TechWiseTV Workshop
(Original Webinar May 11, 2016, replay: http://cs.co/9005BoG6c
Cisco recently introduced Enterprise Network Functions Virtualization (NFV) as part of the digital network architecture: an architecture that allows you to transform your business to innovate more quickly, simplify operations, and reduce risk.
In this 60-minute workshop, we will deep dive into the technology behind Cisco Enterprise NFV. You’ll learn about the four components—orchestration and management, virtual network functions, virtualization layer, and the underlying hardware—and how all the components work together to provide a custom-fit solution for the enterprise. You will also see a demo of Enterprise Service Automation (ESA), the software-defined networking application that makes NFV all the easier for you to adopt.
Cisco Enterprise NFV will transform the way you think about the network and its services.
Watch the Workshop Replay: http://cs.co/9005BoG6c
Animation: 'Fundamentals of Enterprise NFV': http://bit.ly/ENFV_FUN
Watch the TechWiseTV DNA Episode, Part 1: https://youtu.be/TzGpNEfvMC8
Part 2: https://youtu.be/314-NyizsCA
Report
Share
Report
Share
1 of 48
Download to read offline
More Related Content
TechWiseTV Workshop: Enterprise NFV
1. Under the Hood: Cisco
Enterprise NFV
James Sandgathe
May 10, 2016
6. The Current Enterprise Branch Landscape
Multiple Devices
Routers, Appliances, Servers
Costly to Operate
Upgrades, refresh cycles,
site visits
Difficult to Manage
Device integration and
operation
Horseman of the branch apocalypse
7. Now think of deploying an additional service
First, the integration complexity
8. Next, the logistical challenge …
Shipping equipment
Truck roll to install equipment
9. So why is this different than virtualization
done at the Data Center?
9
10. Implementing Virtualization
Data Center and Branch
Focus on virtualization has been in the cloud and DC
where between management console, VMs and
hypervisors:
• Near infinite bandwidth
• Near zero latency
• Straight IP
Over the WAN this is not the same:
