Network Technologies for Next-generation Data Centers



Similar documents
A Case for Overlays in DCN Virtualization Katherine Barabash, Rami Cohen, David Hadas, Vinit Jain, Renato Recio and Benny Rochwerger IBM

OVERLAYING VIRTUALIZED LAYER 2 NETWORKS OVER LAYER 3 NETWORKS

Extending Networking to Fit the Cloud

On the effect of forwarding table size on SDN network utilization

TRILL for Data Center Networks

Installation Guide Avi Networks Cloud Application Delivery Platform Integration with Cisco Application Policy Infrastructure

Ethernet-based Software Defined Network (SDN) Cloud Computing Research Center for Mobile Applications (CCMA), ITRI 雲 端 運 算 行 動 應 用 研 究 中 心

Network Virtualization for Large-Scale Data Centers

VXLAN: Scaling Data Center Capacity. White Paper

Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure

CON Software-Defined Networking in a Hybrid, Open Data Center

TRILL Large Layer 2 Network Solution

Software Defined Networking Disruptive Technologies

Analysis of Network Segmentation Techniques in Cloud Data Centers

Cloud Networking: Framework and VPN Applicability. draft-bitar-datacenter-vpn-applicability-01.txt

NVO3: Network Virtualization Problem Statement. Thomas Narten IETF 83 Paris March, 2012

Data Center Network Virtualisation Standards. Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair

WHITE PAPER. Network Virtualization: A Data Plane Perspective

Virtualizing the SAN with Software Defined Storage Networks

Virtual Machine in Data Center Switches Huawei Virtual System

Cloud Networking Disruption with Software Defined Network Virtualization. Ali Khayam

Software Defined Network Application in Hospital

ConnectX -3 Pro: Solving the NVGRE Performance Challenge

How To Make A Vpc More Secure With A Cloud Network Overlay (Network) On A Vlan) On An Openstack Vlan On A Server On A Network On A 2D (Vlan) (Vpn) On Your Vlan

Network Virtualization and Data Center Networks Data Center Virtualization - Basics. Qin Yin Fall Semester 2013

Testing Software Defined Network (SDN) For Data Center and Cloud VERYX TECHNOLOGIES

Why Software Defined Networking (SDN)? Boyan Sotirov

Interconnecting Cisco Networking Devices: Accelerated (CCNAX) 2.0(80 Hs) 1-Interconnecting Cisco Networking Devices Part 1 (40 Hs)

STRATEGIC WHITE PAPER. Securing cloud environments with Nuage Networks VSP: Policy-based security automation and microsegmentation overview

Preserve IP Addresses During Data Center Migration

Lecture 02b Cloud Computing II

Data Center Convergence. Ahmad Zamer, Brocade

Network Virtualization Solutions

Accelerating Network Virtualization Overlays with QLogic Intelligent Ethernet Adapters

Oracle SDN Performance Acceleration with Software-Defined Networking

OpenDaylight Network Virtualization and its Future Direction

What is SDN? And Why Should I Care? Jim Metzler Vice President Ashton Metzler & Associates

EVOLVING ENTERPRISE NETWORKS WITH SPB-M APPLICATION NOTE

Datacenter architectures

software networking Jithesh TJ, Santhosh Karipur QuEST Global

Flexible SDN Transport Networks With Optical Circuit Switching

HAWAII TECH TALK SDN. Paul Deakin Field Systems Engineer

Building Secure Network Infrastructure For LANs

50. DFN Betriebstagung

基 於 SDN 與 可 程 式 化 硬 體 架 構 之 雲 端 網 路 系 統 交 換 器

The Coming Decade of Data Center Networking Discontinuities

Data Center Use Cases and Trends

Simplify IT. With Cisco Application Centric Infrastructure. Barry Huang Nov 13, 2014

IP Addressing and Subnetting. 2002, Cisco Systems, Inc. All rights reserved.

