Application Centric Infrastructure
Transcription
Application Centric Infrastructure
Data Center & Virtualization Enabling Fast IT Ronson Ong, CCIE# 6766 Consulting Systems Engineer, Data Center 09 Oct 2014 v1.1 Video: Innovate at the Speed of Business – Fast IT http://youtu.be/qMOpoENRKbQ © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2 Cisco Innovation Powers Fast IT Fast IT Application Centric Infrastructure UCS Director UCS Compute 2009: Industry’s First Application Centric Infrastructure © 2013-2014 Cisco and/or its affiliates. All rights reserved. Nexus, MDS & APIC Network 2013: ACI for the Data CenterSecurity Fabric UCS Integrated Storage Infrastructure Solutions 2014: Leading a New Market Category Cisco Confidential 3 Dynamic Scaling Traditional approach Unified approach Up to 40% cost savings in cabling, fiber, patch cords and labor © 2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4 At least 30x Faster Servers “decomposed” into logical resource pools Logical Provisioning: Server Profile Compute Compute BIOS HBA NIC OS IP VM Network Virtualization QOS MAC IP VN-Link VLAN VSAN Virtualized or non-virtualized environments Workload allocation or reallocation in minutes Freedom to design organization your way * Based on modeling and early customer data. © 2011 Cisco and/or its affiliates. All rights reserved. Network Virtualization UCS Up to 20% lower site costs* Up to 15% lower platform costs* Up to 35% lower organizational costs* 5 At least 30x Faster Unified Management Domain • Automatic discovery • Dynamic Provisioning Building Block for Dynamic Data Center • Simplify management of infrastructure for ESX clusters and datacenters One-click configuration of LAN, SAN and firmware parameters Service Profile: HVD-Win7 Network: Win7-VLAN Network QoS: High MAC: 08:00:69:02:01:FC-E WWN: 5080020000075740-3 BIOS: Version 1.03 Boot Order: SAN, LAN © 2011 Cisco and/or its affiliates. All rights reserved. App OS Firmware Network 6 No Attributes tied to Physical Resource Not just identity Seamless server mobility Within interconnect domain SAN LAN Dynamic Provisioning Complete infrastructure repurposing Integrated with 3rd part tools High Availability C97-541444-00 In event of HW failure, a spare UCS Blades can be provisioned immediately © 2009 Cisco Systems, Inc. All rights reserved. Cisco Public Server Name: LS-A UUID: 56 4d cd 3f 59 5b 61… MAC : 08:00:69:02:01:FC WWN: 5080020000075740 Boot Order: SAN, LAN Chassis-1/Blade-5 Chassis-9/Blade-2 7 SIM Card Identity for a phone © 2011 Cisco and/or its affiliates. All rights reserved. Service Profile Identity for a server 8 Evolution of Storage Networking…. Enterprise Apps: OLTP, VDI, etc. Big Data, Scale-Out NAS Cloud Storage (Object) Compute Nodes REST API Fabric Fabric Block and/or File Arrays Multi-Protocol (FC, FICON, FCIP, FCoE, NAS, iSCSI, HTTP) Performance (16G FC, 10GE, 40GE, 100GE) Scale (Tens of Thousands P/V Devices, Billions of Objects) Cisco Confidential © 2013-2014 Cisco and/or its affiliates. All rights reserved. Operational Simplicity (Automation, Self-Service Provisioning) 9 Continued Innovations Over the Last Decade Network Diagnostics and Troubleshooting Tools Industry-Leading FC Performance, Reliability Integrated Multi-Protocol FC, FICON, iSCSI and FCIP Inter-VSAN Routing Now FCoE NEW Unified Port Platforms • • • 2013 2002 MDS 9148S MDS 9706 MDS 9700 FCoE Enabling Cloud-Scale Deployments • Increased scale for SAN Innovation • SAN overlay on Ethernet Fabrics • Migration of Massive Amounts of Data Simplifying SAN Management Virtual SAN Integrated SAN Single (VSAN) Extension for DC/BR LAN/SAN Performance and Comprehensive Management 