版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
1、1VXLAN Fundamentals, Architecture & Roadmap21. Data Center IP Fabric Building a strong Foundation2. What is Network Virtualization?3. VXLAN Overview4. VXLAN Packet details5. VXLAN Terminology6. VXLAN Host Discovery7. VXLAN BUM Traffic Handling8. VXLAN Layer 2 & Layer 3 Terminologies9. VXLAN
2、Arista Architecture & Vision10.VXLAN Roadmap11.VXLAN Visbility3Data Center IP FabricBuilding A Strong FoundationScalability Scales up and not scales out Dependent on specific hardware (mix & match) Not scalable to 40GbE / 100GbELatency High latency Low predictabilityMobility What happens if
3、my “IP” changes? What happens if traffic pattern changes?Cost As multiple layers, it can get $Oversubscription Ports on devices are oversubscribed 8:1 Higher Oversubscription as traffic traverses north 20:1Layer 2 DomainLayer 2 DomainLegacy Data Center ModelMultiple points of management, rampant ove
4、rsubscription, wasteful cost modelLayer 2 DomainLayer 2 DomainNorth to SouthSupport for East/West 80:20 traffic patternScale up to 64-way ECMP Spine designs All uplinks from ToR are Active/ActiveSupport 100000s of host ports Non-blocking / Non-oversubscribed architectureDeploy L3 routing protocols b
5、etween leaf & spine i.e. BGP, OSPF, or ISISEverything is only 3 hops away!Provide network mobility via Overlay Network6VTEP1IP FabricSpine TierLeaf TierA 1B 1A2B2Bare Metal ServersBare Metal Storage HYPERVISOR 1HYPERVISOR 2VTEP2VTEP3VTEP4 Network core is an IP fabric laid out in a Leaf-Spine arc
6、hitecture running ECMP between the two tiers- Leaf switches - Arista 7150-x or 7050Q-x models are deployed at the TOR connecting virtualized servers, bare-metal servers, storage arrays and other devices- Spine switches Arista 7500s are deployed at the core - Routing Protocol Either EGP (BGP) or IGP
7、(OSPF / ISIS) is run in the IP fabric7What is Network Virtualization?8Network Virtualization is not the same as Server Virtualization!9Network virtualization: ability to separate, abstract and decouple the physical topology from a logical or virtual topology by using encapsulated tunneling. This log
8、ical network topology is often referred to as an Overlay Network. Overlay NetworkPhysical Infrastructure i.e. Underlay NetworkVXLAN disassociates workloads from physical networks, allowing for possible transition to cloud based providers 10Any Overlay technology uses Location & Identity separati
9、on LocationIdentityFabric PathVXLANOTVLISPUnderlay ProtocolIS-ISBGP, OSPF, IS-ISBGP, OSPF, IS-ISBGP, OSPF, IS-ISLocationSwitch-IDIP addressIP addressIP addressIdentityClient MACClient MACClient MACClient IP / MacIdentity LearningFloodingFlooding / Dynamic learningIS-ISMapping DBVendor ProprietaryYes
10、NonYesNonIntra & / or Inter DCIntraBothBothInter11VXLAN Overview12Ethernet in IP overlay network Entire L2 frame encapsulated in UDP50 bytes of overheadInclude 24 bit VXLAN Identifier16 M logical networksVXLAN can cross Layer 3Tunnel between ESX hostsVMs do NOT see VXLAN IDIP multicast used for
11、L2 broadcast/multicast, unknown unicastTechnology submitted to IETF for standardizationWith Arista, Vmware, Red Hat, Citrix, Cisco, and OthersOuter MACDAOuter MACSAOuter 802.1QOuter IP DAOuter IP SAOuter UDPVXLAN ID (24 bits)Inner MAC DAInnerMACSAOptional Inner 802.1Q Original Ethernet PayloadCRCVXL
12、AN EncapsulationOriginal Ethernet Frame13MAC&IP are UDP EncapsulatedEncapsulation at VTEP node is transparent to IP ECMP fabricVM-110.10.10.1/24VM-210.10.10.2/24Subnet-A Subnet-B Layer 2 Domain between the VMvWire- VNI 10HW VTEPEncap/DecapVXLAN FramesSW VTEPEncap/DecapVXLAN VTEPVTEPVTEP14Feature
13、 Benefits-Eliminates current networking challenges in the way of on-demand, virtual environment:- VLAN Sprawl- Single fault domains- Scalability beyond 4096 segments- Proprietary fabric solutions- IP mobility- Physical cluster size and locality-Enables multi-tenancy at scale-Decouples logical networ
14、ks from physical infrastructure so that applications can be deployed without worrying about physical rack location, IP address or VLAN-Based on open and well known standards15 Physical to Virtual internetworking Multi-hypervisor connectivity and integration Multi-tenant Cloud environments HA cluster
15、s across failure domains Dynamic growth Dynamic resource management16VXLAN Packet Details17VXLAN is a MAC-in-IP encapsulation18VXLAN Header is a 8 Byte field comprising of:(a)Flags (8 Bits) (b)VxLAN Network Identifier (VNI) (24 Bits) (c)Reserved (24 & 8 Bits) Always set to zero. Reserved (24 &am
