Sie sind auf Seite 1von 93

Network Director 2.

5
Salman Syed
Technical Marketing Engineer
Junos Space Network Director:
A Single Pane of Glass to…
Holistic and Correlated View
 Data center and campus topologies
VISUALIZE
 Correlated overlay and underlay network visibility
 Physical and virtualized connectivity

Smarter and Proactive Networks


 Built-in collection and correlation engine
ANALYZE
 Heat map and root cause analysis
 Network telemetry for overlay & underlay networks

Lifecycle and Workflow Automation


 Fabric automation and management
CONTROL
 Scalable and resilient multi-site management
 Data center fabric management

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Holistic View of the Network
Multi-point Navigation
 Dashboard view  Device View
 Location & Logical View  Data Center View
 Custom Group View  Topology View

Intuitive Graphical Interface


 Integrated workflow and wizards
 Web 2.0 and HTML 5

Advanced analytics
 Performance analyzer
 Flow path analyzer
 Virtual & Physical networks analyzer
 Network Traffic Analyzer

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Junos Space Network Director
2.5 Key Features Summary

Cloud & SDN Simplification Analysis


 VMWare vROPS integration  Fabric management supporting  Network Traffic Analyzer via
 VMWare NSX-V integration QFX10k sFlow (EX & QFX)
 End-to-End L2 provisioning in a  Top applications & talkers
Fabric  Automated & policy driven sFlow
 IP Connectivity analysis
 MC-LAG & VRRP support
 Configuration and image base-
lining

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


VMWARE vROPS Integration
VMWare vROPS Management Pack
• Cloud admin tool to monitor & troubleshoot
data center environment
– Hierarchical data center view
– Correlated view of compute & network
• VMs health and fabric health
• Fabric heat map and utilization
• Topology visualization

– Alerts notifications
• Device & interface failures
• B/W and latency thresholds exceeded

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


High Level View
vRealize Operations (vROPs)

Juniper
vSphere MP NSX MP
Networks MP

ND Rest API
Vmware vCenter Vmware NSX
ND

Physical Network

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Installation of Management Pack File

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Configure Juniper Networks Solution

Enter ND IP address and


Credentials

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


High Level View of Integration

Juniper Adapter

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Juniper Inventory Tree

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Juniper Infrastructure Overview Dashboard

One hop relationship of a object with


View health of all the
all other physical and logical objects
components of datacenter in one
single place

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Device Down Alert

View the current alerts


on an object

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Fault – Drill down

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Juniper Network Fabric Monitoring

View all juniper network Fabrics

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Top Network Fabrics

Top fabric members by CPU and Memory


utilization

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Juniper Inventory Tree

Overall Juniper infrastructure health,


risk and efficiency summary

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Launch To Network Director

Launch network director to view device connectivity

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


VMWare vCenter with NSX-V
Cloud Infrastructure

Supports Vmware vCenter with NSX as cloud


infrastructure

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Configuration

Configure vCenter details

Configure NSX manager details

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Network Traffic Analyzer
Introduction
• Network Traffic Analysis proactively monitor network usage and
provides real-time and trended view of bandwidth usage

• Identifies which devices, interfaces, applications & protocols are


consuming the most bandwidth

• Helps to Detect, diagnose, and resolve network performance issues

• Provide both proactive and reactive mode traffic analysis


Proactive and Active Mode
• In Proactive mode user will define a policy based on network
bandwidth usage

• Once the traffic goes above the specified utilization it will


automatically captures the sFlow from enabled devices

• In reactive mode the user has the option to select a port and perform
NTA
Dashboard View

Click on analyze traffic to view the NTA information


Top Application View
Option to modify time interval

Show top applications,


protocol and bandwidth
percent utilized

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Top Conversation View
Show top
conversations source
and destination IP and
bandwidth percent
utilized

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Enable NTA

Add the device to enable NTA Configure the percentage of port


utilization

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


MC-LAG
Multi-chassis Link Aggregation
MC-LAG: Multi-Chassis Link Aggregation Group
M
M Allows a LAG interface to be established across multiple chassis
B - One logical interface across 2x chassis
B
ICL Provides node-level redundancy, multi-homing support, and a
loop-free Layer 2 network without running Spanning Tree
Protocol (STP)
MC-LAG
MC-LAG
Uses Inter-Chassis Control Protocol (ICCP) to exchange control
information between two MC-LAG nodes
LAG LAG
Client device terminates physical links in a link aggregation
Aggregation Aggregation
group (LAG)
Switch 1 Switch 2 - Client device not aware of MC-LAG

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Network Director Advantage
• MC-LAG Configuration in cli require lot of parameters, time
consuming and complex

• ND Will be able to help customers configure MC-LAG in few simple


steps

• It will auto configure parameters like BFD timer, Chassis ID, Liveness
Detection, peer IP address, MC-AE id, hold timer

