Al CisCon 2017, Ruben del Monte (Network Consulting Engineer in IT Global Consulting Srl, CCIE #54221) ha tenuto uno speech dal titolo "I problemi di scalabilità delle tradizionali reti IP nei moderni datacenters".
Abstract presente su http://www.ciscon.net/il-programma/
2. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
2
• Ruben Del Monte, CCIE #54221
• Network Consulting Engineer c/o IT Global
Consulting
• Cisco Red Badge
• Technical lead c/o Vodafone Group Datacenter,
“Stabilization” programme
3. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
3
Cosa si intende per “scalare” (to scale)
dal punto di vista delle infrastrutture IP
• Aggiungere risorse in maniera organica e
funzionale ad un’infrastruttura, in modo da
aumentarne la capacita’ – erogazione di risorse
• Replicare un certo numero di volte un dato
elemento all’interno di un particolare contesto o
configurazione, in modo da aumentare la
funzionalita’ globale del contesto stesso –
fruizione di risorse
4. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
4
Design IP tradizionale – standard corporate networks
QFP QFP
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN
CORE LAYER
DISTRIBUTION
LAYER
ACCESS LAYER
POD 1 POD 2 POD 3
FHRP GROUP A FHRP GROUP B FHRP GROUP C
VLAN 100-150 VLAN 151-201 VLAN 202-252
5. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
5
Design IP tradizionale – adattato al Datacenter (scale out)
QFP QFP
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN
CORE LAYER
DISTRIBUTION
LAYER
ACCESS LAYER
POD 1
FHRP GROUP A FHRP GROUP B
VLAN 100-150 VLAN 151-201
6. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
6
STP operations: bridge priority and port role election
POD 2
D-BDG1
ROOT
D-BDG2
D-BDG3 D-BDG4 D-BDG5 D-BDG6
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN
D D D
D
D R
R R R RAltn Altn Altn Altn
Altn
Altn
Altn
Altn
7. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
7
STP operations: available paths (stable topology)
POD 2
D-BDG1
ROOT
D-BDG2
D-BDG3 D-BDG4 D-BDG5 D-BDG6
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN
D D D
D
D R
R R R R
8. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
8
Le tecnologie ed il design IP tradizionali non scalano
all’interno di una LAN di grosse dimensioni
• Ethernet: tecnologia broadcast multi-access (any-to-any stateless
transport)
• Si adatta male a situazioni di asimmetria
• Dipende da Spanning Tree per prevenire loops data-link
• Spanning-tree comporta alcune (forti) limitazioni:
• Diametro massimo 20 bridge
• Deve convergere/ri-convergere
• Dicotomie tra versioni diverse del protocollo
• Un solo forwarding path
• Complesso da mantenere, prono ad errori in topologie complesse
• Alta affidabilita’ in L3 gateway vincolata ad FHRP (HSRP, GLBP,
VRRP)
• Max. 4 gateways (act/stby o act/act)
• Accentua asimmetrie, amplificando gli effetti di unicast flooding
• Failover basato su timers
9. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
9
VPC
• Supportato da Nexus 3K, 5K, 6K , 7K, 9K
• E’ necessaria solo la Base License
• Multi-chassis Etherchannel su Cisco Nexus
• Virtualizza il forwarding plane di due peers
• Nella topologia L2 aggrega i due peers
• I due peers mantengono control plane separati
• Scale-UP, piu’ banda disponibile e resilienza
• Evita single point of failure
10. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
10
VPC – peerings and link roles
POD 55
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN VPC PL
VPC PKA
VPC PKA
VPC PL
ROUTED INTERLINK
INTERNAL
ROUTING
DOMAIN
ROUTED LINK ROUTED LINK
VPC
VPC
DISTRIBUTION
SWITCHES – VPC PEERS
ACCESS SWITCHES –
VPC PEERS
11. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
11
VPC – logical topology (STP/HSRP perspective)
POD 55
L3 – ROUTED
DOMAIN
L2 – SWITCHED
DOMAIN D-BDG1/D-BDG2
STP ROOT, PEER-
SWITCH ENABLED
D
R D-BDG3/D-BDG4
STP DESIGNATED,
PEER-SWITCH
ENABLED
D-BDG1 HSRP
ACTIVE
D-BDG2 HSRP
ACTIVE
12. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
12
FabricPath
• Supportato da 5K, 6K, 7K (F linecards)
• Necessaria ENHANCED LAYER 2 LICENSE
• TRILL, implementazione Cisco proprietaria
• MAC-in-MAC routing, preserva tag 802.1q
• Cambia il design da 3-tier a CLOS fabric
• Scale-OUT fino 768 nodi (rif. N7K SUP2-E)
• Migliora il comportamento generale del data
plane
14. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
14
FabricPath – CLOS fabric
POD 1
FABRICPATH
DOMAIN
CLASSICAL
ETHERNET
DOMAIN
SPINE
SWITCHES
LEAF SWITCHES
SWID 1 SWID 2
SWID 11 SWID 12 SWID 21 SWID 22 SWID 31 SWID 32
ESWID 111 ESWID 211 ESWID 311
STP ROOT
BRIDGE
STP ROOT
BRIDGE
STP ROOT
BRIDGE
15. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
15
FabricPath – multi-destination tree
POD 1
FABRICPATH
DOMAIN
CLASSICAL
ETHERNET
DOMAIN
SPINE
SWITCHES
LEAF SWITCHES
SWID 1 SWID 2
SWID 11 SWID 12 SWID 21 SWID 22 SWID 31 SWID 32
ESWID 111 ESWID 211 ESWID 311
STP ROOT
BRIDGE
STP ROOT
BRIDGE
STP ROOT
BRIDGE
MDT1
ROOT
MDT2
ROOT
16. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
16
FabricPath – internal/external routing
POD 2
FABRICPATH
DOMAIN
CLASSICAL
ETHERNET
DOMAIN
SPINE
SWITCHES
LEAF
SWITCHES
SUPER-
SPINE
SWITCHES
POD-X
EXTERNAL
ROUTING
DOMAIN
QFP QFP
SPINE1 ANYCAST
HSRP ACTIVE
SPINE2 ANYCAST
HSRP ACTIVE
SPINE3 ANYCAST
HSRP ACTIVE
SPINE4 ANYCAST
HSRP ACTIVE
ANYCAST HSRP
SWID
17. www.itglobalconsult.it
IT WORKING FOR YOUR
BUSINESS
17
Virtual Extensible LAN
• Supportato da 3K (non tutte le serie), 5K, 6K, 7K, 9K
• Necessaria Enterprise Service License
• RFC 7348
• Virtualizza il data plane (overlay); incapsula trama ethernet
in VXLAN header (UDP), senza preservare tag 802.1q
• Design di riferimento per underlay network:
• CLOS all’interno della stessa fabric
• Indipendente in DCI o nel trasporto verso l’esterno
• Scala fino a 128 VTEP nella stessa fabric (rif. N7K SUP2-E)
• Consente inter-cloud on-premise oppure hybrid cloud =
trasporto L2 diretto da DC a DC
• Any-to-any stateless transport (Ethernet-wise)