Outline VLAN. Inter-VLAN communication. Layer-3 Switches. Spanning Tree Protocol Recap

Definition of a White Box. Benefits of White Boxes

DCB for Network Virtualization Overlays. Rakesh Sharma, IBM Austin IEEE 802 Plenary, Nov 2013, Dallas, TX

The Software Defined Hybrid Packet Optical Datacenter Network SDN AT LIGHT SPEED TM CALIENT Technologies

IT-AD08: ADD ON DIPLOMA IN COMPUTER NETWORK DESIGN AND INSTALLATION

Deliver the Next Generation Intelligent Datacenter Fabric with the Cisco Nexus 1000V, Citrix NetScaler Application Delivery Controller and Cisco vpath

Ethernet-based Software Defined Network (SDN)

Network Virtualization and Software-defined Networking. Chris Wright and Thomas Graf Red Hat June 14, 2013

Unleash the power of Cisco ACI and F5 Synthesis for Accelerated Application deployments. Ravi Balakrishnan Senior Marketing Manager, Cisco Systems

Advanced VSAT Solutions Bridge Point-to-Multipoint (BPM) Overview

Simplify IT. With Cisco Application Centric Infrastructure. Roberto Barrera VERSION May, 2015

What is VLAN Routing?

Next-Gen Securitized Network Virtualization

BUILDING A NEXT-GENERATION DATA CENTER

Introduction to Network Virtualization in IaaS Cloud. Akane Matsuo, Midokura Japan K.K. LinuxCon Japan 2013 May 31 st, 2013

Installing Intercloud Fabric Firewall

How To Orchestrate The Clouddusing Network With Andn

Portland: how to use the topology feature of the datacenter network to scale routing and forwarding

: Interconnecting Cisco Networking Devices Part 1 v2.0 (ICND1)

Software Defined Network (SDN)

Roman Hochuli - nexellent ag / Mathias Seiler - MiroNet AG

New Cloud Networking Enabled by ProgrammableFlow

Configuring the Transparent or Routed Firewall

VMware. NSX Network Virtualization Design Guide

Data Center Content Delivery Network

CLOUD NETWORKING FOR ENTERPRISE CAMPUS APPLICATION NOTE

Recent Progress in Routing Standardization An IETF update for UKNOF 23

Building an Open, Adaptive & Responsive Data Center using OpenDaylight

Overview of Routing between Virtual LANs

How To Manage A Virtualization Server

Multitenancy Options in Brocade VCS Fabrics

Course Overview: Learn the essential skills needed to set up, configure, support, and troubleshoot your TCP/IP-based network.

Bring your virtualized networking stack to the next level

VLAN 802.1Q. 1. VLAN Overview. 1. VLAN Overview. 2. VLAN Trunk. 3. Why use VLANs? 4. LAN to LAN communication. 5. Management port

Architecting Data Center Networks in the era of Big Data and Cloud

SSVVP SIP School VVoIP Professional Certification

Advanced Computer Networks. Datacenter Network Fabric

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise hours teaching time

NEC ProgrammableFlow:

Pre$SDN era: network trends in data centre networking

Testing Network Virtualization For Data Center and Cloud VERYX TECHNOLOGIES

CloudStack Networking. Paul Angus Cloud

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Oracle Big Data Appliance: Datacenter Network Integration

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

IP Networking. Overview. Networks Impact Daily Life. IP Networking - Part 1. How Networks Impact Daily Life. How Networks Impact Daily Life

1 Data information is sent onto the network cable using which of the following? A Communication protocol B Data packet

Network performance in virtual infrastructures

CCT vs. CCENT Skill Set Comparison

Introduction about cisco company and its products (network devices) Tell about cisco offered courses and its salary benefits (ccna ccnp ccie )

Transcription:

Network Technologies for Next-generation Data Centers SDN-VE: Software Defined Networking for Virtual Environment Rami Cohen, IBM Haifa Research Lab September 2013

Data Center Network Defining and deploying multi tenant network application (NaaS) Endpoint connectivity in a large scale dynamic environment? Management, control & configuration of the infrastructure 2

Back to the 80's... Unicast = Broadcast Dealing with unknown information by broadcasting 3

Early 90's... Learning ARP Control Small number of switches telnet> open 10.0.0.1 Trying 10.0.01... Dealing with unknown information by flooding 4

VLAN, 802.3, ARP, TRILL, SNMP, Today Yesterday ACL, MPLS, DCB, OSPF, RIP, RSVP,... VLAN, 802.3, ARP, TRILL, SNMP, VLAN, 802.3, ARP, TRILL, SNMP, ACL, MPLS, DCB, OSPF, RIP, RSVP,... VLAN, 802.3, ARP, TRILL, SNMP, ACL, MPLS, DCB, OSPF, RIP, RSVP,... VLAN, 802.3, ARP, TRILL, SNMP, VLAN, 802.3, ARP, TRILL, SNMP, ACL, MPLS, DCB, OSPF, RIP, RSVP,... ACL, MPLS, DCB, OSPF, RIP, RSVP,... ACL, MPLS, DCB, OSPF, RIP, RSVP,... VLAN, 802.3, ARP, TRILL, SNMP, ACL, MPLS, DCB, OSPF, RIP, RSVP,... VLAN, 802.3, ARP, TRILL, SNMP, ACL, MPLS, DCB, OSPF, RIP, RSVP,... Dealing with unknown information is still done by broadcasting and flooding 5

