Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual...

12

Transcript of Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual...

Page 1: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time
Page 2: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Unlocking SONiC’s Potential for Intent-Based Data Centers

Nikos TriantafillisMember of Technical Staff, Apstra

[email protected]

EW: SONiC

Page 3: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Fully Automated Network

Choice of Hardware Choice of Switch OS Choice of Workload Choice of Cloud

NX-OSIOS-XR

Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation

Day 2 Change Operations Real-TimeContinuous Validation

Real-TimeCorrelation Self Documenting

DESIGN BUILD DEPLOY OPERATE

Intent-Based Data Center Automation Requirements

Page 4: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

4

UI REST API

DESIGN BUILD DEPLOY OPERATE TROUBLESHOOT

TEMPLATES

N E T W O R K

Open and Vendor-Agnostic

Overlay

Intent, Design and Policy

Translation & Validation

GRAPH DATASTORE

Live Blueprint Updates

Single Source of Truth for all Information

INTE

NT-

BASE

D N

ETW

ORK

ING

EN

GIN

E

INTE

NT B

ASE

D A

NA

LYTIC

S

ROO

T CA

USE

IDEN

TIFIC

ATIO

N

Self-Documentation,

Compliance, Regulatory

Symptom Analysis and Root Cause

Identification

Realtime Automation & Closed Loop

Analytics

BLUEPRINTS DASHBOARDS IBA PROBES FAULT MODELS

Intent-Based Data Center Automation Architecture

Page 5: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Logical Devices

Rack Type

Template Blueprint: “It’s Alive!” Interface Map: “Glue”

Device Profile

Resources: “Identities”

Managed Devices

4 x 100 GERole: Spine | Router

8 x 25 GERole: Server | Peer

Panels Roles

Speeds

Leaf Spine Server

Layer 2 or 3 (ROH) Servers

Links to Spines

# Leafs/Rack

Server Uplinks

ServerLogical

Devices

BUILDINGBLOCKS

ABSTRACTION“RUBBER STAMP”

INSTANTIATION“PRINT”

Routing Policy

Overlay Control

IPv4 | IPv6

External Links

Virtual Networks

Security Zones (VRFs)

vSphere Inventory

Intent-Based Analytics

Root Cause Identification

Hardware/SoftwareAgents

Device FactsStatus

OS Management

Pools External Routers

Physical DeviceHW/SW CapabilitiesPort Transformations

Bind Logical to Physical

SPINE

LEA

F

SERV

ER

LEA

F &

SPIN

E

ASN

VNIIP

Page 6: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Intent(Constantly Validated)

Architecture Continuous Validation – Intent Based Analytics

Service VisibilityOperational Changes

Intent-Based Networking Analytics

Leverage Closed Loop Continuous Validation

Page 7: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

7

Root Cause Identification

Root cause

High fidelity symptoms related to root cause

Anomalies and impacts caused by high fidelity symptoms

Low fidelity anomalies caused by event propagation

Cable Swap

IP routes failing

Throughput restricted, bandwidth limited

Point of sale systems slow or intermittent

DEFINITION EXAMPLE

Page 8: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

SONiC changes for enabling intent-based networking

- SONiC on box system agent- SONiC with frr routing stack and move from 4.0 to 6.0.2- ConfigDB split config capability for routing stack- Mgmt interface in a vrf

Page 9: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Demo Intent-Based NetworkingDemonstrate Root Cause Identification with IFA on SONiC

Page 10: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

Summary

- SONiC is integrated, supported and is now a viable option in Apstra’s intent-based networking architecture

- Interest in SONiC continues to grow. SONiC with Apstra’s AOS is being considered by customers and partners in DC, cloud and campus environments

- Excellent work by SONiC community so far- Continue effort with call for more focus in:

StabilityFeature velocityManageabilityTelemetry

Page 11: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time

More Demos in Apstra Booth (B21)

Page 12: Unlocking SONiC’s Potential for Intent-Based Data Centers…IOS-XR Underlay Overlay Virtual Networks Security Zones Group Based Policies Segmentation Day 2 Change Operations Real-Time