virtualized services platform - red hat · virtualized services platform (vsp) ... • rich routing...

23
Copyright 2014 Alcatel-Lucent. All rights reserved. CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION Virtualized Services Platform Overlay Solution with consistent policy capabilities Luigi Annunziata Technical Business Development EMEA [email protected]

Upload: duongbao

Post on 24-May-2018

219 views

Category:

Documents


0 download

TRANSCRIPT

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Virtualized Services Platform

Overlay Solution with consistent policy capabilities

Luigi AnnunziataTechnical Business Development [email protected]

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

WHO IS NUAGE NETWORKS

Nuage is based in Silicon Valley with a team around the world

An Nokia venture focused on data center and branch office network

evolution for the cloud era

Creation of an Abstraction & Automation layer between networking

features and hardware equipment

Policy-driven networking design reflecting business directives, not

network protocols

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

TTM

OpEx

CaPex

SD-WAN

DC-SDN

Leverage Economies of Scale with x86 & Virtualization Technologies

Enable Automation & Templating

Accelerate Your Business with Datacenter SDN & Branch Office Software Defined WAN (SDWAN)

Business driversBusiness Driver

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

STATIC MANUAL NETWORKS HIGHLY AUTOMATED NETWORKS

AUTOMATIONABSTRACTION

CONTROL VISIBILITY

✓ ✓

✓The SDN FrameworkFor Highly Automated

Networks

CUSTOMCOMPLEX

COSTLY CLOSED

The Networking Shift

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

MPLS VPNs INTERNET

BGP

Universal connectivity

Massive network scale

On-demand connections, anywhere

Massive service scale

MOBILE

Secure Network Slices

High performance

We can learn from other environments

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Nuage networks - comprehensive sdn solution

Virtualized Services Directory (VSD)• Network Policy Engine – abstracts complexity• Service templates and analytics

Virtualized Services Controller (VSC)• SDN Controller, programs the network• Rich routing feature set

Virtual Routing & Switching (VRS)• Distributed switch / router – L2-4 rules• Supports leading hypervisors and base metal assets• Virtual (VRS) and Physical (7850 VSG) form-factors

Network Services Gateway (NSG)• Network service platform for branches• L2-L4 Switching and routing with advanced network functions • Physical (7850 NSG) or Virtual form-factors

Nuage Networks

Virtualized Services Platform (VSP)

Virtualized Cloud Services (VCS) Virtualized Network Services (VNS)

6

VCS (Virtualized

CloudServices)

VNS (Virtualized

NetworKServices)

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

New Application

Policy templates and role-based workflow

Networking

Security/

Compliance

SERVICE VELOCITY IS NOT HINDERED BY MANUAL NETWORK PROCESS

IP address

WAN interconnect

Policy / Security Zones

L2 / L3 Service

Service chaining

Templates

Nuage Networks VSP

Policy Instantiation• IP address 10.x.y.z• VLAN configuration• WAN configuration• Security / FW settings• QoS parameters• … Network Change

Completed automatically

00:01

Auto-instantiation

Compute Request

completed in Minutes

00:01

Vancouver Datacenter

Network Service Definition

Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Public

Network Service Definition

Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Medium

Network Service Definition

Name: Finance ApplicationNetwork Zone 1: Datacenter MELNetwork Zone 2: WANApp Tier 1: HTTP/Front EndApp Tier 2: Oracle/DatabaseBranch Type: HQ, RegionalSecurity Profile: Critical

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Nuage Networks Virtualized Services Platform (VSP)

Virtualizing & automating the dc network

AustinDatacenter

TokyoDatacenter

Virtualized Services Directory (VSD)• Network Policy Engine – abstracts complexity• Service templates and analytics

Virtualized Services Controller (VSC)• SDN Controller, programs the network• Rich routing feature set

Virtual Routing & Switching (VRS)• Distributed switch / router – L2-4 rules• Integration of bare metal assets

SDN based Network Service

PrivateNetwork(IP-VPN)

PublicNetwork(Internet)

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

CloudMANAGEMENT Plane

DatacenterCONTROL Plane

DatacenterDATA Plane

VirtualizedServicesDirectory

WANRouter

DatacenterCONTROL Plane

DatacenterDATA Plane

VirtualizedServicesController

VirtualizedServicesController

WANRouter

Private Data Center - Tokyo Public Data Center - Austin

Seamless networking across datacenters

WANEXISTING NETWORK HARDWARE EXISTING NETWORK HARDWARE

ESXi

KVM

KVM

ESXi

KVM

KVMHYPER-V

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

QoS & NAT/PAT & DHCP

NETWORKING

VM & CONTAINER SUPPORT

L2 VPN & L3 VPN

CENTRALIZED TEMPLATING

DYNAMIC PROGRAMMABILITY

AUTOMATION

POLICY-DRIVEN NETWORKING

SECURITY

LOGS & AUDITS

ANALYTICS

GRANULAR STATEFUL FIREWALL

CONTROL

SDN SERVICE CHAINING

SDN TRAFFIC STEERING

CENTRALIZED POLICY

Nuage Networks : SDN Features

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Policy-Driven Virtualized Networking across any environment

