《网络虚拟化的变革(1).ppt》由会员分享,可在线阅读,更多相关《网络虚拟化的变革(1).ppt(40页珍藏版)》请在三一办公上搜索。
1、网络虚拟化的变革,思科系统(中国)网络技术有限公司,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,司空见惯的虚拟化,Ethenet port chanel,Multilink ppp,HSRP/GLBP,Local AccessLoop=64 kbps,DLCI:400,PVC,DLCI:500,DLCI:200,DLCI:100,PVC,Frame-relay/ATM-SVC/PVC,Virtualized Interconnect,L3 VPNs MPLS VPNs,GRE,VRF-Lite,MPLS services over GRE,VNETs*L2 VP
2、Ns-AToM,Unified I/O,VLAN trunks,OTV*,虚拟链路(ipsec/ssl-vpn)实现远程用户安全接入,总部,SITE-SITE VPN,远程办公室,Intranet VPN 低的成本,通道连接,丰富的VPN服务新应用,省钱,家庭办公,移动用户,POP,POP,远程访问 VPN安全,可扩展,加密的通道省钱,简单,VPN 路由器ISR,VPN 路由器ISR,VPN 软件,VPN 软件,思科ASA5500 作为EASY-VPN SERVER,SITE-SITE VPN,EASY VPN,EASY VPN,AAA认证服务器ACS,GRE-VPDN,FCoE,数据中心网络
3、融合:IP,SAN,HPC,UnifiedFabric,存储网络,管理网络,后台网络,前端网络,网络备份,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,VLAN-TRUNK,VLAN Tag added by incoming port,VLAN Tag stripped by forwarding port,802.1Q VLAN identifier,路径隔离:router vrf(Virtual Routing/Forwarding),设备虚拟化Control Plane VirtualizationData Plane VirtualizationMana
4、gement Virtualization数据路径虚拟化Single-hopMulti-hop,802.1q DLCIVPI/VCI PW,VFI,Tags/circuits,Tags/circuits,vlan,vlan,Network Virtualization-Extension,Servers,Mainframe,WhichVirtualizationTechnology For Extending:L2?L3?,Campus and Data Center,Virtual SANs(VSANs)-将lan的概念移植到存储,Eliminates costs associated wi
5、th separate physical fabrics through consolidationAllows partitioning of individual switches and/or fabricsOverlay isolated virtual fabrics on same physical infrastructureVSANs contain zones and separate fabric servicesAvailabilityFault isolation isolate virtual fabrics from fabric-wide faults/recon
6、figurationsScalabilityReplicated fabric services per VSANSecurityComplete hardware isolation between virtual SAN,Department/Customer A,Shared Storage,Department/Customer B,VSAN-EnabledFabric,MgmtVSAN,MDS 9222i,Inter-VSAN Routing(IVR)Sharing Resources Across VSANs,Allows sharing of centralized resour
7、ces such as tape and disks across VSANs without merging separate fabrics Provides high fabric resiliency and VSAN-based manageabilityDistributed,scaleable,and highly resilient architecture Transparent to third-party switchesEnables blade-per-VSANarchitecture for blade servers,Tape VSAN_4(access via
8、IVR),HRVSAN_3,MarketingVSAN_2,BladeServer,TapeVSAN_4(access via IVR),VSAN-SpecificDisk,Engineering VSAN_1,MarketingVSAN_2,HRVSAN_3,IVR,IVR,MDS 9222i,MDS 9222i,IVR,Virtual Firewall,Core/Internet,Catalyst 6500/7600,FW SM,A,B,C,VFW,VFW,VFW,MSFC,E.g.three customers a three security contexts scales up to
9、 256VLANs can be shared if needed(VLAN 10 on the right-hand side exampleEach context has its own policies(NAT,access-lists,fixups,etc.),Core/Internet,Catalyst 6500/7600,A,FW SM,B,C,VFW,VFW,VFW,MSFC,Vlan 10,Vlan 20,Vlan 30,Vlan 11,Vlan 21,Vlan 31,Vlan 10,Vlan 11,Vlan 21,Vlan 31,Online BankApplication
10、,Virtualized Application Switching ACE Way,Cisco ACE,ESX Server,MicrosoftOutlook,App Has Capacity Available,Ideal Isolation,IDSM-2 Module for the Catalyst 6500 Chassis,Catalyst-integrated security module delivering full-featured intrusion protectionIndustry-exclusive product providing high speed thr
