Definition of a White Box. Benefits of White Boxes



Similar documents
Foundation for High-Performance, Open and Flexible Software and Services in the Carrier Network. Sandeep Shah Director, Systems Architecture EZchip

Use Cases for the NPS the Revolutionary C-Programmable 7-Layer Network Processor. Sandeep Shah Director, Systems Architecture EZchip

Accelerating the Data Plane With the TILE-Mx Manycore Processor

Virtualization, SDN and NFV

NFV Acceleration with the EZchip NPS-400 Network Processor

How To Make A Vpc More Secure With A Cloud Network Overlay (Network) On A Vlan) On An Openstack Vlan On A Server On A Network On A 2D (Vlan) (Vpn) On Your Vlan

Software Defined Network (SDN)

Palo Alto Networks. Security Models in the Software Defined Data Center

Panel: Cloud/SDN/NFV 黃 仁 竑 教 授 國 立 中 正 大 學 資 工 系 2015/12/26

White Paper. SDN 101: An Introduction to Software Defined Networking. citrix.com

BROADCOM SDN SOLUTIONS OF-DPA (OPENFLOW DATA PLANE ABSTRACTION) SOFTWARE

SDN PARTNER INTEGRATION: SANDVINE

Bringing OpenFlow s Power to Real Networks

Telecom - The technology behind

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

What is SDN? And Why Should I Care? Jim Metzler Vice President Ashton Metzler & Associates

The Road to SDN: Software-Based Networking and Security from Brocade

Deliver the Next Generation Intelligent Datacenter Fabric with the Cisco Nexus 1000V, Citrix NetScaler Application Delivery Controller and Cisco vpath

基 於 SDN 與 可 程 式 化 硬 體 架 構 之 雲 端 網 路 系 統 交 換 器

EZchip Investor Presentation

Leveraging SDN and NFV in the WAN

SDN and NFV in the WAN

Delivering Managed Services Using Next Generation Branch Architectures

Dynamic Service Chaining for NFV/SDN

Cloud Networking Disruption with Software Defined Network Virtualization. Ali Khayam

Programmable Networking with Open vswitch

Using Network Virtualization to Scale Data Centers

BROCADE NETWORKING: EXPLORING SOFTWARE-DEFINED NETWORK. Gustavo Barros Systems Engineer Brocade Brasil

Ensuring end-user quality in NFV-based infrastructures

Using SDN-OpenFlow for High-level Services

Beyond the Data Center: How Network-Function Virtualization Enables New Customer-Premise Services

Testing Software Defined Network (SDN) For Data Center and Cloud VERYX TECHNOLOGIES

Challenges and Opportunities:

Ensuring end-user quality in NFV-based infrastructure

The Role of Virtual Routers In Carrier Networks

SOFTWARE-DEFINED NETWORKING AND OPENFLOW

Network Functions Virtualization (NFV) for Next Generation Networks (NGN)

WHITE PAPER. Network Virtualization: A Data Plane Perspective

Netvisor Software Defined Fabric Architecture

HAWAII TECH TALK SDN. Paul Deakin Field Systems Engineer

Building an Open, Adaptive & Responsive Data Center using OpenDaylight

State of the Art Cloud Infrastructure

Why Software Defined Networking (SDN)? Boyan Sotirov

Cisco Integrated Services Routers Performance Overview

OpenStack Networking: Where to Next?

Building Scalable Multi-Tenant Cloud Networks with OpenFlow and OpenStack

A Case for Overlays in DCN Virtualization Katherine Barabash, Rami Cohen, David Hadas, Vinit Jain, Renato Recio and Benny Rochwerger IBM

SDN and Data Center Networks

Data Center Network Virtualisation Standards. Matthew Bocci, Director of Technology & Standards, IP Division IETF NVO3 Co-chair

PLUMgrid Open Networking Suite Service Insertion Architecture

SDN Applications in Today s Data Center

COMPUTING. Centellis Virtualization Platform An open hardware and software platform for implementing virtualized applications

Pluribus Netvisor Solution Brief

Conference. Smart Future Networks THE NEXT EVOLUTION OF THE INTERNET FROM INTERNET OF THINGS TO INTERNET OF EVERYTHING

Enabling Solutions in Cloud Infrastructure and for Network Functions Virtualization

Network Virtualization and Software-defined Networking. Chris Wright and Thomas Graf Red Hat June 14, 2013

Open Source Network: Software-Defined Networking (SDN) and OpenFlow

The Last Piece of the Puzzle From Legacy to SDN and NFV. Benjamin Then

The following normative disclaimer shall be included on the front page of a PoC report:

Brocade SDN 2015 NFV

Flexible Building Blocks for Software Defined Network Function Virtualization (Tenant-Programmable Virtual Networks)

L2-L7 BASED SERVICE REDIRECTION WITH SDN/OPENFLOW

Scaling the S in SDN at Azure. Albert Greenberg Distinguished Engineer & Director of Engineering Microsoft Azure Networking

Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure

RIDE THE SDN AND CLOUD WAVE WITH CONTRAIL

Network Virtualization for the Enterprise Data Center. Guido Appenzeller Open Networking Summit October 2011

