Scalable Network Monitoring with SDN-Based Ethernet Fabrics

Similar documents
Scalable Network Monitoring with SDN-Based Ethernet Fabrics

SDN Applications in Today s Data Center

Pervasive Security Enabled by Next Generation Monitoring Fabric

Open SDN for Network Visibility

Big Tap Monitoring Fabric Simpler, Scalable, Economical Release Version 4.1.1

基 於 SDN 與 可 程 式 化 硬 體 架 構 之 雲 端 網 路 系 統 交 換 器

Introduction to Software Defined Networking (SDN) and how it will change the inside of your DataCentre

SOFTWARE DEFINED NETWORKING

SDN and Open Ethernet Switches Empower Modern Data Center Networks

BARE METAL SOFTWARE DEFINED NETWORKS, AND OPEN SOURCE. Rob Sherwood Big Switch Networks, CTO BANV, May 2014

Building an Open, Adaptive & Responsive Data Center using OpenDaylight

SDN PARTNER INTEGRATION: SANDVINE

Software-Defined Networks Powered by VellOS

Software Defined Networks

Outline. Why Neutron? What is Neutron? API Abstractions Plugin Architecture

Panel: Cloud/SDN/NFV 黃 仁 竑 教 授 國 立 中 正 大 學 資 工 系 2015/12/26

RIDE THE SDN AND CLOUD WAVE WITH CONTRAIL

Simplify IT. With Cisco Application Centric Infrastructure. Roberto Barrera VERSION May, 2015

Network Virtualization for the Enterprise Data Center. Guido Appenzeller Open Networking Summit October 2011

What is SDN all about?

Pluribus Netvisor Solution Brief

THE REVOLUTION TOWARDS SOFTWARE- DEFINED NETWORKING

Core and Pod Data Center Design

Virtualization, SDN and NFV

HOW SDN AND (NFV) WILL RADICALLY CHANGE DATA CENTRE ARCHITECTURES AND ENABLE NEXT GENERATION CLOUD SERVICES

Network Packet Monitoring Optimizations in Data Centre

White Paper. Juniper Networks. Enabling Businesses to Deploy Virtualized Data Center Environments. Copyright 2013, Juniper Networks, Inc.

How do software-defined networks enhance the value of converged infrastructures?

Using SouthBound APIs to build an SDN Solution. Dan Mihai Dumitriu Midokura Feb 5 th, 2014

Software Defined Networks Virtualized networks & SDN

Building Scalable Multi-Tenant Cloud Networks with OpenFlow and OpenStack

Fabrics that Fit Matching the Network to Today s Data Center Traffic Conditions

SDN Software Defined Networks

Big Tap Monitoring Fabric 4.5

CS244 Lecture 5 Architecture and Principles

Cisco Nexus Data Broker: Deployment Use Cases with Cisco Nexus 3000 Series Switches

Enabling Visibility for Wireshark across Physical, Virtual and SDN. Patrick Leong, CTO Gigamon

SDN Controller Requirement

Whitepaper Unified Visibility Fabric A New Approach to Visibility

VSS - Game Changing Technology

APPLICATION DELIVERY IN OPENSTACK WITH AVI NETWORKS

Cisco and Red Hat: Application Centric Infrastructure Integration with OpenStack

Data Center Infrastructure of the future. Alexei Agueev, Systems Engineer

SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT

Network Function Virtualization & Software Defined Networking

The promise of SDN. EU Future Internet Assembly March 18, Yanick Pouffary Chief Technologist HP Network Services

SDN. What's Software Defined Networking? Angelo Capossele

2013 ONS Tutorial 2: SDN Market Opportunities

PLUMgrid Open Networking Suite Service Insertion Architecture

Strategic Direction of Networking IPv6, SDN and NFV Where Do You Start?

