




版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
创新云解决方案2OpenStack——
DeliveringAgilityWithAutomation&applicationcentric3WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary4Avoidsvendorlock-in•••Opensourcewithmorethan180vendorscontributingRapidbuild-outofPublicorPrivatecloudsEasilycustomizablebyInternalSoftwareteamsReadyformission-criticalprivate/publicclouds•8thmajorrelease–Provensoftware•MarketMomentumsComcastIntelCERNNASABloombergBestBuyPayPalHubSpotOthersHighCiscoContribution••CiscoCloudCTOisVice-chairofboardLewTuckerSupportforCisco’sentireCloudportfolio(UCS&Nexus)SvcsUDCCIN•CiscoAcceleratingInnovation(e.g.ExtendingSDNtoCloud…)5OpenStackDistribution&SupportSoftware&SupportSystemIntegratorsSystems/ITAppliancesLayeredonOpenStack(PaaS&Multi-CloudMgmt)ManagedServices6OpenStackDistribution&SupportSoftware&SupportSystemIntegratorsSystems/ITAppliancesLayeredonOpenStack(PaaS&Multi-CloudMgmt)ManagedServices7解决应用部署的复杂性APPOSAPPOSAPPOSAPPOSAPPLICATIONSAPPOSAPPOSAPPOSAPPOSManysystemstolearn,highcomplexity,highcostOpenStackCloudServicesInfrastructurePhysicalServersStorageSystemsNetworks8NovaComputeSwiftStorageNEUTRONNETWORKINGHorizonWebInterfaceHeatOrchestrationGlanceImageKeystoneSecurity9NetworkService(Neutron)APIAPIExtensionsNetworkServiceNetworkabstractiondefinitionandmanagementNoactualimplementationofabstractionPlug-InAPIVendor/UserPlug-InImplementationofabstractionsVirtualorphysicalExtendedAPIsCiscoPlug-InsNX-OS(VLANs),LinuxBridgeOVS+GRE,VxLANNexus1000v(VLAN,VxLAN,OVS)CiscoONE/APICController10WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary11WANEdge/DCICoreAggregation/AccessServicesComputeStorage12Spine新的架构变化:....ScaleOutCore•••计算虚拟化网状的流量模型交换矩阵横向扩展Leaf挑战:ServersEdgeRoutersvSwitchVMVMVirtualAccessLayerVPNs/PublicInternet••••••虚拟化主机的部署VM移动性网络架构scale-out扩展性地址规划和路由寻址的复杂度业务配置和开通的复杂度故障诊断的复杂度13Spine..ScaleOutCoreLeaf..EdgeRoutersServersvSwitchvSwitchVPNs/PublicInternetVMVMVMVMVirtualAccessLayerVMVM14Dev/TestDesignNewReqmts.ApplicationLifecycleKeyMetrics•Performance•Availability•SecurityDeploy•Layout&DescribeDependenciesOperateResolve•Slowresponse•Servicesnotreachable•Scalelimits•CyberthreatsMonitoringDiagnostics•Application-specificconnectivity•InstantiateL4-L7services•ProvisionapplicationcomponentsInfrastructureBring-up&ManagementConnectivityConfiguration•CertifyandTest•FaultManagementComputeFabricStorage15VMVMVMVMLogicalcontainersforeachapplicationinamulti-tenantcloudPlatformsforbuildingscalableappsAPI-drivenOpenCloudPlatformVMVMVMScalableServices(ELB,NoSQL,Bus)PaaSEnvironmentsOpenStackCompute(Nova)OpenStackNetworking(Quantum)OpenStackStorage(Swift)ProgrammableInfrastructurePlatformAPIsaonePKControllersandAgentsVirtualOverlaysNexus1000VVXLAN/LISPNetworkServicesFirewall,etc.ONEController(OpenFlow,onePK)16OpenDaylightProjects:•Controller•YangTools•GUI