40 G FCoE Density Security • • • Hardware-based congestion control Fabric Automation Extensive monitoring and visibility Driving Innovations for the Next Decade with a complete 16G Portfolio Deploy Small, Medium, Large SANs with Cisco MDS 9000 Family © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10 Cisco Multi-Protocol Architecture – SAN, LAN, and Compute SAN LAN / SAN COMPUTE Cisco UCS Fabric Interconnects Cisco MDS 9148 Cisco Nexus 7000 Cisco Nexus 5500 Cisco Nexus 5600 Cisco Nexus 2000 Cisco Nexus 9000 Cisco Nexus 6000 Cisco Nexus 3000 Cisco MDS 9250i Cisco MDS 9148S Cisco MDS 9222i Cisco MDS 9710 Cisco MDS 9706 Cisco UCS 6248UP Cisco MDS 9500 Cisco UCS 6296UP Cisco MDS 48x16G line-rate FC Module Cisco MDS 48x10G line-rate FCoE Module Cisco UCS B-Series Blade Servers Cisco UCS C-Series Rack Servers 10+ Years of Proven NX-OS Operating System Cisco Prime Data Center Network Manager (DCNM) CONSISTENT AND SIMPLIFIED Features, Management, and Programmability © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11 Cisco MDS 9148S Fabric Switch Front Now Back 1 RU 48 x 16G FC Line Rate Performance Expand from 12- to 48-ports in 12-port increments VERSATILE • Line-rate 16/8/4/2G FC Ports • Industry-leading port range Start with 12-port base Scale up with 12-port license Or, full 48-port option available Dual Power Supplies and Fans for Enterprise-Class Availability EASY TO USE • Automated Provisioning • Quick Configuration Wizard • Same OS and Management across Industry’s broadest SAN Portfolio ENTERPRISE-CLASS • Non-disruptive software upgrades • Up to 32 Virtual SANs (VSANs) • Inter-VSAN Routing (IVR), QOS, PortChannels, N-Port ID Virtualization (NPIV), N-Port Virtualization (NPV), Comprehensive Security • Hardware-based slow-drain detection and recovery High-Performance, Easy to Deploy, Enterprise-class Fabric Switch © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12 MDS 9148S: Industry’s Most Affordable 16G Fabric Switch List Price Comparison* $60,000 $54,535 $50,000 SMALL SAN $42,420 $40,000 $29,741 $27,235 $30,000 Brocade 6505 Brocade 6510 $21,260 MDS 9148S $17,103 $20,000 Cisco MDS 9148S $10,680 $10,000 $0 Premium to MDS 9148S 12 ports 24 ports 48 ports 12-ports 24-ports 48-ports 12-ports 24-ports Brocade 6505 +60% Brocade 6510 36-ports +40% +28% 48-ports +28% *Prices include 16G SW optics MDS 9148S Provides Superior Affordability Across All Configurations AND Has More Capabilities Included at No Additional Cost © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13 Automated Provisioning Consistent Configuration on Switch Power Up Provides: • IP Address, Gateway • Software Image • Configuration File • Automates switch setup • Eliminates the need for serial cable for manual configuration of each switch • Ensures configuration consistency MDS 9148S MDS 9148S ………………………………………………………………….. © 2013-2014 Cisco and/or its affiliates. All rights reserved. Rapid Error-Free Deployments Cisco Confidential 14 Cisco MDS 9706 Multilayer Director Extending MDS 9710 Director Qualities to a Smaller Form Factor Now 3x THE PERFORMANCE OF ANY COMPACT DIRECTOR INDUSTRY’S MOST RELIABLE COMPACT DIRECTOR 9RU Front-Back Airflow Scale up to 192 Line Rate Ports – 16G FC or 10G FCoE • AND,15X the performance of current MDS 9506 director • Eliminate loss of bandwidth • Grow without forklift – investment protection for future • Eliminate Downtime 1.5 Tbps/slot Switching Capacity • Preserve IT operations and Knowledge – ease of migration with NX-OS and DCNM N+1 Fabric Redundancy In-Service Software Upgrade Dual, Redundant Supervisors Redundant power supplies/fans • Maintain Performance Reduced Failure Domains Evolves