09 (idnog02) services sdn & nfv delivering more with less by mochammad irzan
TRANSCRIPT
Copyright © 2014 Juniper Networks, Inc. 1
Services SDN & NFV: Delivering More with Less
Mochammad Irzan [email protected]
Copyright © 2014 Juniper Networks, Inc. 2
VIRTUALIZATION
ACTIVATE AND INSTANTIATE SERVICE
Service Provider
MANAGED AUTOMATED
VIRTUAL SERVICES
CPE Access Network Service Edge Data Center
SDN Controller SDN Controller SDN Controller
Access Router
BGP/MPLS Overlay Network
PE Router
CONTRAIL SERVICE MAESTRO AND SDN CONTROLLER
Local Service Chain Lightweight or Full CPE
Service Chain in POP Multi-tenant
Centralized Services
Service Chain in DC Multi-tenant
DESIGN AND AUTOMATE NETWORK SERVICE
DEVICE/ MANAGEMENT MONITOR & TROUBLESHOOT
Edge Services Improved Security
ENTERPRISE IT NETWORK DESIGNER OPERATIONS
Access virtual func?ons
Service Chain in Access
Copyright © 2014 Juniper Networks, Inc. 4
NFV SOLUTION BLOCK Customer Portal
CRM
OSS/BSS Orchestration Integration
Contrail Service Maestro (NFV) Network Service Orchestration
Contrail Cloud Platform (SDN) Virtual Infrastructure Management
OS & Hypervisor Physical Servers
• Customer Login and Product Catalog • Customer Inventory & Billing • Tenant and Site Management • Service workflow • System integration
• Network Service Data Model • Service Intelligence and Chaining • VNF Lifecycle Mgmt & Placement • HA and SLA support • Fault Management & Troubleshooting
PARTNER
JUNIPER
• COTS and x86 Server • Operating System • Hypervisors • System Management
VENDORS
Copyright © 2014 Juniper Networks, Inc. 6
CONTRAIL – Software Networking system
Config Plane: Bi-‐direc2onal real-‐2me message bus using XMPP
Scale-‐out Mul2-‐vendor VNFs can run on the same plaAorm
Interoperates with different Orchestra2on systems
Integrates with § different Linux Hosts, § mul2ple hypervisors, and § mul2-‐vendor X86 servers
Mul2-‐vendor SDN Gateway (any router that can talk BGP and the dynamic tunneling protocols)
Data Plane: Overlay Tunnels (MPLSoGRE, MPLSoUDP, VXLAN)
Control Plane: BGP Control Plane (logically centralized, physically distributed Controller elements)
Automa2on: REST APIs to integrate with different Orchestra2on Systems
Control /Config Plane: for Bare Metal support -‐ OVSDB or EVPN + Netconf
Mul2-‐vendor TOR support to connect Bare Metal Servers, using standard control plane & config plane protocols
8 Copyright © 2013 Juniper Networks, Inc.
DYNAMIC SERVICE DELIVERY
Control Node
vRouter
VM
VM
VM
vRouter
VM
VM
VM vRouter
VM
VM
VM
GW
vRouter
VM
VM
VM
SP Network (IP/MPLS)
Enterprise/ Consumer Customers
XMPP XMPP
XMPP
XMPP
BGP
Switching Network
RR
BGP
Copyright © 2014 Juniper Networks, Inc. 9
WAN (Future)
CONTRAIL SERVICE MAESTRO Customer
Portal
OSS/BSS
Internet Public Cloud
500K Sites Distributed Network 100 or 1000s of Tenants and Services Repeatable
DC1: Physical and Virtual Function DC2: Physical and Virtual Function
SCG App
vCPE App
vSCR App
vBNG App
Service Intelligence
Integration & Orchestration framework YANG Data Model & HEAT Resources Catalog
EMS PNF-M VNF-M VIM Layer
Contrail Service Maestro
REST API SERVER PNF VNF VNF VNF VNF PNF
Config Template
Service Composition
Service Instantiation
Copyright © 2014 Juniper Networks, Inc. 11
JUNIPER NFV SOLUTION USE CASES
Cloud based Virtual CPE
Universal CPE
vMX
vSCG/Gi-‐LAN
Copyright © 2014 Juniper Networks, Inc. 12
SP Managed Branch Connec3vity Enterprise Branch: Simple L2/L3 device Outsources network services L3-‐L7 to the SP
vCPE/uCPE WIRELINE USE-CASE
Internet
MPLS CORE
L2 ACCESS NETWORK
VRF per tenant L2, L3 termina3on
L2 transpor
t
Red tenant
Green tenant
Public Cloud Azure, Salesforce
Composite Firewall
DPI NAT DDOS Secure Load
Balancer Secondary Cache
L3 POP w/Server Racks
Internet Breakout
Site-Site Connectivity
Remote Site Security
Enterprise Cloud App
Gold Package
OSS/BSS Layer
OPEN API SERVER
DESIGN NETWORK SERVICE
NETWORK DESIGNER vCPE App
Service Intelligence
Service Maestro CATALOG
NETWORK SERVICE
PNF Manager
Contrail Cloud Platform
VNF Manager Contrail Cloud
Plugin
WAP
uCPE (w/ VNF hosting)
vCPE (Simple L2 device)
