SlideShare uma empresa Scribd logo
1 de 24
Baixar para ler offline
Copyright	
  2013	
  Alcatel-­‐Lucent.	
  All	
  rights	
  reserved.	
  
	
  @ssneddon	
  
Sco=	
  Sneddon	
  
Principal	
  Solu-ons	
  Architect,	
  APAC	
  Business	
  Development	
  Lead	
  
	
  Nuage	
  Networks	
  
	
  
A	
  Policy	
  Driven	
  Approach	
  to	
  
So6ware	
  Defined	
  Networking	
  
SDN	
  in	
  2014	
  
§  OpenFlow	
  Controllers	
  
§  Network	
  VirtualizaFon	
  
§  White	
  Box	
  Switching	
  
§  Open	
  Source	
  Projects	
  
§  Network	
  as	
  a	
  Service	
  
	
  
Plenty	
  of	
  InnovaFon	
  and	
  DisrupFon…	
  
Why	
  SDN?	
  
§  Reduce	
  Cost	
  
§  Asset	
  UFlizaFon	
  
§  Self	
  Service	
  
§  AutomaFon	
  
§  Make	
  the	
  network	
  more	
  
“Cloud”	
  like	
  
We’re	
  making	
  great	
  progress	
  
The	
  “ConsumpFon	
  shi6”	
  
§  Cloud	
  is	
  changing	
  the	
  way	
  
technology	
  is	
  being	
  
consumed	
  
§  From	
  “order	
  and	
  wait”	
  
§  To	
  “instant	
  graFficaFon”	
  
Consumer	
  expectaFons	
  are	
  shi6ing	
  
MulBple	
  personas	
  
Single	
  user	
  
On-­‐demand	
  personalized	
  catalogue	
  
§  Compute	
  is	
  Virtualized	
  	
  
§  Available	
  in	
  
Minutes	
  
§  Network	
  is	
  ParBally	
  
Virtualized	
  
§  ConfiguraBon	
  takes	
  
Days/Weeks	
  
Network	
  
ConfiguraBon	
  
Compute	
  	
  
Management	
  
New	
  Tenant	
  /	
  ApplicaBon	
  Request	
  
Auto-­‐instanBaBon	
  
Compute Request
completed in
Minutes
Help Desk
Change Control
IP
Address
VLAN
Address
Firewall
Configuration
LAN (VLAN)
Configuration
WAN (IP)
Configuration
Security / QA
Team
Project
Coordinator
Network Change
completed in
days/Weeks
00:01	
  
Datacenter	
  Network	
  
Service	
  velocity	
  is	
  hindered	
  by	
  manual	
  network	
  process	
  
§  Network	
  is	
  “more”	
  
virtualized	
  
§  Some	
  things	
  available	
  
in	
  minutes	
  –	
  Some	
  
not	
  so	
  much	
  
§  Many	
  network	
  
elements	
  are	
  manually	
  
configured	
  
§  Manual	
  per-­‐tenant	
  
network	
  configuraBons	
  
Network	
  
ConfiguraBon	
  
Compute	
  	
  
Management	
  
New	
  Tenant	
  /	
  ApplicaBon	
  Request	
  
Auto-­‐instanBaBon	
  
Compute Request
completed in
Minutes
SDN Controller
Some Network
Change completed
In Minutes
00:01	
   00:01	
  
So6ware	
  Defined	
  
Datacenter	
  Network	
  
Service	
  velocity	
  accelerated,	
  but…	
  
§  Commi=ees	
  sBll	
  build	
  “networks”	
  
§  Audits/reviews	
  
§  In	
  a	
  NaaS	
  environment	
  (OpenStack	
  
Neutron,	
  AWS,	
  etc)	
  this	
  is	
  
delegated	
  to	
  the	
  tenant	
  
§  Is	
  this	
  what	
  your	
  DevOps	
  team	
  
should	
  be	
  doing?	
  
Network	
  
ConfiguraBon	
  
So6ware	
  Defined	
  
Network	
  ConfiguraFon	
  
We’ve	
  only	
  addressed	
  part	
  of	
  the	
  automaFon	
  problem	
  
DevOps Team
VLAN
Address
IP
Address
WAN (IP)
Configuration
Firewall
Configuration
Network
Configuration
created in days/Weeks
§  Current	
  Neutron	
  Networking	
  provides	
  building	
  blocks	
  
to	
  create	
  logical	
  topologies	
  
§  Networks,	
  Ports,	
  Subnets	
  ,Routers,	
  Security	
  Groups	
  
	
  
neutron	
  net-­‐create	
  web	
  	
  
neutron	
  subnet-­‐create	
  web	
  10.0.0.0/24	
  	
  
neutron	
  router-­‐create	
  router1	
  neutron	
  router-­‐add-­‐interface	
  router1	
  web	
  
…	
  	
  
	
  
§  Not	
  abstracted	
  into	
  a	
  consumable	
  model	
  
	
  
