Internet Traffic and Content Consolidation



Similar documents
Trends in Internet Traffic Patterns Darren Anstee, EMEA Solutions Architect

Craig Labovitz, Scott Iekel-Johnson, Danny McPherson Arbor Networks Jon Oberheide, Farnam Jahanian University of Michigan

ATLAS Internet Observatory Bandwidth Bandwagon: An ISOC Briefing Panel November 11, 2009, Hiroshima, Japan

ATLAS Internet Observatory 2009 Annual Report

Internet Traffic Evolution

Internet Inter-Domain Traffic

Internet Traffic Trends A View from 67 ISPs

STATEMENT OF CRAIG LABOVITZ, PHD Co-Founder and CEO of DeepField Before the House Judiciary Committee Subcommittee on Regulatory Reform, Commercial

CDN and Traffic-structure

The Importance of High Customer Experience

Deploying IPv6, Now. Christian Huitema. Architect Windows Networking & Communications Microsoft Corporation

Internet Traffic Measurement

The Value of Content Distribution Networks Mike Axelrod, Google Google Public

464XLAT: Breaking Free of IPv4. T-Mobile.com NANOG 61 June 2014

The Other 50% of Internet Traffic. Craig Labovitz

Internet Firewall CSIS Packet Filtering. Internet Firewall. Examples. Spring 2011 CSIS net15 1. Routers can implement packet filtering

Deploying IPv6 at Scale As an ISP. Clinton Work Member of the TELUS team October 2015

Introduction to The Internet

Real World IPv6 Migration Solutions. Asoka De Saram Sr. Director of Systems Engineering, A10 Networks

Today. Finishing up inter-domain routing. Review of end-to-end forwarding. How we build routers. Economics of peering/settlement

The forces behind the changing Internet: IXPs, content delivery, and virtualization

The Effect of Caches for Mobile Broadband Internet Access

5.0 Network Architecture. 5.1 Internet vs. Intranet 5.2 NAT 5.3 Mobile Network

Residential IPv6 IPv6 a t at S wisscom Swisscom a, n an overview overview Martin Gysi

Introduction to The Internet. ISP/IXP Workshops

Monitoring of Tunneled IPv6 Traffic Using Packet Decapsulation and IPFIX

Workshop on Infrastructure Security and Operational Challenges of Service Provider Networks

IPv6 measurement in CSTNET. CSTNET, CNIC, Sep. 2014

The Internet Peering Playbook: Connecting to the Core of the Internet Second Edition Written by William B. Norton

Cairo, May 18, 2009 INET. Olaf Kolkman

MPLS/IP VPN Services Market Update, United States

IPv6 The Big Picture. Rob Evans, Janet

November Defining the Value of MPLS VPNs

Traffic Diversion Techniques for DDoS Mitigation using BGP Flowspec. Leonardo Serodio May 2013

The Value of Flow Data for Peering Decisions

Internet Peering, IPv6, and NATs. Mike Freedman V Networks

Broadband Services Overview

REMOTE ASSISTANCE SOLUTIONS Private Server

How To Stop A Ddos Attack On A Network From Tracing To Source From A Network To A Source Address

Content is king, but who rules?

Hurricane Electric is using this document to update its customers and anyone else interested in Hurricane Electric s network offerings.

Internet Protocol: IP packet headers. vendredi 18 octobre 13

Interconnection and its Discontents

IPv6 Migration Challenges for Large Service Providers

The Evolution of Ethernet

Internet Privacy Options

New Models and Conflicts in the Interconnection and Delivery of Internet-mediated Content

Data Center Security

IPv4 and IPv6 Integration. Formation IPv6 Workshop Location, Date

Campus LAN at NKN Member Institutions

Expert Reference Series of White Papers. vcloud Director 5.1 Networking Concepts

Deploying Secure Enterprise Wide IP Videoconferencing Across Virtual Private Networks

Demonstrating the high performance and feature richness of the compact MX Series

Interconnecting IPv6 Domains Using Tunnels

F5 Silverline DDoS Protection Onboarding: Technical Note

NAT and Firewall Traversal with STUN / TURN / ICE

WAN Optimization Integrated with Cisco Branch Office Routers Improves Application Performance and Lowers TCO

Preparing Your IP Network for High Definition Video Conferencing

Move to IPv6 for business continuity

What is a Firewall? Computer Security. Firewalls. What is a Firewall? What is a Firewall?

