOCUS ON DC-INTERCONNECT REASON #2 Geo-Clustering, Disaster Recovery Scalable L2- Stretch Traffic Engineering & Resiliency Low Latency & Jitter Fault Containment No STP 4 Copyright 2012 Juniper Networks, Inc.
5 REASONS TO FOCUS ON DC-INTERCONNECT REASON #3 L2 Stretch and VM Mobility DC disaster recovery Storage replication Hybrid cloud services a strong SP trend Server maintenance No disruption to VMs Resource Optimization 5 Copyright 2012 Juniper Networks, Inc.
6 JUNIPER S VISION: COMMON DATA CENTER MODEL Customer B - IT DC Junos Space SRX GbE/10GbE SERVERS MX EX QFX μf Pooled storage iscsi / NAS FC STORAGE Public Cloud Users SMB Customer A - IT DC Junos Space SRX GbE/10GbE SERVERS MX EX QFX μf Pooled storage iscsi / NAS FC STORAGE VPN Hybrid Cloud Hybrid Cloud VPN Junos Space Production Data Center A Production Data Center B Junos Space NAT FW LB IPSec SRX QFX MX Inter Data Center Connectivity MX QFX SRX NAT FW LB IPSec Pooled Storage (NAS) GbE/10GbE SERVERS GbE/10GbE SERVERS Pooled Storage (NAS) 6 Copyright 2012 Juniper Networks, Inc.
7 DATA CENTER REFERENCE ARCHITECTURE SRX HA Junos Space Orchestration IP L3VPN E-VPN MX: Data Center Connectivity Best of the breed platforms Single JUNOS Optimized L2, L3, L4-7 services delivery JUNOS and JUNOS Space SDK for 3 rd party integration SRX: L4-7 Services Complex Fabric EX / QFX: Any port to any port L2/L3 connectivity Pooled Ethernet Storage iscsi / NAS Servers, Virtual Machines FC Storage 7 Copyright 2012 Juniper Networks, Inc.
8 MX PROVIDING DC LAN & WAN CONNECTIVITY Proven platform Over 24,000 chassis shipped Over $3B revenues Over 2,500 customers Inline services, stateful services MX supporting extensive set of LAN features WAN / CORE MX providing W A N L A N market leading WAN features High scale, multitenancy, resiliency, deployment flexibility EDGE COLLAPSED CORE 8 Copyright 2012 Juniper Networks, Inc.
9 MX L2 INSTANCE OVERVIEW Bridge-Domain L2 Flooding Domain Typically one BD per cloud tenant Assigned to tenant WAN instance BD level VLAN tag preserved over WAN IRB.0 Bridge Domain Automatic port level VLAN manipulation BD VLAN-ID used to identify tenant 4K VLAN / L2 learning domain per BD Extensive VLAN manipulations: swap, pop, push, pop-swap, swap-push, swapswap IFL 0: VLAN-ID 100 L3VPN.0 Bridge-Domain.0 VLAN-ID: 1001 IFL 1: VLAN 200 IFL 2: VLAN 300 VPLS.0 IFL 3: VLAN 400 WAN Instances Stitched per tenant Multi-tenancy Interface tags locally significant IRB per tenant for L3 connectivity 9 Copyright 2012 Juniper Networks, Inc.
10 VIRTUAL-SWITCH OVERVIEW Virtual-Switch = L2 VRF Each L2 Domain independent of other Each virtual-switch Multiple bridge-domains Separate xstp instance Separate 4K VLAN-ID space Separate VPLS instance STP VPLS STP VPLS Virtual Switch 0 BD 0: VLAN BD 1: VLAN 300 Virtual Switch 1 BD 0: VLAN BD 1: VLAN OT:400, IT: 1001 Combines LAN and WAN switching in single place BD and Virtual-Switch combined High scale 8K Virtual-Switch support IFL 1 IFL 2 L2 Domain #1 STP #1 4K VLANs IFL 5 IFL 10 IFL 11 IFL 12 L2 Domain #2 STP #2 4K VLANs 10 Copyright 2012 Juniper Networks, Inc.
11 MX HAS STRONG LAN FEATURES TAG Single & double tags Extensive manipulation capabilities (push, pop, swap, multiple operations) Local / global significance, label standardization LAG Aggregated Ethernet interface support LAG 16 member 64 member MC-LAG IRB Scale Integrated Routing and Bridging Single Interface IFL level resolution High scale MAC table: 1M MAC address support, 1M ARPs 128K IFL support (64bit RE, Trio chipset), high scale L2 filters User controlled MAC learning limits Mirror Layer-2 port mirroring Next-hop group capable: L2 and L3 nexthops Snoop IGMP and PIM Snooping Snooping with MC-LAG Further flooding optimization by Proxy-ARP, DHCP-Relay 11 Copyright 2012 Juniper Networks, Inc.
12 DCI TODAY, VIRTUAL PRIVATE LAN SERVICES (VPLS) MX Series VPLS over MPLS (or) IP Remote Data Center Remote Data Center MX Series SRX NAT FW LB IPSec QFX SRX5800 EX4200 EX/MX GbE/10GbE SERVERS GbE/10GbE SERVERS 12 Copyright 2012 Juniper Networks, Inc.
13 VPLS EMULATES AN ETHERNET SWITCH Common Characteristics: Forwarding of Ethernet Frames Forwarding of Unicast frames with an unknown MAC address Replication of broadcast and multicast frames Loop prevention Dynamic Learning of MAC address DC1 CE P P PE CE DC3 PE CE DC2 CE PE DC4 13 Copyright 2012 Juniper Networks, Inc.
14 VPLS CHARACTERISTICS Virtual Private LAN Service (VPLS) provides VLAN Extension over a shared IP/MPLS network. Full Mesh VLAN Separation Provisioning Multicast, Broadcast and Flooding Availability Any-to-Any connectivity regardless of physical path Separate VPLS instances per VLAN. Allows network-wide segmentation with very large scale New site Auto Discovery, RSVP Automatic Mesh Point-to-Multipoint LSPs capabilities Underlying MPLS offers ECMP, Fast Reroute 14 Copyright 2012 Juniper Networks, Inc.