	
  
OpenStack	
  Neutron	
  Networks	
  
web	
  
VM	
   VM	
   VM	
   VM	
   VM	
   VM	
  
app	
   db	
  
Puts	
  the	
  burden	
  of	
  topology	
  design	
  on	
  the	
  DevOps	
  team	
  
§  DevOps	
  has	
  an	
  understanding	
  of	
  the	
  specific	
  applicaBon	
  needs	
  
§  SegmentaBon,	
  Port	
  numbers,	
  ConnecBvity	
  goals	
  
§  Should	
  not	
  be	
  burdened	
  with	
  the	
  implementaBon	
  details	
  
§  Routes,	
  Subnets,	
  VLANs	
  
The	
  DevOps	
  team	
  needs	
  an	
  Abstracted	
  view	
  
	
  
A	
  DevOps	
  View	
  
web	
  
VM	
  
VM	
  
VM	
  
app	
  
VM	
  
VM	
  
VM	
  
web	
  
VM	
  
VM	
  
VM	
  
Network	
  Administrators	
  need	
  to…	
  
§  Define	
  connecBvity	
  models	
  
§  Paths	
  
§  QoS	
  
§  Access	
  Control	
  	
  
§  Deploy	
  service	
  elements	
  
§  Firewall	
  
§  Load	
  Balancer	
  
§  IPS	
  
§  Audit	
  compliance	
  
§  Audit	
  usage	
  
A	
  Network	
  Admin	
  View	
  
Firewall
IPS
Parental Ctl
Firewall IPSParental Ctl
Internet
Policy
Selector
chain 1 chain 2 chain 3
chain 4
Policy	
  approach	
  to	
  networking	
  
Policy	
  Templates	
  
Users	
  
ApplicaBon	
  Types	
  
Business	
  Rules	
  
Policy	
  EvaluaBon	
  
Firewall	
  
Firewall	
  
W	
  
BL	
  BL	
  
W	
  
Firewall	
  
W	
   W	
  
Firewall	
  
Firewall	
  
W	
  
BL	
  BL	
  
W	
  
Firewall	
  
Firewall	
  
W	
  
BL	
  BL	
  
W	
  
BL	
  BL	
  
Design	
  once,	
  re-­‐use	
  mulFple	
  Fmes	
  
ApplicaBon	
  Networks	
  
ApplicaFon	
  =	
  Web	
  
ApplicaFon	
  =	
  SAP	
  
ApplicaFon	
  =	
  Database	
  
Policy	
  Based	
  Network	
  VirtualizaFon	
  
Group	
  applicaFons	
  into	
  “network	
  sandboxes”	
  
What	
  is	
  a	
  network	
  Policy?	
  
OpenStack	
  Group	
  Based	
  Policy	
  AbstracBons	
  for	
  Neutron	
  
h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon	
  
•  An	
  ApplicaBon-­‐centric	
  approach	
  to	
  networking	
  
•  Moving	
  away	
  from	
  tradiBonal	
  network	
  constructs	
  	
  
•  ports,	
  subnets,	
  routers,	
  etc	
  
•  Aiming	
  for	
  a	
  highly	
  abstracted	
  interface	
  for	
  applicaBon	
  developers	
  to	
  
•  express	
  desired	
  connecBvity	
  of	
  applicaBon	
  components	
  
•  and	
  express	
  high-­‐level	
  policies	
  governing	
  that	
  connecBvity	
  
•  Without	
  imposing	
  constraints	
  on	
  the	
  underlying	
  implementaBon	
  
	
  
	
  
Policy	
  AbstracFons	
  for	
  Neutron	
  
OpenStack	
  Group	
  Based	
  Policy	
  AbstracBons	
  for	
  Neutron	
  
h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon	
  
Outside
EPG
Web EPG App EPG DB EPG
VM
VM
VM
VM
VM
VM
VM
VM
Web
Contract
App
Contract
App
Contract
Public
Network
Private
Networks
•  Endpoint	
  (EP)	
  –	
  an	
  IP	
  addressable	
  enBty	
  
•  Endpoint	
  Group	
  (EPG)	
  –	
  a	
  grouping	
  of	
  Endpoints	
  
•  Policy	
  Rule	
  –	
  individual	
  rule	
  that	
  defines	
  communicaBon	
  criteria	
  
•  Contract	
  –	
  a	
  collecBon	
  of	
  Policy	
  Rules	
  that	
  are	
  applied	
  to	
  traffic	
  between	
  EPG’s	
  
In	
  applicaBon	
  development…	
  
§  We	
  first	
  define	
  the	
  applicaBon	
  through	
  source	
  code	
  
§  We	
  then	
  compile	
  the	
  applicaBon	
  into	
  machine	
  instrucBons	
  	
  
§  Then	
  we	
  bind	
  that	
  applicaBon	
  to	
  a	
  plaeorm	
  at	
  run	
  Bme	
  
