This document discusses the benefits of software-defined networking (SDN) for creating virtual networks in a cloud computing environment. It outlines how SDN allows for shared, standardized infrastructure with virtual networks that provide isolation between different logical environments like development, testing, and production. SDN enables full automation, flexibility, and efficiency compared to traditional dedicated physical networks or VLAN-based virtual networks. The document provides examples of how SDN overlays can be used to implement virtual networks and discusses eBay's implementation of SDN using Nicira NVP controllers with OpenStack.
Apresentações | Jantar Exclusivo Cisco e Netapp | 27 de Junho de 2012 | Spett...Softcorp
A Softcorp, em parceria com a NetApp e a Cisco, realizou um jantar especial sobre a tecnologia FlexPod™.
Durante o evento foi possível conhecer os benefícios da solução e tirar dúvidas técnicas, operacionais e consultivas com os especialistas das três empresas.
O momento também foi oportuno para trocar experiências com outros profissionais do setor.
Para descontrair, tivemos uma palestra com boas dicas sobre cortes de carne e os segredos do bom churrasqueiro para garantir o sucesso do churrasco.
What are the issues integration in integrating sensor nets and other distributed systems collecting and sharing real time data? How does RTI's Data Distribution Service address the integration needs without sacrificing the real-time collaboration constraints?
Networking is NOT Free: Lessons in Network DesignRandy Bias
An in-depth critique of the existing OpenStack networking approach, with a focus on how the Nova network controller is more of a hindrance than a help. Discusses the gap in Quantum's functionality required to close the gap, and alternative solutions. How can we make networking in OpenStack robust, high performance, and fault tolerant? What do typical large scale networks look like and what lessons can we learn from them? Is there an approach to networking we can take that is the same with a handful of servers as it is with hundreds of racks?
Apresentações | Jantar Exclusivo Cisco e Netapp | 27 de Junho de 2012 | Spett...Softcorp
A Softcorp, em parceria com a NetApp e a Cisco, realizou um jantar especial sobre a tecnologia FlexPod™.
Durante o evento foi possível conhecer os benefícios da solução e tirar dúvidas técnicas, operacionais e consultivas com os especialistas das três empresas.
O momento também foi oportuno para trocar experiências com outros profissionais do setor.
Para descontrair, tivemos uma palestra com boas dicas sobre cortes de carne e os segredos do bom churrasqueiro para garantir o sucesso do churrasco.
What are the issues integration in integrating sensor nets and other distributed systems collecting and sharing real time data? How does RTI's Data Distribution Service address the integration needs without sacrificing the real-time collaboration constraints?
Networking is NOT Free: Lessons in Network DesignRandy Bias
An in-depth critique of the existing OpenStack networking approach, with a focus on how the Nova network controller is more of a hindrance than a help. Discusses the gap in Quantum's functionality required to close the gap, and alternative solutions. How can we make networking in OpenStack robust, high performance, and fault tolerant? What do typical large scale networks look like and what lessons can we learn from them? Is there an approach to networking we can take that is the same with a handful of servers as it is with hundreds of racks?
Packet processing in the fast path involves looking up bit patterns and deciding on an actions at line rate. The complexity of these functions at Line Rate, have been traditionally handled by ASICs and NPUs. However with the availability of faster and cheaper CPUs and hardware/software accelerations, it is possible to move these functions onto commodity hardware. This tutorial will talk about the various building blocks available to speed up packet processing both hardware based e.g. SR-IOV, RDT, QAT, VMDq, VTD and software based e.g. DPDK, Fd.io/VPP, OVS etc and give hands on lab experience on DPDK and fd.io fast path look up with following sessions. 1: Introduction to Building blocks: Sujata Tibrewala
Solace Systems The Evolution of Messaging The Rise of the ApplianceIosif Itkin
Solace Systems The Evolution of Messaging The Rise of the Appliance
Clive Andrews
Mat Hobbis
Obninsk, 2 March, 2013
LSE The focus beyond Low Latency
EXTENT Trading Technology Trends & Quality Assurance
Nagios Conference 2012 - Andreas Ericsson - MerlinNagios
Andreas Ericsson's presentation on using Nagios with Merlin.
