SlideShare uma empresa Scribd logo
1 de 25
Baixar para ler offline
Challenges of Layer 2 NID Based Architecture
For vCPE/NFV Deployments
Santanu Dasgupta
Sr. Consulting Engineer – Global Service Provider Network Architecture
BDNOG-3
May, 2015
2© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Background and Context
3© 2013-2014 Cisco and/or its affiliates. All rights reserved.
“Network Functions” in SP Network Architecture Landscape
LTE
Smartphone
Access
xDSL
WiFi
Smartphone
PC
RNC2G 3G
Ethernet CE
NodeB
eNodeB
AP
Small Cell
FAP
Gateways /
Service Edge
OSS/BSS
Subsystems and Control
Data Plane
Voice Video Data
Core Network Infrastructure
IMS
xDSLHFC
PGWSGW
2/3G
GGSN
2/3G
SGSN
MME
ePDG
eWAG
PE
Metro Network
Infrastructure
NAT FW IPSec
DPICGNCaching
Opt
MSC-SMGW
A-SBC I-SBC
BGCF
MGCF
PS / RLS
DRA
Video
ingestion
DRM
Video Network
EMS Provisioning Analytics Billing
Radius
DNS
DHCP
S-CSCF
P-CSCF
I-CSCF
Trans-
coding
Cache
Control
Policy
Parental
control
HLR
HSS
ENUM
TAS SMS-C
Services
OCS MMS-C HCSRMS
xDSLDSLAM DSL/ FTTX BNG
Core
Routing
Metro
Ethernet
Biz
CPE
Consumer
CPE
Cable
Modem CMTS
Capacity
Planning
WLC
SecGW
HNB-GW
Policy
SDN
Controller
BGP
server
Metro
Ethernet
Data
CenterCore and Data Center Network Infrastructure
4© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Virtualization of “Network Functions”
Existing Hardware / Appliance
based Network Functions (NFs)
Virtualized NFs running as
VM on x86 Server Platform
Step 1: Decouple software
from underlying hardware
Step 2: Port it as a VM/
container on x86 Server
platform running as a
Network Function
Data Center Switching
Infrastructure
Hypervisor
vFW vCPE vDPI vLB
Hypervisor
5© 2013-2014 Cisco and/or its affiliates. All rights reserved.
NFV, SDN & Orchestration Together
Partial list, just a few main ones are mentioned here
Ethernet Switching Network Underlay
Hypervisor Hypervisor Hypervisor
NAT Firewall DPI
Orchestration and SDN Control Function
Storage
Server 1 Server 2 Server 3
Firewall DPI
VM / VNF Lifecycle
Management in
End-to-end manner
Network Plumbing
to orchestrate
dynamic topologies
Configuration
Management
of the VNFs
Integration with
Other DC/POD
And the WAN
OAM,
Assurance,
Analytics
Standard APIs
NAT
6© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Traditional Managed CPE with IP/MPLS L3VPN
PE PE
P
CE CE
Carrier Ethernet /
Backhaul
Carrier Ethernet /
Backhaul
Â§ï‚§â€Ż There are multiple genuine and perceived issues in the traditional service delivery model –
Â§ï‚§â€Ż CPE provisioning and servicing often require truck roll (sending engineers) Ă ïƒ  high OPEX
Â§ï‚§â€Ż The amount of feature sets enabled on the on-premise CPE makes the solution complex to operate
Â§ï‚§â€Ż Service delivery is not agile, lacks automation, service turn-up / changes takes a lot of time
Â§ï‚§â€Ż On site CPE’s are often expensive and not an open platform
Â§ï‚§â€Ż The industry is expecting something that is more open, agile, fully automated, flexible to
address different market segments and can help the operators to reduce their TCO
Â§ï‚§â€Ż This is where L2 NID on-premises + vCPE architecture discussion for business VPN started almost
2 years back in the industry
MP-BGP
Static / IGP / eBGPStatic / IGP / eBGP
MPLS Core
Branch Branch
7© 2013-2014 Cisco and/or its affiliates. All rights reserved.
What is “L2 NID” ?
Â§ï‚§â€Ż Layer 2 NID – Layer 2 Network Interface Device (example Cisco ME 1200)
Â§ï‚§â€Ż Some calls it Layer 2 Network Termination Device (NTD) Ă ïƒ  we will call it L2 NID for this presentation
Â§ï‚§â€Ż L2 NID is the device that Carrier Ethernet Operator drops at Customer Premises to terminate the Ethernet last mile
Â§ï‚§â€Ż It is managed by the operator
Â§ï‚§â€Ż It has user facing interfaces (UNI) and network facing interfaces (NNI) – typically all Ethernet
Â§ï‚§â€Ż It marks the demarcation point between the Operator and Customer Network
Â§ï‚§â€Ż The L2 NID is typically a 4 to 6 port FE/GE/10GE L2 switch with some other capabilities such as –
Â§ï‚§â€Ż Ethernet OAM (CFM, Y.1731) for fault & performance management, Service Activation (Y.1564), timing support (mobile b/h) etc.
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
Typical Carrier Ethernet Operation Domain
Demarcation
Customer
Premises
PE
8© 2013-2014 Cisco and/or its affiliates. All rights reserved.
L2 NID + vCPE Architecture Proposal for Managed CPE/VPN
Â§ï‚§â€Ż No need to have a Layer 3 CPE at Customer premises anymore
Â§ï‚§â€Ż Virtualize the L3 CPE and Put that at SP’s POP or Cloud / NFV Data Center
Â§ï‚§â€Ż Make the branch simplified with only one device, where complex features are running at SP’s Cloud
making it easier to operate Ă ïƒ  may also help to reduce cost
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
One Device on
Customer Prem
vCPE
vCPE
Layer 2 Backhaul of Branch Traffic to vCPE PE-CE RoutingVery simple
on-premises CPE
L3 CPE Virtualized,
Complex features running at SP’s premises
PECPE
Animated
9© 2013-2014 Cisco and/or its affiliates. All rights reserved.
L2 NID + vCPE Architecture Proposal for Managed CPE/VPN
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
One Device on
Customer Prem
vCPE
vCPE
Layer 2 Backhaul of Branch Traffic to vCPE PE-CE RoutingVery simple
on-premises CPE
L3 CPE Virtualized,
Complex features running at SP’s premises
PE
Â§ï‚§â€Ż No need to have a Layer 3 CPE at Customer premises anymore
Â§ï‚§â€Ż Virtualize the L3 CPE and Put that at SP’s POP or Cloud / NFV Data Center
Â§ï‚§â€Ż Make the branch simplified with only one device, where complex features are running at SP’s Cloud
making it easier to operate Ă ïƒ  may also help to reduce cost
10© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Why The L2 NID Based Alternate Looked Promising ?
Carrier Ethernet
AGG
AGG
NPE
NPE
L2 NID
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
CPE AGG
Two Devices on
Customer Prem
One Device on
Customer Prem
MPLS Core
vCPE
vCPE
PE-CE Routing over Carrier Ethernet Transport
Layer 2 Backhaul of Branch Traffic to vCPE PE-CE Routing
Traditional
Model
L2 NID+
vCPE Model
Reduction of Customer Premise Devices from Two to One was Promising to Reduce Cost and Complexity
PE
PE
11© 2013-2014 Cisco and/or its affiliates. All rights reserved.
This Would Enable Agile Service Creation too
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
One Device on
Customer Prem
vCPE
vFW
vDPI
NFV DC
NFV and Cloud Orchestration
Â§ï‚§â€Ż NFV and Orchestration also enables agile service creation and turn-up
Â§ï‚§â€Ż vCPE can be chained with rich set of NFV, Cloud IaaS, PaaS and SaaS services (SP hosted or 3rd party)
Â§ï‚§â€Ż This is true irrespective of the on-premises CPE type – be in L2 NID or L3 CPE or whatever else
PE
PE
Cloud DC
(SP / 3rd Party)
IaaS / PaaS
/ SaaS
12© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Challenges with the L2 NID Based Architecture,
where there is no L3 CPE at the Branch
13© 2013-2014 Cisco and/or its affiliates. All rights reserved.
MAC Address Scale Issues for the NFV DC
.
.
.
250 MAC
Address
250 MAC
Address
250 MAC
Address
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID L2 NID
L2 NID L2 NID
TOR Switch
vCPE vCPE
L2 Trunk /
QinQ
L3 VPN PE
L3 Links
1 Million MAC
Address!!!
(4000 customers
@250 MAC)
Â§ï‚§â€Ż NFV DC’s are built with a network switching underlay Ă ïƒ  servers aren’t directly connected to the NPE
Â§ï‚§â€Ż With layer 2 backhaul of traffic from customer branches, the NFV DC switching layer will learn all customer MAC addresses
Â§ï‚§â€Ż An example site with 4000 customer sites and 250 MAC address per site means 1 Million MACs
Â§ï‚§â€Ż The switching underlay / TOR switches will now need to support and learn 1Million MAC addresses
Â§ï‚§â€Ż Impacting cost of the network, service scale, convergence time upon failure due to large table size
Â§ï‚§â€Ż This can be technically solved with end-to-end overlay (like GRE or MPLS PW) from branch to vCPE or NPE to vCPE Ă ïƒ 
defeating the original simplicity of the proposed architecture to a major extent
L2 NID
L2 NID
L2 NID
14© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Security Exposure Due to Extension of the Broadcast Domain
Carrier Ethernet
AGG
AGG
AGG
NPE
vCPE
L2 NID
L2 NID
L2 NID
.
.
.
vCPE
vCPE vCPE
TOR Switch
Customer’s L2 Domain Extended to NFV DC’s delivering vCPE
Â§ï‚§â€Ż By not having a L3 CPE at branch, and vCPE at NFV DC, it extends customer’s Layer 2 domain all the
way to the NFV DC
Â§ï‚§â€Ż For a POP with 4000 customers, it means extension of 4000 layer 2 domains hitting the NFV DC Ă ïƒ  SP
typically has no control what assets are there at these branches and how secure they are
Â§ï‚§â€Ż This poses a significant security risk to SP’s infrastructure for various DDoS/other attacks
