Virtualization in the Cloud: Featuring Xen and XCP



Similar documents
10 Years of Xen and beyond

Xen: FOSS Hypervisor for the Cloud

Xen Project 4.4: Features and Futures. Russell Pavlicek Xen Project Evangelist Citrix Systems

Xen Cloud Platform Update

LinuxCon/CloudOpen 2015

Securing Your Cloud with Xen Project s Advanced Security Features

Virtualization for Cloud Computing

Full and Para Virtualization

Servervirualisierung mit Citrix XenServer

SUSE Virtualization Technologies Roadmap

The XenServer Product Family:

What is the difference between XenServer and the open-source Xen Project Hypervisor?

Module I-7410 Advanced Linux FS-11 Part1: Virtualization with KVM

Performance tuning Xen

Xen Virtualization: Xen (source) and XenServer

RED HAT ENTERPRISE VIRTUALIZATION FOR SERVERS: COMPETITIVE FEATURES

Virtualization. Dr. Yingwu Zhu

FOR SERVERS 2.2: FEATURE matrix

Enabling Technologies for Distributed and Cloud Computing

9/26/2011. What is Virtualization? What are the different types of virtualization.

Enabling Technologies for Distributed Computing

A Highly Versatile Virtual Data Center Ressource Pool Benefits of XenServer to virtualize services in a virtual pool

Virtualization. Types of Interfaces

Citrix XenServer-6.2 Administration Training

Basics in Energy Information (& Communication) Systems Virtualization / Virtual Machines

Virtualization benefits Introduction to XenSource How Xen is changing virtualization The Xen hypervisor architecture Xen paravirtualization

Citrix XenServer Product Frequently Asked Questions

2972 Linux Options and Best Practices for Scaleup Virtualization

CPET 581 Cloud Computing: Technologies and Enterprise IT Strategies. Virtualization of Clusters and Data Centers

Regional SEE-GRID-SCI Training for Site Administrators Institute of Physics Belgrade March 5-6, 2009

RPM Brotherhood: KVM VIRTUALIZATION TECHNOLOGY

Citrix XenServer 7 Feature Matrix

The QEMU/KVM Hypervisor

Microkernels, virtualization, exokernels. Tutorial 1 CSC469

Comparing Free Virtualization Products

Enterprise-Class Virtualization with Open Source Technologies

Cloud^H^H^H^H^H Virtualization Technology. Andrew Jones May 2011

Red Hat enterprise virtualization 3.0 feature comparison

<Insert Picture Here> Oracle Database Support for Server Virtualization Updated December 7, 2009

XenServer User Security

RED HAT ENTERPRISE VIRTUALIZATION

The Art of Virtualization with Free Software

KVM KERNEL BASED VIRTUAL MACHINE

Open Source Virtualization with ovirt. DI (FH) René Koch Systems Engineer Siedl Networks GmbH Grazer Linuxtage,

Virtualization. Introduction to Virtualization Virtual Appliances Benefits to Virtualization Example Virtualization Products

VMware and CPU Virtualization Technology. Jack Lo Sr. Director, R&D

Cloud Computing with Red Hat Solutions. Sivaram Shunmugam Red Hat Asia Pacific Pte Ltd.

Intro to Virtualization

Virtualization: Know your options on Ubuntu. Nick Barcet. Ubuntu Server Product Manager

Virtual Computing and VMWare. Module 4

Operating Systems Virtualization mechanisms

COS 318: Operating Systems. Virtual Machine Monitors

To join the audio portion of this webcast: meeting code

Citrix XenServer 6.5 Virtual Machine User's Guide. Published Monday, 20 April Edition

Virtualization. Jia Rao Assistant Professor in CS

Cloud Computing CS

CXS Citrix XenServer 6.0 Administration

Date: December 2009 Version: 1.0. How Does Xen Work?