Networking Goes Open-Source. Michael Zimmerman VP Marketing, Tilera

Testing Network Virtualization For Data Center and Cloud VERYX TECHNOLOGIES

Accelerating Micro-segmentation

Outline. Why Neutron? What is Neutron? API Abstractions Plugin Architecture

THE REVOLUTION TOWARDS SOFTWARE- DEFINED NETWORKING

Network Virtualization Solutions

BUILDING A NEXT-GENERATION DATA CENTER

Software-Defined Networking Architecture Framework for Multi-Tenant Enterprise Cloud Environments

VIRTUALIZED SERVICES PLATFORM Software Defined Networking for enterprises and service providers

Network Function Virtualization Using Data Plane Developer s Kit

Oracle SDN Performance Acceleration with Software-Defined Networking

SDN Architecture and Service Trend

Scaling Cloud-Native Virtualized Network Services with Flash Memory

Qualifying SDN/OpenFlow Enabled Networks

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Network Technologies for Next-generation Data Centers

Introduction to Network Virtualization in IaaS Cloud. Akane Matsuo, Midokura Japan K.K. LinuxCon Japan 2013 May 31 st, 2013

SOFTWARE DEFINED NETWORKING: INDUSTRY INVOLVEMENT

Brocade VCS Fabrics: The Foundation for Software-Defined Networks

SOFTWARE DEFINED NETWORKING

Achieving a High-Performance Virtual Network Infrastructure with PLUMgrid IO Visor & Mellanox ConnectX -3 Pro

ConnectX -3 Pro: Solving the NVGRE Performance Challenge

Different NFV/SDN Solutions for Telecoms and Enterprise Cloud

Software-Defined Network (SDN) & Network Function Virtualization (NFV) Po-Ching Lin Dept. CSIE, National Chung Cheng University

Brocade One Data Center Cloud-Optimized Networks

Intel DPDK Service Offerings

Virtualized Network Services SDN solution for enterprises

CLOUD NETWORKING THE NEXT CHAPTER FLORIN BALUS

Transcription:

Smart Network Processing for White Boxes Sandeep Shah Director, Systems Architecture EZchip Technologies sandeep@ezchip.com Linley Carrier Conference June 10-11, 2014 Santa Clara, CA 1 EZchip Overview Fabless semiconductor company, NASDAQ listed (EZCH) Leading provider of Ethernet Network Processors (NPUs) to the Carrier Ethernet (CE) market, especially for edge routers EZchip is a strategic supplier to the top Carrier Ethernet vendors Announced the NPS, a revolutionary line of NPUs for the next wave of smart carrier and data center networks NPS stands out as the most powerful network processing silicon for carrier edge routers, data-center appliances and white-box solutions Founded in 1999; 200 employees, 160 in R&D in Israel Global offices in Israel (HQ); San Jose, CA; Boston, MA; and China Strong financial model; over $210M in cash, no debt 2 1

Definition of a White Box From AT&T Domain 2.0 Vision White Paper, November 13, 2013 http://www.att.com/common/about_us/pdf/at&t Domain 2.0 Vision White Paper.pdf the term White Box means a network data plane forwarding/processing element that is based on readily available networking hardware, such as merchant silicon, network processors, or ASICs. It is available from many suppliers, is interchangeable with other white boxes; and has both limited integrated control plane functions as well as support for SDN Control (decoupled control) through a standard, open interface. 3 Benefits of White Boxes Off-the-shelf hardware from ODM versus a proprietary system Key differentiators are silicon & software Suitable for deployment in various areas such as top-of-rack switches or network appliances Drives down costs by enabling an ecosystem of hardware and software vendors Can be implemented in a variety of form factors: 1U, 2U, OCP Allows multiple vendors to compete with the same hardware Provides the end customer with choices 4 2

White Box Value is in the silicon & software Merchant Silicon ISV Software 5 Simple White Box Value is in the silicon & software Fixed-Function ASIC Limited L2 Functions Mainly a business model change rather than a technology enabler 6 3

Smart White Box Value is in the silicon & software Programmable NPS Any L2-L7 Functions All the benefits of a white box plus Fully programmable NPS to implement any L2 to L7 system Software updates to enable new functions/features/protocols Drive performance for a variety of applications 7 NPS: A Game Changer NPU 400 Gbps NPU C Programmable Security & DPI Hardware Accelerators NPS NPU Performance CPU Programmability Linux OS Traffic Management Layer2- Layer7 Processing 8 4

NPS Target Markets For next gen L2-7 edge routers - Leapfrogs merchant & in-house NPUs with L2-7 & C-programmability For next gen cloud architectures - Leapfrogs multi-core CPUs with 10x performance Strongly differentiated technology - Faster & smaller C-programmable processing cores - 256 processors, 4096 virtual processors on one chip - Large set of algorithmic accelerations - Market leading traffic management technology 9 The Smart NPS White Box - L2 /L3 forwarding - Data center bridging - Fixed encapsulation protocols - Limited scale - L2 /L3 forwarding & routing - Data center bridging - Multiple encapsulation protocols - VxLAN, NVGRE, STT, +++ - OVS offload & OpenFlow 1.3 ++ - Stateful flow table scaling to millions of flows - Classification & access control (ACL) - Load balancing - Firewall, security (IPSEC, SSL) - DPI / application awareness - Traffic management - SLA enforcement - Network monitoring - TCP acceleration / termination - Service chaining 10 5

