Application Centric Infrastructure

Transcription

Application Centric Infrastructure
Data Center & Virtualization
Enabling Fast IT
Ronson Ong, CCIE# 6766
Consulting Systems Engineer, Data Center
09 Oct 2014
v1.1
Video: Innovate at the Speed of Business – Fast IT
http://youtu.be/qMOpoENRKbQ
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
2
Cisco Innovation Powers Fast IT
Fast
IT
Application Centric Infrastructure
UCS Director
UCS
Compute
2009: Industry’s First
Application Centric
Infrastructure
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Nexus, MDS
& APIC
Network
2013: ACI for the Data
CenterSecurity
Fabric
UCS Integrated
Storage
Infrastructure
Solutions
2014: Leading a New
Market Category
Cisco Confidential
3
Dynamic Scaling
Traditional approach
Unified approach
Up to 40% cost savings in cabling, fiber, patch cords and labor
© 2012 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
4
At least 30x Faster
Servers “decomposed” into
logical resource pools
Logical Provisioning:
Server Profile
Compute
Compute
BIOS
HBA
NIC
OS
IP
VM
Network
Virtualization
QOS
MAC
IP
VN-Link
VLAN
VSAN
 Virtualized or non-virtualized environments
 Workload allocation or reallocation in minutes
 Freedom to design organization your way
* Based on modeling and early customer data.
© 2011 Cisco and/or its affiliates. All rights reserved.
Network
Virtualization
UCS
 Up to 20% lower site costs*
 Up to 15% lower platform costs*
 Up to 35% lower organizational costs*
5
At least 30x Faster
Unified Management Domain
• Automatic discovery
• Dynamic Provisioning
Building Block for Dynamic Data Center
• Simplify management of infrastructure for ESX
clusters and datacenters
One-click configuration of LAN, SAN and
firmware parameters
Service Profile: HVD-Win7
Network: Win7-VLAN
Network QoS: High
MAC: 08:00:69:02:01:FC-E
WWN: 5080020000075740-3
BIOS: Version 1.03
Boot Order: SAN, LAN
© 2011 Cisco and/or its affiliates. All rights reserved.
App
OS
Firmware
Network
6
No Attributes tied to Physical Resource