Citrix XenServer 7.0 Virtual Machine User's Guide. Published June Edition

Google

SUSE Virtualization Technologies Roadmap

Chapter 16: Virtual Machines. Operating System Concepts 9 th Edition

Storage XenMotion: Live Storage Migration with Citrix XenServer

Xen and XenServer Storage Performance

VIRTUALIZATION 101. Brainstorm Conference 2013 PRESENTER INTRODUCTIONS

KVM Security Comparison

OPEN SOURCE VIRTUALIZATION TRENDS. SYAMSUL ANUAR ABD NASIR Warix Technologies / Fedora Community Malaysia

SUSE Linux Enterprise 10 SP2: Virtualization Technology Support

With Red Hat Enterprise Virtualization, you can: Take advantage of existing people skills and investments

Version 3.7 Technical Whitepaper

JVM-level virtualization

SCO Virtualization Presentation to Customers

MODULE 3 VIRTUALIZED DATA CENTER COMPUTE

Virtualizare sub Linux: avantaje si pericole. Dragos Manac

Virtualization. Jukka K. Nurminen

VMware Virtual Infrastucture From the Virtualized to the Automated Data Center

Hardware Based Virtualization Technologies. Elsie Wahlig Platform Software Architect

Virtualization Management the ovirt way

Networking for Caribbean Development

Chapter 5 Cloud Resource Virtualization

Preparation Guide. How to prepare your environment for an OnApp Cloud v3.0 (beta) deployment.

Hypervisor Competitive Differences: Beyond the Data Sheet. Chris Wolf Senior Analyst, Burton Group

ovirt Introduction James Rankin Product Manager Red Hat Virtualization Management the ovirt way

Introduction to Virtualization & KVM

Architektur XenServer

Virtualization and Performance NSRC

Next Generation Now: Red Hat Enterprise Linux 6 Virtualization A Unique Cloud Approach. Jeff Ruby Channel Manager jruby@redhat.com

Lecture 2 Cloud Computing & Virtualization. Cloud Application Development (SE808, School of Software, Sun Yat-Sen University) Yabo (Arber) Xu

OnApp Cloud. The complete platform for cloud service providers. 114 Cores. 286 Cores / 400 Cores

Parallels Virtuozzo Containers

Linux/Open Source and Cloud computing Wim Coekaerts Senior Vice President, Linux and Virtualization Engineering

Overview. The OnApp Cloud Platform. Dashboard APPLIANCES. Used Total Used Total. Virtual Servers. Blueprint Servers. Load Balancers.

Transcription:

Virtualization in the Cloud: Featuring Xen and XCP Lars Kurth Xen Community Manager lars.kurth@xen.org FREENODE: lars_kurth @lars_kurth

A Brief History of Xen in the Cloud Late 90s XenoServer Project

A Brief History of Xen in the Cloud Late 90s 03 XenoServer Project Xen 1.0

A Brief History of Xen in the Cloud Late 90s 03 06 08 XenoServer Project Xen 1.0 Amazon EC2 and Slicehost launched Rackspace Cloud

A Brief History of Xen in the Cloud Late 90s 03 06 08 11 12 XenoServer Project Xen 1.0 Amazon EC2 and Slicehost launched Rackspace Cloud XCP 1.x Cloud Mgmt XCP packages in Linux

A Brief History of Xen in the Cloud Late 90s 03 06 08 11 12 XenoServer Project Xen 1.0 Amazon EC2 and Slicehost launched Rackspace Cloud XCP 1.x Cloud Mgmt Linux 3.0 XCP packages in Linux

A Brief History of Xen in the Cloud Late 90s 03 06 08 11 12 13 XenoServer Project Xen 1.0 Amazon EC2 and Slicehost launched Rackspace Cloud XCP 1.x Cloud Mgmt Linux 3.0 XCP packages in Linux Xen for ARM servers 10 th birthday

The Xen Hypervisor was designed for the Cloud straight from the outset!