The presentation was given during the Nagios World Conference North America held Sept 25-28th, 2012 in Saint Paul, MN. For more information on the conference (including photos and videos), visit: http://go.nagios.com/nwcna
This talk includes a brief review of the Cloud Foundry Anniversary event on 4/11/2012, and then goes deeply into the idea of Cloud Foundry as the "linux of the cloud"
Jorg-Peter Elbers delivers presentation at IP Expo 2012 in London about how expanding OpenFlow SDN protocol beyond the data centre will lead to more efficient cloud networking environments and business innovation.
In this webinar, we will review all important information for sponsors packages, add-ons, venue details, and how to become a sponsor.
Webinar recording: https://youtu.be/kUjMTNoX6yM
A few quick points for those who may be attending an OpenStack Summit for the first time. We are excited to see you in Barcelona, Spain October 25-28, 2016.
An overview of the 1H2016 OpenStack Marketing Plan shared with the marketing community during our regular calls. Learn more at https://wiki.openstack.org/wiki/Governance/Foundation/Marketing#Open_Marketing_Meetings_2016
The Foundation marketing team put together a high level overview of 2H 2015 plans in order to get input from the marketing community and provide more information on how marketers can take advantage of the work, as well as get involved and contribute.
This is a content overview of the important information and details for sponsors of the upcoming OpenStack Summit in Tokyo, Japan taking place October 27 - 30.
You can watch a recording of the webinar here: https://openstack.webex.com/openstack/ldr.php?RCID=d48605b7ca9fdccd990ab20eb9334be8
OpenStack celebrates its fifth birthday, July 19, 2015, and this presentation provides an update on the community momentum, as well as what's next. #openstack5bday
At OpenStack Day CEE 2015, we discuss the latest user survey results, some real-world OpenStack case studies and how new users and cloud operators can get involved with the community.
2. Prod
Prod
QA DEV
PCI
Secure
DEV
QA QA DEV
Copyright eBay Inc. 2012 2
3. Any Application Anywhere
Dedicated physical environments cause fragmentation
Soft Cabling
Datacenter reconfiguration is costly and cannot be automated
Shared Standardized Infrastructure
Simplifies automation and improves supply chain efficiency
Virtualize everything
White space between applications and infrastructure helps agility
Automate everything
Automation helps agility and efficiency
Copyright eBay Inc. 2012 3
4. • Translation of physical environment properties into configurations
• Assigned to projects (logical environments), drives scheduling and policies
• For example, network selection
Production DEV
Obligations Restrictions Capabilities Obligations Restrictions Capabilities
QA Approved Builds No Login Access Core DB access Certified OS versions Limited Prod Full root
Access
Prod OS version No Corp Access 24/7 Incident Mgt
Limited QA Access
Monitoring No QA Access Site traffic Access
No site Traffic Filtered Internet
External
Obligations Restrictions Capabilities
No Prod Access Private DB
Certified OS Versions No Corp Access 24/7 Incident Mgt
Monitoring No QA Access Site traffic Access
Copyright eBay Inc. 2012 4
5. Core
4 spines
(Nx10Gb)
Spine
N leaves
(48x1Gb)
Leaves
48 -> N “½ racks”
M servers
2x1Gb
Flat L3 (all switches are routers too)
Line rate from any server to any server (oversubscription = 48/40)
OSPF/ECMP to advertise routes
Copyright eBay Inc. 2012 5
6. Dedicated Network VLAN Based
VLAN trunk
vlan 1
Prod
QA vlan n
Production QA
- physical network build out + Physical isolation - Limited scale (n = 4096) + L2 isolation
- Fragmentation + fool proof - Large fault domain (STP) + somewhat soft Cabling
- coarse grained isolation
Copyright eBay Inc. 2012 6
7. Security Groups or Virtual Firewall
+ no/minimal infrastructure requirement - Difficult to combine provider policies and user policies
+ good for user policies (ip tables) - Management of rules
- Impact of group membership modification
- Aggregation/summarization difficult/impossible
Copyright eBay Inc. 2012 7
8. Virtual Networks using Software Defined Networks
Overlay 1
Prod
Other
Networks
QA
Overlay n
Cloud Fabric
+ L2 isolation + Can complement L3 isolation
+ compatible with large scale networks + large number of networks (n>4096)
+ can be fully automated - Tunnel overhead
+ firewall can be interposed between - L2 size limited by # of tunnels and their mgt
virtual networks
Copyright eBay Inc. 2012 8
9. Traditional SDN
The The
Network Network
Network protocols
Network protocols
Routing/switching engine Routing/switching engine
controls The Switch/Router
controls
Logic
Logic API
The Switch/Router Controller
Copyright eBay Inc. 2012 9
11. A logical environment defined as a class of service on top of shared infrastructure
Self Service VM for developers.
