




版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
创新云解决方案2OpenStack——
DeliveringAgilityWithAutomation&applicationcentric3WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary4Avoidsvendorlock-in•••Opensourcewithmorethan180vendorscontributingRapidbuild-outofPublicorPrivatecloudsEasilycustomizablebyInternalSoftwareteamsReadyformission-criticalprivate/publicclouds•8thmajorrelease–Provensoftware•MarketMomentumsComcastIntelCERNNASABloombergBestBuyPayPalHubSpotOthersHighCiscoContribution••CiscoCloudCTOisVice-chairofboardLewTuckerSupportforCisco’sentireCloudportfolio(UCS&Nexus)SvcsUDCCIN•CiscoAcceleratingInnovation(e.g.ExtendingSDNtoCloud…)5OpenStackDistribution&SupportSoftware&SupportSystemIntegratorsSystems/ITAppliancesLayeredonOpenStack(PaaS&Multi-CloudMgmt)ManagedServices6OpenStackDistribution&SupportSoftware&SupportSystemIntegratorsSystems/ITAppliancesLayeredonOpenStack(PaaS&Multi-CloudMgmt)ManagedServices7解决应用部署的复杂性APPOSAPPOSAPPOSAPPOSAPPLICATIONSAPPOSAPPOSAPPOSAPPOSManysystemstolearn,highcomplexity,highcostOpenStackCloudServicesInfrastructurePhysicalServersStorageSystemsNetworks8NovaComputeSwiftStorageNEUTRONNETWORKINGHorizonWebInterfaceHeatOrchestrationGlanceImageKeystoneSecurity9NetworkService(Neutron)APIAPIExtensionsNetworkServiceNetworkabstractiondefinitionandmanagementNoactualimplementationofabstractionPlug-InAPIVendor/UserPlug-InImplementationofabstractionsVirtualorphysicalExtendedAPIsCiscoPlug-InsNX-OS(VLANs),LinuxBridgeOVS+GRE,VxLANNexus1000v(VLAN,VxLAN,OVS)CiscoONE/APICController10WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary11WANEdge/DCICoreAggregation/AccessServicesComputeStorage12Spine新的架构变化:....ScaleOutCore•••计算虚拟化网状的流量模型交换矩阵横向扩展Leaf挑战:ServersEdgeRoutersvSwitchVMVMVirtualAccessLayerVPNs/PublicInternet••••••虚拟化主机的部署VM移动性网络架构scale-out扩展性地址规划和路由寻址的复杂度业务配置和开通的复杂度故障诊断的复杂度13Spine..ScaleOutCoreLeaf..EdgeRoutersServersvSwitchvSwitchVPNs/PublicInternetVMVMVMVMVirtualAccessLayerVMVM14Dev/TestDesignNewReqmts.ApplicationLifecycleKeyMetrics•Performance•Availability•SecurityDeploy•Layout&DescribeDependenciesOperateResolve•Slowresponse•Servicesnotreachable•Scalelimits•CyberthreatsMonitoringDiagnostics•Application-specificconnectivity•InstantiateL4-L7services•ProvisionapplicationcomponentsInfrastructureBring-up&ManagementConnectivityConfiguration•CertifyandTest•FaultManagementComputeFabricStorage15VMVMVMVMLogicalcontainersforeachapplicationinamulti-tenantcloudPlatformsforbuildingscalableappsAPI-drivenOpenCloudPlatformVMVMVMScalableServices(ELB,NoSQL,Bus)PaaSEnvironmentsOpenStackCompute(Nova)OpenStackNetworking(Quantum)OpenStackStorage(Swift)ProgrammableInfrastructurePlatformAPIsaonePKControllersandAgentsVirtualOverlaysNexus1000VVXLAN/LISPNetworkServicesFirewall,etc.ONEController(OpenFlow,onePK)16OpenDaylightProjects:•Controller•YangTools•GUI•IntegrationTesting•VTN•OpenDove•AffinityManagementService•LISPMappingService•Defense4All•BGP-LS/PCEPPlugin•OpenFlowSBPlugin•OVSDBPlugin•SNMP4SDN•OpenStack•OpenFlowProtocol•CiscoOnePK(*)17ServiceSetDataPathPolicyRoutingElementDiscoveryUtilityDeveloperDescriptionProvidespacketdeliveryservicetoapplication:Copy,Punt,InjectProvidesfiltering(NBAR,ACL),classification(Class-maps,Policy-maps),actions(Marking,Policing,Queuing,Copy,Punt)andapplyingpoliciestointerfacesonnetworkelementsReadRIBroutes,add/removeroutes,receiveRIBnotificationsGetelementproperties,CPU/memorystatistics,networkinterfaces,elementandinterfaceeventsL2topologyandlocalservicediscoverySyslogeventsnotification,Pathtracingcapabilities(ingress/egressandinterfacestats,next-hopinfo,etc.)Debugcapability,CLIextensionwhichallowsapplicationtoextend/integrateapplication’sCLIswithnetworkelement18ServiceSetDataPathPolicyRoutingElementDiscoveryUtilityDeveloperDescriptionProvidespacketdeliveryservicetoapplication:Copy,Punt,InjectProvidesfiltering(NBAR,ACL),classification(Class-maps,Policy-maps),actions(Marking,Policing,Queuing,Copy,Punt)andapplyingpoliciestointerfacesonnetworkelementsReadRIBroutes,add/removeroutes,receiveRIBnotificationsGetelementproperties,CPU/memorystatistics,networkinterfaces,elementandinterfaceeventsL2topologyandlocalservicediscoverySyslogeventsnotification,Pathtracingcapabilities(ingress/egressandinterfacestats,next-hopinfo,etc.)Debugcapability,CLIextensionwhichallowsapplicationtoextend/integrateapplication’sCLIswithnetworkelement19OpenStackNeutronNeutronplugin•OpenDaylightexposesasinglecommonOpenStackServiceNorthbound•APIexposedmatchesNeutronAPIprecisely••supportsmultipleimplementationsofNeutronnetworksinOpenDaylightOpenDaylightAPIs(REST)NeutronServiceOpenDaylightOpenStackNeutronPluginlargelypassesthrough••simplifiesOpenStackpluginpushescomplexitytoOpenDaylightVTNProviderDOVEProviderOVSProviderOpenDaylight20OpenStackNeutronOpenPlug-InsApplicationPoliciesQoSSecurityAvailabilityScaleNetworkControllers(APIC,PNSC,XNC/OpenDaylight,…)FirewallWAASLoadBalancerRouterSwitchOpFlexAgentACIOVSExtensionOF/OnePKAgentWebAppVirtualAppliance(NFV)VirtualNetworkPhysicalHardwareAutomaticallyCreate,Deploy,Manage,Modify,TearDownAcrossTHOUSANDSofNetworkNodes21WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary22•物理网络设备Nexusswitches(vlans/SVI/etc.)onePKdevice-levelintegrationDFA/ACIFabric(spline-leaf)•虚拟网络设备N1000v/VXLANvirtualoverlaymanagementOVS/GRE•SDN控制器的集成CiscoONEcontroller(OpenDaylight)andAPIC(ACI)提供的北向API•网络服务的集成••••针对NFV应用的配置管理工具:ESCServicechainingvPE虚拟化Overlay(ExternalName:ESP)VNMCfornetworkservicecontainers•自动配置管理•CiscoOpenStackInstaller(puppetautomation,HA,UCSmanagerintegration)23•自动化的VLAN配置ConfigureVLANsontheNexusswitch•三层网关的配置MapNexusSwitchVirtualInterface(SVI)totenantVLANScalabilitywithTopofRack(ToR)NexusasdefaultLayer3GatewayEliminatesconfigurationandbottleneckofhost-basedsoftwareL3forwardingAgent•vPC的配置VirtualPortChannel(vPC)forHighAvailability(HA)andlinkoptimizationtomultipleNexusswitches•物理和虚拟化的网络拓扑Performancebenefitsofhardware-basedToRswitch(Nexus3000,5000,6000,7000)Flexibilityofsoftware-definedNetworkingwithNexus1000V24ManagementNetworkdhcp-agent•FlatNetworkingTraffic•VLANTrafficacrossNodes•GREorVXLANtunnelsacrossNodes*-plugin-agentnova-computenova-computenova-computenova-compute*-plugin-agent*-plugin-agent*-plugin-agentnova-apinova-schedulerneutron-serverkeystoneL2B/OVSL2B/OVSNetworkNodeComputeNodeComputeNodeComputeNodeComputeNodemysql,rabbit...NexusPIDataNetwork•SVIconfiguredonNexusforL3forwardingandexternalGateway•Removesbottleneckofgenericserver-basednetworknodewithLinuxIPtablesExternalNetworkInternetCloudControllerNodeAPINetworkAPINetworkistypicallyL3routabletoenablepublicaccess(Controllersisbeyondofcomputecluster)25ManagementNetwork••NetworkNodefunctionasL3routerandconnectwithexternalphysicalnetworkwithvlanFoundationofVirtualServicesArchitecture:•vPathServiceInsertion/Chaining•VxLANOverlayNetworking•CSR,FW,VPN,Loadbalancingetcdhcp-agentdhcp-agentdhcp-agent*-plugin-agent*-plugin-agent*-plugin-agentl3-agentl3-agentnova-computenova-computenova-computenova-compute*-plugin-agent*-plugin-agent*-plugin-agentnova-apinova-schedulerneutron-serverkeystonemysql,rabbit...VSM/N1000VNetworkNodeNetworkNodeNetworkNodeComputeNodeComputeNodeComputeNodeComputeNodeDataNetworkAPINetworkCloudControllerNodeExternalNetworkInternetAPINetworkistypicallyroutabletoenablepublicaccess26•Enablesfullyautomatedcompute,storageandnetworkControllerNoderesourceorchestration•SupportsinceGrizzlyOpenStackrelease•LeveragesNX-OSNetConf-XMLprogrammaticinterfaceCommunicationwithNeuxsSwitchusingNetconfOpenStackNeutronServerCiscoNexusPluginNexusInterfaceDriverOVSPluginVLAN100eth0eth0VLAN200eth0VLAN100eth0VLAN200Communicationwithpluginagentsonhostsbr-eth0br-eth0br-eth0br-intTenantA–VLAN100VM210.0.0.4br-eth0br-intTenantB–VLAN200VM210.0.1.4br-intTenantA–VLAN100VM110.0.0.3br-intTenantB–VLAN200VM110.0.1.3Host1Host2Host3Host427DCNM(CPoM)ConfigurationProfiles①Segment-ID,IPinformation(GWY,Mask,Org,etc)OrchestratorLogicalOrgNetworkOrchestrationConfigurationQuerytheDCNMDownloadNetworkDB(Segment-IDaskey)③Segment-IDfromVLANtheIDtothevSwitchN1KV/OVSVDPControl
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 保安人员基础知识培训
- 2024年CFA重要章节与试题及答案
- 2024年特许金融分析师考试新变化及答案
- 八年级上册《分式的加减》课件与练习
- CBT-I治疗失眠的疗效分析
- 云南省文山壮族苗族自治州砚山县第一中学2024-2025学年高一下学期2月月考历史试题(含解析)
- 施工安全教育
- 人教版历史:古代埃及
- 2024年特许金融分析师考试学术研究试题及答案
- 2024年特许金融分析师考试高级题型试题及答案
- 养生学中华药膳
- 【典型案例】马头琴的传说
- 2022年全国交通运输行业城市轨道交通列车司机职业技能大赛参考题库
- 3d3s门式钢架 入门教程
- 储能技术-氢储能
- 《看看我们的地球》阅读测试题及答案
- 2023年中央宣传部直属单位招考聘用88人模拟预测试卷【共500题含答案解析】
- 锅炉炉管“四管泄漏”的原因
- 胃结石护理查房课件
- GB/T 18337.1-2001生态公益林建设导则
- 院感手卫生培训课件
评论
0/150
提交评论