Network Address Translation (NAT) Adapted from Tannenbaum s Computer Network Ch.5.6; computer.howstuffworks.com/nat1.htm; Comer s TCP/IP vol.1 Ch.

Network Management for Common Topologies How best to use LiveAction for managing WAN and campus networks

Plugging Network Security Holes using NetFlow. Loopholes in todays network security solutions and how NetFlow can help

Virtual Leased Line (VLL) for Enterprise to Branch Office Communications

AKAMAI WHITE PAPER. Delivering Dynamic Web Content in Cloud Computing Applications: HTTP resource download performance modelling

Source-Connect Network Configuration Last updated May 2009

Traffic delivery evolution in the Internet ENOG 4 Moscow 23 rd October 2012

Scalable Internet Services and Load Balancing

Signpost: Trusted, Effectful Internet names

Implementing VPN over MPLS

464XLAT: Breaking Free of IPv4. APRICOT 2014

Interconnection, Peering and Financial Settlements in the Internet

Virtual Server and DDNS. Virtual Server and DDNS. For BIPAC 741/743GE

Distributed Systems. 25. Content Delivery Networks (CDN) 2014 Paul Krzyzanowski. Rutgers University. Fall 2014

Making the Internet fast, reliable and secure. DE-CIX Customer Summit Steven Schecter <schecter@akamai.com>

Virtual Privacy vs. Real Security

IP addressing. Interface: Connection between host, router and physical link. IP address: 32-bit identifier for host, router interface

Virtual private network. Network security protocols VPN VPN. Instead of a dedicated data link Packets securely sent over a shared network Internet VPN

SVN5800 Secure Access Gateway

The Opportunity for White-labeled IPTV & OTT TV for MNOs, MSOs and ISPs. Date: 19 January 2014

Introduction to Automatic Multicast Tunneling as a Transition Strategy for Local Service Providers

Reliable high throughput data connections with low-cost & diverse transport technologies

Unifying the Distributed Enterprise with MPLS Mesh

Securing and Monitoring BYOD Networks using NetFlow

ProCurve Networking IPv6 The Next Generation of Networking

NEFSIS DEDICATED SERVER

The Emerging 21 st Century Access Power Peering (*)

Truffle Broadband Bonding Network Appliance

Sprint Global MPLS VPN IP Whitepaper

CS 457 Lecture 19 Global Internet - BGP. Fall 2011

3. Some of the technical measures presently under consideration are methods of traffic shaping, namely bandwidth capping and bandwidth shaping 2.

Private Cloud Solutions Virtual Onsite Data Center

TYLER JUNIOR COLLEGE School of Continuing Studies 1530 SSW Loop 323 Tyler, TX

Chapter 3. TCP/IP Networks. 3.1 Internet Protocol version 4 (IPv4)

Interconnec(on economics: issues and models. Prof. Costas Courcoube(s AUEB

Layer 7 Visibility and Control

AT&T Managed IP Network Service (MIPNS) MPLS Private Network Transport Technical Configuration Guide Version 1.0

Copyright 2008 Link Technologies,Inc. A Proud Vendor Member of the

Brazil CONTRIBUTION TO THE SIXTH MEETING OF CWG-INTERNET

Transcription:

Internet Traffic and Content Consolidation Craig Labovitz Chief Scientist, Arbor Networks S. Iekel-Johnson, D. McPherson Arbor Networks, Inc. J. Oberheide, F. Jahanian University of Michigan

Talk Outline Describe two-year traffic measurement study The original Internet topology The emerging new Internet Application transport and the end of end-to-end A few words on IETF implications Page 2 - IETF

Two Year Study of Inter-domain Traffic Graphic not an accurate representation of current ATLAS deployments Leverage large, widely deployed commercial Internet monitoring infrastructure Global deployment across 110+ ISPs / Content Providers Near real-time traffic and routing statistics (14 Tbps) Participation voluntary and all data sources are anonymous Largest study of its kind Page 3 - IETF

Study Details Within a given ISP, commercial probe infrastructure Monitors NetFlow / Jflow / etc and routing across possible hundreds of routers Probes topology aware of ISP, backbone and customer boundaries Routers typically include most of peering / transit edge Some deployments include portspan / inline appliances Deployments send anonymous XML file to central servers Includes self-categorization of primary geographic region and type Data includes coarse grain anonymized traffic engineering statistics ATLAS Centrally maintained servers ISP / Content Providers Introduced at NANOG 47 academic paper under review, Arbor blog provides ongoing related bits Page 4 - IETF