16、p; 8 Bits) Always set to zero. Flags (8 Bits) I flag is set to 1 for a valid VxLAN Network ID (VNI). The remaining 7 bits (designated R) are reserved fields and set to zero. VxLAN Network Identifier (VNI) (24 Bits) Used for identification of the individual VxLAN overlay network on which the communic
17、ating VMs are situated. VMs in different VxLAN overlay networks cannot communicate. 19VXLAN Terminology20VXLAN SegmentsSoftware VTEPHardware VTEPVTEP1IP FabricSpine TierLeaf TierA 1B 1A2B2Bare Metal ServersBare Metal Storage HYPERVISOR 1HYPERVISOR 2VTEP2VTEP3VTEP4VTIVXLAN GatewayVTIVXLAN 10001 VXLAN
18、 1000221VNIB2VTEP 4A210.100.1.0/2410.100.2.0/24.10.11.2.3VXLAN 10001VXLAN 10002.10.2VARP Default Gateway:10.100.1.1VARP Default Gateway:10.100.2.1ExternalHostDataCenterNetworkB1A1Bare Metal StorageBare Metal ServersVTEP 1VTEP 3VTEP 1VXLAN SegmentVXLAN SegmentVARP Default Gateway:10.100.1.1VARP Defau
19、lt Gateway:10.100.2.1.1.1.1.122 VTEP: VXLAN Tunnel End Point- VXLAN encapsulation and decapsulation happens at the VTEP VXLAN Gateway - A device which bridges traffic from VXLAN and non-VXLAN environments. - VXLAN gateways allow for physical and non virtualized devices to communicate with VXLAN netw
20、orks- A VXLAN gateway can be either a hardware or software device VNI: Virtual Network Identifier - a 24-bit number is also called the VXLAN segment ID. The system uses the VNI, along with the VLAN ID, to identify the appropriate tunnel. VXLAN Header is an 8-byte header that contains the 24-bit VNI
21、value. It lives in between the UDP header and the inner MAC frame being carried over the VTI. VTI: VTEP Tunnel Interface - a switchport linked to a UDP socket that can be shared between many VLANs. Packets bridged through a vlan into the VTI are sent out the UDP socket with a VXLAN header including
22、a VNI. The socket is bound to a fixed local port, but is not connected to any particular destination port or IP address; logically, we use sendto() (not send() to transmit VXLAN-encapsulated frames on the socket. Packets arriving on the VTI (via the UDP socket, based on their UDP destination port) a
23、re demultiplexed into a VLAN for bridging. A 24-bit VNI within the packet determines which VLAN the packet is mapped to for bridging. VXLAN Segment - is a Layer 2 overlay network over which VMs communicate. Only VMs within the same VXLAN segment can communicate with each other.23VXLAN Visibility24Fu
24、ll physical to virtual visibilityNetwork audit to ensure reachabilityAutomated provisioningWorkflow without finger pointingOther awesome capabilities25PhysicalPhysicalVirtualizationvmTracerVMware NSXVMware NSXHypervisorVTEPVTEPVTEPVTEPVTEPVTEPVTEPVTEP Rapidly correlate vlan to VNI switch5#:show vmtr
25、acer vxlan interface Ethernet48Ethernet48: Name VLANvWire NetworkMulticast-Exchange5Corp 172.20.20.0239.20.20.0 Apache 6web182.10.0.0220.10.10.0MySQL 7ERP172.20.30.0239.20.30.0 view VNIs across the data center from the CLIswitch9#:show vmtracer vxlan all7150s R1: Ethernet 48:esx1/vwTest/dvUplink 1vW
26、ire:Corp - VLAN:5vWire:ERP - VLAN:77150s R2: Ethernet 40:esx2/vwTest/dvUplink 1vWire:Corp - VLAN:5vWire:web - VLAN:626OVSDBVNI, VXLAN, VNI IDVM- OskiVNI - CalBearsNew VNI - CalBearsMulticast Group - 224.0.14.13VNI ID - 650782Interface Ethernet 24 VXLAN VTEP VNI CalBearsInterface Loopback0 VXLAN VTEP
27、 Gateway VNI Calbears IP Address 204.181.40.1/24-NetworkNSX Controller27AubieWarEaglevshieldvm-tigerVNI Test: 224.0.0.12spine0leaf1leaf2esx10esx11spine0: show vmtracer vxlanVNI-Name VNI#VTEPsLearning Mcast GroupStatus Subnet Auburn 5096 4 Flood224.0.1.95 Up 204.181.40.0/24 foo 15893425 5 Flood224.0.4.84 Up 128.218.56.0/24 bar 65456 45 Flood224.5.1.92 Down 192.168.10.0/20VNI Name: AuburnVNI Segment ID: 5096 VTEPType Status Inside Outside Learning Mcast Grp PIM-RP Switch Port
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 高考地理一轮复习第十六章区际联系与区域协调发展第二节资源跨区域调配课件
- 自建房建筑安全合同(2篇)
- 海尔净水 课件
- 西京学院《影视广告》2022-2023学年第一学期期末试卷
- 初三(4)班月考动员
- 幼儿园小班歌唱活动《表情歌》教案
- 第二节国民党政府处在全民的包围中
- 西华师范大学《中国地理》2021-2022学年第一学期期末试卷
- 高考地理一轮复习第三章地球上的大气及其运动第一节大气的组成和垂直分层及大气受热过程课件
- 西华师范大学《写意花鸟画》2023-2024学年第一学期期末试卷
- xx学校未成年人性教育工作方案
- 什么是美术作品 课件-2024-2025学年高中美术湘美版(2019)美术鉴赏
- 2024-2030年组氨酸行业市场现状供需分析及投资评估规划分析研究报告
- 教育信息化教学资源建设规划
- 职业卫生技术服务机构检测人员考试真题题库
- 上海市交大附中附属嘉定德富中学2024-2025学年九年级上学期期中考数学卷
- 屠宰场食品安全管理制度
- 部编版(2024秋)语文一年级上册 6 .影子课件
- 2024秋期国家开放大学专科《刑事诉讼法学》一平台在线形考(形考任务一至五)试题及答案
- 2025届新高考语文热点冲刺复习议论文开头结尾
- 新版高中物理必做实验目录及器材-(电子版)
评论
0/150
提交评论