15 CONNECTIVITY OPTIONS TOWARDS MX VPLS Multi-Homing Multi-Chassis LAG Standard LAG to MX VC MX Series MX Series VC MX Series NAT FW LB IPSec SRX QFX NAT FW LB IPSec SRX MC-LAG QFX NAT FW LB IPSec SRX LAG QFX 15 Copyright 2012 Juniper Networks, Inc.
16 OPTION 1: VPLS MULTI-HOMING QFabric has one uplink to each MX (can be LAG) MX will allow traffic forwarding for particular VLAN only on one uplink Loop prevention implemented in BGP on MXs Traffic Load-Balancing Different VLANs can have different active uplinks VRRP Master for VLAN X VLAN X Active on this link NAT FW LB IPSec SRX QFX VRRP Master for VLAN Y MX Series VLAN X Active on this link 16 Copyright 2012 Juniper Networks, Inc.
17 OPTION 2: MULTI-CHASSIS LAG A/P WITH VPLS MC-LAG Multi-Chassis Link Aggregation Group Allows a LAG interface to be established across multiple MX chassis One logical interface across 2x chassis ICCP MX Series Provides node level redundancy, multi-homing support, and loop-free Layer2 network without running Spanning Tree Protocol (STP) Uses Inter-Chassis Control Protocol (ICCP) to exchange control information between two MC-LAG nodes NAT FW LB IPSec SRX MC-LAG 1 QFX Client device device terminates physical links in a link aggregation group (LAG) Client device not aware of MC-LAG 17 Copyright 2012 Juniper Networks, Inc.
18 OPTION 3: MX VIRTUAL CHASSIS, A/A LAG Benefits of a Virtual Chassis Performance and Scale Scaling Ports & Services beyond one chassis VC MX Series Easy to Manage Single image, single config One management IP address NAT FW LB IPSec SRX LAG QFX Single Control Plane Single protocol peering Single RT/FT 18 Copyright 2012 Juniper Networks, Inc.
19 MPLS CONNECTIVITY: EVPN MAC update DC-1 DC-2 VM moves from DC-2 to DC-1 MPLS Cloud MAC update Load balancing DC-3 Ethernet-VPN a new standards based protocol to inter-connect L2 domains over MPLS Enhancing industry standard VPLS further Multi-vendor / open initiative non-proprietary MPLS investment protection - builds easily over VPLS, L2/L3VPN environments Enhancements delivered by EVPN: Active multi-homed Extended control plane (MAC address) scaling Faster convergence from edge failures using local repair Flooding AND Control Plane learning Increased granularity on MAC address reach-ability distribution increased support for host mobility policy based decisions 19 Copyright 2012 Juniper Networks, Inc.
20 EVPN TERMINOLOGY MES : MPLS Edge Switch CE: Customer Edge Interface ES: Ethernet Segment ESI: Ethernet Segment Identifier (e.g. LAG Identifier) EFI: EVPN Forwarding Instance An E-VPN comprises CEs that are connected to MESs (PEs) that comprise the edge of the MPLS infrastructure. A CE may be a host, a router or a switch. 20 Copyright 2012 Juniper Networks, Inc.
21 EVPN REFERENCE MODEL Host -A1 ESI 1, VLAN1 VPN A ESI 1, VLAN1 Host A5 EFI-A ESI 2, VLAN2 MES 1 VPN B Host-B1 EFI-B EFI-A RR VPN A Host-A4 ESI 3, VLAN1 MES 4 EFI-A Ethernet MES 2 Switch-B3 VPN B ESI 4, VLAN2 EFI-B ESI 5, VLAN1 Host-A3 VPN A MES 3 MESes are connected by an IP/MPLS infrastructure Transport may be provided by MPLS P2P or P2MP LSPs for multicast Transport may be also be provided by IP/GRE Tunnels 21 Copyright 2012 Juniper Networks, Inc.
22 EVPN LOCAL MAC ADDRESS LEARNING A MES must support local data plane learning using vanilla Ethernet learning procedures When a CE generates a data plane packet such as an ARP request MESes may learn the MAC addresses of hosts in the control plane using extensions to protocols such as LLDP that run between the MES and the hosts MESes may learn the MAC addresses of hosts in the management plane 22 Copyright 2012 Juniper Networks, Inc.
23 EVPN REMOTE MAC ADDRESS LEARNING EVPN introduces the ability for an MES to advertise locally learned MAC addresses in BGP to other MESes, using principles borrowed from IP VPNs EVPN requires an MES to learn the MAC addresses of CEs connected to other MESes in the control plane using BGP Remote MAC addresses are not learned in the data plane 23 Copyright 2012 Juniper Networks, Inc.
24 ETHERNET AUTO-DISCOVERY (A-D) ROUTES ESI DCB EVPN DCB DCS DCS ESI RD ETHERNET TAG Label DCB RR DCB auto discovery through advertisement of Ethernet A-D routes Includes Ethernet Segment Identifier (ESI) to allow multi-homing of DCS to DCB Auto-discovery of Ethernet Tags (VLANs) on Ethernet Segments 24 Copyright 2012 Juniper Networks, Inc.
25 KNOWN UNICAST FORWARDING - ACTIVE/ACTIVE LOAD BALANCING (DCS-DCB) DCB ESI DCS EVPN DCB DCS DCB Redundant connection between DCS and DCB appears as a LAG to the DCS (no STP required) The DCS connection to the DCB(s) is referred by the Ethernet Segment Identifier (ESI) 25 Copyright 2012 Juniper Networks, Inc.