Access must be similar to their desktops (access to QA, Corp, …)
Should allow collaboration
Implemented as a set of L2 networks (/24) with in a given L3 (/20)
No private networks : all developers on same shared networks
No private IP space: traffic is routed within core, no need for floating Ips
Isolated from infrastructure
Overlay network using OpenVswitch / STT tunneling
Nicira NVP controllers integrated with Quantum (Essex)
Routed out through perimeter firewall
Copyright eBay Inc. 2012 11
12. From 10.9.1.0/24 default->10.9.0.1 10.9.0.0/20 ->10.9.0.10
From 10.9.2.0/24 default->10.9.0.1
Standby Gateway
Eth1/vlan 1
Dev Cloud : 10.9.0.0/20
Eth0/vlan 2 Corp
10.9.1.0/24 10.9.1.1 N
gtw-xxxx
trunk
gtw-xxxx 10.9.0.10 10.9.0.1
Internet
10.9.2.0/24 N
M
10.9.2.1
gtw-xxxx
QA
vswitch M Eth1/vlan 1
Eth0/vlan 2
vswitch
Nicira
default->10.9.2.1 Nicira Nicira
Active Gateway Service Nicira
Service controllers
Nodes controllers
Nodes
vif
K C Hypervisor S A Q
N:Nova-network+dnsmasq K:Ubuntu + KVM
vswitch C:Nova-compute A:Nova-api
S:Nova-scheduler Q:Quantum
M:Metadata
Infrastructure/Internal Virtual network
Infrastructure/External
Copyright eBay Inc. 2012 12
13. Developer Admin
Create network
(project = admin, Create routes
eBay Cloud Portal Cidr=10.9.x.0/24)
Create instance
1 (COS,OS, size)
Nova-manage Gateway
2 Get Free Networks
eBay IaaS
Create DNS Boot Instance Nova Network
(A,PTR) (Image ID,Flavor, NIC)
Create
4 3 gtw-xxxx
DNS Nova API Quantum
nova
Management db
Create Create
Nova Scheduler port lswitch
13
Get IP
Create port Nicira Controller
Nova Compute
Copyright eBay Inc. 2012
15. Perimeter firewalls configured once, not No capacity/policy based assignment of
dependent on the instance networks – had to be implemented outside.
creation/deletion/movement Moving it to nova scheduler.
Network are pre-created using nova- One network flavor supported in Essex.
manage, good for provider networks
Cannot have, e.g., one gateway per
network, with different behavior (dhcp)
Can be extended with other COS using same
pattern
Scale out requires bigger links out of the
gateway, or more gateways
Stability of both Nicira NVP and Openstack +
Ubuntu + KVM
Upset the separation of concern
Looking forward to new features in Folsom – requirement: Netsec + Networking + Sys
Quantum v2 Admins in same box = ‘interesting’
15
16. New classes of service
External : private networks + VIP and Floating IP on the Internet
Production : Bridged network
Scale out
80 today, going to a lot more
More gateways/10Gb
Folsom upgrade
L3 Routers
Load Balancers
Cleaner Openstack integration
Network Allocation
DNS configuration
AuthN/AuthZ
16
17. We are Hiring !
http://www.ebaycareers.com/
Copyright eBay Inc. 2012 17
Editor's Notes
Add a title to all presentations. A subtitle is optional.