•IntegrationTesting•VTN•OpenDove•AffinityManagementService•LISPMappingService•Defense4All•BGP-LS/PCEPPlugin•OpenFlowSBPlugin•OVSDBPlugin•SNMP4SDN•OpenStack•OpenFlowProtocol•CiscoOnePK(*)17ServiceSetDataPathPolicyRoutingElementDiscoveryUtilityDeveloperDescriptionProvidespacketdeliveryservicetoapplication:Copy,Punt,InjectProvidesfiltering(NBAR,ACL),classification(Class-maps,Policy-maps),actions(Marking,Policing,Queuing,Copy,Punt)andapplyingpoliciestointerfacesonnetworkelementsReadRIBroutes,add/removeroutes,receiveRIBnotificationsGetelementproperties,CPU/memorystatistics,networkinterfaces,elementandinterfaceeventsL2topologyandlocalservicediscoverySyslogeventsnotification,Pathtracingcapabilities(ingress/egressandinterfacestats,next-hopinfo,etc.)Debugcapability,CLIextensionwhichallowsapplicationtoextend/integrateapplication’sCLIswithnetworkelement18ServiceSetDataPathPolicyRoutingElementDiscoveryUtilityDeveloperDescriptionProvidespacketdeliveryservicetoapplication:Copy,Punt,InjectProvidesfiltering(NBAR,ACL),classification(Class-maps,Policy-maps),actions(Marking,Policing,Queuing,Copy,Punt)andapplyingpoliciestointerfacesonnetworkelementsReadRIBroutes,add/removeroutes,receiveRIBnotificationsGetelementproperties,CPU/memorystatistics,networkinterfaces,elementandinterfaceeventsL2topologyandlocalservicediscoverySyslogeventsnotification,Pathtracingcapabilities(ingress/egressandinterfacestats,next-hopinfo,etc.)Debugcapability,CLIextensionwhichallowsapplicationtoextend/integrateapplication’sCLIswithnetworkelement19OpenStackNeutronNeutronplugin•OpenDaylightexposesasinglecommonOpenStackServiceNorthbound•APIexposedmatchesNeutronAPIprecisely••supportsmultipleimplementationsofNeutronnetworksinOpenDaylightOpenDaylightAPIs(REST)NeutronServiceOpenDaylightOpenStackNeutronPluginlargelypassesthrough••simplifiesOpenStackpluginpushescomplexitytoOpenDaylightVTNProviderDOVEProviderOVSProviderOpenDaylight20OpenStackNeutronOpenPlug-InsApplicationPoliciesQoSSecurityAvailabilityScaleNetworkControllers(APIC,PNSC,XNC/OpenDaylight,…)FirewallWAASLoadBalancerRouterSwitchOpFlexAgentACIOVSExtensionOF/OnePKAgentWebAppVirtualAppliance(NFV)VirtualNetworkPhysicalHardwareAutomaticallyCreate,Deploy,Manage,Modify,TearDownAcrossTHOUSANDSofNetworkNodes21WhyOpenStackChallengesinDCandSDNOpenStack@CiscoSummary22•物理网络设备Nexusswitches(vlans/SVI/etc.)onePKdevice-levelintegrationDFA/ACIFabric(spline-leaf)•虚拟网络设备N1000v/VXLANvirtualoverlaymanagementOVS/GRE•SDN控制器的集成CiscoONEcontroller(OpenDaylight)andAPIC(ACI)提供的北向API•网络服务的集成••••针对NFV应用的配置管理工具:ESCServicechainingvPE虚拟化Overlay(ExternalName:ESP)VNMCfornetworkservicecontainers•自动配置管理•CiscoOpenStackInstaller(puppetautomation,HA,UCSmanagerintegration)23•自动化的VLAN配置ConfigureVLANsontheNexusswitch•三层网关的配置MapNexusSwitchVirtualInterface(SVI)totenantVLANScalabilitywithTopofRack(ToR)NexusasdefaultLayer3GatewayEliminatesconfigurationandbottleneckofhost-basedsoftwareL3forwardingAgent•vPC的配置VirtualPortChannel(vPC)forHighAvailability(HA)andlinkoptimizationtomultipleNexusswitches•物理和虚拟化的网络拓扑Performancebenefitsofhardware-basedToRswitch(Nexus3000,5000,6000,7000)Flexibilityofsoftware-definedNetworkingwithNexus1000V24ManagementNetworkdhcp-agent•FlatNetworkingTraffic•VLANTrafficacrossNodes•GREorVXLANtunnelsacrossNodes*-plugin-agentnova-computenova-computenova-computenova-compute*-plugin-agent*-plugin-agent*-plugin-agentnova-apinova-schedulerneutron-serverkeystoneL2B/OVSL2B/OVSNetworkNodeComputeNodeComputeNodeComputeNodeComputeNodemysql,rabbit...NexusPIDataNetwork•SVIconfiguredonNexusforL3forwardingandexternalGateway•Removesbottleneckofgenericserver-basednetworknodewithLinuxIPtablesExternalNetworkInternetCloudControllerNodeAPINetworkAPINetworkistypicallyL3routabletoenablepublicaccess(Controllersisbeyondofcomputecluster)25ManagementNetwork••NetworkNodefunctionasL3routerandconnectwithexternalphysicalnetworkwithvlanFoundationofVirtualServicesArchitecture:•vPathServiceInsertion/Chaining•VxLANOverlayNetworking•CSR,FW,VPN,Loadbalancingetcdhcp-agentdhcp-agentdhcp-agent*-plugin-agent*-plugin-agent*-plugin-agentl3-agentl3-agentnova-computenova-computenova-computenova-compute*-plugin-agent*-plugin-agent*-plugin-agentnova-apinova-schedulerneutron-serverkeystonemysql,rabbit...VSM/N1000VNetworkNodeNetworkNodeNetworkNodeComputeNodeComputeNodeComputeNodeComputeNodeDataNetworkAPINetworkCloudControllerNodeExternalNetworkInternetAPINetworkistypicallyroutabletoenablepublicaccess26•Enablesfullyautomatedcompute,storageandnetworkControllerNoderesourceorchestration•SupportsinceGrizzlyOpenStackrelease•LeveragesNX-OSNetConf-XMLprogrammaticinterfaceCommunicationwithNeuxsSwitchusingNetconfOpenStackNeutronServerCiscoNexusPluginNexusInterfaceDriverOVSPluginVLAN100eth0eth0VLAN200eth0VLAN100eth0VLAN200Communicationwithpluginagentsonhostsbr-eth0br-eth0br-eth0br-intTenantA–VLAN100VM210.0.0.4br-eth0br-intTenantB–VLAN200VM210.0.1.4br-intTenantA–VLAN100VM110.0.0.3br-intTenantB–VLAN200VM110.0.1.3Host1Host2Host3Host427DCNM(CPoM)ConfigurationProfiles①Segment-ID,IPinformation(GWY,Mask,Org,etc)OrchestratorLogicalOrgNetworkOrchestrationConfigurationQuerytheDCNMDownloadNetworkDB(Segment-IDaskey)③Segment-IDfromVLANtheIDtothevSwitchN1KV/OVSVDPControl
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 抖音电商行业认知
- 韶关学院《社区矫正理论与实践》2023-2024学年第二学期期末试卷
- 抖音引流培训
- 汽车制造车间能源消耗标准
- 公司绩效合同标准文本
- 合同管理的内容及意义(3篇)
- 买无证车库合同标准文本
- 《你在为谁工作》心得体会3篇
- 2025年个体股份合同模板
- 乡村种菜出租合同范例
- 超市产品质量与风险防控培训
- 2024春苏教版《亮点给力大试卷》数学六年级下册(全册有答案)
- 中考英语语法填空总复习-教学课件(共22张PPT)
- 机场安检防爆培训课件模板
- 一到六年级语文词语表人教版
- 2024年浙江杭州地铁运营分公司招聘笔试参考题库含答案解析
- 2024年九省联考新高考 数学试卷(含答案解析)
- 学生营养膳食
- 《质量检验培训》课件
- 2023年高考真题-文综政治(新课标卷)含解析
- 2023版设备管理体系标准
评论
0/150
提交评论