Traffic Measurements Inter-domain traffic volumes Estimate directly monitoring 25% all inter-domain traffic Believe data representative of global inter-domain traffic Validate predictions based on data (using 12 known ISP traffic demands) Measurement Confidence Does NOT measure Number of web hits, tweets, transactions, customers, etc. Internal / private customer traffic (e.g. VPNs, IPTV) ISP success nor profitability Page 5 - IETF

Original Internet (1995 2007) Settlement Free Pay for BW Pay for access BW Textbook diagram (still taught today) Hierarchical, relatively sparsely inter-connected Internet Mostly accurate until recently (modulo a few name changes over the years) Page 6 - IETF

Market Forces Reshape Traffic and Connectivity Revenue from Internet Transit Source: Dr. Peering, Bill Norton Revenue from Internet Advertisement Source: Interactive Advertising Bureau Page 7 - IETF

Largest Carriers: Then and Now Rank 2007 Top Ten % 1 ISP A 5.77 2 ISP B 4.55 3 ISP C 3.35 4 ISP D 3.2 5 ISP E 2.77 6 ISP F 2.6 7 ISP G 2.24 8 ISP H 1.82 9 ISP I 1.35 10 ISP J 1.23 Rank 2009 Top Ten % 1 ISP A 9.41 2 ISP B 5.7 3 Google 5.2 4-5 - 6 Comcast 3.12 7-8 - 9-10 - Based on analysis of anonymous ASN (origin/transit) data (as a weighted average % of all Internet Traffic). Top ten has NO direct relationship to study participation. In 2007, top ten match tier-1 ISPs (e.g., Wikipedia) In 2009, global transit carry significant traffic volumes But Google and Comcast join the list And a significant percentage of ISP A traffic is Google transit Page 8 - IETF

The New Internet Settlement Free Pay for BW Pay for access BW Flatter and much more densely interconnected Internet Significant routing, traffic, security, economic, implications Disintermediation between content and eyeball networks New commercial models between content, consumer and transit Page 9 - IETF

Consolidation of Content (Grouped Origin ASN) In 2007, thousands of ASNs contributed 50% of content In 2009, 150 ASNs contribute 50% of all Internet traffic Approximates a power law distribution Page 10 - IETF

Case Study: Google )"!"#$%&"'()*"+,$"(-"+."/&,$"( (" '" &" %" $" #"!" -./0/12" 3..452" (*%!*!)" +*%!*!)" #!*%!*!)" #$*%!*!)" %*#*!+" '*#*!+" )*#*!+",*#*!+" ##*#*!+" #*#*!," %*#*!," '*#*!," Graph of weighted averaged grouped ASNs Over time Google absorbs YouTube traffic As of July 2009, Google accounts for 6% of all Internet inter-domain traffic Google the fastest growing ASN group Page 11 - IETF

Google Dense Interconnection )!" C8,:84;068"=D"E==658"F,0G:"HIJ46"?J,8:;"C88,J46" Direct (!" '!"!"#$"%&'(")) &!" %!" $!" #!" Transit!" *+,-!." /01-!." 234-!." 235-!." *36-!." 78+-!." 9:;-!." <=>-!."?8:-!." 204-!@" A8B-!@" /0,-!@" *+,-!@" /01-!@" 234-!@" 235-!@" *36-!@" 78+-!@" 9:;-!@" <=>-!@"?8:-!@" 204-#!" A8B-#!" Over time, Google increasingly using direct peering with tier2/3 and eyeball networks As of February 2010, more than 60% of Google traffic does not use transit Remainder largely global transit carriers These numbers do not include GGC Page 12 - IETF

Other Case Studies!"#$%&"'()*"+,$"(-"+."/&,$"(!#)"!#("!#'"!#&"!#%"!#$"!" )*&!*!+",*&!*!+" $!*&!*!+" $%*&!*!+" &*$*!," (*$*!," +*$*!," -*$*!," $$*$*!," $*$*!-" &*$*!-" (*$*!-"./01234" 52346778" Rapid rise of new content players, e.g. CDNs Facebook Baidu Apple / MSFT Change in traffic patterns and business strategies of consumer networks Page 13 - IETF