26 UNKNOWN BUM TRAFFIC- DF/BDF ELECTION (CE-PE) DF DCS EVPN BDF Redundant connection between DCS and DCB appears as a LAG to the DCS (no STP required) A Designated Forwarder (DF) is elected (can be per VLAN) using Ethernet A-D Route Other DCB becomes a backup designated forwarder (BDF) Highest IP address of DCB wins by default Support of Split Horizon To ensure that a multicast, broadcast or unknown unicast packet that is sent on one link by a DCS (that is dual homed) isn t sent back by the other link 26 Copyright 2012 Juniper Networks, Inc.
27 CHALLENGES VM MOBILITY INTRODUCES Challenges L2 & L3 address no longer pinned to a site, interface Fast convergence of network paths as VM moves Ingress and Egress traffic convergence, optimization Learning and information distribution control L2 & L3 interaction for best user experience draft-raggarwa-data-center-mobility 27 Copyright 2012 Juniper Networks, Inc.
28 VM DEFAULT GATEWAY SOLUTION: FIRST MECHANISM Each VLAN/subnet uses anycast IP and MAC addresses for its default gateway Each VLAN/subnet would have its own IP and MAC anycast addresses All the VMs on a given VLAN/subnet are (auto) configured with this IP (anycast) address The anycast default gateway IP and MAC address for a given VLAN/subnet must be configured on each MES that this VLAN/subnet could span This ensures that a particular MES can always perform IP forwarding on packets sent by a VM to the anycast default gateway MAC address. 28 Copyright 2012 Juniper Networks, Inc.
29 VM DEFAULT GATEWAY SOLUTION: SECOND MECHANISM Eliminates the need to configure the anycast addresses for a given VLAN/subnet on each MES that is part of that VLAN/subnet Each MES that acts as the default gateway for a given VLAN/subnet propagates in the E- VPN control plane an E-VPN route that carries MES's IP and MAC address BGP Default Gateway Community is used to indicate that this E-VPN route is for the default gateway For a given VLAN/subnet the distribution scope of this route is the set of MESes that are spanned by that VLAN/subnet Each MES that receives such E-VPN route: Creates MAC forwarding state that enables it to apply IP forwarding to the packets destined to the MAC address carried in the route Replies to ARP requests that it receives from locally connected VMs destined to the default gateway IP address of the advertising MES 29 Copyright 2012 Juniper Networks, Inc.
30 MACVPN L3VPN INTERACTION FOR INGRESS TRAFFIC STEERING Ingress VPN Traffic traffic to VM1 steers to new site VPN Site-3 L3VPN update DC Backbone DC Site-1 MACVPN update Site-2 VM moves to site-1 VM 1 30 Copyright 2012 Juniper Networks, Inc.
31 Avoiding Triangular Routing for Inter-DC scenario: NHRP Solution Next Hop Resolution Protocol (NHRP) RFC2332 (1998) IETF Proposed Standard Implemented by multiple vendors (including Juniper and Cisco) Original application - eliminating (extra) IP hops when routing over ATM/FR Non- Broadcast Multiple Access (NBMA) media NHRP messages could be carried directly over IP (protocol 54), or over IP/GRE (protocol 54) NHC (NHRP Client): originates NHRP Request, receives NHRP Replies, receives NHRP Purge Request NHS (NHRP Server): receives NHRP Request, originates NHRP Replies, originates NHRP Purge Request 31 Copyright 2012 Juniper Networks, Inc.
32 NHRP EXAMPLE: STEP BY STEP VM VM VM-A ToR1 ToR4 ToR2 Data Center 1 DCBR1/NHS1 ToR5 Data Center 2 DCBR1/NHS1 advertise into IP routing /24 route (subnet of VM-A) DCBR2/NHS2 1. Client Site BR/NHC receives from host -A a packet destined to VM-A ( ) 2. Client Site BR/NHC originates an NHRP Request (the Request carries ). The NHRP Request is routed (relying on plain IP routing) towards DCBR1/NHS1 (as DCBR1/NHS1 advertises a route for /24) 3. Meantime, the packet is forwarded towards VM-A using plain IP routing, first to DCBR1 (as DCBR1 advertises a route for /24), and then (using the E-VPN procedures) from DCBR1 to DCBR2, to ToR4, and ultimately to VM-A 4. DCBR1/NHS1 (relying on the information provided by E-VPN) determines that VM-A is in Data Center 2 - DCBR2/NHS2 is the authoritative NHS for VM-A. So, DCBR1/NHS1 (using E-VPN procedures) forwards the NHRP Request to DCBR2/NHS2 5. When DCBR2/NHS2 receives the NHRP Request, it send back to Client Site BR/NHC an NHRP Reply (as DCBR2/NHS2 is the authoritative NHS for VM-A). The Reply carries IP address of DCBR2/NHS2 6. Once Client Site BR/NHC receives the NHRP Reply, Client Site BR/NHC installs in its FIB host route to VM-A, This route requires encapsulation (the destination address in the outer header is the address of the originator of the NHRP Reply DCBR2/NHS2) 7. From that moment traffic to VM-A from Client Site BR/NHC goes (directly) to DCBR2/NHS2 32 Copyright 2012 Juniper Networks, Inc Host-A Client site Client Site BR/NHC 5 FIB: 6 Cloud Dest: Next-Hop: DCBR2/NHS2 Encap: GRE
33 NHRP EXAMPLE: VM MOVES STEP-BY-STEP VM-A ToR1 ToR4 ToR2 Data Center 1 ToR5 Data Center 2 DCBR1/NHS1 advertise into IP routing /24 route (subnet X) DCBR1/NHS1 5 2 DCBR3/NHS3 DCBR2/NHS2 VM-A moves from from ToR4 to ToR6 Client Site BR/NHC Data Center 3 0. The initial state is the end state reached on previous slide 1. VM-A moved from ToR4 to ToR6 (from Data Center 2 to Data Center 3) 2. DCBR2/NHS2 (relying on the information provided by E-VPN) determines that VM-A moved to another DC. Therefore, DCBR2/NHS2 send an NHRP Purge to Client Site BR/NHC 3. When Client Site BR/NHC receives the Purge message, it deletes from its FIB the route to Same as steps 2-7 on previous slide Client site 9 ToR6 Host-A FIB: Dest: Next-Hop: DCBR2/NHS2 Encap: GRE 8 Dest: Next-Hop: DCBR3/NHS3 Encap: GRE VM-A Copyright 2012 Juniper Networks, Inc.