• WAN BW is not infinite
• WAN latency is not sub millisecond
• WANs have tunneling, encryption, and labeling
• Management of the hypervisor can be dependent
on a VM and its stability
MPLS WirelessRoute Security
Hypervisor
Platform
11. PKT
Implementing Virtualization
Data Center and Branch
• Packet from the same flow can be spread
across many different CPU pools
SLB
HTTP HTTP
PKT
WAN OptRoute Security
Hypervisor
Platform
• Packet from the same flow use same CPU
pool
• Two, Three or more VMs may process all
packets of the same flow
PKT
13. What NFV Can Do For You
Gives you flexible deployment options
Simplify day to day operations
Quickly roll out new services and locations
Simple and easy
to design, provision,
manage the trusted
services that are critical
to your business
14. How would the branch office change ….
NIC NIM BMCSwitch
X86 Processor
Life Cycle MGT Automation
Policy
Enforcement
Virtualization Layer - KVM
Operating System
Router
Firewall
Wireless
WAN Opt
Proxy/Cache
WAN-
Opt
vAPPWLC
Route/
Path
Selection
FW/
IDS
NIC NIM BMCSwitch
X86 Processor
Life Cycle MGT Automation
Policy
Enforcement
Virtualization Layer - KVM
vAPP
Operating System
Branch on Hardware This is a Branch with
Cisco Enterprise NFV
16. What if remote sites looked like this …
Route
vnet
Platform
Route
vnet
Platform
Route
Platform
Orchestration &
Automation
vnet
17. What if remote sites looked like this …
Route
vnet
Platform
Route
vnet
Platform
Route
Platform
Orchestration &
Automation
vnet
18. Orchestration &
Automation
What if a company wide webcast needed to be run …
Route
vnet
Route
vnet
Route
vnet
Platform
Video
Video
Video
Platform
Platform
19. Orchestration &
Automation
When the webcast is over, resources are released
Route
vnet
Route
vnet
Route
vnet
Platform
Video
Video
Video
Platform
Platform
20. Orchestration &
Automation
Consider a new threat the business
Route
WAN
Opt
vnet
Route
WAN
Opt
vnet
Route
WAN
Opt
Platform WLC
FW/
IPS
WLC
FW/
IPS
FW/
IPS
vnet
vnet vnet
vnet vnet
vnet vnet
vnet
But a new defense network can be up
… everywhere at once
Platform
Platform
21. Why Virtualization for the Network?
Lower operating costs
AND
IoTMobility Analytics Cloud
Mobile traffic will Exceed
wired traffic by 2017
IoT Devices will
triple by 2020
76% of companies planning
to or investing in Big Data
80% of organizations will
primarily use SaaS by 2018
Deploy new capabilities faster
23. Enterprise NFV Solution Architecture
Phase 1
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
Various Host options
for different Branch
Sizes
Software host
managing
virtualization and
hardware
VNF and Application
hosting with 3rd
party support
Common
Orchestration and
Management across
virtual & physical
network
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
NFVIS = Network Function Virtualization Infrastructure Software
3rd
VNFn
…
24. • Enterprise Service Automation (ESA)
• Creates implementable policy from business intent via Profiles
• Automates site turn up
• APIC-EM & Prime Infrastructure
• Branch (NFVIS) registration & PnP Server
• API interface to NFVIS
• Day 1+ services configuration
• Monitoring and Service Assurance
Enterprise NFV
OAM System Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
25. Upload Devices to
be used
Upload the Branch
locations
Design a Profile &
select functions
Map to
Branch(s)
Assign template
and attributes
Pick validated
topologies
1 2 3
5
4
Branch Design
Enterprise Service Automation Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
29. Network Services from Cisco
Consistent software across physical and virtual
* FirePOWER Threat Defense for ENFV June/July 2016
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
ISRv
High Performance
Rich Features
ASAv/FTD
Full DC-class Featured
Functionality
* vWAAS
Application Optimization
and Akamai Connect
vWLC
Built for small and medium
branches
30. LinuxWindows Server
Extending the Reach of NFV
Application and Network Services
Active Directory, SCCM,
File Share
Server Applications
Custom Applications
DNS/DHCP
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
3rd Party
Network Services
Management & Monitoring
31. NFVIS Software
Linux
NFVIS
Virtualization Layer
Hypervisor & vSwitch
OrchestrationAPI
Plug-n-Play
Client
Console
/SSH
ESA via
Prime
CLI
REST/NET
CONF
Health
Monitor
HTTPS
Device Web
Portal
APIC-EM
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
32. WAN OptRoute Security
Hypervisor
Platform
• Packet from the same flow use same CPU
pool
• Two, Three or more VMs may process all
packets of the same flow
PKT
Remember our discussion where at the branch
multiple virtualized functions could be
processing every packet of a flow
33. NFVIS Software
Linux
NFVIS
Virtualization Layer
Hypervisor & vSwitch
OrchestrationAPI
Plug-n-Play
Client
Console
/SSH
APIC-
EM/Prime
CLI
REST/NET
CONF
Health
Monitor
HTTPS
Device Web
Portal
PlatformsInterface
Controller
Interface
Adaptors
PKT
C C C
PKT
PKT
PKTPKT
VN
F
VN
F
VN
F
APIC-EM
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
34. NFVIS Software
Linux
NFVIS
Virtualization Layer
Hypervisor & vSwitch
OrchestrationAPI
Plug-n-Play
Client
Console
/SSH
APIC-
EM/Prime
CLI
REST/NET
CONF
Health
Monitor
HTTPS
Device Web
Portal
PlatformsInterface
Controller
Interface
Adaptors
VN
F
VN
F
VN
F
VF VFVF
PKT
APIC-EM
Platform Hardware
NFVIS
Cisco
VNF
Cisco
VNF
3rd
VNF1
App1 Appn
Orchestration, Automation and Management (OAM)
… …
API
Interface
Platform
Management
Hypervisor
Virtual
Switching
3rd
VNFn
…
35. • Enterprise NFV local management capabilities
• Components:
• Local GUI, VM Life-cycle Manager
• Local PnP Agent
• Useful if WAN connectivity is unavailable
• For small deployments
NFVIS Local Management
The POWER under the hood
All controls written using public APIs!!
Linux
NFVIS
Virtualization Layer
Hypervisor & vSwitch
Orchestration API
Plug-n-Play
Client
CLI
REST/
NETCONF
Health
Monitor
HTTPS
38. Reliable
Long life cycle Secure
What’s needed from the platform
Form factor
Expandable
Programmable Scalable
Strong Support
39. • Designed for a wide range of workloads
• Dense 1RU modular general compute
platform
• CPU: Single/Dual 4 to 18 cores each
• Memory: Up to 784GB
• Storage : 4 or 8 up to 8TB (RAID 10)
• External Interfaces:
• Dual GE on-board
• Two PCIe slots (Quad or Dual GE)
• Cisco integrated management controller
(CIMC)
Enterprise NFV
UCS-220-M4
VM VM VM
NFVIS
40. Enterprise NFV
Modular Compute Platform
Support
One support cost
Native L2-7 Services
Security, optimization
Virtualized Services
Framework
Appliance-level
performance
Life-Cycle
5 – 7 Years
Cisco ISR
4000
Revolutionary
Platform
Architecture
Reliable
Best edge platform
UCS® E-Series
Integrated & OIR Support
compute – up to 8 cores
42. x86
GE
With an SD-WAN solution built in
WAN
Internet
IWANNFVIS
VNF VNF
Orchestration &
Automation
x86 blade with NFVIS
Along with automation control
43. Remember our discussion on how virtualization
was different over the WAN
Over the WAN this is not the same:
• WAN BW is not infinite
• WAN latency is not sub millisecond
• WANs have tunneling, encryption, and labeling
• Management of the hypervisor can be dependent
on a VM and its stability
MPLS WirelessRoute Security
Hypervisor
Platform
44. Hypervisor (KVM)
IOS-XE
vSwitch
BR2
WAAS
FFP DataPlane (ISR-4K)
GE (MGF)
FPGA
GE
GE0 GE1
ISR-4K
Snort
Mgmt NIC
GE
IOSd
NIM
NFV-OS
WLC Windows vFP(t)
OVS
UCS-EGE
GE1GE2
Internal NIC
GE0 GE1
UCS-E
Hypervisor (KVM)
BR1
vnet vnet
BR0
3rd Party
NIM
IoT
Enterprise NFV
ISR-4000 Modular Compute Platform
DMVPN
& MPLS
• UCS-E Compute blade runs
orchestrated and automated
NFVIS
• Platform CIMC fully manages
the x86 UCS-E hardware
with control right down to
BIOS
• 4K implements Transport
Services and Intelligent WAN
along with varying interfaces CIMC
ZBFW
NFVIS
MGF
45. During his keynote for the first iPhone, Steve Jobs
quoted computer scientist Alan Kay …
"People who are really serious about software
should make their own hardware…”
Thanks to Dave Zacks, Distinguished Engineer
46. • CCO information (www.cisco.com/go/enfv)
• CiscoLive Melbourne - BRKCRS-3447: Enterprise Network Function Virtualization
• Two new sessions are added at CiscoLive Las Vegas 2016
BRKCRS-2006 – 2 Hour Breakout
TECCRS-3006 – 8 Hour Deep Dive Tectorial and Hands On Lab
• Interop Tech Field Day – Enterprise NFV Session
Additional Resources