Connectivity FastConnect Level 200 Jamal Arif November 2018 Copyright Copyright 2018, Oracle 2018, and/or Oracle its and/or affiliates. its affiliates. All rights reserved. All rights reserved. 1
Safe Harbor Statement The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. The development, release, and timing of any features or functionality described for Oracle s products remains at the sole discretion of Oracle.
Objectives After completing this lesson, you should be able to: FastConnect Use cases FastConnect Concepts Describe FastConnect Service Models Direct to Oracle: Datacenter Colocation (1a) Dedicated Circuits from a 3rd Party Network Carrier (1b) Using an Oracle Network Provider or Exchange Partner Pre-requisites: Connectivity Level 100 3
Why do you need dedicated connectivity into cloud? HP C Latency sensitive enterprise applications Big Data & High Performance Computing with data-transfer needs Sensitive data that cannot traverse the public internet Lift-and-shift to Cloud Applications with relational database especially vulnerable to latency and require predictable performance including backup, replication use cases Large data transfer (for example batch jobs or real-time queries) require high performance and low latency Applications that contain sensitive data benefit from an extra level of privacy and isolation Moving Web-App-DB tiers to Oracle Cloud needs dedicated network connectivity 4
FastConnect FastConnect provides an easy, elastic, and economical way to create a dedicated and private connection with higher bandwidth options, and a more reliable and consistent networking experience when compared to internet-based connections Connect to OCI directly or via pre-integrated Network Partners 1Gbps and 10Gbps increments Extend remote datacenters into Oracle ( Private peering ) or connect to Public resources ( Public peering ) No charges for inbound/outbound data transfer Uses BGP protocol 5
FastConnect Connectivity Options Service Models Direct to Oracle: Datacenter Colocation (1a) Dedicated Circuits from a 3rd Party Network Carrier (1b) Using an Oracle Network Provider or Exchange Partner 6
Fast Connect Concepts FastConnect location A specific Oracle data center where you can connect with Oracle Cloud Infrastructure. Metro Area A geographical area (for example, Ashburn) with multiple FastConnect locations. All locations in a metro area connect to the same set of availability domains for resiliency in case of failure in a single location. Oracle provider A network service provider that has integrated with Oracle in a FastConnect location. Third-party provider A network service provider that is NOT on the list of Oracle providers Colocation The situation where your equipment is deployed into a FastConnect location. 7
Fast Connect Concepts contd.. Cross-connect In a colocation or third-party provider scenario, this is the physical cable connecting your existing network to Oracle in the FastConnect location. Cross-connect group In a colocation or third-party provider scenario, this is a link aggregation group (LAG) that contains at least one cross-connect. You can add additional cross-connects to a cross-connect group as your bandwidth needs increase. This is applicable only for colocation. 8
Fast Connect Concepts contd..(2) Virtual Circuit A virtual circuit is an isolated network path that runs over one or more physical network connections to provide a single, logical connection between the customer's edge router and their DRG Each virtual circuit is made up of information shared between the customer, Oracle, and a provider The customer could have multiple virtual circuits to isolate traffic from different parts of their organization (e.g. one virtual circuit for 10.0.1.0/24; another for 172.16.0.0/16), or to provide redundancy FastConnect uses Border Gateway Protocol (BGP) to exchange routing information between the various autonomous systems involved in the connection With FastConnect, there are two scenarios for how the virtual circuit's BGP session is established (Layer 2 or Layer 3) 9
FastConnect Connectivity Options Service Models Direct to Oracle: Datacenter Colocation Dedicated Circuits from a 3rd Party Network Carrier Using an Oracle Network Provider or Exchange Partner 10
Direct to Oracle: Datacenter Colocation (1a) FastConnect Edge Availability Domain 1 CUSTOMER DATACENTER CPE Availability Domain 2 10Gbps Availability Domain 3 Customer Cage Oracle CAGE FastConnect DATACENTER LOCATION OCI Region 11
Virtual Circuit and BGP Speakers A single, logical connection (virtual circuit) between your edge and Oracle Cloud Infrastructure by way of your Dynamic Routing Gateway. Traffic is destined for private IP addresses in your VCN. 15
FastConnect Connectivity Options Service Models Direct to Oracle: Datacenter Colocation Dedicated Circuits from a 3 rd Party Network Carrier Using an Oracle Network Provider or Exchange Partner 16
Direct to Oracle: Dedicated Circuits using a Network Service Provider (1b) Direct Cross-Connect: Private / Dedicated Circuits Availability Domain 1 Remote location 1Gbps or 10Gbps FastConnect Edge Availability Domain 2 CUSTOMER DATACENTER CPE Availability Domain 3 Oracle CAGE FastConnect DATACENTER LOCATION Regional Cloud Services 17
FastConnect : Colocation via NSP (1b) Similar requirements to 1a Same process, NSP must be on LOA letter. NSP to quote circuit plus cross-connects at Data Center Colo Customer must work with NSP such as Zayo, Level3, etc to get services Private Wavelength Service Ethernet Private Line CUSTOMER DATACENTER CPE 1 1Gbps or 10Gbps FastConnect Edge R1 Recommend 10G connectivity CPE 2 1Gbps or 10Gbps R2 Usually comes with multi-year commitment NSP Cage Oracle CAGE FastConnect DATACENTER LOCATION 18