NFV DC
15© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Potential Risks Due to Layer 2 Loops
Carrier Ethernet
AGG
AGG
AGG
NPE
vCPEL2 NID
L2 NID
vCPE
vCPE vCPE
TOR Switch
L2 NID
L2 NID
To Customer LAN
To Customer LAN
Customer LAN’s STP Domain Operators domain Starts here onwards
Â§ï‚§â€Ż In a L2 NID only based architecture, it is critical to demarcate customer’s STP domains at the L2 NID
Â§ï‚§â€Ż There could be dual homing situations, where L2 NID may have to participate in Customer’s Spanning
Tree domain, also may require some form of loop prevention mechanism on the NNI side too
Â§ï‚§â€Ż Such dual homed connectivity requirement pose risks. Operational errors may cause the SP
infrastructure to get impacted due to layer 2 loops originated from a customer branch
16© 2013-2014 Cisco and/or its affiliates. All rights reserved.
High Availability Design Challenges
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
vCPE1
vCPE2
PE-CE Routing
PE
Layer 2 Backhaul of Branch Traffic to vCPE
Â§ï‚§â€Ż For situations with two vCPE’s for HA, the two vCPE’s need to run HSRP / VRRP (lets consider VRRP)
Â§ï‚§â€Ż There are multiple ways to run the VRRP traffic between the two vCPE’s that comes with different levels
of complexity and different degree of reliability
Â§ï‚§â€Ż The “L2 NID ĂŸïƒŸĂ ïƒ  vCPE” connectivity tracking becomes key for reliable bi-directional packet forwarding
17© 2013-2014 Cisco and/or its affiliates. All rights reserved.
High Availability Design Challenges
VRRP on Directly Connected Links
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
vCPE1
vCPE2
PE-CE Routing
PE
Layer 2 Backhaul of Branch Traffic to vCPE
Â§ï‚§â€Ż Simplest way to run VRRP Ă ïƒ  but requires a L2 segment between two NFV DCs (typically two sites)
Â§ï‚§â€Ż Less reliable, since VRRP operation is blind to the connectivity failures from vCPE to L2 NID
Â§ï‚§â€Ż If vCPE1 is active on VRRP segment, and if vCPE1 to the L2 NID connectivity fails, vCPE1 may
continue to remain active Ă ïƒ  will cause service outage
VRRP
18© 2013-2014 Cisco and/or its affiliates. All rights reserved.
High Availability Design Challenges
VRRP on Via the Carrier Ethernet Network
Carrier Ethernet
AGG
AGG
AGG
NPE2
NPE1
L2 NID
MPLS Core
vCPE1
vCPE2
PE
Â§ï‚§â€Ż To address the reliability issue, VRRP may be carried across the Carrier Ethernet network
Â§ï‚§â€Ż vCPE1 – NPE1 – NPE2 – vCPE2 Ă ïƒ  need a L2 path, FRR enabled explicit path between NPE’s to force the path
Â§ï‚§â€Ż vCPE1 – NPE1 – AGG 
 – AGG – NPE2 – vCPE2
Â§ï‚§â€Ż More reliable now, since VRRP traffic will be dropped if the L2NID to vCPE connectivity fails, but –
Â§ï‚§â€Ż Carrier Ethernet network to ensure VRRP packets aren’t dropped during congestion – that will trigger false failover
Â§ï‚§â€Ż VRRP delay timers may not be very aggressive, Carrier Ethernet network to ensure minimum delay
Â§ï‚§â€Ż This is more complex to provision and operate
VRRP
Potential Alternate Paths for VRRP Sessions
19© 2013-2014 Cisco and/or its affiliates. All rights reserved.
High Availability Design Challenges
VRRP via the Carrier Ethernet Network + IEEE 802.1ag (CFM)
Carrier Ethernet
AGG
AGG
AGG
NPE2
NPE1
L2 NID
MPLS Core
vCPE1
vCPE2
PE
Â§ï‚§â€Ż The previous solution is still not end-to-end, not covering the AGG to the L2 NID connectivity
Â§ï‚§â€Ż For an end-to-end reliable operations, that is a key requirement
Â§ï‚§â€Ż A way to address this challenge is to use VRRP and CFM (802.1ag) together
Â§ï‚§â€Ż CFM runs end-to-end from L2NID to vCPE. When due to any failure on the path, CFM session expires Ă ïƒ  interface of
vCPE goes to line protocol “down” state Ă ïƒ  VRRP traffic cannot go out any more out of the interface Ă ïƒ  VRRP
switchover takes place to the standby
Â§ï‚§â€Ż Solves this HA issue, but brings back a lot of complexities in the network
Â§ï‚§â€Ż We’re trying to remove complexities by removing L3 CPE from branch Ă ïƒ  but we introduced different complexities now
VRRP
802.1ag CFM Sessions
VRRP
CFM
CFM
20© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Carrier Ethernet
AGG
AGG
AGG
NPE2
NPE1
L2 NID
MPLS Core
vCPE1
vCPE2
PE
VRRP
802.1ag CFM Sessions
VRRP
CFM
CFM
High Availability Design Challenges
Upstream Routing from vCPE to the L3VPN PE
PE-CE Routing with Conditional Advertisement depending on vCPE to L2 NID connectivity and VRRP status
(typically will require eBGP)
Â§ï‚§â€Ż The vCPE’s need to run PE-CE routing with eBGP / IGP or Static routing
Â§ï‚§â€Ż The vCPE’s now need to perform conditional route advertisement to the L3 VPN PE’s depending on the
reachability of vCPE to L2 NID and VRRP status
Â§ï‚§â€Ż If vCPE1 is the preferred path for the downstream traffic, but vCPE1 has lost connectivity to L2 NID, the
vCPE1 needs to make L3VPN PE aware by advertising routes with less preferred attribute than vCPE2
Â§ï‚§â€Ż Typically restrict the PE-CE routing protocol to eBGP and may add more complexity in the design
21© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Lack of L3 Capability @Branch Will Limit Available Services
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L2 NID
MPLS Core
vCPE1
vCPE2
PEVRRP
Branch
Â§ï‚§â€Ż Many customer may require capabilities at branch that requires Layer 3 devices
Â§ï‚§â€Ż Such as IPSec VPN or WAN Acceleration
Â§ï‚§â€Ż Many Service Providers are looking forward to use 3G or 4G LTE as backup connectivity
Â§ï‚§â€Ż Typical L2 NIDs do not have those interfaces Ă ïƒ  forcing another CPE for the backup
Â§ï‚§â€Ż If Hierarchical & granular QOS is a requirement at the branch, this could be challenging with L2 NID too
22© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Conclusion of L2 NID + vCPE Architecture
Â§ï‚§â€Ż We were attempting to simplify the architecture by removing L3 CPE from the branch in the
managed CPE / VPN architecture
Â§ï‚§â€Ż But in that process, complexities of other types got injected back into the network
Â§ï‚§â€Ż MAC address scaling issue impacting service scale, convergence, cost
Â§ï‚§â€Ż Security exposure of the vCPE / NFV DC and the SP infrastructure due to extension of L2 domains
Â§ï‚§â€Ż Possible chances of Layer 2 loops due to operational errors
Â§ï‚§â€Ż Complex design requirements to satisfy high availability Ă ïƒ  more difficult to operate
Â§ï‚§â€Ż It may create further limitations when it comes to service availability at the branch
Â§ï‚§â€Ż Layer 3 services such as IPSec, WAN Acceleration etc. are not possible from the branch anymore
Â§ï‚§â€Ż 3G / 4G LTE on the same device
Â§ï‚§â€Ż Hierarchical and Granular QOS from the branch
23© 2013-2014 Cisco and/or its affiliates. All rights reserved.
So What We May Do To Approach the Problem ?
This is My Recommendation J
Carrier Ethernet
AGG
AGG
AGG
NPE
NPE
L3 NID
MPLS Core
vFW
vCPE*
vDPI
NFV DC
NFV and Cloud Orchestration
Cloud DC
(SP / 3rd Party)
PE
PE
Â§ï‚§â€Ż Keep a L3 CPE at branch, may be physical or virtual Ă ïƒ  call it a L3 NID or L3 CPE or whatever you like
Â§ï‚§â€Ż We need to demarcate customer’s L2 network at the branch itself, that’s how the networks scaled
Â§ï‚§â€Ż This helps avoid MAC address scale, security & L2 Loop issues. Also avoids additional issues with VRRP design
Â§ï‚§â€Ż Make the L3 CPE at branch Zero Touch Provisioning (ZTP) capable – to achieve automation and agility
Â§ï‚§â€Ż If required, try and make the L3 CPE at branch simplified by reducing the footprint of “enabled features”
Â§ï‚§â€Ż Provision complex CPE features on NFV DC (may include advanced routing on a vCPE)
Â§ï‚§â€Ż Have the ability to service chain vCPE with other rich set of functions using NFV orchestration system Ă ïƒ  make it agile!
L3 NID or
L3 CPE
Simple Routing like Static / IGP with vCPE, or PE-CE Routing from branchDemarcate Customer
L2 Network Here
vCPE* - May not be reqd. most of the time
IaaS / PaaS
/ SaaS
Thank you.
25© 2013-2014 Cisco and/or its affiliates. All rights reserved.
NFV – How to build / Augment Operations skillsets
‱  Most existing technologies, protocols and associated skills are equally required
‱  On top of that, there are needs for acquisition of New Skills
‱  x86 Server Virtualization
‱  Virtualization on Linux (and KVM/QEMU) Environment
‱  Cloud Orchestration Systems – such as OpenStack
‱  Virtual Switches – OVS, Netmap/VALE, Snabbswitch, Vendor Specific etc
‱  SDN Controllers – OpenDayLight, Vendor Specific
‱  Device Programmability and APIs – NETCONF, Yang, RESTCONF, REST APIs, OF
.
‱  Service Function Chaining – specially NSH (Network Service Header)
‱  Network based Virtual Overlay transport – VXLAN, MPLSoGRE/UDP, LISP, L2TPv3
..
‱  Automation Tools – puppet / chef etc.
‱  Management, Orchestration, OSS Fundamentals,
‱  
..