§  Assigning	
  compute	
  registers	
  and	
  memory	
  locaBons	
  
In	
  a	
  Policy	
  driven	
  network…	
  
§  We	
  first	
  define	
  the	
  applicaBon’s	
  connecBvity	
  requirements	
  and	
  business	
  rules	
  
§  ApplicaBon	
  Policy	
  
§  We	
  then	
  map	
  this	
  applicaBon	
  to	
  a	
  network	
  service	
  
§  Predefined	
  network	
  templates,	
  network	
  contracts	
  
§  Then	
  we	
  implement	
  these	
  network	
  services	
  when	
  the	
  applicaBon	
  is	
  deployed	
  
§  Automated,	
  Dynamic	
  
To	
  Achieve	
  a	
  Policy	
  Driven	
  Network	
  
APPLICATION
ATTRIBUTES
SDN FRAMEWORK
TOPOLOGY
ATTRIBUTES
Service
Mapping
Service
Binding
Application
Request
TECHNOLOGY
ATTRIBUTES
web	
   app	
   web	
   web	
   app	
   db	
  
To	
  Achieve	
  a	
  Policy	
  Driven	
  Network	
  
Policy	
  Driven	
  Networking	
  Delivered	
  
§  Nuage	
  has	
  provided	
  policy	
  
abstracBons	
  for	
  virtual	
  and	
  
physical	
  networks	
  since	
  our	
  
first	
  release	
  
§  L2,	
  L3,	
  ACLs,	
  QoS,	
  Service	
  
Chaining,	
  Traffic	
  StaBsBcs	
  
§  Difficult	
  to	
  express	
  using	
  
exisBng	
  Neutron	
  constructs…	
  
§  Which	
  is	
  why	
  we’re	
  
contribuBng	
  to	
  Group	
  
Based	
  Policy	
  	
   Cleanly	
  express	
  applicaFon	
  policy	
  in	
  Neutron	
  
Cloud	
  Service	
  	
  
Management	
  Plane	
  
Datacenter	
  	
  
Control	
  Plane	
  
Datacenter	
  
Data	
  Plane	
  
Virtual	
  
RouBng	
  &	
  
Switching	
  
	
  
R2.1	
  GA	
  in	
  April	
  2014	
  
Virtualized	
  
Services	
  
Directory	
  
Virtualized	
  
Services	
  
Controller	
  
HYPERVISOR	
  
HYPERVISOR	
  
HYPERVISOR	
  
HYPERVISOR	
  
HYPERVISOR	
  
HYPERVISOR	
  
Brooklyn	
  Datacenter	
  -­‐	
  	
  Zone	
  1	
  
Virtualized	
  Services	
  Directory	
  (VSD)	
  
•  Network	
  Policy	
  Engine	
  –	
  abstracts	
  complexity	
  
•  Service	
  templates	
  and	
  analyBcs	
  
Virtualized	
  Services	
  Controller	
  (VSC)	
  
•  SDN	
  Controller,	
  programs	
  the	
  network	
  
•  Rich	
  rouBng	
  feature	
  set	
  	
  
Virtual	
  RouFng	
  &	
  Switching	
  (VRS)	
  
•  Distributed	
  switch	
  /	
  router	
  –	
  L2-­‐4	
  rules	
  
•  IntegraBon	
  of	
  bare	
  metal	
  assets	
  
Nuage	
  Networks	
  
Virtualized	
  Services	
  Pla`orm	
  (VSP)	
  
IP	
  Fabric	
  
Edge	
  Router	
  
	
  
MP-­‐BGP	
  
	
  
MP-­‐BGP	
  
	
  
Hardware	
  
GW	
  for	
  
Bare	
  Metal	
  
	
  
Nuage	
  Networks	
  Virtual	
  Services	
  Pla`orm	
  
DATACENTER	
  
	
  
NETWORK	
  
.	
   .	
   .	
   .	
  
Any	
  Compute	
  VirtualizaFon	
  Environment	
  
Any	
  Datacenter	
  Networking	
  Hardware	
  
Any	
  Server	
  or	
  Hypervisor	
  
Open	
  soluFon	
  
Consistent	
  capabiliFes	
  across	
  
Nuage	
  Networks	
  policy	
  templates	
  and	
  role-­‐based	
  workflow	
  
Compute	
  	
  
Management	
  
Tenant	
  /	
  ApplicaBon	
  Request	
  
Networking
Security/
Compliance
Service	
  velocity	
  is	
  not	
  hindered	
  by	
  manual	
  network	
  process	
  
Auto-­‐instanBaBon	
  
Compute Request
completed in Minutes
00:01	
  
IP address
WAN interconnect
Policy / Security Zones
L2 /L3 Service AD
Service chaining
Templates
Nuage Networks VSP	
  
Policy	
  InstanFaFon	
  
•  IP	
  address	
  10.x.y.z	
  
•  VLAN	
  configuraBon	
  
•  WAN	
  configuraBon	
  
•  Security	
  /	
  FW	
  sekngs	
  
•  QoS	
  parameters	
  
•  …	
  
Network Change
Completed automatically
00:01	
  
Conclusions	
  
•  CreaBon	
  of	
  distributed	
  virtual	
  switches	
  and	
  virtual	
  routers	
  -­‐	
  great	
  for	
  
virtual	
  networks	
  and	
  be=er	
  than	
  VLAN’s,	
  but	
  …	
  
•  Creates	
  a	
  distributed	
  virtual	
  configuraBon	
  and	
  management	
  challenge	
  	
  
	
  
•  Provisioning	
  and	
  management	
  of	
  these	
  endpoints	
  can	
  not	
  be	
  done	
  
with	
  tradiBonal	
  methodology	
  
•  Policy	
  abstracBon	
  is	
  a	
  proven	
  framework	
  
•  Successfully	
  shipping	
  since	
  May	
  2013	
  
For	
  more	
  informaFon…	
  
•  Nuage	
  Networks	
  Virtualized	
  Services	
  Plaeorm	
  
•  h=p://www.nuagenetworks.net	
  
•  OpenStack	
  Neutron	
  Group	
  Based	
  Policy	
  AbstracBon	
  
•  h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon	
  
•  OpenDaylight	
  ApplicaBon	
  Policy	
  Plugin	
  
•  h=ps://wiki.opendaylight.org/view/Project_Proposals:ApplicaBon_Policy_Plugin	
  
While	
  at	
  Interop	
  Tokyo…	
  
•  Visit	
  the	
  Nuage	
  Networks	
  booth	
  in	
  the	
  SDI	
  ShowCase	
  
24	
  
6/16/14	
  
Network	
  Policy	
  NOW	
  
@nuagenetworks	
  
@ssneddon	
  

Mais conteúdo relacionado

Mais procurados

How to Implement SDN Technology in ITB
How to Implement SDN Technology in ITBHow to Implement SDN Technology in ITB
How to Implement SDN Technology in ITBSDNRG ITB
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA AutomationCisco Canada
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!Ciaran Roche
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...SWITCHPOINT NV/SA
 
The evolution of data center network fabrics
The evolution of data center network fabricsThe evolution of data center network fabrics
The evolution of data center network fabricsCisco Canada
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StoryCisco Enterprise Networks
 
China Telecom Americas: SD-WAN Overview
China Telecom Americas:  SD-WAN OverviewChina Telecom Americas:  SD-WAN Overview
China Telecom Americas: SD-WAN OverviewVlad Sinayuk
 
Simplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN ApplicationSimplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN ApplicationCisco Enterprise Networks
 
Software-Defined WAN 101
Software-Defined WAN 101Software-Defined WAN 101
Software-Defined WAN 101Zivaro Inc
 
Is SDN Necessary?
Is SDN Necessary?Is SDN Necessary?
Is SDN Necessary?Bruce Davie
 
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...Indonesia Network Operators Group
 
Nuage meetup - Flexible and agile Software Defined Networking (SDN)
Nuage meetup - Flexible and agile Software Defined Networking (SDN)Nuage meetup - Flexible and agile Software Defined Networking (SDN)
Nuage meetup - Flexible and agile Software Defined Networking (SDN)SDN_Paris
 
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad IrzanIndonesia Network Operators Group
 
10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga
10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga
10 (IDNOG01) Introduction about ICANN by Champika WijayatungaIndonesia Network Operators Group
 
SD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementSD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementColt Technology Services
 
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloudMaximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloudVeloCloud Networks, Inc.
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)Cisco Canada
 

Mais procurados (20)

How to Implement SDN Technology in ITB
How to Implement SDN Technology in ITBHow to Implement SDN Technology in ITB
How to Implement SDN Technology in ITB
 
Software Defined WAN – SD-WAN
Software Defined WAN – SD-WANSoftware Defined WAN – SD-WAN
Software Defined WAN – SD-WAN
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA Automation
 
TFI2014 Session I - State of SDN - Scott Sneddon
TFI2014 Session I - State of SDN - Scott SneddonTFI2014 Session I - State of SDN - Scott Sneddon
TFI2014 Session I - State of SDN - Scott Sneddon
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
The evolution of data center network fabrics
The evolution of data center network fabricsThe evolution of data center network fabrics
The evolution of data center network fabrics
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success Story
 
China Telecom Americas: SD-WAN Overview
China Telecom Americas:  SD-WAN OverviewChina Telecom Americas:  SD-WAN Overview
China Telecom Americas: SD-WAN Overview
 
Simplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN ApplicationSimplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN Application
 
Software-Defined WAN 101
Software-Defined WAN 101Software-Defined WAN 101
Software-Defined WAN 101
 
Is SDN Necessary?
Is SDN Necessary?Is SDN Necessary?
Is SDN Necessary?
 
