NVO3: Network Virtualization Problem Statement. Thomas Narten narten@us.ibm.com. IETF 83 Paris March, 2012



Similar documents
Data Center Network Virtualisation Standards. Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair

Testing Network Virtualization For Data Center and Cloud VERYX TECHNOLOGIES

OVERLAYING VIRTUALIZED LAYER 2 NETWORKS OVER LAYER 3 NETWORKS

A Case for Overlays in DCN Virtualization Katherine Barabash, Rami Cohen, David Hadas, Vinit Jain, Renato Recio and Benny Rochwerger IBM

SDN and Data Center Networks

Network Technologies for Next-generation Data Centers

Virtualization, SDN and NFV

Software Defined Network (SDN)

DCB for Network Virtualization Overlays. Rakesh Sharma, IBM Austin IEEE 802 Plenary, Nov 2013, Dallas, TX

Recent Progress in Routing Standardization An IETF update for UKNOF 23

Scalable Approaches for Multitenant Cloud Data Centers

Outline. Why Neutron? What is Neutron? API Abstractions Plugin Architecture

WHITE PAPER. Network Virtualization: A Data Plane Perspective

Network Virtualization for Large-Scale Data Centers

TRILL Large Layer 2 Network Solution

Software Defined Networking Disruptive Technologies

Extending Networking to Fit the Cloud

White Paper. Juniper Networks. Enabling Businesses to Deploy Virtualized Data Center Environments. Copyright 2013, Juniper Networks, Inc.

Cisco Prime Network Services Controller. Sonali Kalje Sr. Product Manager Cloud and Virtualization, Cisco Systems

CLOUD NETWORKING FOR ENTERPRISE CAMPUS APPLICATION NOTE

Analysis of Network Segmentation Techniques in Cloud Data Centers

Networking in the Era of Virtualization

Testing Software Defined Network (SDN) For Data Center and Cloud VERYX TECHNOLOGIES

Expert Reference Series of White Papers. vcloud Director 5.1 Networking Concepts

SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT

Simplifying Virtual Infrastructures: Ethernet Fabrics & IP Storage

How Network Virtualization can improve your Data Center Security

Data Center Use Cases and Trends

CLOUD NETWORKING THE NEXT CHAPTER FLORIN BALUS

VXLAN Overlay Networks: Enabling Network Scalability for a Cloud Infrastructure

Brocade VCS Fabrics: The Foundation for Software-Defined Networks

Multi-Tenant Isolation and Network Virtualization in. Cloud Data Centers

SDN CONTROLLER. Emil Gągała. PLNOG, , Kraków

Data Center Convergence. Ahmad Zamer, Brocade

Network Virtualization

Cloud Networking Disruption with Software Defined Network Virtualization. Ali Khayam

Next-Gen Securitized Network Virtualization

STRATEGIC WHITE PAPER. Securing cloud environments with Nuage Networks VSP: Policy-based security automation and microsegmentation overview

VMware Software Defined Network. Dejan Grubić VMware Systems Engineer for Adriatic

Simplify Your Data Center Network to Improve Performance and Decrease Costs

Lecture 7: Data Center Networks"

What is SDN? And Why Should I Care? Jim Metzler Vice President Ashton Metzler & Associates

Avaya VENA Fabric Connect

Virtual Machine in Data Center Switches Huawei Virtual System

Architecting Data Center Networks in the era of Big Data and Cloud

Pre$SDN era: network trends in data centre networking

NVGRE Overlay Networks: Enabling Network Scalability for a Cloud Infrastructure

VXLAN: Scaling Data Center Capacity. White Paper

Cloud Security Best Practices

BUILDING A NEXT-GENERATION DATA CENTER

Building a small Data Centre

Data Center Networking Designing Today s Data Center

Definition of a White Box. Benefits of White Boxes

VMware. NSX Network Virtualization Design Guide

Accelerating Network Virtualization Overlays with QLogic Intelligent Ethernet Adapters

Internet Engineering Task Force (IETF) Request for Comments: D. Black EMC L. Fang Microsoft L. Kreeger Cisco M. Napierala AT&T October 2014

Infrastructure Virtualization for Hybrid Cloud

TRILL for Data Center Networks

Broadcom Smart-NV Technology for Cloud-Scale Network Virtualization. Sujal Das Product Marketing Director Network Switching

Cloud Networking: Framework and VPN Applicability. draft-bitar-datacenter-vpn-applicability-01.txt

NEC ProgrammableFlow:

CON Software-Defined Networking in a Hybrid, Open Data Center

Data Center Infrastructure of the future. Alexei Agueev, Systems Engineer

Multitenancy Options in Brocade VCS Fabrics

Networking Issues For Big Data

Defining SDN. Overview of SDN Terminology & Concepts. Presented by: Shangxin Du, Cisco TAC Panelist: Pix Xu Jan 2014

SINGLE-TOUCH ORCHESTRATION FOR PROVISIONING, END-TO-END VISIBILITY AND MORE CONTROL IN THE DATA CENTER

The Value of Open vswitch, Fabric Connect and Fabric Attach in Enterprise Data Centers

Cisco and Canonical: Cisco Network Virtualization Solution for Ubuntu OpenStack

TRILL for Service Provider Data Center and IXP. Francois Tallet, Cisco Systems

CoIP (Cloud over IP): The Future of Hybrid Networking

White Paper on NETWORK VIRTUALIZATION

SDN Applications in Today s Data Center

Quantum Hyper- V plugin

Address Resolution Scalability for VPN oriented Data Center Services

VMware EVO SDDC. General. Q. Is VMware selling and supporting hardware for EVO SDDC?

