This document summarizes a presentation on enabling advanced connectivity services in OpenStack using software-defined WAN implementation. The presentation discusses Red Hat and Juniper Networks and how their products augment OpenStack Neutron networking with Contrail SDN to enable features like service chaining, analytics, and support for physical and virtual network functions. It also presents a case study of a tier 1 telco using Contrail and OpenStack to offer a network-as-a-service solution for multi-national enterprise customers.
5. 5
RED HAT: THE WORLD’S LEADING PROVIDER OF OPEN SOURCE,
ENTERPRISE I.T. SOLUTIONS
MORE THAN
90%of the
FORTUNE
500
RED HAT
use
PRODUCTS &
SOLUTIONS*
~10,000
EMPLOYEES
85
OFFICES
S&P
500COMPANY
NYSE
RHT35COUNTRIES
*Red Hat client data and Fortune 500 list, 2015
THE FIRST
$2
OPEN
SOURCE
COMPANY
IN THE WORLD
BILLION
Leading contributor across all the key open source community projects – Linux, KVM, OpenStack and OPNFV
6. 6
Juniper Today: An Innovator With Global Reach
TALENT INNOVATION FINANCIALS CUSTOMERS
• 9,500+ employees
and extensive partner
ecosystem
• 16 around-the-clock
technical support centers
globally
• 46 offices serving over
100 countries
• 20 years of innovation to
meet the evolving needs of
our customers
• Our global corporate
network includes over 1,400
Juniper Networks products
• Contrail recognized by
OpenStack community as
most commercially
deployed SDN controller in
the world
• $4.99B in revenue in 2016;
• Generated ~$1.1B of
operating cash flow in 2016
• ~$4B in cash and
investments as of December
2016
• The top 10 largest global
telecom companies; 13 of
top 14 largest U.S. cable
companies
• The top 10 social media
properties; 4 of top 5 largest
global search engines
• 17 of top 20 largest world
banks; 9 of top 12 largest
global financial exchanges
7. 7
Introducing OpenContrail
API driven à to enable AutomaNon
§ Implements OpenStack Neutron API,
Amazon EC2 VPC API, etc.
§ Offers APIs to apps/ orchestraNon
systems to configure & monitor the
system.
Built as a scalable, performant,
resilient, and carrier-grade network
placorm for Cloud infrastructure
§ Juniper’s open-source Cloud
Networking iniNaNve (Apache v2)
§ Built using standards-based protocols
for interoperability
Provides all components for network
virtualizaNon à Overlay networks for
§ virtual machines
§ Containers
§ BareMetals
§ MulN-Cloud
CONTRAIL IS …
Visit opencontrail.org for more information …
8. 8
Upstream First, From Communities To Enterprise
**
Contrail is provided by Juniper, all other products are from Red Hat
10. 10
Disruption In The Digital Economy
Data & Digital DisrupNon - hyper growth of traffic, flat revenue
Global CompeNNon – new players, new revenues – the
FANGs and BATs are eaNng the world
New Reality: Digital TransformaNon, Cloud & Sohware-Defined
Everything
12. 12
Why Transition To Cloud, NFV and SDN?... like the FANGs and BATs
Opportunity for accelerating TTM, reducing costs and optimizing operations
Faster
Time to Service Deployment
Code to production launch
Traditional Telco or Enterprise: 6-7 Months
Amazon: Few seconds
Every 11 seconds; Avg 10K or max 30K servers at
a time using continuous integration & deployment
Traditional Telco’s quote: “6-7 months per service; mostly manually”
Lower
Operating Expenses
Servers managed per admin
Traditional Telco or Enterprise: : < 100
Google: 1 per 15,000 srvrs
Operator DC: Each admin can manage upto ~100 servers à large headcount
Each admin can operate ~15,000 servers
Reduce
Operational Complexity
# of SKUs to manage
Google: 10 Configs
Traditional Telco or Enterprise: : 1,000’s
NSN: 1000’s of SKUs to manage à makes it overly complex
Google: ~10 shared hardware system bundles
13. 13
What is Network functions virtualization (NFV) ?
Virtualize mul,-vendor purpose-built and proprietary HW network func,ons onto commodity
hardware – with fast elas3c scalability and dynamic resource alloca3on
NFVMANAGEMENTAND
ORCHESTRATION(MANO)
14. 14
What is Software Defined Networking (SDN)?
Old world – closed, proprietary HW, monolithic switches/routers New world – Software-Defined, separated/centralized control
on COTS HW with easy programmability and automation
(Layers 1-3)
OperaNng
System & Control
Specialized Packet
Forwarding Hardware
F1 F2 Fn …
OperaNng
System & Control
Specialized Packet
Forwarding Hardware
F1 F2 Fn …
OperaNng
System & Control
Specialized Packet
Forwarding Hardware
F1 F2 Fn …
OperaNng
System & Control
Specialized Packet
Forwarding Hardware
F1 F2 Fn …
Network OperaNng System
Control FuncNons
Simple Packet Forwarding
COTS Hardware
Simple Packet Forwarding
COTS Hardware
Simple Packet Forwarding
COTS Hardware
Simple Packet Forwarding
COTS Hardware
15. 15
What is SDN (Use-cases)
M a n a g e m e n t , A n a l y t i c s , O p e r a t i o n s & O r c h e s t r a t i o n
S e c u r i t y & P o l i c i e s
C o n n e c t i v i t y
CPE
Remote
Branch Office Telco POPs
MulN-site DC / Private Cloud (VMs, BMS,
Containers, VNFs)
FIREWALL
VMs
Containers
IP Fabric
BMS
Private Cloud
(ITaaS)
Legacy (VMware, BMS) Interconnect
VMs & Container Netw.
