• No results found

Datacenter Network Virtualization in Multi-Tenant Environments

N/A
N/A
Protected

Academic year: 2021

Share "Datacenter Network Virtualization in Multi-Tenant Environments"

Copied!
41
0
0

Loading.... (view fulltext now)

Full text

(1)

Datacenter Network Virtualization in

Multi-Tenant Environments

8. DFN-Forum Kommunikationstechnologien

Viktor Goldberg, Leibniz-Rechenzentrum, TU München

Florian Wohlfart, TU München Daniel Raumer, TU München

(2)

Network Functions Virtualization

09.06.2015 Viktor Goldberg 2

Applications

x86 Hardware

(3)
(4)

Building the Network Virtualized Datacenter

• • • • • • • •

Overlay Network Architecture

(5)

• VM traffic encapsulated inside a UDP/IP frame plus VNI identifier

• VNI defines the L2 domain

• encapsulation performed by a VTEP node

• VTEP is a software or physical switch (at the ToR)

Encapsulated frames are routed to the remote VTEP.

• remote VTEP strips the IP/UDP header

• forwards original frame to the local VM

• transparent to the network core, not aware of the VXLAN overlay

• only edge VTEP nodes need to be VXLAN aware

(6)

Open vSwitch (OVS)

09.06.2015 Viktor Goldberg 6

Design and Architecture

• • • • controller running in userspace slowpath datapath running in kernel fastpath

(7)
(8)

Open vSwitch (OVS)

09.06.2015 Viktor Goldberg 7

A Deep Dive

KER

(9)

09.06.2015 Viktor Goldberg 7 Datapath

KER

(10)
(11)

09.06.2015 Viktor Goldberg 7 Datapath

KER

(12)
(13)
(14)
(15)
(16)
(17)
(18)
(19)
(20)
(21)
(22)
(23)

09.06.2015 Viktor Goldberg 7 Datapath

vswitchd ovsdb-srv

ovs-dpctl OpenFlow ovs-vsctl

(24)
(25)

• routed traffic at the top of rack

• proven and trusted protocol for scale

• mature open standards for interoperability

• standard scalable model for virtualized and non-virtualized solutions

• minimized size of the L2 domain

• no VLAN scaling issues

(26)

Building the Network Virtualized Datacenter

Scaling an L3 network for East to West traffic

(27)

• running real kernel, switch and application code in a VM

• supports Open vSwitch

Motivation

• multi-tenant environment with two tenants T1 and T2

• overlapping IP networks and addresses

• completly transparent tunneling, even broadcast traffic (like ARP, DHCP)

(28)

Network Virtualization Overlays

(29)

09.06.2015 Viktor Goldberg 11

(30)
(31)
(32)
(33)
(34)
(35)
(36)

Network Virtualization Overlays

S1 – 172.16.116.135

sh ovs-vsctl add-port s1 vtep -- set interface vtep type=vxlan

option:remote_ip=172.16.116.136 option:key=flow ofport_request=10

S2 – 172.16.116.136

sh ovs-vsctl add-port s2 vtep -- set interface vtep type=vxlan

option:remote_ip=172.16.116.135 option:key=flow ofport_request=10

Demo - Interface Configuration

(37)
(38)

Network Virtualization Overlays

09.06.2015 Viktor Goldberg 14

(39)

09.06.2015 Viktor Goldberg 15

T1_1 ping 10.0.0.1 T2_1 ping 10.0.0.2

tcpdump –i eth0 [icmp type {0,8}]

tcpdump –i eth0 [icmp type {0,8}]

(40)

Conclusion

• simple design of physical environment to provide IP end-to-end connectivity only

• logic should be placed into “Intelligent Edges“, ToR switches like OVS

• logical tenant separation through VXLAN tunneling technologies

Future Work

• identification of services and tenants with specific needs

• deployment of a test environment

• long term goal: NFV rollout and optimization of physical underlay

(41)

09.06.2015 Viktor Goldberg 17

Thank You.

References

Related documents

This variable indicates that the average student enrolled in the online introductory finance course received a 21.13 lower score on the final exam than a student enrolled in

Similarly, Virtual Topology System supports VXLAN overlay from the software VTEP (VTF) to the hardware VTEP (ToR switch such as the Cisco Nexus 9000 Series) so that physical

Assume that stored data and data sets associated with critical business workloads and applications will always need to move among environments (internally managed datacenter,

(2) Preferences for fewer working hours are expected for employees with long working hours, long overtime hours, a long standard working week and for salaried employees,

Programs that allow individuals the opportunity to evoke control within their life through the participation of meaningful occupations can lead to positive occupational change

The authors are grateful to the other participants in this multi-site study, including federal staff from the Center for Mental Health Services and Center for Substance Abuse

After adjusting for relevant medical conditions, measures of acute severity of disease and burden of chronic medical comorbidities, and stroke severity, mild and moderate

This manual allows program directors and volunteers to gain a greater knowledge and direction regarding underlying skills deficits and how to target them, how these deficits put