Primary Cache WLAN
Controller DHCP Server
Service Provider DC w/Server Racks
Distributed L3 POP DC: VNFs for proximity services like Caching, DHCP, Firewall, DPI, WLAN
Centralized DC: VNFs like Caching, DDOS, Cer?ficate
Server, Etc
Enterprise Public Cloud
Service
Internet Breakout Service
Copyright © 2014 Juniper Networks, Inc. 13
Design Once and Instan?ate many with customiza?on BUSINESS USE CASES
Service Provider
Network Service Data Descriptor (Topology with YANG Model)
PNF VNF VNF VNF VNF PNF VNF VNF
LEFT INTERFACE
RIGHT INTERFACE
MGMT INTERFACE
VLINK
Operator tool: • Functional Designer • Network Designer • Configuration Template • Onboard • Modify & Update
Configuration Template
Network Designer for Service Composition
Copyright © 2014 Juniper Networks, Inc. 14
Internet
Use Case: Site to Site Security BUSINESS USE CASES
IP/MPLS VPN Branch
Location
Remote Office
Corporate Location IT Manager
IPSec
IPSec
Firewall
Firewall
CONTRAIL SERVICE MAESTRO
SITE-SITE SECURITY SERVICE
DESCRIPTOR APP
API SERVER
Copyright © 2014 Juniper Networks, Inc. 15
Internet
Use Case: Internet Breakout Service BUSINESS USE CASES
IP/MPLS VPN Branch
Location
Remote Office
Corporate Location IT Manager
IPSec
IPSec
Firewall
Firewall
CGNAT
CONTRAIL SERVICE MAESTRO
INTERNET BREAKOUT
SERVICE DESCRIPTOR
APP API
SERVER
Copyright © 2014 Juniper Networks, Inc. 16
Internet
SERVICE OFFERING FROM PORTAL
IP/MPLS VPN Branch
Location
Remote Office
Corporate Location IT Manager
IPSec
IPSec
Firewall
Firewall
CGNAT
UTM
Public Cloud Azure, Salesforce
Firewall
CONTRAIL SERVICE MAESTRO
DESCRIPTORS API
SERVER
Internet Breakout
Site-Site Connectivity
Remote Site Security
Enterprise Cloud App
Gold Security Service
Product Catalog OSS/BSS Layer
A La Carte Services
Copyright © 2014 Juniper Networks, Inc. 17
Subscriber Termina3on
Service Complex (Telco Cloud)
P-‐GW/GGSN
IP
Supports 3GPP defined Traffic Detec?on Func?on (TDF)
Subscriber & Network Analy?cs
Applica?on-‐aware (DPI) service selec?on
Gx/Sd Gy/Gyn
RADIUS/CoA
PCRF/SRC AAA OCS
Business Edge
Subscriber Analy3cs
Subscriber control (policy & charging)
SDN Controller
MX-‐3D Service Control Gateway
BNG
SCG App
vCPE App
vSCR App
vBNG App
Service Intelligence
Integration & Orchestration framework YANG Service Data Model Catalog
Contrail Service Maestro
REST API
Use Case: Service Selec?on with Juniper Service Control Gateway (SCG) MOBILITY GI-LAN USE CASE
Internet
Service Hub
Copyright © 2014 Juniper Networks, Inc. 18
VMX Product
• Virtual JUNOS to be hosted on a VM • Follows standard JUNOS release cycles • Additional software licenses for different applications (vPE, vRR, vBNG)
• Hosted on a VM, Bare Metal, Linux Containers • Multi Core • DPDK, SR-IOV, virtIO
VCP (Virtualized Control Plane)
VFP (Virtualized Forward Plane)
Copyright © 2014 Juniper Networks, Inc. 20
INTEGRATED JUNIPER AND PARTNER SOLUTION
Juniper NFV Solution
PARTNER CRM & OMS
OSS/BSS Orchestration
Self Service Portal
Billing
Physical/Virtual Infrastructure (Network, Server, Storage)
Product Catalog
Service Intelligence (vCPE, uCPE, vSCG, vBNG)
Integration & Orchestration framework YANG Data Model & HEAT Resources
Heat Template
FCAPS PNF-M VNF-M Network Resource
Network Service
API Network Service Catalog
Operator
Inventory
Integration Layer
PARTNER: - Customer Portal and Applications
- Customer Inventory - Service Catalog - Billing
- Integration to legacy and other systems - Application logic - Data Center Orchestration - Overall User Experience - Network Rollout Projects
JUNIPER NFV: (Network Abstraction) - Network Service Heat template - Distributed & Multi-POP - YANG Data Model with HA/Failover - Lifecycle Management (PNF/VNF) - Network Overlay, Service Chain - FCAPS & Service Customization - Resource Management & Analytics - Localized Self/Auto Healing - Software Upgrade
CPE
MX
Network Data Collection & Analytics
OS and Hypervisor Virtual Infrastructure
Management
Server Mgmt
Network Service Chaining, HA & Scaling OS and Hypervisor
Polices
Copyright © 2014 Juniper Networks, Inc. 22
Moving forward…(TBSSMF)
• Think BIG, • Start Small,
• Move Fast!!!