34 SUGGESTED READING 1) EVPN - draft-ietf-l2vpn-evpn 2) Seamless VM Mobility - draft-raggarwa-data-center-mobility 34 Copyright 2012 Juniper Networks, Inc.
35 35 Copyright 2012 Juniper Networks, Inc.
36 36 Copyright 2012 Juniper Networks, Inc.
37 37 Copyright 2012 Juniper Networks, Inc.
38
Introduction to BGP-MPLS Ethernet VPN
Introduction to BGP-MPLS Ethernet VPN Emil Gągała PLNOG, 16.03.2011 Slides thanks to Rahul Aggarwal Agenda Data Center Interconnect requirements VPLS Status Quo and Areas of Improvements Ethernet VPN (BGP/MPLS
OVERLAYING VIRTUALIZED LAYER 2 NETWORKS OVER LAYER 3 NETWORKS
OVERLAYING VIRTUALIZED LAYER 2 NETWORKS OVER LAYER 3 NETWORKS Matt Eclavea ([email protected]) Senior Solutions Architect, Brocade Communications Inc. Jim Allen ([email protected]) Senior Architect, Limelight
ETHERNET VPN (EVPN) NEXT-GENERATION VPN FOR ETHERNET SERVICES
ETHERNET VPN (EVPN) NEXT-GENERATION VPN FOR ETHERNET SERVICES Alastair JOHNSON (AJ) February 2014 [email protected] AGENDA 1. EVPN Background and Motivation 2. EVPN Operations 3. EVPN
Juniper / Cisco Interoperability Tests. August 2014
Juniper / Cisco Interoperability Tests August 2014 Executive Summary Juniper Networks commissioned Network Test to assess interoperability, with an emphasis on data center connectivity, between Juniper
SDN CONTROLLER. Emil Gągała. PLNOG, 30.09.2013, Kraków
SDN CONTROLLER IN VIRTUAL DATA CENTER Emil Gągała PLNOG, 30.09.2013, Kraków INSTEAD OF AGENDA 2 Copyright 2013 Juniper Networks, Inc. www.juniper.net ACKLOWLEDGEMENTS Many thanks to Bruno Rijsman for his
Virtual Private LAN Service on Cisco Catalyst 6500/6800 Supervisor Engine 2T
White Paper Virtual Private LAN Service on Cisco Catalyst 6500/6800 Supervisor Engine 2T Introduction to Virtual Private LAN Service The Cisco Catalyst 6500/6800 Series Supervisor Engine 2T supports virtual
VXLAN, Enhancements, and Network Integration
VXLAN, Enhancements, and Network Integration Apricot 2014 - Malaysia Eddie Parra Principal Engineer, Juniper Networks Router Business Unit (RBU) [email protected] Legal Disclaimer: This statement of product
Demonstrating the high performance and feature richness of the compact MX Series
WHITE PAPER Midrange MX Series 3D Universal Edge Routers Evaluation Report Demonstrating the high performance and feature richness of the compact MX Series Copyright 2011, Juniper Networks, Inc. 1 Table
Cloud Networking: Framework and VPN Applicability. draft-bitar-datacenter-vpn-applicability-01.txt
Cloud Networking: Framework and Applicability Nabil Bitar (Verizon) Florin Balus, Marc Lasserre, and Wim Henderickx (Alcatel-Lucent) Ali Sajassi and Luyuan Fang (Cisco) Yuichi Ikejiri (NTT Communications)
ETHERNET VPN (EVPN) OVERLAY NETWORKS FOR ETHERNET SERVICES
ETHERNET VPN (EVPN) OVERLAY NETWORKS FOR ETHERNET SERVICES Greg Hankins RIPE 68 RIPE 68 2014/05/12 AGENDA 1. EVPN Background and Motivation 2. EVPN Operations 3. EVPN
Improve Data Center Interconnect, L2 Services with Juniper s EVPN
Improve Data Center Interconnect, L2 Services with Juniper s The Need for Next-Generation L2 VPN Connectivity 1 Table of Contents Executive Summary... 3 Introduction... 3 What Is and Why Is It a Better
VPLS Technology White Paper HUAWEI TECHNOLOGIES CO., LTD. Issue 01. Date 2012-10-30
Issue 01 Date 2012-10-30 HUAWEI TECHNOLOGIES CO., LTD. 2012. All rights reserved. No part of this document may be reproduced or transmitted in any form or by any means without prior written consent of
Virtual Subnet: A Scalable Cloud Data Center Interconnect Solution
Virtual Subnet: A Scalable Cloud Data Center Interconnect Solution draft-xu-virtual-subnet-06 Xiaohu Xu ([email protected]) IETF82, TAIWAN Why VM Mobility across Data Centers Data center maintenance Applications
CLOUD NETWORKING FOR ENTERPRISE CAMPUS APPLICATION NOTE
CLOUD NETWORKING FOR ENTERPRISE CAMPUS APPLICATION NOTE EXECUTIVE SUMMARY This application note proposes Virtual Extensible LAN (VXLAN) as a solution technology to deliver departmental segmentation, business
WHITE PAPER. Network Virtualization: A Data Plane Perspective
WHITE PAPER Network Virtualization: A Data Plane Perspective David Melman Uri Safrai Switching Architecture Marvell May 2015 Abstract Virtualization is the leading technology to provide agile and scalable
Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers
SOLUTION BRIEF Enterprise Data Center Interconnectivity Increase Simplicity and Improve Reliability with VPLS on the Routers Challenge As enterprises improve business continuity by enabling resource allocation
TRILL for Data Center Networks
24.05.13 TRILL for Data Center Networks www.huawei.com enterprise.huawei.com Davis Wu Deputy Director of Switzerland Enterprise Group E-mail: [email protected] Tel: 0041-798658759 Agenda 1 TRILL Overview
VXLAN: Scaling Data Center Capacity. White Paper
VXLAN: Scaling Data Center Capacity White Paper Virtual Extensible LAN (VXLAN) Overview This document provides an overview of how VXLAN works. It also provides criteria to help determine when and where
the Data Center Connecting Islands of Resources Within and Across Locations with MX Series Routers White Paper
White Paper Integrating SDN into the Data Center Connecting Islands of Resources Within and Across Locations with MX Series Routers Copyright 2013, Juniper Networks, Inc. 1 Table of Contents Executive
NETWORKING FOR DATA CENTER CONVERGENCE, VIRTUALIZATION & CLOUD. Debbie Montano, Chief Architect [email protected]
NETWORKING FOR DATA CENTER CONVERGENCE, VIRTUALIZATION & CLOUD Debbie Montano, Chief Architect [email protected] DISCLAIMER This statement of direction sets forth Juniper Networks current intention
SRX High Availability Design Guide
SRX High Availability Design Guide Introduction The purpose of this design guide is to lay out the different high availability deployment scenarios and provide sample configurations for the different scenarios.