Data Center Network Server 1 LB Server 2 WS1 DB1 Virtual Switch Server 3 WS2 WS3 Virtual Switch Virtual Switch Specific location of network appliance Policy is enforced by sending data through the router (bump in the wire) SSL FW DB2 Server 4 APP WS3 Virtual Switch SoftSwitch are used to connect VM's to the network - Virtual Machines are clients of the physical network Comp Router 6

Data Center Networking (cont.) Large scale The number of endpoints (virtual machines) is significantly larger than the number of physical servers Each switch should manage large number of VM's Dynamic Endpoints are dynamically created terminated and migrated from one location to another Switches are constantly reconfigured (VLAN, flow tables, etc.) Artificial constraints may be enforced (e.g. VM cannot be migrated to a different Rack due to VLAN setting) Multi tenancy 7 Increasing the flooding and broadcasting Increasing the size of the flow tables Many independent tenants each with his own network requirement are collocated on the same network infrastructure

Data Center Networking (cont.) Large scale The number of endpoints (virtual machines) is significantly larger than the number of physical servers Each switch should manage large number of VM's Dynamic Endpoints are dynamically created terminated and migrated from one location to another Switches are constantly reconfigured (VLAN, flow tables, etc.) Artificial constraints may be enforced (e.g. VM cannot be migrated to a different Rack due to VLAN setting) Multi tenancy 8 Increasing the flooding and broadcasting Increasing the size of the flow tables Many independent tenants each with his own network requirement are collocated on the same network infrastructure

NaaS Network as a Service 9 Typical network Consists of several type of servers with different connectivity criteria Defined in a natural language I need a three-tier application comprising a set of Web servers connected to the public Internet through an Application Delivery Controller and using a set of DB2 servers as a back-end data storage. And... all the traffic between the Internet and the ADC must pass through a set of firewall rules, and all the SSL traffic between the Web servers and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an external bandwidth of at least 5Gbps... Depends of an underlying technology and topology Deployment is based on low level network control (rather than the application functionality)

NaaS (cont.) Topology: two IPv4 subnets Technology: Managed Ethernet (Cisco) 10 Routing configuration Firewall deployment and path System Technologies and Services Department, Haifa Research Lab isolation

NaaS (cont.) Any modification is subject to misconfiguration 11 Hardware, Instances, services Validation and verification follow the deployment

NaaS Network as a Service I need a three-tier application comprising a set of WebSpheres connected to the pblic Internet through an Application Delivery Controller and using a set of DB2 as a back-end data store. I need a three-tier application comprising a set of WebSpheres connected to the pblic Internet through an Application Delivery Controller and using a set of DB2 as a back-end data store. By the way, all the traffic between the Internet and the ADC must pass through a set of firewall rules, and all the SSL traffic between the By the way, all the traffic between the Internet and the ADC must pass through a set of WebSpheres and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an firewall rules, and all the SSL traffic between the external bandwidth of at least 5Gbps... WebSpheres and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an external bandwidth of at least 5Gbps... I need a three-tier application comprising a set of WebSpheres connected to the pblic Internet through an Application Delivery Controller and using a set of DB2 as a back-end data store. By the way, all the traffic between the Internet and the ADC must pass through a set of firewall rules, and all the SSL traffic between the WebSpheres and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an external bandwidth of at least 5Gbps... I need a three-tier application comprising a set of WebSpheres connected to the pblic Internet through an Application Delivery Controller and using a set of DB2 as a back-end data store. I need a three-tier application comprising a set of WebSpheres connected to the pblic Internet through an Application Delivery Controller and using a set of DB2 as a back-end data store. By the way, all the traffic between the Internet and the ADC must pass through a set of firewall rules, and all the SSL traffic between the WebSpheres and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an By the way, all the traffic between the Internet and the ADC must pass through a set of firewall rules, and all the SSL traffic between the WebSpheres and the ADC must be accelerated using an SSL accelerator. The stored data must be compressed, and I must have an external bandwidth of at least 5Gbps... 12 external bandwidth of at least 5Gbps...