Mais conteĂșdo relacionado

Mais procurados

Game Changing Multilayer Networking - TNC 2017
Game Changing Multilayer Networking - TNC 2017Game Changing Multilayer Networking - TNC 2017
Game Changing Multilayer Networking - TNC 2017Sigal Biran-Nagar
 
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...Alcatel-Lucent Cloud
 
Managing and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSManaging and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSComarch
 
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit kimw001
 
Colt inter-provider SDN NNIs and APIs
Colt inter-provider SDN NNIs and APIsColt inter-provider SDN NNIs and APIs
Colt inter-provider SDN NNIs and APIsColt Technology Services
 
Colt sdn-and-nfv-experience-lernings-and-future-plans
Colt sdn-and-nfv-experience-lernings-and-future-plansColt sdn-and-nfv-experience-lernings-and-future-plans
Colt sdn-and-nfv-experience-lernings-and-future-plansJavier Benitez
 
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad IrzanIndonesia Network Operators Group
 
Colt VCPE and NFV at L123 SDN WC 2015
Colt VCPE and NFV at L123 SDN WC 2015Colt VCPE and NFV at L123 SDN WC 2015
Colt VCPE and NFV at L123 SDN WC 2015Colt Technology Services
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackSupporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackBruce Davie
 
SDN and NFV Value in Business Services
SDN and NFV Value in Business ServicesSDN and NFV Value in Business Services
SDN and NFV Value in Business ServicesAlan Sardella
 
Colt's SDN/NFV Vision
Colt's SDN/NFV VisionColt's SDN/NFV Vision
Colt's SDN/NFV VisionFIBRE Testbed
 
ïżŒ Network Innovations Driving Business Transformation
ïżŒ Network Innovations Driving Business TransformationïżŒ Network Innovations Driving Business Transformation
ïżŒ Network Innovations Driving Business TransformationCisco Service Provider
 
OVNC 2015-Service Provider SDN with Cloud Transformation
OVNC 2015-Service Provider SDN with Cloud TransformationOVNC 2015-Service Provider SDN with Cloud Transformation
OVNC 2015-Service Provider SDN with Cloud TransformationNAIM Networks, Inc.
 

Mais procurados (20)

Game Changing Multilayer Networking - TNC 2017
Game Changing Multilayer Networking - TNC 2017Game Changing Multilayer Networking - TNC 2017
Game Changing Multilayer Networking - TNC 2017
 
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...
Alcatel-Lucent Cloud: Network Functions Virtualization - The New Virtual Real...
 
ECI Risk Free Transition to Packet-UTC LATAM-April 2016
ECI Risk Free Transition to Packet-UTC LATAM-April 2016ECI Risk Free Transition to Packet-UTC LATAM-April 2016
ECI Risk Free Transition to Packet-UTC LATAM-April 2016
 
Managing and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSManaging and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSS
 
ECI UTC Webinar MPLS-TP Value for Utilities-dec 2015
ECI UTC Webinar MPLS-TP Value for Utilities-dec 2015ECI UTC Webinar MPLS-TP Value for Utilities-dec 2015
ECI UTC Webinar MPLS-TP Value for Utilities-dec 2015
 
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
 
Colt inter-provider SDN NNIs and APIs
Colt inter-provider SDN NNIs and APIsColt inter-provider SDN NNIs and APIs
Colt inter-provider SDN NNIs and APIs
 
NEC’s vEPC Solution
NEC’s vEPC SolutionNEC’s vEPC Solution
NEC’s vEPC Solution
 
Colt sdn-and-nfv-experience-lernings-and-future-plans
Colt sdn-and-nfv-experience-lernings-and-future-plansColt sdn-and-nfv-experience-lernings-and-future-plans
Colt sdn-and-nfv-experience-lernings-and-future-plans
 
ECI - The Elastic Network - winds of change
ECI - The Elastic Network - winds of changeECI - The Elastic Network - winds of change
ECI - The Elastic Network - winds of change
 
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
09 (IDNOG02) Services SDN & NFV Delivering more with less by Mochammad Irzan
 
Colt VCPE and NFV at L123 SDN WC 2015
Colt VCPE and NFV at L123 SDN WC 2015Colt VCPE and NFV at L123 SDN WC 2015
Colt VCPE and NFV at L123 SDN WC 2015
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackSupporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStack
 
ECI OpenFlow 2.0 the Future of SDN
ECI OpenFlow 2.0 the Future of SDN ECI OpenFlow 2.0 the Future of SDN
ECI OpenFlow 2.0 the Future of SDN
 
SDN and NFV Value in Business Services
SDN and NFV Value in Business ServicesSDN and NFV Value in Business Services
SDN and NFV Value in Business Services
 