Juniper Update Enabling New Network Architectures. Debbie Montano Chief Architect, Gov t, Edu & Medical dmontano@juniper.
Juniper Update Enabling New Network Architectures Debbie Montano Chief Architect, Gov t, Edu & Medical [email protected] Feb 1, 2010 DISCLAIMER This statement of direction sets forth Juniper Networks
Introduction to MPLS-based VPNs
Introduction to MPLS-based VPNs Ferit Yegenoglu, Ph.D. ISOCORE [email protected] Outline Introduction BGP/MPLS VPNs Network Architecture Overview Main Features of BGP/MPLS VPNs Required Protocol Extensions
VPN taxonomy. János Mohácsi NIIF/HUNGARNET tf-ngn meeting April 2005
VPN taxonomy János Mohácsi NIIF/HUNGARNET tf-ngn meeting April 2005 VPNs Definition: the capability of both private and public networks to support a communication infrastructure connecting geographically
VXLAN Bridging & Routing
VXLAN Bridging & Routing Darrin Machay [email protected] CHI-NOG 05 May 2015 1 VXLAN VM-1 10.10.10.1/24 Subnet A ESX host Subnet B ESX host VM-2 VM-3 VM-4 20.20.20.1/24 10.10.10.2/24 20.20.20.2/24 Load
MPLS VPN Services. PW, VPLS and BGP MPLS/IP VPNs
A Silicon Valley Insider MPLS VPN Services PW, VPLS and BGP MPLS/IP VPNs Technology White Paper Serge-Paul Carrasco Abstract Organizations have been demanding virtual private networks (VPNs) instead of
Virtual Private LAN Service (VPLS)
White Paper Virtual Private LAN Service (VPLS) Scalable Ethernet-Based Enterprise Connectivity and Broadband Delivery Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, California 94089 USA 408.745.2000
Introducing Basic MPLS Concepts
Module 1-1 Introducing Basic MPLS Concepts 2004 Cisco Systems, Inc. All rights reserved. 1-1 Drawbacks of Traditional IP Routing Routing protocols are used to distribute Layer 3 routing information. Forwarding
Network Configuration Example
Network Configuration Example Configuring a Two-Tiered Virtualized Data Center for Large Enterprise Networks Published: 2014-01-10 Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, California
IP/MPLS-Based VPNs Layer-3 vs. Layer-2
Table of Contents 1. Objective... 3 2. Target Audience... 3 3. Pre-Requisites... 3 4. Introduction...3 5. MPLS Layer-3 VPNs... 4 6. MPLS Layer-2 VPNs... 7 6.1. Point-to-Point Connectivity... 8 6.2. Multi-Point
Virtual Private LAN Service
Virtual Private LAN Service Authors Kireeti Kompella, Juniper Networks, 1194 N Mathilda Avenue, Sunnyvale, CA 94089, USA E-mail : [email protected] Jean-Marc Uzé, Juniper Networks, Espace 21, 31 Place
MPLS in Private Networks Is It a Good Idea?
MPLS in Private Networks Is It a Good Idea? Jim Metzler Vice President Ashton, Metzler & Associates March 2005 Introduction The wide area network (WAN) brings indisputable value to organizations of all
Marc Lasserre Wim Henderickx Alcatel-Lucent. Ali Sajassi Luyuan Fang Cisco. Yuichi Ikejiri NTT Communications. Mircea Pisica BT.
L2VPN Working Group Internet Draft Intended status: Informational Expires: April 2012 Nabil Bitar Verizon Florin Balus Marc Lasserre Wim Henderickx Alcatel-Lucent Cloud Networking: Framework and VPN Applicability
MikroTik RouterOS Introduction to MPLS. Prague MUM Czech Republic 2009
MikroTik RouterOS Introduction to MPLS Prague MUM Czech Republic 2009 Q : W h y h a v e n 't y o u h e a r d a b o u t M P LS b e fo re? A: Probably because of the availability and/or price range Q : W
Juniper Networks EVPN Implementation for Next-Generation Data Center Architectures
Juniper Networks EVPN Implementation for Next-Generation Data Center Architectures Using Ethernet VPN to Address Evolving Data Center Requirements 1 Table of Contents Executive Summary... 3 Introduction...
Virtual PortChannels: Building Networks without Spanning Tree Protocol
. White Paper Virtual PortChannels: Building Networks without Spanning Tree Protocol What You Will Learn This document provides an in-depth look at Cisco's virtual PortChannel (vpc) technology, as developed
L2 VPNs. Pseudowires. Virtual Private LAN Services. Metro/Carrier Ethernet.