Use Case: ACL Offload Customer A Customer B Customer C Customer Z Scenario: Hosting multiple tenants over same infrastructure Operator must ensure proper isolation as well as correct flow of packets based on virtual network, physical network, tenant, and application for every packet Requires a large number of ACLs and policies Data Center ACLs in high-performance networking equipment are typically implemented using specialized silicon such as TCAMs Performing ACL lookups in server software incurs a high overhead and can severely impact application performance With NFV, network functions are virtualized as VNFs in COTS servers and white box switches. NPS is ideal for an NFV fast path accelerator enabling COTS based solutions to scale NPS supports an on-chip TCAM with as well as TCAM algorithmic extension to external DRAM Scales to millions of ACL rules and flow classifiers Enables scalable NFV, SDN and OpenFlow networks 11 Use Case: Application Awareness Traditional L2/L3 Ethernet VLAN IPv4 IPv6 TCP UDP VxLAN ACL NVGRE L4-L7 Application https://... Actions Monitor QoE: BW, Jitter, Delay Enforce SLA Traffic Steering Load Balancing Filtering Differentiated QoS... Encrypt/Decrypt NPS provides a high-performance, application-aware flow manager: Classify traffic based on application TCP ordering and termination Able to look at higher level protocols, extract content, such as URLs, and match across multiple rules and strings Apply stochastic rules such as BW, delay, jitter, packet size monitoring Able to apply different service chains based on application Supports different QoS profiles per application Enables user-defined monitoring tools Ensures service level agreements on a per application basis Can be seamlessly integrated with third party application recognition software (e.g. QOSMOS, Procera). 12 6

Use Case: Virtualized & IPsec Enterprise Branch Residential Branch Enterprise Branch v vnfs Data Center PE IP Backbone Enterprise Data Center Internet Scenario: Virtualizing, access router, residential gateway Traditional model: Security functions such as firewall run on the or GW device SDN / NFV migration: Security and other networking functions are implemented as VNFs on VM in carrier s data center Requires a secure tunnel between VM and /GW client This creates a large number of IPsec tunnels The NPS white box offloads and treats IPsec as an inline service at the start of the service chain in the white box, resulting in a significant offload White boxes which only perform L2/L3 forwarding cannot handle stateful operations such as encryption and decryption which must then be done on server The NPS white box accelerates security protocols to rates of 200Gbps Traffic management, DPI and more are offloaded to the NPS Smart White Box Higher performance, fewer servers, simpler management 13 Use Case: Lawful Interception Intercepted Traffic Lawful interception requires the ability to observe, monitor, and take action on any flow based on any fields (L2- L7) in the flow including cross packet payload based signatures NPS contains powerful hardware to perform wire-speed processing L7 application awareness Stateful flow tables TCP reassembly & termination Hardware accelerated pattern matching The NPS Smart White Box provides high-performance searches and pattern matches based on fine-grained rules including URLs Tracks billions of user-defined statistics / sec Performs user-defined actions while maintaining state for millions of flows 14 7

Available for All Use Cases: Advanced Traffic Management EZchip NPUs support on-chip, carrier-grade, field-proven, traffic management enabling traffic engineering and SLA delivery Dynamic real-time hitless reconfiguration of service parameters Subscriber isolation, bandwidth allocation and fairness based on programmed policies Enables hierarchical traffic management for both physical and virtualized networks 15 Available Applications & Building Blocks Production-ready baseline applications L2/L3 Data center bridging (VxLAN, NVGRE) Production-ready building blocks for higher level functions DPI package IPsec package OVS package OpenFlow package TCP termination package ACL package 3 rd party ecosystem Can offer plug-ins and applications via open API (QOSMOS, 6Wind, Procera, ) Support for open source (Quagga) or commercial SDN control plane 16 8

NPS White Box in the Network Smart TOR Smart TOR Replace an ASIC-based TOR switch with a programmable smart NFV TOR: Network layer processing for VNFs Complete offload of vswitch and network overlay Minimum server I/O overhead Significant reduction in cost and power Rack of Servers 17 NPS White Box in the Network Rack of Servers Cloud Appliance / Data Center Appliance Data plane services via high level API that can be accessed by various applications in the cloud ACL, DPI, security, load balancing, traffic management, network monitoring, etc. Virtualized on-demand services per VNF Dynamic load balancing among distributed VMs & VNFs Security and services for north-south as well as east-west traffic Smart NFV Cloud Appliances 18 9

Summary NPS enables carrier edge routers, data-center appliances and white-box solutions The white box value lies in the silicon and the software SDN and NFV fuel s/w based, programmable white boxes NPS programmable high-performance packet processing enables Smart White Boxes Smart white boxes with any L2-L7 functions at highest performance Smart white box TOR switches & cloud appliances 19 10