Not just identity

Seamless server mobility

Within interconnect domain
SAN
LAN
Dynamic Provisioning

Complete infrastructure repurposing

Integrated with 3rd part tools
High Availability

C97-541444-00
In event of HW failure, a spare UCS Blades can
be provisioned immediately
© 2009 Cisco Systems, Inc. All rights reserved.
Cisco Public
Server Name: LS-A
UUID: 56 4d cd 3f 59 5b 61…
MAC : 08:00:69:02:01:FC
WWN: 5080020000075740
Boot Order: SAN, LAN
Chassis-1/Blade-5
Chassis-9/Blade-2
7
SIM Card
Identity for a phone
© 2011 Cisco and/or its affiliates. All rights reserved.
Service Profile
Identity for a server
8
Evolution of Storage Networking….
Enterprise Apps: OLTP, VDI, etc.
Big Data, Scale-Out NAS
Cloud Storage (Object)
Compute Nodes
REST API
Fabric
Fabric
Block and/or File Arrays
Multi-Protocol (FC, FICON, FCIP, FCoE, NAS, iSCSI, HTTP)
Performance (16G FC, 10GE, 40GE, 100GE)
Scale (Tens of Thousands P/V Devices, Billions of Objects)
Cisco Confidential
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Operational Simplicity (Automation, Self-Service Provisioning)
9
Continued Innovations Over the Last Decade
Network Diagnostics and
Troubleshooting Tools
Industry-Leading FC
Performance, Reliability
Integrated
Multi-Protocol FC,
FICON, iSCSI and FCIP
Inter-VSAN
Routing
Now
FCoE
NEW
Unified
Port
Platforms
•
•
•
2013
2002
MDS 9148S
MDS 9706
MDS 9700 FCoE
Enabling Cloud-Scale Deployments
•
Increased scale for SAN
Innovation
•
SAN overlay on Ethernet Fabrics
•
Migration of Massive Amounts of Data
Simplifying SAN Management
Virtual SAN
Integrated SAN
Single
(VSAN)
Extension for DC/BR
LAN/SAN
Performance and
Comprehensive
Management 40 G FCoE
Density
Security
•
•
•
Hardware-based congestion control
Fabric Automation
Extensive monitoring and visibility
Driving Innovations for the Next Decade with a complete 16G Portfolio
Deploy Small, Medium, Large SANs with Cisco MDS 9000 Family
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
10
Cisco Multi-Protocol Architecture – SAN, LAN, and Compute
SAN
LAN / SAN
COMPUTE
Cisco UCS
Fabric
Interconnects
Cisco MDS 9148
Cisco Nexus 7000
Cisco Nexus
5500
Cisco Nexus
5600
Cisco
Nexus 2000
Cisco Nexus 9000
Cisco Nexus
6000
Cisco
Nexus 3000
Cisco MDS
9250i
Cisco MDS
9148S
Cisco MDS
9222i
Cisco MDS
9710
Cisco MDS
9706
Cisco UCS
6248UP
Cisco MDS 9500
Cisco UCS
6296UP
Cisco MDS
48x16G line-rate
FC Module
Cisco MDS
48x10G line-rate
FCoE Module
Cisco UCS B-Series
Blade Servers
Cisco UCS C-Series
Rack Servers
10+ Years of Proven NX-OS Operating System
Cisco Prime Data Center Network Manager (DCNM)
CONSISTENT AND SIMPLIFIED
Features, Management, and Programmability
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
11
Cisco MDS 9148S Fabric Switch
Front
Now
Back
1 RU
48 x 16G FC Line Rate Performance
Expand from 12- to 48-ports in 12-port increments
VERSATILE
• Line-rate 16/8/4/2G FC Ports
• Industry-leading port range
Start with 12-port base
Scale up with 12-port license
Or, full 48-port option available
Dual Power Supplies and Fans for Enterprise-Class Availability
EASY TO USE
• Automated Provisioning
• Quick Configuration Wizard
• Same OS and Management across
Industry’s broadest SAN Portfolio
ENTERPRISE-CLASS
• Non-disruptive software upgrades
• Up to 32 Virtual SANs (VSANs)
• Inter-VSAN Routing (IVR), QOS,
PortChannels, N-Port ID
Virtualization (NPIV), N-Port
Virtualization (NPV),
Comprehensive Security
• Hardware-based slow-drain
detection and recovery
High-Performance, Easy to Deploy, Enterprise-class Fabric Switch
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
12
MDS 9148S: Industry’s Most Affordable 16G Fabric Switch
List Price Comparison*
$60,000
$54,535
$50,000
SMALL SAN
$42,420
$40,000
$29,741
$27,235
$30,000
Brocade 6505
Brocade 6510
$21,260
MDS 9148S
$17,103
$20,000
Cisco
MDS 9148S
$10,680
$10,000
$0
Premium to
MDS 9148S
12 ports
24 ports
48 ports
12-ports
24-ports
48-ports
12-ports
24-ports
Brocade 6505
+60%
Brocade 6510
36-ports
+40%
+28%
48-ports
+28%
*Prices include 16G SW optics
MDS 9148S Provides Superior Affordability Across All Configurations
AND Has More Capabilities Included at No Additional Cost
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
13
Automated Provisioning