L2 VPNs. Pseudowires. Virtual Private LAN Services. Metro/Carrier Ethernet. Petr Grygárek rek 1 Layer 2 VPNs 2 Usages of L2 VPNs Server farms/clusters and other L2- dependent applications redundancy and
Network Architecture Validated designs utilizing MikroTik in the Data Center
1-855-MIKROTIK Network Architecture Validated designs utilizing MikroTik in the Data Center P R E S E N T E D B Y: K E V I N M Y E R S, N E T W O R K A R C H I T E C T / M A N AG I N G PA R T NER I P A
MPLS Layer 3 and Layer 2 VPNs over an IP only Core. Rahul Aggarwal Juniper Networks. [email protected]
MPLS Layer 3 and Layer 2 VPNs over an IP only Core Rahul Aggarwal Juniper Networks [email protected] Agenda MPLS VPN services and transport technology Motivation for MPLS VPN services over an IP only core
TRILL for Service Provider Data Center and IXP. Francois Tallet, Cisco Systems
for Service Provider Data Center and IXP Francois Tallet, Cisco Systems 1 : Transparent Interconnection of Lots of Links overview How works designs Conclusion 2 IETF standard for Layer 2 multipathing Driven
DD2491 p2 2011. MPLS/BGP VPNs. Olof Hagsand KTH CSC
DD2491 p2 2011 MPLS/BGP VPNs Olof Hagsand KTH CSC 1 Literature Practical BGP: Chapter 10 MPLS repetition, see for example http://www.csc.kth.se/utbildning/kth/kurser/dd2490/ipro1-11/lectures/mpls.pdf Reference:
Network Virtualization with the Cisco Catalyst 6500/6800 Supervisor Engine 2T
White Paper Network Virtualization with the Cisco Catalyst 6500/6800 Supervisor Engine 2T Introduction Network virtualization is a cost-efficient way to provide traffic separation. A virtualized network
Enabling Solutions in Cloud Infrastructure and for Network Functions Virtualization
Enabling Solutions in Cloud Infrastructure and for Network Functions Virtualization Gateway Use Cases for Virtual Networks with MX Series Routers 1 Table of Contents Executive Summary... 3 Introduction...4
Cisco FabricPath Technology and Design
Cisco Technology and Design 2 Agenda Introduction to Concepts Technology vs Trill Designs Conclusion 3 Introduction to By Francois Tallet 5 Why Layer 2 in the Data Centre? Some Applications / Protocols
Data Networking and Architecture. Delegates should have some basic knowledge of Internet Protocol and Data Networking principles.
Data Networking and Architecture The course focuses on theoretical principles and practical implementation of selected Data Networking protocols and standards. Physical network architecture is described
SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT
BROCADE SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT Rajesh Dhople Brocade Communications Systems, Inc. [email protected] 2012 Brocade Communications Systems, Inc. 1 Why can t you do these things
Routed VPLS using BGP draft-sajassi-l2vpn-rvpls-bgp-00.txt
Routed VPLS using BGP draft-sajassi-l2vpn-rvpls-bgp-00.txt IETF 77, Anaheim, CA March 2010 Authors: Ali Sajassi, Samer Salam, Keyur Patel Requirements 1. Load balancing on L2/L3/L4 flows 2. Flow-based
Simplifying the Data Center Network to Reduce Complexity and Improve Performance
SOLUTION BRIEF Juniper Networks 3-2-1 Data Center Network Simplifying the Data Center Network to Reduce Complexity and Improve Performance Challenge Escalating traffic levels, increasing numbers of applications,
Simplify the Data Center with Junos Fusion
Simplify the Data Center with Junos Fusion Juniper Networks Fabric Technology 1 Table of Contents Executive Summary... 3 Introduction: Network Challenges in the Data Center... 3 Introducing Juniper Networks
Extending Networking to Fit the Cloud
VXLAN Extending Networking to Fit the Cloud Kamau WangŨ H Ũ Kamau Wangũhgũ is a Consulting Architect at VMware and a member of the Global Technical Service, Center of Excellence group. Kamau s focus at
Implementing L2 at the Data Center Access Layer on Juniper Networks Infrastructure
IMPLEMENTATION GUIDE Implementing L2 at the Data Center Access Layer on Juniper Networks Infrastructure Although Juniper Networks has attempted to provide accurate information in this guide, Juniper Networks
Data Center Network Virtualisation Standards. Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair
Data Center Network Virtualisation Standards Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair May 2013 AGENDA 1. Why standardise? 2. Problem Statement and Architecture
EVOLVED DATA CENTER ARCHITECTURE
EVOLVED DATA CENTER ARCHITECTURE A SIMPLE, OPEN, AND SMART NETWORK FOR THE DATA CENTER DAVID NOGUER BAU HEAD OF SP SOLUTIONS MARKETING JUNIPER NETWORKS @dnoguer @JuniperNetworks 1 Copyright 2014 Juniper
Network Virtualization and Data Center Networks 263-3825-00 DC Virtualization Basics Part 3. Qin Yin Fall Semester 2013
Network Virtualization and Data Center Networks 263-3825-00 DC Virtualization Basics Part 3 Qin Yin Fall Semester 2013 1 Outline A Brief History of Distributed Data Centers The Case for Layer 2 Extension
MP PLS VPN MPLS VPN. Prepared by Eng. Hussein M. Harb
MP PLS VPN MPLS VPN Prepared by Eng. Hussein M. Harb Agenda MP PLS VPN Why VPN VPN Definition VPN Categories VPN Implementations VPN Models MPLS VPN Types L3 MPLS VPN L2 MPLS VPN Why VPN? VPNs were developed
MPLS Concepts. Overview. Objectives
MPLS Concepts Overview This module explains the features of Multi-protocol Label Switching (MPLS) compared to traditional ATM and hop-by-hop IP routing. MPLS concepts and terminology as well as MPLS label
IPv6 over IPv4/MPLS Networks: The 6PE approach
IPv6 over IPv4/MPLS Networks: The 6PE approach Athanassios Liakopoulos Network Operation & Support Manager ([email protected]) Greek Research & Technology Network (GRNET) III Global IPv6 Summit Moscow, 25
RFC 2547bis: BGP/MPLS VPN Fundamentals
White Paper RFC 2547bis: BGP/MPLS VPN Fundamentals Chuck Semeria Marketing Engineer Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, CA 94089 USA 408 745 2001 or 888 JUNIPER www.juniper.net
Juniper Networks EX Series/ Cisco Catalyst Interoperability Test Results. May 1, 2009
Juniper Networks EX Series/ Cisco Catalyst Interoperability Test Results May 1, 2009 Executive Summary Juniper Networks commissioned Network Test to assess interoperability between its EX4200 and EX8208
Stretched Active- Active Application Centric Infrastructure (ACI) Fabric
Stretched Active- Active Application Centric Infrastructure (ACI) Fabric May 12, 2015 Abstract This white paper illustrates how the Cisco Application Centric Infrastructure (ACI) can be implemented as
How Routers Forward Packets
Autumn 2010 [email protected] MULTIPROTOCOL LABEL SWITCHING (MPLS) AND MPLS VPNS How Routers Forward Packets Process switching Hardly ever used today Router lookinginside the packet, at the ipaddress,
White Paper. Juniper Networks. Enabling Businesses to Deploy Virtualized Data Center Environments. Copyright 2013, Juniper Networks, Inc.