Colt's SDN/NFV Vision
Colt's SDN/NFV VisionColt's SDN/NFV Vision
Colt's SDN/NFV Vision
 
Software Defined Future
Software Defined FutureSoftware Defined Future
Software Defined Future
 
ECI-NFV from Data Center to WAN - TNC Prague - June 2016
ECI-NFV from Data Center to WAN - TNC Prague - June 2016ECI-NFV from Data Center to WAN - TNC Prague - June 2016
ECI-NFV from Data Center to WAN - TNC Prague - June 2016
 
ïżŒ Network Innovations Driving Business Transformation
ïżŒ Network Innovations Driving Business TransformationïżŒ Network Innovations Driving Business Transformation
ïżŒ Network Innovations Driving Business Transformation
 
OVNC 2015-Service Provider SDN with Cloud Transformation
OVNC 2015-Service Provider SDN with Cloud TransformationOVNC 2015-Service Provider SDN with Cloud Transformation
OVNC 2015-Service Provider SDN with Cloud Transformation
 

Destaque

Dot BD Domain and Shared Registry Model- A Policy Proposal
Dot BD Domain and Shared Registry Model- A Policy Proposal Dot BD Domain and Shared Registry Model- A Policy Proposal
Dot BD Domain and Shared Registry Model- A Policy Proposal Bangladesh Network Operators Group
 
Best Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the worldBest Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the worldBangladesh Network Operators Group
 
OpenStack Cloud Administration Through Live Demonstration
OpenStack Cloud Administration Through Live DemonstrationOpenStack Cloud Administration Through Live Demonstration
OpenStack Cloud Administration Through Live DemonstrationBangladesh Network Operators Group
 
Broadband for Digital Bangladesh & recommendation from ISPAB
Broadband for Digital Bangladesh & recommendation from ISPABBroadband for Digital Bangladesh & recommendation from ISPAB
Broadband for Digital Bangladesh & recommendation from ISPABBangladesh Network Operators Group
 

Destaque (20)

vCPE Challenges and Ways Forward
vCPE Challenges and Ways Forward vCPE Challenges and Ways Forward
vCPE Challenges and Ways Forward
 
Converged & Efficient Licensing Framework
Converged & Efficient Licensing FrameworkConverged & Efficient Licensing Framework
Converged & Efficient Licensing Framework
 
Traffic Engineering for CDNs
Traffic Engineering for CDNs Traffic Engineering for CDNs
Traffic Engineering for CDNs
 
Securing Asterisk: A practical approach
Securing Asterisk: A practical approachSecuring Asterisk: A practical approach
Securing Asterisk: A practical approach
 
Dot BD Domain and Shared Registry Model- A Policy Proposal
Dot BD Domain and Shared Registry Model- A Policy Proposal Dot BD Domain and Shared Registry Model- A Policy Proposal
Dot BD Domain and Shared Registry Model- A Policy Proposal
 
EDNS0 Client-Subnet for DNS Based CDNs
EDNS0 Client-Subnet for DNS Based CDNs EDNS0 Client-Subnet for DNS Based CDNs
EDNS0 Client-Subnet for DNS Based CDNs
 
ISOC Engagement Activities
ISOC Engagement ActivitiesISOC Engagement Activities
ISOC Engagement Activities
 
Best Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the worldBest Current Operational Practice (BCOP) - Updates from around the world
Best Current Operational Practice (BCOP) - Updates from around the world
 
bdNOG Conference Report
bdNOG Conference Report bdNOG Conference Report
bdNOG Conference Report
 
bdCERT Activities Update
bdCERT Activities UpdatebdCERT Activities Update
bdCERT Activities Update
 
IPv6 Address & Deployment Planning
IPv6 Address & Deployment PlanningIPv6 Address & Deployment Planning
IPv6 Address & Deployment Planning
 
ICANN Engagement Update
ICANN Engagement UpdateICANN Engagement Update
ICANN Engagement Update
 
APNIC42 Announcement
APNIC42 AnnouncementAPNIC42 Announcement
APNIC42 Announcement
 
OpenStack Cloud Administration Through Live Demonstration
OpenStack Cloud Administration Through Live DemonstrationOpenStack Cloud Administration Through Live Demonstration
OpenStack Cloud Administration Through Live Demonstration
 
Inter-AS MPLS VPN Deployment
Inter-AS MPLS VPN DeploymentInter-AS MPLS VPN Deployment
Inter-AS MPLS VPN Deployment
 
Resource Public Key Infrastructure (RPKI)
Resource Public Key Infrastructure (RPKI) Resource Public Key Infrastructure (RPKI)
Resource Public Key Infrastructure (RPKI)
 
Community Tools to Fight Against DDoS
Community Tools to Fight Against DDoS Community Tools to Fight Against DDoS
Community Tools to Fight Against DDoS
 
Broadband for Digital Bangladesh & recommendation from ISPAB
Broadband for Digital Bangladesh & recommendation from ISPABBroadband for Digital Bangladesh & recommendation from ISPAB
Broadband for Digital Bangladesh & recommendation from ISPAB
 
Awareness of Children Internet Addiction
Awareness of Children Internet Addiction Awareness of Children Internet Addiction
Awareness of Children Internet Addiction
 
Introduction to Software Defined Networking (SDN)
Introduction to Software Defined Networking (SDN)Introduction to Software Defined Networking (SDN)
Introduction to Software Defined Networking (SDN)
 

Semelhante a Challenges of L2 NID Based Architecture for vCPE and NFV Deployment

Network Function Virtualisation (NFV) BoF
Network Function Virtualisation (NFV) BoFNetwork Function Virtualisation (NFV) BoF
Network Function Virtualisation (NFV) BoFAPNIC
 
Introduction to Segment Routing
Introduction to Segment RoutingIntroduction to Segment Routing
Introduction to Segment RoutingMyNOG
 
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof KonkowskiPLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof KonkowskiPROIDEA
 
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...PROIDEA
 
Introducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment RoutingIntroducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment RoutingCisco Service Provider
 
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabric
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS FabricNFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabric
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabricozkan01
 
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...PROIDEA
 
LTE: Building next-gen application services for mobile telecoms
LTE: Building next-gen application services for mobile telecomsLTE: Building next-gen application services for mobile telecoms
LTE: Building next-gen application services for mobile telecomsNuoDB
 
Colt SD-WAN experience learnings and future plans
Colt SD-WAN experience learnings and future plansColt SD-WAN experience learnings and future plans
Colt SD-WAN experience learnings and future plansColt Technology Services
 
Inside Microsoft's FPGA-Based Configurable Cloud
Inside Microsoft's FPGA-Based Configurable CloudInside Microsoft's FPGA-Based Configurable Cloud
Inside Microsoft's FPGA-Based Configurable Cloudinside-BigData.com
 
Service Chaining - Cloud Network Services at Scale
Service Chaining - Cloud Network Services at ScaleService Chaining - Cloud Network Services at Scale
Service Chaining - Cloud Network Services at ScaleMarketingArrowECS_CZ
 
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...Jim St. Leger
 
Interconnecting Neutron and Network Operators' BGP VPNs
Interconnecting Neutron and Network Operators' BGP VPNsInterconnecting Neutron and Network Operators' BGP VPNs
Interconnecting Neutron and Network Operators' BGP VPNsThomas Morin
 
SANA Shamus-new CV
SANA Shamus-new CVSANA Shamus-new CV
SANA Shamus-new CVsana shamus
 
High Performance Networking Leveraging the DPDK and Growing Community
High Performance Networking Leveraging the DPDK and Growing CommunityHigh Performance Networking Leveraging the DPDK and Growing Community
High Performance Networking Leveraging the DPDK and Growing Community6WIND
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Canada
 
7th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session27th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session2NAIM Networks, Inc.
 
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktycznie
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktyczniePLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktycznie
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktyczniePROIDEA
 

Semelhante a Challenges of L2 NID Based Architecture for vCPE and NFV Deployment (20)

Network Function Virtualisation (NFV) BoF
Network Function Virtualisation (NFV) BoFNetwork Function Virtualisation (NFV) BoF
Network Function Virtualisation (NFV) BoF
 
Introduction to Segment Routing
Introduction to Segment RoutingIntroduction to Segment Routing
Introduction to Segment Routing
 
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof KonkowskiPLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usƂug przez operatorów – SP IWAN, Krzysztof Konkowski
 
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usƂug operatorskich w separacji od rodzaju ...
 
