virtualized services platform - red hat · virtualized services platform (vsp) ... • rich routing...
TRANSCRIPT
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Virtualized Services Platform
Overlay Solution with consistent policy capabilities
Luigi AnnunziataTechnical Business Development [email protected]
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
WHO IS NUAGE NETWORKS
Nuage is based in Silicon Valley with a team around the world
An Nokia venture focused on data center and branch office network
evolution for the cloud era
Creation of an Abstraction & Automation layer between networking
features and hardware equipment
Policy-driven networking design reflecting business directives, not
network protocols
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
TTM
OpEx
CaPex
SD-WAN
DC-SDN
Leverage Economies of Scale with x86 & Virtualization Technologies
Enable Automation & Templating
Accelerate Your Business with Datacenter SDN & Branch Office Software Defined WAN (SDWAN)
Business driversBusiness Driver
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
STATIC MANUAL NETWORKS HIGHLY AUTOMATED NETWORKS
AUTOMATIONABSTRACTION
CONTROL VISIBILITY
✓
✓ ✓
✓The SDN FrameworkFor Highly Automated
Networks
CUSTOMCOMPLEX
COSTLY CLOSED
The Networking Shift
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
MPLS VPNs INTERNET
BGP
Universal connectivity
Massive network scale
On-demand connections, anywhere
Massive service scale
MOBILE
Secure Network Slices
High performance
We can learn from other environments
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Nuage networks - comprehensive sdn solution
Virtualized Services Directory (VSD)• Network Policy Engine – abstracts complexity• Service templates and analytics
Virtualized Services Controller (VSC)• SDN Controller, programs the network• Rich routing feature set
Virtual Routing & Switching (VRS)• Distributed switch / router – L2-4 rules• Supports leading hypervisors and base metal assets• Virtual (VRS) and Physical (7850 VSG) form-factors
Network Services Gateway (NSG)• Network service platform for branches• L2-L4 Switching and routing with advanced network functions • Physical (7850 NSG) or Virtual form-factors
Nuage Networks
Virtualized Services Platform (VSP)
Virtualized Cloud Services (VCS) Virtualized Network Services (VNS)
6
VCS (Virtualized
CloudServices)
VNS (Virtualized
NetworKServices)
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
New Application
Policy templates and role-based workflow
Networking
Security/
Compliance
SERVICE VELOCITY IS NOT HINDERED BY MANUAL NETWORK PROCESS
IP address
WAN interconnect
Policy / Security Zones
L2 / L3 Service
Service chaining
Templates
Nuage Networks VSP
Policy Instantiation• IP address 10.x.y.z• VLAN configuration• WAN configuration• Security / FW settings• QoS parameters• … Network Change
Completed automatically
00:01
Auto-instantiation
Compute Request
completed in Minutes
00:01
Vancouver Datacenter
Network Service Definition
Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Public
Network Service Definition
Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Medium
Network Service Definition
Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Critical
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Nuage Networks Virtualized Services Platform (VSP)
Virtualizing & automating the dc network
AustinDatacenter
TokyoDatacenter
Virtualized Services Directory (VSD)• Network Policy Engine – abstracts complexity• Service templates and analytics
Virtualized Services Controller (VSC)• SDN Controller, programs the network• Rich routing feature set
Virtual Routing & Switching (VRS)• Distributed switch / router – L2-4 rules• Integration of bare metal assets
SDN based Network Service
PrivateNetwork(IP-VPN)
PublicNetwork(Internet)
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
CloudMANAGEMENT Plane
DatacenterCONTROL Plane
DatacenterDATA Plane
VirtualizedServicesDirectory
WANRouter
DatacenterCONTROL Plane
DatacenterDATA Plane
VirtualizedServicesController
VirtualizedServicesController
WANRouter
Private Data Center - Tokyo Public Data Center - Austin
Seamless networking across datacenters
WANEXISTING NETWORK HARDWARE EXISTING NETWORK HARDWARE
ESXi
KVM
KVM
ESXi
KVM
KVMHYPER-V
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
QoS & NAT/PAT & DHCP
NETWORKING
VM & CONTAINER SUPPORT
L2 VPN & L3 VPN
CENTRALIZED TEMPLATING
DYNAMIC PROGRAMMABILITY
AUTOMATION
POLICY-DRIVEN NETWORKING
SECURITY
LOGS & AUDITS
ANALYTICS
GRANULAR STATEFUL FIREWALL
CONTROL
SDN SERVICE CHAINING
SDN TRAFFIC STEERING
CENTRALIZED POLICY
Nuage Networks : SDN Features
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Policy-Driven Virtualized Networking across any environment
Physical servers Virtual Machines
Virtual Services Platform (VSP)
Containers Public CloudHW VTEP
OVSDB SW
Same policies used across any endpoint
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Using Nuage Networks NSG solution (Full mesh to other sites)
Secure Hybrid Cloud Interconnect
Cloud VPC
Private Cloud
Nuage GW
VPC
Cloud VPC
Private Cloud
Nuage GW
VPC
Enables Secure mesh of
connectivity between sites Full intra and inter-Region
VPC peering Dynamic exchange of
routing info between sites Visibility and control of
traffic flows between sites
Branch
Connectivity to everywhere
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
VSD for overall end-to-end service management and provisioning
In the DC VRS – Manages forwarding and security between
hypervisors and gateway (VXLAN based) VSC – Programs connectivity between VMs NSG-BR – Border Router demarcating private DC and
public (Secure) connection: it translates VXLAN -> IPSeCand links public to private domains
VRS – Performs local L2-L4 functions for tenant networks, and sets up VXLAN tunnel
In Public Cloud NSG-AMI – Acts as default gateway within the VPC and
initiates the IPSeC tunnel to the DC or to other VPCs VSC – Programs connectivity between NSGs
How does it work ?