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
 
Nuage meetup - Flexible and agile Software Defined Networking (SDN)
Nuage meetup - Flexible and agile Software Defined Networking (SDN)Nuage meetup - Flexible and agile Software Defined Networking (SDN)
Nuage meetup - Flexible and agile Software Defined Networking (SDN)
 
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
 
10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga
10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga
10 (IDNOG01) Introduction about ICANN by Champika Wijayatunga
 
SD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementSD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancement
 
Microservice Powered Orchestration
Microservice Powered OrchestrationMicroservice Powered Orchestration
Microservice Powered Orchestration
 
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloudMaximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 

Semelhante a Nuage Networks, A Policy Driven Approach to SDN - Interop Tokyo 2014

[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'OpenStack Korea Community
 
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...Indonesia Network Operators Group
 
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...nvirters
 
Network Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFNetwork Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFAPNIC
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantageCommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantageScott Sneddon
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDNCommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDNPatricia Dugan
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaVMUG IT
 
The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittalbuildacloud
 
Cloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify Community
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
Understanding and deploying Network Virtualization
Understanding and deploying Network VirtualizationUnderstanding and deploying Network Virtualization
Understanding and deploying Network VirtualizationSDN Hub
 
Cloudify: Open vCPE Design Concepts and Multi-Cloud Orchestration
Cloudify: Open vCPE Design Concepts and Multi-Cloud OrchestrationCloudify: Open vCPE Design Concepts and Multi-Cloud Orchestration
Cloudify: Open vCPE Design Concepts and Multi-Cloud OrchestrationCloudify Community
 
IaaS with Software Defined Networking
IaaS with Software Defined NetworkingIaaS with Software Defined Networking
IaaS with Software Defined NetworkingPrasenjit Sarkar
 
IBM Software Defined Networking = Brave New World of IT
IBM Software Defined Networking = Brave New World of  ITIBM Software Defined Networking = Brave New World of  IT
IBM Software Defined Networking = Brave New World of ITSteve Cole
 
Software defined networking(sdn) vahid sadri
Software defined networking(sdn) vahid sadriSoftware defined networking(sdn) vahid sadri
Software defined networking(sdn) vahid sadriVahid Sadri
 
Introducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis MeetupIntroducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis Meetupdjzook
 
Directions for CloudStack Networking
Directions for CloudStack  NetworkingDirections for CloudStack  Networking
Directions for CloudStack NetworkingChiradeep Vittal
 
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipOpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipPLUMgrid
 
SDN and Photonics for Dynamic Cloud Connectivity
SDN and Photonics for Dynamic Cloud Connectivity SDN and Photonics for Dynamic Cloud Connectivity
SDN and Photonics for Dynamic Cloud Connectivity ADVA
 

Semelhante a Nuage Networks, A Policy Driven Approach to SDN - Interop Tokyo 2014 (20)

[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...
07 (IDNOG02) SDN Research activity in Institut Teknologi Bandung by Affan Bas...
 
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...
Tech Talk by John Casey (CTO) CPLANE_NETWORKS : High Performance OpenStack Ne...
 
Network Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFNetwork Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoF
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantageCommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDNCommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
 
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della SicurezzaNSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
NSX: La Virtualizzazione di Rete e il Futuro della Sicurezza
 
The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittal
 
Cloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinar
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Understanding and deploying Network Virtualization
Understanding and deploying Network VirtualizationUnderstanding and deploying Network Virtualization
Understanding and deploying Network Virtualization
 
Cloudify: Open vCPE Design Concepts and Multi-Cloud Orchestration
Cloudify: Open vCPE Design Concepts and Multi-Cloud OrchestrationCloudify: Open vCPE Design Concepts and Multi-Cloud Orchestration
Cloudify: Open vCPE Design Concepts and Multi-Cloud Orchestration
 
IaaS with Software Defined Networking
IaaS with Software Defined NetworkingIaaS with Software Defined Networking
IaaS with Software Defined Networking
 
IBM Software Defined Networking = Brave New World of IT
IBM Software Defined Networking = Brave New World of  ITIBM Software Defined Networking = Brave New World of  IT
IBM Software Defined Networking = Brave New World of IT
 
Software defined networking(sdn) vahid sadri
Software defined networking(sdn) vahid sadriSoftware defined networking(sdn) vahid sadri
Software defined networking(sdn) vahid sadri
 
Introducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis MeetupIntroducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis Meetup
 
Directions for CloudStack Networking
Directions for CloudStack  NetworkingDirections for CloudStack  Networking
Directions for CloudStack Networking
 
Feec telecom-nw-softwarization-aug-2015
Feec telecom-nw-softwarization-aug-2015Feec telecom-nw-softwarization-aug-2015
Feec telecom-nw-softwarization-aug-2015
 
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipOpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
 
SDN and Photonics for Dynamic Cloud Connectivity
SDN and Photonics for Dynamic Cloud Connectivity SDN and Photonics for Dynamic Cloud Connectivity
SDN and Photonics for Dynamic Cloud Connectivity
 

