Download presentation
Presentation is loading. Please wait.
Published byAsher Grant Modified over 9 years ago
4
Hybrid Hyper-scale Enterpris e Grade
5
Azure compute regions
8
Internet users ■ 500,000,000+ ■ 100,000,000 – 499,999,999 ■ 50,000,000 – 99,999,999 ■ 25,000,000 – 49,999,999 ■ 5,000,000 – 24,999,999 ■ 100,000 – 4,999,999 ■ 50,000 – 999,999 ■ 0 – 49,999 *Operated by 21Vianet Microsoft’s network is one of the largest in the world Microsoft Azure datacenter regions Internet connectivity by country
9
Classic vs. Hyper-scale networks Large L2 Domains HW-based Service Simple Tree Design L3 at all Layers SoftwareServiceSoftwareService Clos-based design Diversity and manual provisioning Complex hardware and lack of automated operations High complexity and human error Resilient, automated monitoring and remediation, low human involvement Simplify requirements, optimized design, and unify infrastructure Automated provisioning, integrated process Agility Efficiency Availability L3 L2
10
PhysicalTransportPlane ControlPlane Application Plane Switch Controller AzureFrontEnd Management Plane Control Plane Proprietary Hardware Appliance Building the right abstractions to enable Scale and Agility Commodity Hardware Abstract Management, Control, and Data planes Tenant Compose compute & storage roles and networks Tell & Program Instead of Discover and react Management Create a tenant Control Plumb tenant ACLs to switches Data Apply ACLs to these flows Example: ACLs
11
UsersInternet Azure Virtual Network Backend ConnectivityExpressRoute VPN Gateways
13
Traffic Manager DNS Azure DNS New
15
www.contoso.com
16
Internet IP1IP2 VM1 VM2 LB Microsoft Azure
17
Internet IP1 IP3 IP2 IP4
18
Reserved IP Internet
19
Webrole.1.contoso.cloudapp.net 130.26.5.120 VM Instance 1 VM Instance 2 Contoso App with 2 virtual machines Webrole.0.contoso.cloudapp.net 130.26.10.80
21
Virtual Network VPN GW Frontend10.1/16Mid-tier10.2/16Backend10.3/16 Internet On Premises 10.0/16 VPN & ExpressRoute Azure Direct Internet Connectivity
22
Internet
23
Virtual Machine NIC2 NIC1 Default Virtual Network FrontendSubnetMgmtSubnetBackendSubnet Internet 10.2.2.22 10.3.3.33 10.1.1.11 VIP 133.44.55.66
25
DDoSProtection VirtualNetworkIsolation NSG VMFirewall Cloud Services & Virtual Machines Internet ACLs
26
Virtual Network Backend10.3/16Mid-tier10.2/16Frontend10.1/16 VPN GW Internet On Premises 10.0/16 ExpressRoute and VPNs
29
Azure Virtual Network Internet Cross-premises connectivity
30
Internet ADC & Load Balancer
31
Customer On Premises Microsoft Azure Compress/Optimiz e
34
Secure site-to-site VPN connectivity SMB, Enterprises SMB, Enterprises Connect to Azure compute Connect to Azure compute Secure point-to-site connectivity Developers Developers POC Efforts POC Efforts Small scale deployments Small scale deployments Connect from anywhere Connect from anywhere ExpressRoute private connectivity SMB & Enterprises SMB & Enterprises Mission critical workloads Mission critical workloads Backup/DR, media, HPC Backup/DR, media, HPC Connect to Microsoft services Connect to Microsoft services Internet Connectivity Consumers Consumers Access over public IP Access over public IP DNS resolution DNS resolution Connect from anywhere Connect from anywhere
36
WAN WAN
37
WAN ExpressRoute provides a private, dedicated, high-throughput network connection to Microsoft
38
Microsoft Edge Customer’s network Customer’s connection Partner Edge Traffic to public IP addresses in Azure Traffic to Virtual Networks Traffic to Office 365 Services
39
Exchange Public internet Customer site Microsoft Customer site 1 Customer site 2 Customer site 3 Public internet Microsoft
40
Atlanta Chicago Chicago (Gov Cloud)* Dallas LA NY Seattle Silicon Valley Washington DC Washington DC (Gov Cloud)* Sao Paulo Amsterdam Dublin* London Chennai* Hong Kong Mumbai* Melbourne* Osaka* Singapore Sydney Tokyo
41
ExpressRoute Contoso virtual networks/VMs Internet Services on public IPs VPN Gateway (Internet Edge)
43
Virtual Network Gateway SKU ExpressRoute GW Throughput VPN GW ExpressRoute Coexistence VPN GW Throughput VPN GW Max IPsec Tunnels Cost (USD) / Hour Basic500 MbpsNo100 Mbps10$0.04 Standard 1000 MbpsYes100 Mbps10$0.19 Performance2000 MbpsYes200 Mbps30$0.49
48
ExpressRoute Infrastructure (protected) Middle Tier (exposed to FE and Infra) Front End – through firewalls User Defined Routes on subnets to direct flows to appliances Network Security Groups to secure subnets Network Virtual Appliances for security, routing and ADC Secure cross-premises connectivity with ExpressRoute and VPN Gateways
52
NO PURCHASE NECESSARY. Open only to event attendees. Winners must be present to win. Game ends May 9 th, 2015. For Official Rules, see The Cloud and Enterprise Lounge or myignite.com/challenge
Similar presentations
© 2024 SlidePlayer.com. Inc.
All rights reserved.