Open Fabric SDN The Comprehensive SDN approach. Jake Howering, Director SDN Product Line Management Bithika Khargharia, PhD, Senior Engineer

Testing Software Defined Network (SDN) For Data Center and Cloud VERYX TECHNOLOGIES

The Impact of PaaS on Business Transformation

Deliver the Next Generation Intelligent Datacenter Fabric with the Cisco Nexus 1000V, Citrix NetScaler Application Delivery Controller and Cisco vpath

With Red Hat Enterprise Virtualization, you can: Take advantage of existing people skills and investments

The Impact of Virtualization on Cloud Networking Arista Networks Whitepaper

BRINGING NETWORKS TO THE CLOUD ERA

The Open Cloud Near-Term Infrastructure Trends in Cloud Computing

Impact of Virtualization on Cloud Networking Arista Networks Whitepaper

Blue Planet. Introduction. Blue Planet Components. Benefits

EVOLVED DATA CENTER ARCHITECTURE

Global Headquarters: 5 Speen Street Framingham, MA USA P F

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

2015 LENOVO. ALL RIGHTS RESERVED. Isabel Zarate Lenovo EBG Leader

Business Cases for Brocade Software-Defined Networking Use Cases

Datacenter Networking. Joy ABOIM Consulting System Engineer

THE VIRTUAL PROBE: ASSURANCE & MONITORING IN THE NFV/SDN ERA

Extending SDN into the Transport Network. Nanog 59 Wayne Wauford Infinera

F5 Application Delivery in a Virtual Network

Solving Scale and Mobility in the Data Center A New Simplified Approach

Definition of a White Box. Benefits of White Boxes

Use Case Brief CLOUD MANAGEMENT SOFTWARE AUTOMATION

Het is een kleine stap naar een hybrid cloud

Monitoring, Managing, and Securing SDN Deployments // White Paper

The Business Case for Software-Defined Networking

Qualifying SDN/OpenFlow Enabled Networks

Product Brochure. Hedvig Distributed Storage Platform Modern Storage for Modern Business. Elastic. Accelerate data to value. Simple.

HP Converged Cloud Cloud Platform Overview. Shane Pearson Vice President, Portfolio & Product Management

Cisco UCS C-Series Rack-Mount Servers The Computing Platform for Virtualised Data Centres. Business Overview

Dell Networking ARGOS 24/03/2016. Nicolas Roughol. Networking Sales Engineer. Tel : nicolas_roughol@dell.com

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

Delivering Managed Services Using Next Generation Branch Architectures

Journey to the Cloud and Application Release Automation Shane Pearson VP, Portfolio & Product Management

SolidFire SF3010 All-SSD storage system with Citrix CloudPlatform Reference Architecture

Unifying the Programmability of Cloud and Carrier Infrastructure

Ensuring end-user quality in NFV-based infrastructures

Network Virtualization

HAWAII TECH TALK SDN. Paul Deakin Field Systems Engineer

Getting started with O3 Project Achievement ~ Innovating Network Business through SDN WAN Technologies~

The Last Piece of the Puzzle From Legacy to SDN and NFV. Benjamin Then

Use Cases for the NPS the Revolutionary C-Programmable 7-Layer Network Processor. Sandeep Shah Director, Systems Architecture EZchip

White Paper. SDN 101: An Introduction to Software Defined Networking. citrix.com

Transcription:

Scalable Network Monitoring with SDN-Based Ethernet Fabrics Prashant Gandhi VP, Products & Strategy Big Switch Networks gandhi@bigswitch.com 1

Agenda Trends in Network Monitoring SDN s Role in Network Monitoring Monitoring Fabric based on SDN & Bare-metal switching Customer Use Cases 2

Why Network Monitoring? Physical Workloads Virtual Workloads Monitoring Tools Production Network Net Mon SLA Mon Sec Mon App Mon Data Recorder VOIP Mon Every organization needs to Monitor Enterprises, Service Providers, Public Sector, Cloud 3

Customer Requirements Physical Workloads Virtual Workloads Monitoring Tools Net Mon App Mon Production Network Sec Mon VOIP Mon SLA Mon Data Recorder Bandwidth: 10G, 40G Scale: 100s of Ports Flexibility: Any Tool to Any Tap Multi-tenancy: Multiple IT Teams Cost Optimized: Lower CapEx and OpEx 4