Open Source Networking for Cloud Data Centers

Voice Over IP. MultiFlow IP Phone # 3071 Subnet # Subnet Mask IP address Telephone.

Deliver the Next Generation Intelligent Datacenter Fabric with the Cisco Nexus 1000V, Citrix NetScaler Application Delivery Controller and Cisco vpath

ProgrammableFlow for Open Virtualized Data Center Network

Network Virtualization for the Enterprise Data Center. Guido Appenzeller Open Networking Summit October 2011

Cisco Discovery 3: Introducing Routing and Switching in the Enterprise hours teaching time

Roman Hochuli - nexellent ag / Mathias Seiler - MiroNet AG

Simplify IT. With Cisco Application Centric Infrastructure. Barry Huang Nov 13, 2014

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

Why Software Defined Networking (SDN)? Boyan Sotirov

Non-blocking Switching in the Cloud Computing Era

VMware Network Virtualization Design Guide. January 2013

VMDC 3.0 Design Overview

IPOP-TinCan: User-defined IP-over-P2P Virtual Private Networks

Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure

How To Extend Security Policies To Public Clouds

Simplify IT. With Cisco Application Centric Infrastructure. Roberto Barrera VERSION May, 2015

Cloud Computing and the Internet. Conferenza GARR 2010

Virtual PortChannels: Building Networks without Spanning Tree Protocol

Network Virtualization

Lecture 02b Cloud Computing II

Agility has become a key initiative for business leaders. Companies need the capability

Ethernet-based Software Defined Network (SDN) Cloud Computing Research Center for Mobile Applications (CCMA), ITRI 雲 端 運 算 行 動 應 用 研 究 中 心

Transcription:

NVO3: Network Virtualization Problem Statement Thomas Narten narten@us.ibm.com IETF 83 Paris March, 2012

High-Level Motivation Imagine a data center Could be cloud provider, hosting center, enterprise Supports multiple tenants (e.g., Pepsi and Coke). Tenant wants (and operator wants to sell) ability to: Create a Virtual Network instance Logically attach a set of s (or machines) to the Virtual Network Provide Network as a Service The Virtual Network (with associated s) provides a self-contained distributed service E.g., web hosting, email service, etc. May also use VPN to extend back into enterprise network

VN Requirements (Tenant Perspective) s think they are connected to a "real" network Send/receive Ethernet frames Each VN instance uses its own IP address space Tenant uses whatever IP addresses it wants (e.g., private addresses) VNs are isolated from each other (security) One tenant's traffic not visible to other tenants Ethernet frames stay local to a VN Traffic forwarded to/from other networks only through controlled entry point(s) E.g., connection to public Internet, VPN to tenant's home site, cross-vn IP router, etc. Each entry point could include firewall, ACLs, etc.

Logical View (Tenant) VN1 VN1 (Coke) (Coke) VN2 (Pepsi) Firewall/LB Public Internet VPN to Home Site

VN Requirements (DC Perspective) Want ability to place s anywhere within data center Without being constrained by physical network attributes or concerns (e.g., IP subnet boundaries) Both initial placement and for migration In practice, s can only be moved within an IP subnet Big IP subnets imply large L2 Ethernet domains But, large L2 domains spanning entire DC increasingly painful ARMD has been looking at address resolution issues VLAN space limitations are a well-recognized problem Large L2 domains increase fate sharing concerns Issues will only get worse in future as size of DCs grow TRILL, SPB, etc. working on this at L2, but no magic bullet Note: Above two are in conflict with each other

Requirements (DC Perspective) Cont Want to separate the logical network attributes associated with from the physical instantiation e.g, VLAN info, QoS, L2 protocols, IP Subnets, etc. Observation: reconfiguring the network elements when placing s is complex, error prone Want to abstract away the key network properties Server virtualization allows s to abstract away physical properties for memory, processor, I/O, etc. Network properties include VLANs, IP Subnetting, etc. Solution needs to scale to cover entire data center (and beyond) Millions of s (and beyond)

Physical & Logical View Virtual Networks Coke Pepsi s: -C1 -P1 -C2 -P2 Servers: Server1 Server2 Server3 TOR TOR Physical Network Switch

DC Multi-Tenancy Today Implemented at L2 today (Ethernet VLANs) But, increasingly painful to scale as size of DC increases VLAN limitation Size of forwarding tables in core switches is an issue Increased need for multipathing Large IP Subnets/L2 domains better support migration, but smaller L2 domains better for fate-sharing containment TRILL, SPB, etc. will help, but are L2 solutions Network service provided remains Ethernet No magic bullet

L3 Overlay Multi-Tenancy Approach Increase use of IP within DC core, reuse proven IP technology: ECMP load balancing, etc. Fast routing convergence (OSPF, ISIS, etc.) Rich ecosystem of existing technology/products Incremental deployability with existing DC network Deploy at hypervisor or edge switch, few or no changes to core network L3 overlays offer compelling value proposition In fully virtualized systems, can be implemented entirely in hypervisor software, without network changes In traditional DCNs, enable edge switches, no change to rest of network TRILL, SPB, etc. have significantly different deployment paths

Summary of Requirements Multi-tenant support, scaling to the millions of s Support placement anywhere in data center Both initial placement & migration DC-driven requirements More reliance on IP, less on large L2 domains Incremental deployability in existing DC network Strong hesitancy to deploy BGP/MPLS VPN technologies into DC On-demand elastic provisioning of resources Grow/shrink dynamically as workload changes Decouple logical network configuration from physical instantiation

Acknowledgments This effort stems from the work of many others... On problem statement document: Murari Sridharan, Dinesh Dutt, David Black, Lawrence Kreeger. See list of authors in the NVGRE and VXLAN documents...