• Supports EX9200, QFX10K, QFX5100, QFX3600


Manage MC-LAG Task

New manage MC-LAG task to create and edit Multi chassis Lag

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Peer Device Selection

Drag and Drop Peer devices from the list

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


ICCP and ICL Link Configuration

Option to Combine control and


data links

Add ICL and ICCP Ports

Configure Control link IPV4


address

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Client Device Selection
Client Config window will pop up Select Client device from the list

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Client to Peer Link Settings

Select client and peer ports

Option to configure IRB’s and VRRP attribute

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Save Config

Option to review and save the config

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Config Review
Review the config

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Deploy

Deploy the MC-Lag Config

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Automatic Config Generation

ND will automatically generate most of the config like


chassis ID, admin key, system-id

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


IP Connectivity
IP Connectivity
• Simplify BGP configuration in a datacenter

• Add switches to autonomous system by drag and drop

• Configure Ingress , egress policies and route filters

• Configure EBGP links between multiple AS

• View Routing tables from Network director

• Support EX9200,MX,QFX10K, QFX5100,QFX3600,EX4600


JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY
Manage IP Connectivity

Create a new Autonomous system

Option Under Data center management to configure BGP


Add Devices

Add devices from the list to AS


Configure Polices

Configure Ingress , egress policies and Route


filters
Configure EBGP Link

Option to add EBGP link

Configure source and destination


ports, route filters, ingress and
egress policies
Deploy

Save and Deploy the config


Show Route Table

New option to view route table


Routing Table

Show different route tables


Port Profile Enhancements
PORT PROFILE ENHANCEMENTS

Port Profile Problems: Port Profile Enhancements in 2.5:


• Single form with too many details • Port profile is split into two tabs – Quick Setup vs.
• Not easy to create a bare minimal Custom Setup
Switching or IP type Profile.  Quick setup : Create port profile with bare minimal
details (Service type and VLAN)
• Navigation is required between various
Sub Profiles before Port Profile setup  Custom setup: Customization as per needs
(Authentication, COS, Filter and physical port
• Manually assign created Profile to
settings)
move devices to deployment (Not
intuitive) • Inline creation of sub profiles like VLAN, COS and
authorization
• User will be prompted if he or she is interested in
assignment of the profile.

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Quick Setup

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Quick Setup – VLAN (Create)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Basic Settings

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Advanced Settings

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Cos Settings (Select)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Cos Settings (Create)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Auth Settings (Select)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Auth Settings (Create)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Custom Setup – Filter Settings (Select)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Quick/Custom Setup Done, Move to assignment

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Profile Assignment

Select a profile to assign

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Device Selection

Select single or multiple devices to apply the profile

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Profile Assignment

Select multiple ports

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Port Selection

Select ports where you want to apply the profile

User can select hundred of ports

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Review

Review the assignment

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Apply the Profile

Profile assignment
complete

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Config Baseline
Config Baseline
• Allows user to save the device configuration and OS version of a known
state

• Help customer to restore the configuration to that particular known state


incase of any failure

• User will also be notified in case of the configuration changes as


compared to the baseline configuration

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Baseline Management

Create , Restore and View baseline config

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Deploy Configuration

Option to update baseline config after config changes

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Restore/View/Compare Baseline Configuration

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Alarm Generation

Generate alarms when someone change the config

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Audit Baseline

Audit Baseline

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Device Inventory Baseline State

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


RBAC
Introduction
• Network Director 2.5 release will extend RBAC to control the access
to

• Views (Dashboard/Logical/Location/Device/Custom
Group/Datacenter/Topology

• Task (All tasks in ND)

• Dashboard Widgets (All Widgets)

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Role Detail Summary

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Space Role Management

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


New Mode Selection

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


ND Views

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Dashboard Widgets

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Network Director Tasks

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Example
* Allow user to only configure VLAN and CoS profile

Create a new role

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Application and Associated Task

Select tasks for selected workspace

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Role Summary

Test Engineer role is only allowed to


config vlan and Cos profiles

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Create User

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Role Assignment

Assign role to user

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Build View

Test user is only allowed to config VLAN and CoS profiles

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


Ordering and Competitive
Ordering Information

JS-NETDIR-10 Junos Space Network Director for 10 Devices


JS-NETDIR-25 Junos Space Network Director for 25 Devices
JS-NETDIR-100 Junos Space Network Director for 100 devices
JS-PLATFORM 15.1R1

 Network Director is part of Junos Space and requires Junos Space Network Management Platform (JS-PLATFORM) to be installed

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY


ND vs. Cisco Prime
Features Network Director Cisco Prime
Vrops Integration ✔ ✖
Network Traffic Analyzer ✔ ✖
IP Connectivity ✔ ✖
MC-LAG Configuration ✔ ✖
ZTP ✔ ✖
Open Stack Integration ✔ ✖

JUNIPER NETWORKS CONFIDENTIAL: SHARE UNDER NDA ONLY

Das könnte Ihnen auch gefallen