Consistent Configuration on Switch Power Up
Provides:
• IP Address, Gateway
• Software Image
• Configuration File
• Automates switch setup
• Eliminates the need for
serial cable for manual
configuration of each
switch
• Ensures configuration
consistency
MDS 9148S
MDS 9148S
…………………………………………………………………..
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Rapid Error-Free Deployments
Cisco Confidential
14
Cisco MDS 9706 Multilayer Director
Extending MDS 9710 Director Qualities to a Smaller Form Factor
Now
3x THE PERFORMANCE OF
ANY COMPACT DIRECTOR
INDUSTRY’S MOST
RELIABLE COMPACT
DIRECTOR
9RU
Front-Back Airflow
Scale up to 192 Line Rate Ports –
16G FC or 10G FCoE
• AND,15X the performance of
current MDS 9506 director
• Eliminate loss of bandwidth
• Grow without forklift –
investment protection for future
• Eliminate Downtime
1.5 Tbps/slot
Switching Capacity
• Preserve IT operations and
Knowledge – ease of migration
with NX-OS and DCNM
N+1 Fabric Redundancy
In-Service Software Upgrade
Dual, Redundant Supervisors
Redundant power supplies/fans
• Maintain Performance
Reduced Failure Domains
Evolves with Your Business for the Next Decade
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
15
Multi-Hop FCoE with Separate LAN and SAN Cores
Introducing Industry’s Highest-Density FCoE Module on a FC Director
Converged Link
Dedicated FCoE
Ethernet
Dedicated Ethernet Core
Nexus Directors
Converged Access
Nexus Fixed or Directors
LAN
.
.
Dedicated Storage Core
FCoE-only
MDS 9700 Series
.
.
Nexus 2232PP
Nexus 2232PP
MDS 48x10G FCoE Module
FCoE-Only Dedicated
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Storage Core
Ethernet Ubiquity
and Cost-Advantage
Higher Speed ISLs
Available Sooner
Same Management Model as
16
Cisco Confidential
FC – Separate LAN and SAN
Enabling Cloud-Scale SAN
Deployments
• Increased scale for SANs
• SAN overlay on Ethernet Fabrics
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
17
Boosting Scale for SAN Infrastructures
Thousands of Devices – heterogeneous physical, virtual environments
FC: Now
FCoE: Q3CY14
Scale-out: large FC infrastructure requires support for
 Lots of switches  increase number of domains supported
 Lots of hosts  increase number of zones supported
 Lots of VMs  increase number of fabric logins per fabric
Scale-up: requires each FC switch to support
 Lots of hosts  increase number of fabric logins per switch and per module
MDS 9700/ Nexus 7700
Tested Configuration Limits
Cisco Improvement over
earlier support
Industry
Leader
80
+33%
+42%
Zones per Fabric
16,000
+100%
-
Fabric Logins per Fabric
20,000
+100%
+233%
Fabric Logins per Switch
4,000
+100%
+100%
Fabric Logins per Module
1,000
+150%
-
Scale Parameter
Number of Domains*
MDS 9700 or
Nexus 7700
Series
* Number of Domains targeted to scale from currently supported 60 to 80 in a future maintenance release
Scale at 16G FC Performance for Cloud-Scale SAN Deployments
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
18
Scale-out Ethernet Fabric Architecture with FCoE Overlay
Scale-out Storage—Block, File, Object
Nexus 5000/6000:
Available
Dynamic FCoE using FabricPath
High-Performance
Nexus 7000:
Q3CY14
Spine
 10G to Server. 40G in Ethernet Fabric
Nexus 5000/
6000/7000
 Exchange-based Load Balancing in the Fabric
High-Availability (HA)
Nexus
5000/6000
 Logical separation and redundancy of SAN-A/SAN-B
achieved through VLANs
Leaf
SAN-A
SAN-B
SAN-A
SAN-B
 SAN-A/SAN-B NOT interrupted if a Spine fails - traffic
sent to other Spines
FCoE
Dynamic
NAS,
iSCSI
FC
 Dynamic discovery of leaf nodes and establishment of
VE-port relationship
FCoE SAN-A
 Reduced possibility of human error during configuration
FCoE SAN-B
Ethernet
All Links shared with Ethernet LAN traffic, providing a Converged Fabric
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
19
Simpler, Smarter and more Secure
Data Center Networking
• Application Centric Infrastructure (ACI)
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
20
Video: ACI Overview
http://www.youtube.com/watch?v=VZWwjNAiUpI
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
21
Network Infrastructure: State of Affairs
Two Types of Languages
APPLICATION LANGUAGE
• Application Tier Policy and
Dependencies
