Beruflich Dokumente
Kultur Dokumente
2
Why Overlays (VXLAN)?
IP Address ?
Network ?
App
DB
3
Why Overlays (VXLAN)?
VXLAN Fabric
Web Web
App
DB
VLAN sprawl
VLAN scale
5
Physical Topology
6
Deployment Model : Existing L2 or New L2 Access Layer
Optionally
Enable PIM
Aggregation Aggregation
vPC/MLAG
STP
Setup a single Subnet
Enable IGMP
Access Access
7
Deployment Model : Existing L3 or New L3 Access Layer
Aggregation
Access
8
Deployment Model : Existing L3 or New L3 Access Layer
Aggregation
9
Logical Topology
10
Use Case Enabler #1 : Logical Layer 2 across L2
VM VM
VM VM
VDS
Switch
L2 Pod
11
Use Case Enabler #2 : Logical Layer 2 across L3
VM VM
VM VM
VDS VDS
Physical Physical
Switch Switch
L2 Pod L2 Pod
DC
Router
12
VXLAN Details
13
Virtual Extensible Local Area Network (VXLAN)
14
VXLAN HOW – Initial Setup
VM1 VM2
MAC1 MAC2
ESX1 ESX 2
VTEP1 VTEP2
L2/L3 network
infra
VM1 and VM2 on VXLAN ID100, and VXLAN form the topology by joining mcast group 239.119.1.1
15
VXLAN protocol – ARP Query
VM1 VM2
MAC1 MAC2
1 BCAST MAC1 ARP Req 5 BCAST MAC1 ARP
Req
4 Learn inner src MAC/ outer src IP
mapping
ESX1 NetID MAC IP
NetID MAC IP ESX 2
VTEP1 VTEP2
100 MAC1 IP1_vtep1
L2/L3 network
infra
VM1 sends ARP request (BCAST) in VXLAN ID 100 to get VM2’s MAC
VTEP – Virtual Tunneling End Point
16
VXLAN Protocol – ARP Response
VM1 VM2
MAC1 MAC2
4 MAC1 MAC2 ARP 1 MAC1 MAC2 ARP
Resp Resp
3 Learn inner src MAC/ outer src IP
mapping
ESX1 NetID MAC IP
NetID MAC IP ESX 2
VTEP1 100 MAC1 IP_vtep1 VTEP2
100 MAC2 IP_vtep2
L2/L3 network
infra
17
VXLAN Protocol – Gateway
ESX1 ESX 2
VTEP1 VTEP2
MAC Hdr IP Hdr UDP Hdr VXLAN Hdr MAC1 MAC2 Data MAC Hdr IP Hdr UDP Hdr VXLAN Hdr MAC1 MAC2 Data
DA:IP_vtep1 VXLAN ID: DA:IP_vtep1 VXLAN ID:
SA:IP_vtep2 100 SA:IP_vtep2 100
L2/L3 network
infra
18
VXLAN Protocol – Gateway
Gateway VM2
MAC1 MAC2
MAC1 MAC2 Data
ESX1 ESX 2
VTEP1 VTEP2
19
VXLAN Logical View – 2 VMs in same VXLAN
VM VM
VXLAN
192.168.1.10 192.168.1.11 192.168.1.0/24
192.168.1.1
Gateway
172.26.10.10
External Network
172.26.10.0/24
Internet
VM to VM communication
VM to Internet communication
20
VXLAN Physical View – 2 VMs in same VXLAN
192.168.1.10
Gateway
VM 192.168.1.1 VM
192.168.1.11
172.26.10.10
VTEP VTEP
VDS VDS
Router
Internet
VM to VM communication
VTEP – Virtual Tunneling End Point
VM to Internet communication
21
VXLAN Logical View – 2 VMs in different VXLAN
VM VM
192.168.1.10 192.168.2.10
172.26.10.10
External Network
172.26.10.0/24
Internet
22
VXLAN Ecosystem: Performance, Visibility & Interoperability
VMware
Edge
Visbility
VXLAN Overlay
L2
Network Gateway
Service
Physical IP Network
Server
offloads
23
Summary
24
The New Standard in Data Center Switching
10.10.10.3
10.10.11.4
128.218.12.3
128.218.12.4
128.218.12.5
128.218.12.6
128.218.12.7 128.218.12.8 128.218.12.9
Interface Ethernet 24
VXLAN VTEP VNI CalBears
Interface Loopback0
VXLAN VTEP Gateway VNI Calbears
IP Address 204.181.40.1/24
<--Network
VM- Oski
VNI - CalBears
Incast SLA Assurance
Poor Service
Solution: VNI Segregation
Network audit to
ensure reachability
Automated provisioning
Workflow without
finger pointing
Other awesome
capabilities
Visibility - so where is my VM now?
spine0
leaf1 leaf2
esx10 esx11
VNI ‘Test’: 224.0.0.12
128.218.10.x 128.218.11.x
esx1 esx11
VNI ‘Test’: 224.0.0.12
128.218.10.x 128.218.11.x
esx1 esx11
VNI ‘Test’: 224.0.0.12
Q&A
arungoel@vmware.com
kduda@aristanetworks.com
37
Other Networking & Security Sessions to attend
38
FILL OUT
A SURVEY