Platform & Engineering Services CERN IT Department CH-1211 Geneva 23 Switzerland www.cern.ch/i t PES Network as a Service Use cases for load balancing.

Slides:



Advertisements
Similar presentations
Connecting Windows Azure to Your Enterprise Network & Applications
Advertisements

Welcome to Middleware Joseph Amrithraj
Cloud computing is used to describe a variety of computing concepts that involve a large number of computers connected through a real-time communication.
Hierarchical Design.
Neutron What’s new in Havana? Arvind Somya Software Engineer Cisco Systems Inc.
DMTF Cloud Standards Cloud Management & OVF Update to ITU-T SG13.
Giảng viên : Ts. Lê Anh Ngọc Học viên: Trịnh Hồng Điệp Nguyễn Minh H ư ớng 1.
1 Security on OpenStack 11/7/2013 Brian Chong – Global Technology Strategist.
Network Isolation Using Group Policy and IPSec Paula Kiernan Senior Consultant Ward Solutions.
WS-Denial_of_Service Dariusz Grabka M.Sc. Candidate University of Guelph February 13 th 2007.
A Security Pattern for a Virtual Private Network Ajoy Kumar and Eduardo B. Fernandez Dept. of Computer Science and Eng. Florida Atlantic University Boca.
SERVER LOAD BALANCING Presented By : Priya Palanivelu.
Circuit & Application Level Gateways CS-431 Dick Steflik.
OpenStack High Availability
STEP-BY-STEP LAN DESIGN FOR A SMALL BUSINESS
Best Practices in IPv4 Anycast Routing Version 0.9 August, 2002 Bill Woodcock Packet Clearing House.
CERN IT Department CH-1211 Genève 23 Switzerland t Messaging System for the Grid as a core component of the monitoring infrastructure for.
LISP, SDN, and OpenDaylight
Additional SugarCRM details for complete, functional, and portable deployment.
Network Architecture and Protocol Concepts. Network Architectures (1) The network provides one or more communication services to applications –A service.
Barracuda Load Balancer Server Availability and Scalability.
CERN - IT Department CH-1211 Genève 23 Switzerland t Monitoring the ATLAS Distributed Data Management System Ricardo Rocha (CERN) on behalf.
EXperimental Infrastructures for the Future Internet Process for Joining Infrastructure Owners Training - Basic.
Grid Technology CERN IT Department CH-1211 Geneva 23 Switzerland t DBCF GT Performant and Future Proof: MySQL, Memcache and Raspberry Pi.
CS 493/693: Distributed Systems Programming V. “Juggy” Jagannathan CSEE, West Virginia University March 21, 2005.
Configuring Global Server Load Balancing (GSLB)
International Telecommunication Union Geneva, 9(pm)-10 February 2009 ITU-T Security Standardization on Mobile Web Services Lee, Jae Seung Special Fellow,
Module 4: Configuring ISA Server as a Firewall. Overview Using ISA Server as a Firewall Examining Perimeter Networks and Templates Configuring System.
CERN IT Department CH-1211 Genève 23 Switzerland t Using AI tools for IT-CS Spectrum-based monitoring Véronique Lefébure IT/CS-CE February.
Operating Systems & Information Services CERN IT Department CH-1211 Geneva 23 Switzerland t OIS Drupal Database Selection Tim Bell 6 th June.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
Performance of HTTP Application in Mobile Ad Hoc Networks Asifuddin Mohammad.
CERN IT Department CH-1211 Geneva 23 Switzerland t Daniel Gomez Ruben Gaspar Ignacio Coterillo * Dawid Wojcik *CERN/CSIC funded by Spanish.
Chapter 5: Implementing Intrusion Prevention
CERN IT Department CH-1211 Genève 23 Switzerland t Internet Services Overlook of Messaging.
Platform & Engineering Services CERN IT Department CH-1211 Geneva 23 Switzerland t PES AI’s user access, OpenStack security groups and firewall.
Content-oriented Networking Platform: A Focus on DDoS Countermeasure ( In incremental deployment perspective) Authors: Junho Suh, Hoon-gyu Choi, Wonjun.
11 CLUSTERING AND AVAILABILITY Chapter 11. Chapter 11: CLUSTERING AND AVAILABILITY2 OVERVIEW  Describe the clustering capabilities of Microsoft Windows.
End-to-End Efficiency (E 3 ) Integrating Project of the EC 7 th Framework Programme General View of the E3 Prototyping Environment for Cognitive and Self-x.
Operating Systems & Information Services CERN IT Department CH-1211 Geneva 23 Switzerland t OIS First look at the Mobile Framework Ivan Deloose,
CERN IT Department CH-1211 Genève 23 Switzerland PES 1 Ermis service for DNS Load Balancer configuration HEPiX Fall 2014 Aris Angelogiannopoulos,
AMQP, Message Broker Babu Ram Dawadi. overview Why MOM architecture? Messaging broker like RabbitMQ in brief RabbitMQ AMQP – What is it ?
CERN - IT Department CH-1211 Genève 23 Switzerland t High Availability Databases based on Oracle 10g RAC on Linux WLCG Tier2 Tutorials, CERN,
Computing Facilities CERN IT Department CH-1211 Geneva 23 Switzerland t CF CF Monitoring: Lemon, LAS, SLS I.Fedorko(IT/CF) IT-Monitoring.
CERN IT Department CH-1211 Genève 23 Switzerland t Migration from ELFMs to Agile Infrastructure CERN, IT Department.
Internet Traffic Engineering Motivation: –The Fish problem, congested links. –Two properties of IP routing Destination based Local optimization TE: optimizing.
CERN IT Department CH-1211 Geneva 23 Switzerland t ES 1 how to profit of the ATLAS HLT farm during the LS1 & after Sergio Ballestrero.
Platform & Engineering Services CERN IT Department CH-1211 Geneva 23 Switzerland t PES Improving resilience of T0 grid services Manuel Guijarro.
Experiment Support CERN IT Department CH-1211 Geneva 23 Switzerland t DBES The Common Solutions Strategy of the Experiment Support group.
VIRTUAL SERVERS Chapter 7. 2 OVERVIEW Exchange Server 2003 virtual servers Virtual servers in a clustering environment Creating additional virtual servers.
Platform & Engineering Services CERN IT Department CH-1211 Geneva 23 Switzerland t PES Agile Infrastructure Project Overview : Status and.
Co-ordination & Harmonisation of Advanced e-Infrastructures for Research and Education Data Sharing Grant.
Experiment Support CERN IT Department CH-1211 Geneva 23 Switzerland t DBES Author etc Alarm framework requirements Andrea Sciabà Tony Wildish.
آشنایی با سیستم های امنیتی دیواره آتش نمایشگاه بین المللی Comex 2010.
Cisco Study Guide
Andrew Lahiff HEP SYSMAN June 2016 Hiding infrastructure problems from users: load balancers at the RAL Tier-1 1.
11 SECURING NETWORK TRAFFIC WITH IPSEC Chapter 6.
Introduction of load balancers at the RAL Tier-1
Smart Cities and Communities and Social Innovation
Use Case for Distributed Data Center in SUPA
Affinity Depending on the application and client requirements of your Network Load Balancing cluster, you can be required to select an Affinity setting.
SECURING NETWORK TRAFFIC WITH IPSEC
StratusLab Final Periodic Review
StratusLab Final Periodic Review
Logo here Module 8 Implementing and managing Azure networking 1.
1. Public Network - Each Rackspace Cloud Server has two networks
OpenStack Ani Bicaku 18/04/ © (SG)² Konsortium.
Management of Virtual Execution Environments 3 June 2008
NFV and SD-WAN Multi vendor deployment
Turn up the Heat with LBaaS v2
Presentation transcript:

