Using SDN-OpenFlow for High-level Services



Similar documents
Qualifying SDN/OpenFlow Enabled Networks

SDN/Virtualization and Cloud Computing

SDN and NFV in the WAN

SDN PARTNER INTEGRATION: SANDVINE

Leveraging SDN and NFV in the WAN

OpenStack Networking: Where to Next?

Software Defined Networking - a new approach to network design and operation. Paul Horrocks Pre-Sales Strategist 8 th November 2012

Testing Software Defined Network (SDN) For Data Center and Cloud VERYX TECHNOLOGIES

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

Affording the Upgrade to Higher Speed & Density

Testing Challenges for Modern Networks Built Using SDN and OpenFlow

Introduction to Software Defined Networking (SDN) and how it will change the inside of your DataCentre

Delivering Managed Services Using Next Generation Branch Architectures

An Introduction to Software-Defined Networking (SDN) Zhang Fu

Virtualization, SDN and NFV

SDN Interfaces and Performance Analysis of SDN components

Panel: Cloud/SDN/NFV 黃 仁 竑 教 授 國 立 中 正 大 學 資 工 系 2015/12/26

Securing Local Area Network with OpenFlow

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

A Coordinated. Enterprise Networks Software Defined. and Application Fluent Programmable Networks

The following normative disclaimer shall be included on the front page of a PoC report:

SOFTWARE DEFINED NETWORKING

White Paper. SDN 101: An Introduction to Software Defined Networking. citrix.com

ONOS [Open Source SDN Network Operating System for Service Provider networks]

What is SDN all about?

Software Defined Networks Virtualized networks & SDN

How To Orchestrate The Clouddusing Network With Andn

SDN Architecture and Service Trend

Definition of a White Box. Benefits of White Boxes

Virtualized Network Services SDN solution for enterprises

Software Defined Networking A quantum leap for Devops?

SDN for Wi-Fi OpenFlow-enabling the wireless LAN can bring new levels of agility

L2-L7 BASED SERVICE REDIRECTION WITH SDN/OPENFLOW

Challenges and Opportunities:

Improving Network Management with Software Defined Networking

A Presentation at DGI 2014 Government Cloud Computing and Data Center Conference & Expo, Washington, DC. September 18, 2014.

Cloud, SDN and the Evolution of

RIDE THE SDN AND CLOUD WAVE WITH CONTRAIL

OF 1.3 Testing and Challenges

What is SDN? And Why Should I Care? Jim Metzler Vice President Ashton Metzler & Associates

The Benefits of SD-WAN with Integrated Branch Security

How OpenFlow-based SDN can increase network security

SDN AND SECURITY: Why Take Over the Hosts When You Can Take Over the Network

software networking Jithesh TJ, Santhosh Karipur QuEST Global

BROCADE NETWORKING: EXPLORING SOFTWARE-DEFINED NETWORK. Gustavo Barros Systems Engineer Brocade Brasil

Software Defined Network (SDN)

Simplify IT. With Cisco Application Centric Infrastructure. Roberto Barrera VERSION May, 2015

Business Cases for Brocade Software-Defined Networking Use Cases

Virtualized Network Services SDN solution for service providers

Network Services in the SDN Data Center

SDN-NFV: An introduction

HIGH-PERFORMANCE SOLUTIONS FOR MONITORING AND SECURING YOUR NETWORK A Next-Generation Intelligent Network Access Guide OPEN UP TO THE OPPORTUNITIES

OpenDaylight Project Proposal Dynamic Flow Management

Sikkerhet Network Protector SDN app Geir Åge Leirvik HP Networking

Software Defined Networks

SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT

White Paper. BTI Intelligent Cloud Connect. Unblocking the Cloud Connectivity Bottleneck. btisystems.com

Open Networking User Group SD-WAN Requirements Demonstration Talari Test Results

Software-Defined Networking for the Data Center. Dr. Peer Hasselmeyer NEC Laboratories Europe

SINGLE-TOUCH ORCHESTRATION FOR PROVISIONING, END-TO-END VISIBILITY AND MORE CONTROL IN THE DATA CENTER

Foundation for High-Performance, Open and Flexible Software and Services in the Carrier Network. Sandeep Shah Director, Systems Architecture EZchip

Network Virtualization and Application Delivery Using Software Defined Networking

Saisei FlowCommand FLOW COMMAND IN ACTION. No Flow Left Behind. No other networking vendor can make this claim

Agile VPN for Carrier/SP Network. ONOS- based SDN Controller for China Unicom MPLS L3VPN Service

2013 ONS Tutorial 2: SDN Market Opportunities

Various Alternatives to achieve SDN. Dhruv Dhody, Sr. System Architect, Huawei Technologies

Use Cases for the NPS the Revolutionary C-Programmable 7-Layer Network Processor. Sandeep Shah Director, Systems Architecture EZchip

BRINGING NETWORKS TO THE CLOUD ERA

Virtual Application Networks Innovations Advance Software-defined Network Leadership

Saisei and Intel Maximizing WAN Bandwidth

SDN Practices in China Mobile. Lu Huang

Transformation of the enterprise WAN with dynamic-path networking

Software Defined Networks

Network Functions Virtualization in Home Networks

Designing Virtual Network Security Architectures Dave Shackleford

Transport SDN Directions. March 20, 2013 Lyndon Ong Ciena

Spotlight On Backbone Technologies

Flexible SDN Transport Networks With Optical Circuit Switching

Simplifying IT with SDN & Virtual Application Networks

OpenFlow-enabled SDN and Network Functions Virtualization. ONF Solution Brief February 17, 2014

How To Write A Network Plan In Openflow V1.3.3 (For A Test)