MENOG-Segment Routing Introduction
MENOG-Segment Routing IntroductionMENOG-Segment Routing Introduction
MENOG-Segment Routing Introduction
 
Introducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment RoutingIntroducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment Routing
 
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabric
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS FabricNFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabric
NFV SDN Summit March 2014 D1 07 kireeti_kompella Native MPLS Fabric
 
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...
PLNOG14: Evolved Programmable Network, architektura dla sieci operatorskich -...
 
LTE: Building next-gen application services for mobile telecoms
LTE: Building next-gen application services for mobile telecomsLTE: Building next-gen application services for mobile telecoms
LTE: Building next-gen application services for mobile telecoms
 
Colt SD-WAN experience learnings and future plans
Colt SD-WAN experience learnings and future plansColt SD-WAN experience learnings and future plans
Colt SD-WAN experience learnings and future plans
 
Open v ran
Open v ranOpen v ran
Open v ran
 
Inside Microsoft's FPGA-Based Configurable Cloud
Inside Microsoft's FPGA-Based Configurable CloudInside Microsoft's FPGA-Based Configurable Cloud
Inside Microsoft's FPGA-Based Configurable Cloud
 
Service Chaining - Cloud Network Services at Scale
Service Chaining - Cloud Network Services at ScaleService Chaining - Cloud Network Services at Scale
Service Chaining - Cloud Network Services at Scale
 
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...
DPDK Summit - 08 Sept 2014 - 6WIND - High Perf Networking Leveraging the DPDK...
 
Interconnecting Neutron and Network Operators' BGP VPNs
Interconnecting Neutron and Network Operators' BGP VPNsInterconnecting Neutron and Network Operators' BGP VPNs
Interconnecting Neutron and Network Operators' BGP VPNs
 
SANA Shamus-new CV
SANA Shamus-new CVSANA Shamus-new CV
SANA Shamus-new CV
 
High Performance Networking Leveraging the DPDK and Growing Community
High Performance Networking Leveraging the DPDK and Growing CommunityHigh Performance Networking Leveraging the DPDK and Growing Community
High Performance Networking Leveraging the DPDK and Growing Community
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
 
7th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session27th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session2
 
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktycznie
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktyczniePLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktycznie
PLNOG 7: Klaudiusz Staniek - MPLS a QoS - praktycznie
 

Mais de Bangladesh Network Operators Group

Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and Ceph
Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and CephAccelerating Hyper-Converged Enterprise Virtualization using Proxmox and Ceph
Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and CephBangladesh Network Operators Group
 
Network eWaste : Community role to manage end of life Product
Network eWaste : Community role to manage end of life ProductNetwork eWaste : Community role to manage end of life Product
Network eWaste : Community role to manage end of life ProductBangladesh Network Operators Group
 
A plenarily integrated SIEM solution and it’s Deployment
A plenarily integrated SIEM solution and it’s DeploymentA plenarily integrated SIEM solution and it’s Deployment
A plenarily integrated SIEM solution and it’s DeploymentBangladesh Network Operators Group
 
Contents Localization Initiatives to get better User Experience
Contents Localization Initiatives to get better User ExperienceContents Localization Initiatives to get better User Experience
Contents Localization Initiatives to get better User ExperienceBangladesh Network Operators Group
 
Re-define network visibility for capacity planning & forecasting with Grafana
Re-define network visibility for capacity planning & forecasting with GrafanaRe-define network visibility for capacity planning & forecasting with Grafana
Re-define network visibility for capacity planning & forecasting with GrafanaBangladesh Network Operators Group
 

Mais de Bangladesh Network Operators Group (20)

Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and Ceph
Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and CephAccelerating Hyper-Converged Enterprise Virtualization using Proxmox and Ceph
Accelerating Hyper-Converged Enterprise Virtualization using Proxmox and Ceph
 
Recent IRR changes by Yoshinobu Matsuzaki, IIJ
Recent IRR changes by Yoshinobu Matsuzaki, IIJRecent IRR changes by Yoshinobu Matsuzaki, IIJ
Recent IRR changes by Yoshinobu Matsuzaki, IIJ
 
Fact Sheets : Network Status in Bangladesh
Fact Sheets : Network Status in BangladeshFact Sheets : Network Status in Bangladesh
Fact Sheets : Network Status in Bangladesh
 
AI Driven Wi-Fi for the Bottom of the Pyramid
AI Driven Wi-Fi for the Bottom of the PyramidAI Driven Wi-Fi for the Bottom of the Pyramid
AI Driven Wi-Fi for the Bottom of the Pyramid
 
IPv6 Security Overview by QS Tahmeed, APNIC RCT
IPv6 Security Overview by QS Tahmeed, APNIC RCTIPv6 Security Overview by QS Tahmeed, APNIC RCT
IPv6 Security Overview by QS Tahmeed, APNIC RCT
 
Network eWaste : Community role to manage end of life Product
Network eWaste : Community role to manage end of life ProductNetwork eWaste : Community role to manage end of life Product
Network eWaste : Community role to manage end of life Product
 
A plenarily integrated SIEM solution and it’s Deployment
A plenarily integrated SIEM solution and it’s DeploymentA plenarily integrated SIEM solution and it’s Deployment
A plenarily integrated SIEM solution and it’s Deployment
 
IPv6 Deployment in South Asia 2022
IPv6 Deployment in South Asia  2022IPv6 Deployment in South Asia  2022
IPv6 Deployment in South Asia 2022
 
Introduction to Software Defined Networking (SDN)
Introduction to Software Defined Networking (SDN)Introduction to Software Defined Networking (SDN)
Introduction to Software Defined Networking (SDN)
 
RPKI Deployment Status in Bangladesh
RPKI Deployment Status in BangladeshRPKI Deployment Status in Bangladesh
RPKI Deployment Status in Bangladesh
 
An Overview about open UDP Services
An Overview about open UDP ServicesAn Overview about open UDP Services
An Overview about open UDP Services
 
12 Years in DNS Security As a Defender
12 Years in DNS Security As a Defender12 Years in DNS Security As a Defender
12 Years in DNS Security As a Defender
 
Contents Localization Initiatives to get better User Experience
Contents Localization Initiatives to get better User ExperienceContents Localization Initiatives to get better User Experience
Contents Localization Initiatives to get better User Experience
 
BdNOG-20220625-MT-v6.0.pptx
BdNOG-20220625-MT-v6.0.pptxBdNOG-20220625-MT-v6.0.pptx
BdNOG-20220625-MT-v6.0.pptx
 
Route Leak Prevension with BGP Community
Route Leak Prevension with BGP CommunityRoute Leak Prevension with BGP Community
Route Leak Prevension with BGP Community
 
Tale of a New Bangladeshi NIX
Tale of a New Bangladeshi NIXTale of a New Bangladeshi NIX
Tale of a New Bangladeshi NIX
 
MANRS for Network Operators
MANRS for Network OperatorsMANRS for Network Operators
MANRS for Network Operators
 
Re-define network visibility for capacity planning & forecasting with Grafana
Re-define network visibility for capacity planning & forecasting with GrafanaRe-define network visibility for capacity planning & forecasting with Grafana
Re-define network visibility for capacity planning & forecasting with Grafana
 
RPKI ROA updates
RPKI ROA updatesRPKI ROA updates
RPKI ROA updates
 
Blockchain Demystified
Blockchain DemystifiedBlockchain Demystified
Blockchain Demystified
 

Último

Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service AvailableCall Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service AvailableSeo
 
Top Rated Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...
Top Rated  Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...Top Rated  Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...
Top Rated Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...Call Girls in Nagpur High Profile
 
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls DubaiDubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubaikojalkojal131
 
Real Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirtReal Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirtrahman018755
 
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.soniya singh
 
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.soniya singh
 
(+971568250507 ))# Young Call Girls in Ajman By Pakistani Call Girls in ...
(+971568250507  ))#  Young Call Girls  in Ajman  By Pakistani Call Girls  in ...(+971568250507  ))#  Young Call Girls  in Ajman  By Pakistani Call Girls  in ...
(+971568250507 ))# Young Call Girls in Ajman By Pakistani Call Girls in ...Escorts Call Girls
 
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...Delhi Call girls
 
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...singhpriety023
 
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.soniya singh
 
Russian Call Girls Pune (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...
Russian Call Girls Pune  (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...Russian Call Girls Pune  (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...
Russian Call Girls Pune (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...SUHANI PANDEY
 
Russian Call girl in Ajman +971563133746 Ajman Call girl Service
Russian Call girl in Ajman +971563133746 Ajman Call girl ServiceRussian Call girl in Ajman +971563133746 Ajman Call girl Service
Russian Call girl in Ajman +971563133746 Ajman Call girl Servicegwenoracqe6
 
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort Service
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort ServiceBusty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort Service
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort ServiceDelhi Call girls
 
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebGDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebJames Anderson
 
On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024APNIC
 
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...tanu pandey
 

Último (20)

Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service AvailableCall Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
Call Girls Ludhiana Just Call 98765-12871 Top Class Call Girl Service Available
 
Top Rated Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...
Top Rated  Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...Top Rated  Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...
Top Rated Pune Call Girls Daund ⟟ 6297143586 ⟟ Call Me For Genuine Sex Servi...
 