Platform & Engineering Services CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use cases for load balancing and HA Ignacio Reguero 12 June 2014

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA Contents LB /HA things we cannot do –HAProxy –Pacemaker/Corosync Here comes Neutron Neutron for LB and HA To bear in mind 1 To bear in mind 2

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA LB /HA things we cannot do Service deployment in The CERN Cloud could benefit from services currently hampered by limitations on Floating (Virtual) IP addresses: –Only allowed within a (physical) «network service» HA Systems: –Pacemaker/Corosync Physical load balancers: –HAProxy

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA HAProxy Supports multiple balancing policies Operates in various modes. ( TCP – Layer 4, HTTP – Layer-7 ) Statistics and monitoring for backend/frontend members Multiple listening services within the same process Typically combined with HA system

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA Pacemaker/Corosync Framework to configure distributed resources –Pacemaker: resource (service) manager –Corosync: communication protocol Supports various resources: –httpd, haproxy, mysql, Floating IP, etc Supports Floating (Virtual) IP addresses

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA Here comes Neutron We focus on Network as a Service as implemented by Openstack Neutron Neutron present Virtual Networks (dedicated L2 segment) that allow per tenant control of –Topology –IP prefixes + addresses –Other service insertion

CERN IT Department CH-1211 Geneva 23 Switzerland t PES TWiki at CERN. Past Present and Future Neutron: Concept

CERN IT Department CH-1211 Geneva 23 Switzerland t PES TWiki at CERN. Past Present and Future Neutron: Architecture

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA Neutron: What you can do

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA Neutron for LB and HA Neutron Virtual Networks decouple us from the Physical Network. We could consider tenants with NeutronVirtual Networks spanning –Physical Networks –Availability Zones –Sites: CERN CC and Wigner Within these NeutronVirtual Networks we could consider combinations of HAProxy and Pacemaker/corosync

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA To bear in mind 1 The requirement is that Floating IPs that may reach all nodes in the tenant that are alias members or part of an HA service –Otherwise we do not care about the topology HAProxy could be used through Neutron LBaaS interface Bearing in mind that HAProxy is only recommended when session persistence required

CERN IT Department CH-1211 Geneva 23 Switzerland t PES Network as a Service Use Cases for Load Balancing and HA To bear in mind 2 DNS LB is recommended for cases that do not require network persistence: –Does not alter traffic patterns –It is much cheaper to implement We aim to integrate the DNS LB with Openstack –Ermis REST service configures «DNS delegated zones» using SOAP interface from CS group –To be integrated with Keystone identity manager for per tenant authorization