Disaster Recovery Design Ehab Ashary University of Colorado at Colorado Springs

Transport SDN Toolkit: Framework and APIs. John McDonough OIF Vice President NEC BTE 2015

APPLICATION-AWARE ROUTING IN SOFTWARE-DEFINED NETWORKS

SDN CONTROLLER. Emil Gągała. PLNOG, , Kraków

Data Center Network Virtualisation Standards. Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair

Enterprise Data Center Networks

HOW SDN AND (NFV) WILL RADICALLY CHANGE DATA CENTRE ARCHITECTURES AND ENABLE NEXT GENERATION CLOUD SERVICES

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Security Challenges & Opportunities in Software Defined Networks (SDN)

Building Scalable Multi-Tenant Cloud Networks with OpenFlow and OpenStack

Advantages of Consolidating Network Security with Wireless for Small & Mid-Size Businesses

PRODUCTS & TECHNOLOGY

Debunking the Myths: An Essential Guide to Software-Defined Networking April 17, 2013

Simplify IT. With Cisco Application Centric Infrastructure. Barry Huang Nov 13, 2014

Transcription:

Using SDN-OpenFlow for High-level Services Nabil Damouny Sr. Director, Strategic Marketing Netronome Vice Chair, Marketing Education, ONF ndamouny@netronome.com Open Server Summit, Networking Applications October 22, 2013 - Santa Clara, CA October 2013 1

Agenda SDN Critical properties What are L4-L7 services? Challenges catering to L4-L7 service in SDN-OpenFlow Possible deployment models Taking advantage of L7 intelligence Integration with NFV Next steps. October 2013 2

ONF s SDN Architecture. Opportunities for API Standards Applications Network Controller and Network Admin 1 2 App s Explicit Requirements SDN-enabled Application Network Statistics, Hints and Events Network Controller Provides network stats up to Apps Translates requirements down to Devices Configures Network Policy Monitors Performance Opportunity to Standardize Network Devices 3 Router Switch Firewall Switch Standardized API/Protocol Enforced Behavior Low-level Control Capability Discovery Statistics and Faults Host X Server Y October 2013 3

Critical Properties of SDN Architecture 1. Applications are network-aware: SDN-enabled Applications Communicate their requirements/polices to the network Can monitor network state and adapt accordingly 2. Network is logically centralized: SDN Network Controller Controller translates from app requirement to low-level rules Controller summarizes the network state for applications 3. Well-understood driver-like model for devices: SDN Datapath Programmatic low-level control of all forwarding and configuration API for capabilities advertisement and publishing statistics No resource contention with other entities Controller owns this device, subject to capabilities advertisement/negotiation October 2013 4

What are L4-L7 Services? Layer 2 / Layer 3 Switching Routing Packet forwarding OpenFlow Architectures optimized to process individual packets. Layer 4 through 7 Security Load balancing WAN optimization Architectures optimized to process flows and content Categorized by depth of Layer 4-7 inspection No Flow Inspection Partial Flow Inspection Flow Monitoring Full Flow Inspection OpenFlow switch Load balancer Next-generation firewall WAN optimization Web application firewall Test and measurement Policing and metering Quality of Service (QoS) Traffic analysis Anti-virus / anti-spam Intrusion prevention system (IPS) SSL inspection VPN October 2013 5

Challenges with L4-L7 Service in SDN-OpenFlow Envornment Inefficient use of network bandwidth and compute resources, due to lack of L4-L7 visibility Bottlenecks and lack of coverage due to inability to rapidly respond to new networking and application requirements Hosting on controllers results in reduced throughput, increased latency and limited scalability of the network, due to limited compute resources Lack of feedback from L4-L7 services, which could potentially reprogram network paths, based on L4-L7 analysis October 2013 6

Many Deployment Models 1. Running as applications on the controller Controller programs SDN switch on per-flow basis Application Layer Applications Northbound APIs Layer 4-7 Services 1 2. Standalone network appliance Inline OF-based appliance Traffic directed to legacy appliance either based on static policy, or dynamically driven by controller Or just in-line 3. Full L4-L7 network services running on intelligent switch Intelligent switch becomes L2-L7 device Control Layer Infrastructure Layer Network Device Network Controller SDN Control Software Southbound API Layer 4 through 7 Appliance Network Device Intelligent Switch with Layer 4-7 2 3 Network Device October 2013 7

Use Case Example: Advanced Traffic Analysis Applicati on Layer Control Layer Northbound APIs SDN Control Software Applications Network Services Data Plane Traffic Layer 4-7: Protocol and Application Identification Web Video IM VoIP Email P2P Traffic Steering Video Optimization QoS / QoE Analytics GGSN Content Filtering Southbound API Other Infrastru cture Layer Layer 7 Network Service Device Network Device Network Device Layer 7 Network Service Device Layer 4-7 Network Device Embedded DPI feeds network intelligence to services on Layer 7 network service devices. Application flows forwarded directly to specialized service processing. Requires Layer 4 through 7 intelligence embedded directly in switches October 2013 8

Integrating SDN-OpenFlow in NFV Architecture Framework October 2013 9

Netronome Integrates SDN & NFV vlan -to- MPLS Gateway SDN OpenFlow Controller Multi-tenant Private DC OF1.3 MPLS WAN OF1.3 Public DC OpenFlow Gateway October 2013 Netronome SDN/NFV gateway combines the advantages of both worlds NFV is ideal for L4-L7 devices SDN is ideal for network-aware applications Gateway hosts VNF applications Under OF1.3 control 10

Next Steps Define phases of OpenFlow enhancement Traffic steering Adding Stateful inspection Is it possible to extend OpenFlow to cater to L4-L7 without making it more complex? Controlling L4-L7 devices Integration with NFV architecture model October 2013 11