What s Happening? Commoditization of IP and Hosting / CDN Drop price of wholesale transit Drop price of video / CDN Economics and scale drive enterprise to cloud Consolidation Bigger get bigger (economies of scale) e.g., Google, Yahoo, MSFT acquisitions Success of bundling / Higher Value Services Triple and quad play, etc. New economic models Paid content (ESPN 360), paid peering, etc. Difficult to quantify due to NDA / commercial privacy Disintermediation Direct interconnection of content and consumer Driven by both cost and increasingly performance Page 14 - IETF

Applications Rank Application 2007 2009 Change 1 Web 41.68% 52.00% 24.76% 2 Video 1.58% 2.64% 67.09% 3 VPN 1.04% 1.41% 35.58% 4 Email 1.41% 1.38% -2.13% 5 News 1.75% 0.97% -44.57% * 6 P2P (*) 2.96% 0.85% -71.28% 7 Games 0.38% 0.49% 28.95% 8 SSH 0.19% 0.28% 47.37% 9 DNS 0.20% 0.17% -15.00% 10 FTP 0.21% 0.14% -33.33% Other 2.56% 2.67% 4.30% Unclassified 46.03% 37.00% -19.62% (*) 2009 P2P Value based on 18% Payload Inspection Weighted average percentage of all Internet traffic using well-known ports Growing volume of Internet traffic uses port 80 / 443 Includes significant video component and source of most growth Unclassified includes P2P and video Payload matching suggests P2P at 18% P2P is fastest declining Page 15 - IETF

The End of End-to-End?!#+"!"#$%&"'()*"+,$"(-"+."/&,$"(!#*"!#)"!#("!#'"!#&"!#%"!#$"!" The end of Xbox TCP 3074 *,$,!*" -,$,!*" $$,$,!*" $,$,!+" &,$,!+" (,$,!+" *,$,!+" -,$,!+" $$,$,!+" $,$,!-" &,$,!-" (,$,!-" Weighted average percentage of Xbox Internet traffic./01" Growing dominance of web as application front-end Plus burden of ubiquitous network layer security policies Results in growing concentration of application traffic over a decreasing number of TCP / UDP ports Especially port 80 Especially video Cumulative Distribution of Traffic to TCP / UDP Ports Page 16 - IETF

P2P Graph of weighted average traffic using well-known P2P ports In 2006, P2P one of largest threats facing carriers Significant protocol, engineering and regulatory effort / debate In 2010, P2P fastest declining application group Trend in both well-known ports and payload based analysis Still significant volumes Slight differences in rate of decline by region (i.e. Asia is slower) Page 17 - IETF

P2P Surpassed by Direct Download Weighted average percentage of Internet traffic contributed by Carpathia ASNs Normally study lacks visibility into hosting customers Mega [Upload Video Erotic] is an exception Carpathia small hosting company by traffic volume in Fall 2008 Mega becomes Carpathia customer in November 2008 Carpathia Hosting grows overnight to more than 0.5% of all traffic Page 18 - IETF

IPv6!"#$%&"'()*"+,$"(-"+."/&,$"(!#!)" Hurricane Electric Relay Deployment!#!("!#!'"!#!&" utorrent 1.8 Release!#!%"!#!$" IPv6 miniscule percentage of Internet traffic (.04 %) Still relatively little native IPv6 peering between large carriers Few carriers with v6 traffic visibility (i.e. flow) Tunneled IPv6 shows growth since IPv6 Due to utorrent And Hurricane Electric global Teredo deployment (see blog)!" *+$+!*",+$+!*" $$+$+!*" $+$+!-" &+$+!-" (+$+!-" *+$+!-",+$+!-" $$+$+!-" $+$+!," &+$+!," (+$+!," *+$+!,",+$+!," $$+$+!," $+$+$!" Page 19 - IETF

Internet Size / Growth In 2009, Internet (inter-domain) roughly ~45 Tbs And growing at 45% per year Significant, but no Exaflood Followed MINTS methodology for AGR Used 10 known ISP totals (MRTG / Flow based) to extrapolate Internet total Page 20 - IETF

IETF Implications Increasingly dense Internet and impact on routing scalability and convergence Slow IPv6 deployment highlights need for alternative transition mechanisms The end of end-to-end Increasing impact of firewall, NAT Silo ed ecosystems Page 21 - IETF

Conclusion Internet is at an inflection point Focus shifting from transmission to content Battle for access to eyeballs (and control of content) Transit is commoditized and devalued New focus on datacenters and co-location (caches) New technologies reshaping definition of Internet Web / Desktop Applications, Cloud computing, CDN Changes mean significant new commercial, security and engineering challenges This is just the beginning Page 22 - IETF