Gen-1: Tap & Tool Silo Tools 1/10GE Network Probe / Recorder 1/10GE Performance Monitoring Appliance Security Appliance Physical & Virtual Workloads Manual Connections Complex Silo operation May 2014 Big Switch Networks (www.bigswitch.com) 5

Gen-2: Limited Tap Aggregation Tools Physical & Virtual Workloads Complex Limited-scope Operation Higher cost : Network Packet Broker 6

Gen-3: SDN-based Monitoring Fabrics SDN Controller 1G/10G/40G SDN-based Ethernet Monitoring Fabric based on Bare-metal Switches 1G/ 10G/ 40G Physical & Virtual Workloads Monitoring Fabric s as Service Nodes Tool Farm 7

SDN s Role in Network Monitoring 8

Learnings from Hyperscale DCs IT at the Speed of Business Add/Modify/Retire Apps Secure, elastic infrastructure Massive Simplification Simple to provision Simple to trouble-shoot Simple to add/remove Programmatic / Automated Dramatic TCO Reduction Reduce CapEx Reduce OpEx 9

Learnings from HyperScale DCs Bare Metal - HW / SW disaggregation - No vendor lock-in - Much lower CapEx SDN - No complex protocols on HW - Massive simplification w/ SDN Controller - Fast speed of change - Much lower OpEx Modern Network Architecture - Application Agility - Operational Simplicity - Lower TCO (and choice) 10

SDN 2.0 Architectural Evolution Accelerate Production-grade SDN and Bare-metal deployments SDN 1.0: Research Automa=on Tool SDN Controller OpenFlow APIs SDN App North- bound APIs SDN 2.0: Produc/on Automa=on Tool North- bound APIs SDN App SDN Controller OpenFlow & Extensions (Thick) NetOS OF Tradi=onal Switch HW Mul=ple SW vendors for a single solu=on OF agent from HW vendor varied implementa=ons Limited access to switch ASIC access & Switch HW Issues: Scalability?, Resiliency?, Support? (Thin) SDN OS Bare Metal Switch HW Switch Light OS SW solu=on from single vendor supportable Full access to switch ASIC and Switch HW Hierarchically implemented Control- Plane Scalable, Resilient same as tradi=onal network 11

Gen-3: SDN-based Monitoring Fabrics SDN Controller 1G/10G/40G Network Monitoring Fabric based on SDN and Bare-metal Switches 1G/ 10G/ 40G Physical & Virtual Workloads Monitoring Fabric s as Service Nodes Tool Farm 12

Big Switch SDN Product Portfolio 1 2 Datacenter Monitoring Fabrics Big Tap Monitoring fabric of bare metal switches for mul=- tenant connec=ons between network taps and tools (1 st produc=on- grade applica=ons for mul=ple customers) Unified P+V Cloud Fabric Datacenter switching and rou=ng fabric using Switch Light OS pswitches and vswitches for secure cloud automa=on (e.g. OpenStack) 13

SDN Example: Monitoring Fabric (Based on SDN and Bare-metal Switches) 14

Gen-3: Monitoring Fabrics Controller 1G/10G/40G 1G/ 10G/ 40G Physical & Virtual Workloads Monitoring Fabric s as Service Nodes Tool Farm 15

Monitoring Fabric: Components Filter Ports (Tap and facing ports) Controller Monitoring Fabric Delivery Ports (Tool facing ports) Controller (SW) Single pane of glass VM or appliance Built-in GUI, CLI, REST Policy management Fabric (forwarding) management Switch control & management Role-based Access Control Trouble-shooting, fault detection Clustering for High Availability Switches Hardware: Bare-metal switch OS: Switch Light No complex protocols Auto installation via ONIE Ports Filter, Service, Delivery 16