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls DubaiDubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
Dubai=Desi Dubai Call Girls O525547819 Outdoor Call Girls Dubai
 
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
(INDIRA) Call Girl Pune Call Now 8250077686 Pune Escorts 24x7
 
Real Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirtReal Men Wear Diapers T Shirts sweatshirt
Real Men Wear Diapers T Shirts sweatshirt
 
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Rani Bagh Escort Service Delhi N.C.R.
 
Low Sexy Call Girls In Mohali 9053900678 đŸ„”Have Save And Good Place đŸ„”
Low Sexy Call Girls In Mohali 9053900678 đŸ„”Have Save And Good Place đŸ„”Low Sexy Call Girls In Mohali 9053900678 đŸ„”Have Save And Good Place đŸ„”
Low Sexy Call Girls In Mohali 9053900678 đŸ„”Have Save And Good Place đŸ„”
 
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Shahpur Jat Escort Service Delhi N.C.R.
 
(+971568250507 ))# Young Call Girls in Ajman By Pakistani Call Girls in ...
(+971568250507  ))#  Young Call Girls  in Ajman  By Pakistani Call Girls  in ...(+971568250507  ))#  Young Call Girls  in Ajman  By Pakistani Call Girls  in ...
(+971568250507 ))# Young Call Girls in Ajman By Pakistani Call Girls in ...
 
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...
Hire↠Young Call Girls in Tilak nagar (Delhi) ☎ 9205541914 ☎ Independent Esc...
 
Dwarka Sector 26 Call Girls | Delhi | 9999965857 đŸ«Š Vanshika Verma More Our Se...
Dwarka Sector 26 Call Girls | Delhi | 9999965857 đŸ«Š Vanshika Verma More Our Se...Dwarka Sector 26 Call Girls | Delhi | 9999965857 đŸ«Š Vanshika Verma More Our Se...
Dwarka Sector 26 Call Girls | Delhi | 9999965857 đŸ«Š Vanshika Verma More Our Se...
 
valsad Escorts Service ☎ 6378878445 ( Sakshi Sinha ) High Profile Call Girls...
valsad Escorts Service ☎ 6378878445 ( Sakshi Sinha ) High Profile Call Girls...valsad Escorts Service ☎ 6378878445 ( Sakshi Sinha ) High Profile Call Girls...
valsad Escorts Service ☎ 6378878445 ( Sakshi Sinha ) High Profile Call Girls...
 
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting  High Prof...
VIP Model Call Girls Hadapsar ( Pune ) Call ON 9905417584 Starting High Prof...
 
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.
Call Now ☎ 8264348440 !! Call Girls in Sarai Rohilla Escort Service Delhi N.C.R.
 
Russian Call Girls Pune (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...
Russian Call Girls Pune  (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...Russian Call Girls Pune  (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...
Russian Call Girls Pune (Adult Only) 8005736733 Escort Service 24x7 Cash Pay...
 
Russian Call girl in Ajman +971563133746 Ajman Call girl Service
Russian Call girl in Ajman +971563133746 Ajman Call girl ServiceRussian Call girl in Ajman +971563133746 Ajman Call girl Service
Russian Call girl in Ajman +971563133746 Ajman Call girl Service
 
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort Service
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort ServiceBusty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort Service
Busty Desi⚡Call Girls in Vasundhara Ghaziabad >àŒ’8448380779 Escort Service
 
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark WebGDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
GDG Cloud Southlake 32: Kyle Hettinger: Demystifying the Dark Web
 
On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024On Starlink, presented by Geoff Huston at NZNOG 2024
On Starlink, presented by Geoff Huston at NZNOG 2024
 
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...Pune Airport ( Call Girls ) Pune  6297143586  Hot Model With Sexy Bhabi Ready...
Pune Airport ( Call Girls ) Pune 6297143586 Hot Model With Sexy Bhabi Ready...
 