Physical servers Virtual Machines

Virtual Services Platform (VSP)

Containers Public CloudHW VTEP

OVSDB SW

Same policies used across any endpoint

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Using Nuage Networks NSG solution (Full mesh to other sites)

Secure Hybrid Cloud Interconnect

Cloud VPC

Private Cloud

Nuage GW

VPC

Cloud VPC

Private Cloud

Nuage GW

VPC

Enables Secure mesh of

connectivity between sites Full intra and inter-Region

VPC peering Dynamic exchange of

routing info between sites Visibility and control of

traffic flows between sites

Branch

Connectivity to everywhere

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

VSD for overall end-to-end service management and provisioning

In the DC VRS – Manages forwarding and security between

hypervisors and gateway (VXLAN based) VSC – Programs connectivity between VMs NSG-BR – Border Router demarcating private DC and

public (Secure) connection: it translates VXLAN -> IPSeCand links public to private domains

VRS – Performs local L2-L4 functions for tenant networks, and sets up VXLAN tunnel

In Public Cloud NSG-AMI – Acts as default gateway within the VPC and

initiates the IPSeC tunnel to the DC or to other VPCs VSC – Programs connectivity between NSGs

How does it work ?

Nuage Architecture Components involved

VSD

VSC VSC

VRS VRS NSG-BR NSG NSG-AMI

VXLAN IPSEC

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Role of Border Router Is part of encrypted

mesh between NSGs Cross-connects

private and public networks

Provides application control and visibility that are used between the DC and public cloud

The Role of Border Router

VRS-1

VRS-2

Router

NSG-BR

Private Cloud

NSG-1(VPC-1)

NSG-2(VPC-2)

NSG-3(Branch)

Public

Desired Connectivity

WANDC

VXLAN o IPSEC

VXLAN

VLAN + BGP

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Market Success & Validation

65+ wins & deployments

125+ trials/pilots successfully

completed

Across hyper-scale enterprises,

cloud providers & service providers

Major wins across all regions, to name a few: BBVA, SFR (Numergy), Santander, Betfair, Bloomberg, UPMC, CTCC,

MyRepublic, Telus

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

Industry Solution Partner of the Year - 2015

Honoring a Red Hat partner who has significantly impacted

the industry with Red Hat solutions.

Red Hat Honors 2015 North American Partner Award Winners

Award recipients recognized for delivering innovative open source solutions

A strong partner Ecosystem

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

BM-connectivity

Hypervisor

Hypervisor

Hypervisor

Hypervisor

Hypervisor

Hypervisor

VM-connectivity Hybrid-connectivity

Virtualized Services Directory (VSD)

VSP: Unified Multi-tenanted Policy and Control

Virtualized Services Controller (VSC)

Containers-Connect

L2

Tenant A

Tenant B

L2

L2

Mul$ple'Transport'links' Separa$on'of'service'

from'transport'

Applica$on7aware'path'selec$on'

Site'

Site'

Branch-connectivity

Virtualized Services Directory (VSD)

VSP: Unified Multi-tenanted Policy and Control

Virtualized Services Controller (VSC)

VSS Insight VSAP Assurance

VCS: Virtualized Cloud Services VNS: Virtualized Network Services

Kubernetes

Nuage Connecting users to applications

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

X

10/28/2016

Announcing…

18

Public v3.28 2016

Anyone can experience Nuage Networks VSP

For customer DevOps, developers and partners

Fully automated deployment in < 10 minutes!

© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.

[nuage X]

1. 2. 3.Create a free account atwww.nuagex.io

View and select available Nuage Networks Labs

Auto Deploy Management & Control elements of the Nuage Networks VSP

Auto Install VRS on host machine(s)

Instantiate VM or container based workloads and Runyour test workload(s) & Test

Optionally, Customize and Test your lab

Connected workloads in less than 10 minutes!

Login Deploy Run

© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.

Supported Use Cases

Nuage NetworksData Center

VSD VSC

lab01.nuagex.io

PrivateData Center

© 2016 Nokia. All rights reserved. Nuage Networks is a Nokia venture.

What’s next? Demo time

AGENDA10:00 - 10:30 – Welcome Coffee 10:30 - 11:15 – Overview Nuage VSP + VNSBreak11:15 – 13:00 Demo VSP

GUI, Users, Enterprise, Domini L3/L2, Zone, SubnetPolicy DefinitionDC Edge GatewayServices Chaining with FWQ&A

14:00 - 15:30 – Demo VNS NOKIA MCC (Vimercate)

17 Novembre 2016

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION

• Integrated & certified joined solutions with Red Hat

• Enabling Private/Public/Hybrid clouds :– Augmented Security within the Datacenter– Seamless Mobility of workloads– Increase Network performances

• Reduce OPEX, Faster deployment & optimized CAPEX

In Conclusion

Copyright 2014 Alcatel-Lucent. All rights reserved.

CONFIDENTIAL - SOLELY FOR AUTHORIZED PERSONS HAVING A NEED TO KNOW PROPRIETARY – USE PURSUANT TO COMPANY INSTRUCTION 10/28/2016

23

www.nuagenetworks.com @nuagenetworks