Último

Top 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxTop 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxDyna Gilbert
 
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)Christopher H Felton
 
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一Fs
 
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书zdzoqco
 
Contact Rya Baby for Call Girls New Delhi
Contact Rya Baby for Call Girls New DelhiContact Rya Baby for Call Girls New Delhi
Contact Rya Baby for Call Girls New Delhimiss dipika
 
Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Paul Calvano
 
Film cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasaFilm cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasa494f574xmv
 
Q4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxQ4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxeditsforyah
 
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一Fs
 
Elevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New OrleansElevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New Orleanscorenetworkseo
 
PHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationPHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationLinaWolf1
 
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Sonam Pathan
 
Git and Github workshop GDSC MLRITM
Git and Github  workshop GDSC MLRITMGit and Github  workshop GDSC MLRITM
Git and Github workshop GDSC MLRITMgdsc13
 
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一z xss
 
Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Excelmac1
 
Magic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMagic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMartaLoveguard
 
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一Fs
 
SCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is prediSCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is predieusebiomeyer
 

Último (20)

Top 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptxTop 10 Interactive Website Design Trends in 2024.pptx
Top 10 Interactive Website Design Trends in 2024.pptx
 
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
A Good Girl's Guide to Murder (A Good Girl's Guide to Murder, #1)
 
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
定制(Lincoln毕业证书)新西兰林肯大学毕业证成绩单原版一比一
 
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书
办理多伦多大学毕业证成绩单|购买加拿大UTSG文凭证书
 
Contact Rya Baby for Call Girls New Delhi
Contact Rya Baby for Call Girls New DelhiContact Rya Baby for Call Girls New Delhi
Contact Rya Baby for Call Girls New Delhi
 
Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24Font Performance - NYC WebPerf Meetup April '24
Font Performance - NYC WebPerf Meetup April '24
 
Film cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasaFilm cover research (1).pptxsdasdasdasdasdasa
Film cover research (1).pptxsdasdasdasdasdasa
 
Q4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptxQ4-1-Illustrating-Hypothesis-Testing.pptx
Q4-1-Illustrating-Hypothesis-Testing.pptx
 
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
定制(AUT毕业证书)新西兰奥克兰理工大学毕业证成绩单原版一比一
 
Hot Sexy call girls in Rk Puram 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in  Rk Puram 🔝 9953056974 🔝 Delhi escort ServiceHot Sexy call girls in  Rk Puram 🔝 9953056974 🔝 Delhi escort Service
Hot Sexy call girls in Rk Puram 🔝 9953056974 🔝 Delhi escort Service
 
Elevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New OrleansElevate Your Business with Our IT Expertise in New Orleans
Elevate Your Business with Our IT Expertise in New Orleans
 
PHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 DocumentationPHP-based rendering of TYPO3 Documentation
PHP-based rendering of TYPO3 Documentation
 
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
Call Girls In The Ocean Pearl Retreat Hotel New Delhi 9873777170
 
Git and Github workshop GDSC MLRITM
Git and Github  workshop GDSC MLRITMGit and Github  workshop GDSC MLRITM
Git and Github workshop GDSC MLRITM
 
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Serviceyoung call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
young call girls in Uttam Nagar🔝 9953056974 🔝 Delhi escort Service
 
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
办理(UofR毕业证书)罗切斯特大学毕业证成绩单原版一比一
 
Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...Blepharitis inflammation of eyelid symptoms cause everything included along w...
Blepharitis inflammation of eyelid symptoms cause everything included along w...
 
Magic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptxMagic exist by Marta Loveguard - presentation.pptx
Magic exist by Marta Loveguard - presentation.pptx
 
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
定制(Management毕业证书)新加坡管理大学毕业证成绩单原版一比一
 
SCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is prediSCM Symposium PPT Format Customer loyalty is predi
SCM Symposium PPT Format Customer loyalty is predi
 