Xen.org Guardian of Xen Hypervisor and related OSS Projects Xen Governance similar to Linux Kernel Plus project lifecycle and Project Management Committee (PMC) Projects Xen Hypervisor (led by 5 committers, 2 from Citrix, 1 from Suse, 2 Independent) Xen Cloud Platform aka XCP (led by Citrix) Xen ARM : Xen for mobile devices (led by Samsung)

Xen contributor community is diversifying 100% 90% 80% 70% 60% 50% 40% 30% 20% 10% 0% 2010 2011 2012 The number of significant active vendors is increasing New feature development driving new participation Citrix SUSE University GridCentric NSA Fujitsu Misc Spectralogic UPC Amazon AMD Individual Intel iweb Oracle University of British Columbia

Xen Overview

Hypervisor Architectures Type 1: Bare metal Hypervisor A pure Hypervisor that runs directly on the hardware and hosts Guest OS s. VM 0 VM 1 VM n Guest OS and Apps Scheduler Hypervisor Device Drivers/Models MMU I/O Memory CPUs Host HW Provides partition isolation + reliability, higher security

Hypervisor Architectures Type 1: Bare metal Hypervisor A pure Hypervisor that runs directly on the hardware and hosts Guest OS s. Type 2: OS Hosted A Hypervisor that runs within a Host OS and hosts Guest OS s inside of it, using the host OS services to provide the virtual environment. VM n User-level VMM VM n VM 0 VM 1 User Apps Device Models VM 0 VM 1 Device Drivers/Models Scheduler MMU Guest OS and Apps Hypervisor Host OS Device Drivers Ring-0 VM Monitor Kernel Guest OS and Apps I/O Memory CPUs Host HW Host HW I/O Memory CPUs Provides partition isolation + reliability, higher security Low cost, no additional drivers Ease of use & installation

Xen: Type 1 with a Twist Type 1: Bare metal Hypervisor VM 0 VM 1 VM n Guest OS and Apps Device Drivers/Models Scheduler MMU Hypervisor I/O Memory CPUs Host HW

Xen: Type 1 with a Twist Type 1: Bare metal Hypervisor Xen Architecture VM n VM 1 VM n VM 0 VM 1 Scheduler Guest OS and Apps Hypervisor VM 0 Guest OS and Apps Device Drivers/Models MMU Scheduler MMU Hypervisor I/O Memory CPUs Host HW I/O Memory CPUs Host HW

Xen: Type 1 with a Twist Type 1: Bare metal Hypervisor Xen Architecture Control domain (dom0) VM 1 VM n Device Models VM n VM 0 VM 1 Scheduler Guest OS and Apps Hypervisor Drivers Linux & BSD VM 0 Guest OS and Apps Device Drivers/Models MMU Scheduler MMU Hypervisor I/O Memory CPUs Host HW I/O Memory CPUs Host HW

Xen and Linux Xen Hypervisor is not in the Linux kernel BUT: everything Xen and Xen Guests need to run is! Xen packages are in all Linux distros (except RHEL6) Install Dom0 Linux distro Install Xen package(s) or meta package Reboot Config stuff: set up disks, peripherals, etc. More info: wiki.xen.org/wiki/category:host_install

Basic Xen Concepts Console Interface to the outside world Control domain (dom0) I/O Dom0 Kernel Scheduler MMU XSM Memory Trusted Computing Base CPUs VM 0 VM 1 VM n Guest OS and Apps Hypervisor Host HW Control Domain aka Dom0 Dom0 kernel with drivers Xen Management Toolstack Guest Domains Your apps Driver/Stub/Service Domain(s) A driver, device model or control service in a box De-privileged and isolated Lifetime: start, stop, kill 18

Basic Xen Concepts Control domain (dom0) I/O Toolstack Dom0 Kernel Console Scheduler MMU XSM Memory Trusted Computing Base CPUs VM 0 VM 1 VM n Guest OS and Apps Hypervisor Host HW Console Interface to the outside world Control Domain aka Dom0 Dom0 kernel with drivers Xen Management Toolstack Guest Domains Your apps Driver/Stub/Service Domain(s) A driver, device model or control service in a box De-privileged and isolated Lifetime: start, stop, kill 19