MulN-DC Interconnect
Hybrid Cloud (Public Cloud Interconnect)
SaaS Clouds
IaaS / BMaaS
Public Cloud
NFV & Svc Ch.
(Mobility, etc.)
SDWAN
IOT / Connected
cars, etc.
Telco Cloud
Subnet
Blue
Subnet Green
VPC
…
Gateway
…
Public Cloud
Users
…
Custom or Enterprise Apps
…
18. 18
What Neutron may lack in certain large cloud environments
• “Core” and “Service” plugins provide many networking
funcNons, but may lack advanced features such as:
• Service Chaining (L2-Transparent, L3, Hybrid)
• PNF + VNF Service Chaining
• Dynamic rouNng (BGP/MPLS)
• Distributed Source Network Address TranslaNon (SNAT)
• Real-Nme and historical analyNcs
• Scalability
• Performance
• High Availability
• Cannot manage physical network devices (bare metal)
21. 21
How Contrail Networking Augments Neutron
• Built for scaling in large
production environments
• Able to handle large
number virtual networks
• Superior transactional
scale
• Improved server
performance over OVS
• Can handle large number
of transaction requests
• Designed to perform at
scale
• Supports ISSU for easier
management
• Supports inter-version
compatibility
• Multi-tenant VN micro-
segmentation
• Service chaining
• Advanced analytics
• Underlay visibility
• LBaaS and other services
• Easy to troubleshoot
SCALE PERFORMANCE HA RESILIENCE NETWORK FEATURES
Contrail Networking is industry leading in all 4 areas
22. 22
Contrail Networking Features
The image cannot be displayed. Your
computer may not have enough
memory to open the image, or the
image may have been corrupted.
Restart your computer, and then
open the file again. If the red x still
appears, you may have to delete the
image and then insert it again.
Rou9ng & Switching
(IPv4, v6)
Network Services
(IPAM, DNS, DHCP
SNAT, FIP, QoS, BGPaaS)
Load Balancing
(customizable ECMP,
LBaaS)
The image cannot be
displayed. Your
computer may not
have enough
memory to open the
image, or the image
may have been
corrupted. Restart
your computer, and
then open the file
again. If the red x
still appears, you
may have to delete
the image and then
insert it again.
Security & Policies
(Policy Enf.,Distributed
FW, Sec Grp, XMPP
Encryp.)
Gateway Services
(L2, L3, SoYware GW)
Rich Analy9cs
(Alerts, Overlay-Underlay
Correla,on, mul,-region)
The image cannot be displayed. Your computer
may not have enough memory to open the image,
or the image may have been corrupted. Restart
your computer, and then open the file again. If the
red x still appears, you may have to delete the
image and then insert it again.
Service Chaining
(PNF, VNF, v6, 3rd party /
TAP, Health-check, policy-
based)
HA, Upgrades
(Infra Failover, SFC
Failover, ISSU)
API Services
(mul,-vendor Orch., SDN-U,
OpenStack, K8s, vCenter)
Perf & Scale
(DPDK / SRIOV, Smart
NIC, Infra scale)
The image cannot be displayed.
Your computer may not have
enough memory to open the image,
or the image may have been
corrupted. Restart your computer,
and then open the file again. If the
red x still appears, you may have to
delete the image and then insert it
again.
23. 23
Juniper & Red Hat Cloud Leadership
Source: h_ps://www.openstack.org/analy,cs
O P E N S T A C K S U R V E Y ( S D N )
Newton - Red Hat is Leader in Innovation and Contributions
Commits by company Red Hat commits by project
Source: h_p://stackaly,cs.com/?release=newton&project_type=openstack&metric=commits
25. 25
Tier 1 Telco Case Study - vCPE through a NaaS model
• Telco wanted to become a sohware/cloud company by launching a network-as-a-
service (NaaS) offering for mulNnaNonal customers in many countries
• In the past, a new service like an enterprise firewall, would typically take 2-3
months and cost a lot money
• With NaaS, Telco ships their customer an x86 server, which the customer simply
plugs in for Internet access, and is configured to be self-installed, within minutes.
• Includes firewall, web content protecNon, URL filtering, and malware defense.
Time-to-market is greatly reduced, and service automaNon and virtualizaNon have
driven down operaNonal costs.
26. 26
Tier 1 Telco Case Study - vCPE through a NaaS model
Business Challenge
NaaS Solu3on : SDN/NFV based vCPE service
1. Reduce time to add new services using appliance based services on top of traditional MPLS based architecture
2. Enterprise customers require greater agility, speed, and simplicity
1. Replace appliance based services with virtualized services
§ Fast deployment
2. Customer self-care portal to control network policies (QoS, routing, security)
§ Fast provisioning [no ticket to support team need for config changes]
§ Rapid delivery - automation of the internal processes
3. New innovative network products
§ Enabling customized service chaining to allow processing of traffic network infrastructure
27. 27
Customer Use-case
Orchestrator
VNF manager & configurator
Telco’s
Network
SDN Controller
x86 servers (Compute
Nodes) running VNFs
CE
Business Customer
Internet
CE
VIM
VNF-1 VNF-2
Self-care Portal
29. 29
Challenges and Lessons Learned
• Open source drives innovation and freedom of choice
• Standard Neutron with OVS may not good enough for some networks –
Contrail augments OpenStack networking very nicely
– Rich networking features L3VPN and SFC versus OVS
• Project planning and good communication are critical – have a well
defined process and understand who is doing SI
– Make OSP and SDN decision together
– Select SDN and OSP solutions that are certified
• Sales and deployment cycle is long and complex
– Cross train and cross test, especially when new to OpenStack
30. 30
CLICK TO EDIT MASTER TITLE STYLE
Ali Kafel, Red Hat
@akafel
DP Ayyadevara, Juniper Networks