Presentation is loading. Please wait.

Presentation is loading. Please wait.

Cisco Confidential 1 © 2013 Cisco and/or its affiliates. All rights reserved. Data Center Virtualização e Programabilidade Roger Oliveira Engenheiro de.

Similar presentations


Presentation on theme: "Cisco Confidential 1 © 2013 Cisco and/or its affiliates. All rights reserved. Data Center Virtualização e Programabilidade Roger Oliveira Engenheiro de."— Presentation transcript:

1 Cisco Confidential 1 © 2013 Cisco and/or its affiliates. All rights reserved. Data Center Virtualização e Programabilidade Roger Oliveira Engenheiro de Sistemas Setor Público

2 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2 Redes VirtuaisRedes Virtuais Serviços de redes VirtuaisServiços de redes Virtuais SDN e Redes ProgramáveisSDN e Redes Programáveis

3 Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 3 Hypervisor App OS App OS App OS App OS App OS App OS App OS App OS App OS App OS App OS App OS

4 Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 4 Hypervisor App OS App OS App OS vSwitch App OS App OS App OS App OS App OS App OS App OS App OS App OS

5 Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 5 Hypervisor App OS App OS vSwitch App OS vSwitch Def. Rede

6 Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 6 Hypervisor vSwitch App OS vSwitch App OS Def. Rede App OS vNetwork Distributed Switch Nexus 1000V

7 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7 o o o VEM vCenter VSM Até 128 VEMs* Virtual Supervisor Module (VSM) Administrador de Virtualização Administrador de Rede Virtual Ethernet Modules (VEM)

8 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 8 Supervisor Line Card Nexus 7000 Nexus 1000V Backplane o o o Até128 VEMs VSMs

9 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9 Pode ser aplicado para múltiplas portas Pode incluir: VLANs ACLs NetFlow QoS Private VLANs... port-profile WEB switchport mode access switchport access vlan 105 ip port access-group myacl in no shut vmware port-group state enabled port-profile WEB switchport mode access switchport access vlan 105 ip port access-group myacl in no shut vmware port-group state enabled

10 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10 port-profile WEB switchport mode access switchport access vlan 105 ip port access-group myacl in no shut vmware port-group state enabled port-profile WEB switchport mode access switchport access vlan 105 ip port access-group myacl in no shut vmware port-group state enabled vCenter Server Port-group WEB Port Group

11 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11 Redes VirtuaisRedes Virtuais Serviços de redes VirtuaisServiços de redes Virtuais SDN e Redes ProgramáveisSDN e Redes Programáveis

12 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12 “Appliance” Módulo Serviço Integrado Nexus 1000v Hypervisor Virtualizado

13 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13 WAN Router Infraestrutura Virtual ASA 1000V Cloud Firewall Nexus 1000V Infraestrutura Física vWAAS Cisco Virtual Security Gateway Switches Citrix NetScaler 1000V Imperva SecureSphere WAF Cloud Services Router 1000V Zone A Zone B vPathvPathVXLANVXLAN Multi-Hypervisor (VMware, Microsoft, RedHat*, Citrix*) Network Analysis Module (vNAM)

14 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 1

15 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 1 2

16 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 Decision Caching 3 3 1 2 3

17 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 Decision Caching 3 3 4 4 1 2 3 4

18 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 18 Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath Remaining packets from flow ACL offloaded to Nexus 1000V (policy enforcement) VNMC Log/Audit VSG

19 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 1

20 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 20 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 1 2

21 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 21 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 Decision Caching 3 3 1 2 3

22 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 22 Virtual Security Gateway Intelligent Traffic Steering with vPath Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath VNMC Log/Audit Initial Packet Flow VSG 1 1 Flow Access Control (policy evaluation) 2 2 Decision Caching 3 3 4 4 1 2 3 4

23 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 23 Nexus 1000V Distributed Virtual Switch Nexus 1000V Distributed Virtual Switch VM vPath Remaining packets from flow ACL offloaded to Nexus 1000V (policy enforcement) VNMC Log/Audit VSG

24 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 24 Redes VirtuaisRedes Virtuais Serviços de redes VirtuaisServiços de redes Virtuais SDN e Redes ProgramáveisSDN e Redes Programáveis

25 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25 Conceitos de SDN: Inteligência Centralizada (“Modêlo 1”)

26 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 26 Dispositivo de Rede Atual (router, switch,...) Plano de Controle (IOS) Plano de Dados (ASIC)

27 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 27 SDN Controller (software) Programação (ex.: OpenFlow) Aplicações Exemplos atuais: Wireless controllers, PfR, Nexus 1000V, etc.

28 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 28 Conceitos de SDN: Overlays Virtuais (“Modêlo 2”)

29 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 29 Rede IP CGH SDU Controle de Tráfego Aéreo Pacotes Exemplos atuais: MPLS, IPSec, OTV, e muitos outros

30 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 30 Overlays Virtuais Servidor Virtualizado (hypervisor) Software VMVM VMVM VMVM VMVM VMVM VMVM VMVM VMVM VMVM

31 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 31 O que SDN pode trazer de diferencial HOJE? COMO fazer uma implementação não-disruptiva? E como fica o suporte (dias 2, 3, e assim por diante)?

32 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 32 Overlays Multi- hypervisor (VXLAN e NVGRE) onePK (API padronizada) eXtensible Network Controller (XNC)

33 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 33

34 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 34 ACI – Application Centric Infrastructure Draw a software boundary around collection of switches to make a system Policies  Who can talk to whom  What about  Topology control  Ops stuff API  Distributed policy enforcement  Just in-time resolution Performed by embedded policy enforcement agents (PEs) Application Policy Infrastructure Controller

35 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 35 Projeto "open source" formado por líderes da indústria sob a Linux Foundation com o objetivo de avançar a adoção de Software Defined Networking (SDN) através da criação de um framework suportado por vários fabricantes Platinum Gold Silver

36 Obrigado.


Download ppt "Cisco Confidential 1 © 2013 Cisco and/or its affiliates. All rights reserved. Data Center Virtualização e Programabilidade Roger Oliveira Engenheiro de."

Similar presentations


Ads by Google