Basic Xen Concepts Control domain (dom0) I/O Toolstack Dom0 Kernel Console Memory One or more driver, stub or service domains Scheduler MMU XSM Trusted Computing Base CPUs VM 0 VM 1 VM n Guest OS and Apps Hypervisor Host HW Console Interface to the outside world Control Domain aka Dom0 Dom0 kernel with drivers Xen Management Toolstack Guest Domains Your apps Driver/Stub/Service Domain(s) A driver, device model or control service in a box De-privileged and isolated Lifetime: start, stop, kill 20

Xen Variants for Server & Cloud Hypervisor Xen 21

Xen Variants for Server & Cloud Hypervisor Xen Toolstack / Console Default / XL (XM) Libvirt / VIRSH XAPI / XE Increased level of functionality and integration with other components Single Host Basic Functions Single Host Additional Functionality Multiple Hosts Additional Functionality 22

Xen Variants for Server & Cloud Hypervisor Xen XCP Toolstack / Console Default / XL (XM) Libvirt / VIRSH XAPI / XE Increased level of functionality and integration with other components Single Host Basic Functions Single Host Additional Functionality Multiple Hosts Additional Functionality 23

Xen Variants for Server & Cloud Project Xen XCP Toolstack / Console Default / XL (XM) Libvirt / VIRSH XAPI / XE Increased level of functionality and integration with other components Get Binaries from Linux Distros Linux Distros Debian & Ubuntu ISO from Xen.org 24

Xen Variants for Server & Cloud Project Xen Hypervisor XCP Toolstack / Console Default / XL (XM) Libvirt / VIRSH XAPI / XE Increased level of functionality and integration with other components Get Binaries from Linux Distros Linux Distros Debian & Ubuntu ISO from Xen.org Products Oracle VM Huawei UVP Citrix XenServer 25

Xen Variants for Server & Cloud Project Xen Hypervisor XCP Toolstack / Console Default / XL (XM) Libvirt / VIRSH XAPI / XE Increased level of functionality and integration with other components Get Binaries from Linux Distros Linux Distros Debian & Ubuntu ISO from Xen.org Used by More info: xen.org/community/ecosystem.html xen.org/community/presentations.html xen.org/products/case_studies.html 26

Xen : Types of Virtualization

PV Domains Control domain (dom0) PV Back Ends HW Drivers Dom0 Kernel Guest VM n Apps PV Front Ends Guest OS Technology: Paravirtualization Linux PV guests have limitations: limited set of virtual hardware Advantages Fast Works on any system (even without virt extensions) Xen Hypervisor I/O Memory CPUs Host HW 28

PV Domains & Driver Domains Control domain (dom0) PV Back Ends HW Drivers Dom0 Kernel Guest VM n Apps PV Front Ends Guest OS Driver Domain e.g. Disk Network PV Back End HW Driver Dom0 Kernel* Technology: Paravirtualization Linux PV guests have limitations: limited set of virtual hardware Advantages Fast Works on any system (even without virt extensions) I/O Memory CPUs Xen Hypervisor Host HW Driver Domains Security Isolation Reliability and Robustness *) Can be MiniOS 29

HVM & Stub Domains Dom0 Device Model IO Event Dom0 Kernel Guest VM n IO Emulation VMEXIT Technology: Shows emulation using QEMU/Device Model (SW Virtualization) In other situation HW can be used Disadvantages Emulation slower than PV (mainly I/O devices) Xen Hypervisor Advantages No kernel support needed I/O Memory CPUs Host HW 30

HVM & Stub Domains Dom0 Device Model IO Event Dom0 Kernel Guest VM n IO Emulation VMEXIT Stubdom n Device Model IO Event Mini OS Guest VM n IO Emulation VMEXIT Technology: Shows emulation using QEMU/Device Model (SW Virtualization) In other situation HW can be used Disadvantages Emulation slower than PV (mainly I/O devices) Xen Hypervisor Advantages No kernel support needed I/O Memory CPUs Host HW Stub Domains Security Isolation Reliability and Robustness 31

The Virtualization Spectrum VS VH P Virtualized (SW) Virtualized (HW) Paravirtualized Fully Virtualized (FV) VS VS VS VH FV with PV for disk & network P VS VS VH PVHVM P P VS VH PVH Xen 4.3 P P P VH Fully Paravirtualized (PV) P P P P HVM mode/domain PV mode/domain