Nuage Networks, A Policy Driven Approach to SDN - Interop Tokyo 2014

  • 1. Copyright  2013  Alcatel-­‐Lucent.  All  rights  reserved.    @ssneddon   Sco=  Sneddon   Principal  Solu-ons  Architect,  APAC  Business  Development  Lead    Nuage  Networks     A  Policy  Driven  Approach  to   So6ware  Defined  Networking  
  • 2. SDN  in  2014   §  OpenFlow  Controllers   §  Network  VirtualizaFon   §  White  Box  Switching   §  Open  Source  Projects   §  Network  as  a  Service     Plenty  of  InnovaFon  and  DisrupFon…  
  • 3. Why  SDN?   §  Reduce  Cost   §  Asset  UFlizaFon   §  Self  Service   §  AutomaFon   §  Make  the  network  more   “Cloud”  like   We’re  making  great  progress  
  • 4. The  “ConsumpFon  shi6”   §  Cloud  is  changing  the  way   technology  is  being   consumed   §  From  “order  and  wait”   §  To  “instant  graFficaFon”   Consumer  expectaFons  are  shi6ing   MulBple  personas   Single  user   On-­‐demand  personalized  catalogue  
  • 5. §  Compute  is  Virtualized     §  Available  in   Minutes   §  Network  is  ParBally   Virtualized   §  ConfiguraBon  takes   Days/Weeks   Network   ConfiguraBon   Compute     Management   New  Tenant  /  ApplicaBon  Request   Auto-­‐instanBaBon   Compute Request completed in Minutes Help Desk Change Control IP Address VLAN Address Firewall Configuration LAN (VLAN) Configuration WAN (IP) Configuration Security / QA Team Project Coordinator Network Change completed in days/Weeks 00:01   Datacenter  Network   Service  velocity  is  hindered  by  manual  network  process  
  • 6. §  Network  is  “more”   virtualized   §  Some  things  available   in  minutes  –  Some   not  so  much   §  Many  network   elements  are  manually   configured   §  Manual  per-­‐tenant   network  configuraBons   Network   ConfiguraBon   Compute     Management   New  Tenant  /  ApplicaBon  Request   Auto-­‐instanBaBon   Compute Request completed in Minutes SDN Controller Some Network Change completed In Minutes 00:01   00:01   So6ware  Defined   Datacenter  Network   Service  velocity  accelerated,  but…  
  • 7. §  Commi=ees  sBll  build  “networks”   §  Audits/reviews   §  In  a  NaaS  environment  (OpenStack   Neutron,  AWS,  etc)  this  is   delegated  to  the  tenant   §  Is  this  what  your  DevOps  team   should  be  doing?   Network   ConfiguraBon   So6ware  Defined   Network  ConfiguraFon   We’ve  only  addressed  part  of  the  automaFon  problem   DevOps Team VLAN Address IP Address WAN (IP) Configuration Firewall Configuration Network Configuration created in days/Weeks
  • 8. §  Current  Neutron  Networking  provides  building  blocks   to  create  logical  topologies   §  Networks,  Ports,  Subnets  ,Routers,  Security  Groups     neutron  net-­‐create  web     neutron  subnet-­‐create  web  10.0.0.0/24     neutron  router-­‐create  router1  neutron  router-­‐add-­‐interface  router1  web   …       §  Not  abstracted  into  a  consumable  model       OpenStack  Neutron  Networks   web   VM   VM   VM   VM   VM   VM   app   db   Puts  the  burden  of  topology  design  on  the  DevOps  team  
  • 9. §  DevOps  has  an  understanding  of  the  specific  applicaBon  needs   §  SegmentaBon,  Port  numbers,  ConnecBvity  goals   §  Should  not  be  burdened  with  the  implementaBon  details   §  Routes,  Subnets,  VLANs   The  DevOps  team  needs  an  Abstracted  view     A  DevOps  View   web   VM   VM   VM   app   VM   VM   VM   web   VM   VM   VM  
  • 10. Network  Administrators  need  to…   §  Define  connecBvity  models   §  Paths   §  QoS   §  Access  Control     §  Deploy  service  elements   §  Firewall   §  Load  Balancer   §  IPS   §  Audit  compliance   §  Audit  usage   A  Network  Admin  View   Firewall IPS Parental Ctl Firewall IPSParental Ctl Internet Policy Selector chain 1 chain 2 chain 3 chain 4
  • 11. Policy  approach  to  networking   Policy  Templates   Users   ApplicaBon  Types   Business  Rules   Policy  EvaluaBon   Firewall   Firewall   W   BL  BL   W   Firewall   W   W   Firewall   Firewall   W   BL  BL   W   Firewall   Firewall   W   BL  BL   W   BL  BL   Design  once,  re-­‐use  mulFple  Fmes   ApplicaBon  Networks  
  • 12. ApplicaFon  =  Web   ApplicaFon  =  SAP   ApplicaFon  =  Database   Policy  Based  Network  VirtualizaFon   Group  applicaFons  into  “network  sandboxes”  
  • 13. What  is  a  network  Policy?   OpenStack  Group  Based  Policy  AbstracBons  for  Neutron   h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon   •  An  ApplicaBon-­‐centric  approach  to  networking   •  Moving  away  from  tradiBonal  network  constructs     •  ports,  subnets,  routers,  etc   •  Aiming  for  a  highly  abstracted  interface  for  applicaBon  developers  to   •  express  desired  connecBvity  of  applicaBon  components   •  and  express  high-­‐level  policies  governing  that  connecBvity   •  Without  imposing  constraints  on  the  underlying  implementaBon      
