Problem statement of SDN and NFV co-deploy ment in cloud datacenters
dr af t - gu- sdnr g- pr obl em
- st at em
ent - of –sdn- nf v- i n- dc- 00 Rong Gu (Presentor) Chen Li Ruixue Wang From China Mobile
Problem statement of SDN and NFV co-deploy ment in cloud datacenters - - PowerPoint PPT Presentation
Problem statement of SDN and NFV co-deploy ment in cloud datacenters dr af t - gu- sdnr g- pr obl em - st at em ent - of sdn- nf v- i n- dc- 00 Rong Gu (Presentor) Chen Li Ruixue Wang From China Mobile Introduction SDN and NFV
dr af t - gu- sdnr g- pr obl em
ent - of –sdn- nf v- i n- dc- 00 Rong Gu (Presentor) Chen Li Ruixue Wang From China Mobile
Service requirement
Orchestration
In charge of SDN data path and network
In central control of sfc
NFV lifecycle management
Resource instances
Reliability and stability test Functionality and performance test Security test
Openst ack syst em
Vrouter 、 Network 、 Security group Floating IP / NAT LB/FW/VPN service provided Stress test
SDN cont r ol l er / For w ar di ng devi ces NFV
deployment in operators’ network.
included.
SW of management Core SW ToR Controllers (master and standby) Computing node Openstack
VSW VSW Management traffic Service traffic
VLB VFW
VPN GW
SDN GW VLB VFW
VPN GW
SDN GW
Internet Users CMNET Router ……
VSW VSW
VNFM
Overlay
Underla y Reliability and stability test Functionality and performance test Security test
Syst em Syst em Cont r ol l er For w ar di ng devi ces NFV ( vLB / vFW / VPN)
Router and network Firewall functionality Load balance and reliability
OAM ACL Health check Security group Firewall HA Speed of the flow table forwarded and built Stability Master and standby of FW Load balance Floating IP Load balancer functionality Capacity of flow table in controller Performance of vsw Throughput Session sticky N:1 NAT Load balancer HA Maximum of vsw supported by controller Performance of the Gateway New connection maximum Multi-VIP Bandwidth limitation
NAT IPSec functionality Security of South-bound Interface Co-connection maximum Performance of unique vlb Security monitoring Number of vfw in one server Number of vlb in one server Bandwidth limitation
IPSec HA
Secur i t y
Traffic statistics
SSL functionality Performance of unique vfw SSL performance V-motion of VM Traffic Mirroring Account security Metadata function Security group stress test Authority security Router and Network stress test IP protocol security Password security Log security
–
Physical servers are out of the scope of openstack.
–
Neutron API has not been incomplete when considering some services such a s traffic re-direction and service orchestration of service chain.
–
The plugins of LBaaS, FWaaS and some others are limited into one vendors.
ay, we hope openstack can include all the APIs.
SDN APP Openstack SDN Controller
Restful API Neutron API plugin Openflow/XMPP/…
Application Controller SDN APP Openstack SDN Controller
Neutron API plugin Openflow/XMPP/…
Orchestration Application Orchestration Controller
NFV function has been limited.
such as Xen and VMWARE ESXI need to be further researched on.
technology brings extra challenges for high availability in NFV
NFV platform layer, and service layer.
availability feature for VNF services.
encapsulation, different realization mechanism of SDN controller and etc.
different deployments is eager to be shared.
gurong_cmcc@outlook.com gurong@chinamobile.com