Challenges of L2 NID Based Architecture for vCPE and NFV Deployment

  • 1. Challenges of Layer 2 NID Based Architecture For vCPE/NFV Deployments Santanu Dasgupta Sr. Consulting Engineer – Global Service Provider Network Architecture BDNOG-3 May, 2015
  • 2. 2© 2013-2014 Cisco and/or its affiliates. All rights reserved. Background and Context
  • 3. 3© 2013-2014 Cisco and/or its affiliates. All rights reserved. “Network Functions” in SP Network Architecture Landscape LTE Smartphone Access xDSL WiFi Smartphone PC RNC2G 3G Ethernet CE NodeB eNodeB AP Small Cell FAP Gateways / Service Edge OSS/BSS Subsystems and Control Data Plane Voice Video Data Core Network Infrastructure IMS xDSLHFC PGWSGW 2/3G GGSN 2/3G SGSN MME ePDG eWAG PE Metro Network Infrastructure NAT FW IPSec DPICGNCaching Opt MSC-SMGW A-SBC I-SBC BGCF MGCF PS / RLS DRA Video ingestion DRM Video Network EMS Provisioning Analytics Billing Radius DNS DHCP S-CSCF P-CSCF I-CSCF Trans- coding Cache Control Policy Parental control HLR HSS ENUM TAS SMS-C Services OCS MMS-C HCSRMS xDSLDSLAM DSL/ FTTX BNG Core Routing Metro Ethernet Biz CPE Consumer CPE Cable Modem CMTS Capacity Planning WLC SecGW HNB-GW Policy SDN Controller BGP server Metro Ethernet Data CenterCore and Data Center Network Infrastructure
  • 4. 4© 2013-2014 Cisco and/or its affiliates. All rights reserved. Virtualization of “Network Functions” Existing Hardware / Appliance based Network Functions (NFs) Virtualized NFs running as VM on x86 Server Platform Step 1: Decouple software from underlying hardware Step 2: Port it as a VM/ container on x86 Server platform running as a Network Function Data Center Switching Infrastructure Hypervisor vFW vCPE vDPI vLB Hypervisor
  • 5. 5© 2013-2014 Cisco and/or its affiliates. All rights reserved. NFV, SDN & Orchestration Together Partial list, just a few main ones are mentioned here Ethernet Switching Network Underlay Hypervisor Hypervisor Hypervisor NAT Firewall DPI Orchestration and SDN Control Function Storage Server 1 Server 2 Server 3 Firewall DPI VM / VNF Lifecycle Management in End-to-end manner Network Plumbing to orchestrate dynamic topologies Configuration Management of the VNFs Integration with Other DC/POD And the WAN OAM, Assurance, Analytics Standard APIs NAT
  • 6. 6© 2013-2014 Cisco and/or its affiliates. All rights reserved. Traditional Managed CPE with IP/MPLS L3VPN PE PE P CE CE Carrier Ethernet / Backhaul Carrier Ethernet / Backhaul Â§ï‚§â€Ż There are multiple genuine and perceived issues in the traditional service delivery model – Â§ï‚§â€Ż CPE provisioning and servicing often require truck roll (sending engineers) Ă ïƒ  high OPEX Â§ï‚§â€Ż The amount of feature sets enabled on the on-premise CPE makes the solution complex to operate Â§ï‚§â€Ż Service delivery is not agile, lacks automation, service turn-up / changes takes a lot of time Â§ï‚§â€Ż On site CPE’s are often expensive and not an open platform Â§ï‚§â€Ż The industry is expecting something that is more open, agile, fully automated, flexible to address different market segments and can help the operators to reduce their TCO Â§ï‚§â€Ż This is where L2 NID on-premises + vCPE architecture discussion for business VPN started almost 2 years back in the industry MP-BGP Static / IGP / eBGPStatic / IGP / eBGP MPLS Core Branch Branch
  • 7. 7© 2013-2014 Cisco and/or its affiliates. All rights reserved. What is “L2 NID” ? Â§ï‚§â€Ż Layer 2 NID – Layer 2 Network Interface Device (example Cisco ME 1200) Â§ï‚§â€Ż Some calls it Layer 2 Network Termination Device (NTD) Ă ïƒ  we will call it L2 NID for this presentation Â§ï‚§â€Ż L2 NID is the device that Carrier Ethernet Operator drops at Customer Premises to terminate the Ethernet last mile Â§ï‚§â€Ż It is managed by the operator Â§ï‚§â€Ż It has user facing interfaces (UNI) and network facing interfaces (NNI) – typically all Ethernet Â§ï‚§â€Ż It marks the demarcation point between the Operator and Customer Network Â§ï‚§â€Ż The L2 NID is typically a 4 to 6 port FE/GE/10GE L2 switch with some other capabilities such as – Â§ï‚§â€Ż Ethernet OAM (CFM, Y.1731) for fault & performance management, Service Activation (Y.1564), timing support (mobile b/h) etc. Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core Typical Carrier Ethernet Operation Domain Demarcation Customer Premises PE
  • 8. 8© 2013-2014 Cisco and/or its affiliates. All rights reserved. L2 NID + vCPE Architecture Proposal for Managed CPE/VPN Â§ï‚§â€Ż No need to have a Layer 3 CPE at Customer premises anymore Â§ï‚§â€Ż Virtualize the L3 CPE and Put that at SP’s POP or Cloud / NFV Data Center Â§ï‚§â€Ż Make the branch simplified with only one device, where complex features are running at SP’s Cloud making it easier to operate Ă ïƒ  may also help to reduce cost Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core One Device on Customer Prem vCPE vCPE Layer 2 Backhaul of Branch Traffic to vCPE PE-CE RoutingVery simple on-premises CPE L3 CPE Virtualized, Complex features running at SP’s premises PECPE Animated
  • 9. 9© 2013-2014 Cisco and/or its affiliates. All rights reserved. L2 NID + vCPE Architecture Proposal for Managed CPE/VPN Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core One Device on Customer Prem vCPE vCPE Layer 2 Backhaul of Branch Traffic to vCPE PE-CE RoutingVery simple on-premises CPE L3 CPE Virtualized, Complex features running at SP’s premises PE Â§ï‚§â€Ż No need to have a Layer 3 CPE at Customer premises anymore Â§ï‚§â€Ż Virtualize the L3 CPE and Put that at SP’s POP or Cloud / NFV Data Center Â§ï‚§â€Ż Make the branch simplified with only one device, where complex features are running at SP’s Cloud making it easier to operate Ă ïƒ  may also help to reduce cost
  • 10. 10© 2013-2014 Cisco and/or its affiliates. All rights reserved. Why The L2 NID Based Alternate Looked Promising ? Carrier Ethernet AGG AGG NPE NPE L2 NID Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core CPE AGG Two Devices on Customer Prem One Device on Customer Prem MPLS Core vCPE vCPE PE-CE Routing over Carrier Ethernet Transport Layer 2 Backhaul of Branch Traffic to vCPE PE-CE Routing Traditional Model L2 NID+ vCPE Model Reduction of Customer Premise Devices from Two to One was Promising to Reduce Cost and Complexity PE PE
  • 11. 11© 2013-2014 Cisco and/or its affiliates. All rights reserved. This Would Enable Agile Service Creation too Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core One Device on Customer Prem vCPE vFW vDPI NFV DC NFV and Cloud Orchestration Â§ï‚§â€Ż NFV and Orchestration also enables agile service creation and turn-up Â§ï‚§â€Ż vCPE can be chained with rich set of NFV, Cloud IaaS, PaaS and SaaS services (SP hosted or 3rd party) Â§ï‚§â€Ż This is true irrespective of the on-premises CPE type – be in L2 NID or L3 CPE or whatever else PE PE Cloud DC (SP / 3rd Party) IaaS / PaaS / SaaS
  • 12. 12© 2013-2014 Cisco and/or its affiliates. All rights reserved. Challenges with the L2 NID Based Architecture, where there is no L3 CPE at the Branch
  • 13. 13© 2013-2014 Cisco and/or its affiliates. All rights reserved. MAC Address Scale Issues for the NFV DC . . . 250 MAC Address 250 MAC Address 250 MAC Address Carrier Ethernet AGG AGG AGG NPE NPE L2 NID L2 NID L2 NID L2 NID TOR Switch vCPE vCPE L2 Trunk / QinQ L3 VPN PE L3 Links 1 Million MAC Address!!! (4000 customers @250 MAC) Â§ï‚§â€Ż NFV DC’s are built with a network switching underlay Ă ïƒ  servers aren’t directly connected to the NPE Â§ï‚§â€Ż With layer 2 backhaul of traffic from customer branches, the NFV DC switching layer will learn all customer MAC addresses Â§ï‚§â€Ż An example site with 4000 customer sites and 250 MAC address per site means 1 Million MACs Â§ï‚§â€Ż The switching underlay / TOR switches will now need to support and learn 1Million MAC addresses Â§ï‚§â€Ż Impacting cost of the network, service scale, convergence time upon failure due to large table size Â§ï‚§â€Ż This can be technically solved with end-to-end overlay (like GRE or MPLS PW) from branch to vCPE or NPE to vCPE Ă ïƒ  defeating the original simplicity of the proposed architecture to a major extent L2 NID L2 NID L2 NID
  • 14. 14© 2013-2014 Cisco and/or its affiliates. All rights reserved. Security Exposure Due to Extension of the Broadcast Domain Carrier Ethernet AGG AGG AGG NPE vCPE L2 NID L2 NID L2 NID . . . vCPE vCPE vCPE TOR Switch Customer’s L2 Domain Extended to NFV DC’s delivering vCPE Â§ï‚§â€Ż By not having a L3 CPE at branch, and vCPE at NFV DC, it extends customer’s Layer 2 domain all the way to the NFV DC Â§ï‚§â€Ż For a POP with 4000 customers, it means extension of 4000 layer 2 domains hitting the NFV DC Ă ïƒ  SP typically has no control what assets are there at these branches and how secure they are Â§ï‚§â€Ż This poses a significant security risk to SP’s infrastructure for various DDoS/other attacks NFV DC