White Paper Juniper Networks Solutions for VMware NSX Enabling Businesses to Deploy Virtualized Data Center Environments Copyright 2013, Juniper Networks, Inc. 1 Table of Contents Executive Summary...3
Network Configuration Example
Network Configuration Example Configuring Layer 2 Cloud Data Center Tenants Published: 2014-09-19 Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, California 94089 USA 408-745-2000 www.juniper.net
VMDC 3.0 Design Overview
CHAPTER 2 The Virtual Multiservice Data Center architecture is based on foundation principles of design in modularity, high availability, differentiated service support, secure multi-tenancy, and automated
Roman Hochuli - nexellent ag / Mathias Seiler - MiroNet AG
Roman Hochuli - nexellent ag / Mathias Seiler - MiroNet AG North Core Distribution Access South North Peering #1 Upstream #1 Series of Tubes Upstream #2 Core Distribution Access Cust South Internet West
Multi-site Datacenter Network Infrastructures
Multi-site Datacenter Network Infrastructures Petr Grygárek rek 1 Why Multisite Datacenters? Resiliency against large-scale site failures (geodiversity) Disaster recovery Easier handling of planned outages
CONNECTING PHYSICAL AND VIRTUAL WORLDS WITH VMWARE NSX AND JUNIPER PLATFORMS
White Paper CONNECTING PHYSICAL AND VIRTUAL WORLDS WITH WARE NSX AND JUNIPER PLATFORMS A Joint Juniper Networks-ware White Paper Copyright 2014, Juniper Networks, Inc. 1 Connecting Physical and Virtual
Internetworking II: VPNs, MPLS, and Traffic Engineering
Internetworking II: VPNs, MPLS, and Traffic Engineering 3035/GZ01 Networked Systems Kyle Jamieson Lecture 10 Department of Computer Science University College London Taxonomy of communica@on networks Virtual
MPLS VPN over mgre. Finding Feature Information. Prerequisites for MPLS VPN over mgre
The feature overcomes the requirement that a carrier support multiprotocol label switching (MPLS) by allowing you to provide MPLS connectivity between networks that are connected by IP-only networks. This
Connecting Physical and Virtual Networks with VMware NSX and Juniper Platforms. Technical Whitepaper. Whitepaper/ 1
Connecting Physical and Virtual Networks with VMware NSX and Juniper Platforms Technical Whitepaper Whitepaper/ 1 Revisions Date Description Authors 08/21/14 Version 1 First publication Reviewed jointly
Transition to IPv6 in Service Providers
Transition to IPv6 in Service Providers Jean-Marc Uzé Director Product & Technology, EMEA [email protected] UKNOF14 Workshop Imperial college, London, Sept 11 th, 2009 1 Agenda Planning Transition Transition
MPLS VPN Security BRKSEC-2145
MPLS VPN Security BRKSEC-2145 Session Objective Learn how to secure networks which run MPLS VPNs. 100% network focus! Securing routers & the whole network against DoS and abuse Not discussed: Security
Testing Edge Services: VPLS over MPLS
Testing Edge Services: VPLS over MPLS White Paper Introduction Virtual Private LAN Services (VPLS) is an emerging technology for transparently connecting corporate LANs over the Internet so they appear
PRASAD ATHUKURI Sreekavitha engineering info technology,kammam
Multiprotocol Label Switching Layer 3 Virtual Private Networks with Open ShortestPath First protocol PRASAD ATHUKURI Sreekavitha engineering info technology,kammam Abstract This paper aims at implementing
Avaya VENA Fabric Connect
Avaya VENA Fabric Connect Executive Summary The Avaya VENA Fabric Connect solution is based on the IEEE 802.1aq Shortest Path Bridging (SPB) protocol in conjunction with Avaya extensions that add Layer
MPLS L2VPN (VLL) Technology White Paper
MPLS L2VPN (VLL) Technology White Paper Issue 1.0 Date 2012-10-30 HUAWEI TECHNOLOGIES CO., LTD. 2012. All rights reserved. No part of this document may be reproduced or transmitted in any form or by any
INTRODUCTION TO L2VPNS
INTRODUCTION TO L2VPNS 4 Introduction to Layer 2 and Layer 3 VPN Services CE Layer 3 VPN Link Comprised of IP Traffic Passed Over IP Backbone LEGEND Layer 3 VPN Layer 2 VPN CE CE PE IP Backbone PE CE Layer
Multi Protocol Label Switching (MPLS) is a core networking technology that
MPLS and MPLS VPNs: Basics for Beginners Christopher Brandon Johnson Abstract Multi Protocol Label Switching (MPLS) is a core networking technology that operates essentially in between Layers 2 and 3 of
Data Center Convergence. Ahmad Zamer, Brocade
Ahmad Zamer, Brocade SNIA Legal Notice The material contained in this tutorial is copyrighted by the SNIA unless otherwise noted. Member companies and individual members may use this material in presentations
Analysis of Network Segmentation Techniques in Cloud Data Centers
64 Int'l Conf. Grid & Cloud Computing and Applications GCA'15 Analysis of Network Segmentation Techniques in Cloud Data Centers Ramaswamy Chandramouli Computer Security Division, Information Technology
How To Understand The Benefits Of An Mpls Network