The Virtualization Spectrum Optimal performance Scope for improvement Poor performance Fully Virtualized (FV) VS VS VS VH FV with PV for disk & network P VS VS VH PVHVM P P VS VH PVH Xen 4.3 P P P VH Fully Paravirtualized (PV) P P P P HVM mode/domain PV mode/domain

The Virtualization Spectrum Optimal performance Scope for improvement Important: Xen automatically picks the best option based on HW & OS capabilities and available drivers. As a Xen user I chose a HVM or PV domain. Poor performance Fully Virtualized (FV) VS VS VS VH FV with PV for disk & network P VS VS VH PVHVM P P VS VH PVH Xen 4.3 P P P VH Fully Paravirtualized (PV) P P P P HVM mode/domain PV mode/domain

XCP Project

XCP Xen Cloud Platform Complete stack for server virtualization Extends Xen to cover multiple hosts Adds further functionality and integrations for cloud, storage and networking to Xen HV GPLv2 XenServer is a commercial XCP distro Two Flavours Appliance (ISO using CentOS Dom0) Packages in Debian & Ubuntu (more distros to come)

Major XCP Features VM lifecycle: live snapshots, checkpoint, migration Resource pools: flexible storage and networking Event tracking: progress, notification Upgrade and patching capabilities Real-time performance monitoring and alerting Built-in support and templates for Windows and Linux guests Open vswitch support built-in (default) More info: wiki.xen.org/wiki/xcp_release_features

XCP 1.6 New format Windows drivers: installable by Windows Update Service Networking: Better VLAN scalability, LACP bonding, IPv6 Storage XenMotion: Migrate VMs between hosts or pools without shared storage Move a VM s disks between storage repositories while the VM is running Other: more templates, latest Xen, OVS, etc. More info: xen.org/download/xcp/releasenotes_1.6.0.html & More info: xen.org/download/xcp/index_1.6.0.html

XCP and Cloud Orchestration Stacks

Challenges for FOSS hypervisors

Security and QoS/Reliability are amongst the top 3 blockers for cloud adoption www.colt.net/cio-research

System characteristics cloud users care about: Robustness, Performance, Scalability & Security Results XCP User Survey 2012 90% of users quoted these as most important attributes

Disaggregation Split Control Domain into Driver, Stub and Service Domains See: Breaking up is hard to do @ Xen Papers See: Domain 0 Disaggregation for XCP and XenServer Used today by Qubes OS and Citrix XenClient XT Prototypes for XCP See qubes-os.org Different windows run in different VMs

Benefits of Disaggregation More Security Increased serviceability and flexibility Better Robustness Better Performance Better Scalability Ability to safely restart parts of the system (e.g. just 275ms outage from failed Ethernet driver)

Next: XCP Architecture Diagram Before and After Disaggregation

User VM User VM NF BF NF BF NB gntdev NB gntdev gntdev Dom0 Domain manager healthd xenopsd libxl Xen Network drivers networkd vswitch Dom0 NFS/ iscsi drivers storaged tapdisk blktap3 Qemu xapi Qemu Network NFS/ Local drivers iscsi storage drivers drivers qemu syslogd xapi eth eth eth eth scsi.... xapi Dom0 Xen qemu networkd vswitch storaged tapdisk blktap3 storaged tapdisk blktap3 NIC (or SR- IOV VF) NIC (or SR- IOV VF) CPU RAM RAM CPU NIC (or SR- IOV VF) NIC (or SR- IOV VF) RAID

User VM User VM NF BF NF BF NB gntdev NB gntdev gntdev Dom0 Domain manager healthd xenopsd libxl Network driver domain networkd vswitch NFS/ iscsi driver domain storaged tapdisk blktap3 Qemu domain qemu xapi domain xapi D o m 0... Logging domain syslogd Network driver domain networkd vswitch NFS/ iscsi driver domain storaged tapdisk blktap3 Local storage driver domain storaged tapdisk blktap3 dbus over v4v dbus over v4v eth eth eth eth scsi Xen Xen NIC (or SR- IOV VF) NIC (or SR- IOV VF) CPU RAM RAM CPU NIC (or SR- IOV VF) NIC (or SR- IOV VF) RAID