11、eat protectionPromiscuous operation with no impact on Catalyst performance or reliabilityCommon code base for consistent features and signature updatesEnhanced management simplifying deployment,StackWise Plus,统一堆叠如同一台设备,64Gbps 堆叠吞吐量与 StackWise 的向后兼容一个网管单元(IP、SNMP、CLI、STP 协议、VLAN)跨堆叠 EtherChannel、跨堆叠
12、 QoS主用/备用架构支持主机故障切换双向堆叠提供容错性业务智能转发配置和管理自动化,语音服务器群集,CLUSTER,集群服务器,Infiniband,VPN SERVER CLUSTER,ASA5500,IPSEC/SSL VPN,CALLMANAGER,Internet,VPC 基于Nexus7000虚拟化技术,跨机箱多链路捆绑,避免以太网环路,增加上行带宽,双活的工作机制,快速故障收敛,网络更简单,传统设计,VPC 设计,特性,网络系统虚拟化,不中断的转发/机箱间的状态切换(NSF/SSO),多机箱EtherChannel(MEC),VSS的优势,通过简化网络来提高运行效率,促进不中断的
13、持续通信,将系统带宽容量扩展到 1.44 Tbps,虚拟交换系统1440网络系统虚拟化,物理视图,逻辑视图,主控制层面主数据层面,热等待控制层面主数据层面,FEX=Virtual Chassis,简化网络,简化管理ToR 的布线,EoR 的架构,Nexus 5000Virtualized chassis,=,VDC,VN-Link 以虚对虚,VMW ESX,Server,VN-Link Property MobilityVmotion for the networkEnsures VM securityMaintains connection state,Virtual Center,VMs
14、Need to MoveVMotionDRSSW Upgrade/PatchHardware Failure,Policy-Based VM Connectivity,Non-DisruptiveOperational Model,Mobility of Network&Security Properties,Cisco VN-LinkVirtual Network Link,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,Cisco WAAS/Mobile Solution Overview,分支机构中的虚拟数据中心服务,数据中心,分支机构1,分支机构2,WAAS
15、,WAAS,WAAS,为分支机构用户提供与总部一样的应用性能降低总拥有成本提高业务灵活性和响应能力简化数据保护,备份和永续性,虚拟会议-webex/meeting place-经典的云计算,面对面的沟通无论在是时间上还是成本上都会是很大的问题。需要集成的虚拟会议解决方案统一的拨号规划目录服务服务质量管理 统一的网络架构,便于管理减少开支同一通信网络 唯一的技术支持队伍应用层面的培训运维开销降低统一的工具用户方便地实现多种会议服务拨号/点击 进入会议多种会议服务,思科联络中心解决方案,共享应用和服务无处不在的基于网络的托管可分布的服务和终端一致的客户体验,语音/数据网络,思科网真,既虚拟又真实,
16、思科三维网真-将科幻变成现实,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,SAN,L4-7 services,L4-7 services,Branches,Data Center I,Data Center II,WAN/MAN/Internet,Branches,Data Center I,Data Center II,Branches,Branches,Campus,Network and Compute Virtualization,Network Virtualization,Compute Virtualization,Virtual Machines
17、,Clusters,Storage Virtualization,UCS系统-虚拟化的集中体现,I/O 虚拟化,computing 虚拟化,memory 虚拟化,Network/storage 虚拟化,管理虚拟化,网络虚拟化使的应用从“独占资源”向“共享资源”转变,存储分离的高端服务器模式,数量众多的机架及刀片式服务器,T1S2-Cisco,展望云计算,Unified Fabric,Unified Network,Unified Computing,企业级的云计算服务,云计算(多云),Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,总结,IP 从宏观上讲本身就是一种
18、虚拟化技术在IT世界中虚拟化无所不在 网络虚拟化 存储虚拟化 计算虚拟化虚拟化会更深更广地发展-云计算,MajpjMVcyzj21HLfrvy96dv02lPPfYgxUS7IYmZkyEmZ0kGeYZS3bpLCkYH1lt4EK7CxmUX3ijoYSOer7ZuaVWYgz4EpZrUirVpMzzvNtf1XZw5oswSXOtFaejnOcmfE1lZgnN1RSXg8wLCG8CVQ3XPJMvodPFWcpiYJgZazNSEPNIaklYSu7qSd1UpaxmZDlpN9zW7kljfsLCLi26Yv109ffbnDH8LbUN1G6ACURQ39eG12KHL9tXsZ
19、1jzgoCK8g1kuNOh5eFvcmVT5ZYVQt9zk3rp3qLnf02FovEXxVRxjCcFRNppiJljNiOuk6fONnyX7fyGg7sXZ49BmCN5oy9VesHpKzdjTKwjrkCEQCFDehVmGax3lrOEbw63VscA3YSijtUKoCyiLzAlVRp7l4QgPNHxvJFFDyjUVN3oHlMah0XBd4uTbkfPIhHtw0evPmYOrdhEDoPwvYhzlGplU1AU9mpyiCXH8gpPCBRYjq77VcnbXumNE1yGfyTsbSj89J63kRTKDkKUg3mdS5sJ4X5cQ8dK7oW9IkScs
20、sECQdz2O9UTlpRjAFPChjhLdzopQzwxQf8ozdzOhogwAooXpUF83BX4C3jRgjDJiiXEUDMaNz4vQ4n164vspddHvOIVuBBdMA4xp1YhiHk0vOJ8TL1BxogzVlMpmod6ianYGmksQq6NWCEd56hZF4wfaNyZcrGfNxnPiG6ZAxSkfmhJAKtNmCqbRmppeXp8inz4eq3HkWCMSORyMMX522xpHG6basNr6KQfbZsFbHjzyNlJrruLolKFcC84dqfijBO5Dy2NaBcNEBPgQrT12PgpcKx2or2YChN5DPjs80zzdtdAdTKuW4uVv9bbZu3K2SZ2aEhTlIC1UqrIWibkzwHh6p8gLv26zr01mJybfOzFc4T7kQH1IpPwOzMDnAKPLsLrznXGjFNIA9bSWWms6ibKZwQIKrMzalwbFrQJvOP1rPH8rx2KkyYqrtQk5VRwM1HSX,