Policy Example 1 Controller Tool Farm F1 x D1 Policy P1: Filter Port: F1 Delivery port: D1 Match packets with source ip=10.1.1.x/24 All Packets that do NOT match the rule are DROPPED (filtering opera=on) Production Network Monitoring Fabric s as Service Nodes 17

Policy Example 2 Controller Tool Farm D1 D2 Policy P2: Filter Port: F2 Delivery port: D1, D2, D3 Match packets with source ip=10.1.1.x/24 F2 D3 All packets matching the rule are replicated and sent to the designated tools (as per policy) Production Network Monitoring Fabric s as Service Nodes 18

Service Chaining of s Controller Tool Farm s as Service Nodes for adv. packet processing: Time- stamping De- duplica=on packet slicing Service Chaining: Mul=ple s can be logically chained on a per- policy basis for sophis=cated flow processing Production Network Monitoring Fabric s as Service Nodes 19

Tool Scaling Controller Tool Farm Tool Load- balancing: Scale tool bandwidth Production Network Monitoring Fabric s as Service Nodes 20

Monitoring VM-to-VM Traffic vswitch Enable R vswitch Enable R Physical Network Same Monitoring Fabric is leveraged for monitoring VM-to-VM traffic R- Span Traffic Big Tap Monitoring Fabric Prod Traffic Tools 21

Multi-tenant Operation Monitoring as a Service Self- service monitoring for each group Role- based authoriza=on and privileges Local and/or remote authen=ca=on Tenant- Aware GUI, CLI and REST API TACACS+ Santa Clara, CA USA AprilMay 2014 Big Switch Networks (www.bigswitch.com) 22

Event-Triggered Monitoring Programmatic creation of policies based on an event using REST APIs Normal packet Packet of Interest Controller Invoke REST API of the Monitoring Fabric Wireshark (Capture) Dynamically provision / activate / update the policy Traffic of interest is now replicated to the capture tool too. Snort (IDS) Monitoring Fabric 23

Graphical User Interface (GUI) Highly functional GUI Dashboard Topology System Status Policy Management RBAC for user selfservice workflows. 24

Filter Ports (Tap and facing ports) Monitoring Fabric: Functionality Controller Monitoring Fabric Delivery Ports (Tool facing ports) Rich Feature Set 7-tuple policies (L2 L4) IPv6 support Fine-grain Role-Based Access Control Intelligent Policy Resolution VM-to-VM monitoring Programmatic control Service chaining of s Operational Simplicity Auto-Installation Fabric Management & Programmability Enhanced GUI Workflows Scalable Architecture Tool scaling (via load balancing) Fabric scaling (scale-out) Policy scaling (via optimization) 25

Customer Use Cases 26

Customer Benefits & Use Cases Bandwidth: 10G, 40G Scale: 100s of Ports Flexibility: Any Tool to Any Tap Multi-tenancy: Multiple IT Teams Cost Optimized: Lower CapEx and OpEx Large Web 2.0 Datacenter: Network ops, security and compliance teams all share the same taps LTE Operator: 4G LTE network monitoring for trouble-shooting and compliance Large Hi-Tech Company: Self-service production tapping for software developers Santa Clara, CA USA April-May 2014 Big Switch Networks (www.bigswitch.com) 27

Customer Traction Large-scale deployment of SDN across multiple customers 10+ Customers (Enterprise, Mobile SP, Hyper-Scale) Multi-hundred ports per DC, Multiple DCs Repeat purchases FYI, we just had a the other day. We had a customer facing issue that s been going on for a month. We thought it was an issue with the ISP. Being able to take a capture off the Core device, we were able to prove it was an issue in our own infra. to identify once we had access to the data. - Network Administrator in a Fortune 50 Company 28

Big Switch & Dell Partner to Accelerate SDN Deployments Big Switch SDN solution integrated with Dell s Open Networking Switches Big Switch SDN solutions integrated with Dell s Open Networking Switches Dell is single point of contact for customers Open networking switches Resell of SW Global support and services 29

Thank You! 30