Xen Security Advantages Even without Advanced Security Features Well-defined trusted computing base (much smaller than on type-2 HV) Minimal services in hypervisor layer Xen Security Modules (or XSM) and FLASK XSM is Xen equivalent of LSM FLASK is Xen equivalent of SELinux Developed, maintained and contributed to Xen by NSA Compatible with SELinux (tools, architecture) XSM object classes maps onto Xen features More info: http://www.slideshare.net/xen_com_mgr/ a-brief-tutorial-on-xens-advanced-security-features 50

User VM User VM NF BF NF BF NB gntdev NB gntdev gntdev Dom0 Domain manager healthd xenopsd libxl Network driver domain networkd vswitch NFS/ iscsi driver domain storaged tapdisk blktap3 Qemu domain qemu xapi domain xapi D o m 0... Logging domain syslogd Network driver domain networkd vswitch NFS/ iscsi driver domain storaged tapdisk blktap3 Local storage driver domain storaged tapdisk blktap3 dbus over v4v dbus over v4v eth eth eth eth scsi FLASK policy restricting access Xen Xen NIC (or SR- IOV VF) NIC (or SR- IOV VF) CPU RAM RAM CPU NIC (or SR- IOV VF) NIC (or SR- IOV VF) RAID

News from the Xen Community

Coming in Xen 4.3 (Q2 2013) PVH virtualization mode Extend scope of Xen Security Modules qxl Spice support for 3d acceleration Updated and improved libvirt drivers for Xen Lots of other stuff: scalability, performance, better NUMA support, More info: blog.xen.org/index.php/2013/02/11/xen-4-3-mid-release-roadmap-update

Xen 4.3 for ARM Servers Fully functional for ARM v7 & v8 ARM v7: Versatile Express, Arndale & Samsung Chromebook ARM v8: Fast Model

Xen and ARM : a perfect Match ARM SOC ARM Architecture Features for Virtualization User mode : EL0 Device Tree describes I/O Hypercall interface :HVC Kernel mode : EL1 GT GIC v2 2 stage MMU Hypervisor mode : EL2

Xen and ARM : a perfect Match ARM SOC ARM Architecture Features for Virtualization I/O Dom0 only Device Tree describes Any Xen Guest VM (including Dom0) User Space Kernel HVC EL0 EL1 GT GIC v2 2 stage MMU Xen Hypervisor EL2

One mode to rule them all Optimal performance Scope for improvement x86: PVHVM P P VS VH x86: PVH P P P VH HVM mode/domain PV mode/domain ARM v7 & v8 P VH VH VH

Xen in CentOS 6.4+ Xen is coming back to CentOS In semi-private beta Planned release in CentOS 6.4 Include XAPI packages aka XCP in CentOS

Xen Library Operating Systems Application stacks only running on Xen APIs Works on any Xen based cloud or hosting service Examples ErlangOnXen.org : Erlang HalVM : Haskell OpenMirage : Ocaml Benefits: Small footprint Low startup latency Extremely fast migration of VMs Control domain (dom0) PV Back Ends HW Drivers Dom0 Kernel Guest VM n Apps Library OS embedded in Language run-time Xen Host HW

Summary: Why Xen?

Designed for the Cloud : many advantages for cloud use! Resilience, Robustness & Scalability Security: Small surface of attack, Isolation & Advanced Security Features Widely used by Cloud Providers and Vendors XCP Ready for use with cloud orchestration stacks Open Source with a large community and eco-system Xen is still on top of the game Exciting new developments and features in the pipeline

IRC: ##xen @ FREENODE Mailing List: xen-users & xen-api (lists.xen.org) Wiki: wiki.xen.org Ecosystem pages: xen.org/community/ecosystem.html Presentations & Videos: xen.org/community/presentations.html Thank You! @lars_kurth FREENODE: lars_kurth Slides available under CC-BY-SA 3.0 From www.slideshare.net/xen_com_mgr