Nuage Architecture Components involved
VSD
VSC VSC
VRS VRS NSG-BR NSG NSG-AMI
VXLAN IPSEC
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Role of Border Router Is part of encrypted
mesh between NSGs Cross-connects
private and public networks
Provides application control and visibility that are used between the DC and public cloud
The Role of Border Router
VRS-1
VRS-2
Router
NSG-BR
Private Cloud
NSG-1(VPC-1)
NSG-2(VPC-2)
NSG-3(Branch)
Public
Desired Connectivity
WANDC
VXLAN o IPSEC
VXLAN
VLAN + BGP
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Market Success & Validation
65+ wins & deployments
125+ trials/pilots successfully
completed
Across hyper-scale enterprises,
cloud providers & service providers
Major wins across all regions, to name a few: BBVA, SFR (Numergy), Santander, Betfair, Bloomberg, UPMC, CTCC,
MyRepublic, Telus
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
Industry Solution Partner of the Year - 2015
Honoring a Red Hat partner who has significantly impacted
the industry with Red Hat solutions.
Red Hat Honors 2015 North American Partner Award Winners
Award recipients recognized for delivering innovative open source solutions
A strong partner Ecosystem
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
BM-connectivity
Hypervisor
Hypervisor
Hypervisor
Hypervisor
Hypervisor
Hypervisor
VM-connectivity Hybrid-connectivity
Virtualized Services Directory (VSD)
VSP: Unified Multi-tenanted Policy and Control
Virtualized Services Controller (VSC)
Containers-Connect
L2
Tenant A
Tenant B
L2
L2
Mul$ple'Transport'links' Separa$on'of'service'
from'transport'
Applica$on7aware'path'selec$on'
Site'
Site'
Branch-connectivity
Virtualized Services Directory (VSD)
VSP: Unified Multi-tenanted Policy and Control
Virtualized Services Controller (VSC)
VSS Insight VSAP Assurance
VCS: Virtualized Cloud Services VNS: Virtualized Network Services
Kubernetes
Nuage Connecting users to applications
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
X
10/28/2016
Announcing…
18
Public v3.28 2016
Anyone can experience Nuage Networks VSP
For customer DevOps, developers and partners
Fully automated deployment in < 10 minutes!
© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.
[nuage X]
1. 2. 3.Create a free account atwww.nuagex.io
View and select available Nuage Networks Labs
Auto Deploy Management & Control elements of the Nuage Networks VSP
Auto Install VRS on host machine(s)
Instantiate VM or container based workloads and Runyour test workload(s) & Test
Optionally, Customize and Test your lab
Connected workloads in less than 10 minutes!
Login Deploy Run
© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.
Supported Use Cases
Nuage NetworksData Center
VSD VSC
lab01.nuagex.io
PrivateData Center
© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.
What’s next? Demo time
AGENDA10:00 - 10:30 – Welcome Coffee 10:30 - 11:15 – Overview Nuage VSP + VNSBreak11:15 – 13:00 Demo VSP
GUI, Users, Enterprise, Domini L3/L2, Zone, SubnetPolicy DefinitionDC Edge GatewayServices Chaining with FWQ&A
14:00 - 15:30 – Demo VNS NOKIA MCC (Vimercate)
17 Novembre 2016
Copyright 2014 Alcatel-Lucent. All rights reserved.
CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION
• Integrated & certified joined solutions with Red Hat
• Enabling Private/Public/Hybrid clouds :– Augmented Security within the Datacenter– Seamless Mobility of workloads– Increase Network performances
• Reduce OPEX, Faster deployment & optimized CAPEX
In Conclusion