NETWORKS NetIron XMR 16000 NETWORKS NetIron XMR 16000 NETWORKS NetIron XMR 16000 Introduction MPLS in the Enterprise Multi-Protocol Label Switching (MPLS) as a technology has been around for over a decade
APNIC elearning: Introduction to MPLS
2/5/5 ANIC elearning: Introduction to MLS 3 MAY 25 3: M AEST Brisbane (UTC+) Issue Date: Revision: Introduction resenter Sheryl Hermoso Training Officer [email protected] Specialties: Network Security DNS/DNSSEC
Expert Reference Series of White Papers. VMware vsphere Distributed Switches
Expert Reference Series of White Papers VMware vsphere Distributed Switches [email protected] www.globalknowledge.net VMware vsphere Distributed Switches Rebecca Fitzhugh, VCAP-DCA, VCAP-DCD, VCAP-CIA,
STATE OF THE ART OF DATA CENTRE NETWORK TECHNOLOGIES CASE: COMPARISON BETWEEN ETHERNET FABRIC SOLUTIONS
STATE OF THE ART OF DATA CENTRE NETWORK TECHNOLOGIES CASE: COMPARISON BETWEEN ETHERNET FABRIC SOLUTIONS Supervisor: Prof. Jukka Manner Instructor: Lic.Sc. (Tech) Markus Peuhkuri Francesco Maestrelli 17
Designing and Developing Scalable IP Networks
Designing and Developing Scalable IP Networks Guy Davies Telindus, UK John Wiley & Sons, Ltd Contents List of Figures List of Tables About the Author Acknowledgements Abbreviations Introduction xi xiii
White Paper. Network Simplification with Juniper Networks Virtual Chassis Technology
Network Simplification with Juniper Networks Technology 1 Network Simplification with Juniper Networks Technology Table of Contents Executive Summary... 3 Introduction... 3 Data Center Network Challenges...
MPLS L3 VPN Supporting VoIP, Multicast, and Inter-Provider Solutions
MPLS L3 VPN Supporting VoIP, Multicast, and Inter-Provider Solutions Luyuan Fang ATT MPLSCon 2005, NYC The world s networking company SM Outline Overview of the L3 VPN deployment VoIP over MPLS VPN MPLS
Pre$SDN era: network trends in data centre networking
Pre$SDN era: network trends in data centre networking Zaheer Chothia 27.02.2015 Software Defined Networking: The Data Centre Perspective Outline Challenges and New Requirements History of Programmable
SBSCET, Firozpur (Punjab), India
Volume 3, Issue 9, September 2013 ISSN: 2277 128X International Journal of Advanced Research in Computer Science and Software Engineering Research Paper Available online at: www.ijarcsse.com Layer Based
Implementing MPLS VPN in Provider's IP Backbone Luyuan Fang [email protected] AT&T
Implementing MPLS VPN in Provider's IP Backbone Luyuan Fang [email protected] AT&T 1 Outline! BGP/MPLS VPN (RFC 2547bis)! Setting up LSP for VPN - Design Alternative Studies! Interworking of LDP / RSVP
November 2013. Defining the Value of MPLS VPNs
November 2013 S P E C I A L R E P O R T Defining the Value of MPLS VPNs Table of Contents Introduction... 3 What Are VPNs?... 4 What Are MPLS VPNs?... 5 What Are the Benefits of MPLS VPNs?... 8 How Do
Implementing Cisco Service Provider Next-Generation Edge Network Services **Part of the CCNP Service Provider track**
Course: Duration: Price: $ 3,695.00 Learning Credits: 37 Certification: Implementing Cisco Service Provider Next-Generation Edge Network Services Implementing Cisco Service Provider Next-Generation Edge
Virtual Private Networks. Juha Heinänen [email protected] Song Networks
Virtual Private Networks Juha Heinänen [email protected] Song Networks What is an IP VPN? an emulation of private (wide area) network facility using provider IP facilities provides permanent connectivity between
Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure
White Paper Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure What You Will Learn The new Cisco Application Centric Infrastructure
TRILL Large Layer 2 Network Solution
TRILL Large Layer 2 Network Solution Contents 1 Network Architecture Requirements of Data Centers in the Cloud Computing Era... 3 2 TRILL Characteristics... 5 3 Huawei TRILL-based Large Layer 2 Network
VPN Technologies A Comparison
VPN Technologies A Comparison Matthew Finlayson, [email protected] Jon Harrison, [email protected] Richard Sugarman, [email protected] First issued February 2003 100
BUILDING MPLS-BASED MULTICAST VPN SOLUTION. DENOG3 Meeting, 20.10.2011/Frankfurt Carsten Michel
BUILDING MPLS-BASED MULTICAST VPN SOLUTION DENOG3 Meeting, 20.10.2011/Frankfurt Carsten Michel Agenda Multicast VPN (mvpn) Overview L3VPN Multicast Solution using PIM/GRE (Draft-Rosen) MPLS Multicast Building
Cisco Which VPN Solution is Right for You?
Table of Contents Which VPN Solution is Right for You?...1 Introduction...1 Before You Begin...1 Conventions...1 Prerequisites...1 Components Used...1 NAT...2 Generic Routing Encapsulation Tunneling...2
DD2491 p2 2009. BGP-MPLS VPNs. Olof Hagsand KTH/CSC
DD2491 p2 2009 BGP-MPLS VPNs Olof Hagsand KTH/CSC Literature Practical BGP: Chapter 10 JunOS Cookbook: Chapter 14 and 15 MPLS Advantages Originally, the motivation was speed and cost. But routers does