NaaS (cont.) Multi tenant virtual networking Enabling users to control not only their computation resources but also their network Isolation and independency between virtual networks Flexibility and decoupling Scalability Users do no have any access to the network infrastructure 13 Provide network service which is decoupled from the physical infrastructure and topology An abstraction layer must be created

DOVE SDN-VE SDV-VE: Software Defined Networking for Virtual Environment IBM SDN based Multi tenant network virtualization solution

SDN-VE Management Virtual Network Abstraction Virtual Network Platform Physical Infrastructure 15

SDN-VE Network Abstraction 16 Network functionality are best described in terms of the connectivity between endpoints and the policies associated with the connectivity Network modeling (or network intention) is described by grouping endpoint sharing the same policy criteria

SDN-VE Network Abstraction (cont.) External FW, 5Gbps ADC SSL on lerati Acce DB2 Compression, 20us latency WebSphere Intent-based Network modeling 17

SDN-VE Network Abstraction (cont.) ADC External *.*.*.* FW, 5Gbps SSL on lerati Acce DB2 Compression, 20us latency 18 WebSphere

SDN-VE Network Abstraction (cont.) Formal modeling of the network Network intention prior to any instantiation Topology and hardware independent Dealing only with the network functionality Easy to modify 19 Enable to introduce new services

SDN-VE Network Abstraction (cont.) External I 9.*.*.* FW, 1G bps ADC External II Billing Service SSL FW, IDS, s 5Gbp on lerati Acce *.*.*.* DB2 Compression, 20us latency 20 WebSphere An t o id S

SDN-VE Virtual Network Platform Overlay connectivity Data sent from one VM to another is encapsulated and sent from the source to the destination hosting server Decouples the physical infrastructure from the virtual domain Enables full isolation and in-dependency (including IP address overlapping between different tenants) Centralized controller 21 The physical infrastructure should handle much less of static entities (physical servers) The physical infrastructure can consist of many subnets and technologies As opposed to distributed and broadcast based learning mechanism

SDN-VE Virtual Network Platform Provides connectivity without reproducing L2 complexity A centralized controller is used to create and maintain the overlay infrastructure Designed in a distributed fashion Does not require any flooding and broadcasting (therefore does not inherit any L2 scalability limitation) Fully hardware independent 22 Does not requires any hardware support (e.g. multicast) Provides a powerful abstraction supporting both virtual and physical appliances

SDN-VE Data Flow 1. Data is sent from VM-1 to VM-3 and intercepted by the local dswitch VM to VM data flow 2. The dswitch acquires the policy using the DCS (Ditributed Connectivity Service) A caching mechanism is used 3. Based on this service the dswitch encapsulates the packet and sends it to the destination host through FW-I and ISS-I 4. The Packet is decapsulated by the dswitch on the destination host and sent to the appropriate VM VM-1 1 VM-2 dswitch Host 1 3 IPS-II FW-II dgateway VM-3 4 2 dswitch Host 2 SDN-VE SDN-VE Distributed Distributed Connectivity Connectivity Service Service FW-I IPS-I Physical PhysicalInfrastructure Infrastructure Router 23 VM-4

SDN-VE Network as a Service Overlay Based Solution VM are not client of the physical network Physical switches should handle only smaller number of static server Independent from the physical topology and technology Enabling users to control not only their computation resources but also their network Isolation and independency between virtual networks Scalability RAS (Reliability, Availability, Serviceability) Enables multi tenant support Multi tenant virtual networking Users do no have any access to the network infrastructure SDN-VE Software Defined Network Provides an abstraction of the network functionality Physical network complexity should not reproduced in the virtual domain System Technologies andbeservices Department, Haifa Research Lab 24 End user does not deal with network configuration (VLAN, Ports, etc.)

Optical Network and DCN? Packet switching based network Dynamic Large scale with millions endpoint 25 Circuit switching like Static configuration Small number of flows Typical data center switch may support more than 100K flows

Optical Network and DCN Low power and latency using optical switching technology High bandwidth using SDM technology 26 Memory less switching From GB to TB May completely change Data Center including network storage and computation

Optical Network and DCN Venture Photonics Ltd Combining Optics and SDN In next Generation data center Networks 27

Optical Network and DCN COSIGN - Combining Optics and SDN In next Generation data center Networks 400Gb per port ToR switch 28 Based on Multi-Core Fibres (NCFs) to support SDM within data center interconnect Enabling multiple data channels to be simultaneously multiplexed in a single fiber Flat data center network based on highly scalable SDN core switching nodes reducing latency and improving connectivity Creating logical networks using SDM technology

29