  • 14. Policy  AbstracFons  for  Neutron   OpenStack  Group  Based  Policy  AbstracBons  for  Neutron   h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon   Outside EPG Web EPG App EPG DB EPG VM VM VM VM VM VM VM VM Web Contract App Contract App Contract Public Network Private Networks •  Endpoint  (EP)  –  an  IP  addressable  enBty   •  Endpoint  Group  (EPG)  –  a  grouping  of  Endpoints   •  Policy  Rule  –  individual  rule  that  defines  communicaBon  criteria   •  Contract  –  a  collecBon  of  Policy  Rules  that  are  applied  to  traffic  between  EPG’s  
  • 15. In  applicaBon  development…   §  We  first  define  the  applicaBon  through  source  code   §  We  then  compile  the  applicaBon  into  machine  instrucBons     §  Then  we  bind  that  applicaBon  to  a  plaeorm  at  run  Bme   §  Assigning  compute  registers  and  memory  locaBons   In  a  Policy  driven  network…   §  We  first  define  the  applicaBon’s  connecBvity  requirements  and  business  rules   §  ApplicaBon  Policy   §  We  then  map  this  applicaBon  to  a  network  service   §  Predefined  network  templates,  network  contracts   §  Then  we  implement  these  network  services  when  the  applicaBon  is  deployed   §  Automated,  Dynamic   To  Achieve  a  Policy  Driven  Network  
  • 17. Policy  Driven  Networking  Delivered   §  Nuage  has  provided  policy   abstracBons  for  virtual  and   physical  networks  since  our   first  release   §  L2,  L3,  ACLs,  QoS,  Service   Chaining,  Traffic  StaBsBcs   §  Difficult  to  express  using   exisBng  Neutron  constructs…   §  Which  is  why  we’re   contribuBng  to  Group   Based  Policy     Cleanly  express  applicaFon  policy  in  Neutron  
  • 18. Cloud  Service     Management  Plane   Datacenter     Control  Plane   Datacenter   Data  Plane   Virtual   RouBng  &   Switching     R2.1  GA  in  April  2014   Virtualized   Services   Directory   Virtualized   Services   Controller   HYPERVISOR   HYPERVISOR   HYPERVISOR   HYPERVISOR   HYPERVISOR   HYPERVISOR   Brooklyn  Datacenter  -­‐    Zone  1   Virtualized  Services  Directory  (VSD)   •  Network  Policy  Engine  –  abstracts  complexity   •  Service  templates  and  analyBcs   Virtualized  Services  Controller  (VSC)   •  SDN  Controller,  programs  the  network   •  Rich  rouBng  feature  set     Virtual  RouFng  &  Switching  (VRS)   •  Distributed  switch  /  router  –  L2-­‐4  rules   •  IntegraBon  of  bare  metal  assets   Nuage  Networks   Virtualized  Services  Pla`orm  (VSP)   IP  Fabric   Edge  Router     MP-­‐BGP     MP-­‐BGP     Hardware   GW  for   Bare  Metal     Nuage  Networks  Virtual  Services  Pla`orm  
  • 19. DATACENTER     NETWORK   .   .   .   .   Any  Compute  VirtualizaFon  Environment   Any  Datacenter  Networking  Hardware   Any  Server  or  Hypervisor   Open  soluFon   Consistent  capabiliFes  across  
  • 20. Nuage  Networks  policy  templates  and  role-­‐based  workflow   Compute     Management   Tenant  /  ApplicaBon  Request   Networking Security/ Compliance Service  velocity  is  not  hindered  by  manual  network  process   Auto-­‐instanBaBon   Compute Request completed in Minutes 00:01   IP address WAN interconnect Policy / Security Zones L2 /L3 Service AD Service chaining Templates Nuage Networks VSP   Policy  InstanFaFon   •  IP  address  10.x.y.z   •  VLAN  configuraBon   •  WAN  configuraBon   •  Security  /  FW  sekngs   •  QoS  parameters   •  …   Network Change Completed automatically 00:01  
  • 21. Conclusions   •  CreaBon  of  distributed  virtual  switches  and  virtual  routers  -­‐  great  for   virtual  networks  and  be=er  than  VLAN’s,  but  …   •  Creates  a  distributed  virtual  configuraBon  and  management  challenge       •  Provisioning  and  management  of  these  endpoints  can  not  be  done   with  tradiBonal  methodology   •  Policy  abstracBon  is  a  proven  framework   •  Successfully  shipping  since  May  2013  
  • 22. For  more  informaFon…   •  Nuage  Networks  Virtualized  Services  Plaeorm   •  h=p://www.nuagenetworks.net   •  OpenStack  Neutron  Group  Based  Policy  AbstracBon   •  h=ps://blueprints.launchpad.net/neutron/+spec/group-­‐based-­‐policy-­‐abstracBon   •  OpenDaylight  ApplicaBon  Policy  Plugin   •  h=ps://wiki.opendaylight.org/view/Project_Proposals:ApplicaBon_Policy_Plugin  
  • 23. While  at  Interop  Tokyo…   •  Visit  the  Nuage  Networks  booth  in  the  SDI  ShowCase  
  • 24. 24   6/16/14   Network  Policy  NOW   @nuagenetworks   @ssneddon