with Your Business for the Next Decade © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15 Multi-Hop FCoE with Separate LAN and SAN Cores Introducing Industry’s Highest-Density FCoE Module on a FC Director Converged Link Dedicated FCoE Ethernet Dedicated Ethernet Core Nexus Directors Converged Access Nexus Fixed or Directors LAN . . Dedicated Storage Core FCoE-only MDS 9700 Series . . Nexus 2232PP Nexus 2232PP MDS 48x10G FCoE Module FCoE-Only Dedicated © 2013-2014 Cisco and/or its affiliates. All rights reserved. Storage Core Ethernet Ubiquity and Cost-Advantage Higher Speed ISLs Available Sooner Same Management Model as 16 Cisco Confidential FC – Separate LAN and SAN Enabling Cloud-Scale SAN Deployments • Increased scale for SANs • SAN overlay on Ethernet Fabrics © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17 Boosting Scale for SAN Infrastructures Thousands of Devices – heterogeneous physical, virtual environments FC: Now FCoE: Q3CY14 Scale-out: large FC infrastructure requires support for Lots of switches increase number of domains supported Lots of hosts increase number of zones supported Lots of VMs increase number of fabric logins per fabric Scale-up: requires each FC switch to support Lots of hosts increase number of fabric logins per switch and per module MDS 9700/ Nexus 7700 Tested Configuration Limits Cisco Improvement over earlier support Industry Leader 80 +33% +42% Zones per Fabric 16,000 +100% - Fabric Logins per Fabric 20,000 +100% +233% Fabric Logins per Switch 4,000 +100% +100% Fabric Logins per Module 1,000 +150% - Scale Parameter Number of Domains* MDS 9700 or Nexus 7700 Series * Number of Domains targeted to scale from currently supported 60 to 80 in a future maintenance release Scale at 16G FC Performance for Cloud-Scale SAN Deployments © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 18 Scale-out Ethernet Fabric Architecture with FCoE Overlay Scale-out Storage—Block, File, Object Nexus 5000/6000: Available Dynamic FCoE using FabricPath High-Performance Nexus 7000: Q3CY14 Spine 10G to Server. 40G in Ethernet Fabric Nexus 5000/ 6000/7000 Exchange-based Load Balancing in the Fabric High-Availability (HA) Nexus 5000/6000 Logical separation and redundancy of SAN-A/SAN-B achieved through VLANs Leaf SAN-A SAN-B SAN-A SAN-B SAN-A/SAN-B NOT interrupted if a Spine fails - traffic sent to other Spines FCoE Dynamic NAS, iSCSI FC Dynamic discovery of leaf nodes and establishment of VE-port relationship FCoE SAN-A Reduced possibility of human error during configuration FCoE SAN-B Ethernet All Links shared with Ethernet LAN traffic, providing a Converged Fabric © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19 Simpler, Smarter and more Secure Data Center Networking • Application Centric Infrastructure (ACI) © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 20 Video: ACI Overview http://www.youtube.com/watch?v=VZWwjNAiUpI © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 21 Network Infrastructure: State of Affairs Two Types of Languages APPLICATION LANGUAGE • Application Tier Policy and Dependencies • Security Requirements • Service Level Agreement • Application Performance • Compliance • Geo Dependencies • Etc. © 2013-2014 Cisco and/or its affiliates. All rights reserved. NETWORK LANGUAGE • • • • • • • VLAN IP Address Subnets Firewalls Quality of Service Load Balancer Access Lists Requires an Application Centric Infrastructure Cisco Confidential Cisco Confidential 22 ACI Vision Tenant Physical Networking Rapid deployment of applications onto networks with scale, security and full visibility Hypervisors and Virtual Networking © 2013-2014 Cisco and/or its