• Security Requirements
• Service Level Agreement
• Application Performance
• Compliance
• Geo Dependencies
• Etc.
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
NETWORK LANGUAGE
•
•
•
•
•
•
•
VLAN
IP Address
Subnets
Firewalls
Quality of Service
Load Balancer
Access Lists
Requires an Application Centric Infrastructure
Cisco Confidential
Cisco Confidential
22
ACI Vision
Tenant
Physical
Networking
Rapid deployment of applications onto networks
with scale, security and full visibility
Hypervisors
and Virtual
Networking
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Compute
L4–L7
Services
Storage
Enabled by physical and virtual integration
Application
Multi DC
WAN and Cloud
Cisco Confidential
23
How do we get there?
Start with Collaboration Driven by Common Policy
STORAGE
SECURITY
f/w
ADC
APIC
COMPUTE
WEB
DB
APP
ADC
WEB
WEB
WEB
APP
APP
APP
DB
DB
DB
NETWORK
APPLICATION CLOUD
Physical
Networking
Hypervisors
and Virtual
Networking
Compute
L4–L7
Services
Storage
Multi DC
WAN and Cloud
Nexus 7K
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Nexus 2K
And other
Storages
Integrated
Confidential
WANCisco
Edge
24
Application Policy Model and Instantiation
Application
Client
Application policy model: Defines the
application requirements (application
network profile)
Storage
Storage
App Tier
Web
Tier
DB Tier
Policy instantiation: Each device
dynamically instantiates the required
changes based on the policies
APIC
VM
VM
VM
VM
VM
VM
10.2.4.7 10.9.3.37
VM
10.32.3.7
All forwarding in the fabric is managed through the application network profile
• IP addresses are fully portable anywhere within the fabric
• Security and forwarding are fully decoupled from any physical or virtual network attributes
• Devices autonomously update the state of the network based on configured policy requirements
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
25
• ACI Fabric provides next generation of
analytic capabilities
• Per Application, Tenants, &
Infrastructure:
•
•
•
•
Health Scores
Latency
Atomic Counters
Resource Consumption
PetStore
Event
PetStore Dev
Leaf 1 & 2
Spine 1 – 3
Atomic Counters
PetStore Prod
Leaf 2 & 3
Spine 1 – 2
Atomic Counters
Actions:
No New Hosts or VM’s
Evacuate Hypervisors
Re-Balance Clusters
PetStore QA
Leaf 3 & 4
Spine 2 – 3
Atomic Counters
APIC
• Integrate with Workload Placement or
Migration
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Triggered
Events or
Queries
VXLAN
Per hop
Visibility
Physical And
Virtual As One
Cisco Confidential
26
APIC—Shipping Now—Starts with Network Automation…
STORAGE
SECURITY
CAPABILITIES SHIPPING NOW:
APIC
COMPUTE
NETWORK
POLICY: Centralized Application-Level Policy
APPLICATION CLOUD
VISIBILITY: System-Wide Visibility, Telemetry, Health
OPENNESS: Open Source / APIs / Standards
Virtual LAN
L4-L7 Services Automation
SECURE: Security and Performance @ Scale
EXTENSIBLE: Hypervisors and L4-7
Cisco
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
Cisco Confidential
27
ACI – Application Centric Infrastructure
The Top-Down Approach
• Revolutionary Data Center Fabric
Application
(Layer-7)
• Addressing new Buying-Centers
Presentation
• The Business as IT Consumer
• Invest Time here:
• Define the Application Communication Policies for Network,
Security, Virtualization, Applications, Cloud
• Spend NO time here:
• Provision the policy in the Fabric (fully automatic)
• For virtual & Physical workloads including Network Services
• Business Agility – Service Velocity – Compliance
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Top-Down
• CxO as Stake Holders
(Layer-6)
Session
(Layer-5)
Transport
(Layer-4)
Network
(Layer-3)
Data
(Layer-2)
Physical
(Layer-1)
Cisco Confidential
28
“ If you care about the software, you should care
about the hardware. […and the data center, …and
the network, …and the back office…] ”
~ Steve Jobs
“ If I look back with 20-20 hindsight, the thing
I regret is that we didn’t put the hardware and
software together soon enough,” he said. “It was
almost magical the way the PC came about with an
operating system from us and hardware from IBM...”
~ Steve Balmer, Forbes, 3/4/14
© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco Confidential
29
Thank you.