  • 15. 15© 2013-2014 Cisco and/or its affiliates. All rights reserved. Potential Risks Due to Layer 2 Loops Carrier Ethernet AGG AGG AGG NPE vCPEL2 NID L2 NID vCPE vCPE vCPE TOR Switch L2 NID L2 NID To Customer LAN To Customer LAN Customer LAN’s STP Domain Operators domain Starts here onwards Â§ï‚§â€Ż In a L2 NID only based architecture, it is critical to demarcate customer’s STP domains at the L2 NID Â§ï‚§â€Ż There could be dual homing situations, where L2 NID may have to participate in Customer’s Spanning Tree domain, also may require some form of loop prevention mechanism on the NNI side too Â§ï‚§â€Ż Such dual homed connectivity requirement pose risks. Operational errors may cause the SP infrastructure to get impacted due to layer 2 loops originated from a customer branch
  • 16. 16© 2013-2014 Cisco and/or its affiliates. All rights reserved. High Availability Design Challenges Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core vCPE1 vCPE2 PE-CE Routing PE Layer 2 Backhaul of Branch Traffic to vCPE Â§ï‚§â€Ż For situations with two vCPE’s for HA, the two vCPE’s need to run HSRP / VRRP (lets consider VRRP) Â§ï‚§â€Ż There are multiple ways to run the VRRP traffic between the two vCPE’s that comes with different levels of complexity and different degree of reliability Â§ï‚§â€Ż The “L2 NID ĂŸïƒŸĂ ïƒ  vCPE” connectivity tracking becomes key for reliable bi-directional packet forwarding
  • 17. 17© 2013-2014 Cisco and/or its affiliates. All rights reserved. High Availability Design Challenges VRRP on Directly Connected Links Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core vCPE1 vCPE2 PE-CE Routing PE Layer 2 Backhaul of Branch Traffic to vCPE Â§ï‚§â€Ż Simplest way to run VRRP Ă ïƒ  but requires a L2 segment between two NFV DCs (typically two sites) Â§ï‚§â€Ż Less reliable, since VRRP operation is blind to the connectivity failures from vCPE to L2 NID Â§ï‚§â€Ż If vCPE1 is active on VRRP segment, and if vCPE1 to the L2 NID connectivity fails, vCPE1 may continue to remain active Ă ïƒ  will cause service outage VRRP
  • 18. 18© 2013-2014 Cisco and/or its affiliates. All rights reserved. High Availability Design Challenges VRRP on Via the Carrier Ethernet Network Carrier Ethernet AGG AGG AGG NPE2 NPE1 L2 NID MPLS Core vCPE1 vCPE2 PE Â§ï‚§â€Ż To address the reliability issue, VRRP may be carried across the Carrier Ethernet network Â§ï‚§â€Ż vCPE1 – NPE1 – NPE2 – vCPE2 Ă ïƒ  need a L2 path, FRR enabled explicit path between NPE’s to force the path Â§ï‚§â€Ż vCPE1 – NPE1 – AGG 
 – AGG – NPE2 – vCPE2 Â§ï‚§â€Ż More reliable now, since VRRP traffic will be dropped if the L2NID to vCPE connectivity fails, but – Â§ï‚§â€Ż Carrier Ethernet network to ensure VRRP packets aren’t dropped during congestion – that will trigger false failover Â§ï‚§â€Ż VRRP delay timers may not be very aggressive, Carrier Ethernet network to ensure minimum delay Â§ï‚§â€Ż This is more complex to provision and operate VRRP Potential Alternate Paths for VRRP Sessions
  • 19. 19© 2013-2014 Cisco and/or its affiliates. All rights reserved. High Availability Design Challenges VRRP via the Carrier Ethernet Network + IEEE 802.1ag (CFM) Carrier Ethernet AGG AGG AGG NPE2 NPE1 L2 NID MPLS Core vCPE1 vCPE2 PE Â§ï‚§â€Ż The previous solution is still not end-to-end, not covering the AGG to the L2 NID connectivity Â§ï‚§â€Ż For an end-to-end reliable operations, that is a key requirement Â§ï‚§â€Ż A way to address this challenge is to use VRRP and CFM (802.1ag) together Â§ï‚§â€Ż CFM runs end-to-end from L2NID to vCPE. When due to any failure on the path, CFM session expires Ă ïƒ  interface of vCPE goes to line protocol “down” state Ă ïƒ  VRRP traffic cannot go out any more out of the interface Ă ïƒ  VRRP switchover takes place to the standby Â§ï‚§â€Ż Solves this HA issue, but brings back a lot of complexities in the network Â§ï‚§â€Ż We’re trying to remove complexities by removing L3 CPE from branch Ă ïƒ  but we introduced different complexities now VRRP 802.1ag CFM Sessions VRRP CFM CFM
  • 20. 20© 2013-2014 Cisco and/or its affiliates. All rights reserved. Carrier Ethernet AGG AGG AGG NPE2 NPE1 L2 NID MPLS Core vCPE1 vCPE2 PE VRRP 802.1ag CFM Sessions VRRP CFM CFM High Availability Design Challenges Upstream Routing from vCPE to the L3VPN PE PE-CE Routing with Conditional Advertisement depending on vCPE to L2 NID connectivity and VRRP status (typically will require eBGP) Â§ï‚§â€Ż The vCPE’s need to run PE-CE routing with eBGP / IGP or Static routing Â§ï‚§â€Ż The vCPE’s now need to perform conditional route advertisement to the L3 VPN PE’s depending on the reachability of vCPE to L2 NID and VRRP status Â§ï‚§â€Ż If vCPE1 is the preferred path for the downstream traffic, but vCPE1 has lost connectivity to L2 NID, the vCPE1 needs to make L3VPN PE aware by advertising routes with less preferred attribute than vCPE2 Â§ï‚§â€Ż Typically restrict the PE-CE routing protocol to eBGP and may add more complexity in the design
  • 21. 21© 2013-2014 Cisco and/or its affiliates. All rights reserved. Lack of L3 Capability @Branch Will Limit Available Services Carrier Ethernet AGG AGG AGG NPE NPE L2 NID MPLS Core vCPE1 vCPE2 PEVRRP Branch Â§ï‚§â€Ż Many customer may require capabilities at branch that requires Layer 3 devices Â§ï‚§â€Ż Such as IPSec VPN or WAN Acceleration Â§ï‚§â€Ż Many Service Providers are looking forward to use 3G or 4G LTE as backup connectivity Â§ï‚§â€Ż Typical L2 NIDs do not have those interfaces Ă ïƒ  forcing another CPE for the backup Â§ï‚§â€Ż If Hierarchical & granular QOS is a requirement at the branch, this could be challenging with L2 NID too
  • 22. 22© 2013-2014 Cisco and/or its affiliates. All rights reserved. Conclusion of L2 NID + vCPE Architecture Â§ï‚§â€Ż We were attempting to simplify the architecture by removing L3 CPE from the branch in the managed CPE / VPN architecture Â§ï‚§â€Ż But in that process, complexities of other types got injected back into the network Â§ï‚§â€Ż MAC address scaling issue impacting service scale, convergence, cost Â§ï‚§â€Ż Security exposure of the vCPE / NFV DC and the SP infrastructure due to extension of L2 domains Â§ï‚§â€Ż Possible chances of Layer 2 loops due to operational errors Â§ï‚§â€Ż Complex design requirements to satisfy high availability Ă ïƒ  more difficult to operate Â§ï‚§â€Ż It may create further limitations when it comes to service availability at the branch Â§ï‚§â€Ż Layer 3 services such as IPSec, WAN Acceleration etc. are not possible from the branch anymore Â§ï‚§â€Ż 3G / 4G LTE on the same device Â§ï‚§â€Ż Hierarchical and Granular QOS from the branch
  • 23. 23© 2013-2014 Cisco and/or its affiliates. All rights reserved. So What We May Do To Approach the Problem ? This is My Recommendation J Carrier Ethernet AGG AGG AGG NPE NPE L3 NID MPLS Core vFW vCPE* vDPI NFV DC NFV and Cloud Orchestration Cloud DC (SP / 3rd Party) PE PE Â§ï‚§â€Ż Keep a L3 CPE at branch, may be physical or virtual Ă ïƒ  call it a L3 NID or L3 CPE or whatever you like Â§ï‚§â€Ż We need to demarcate customer’s L2 network at the branch itself, that’s how the networks scaled Â§ï‚§â€Ż This helps avoid MAC address scale, security & L2 Loop issues. Also avoids additional issues with VRRP design Â§ï‚§â€Ż Make the L3 CPE at branch Zero Touch Provisioning (ZTP) capable – to achieve automation and agility Â§ï‚§â€Ż If required, try and make the L3 CPE at branch simplified by reducing the footprint of “enabled features” Â§ï‚§â€Ż Provision complex CPE features on NFV DC (may include advanced routing on a vCPE) Â§ï‚§â€Ż Have the ability to service chain vCPE with other rich set of functions using NFV orchestration system Ă ïƒ  make it agile! L3 NID or L3 CPE Simple Routing like Static / IGP with vCPE, or PE-CE Routing from branchDemarcate Customer L2 Network Here vCPE* - May not be reqd. most of the time IaaS / PaaS / SaaS
  • 25. 25© 2013-2014 Cisco and/or its affiliates. All rights reserved. NFV – How to build / Augment Operations skillsets ‱  Most existing technologies, protocols and associated skills are equally required ‱  On top of that, there are needs for acquisition of New Skills ‱  x86 Server Virtualization ‱  Virtualization on Linux (and KVM/QEMU) Environment ‱  Cloud Orchestration Systems – such as OpenStack ‱  Virtual Switches – OVS, Netmap/VALE, Snabbswitch, Vendor Specific etc ‱  SDN Controllers – OpenDayLight, Vendor Specific ‱  Device Programmability and APIs – NETCONF, Yang, RESTCONF, REST APIs, OF
. ‱  Service Function Chaining – specially NSH (Network Service Header) ‱  Network based Virtual Overlay transport – VXLAN, MPLSoGRE/UDP, LISP, L2TPv3
.. ‱  Automation Tools – puppet / chef etc. ‱  Management, Orchestration, OSS Fundamentals, ‱  
..