affiliates. All rights reserved. Compute L4–L7 Services Storage Enabled by physical and virtual integration Application Multi DC WAN and Cloud Cisco Confidential 23 How do we get there? Start with Collaboration Driven by Common Policy STORAGE SECURITY f/w ADC APIC COMPUTE WEB DB APP ADC WEB WEB WEB APP APP APP DB DB DB NETWORK APPLICATION CLOUD Physical Networking Hypervisors and Virtual Networking Compute L4–L7 Services Storage Multi DC WAN and Cloud Nexus 7K © 2013-2014 Cisco and/or its affiliates. All rights reserved. Nexus 2K And other Storages Integrated Confidential WANCisco Edge 24 Application Policy Model and Instantiation Application Client Application policy model: Defines the application requirements (application network profile) Storage Storage App Tier Web Tier DB Tier Policy instantiation: Each device dynamically instantiates the required changes based on the policies APIC VM VM VM VM VM VM 10.2.4.7 10.9.3.37 VM 10.32.3.7 All forwarding in the fabric is managed through the application network profile • IP addresses are fully portable anywhere within the fabric • Security and forwarding are fully decoupled from any physical or virtual network attributes • Devices autonomously update the state of the network based on configured policy requirements © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25 • ACI Fabric provides next generation of analytic capabilities • Per Application, Tenants, & Infrastructure: • • • • Health Scores Latency Atomic Counters Resource Consumption PetStore Event PetStore Dev Leaf 1 & 2 Spine 1 – 3 Atomic Counters PetStore Prod Leaf 2 & 3 Spine 1 – 2 Atomic Counters Actions: No New Hosts or VM’s Evacuate Hypervisors Re-Balance Clusters PetStore QA Leaf 3 & 4 Spine 2 – 3 Atomic Counters APIC • Integrate with Workload Placement or Migration © 2013-2014 Cisco and/or its affiliates. All rights reserved. Triggered Events or Queries VXLAN Per hop Visibility Physical And Virtual As One Cisco Confidential 26 APIC—Shipping Now—Starts with Network Automation… STORAGE SECURITY CAPABILITIES SHIPPING NOW: APIC COMPUTE NETWORK POLICY: Centralized Application-Level Policy APPLICATION CLOUD VISIBILITY: System-Wide Visibility, Telemetry, Health OPENNESS: Open Source / APIs / Standards Virtual LAN L4-L7 Services Automation SECURE: Security and Performance @ Scale EXTENSIBLE: Hypervisors and L4-7 Cisco © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Cisco Confidential 27 ACI – Application Centric Infrastructure The Top-Down Approach • Revolutionary Data Center Fabric Application (Layer-7) • Addressing new Buying-Centers Presentation • The Business as IT Consumer • Invest Time here: • Define the Application Communication Policies for Network, Security, Virtualization, Applications, Cloud • Spend NO time here: • Provision the policy in the Fabric (fully automatic) • For virtual & Physical workloads including Network Services • Business Agility – Service Velocity – Compliance © 2013-2014 Cisco and/or its affiliates. All rights reserved. Top-Down • CxO as Stake Holders (Layer-6) Session (Layer-5) Transport (Layer-4) Network (Layer-3) Data (Layer-2) Physical (Layer-1) Cisco Confidential 28 “ If you care about the software, you should care about the hardware. […and the data center, …and the network, …and the back office…] ” ~ Steve Jobs “ If I look back with 20-20 hindsight, the thing I regret is that we didn’t put the hardware and software together soon enough,” he said. “It was almost magical the way the PC came about with an operating system from us and hardware from IBM...” ~ Steve Balmer, Forbes, 3/4/14 © 2013-2014 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 29 Thank you.