FastConnect Connectivity Colocation Model (1a + 1b) Cross-Connect Groups In colocation model 1a and 1b You can add additional cross-connects to a cross-connect group as your bandwidth needs increase such as 2x10G ports into a LAG. When you create a Cross-Connect Group, the Cross-Connects are grouped together to form a Link Aggregation Group (LAG). Can group up to 8 cross-connects in a crossconnect group. (8x10G if required) In a cross-connect group, all ports are on the same router CUSTOMER DATACENTER CPE 1 CPE 1 Customer Cage 1Gbps or 10Gbps 1Gbps or 10Gbps Oracle CAGE FastConnect DATACENTER LOCATION FastConnect Edge R1 R1 19
How to setup a FastConnect Virtual Circuit in Colocation Model? Service Models Direct to Oracle: Datacenter Colocation 1a Dedicated Circuits from a 3 rd Party Network Carrier 1b 20
1. Setup Initial Components in OCI Console a. DRG (Private Peering Only) b. Cross Connect Group and Cross Connect Select the number of individual cross-connects to create in the cross-connect group. In the Console, you can create three. If you need more, you can add more later(total eight in a cross-connect group) Select the FastConnect location (Transit POP) for this cross-connect group. All cross-connects must use a 10 Gbps port speed. Here you may optionally specify whether you want the new cross-connect group to be on the same or different router than one of your other cross-connect groups. 21
1. Setup Initial Components in OCI Console a. DRG (Private Peering Only) b. Cross Connect Group and Cross Connect FastConnect (FC) icon: It shows the general status of the overall FastConnect connection and whether you need to take action. At this point, the FC status will be ACTION REQUIRED Cross-connect group (CCG) icon:it shows the status of the cross-connect group itself. At this point, the CCG status will be PENDING PROVISIONING. Cross-connect (CC) icon: It shows the status of a given cross-connect. At this point, the CC status will be PENDING CUSTOMER. 22
2. Setup Physical Connection in the DataCenter a. Setup Cabling after LOA b. Check Light Levels for all interfaces c. Activate Activate your cross-connect. If you have other crossconnects in this group that are ready to use, wait for the first to be provisioned, and then activate the next one. Only one cross-connect can be activated and then provisioned in a group at a time. View and print the cross-connect's Letter of Authorization (LOA). You need to submit it with your cabling request at the FastConnect location Confirm from your side that the light levels for each physical connection (cross-connect) are good (> -15 dbm) 23
2. Setup Physical Connection in the DataCenter a. Setup Cabling after LOA b. Check Light Levels for all interfaces c. Activate FastConnect (FC) icon: The FC status remains as ACTION REQUIRED to indicate that you have another action to take (to make virtual circuit) Cross-connect group (CCG) icon: The CCG status switches to PROVISIONED to indicate that the cross-connect group is ready to use. Cross-connect (CC) icon: The CC status switches to PROVISIONING and then changes to PROVISIONED (typically within one minute). 24
3. Setup Virtual Circuit Create private or Public Virtual Circuit Private Virtual Circuit DRG and Compartment Provisioned Bandwidth Customer BGP ASN public or private ASN VLAN must not be assigned already Oracle BGP IP and Customer BGP IP (either 30/31 subnet mask) Public Virtual Circuit Provisioned Bandwidth Customer BGP ASN public ASN of customers network VLAN must not be assigned already Public IP Prefixes: The public IP prefixes that you want Oracle to receive over the connection (each one must be /31 or less specific). 25
3. Setup Virtual Circuit (Virtual Circuit Details) BGP is down Provider state is Active Oracle Router is provisioned Physical Binding to Cross-Connect 26
3. Setup Virtual Circuit FastConnect (FC) icon: The FC status switches to PROVISIONING briefly while Oracle's system provisions the virtual circuit. The status then switches to ACTION REQUIRED if the BGP session between your edge router and DRG is not yet correctly configured, if the VLAN isn't configured correctly, or if there any other problems. Cross-connect group (CCG) icon: The CCG status remains as PROVISIONED. Cross-connect (CC) icon: The CC status remains as PROVISIONED. Virtual circuit (VC) icon: The virtual circuit's status is PROVISIONING briefly while Oracle's system provisions the virtual circuit. The status then switches to DOWN if the BGP session between your edge and Oracle's edge is not yet correctly configured, if the VLAN isn't configured correctly, or if there any other problems. Otherwise the status switches to UP 27
4. Configure your Edge Router Configure your edge router(s) to use the BGP information and VLAN for the virtual circuit. Oracle's BGP ASN is 31898. LACP is required on the network interface that is directly plugged in to Oracle's router, even if you have a single cross connect Once configured, The FC status switches to PROVISIONED when the BGP session is established. For a public virtual circuit, instead of switching to PROVISIONED, the status may switch to either IP CHECK IN PROGRESS or IP CHECK FAILED (if one of your public prefixes failed Oracle's verification). When Oracle successfully verifies all the prefixes, the FC status switches to PROVISIONED. Ping Oracle BGP IP for testing the virtual circuit. 28
FastConnect Connectivity Options Service Models Direct to Oracle: Datacenter Colocation Dedicated Circuits from a 3 rd Party Network Carrier Using an Oracle Network Provider or Exchange Partner (Layer 2 or Layer 3) 29
Physical Connectivity Using an Oracle Network Provider or Exchange Partner Point-to-point or multi-point service FastConnect Edge Availability Domain 1 CPE PARTNER NETWORK Partner Edge Redundant 10Gbps Availability Domain 2 CUSTOMER DATACENTER Availability Domain 3 CPE CUSTOMER DATACENTER Partner Demarc Oracle CAGE FastConnect DATACENTER LOCATION Partners Network Service Providers Exchanges (example Equinix, Megaport, Interxion) OCI Region 30
Logical Connectivity Using an Oracle Network Provider or Exchange Partner Layer 2 FastConnect Virtual Circuit 1 FastConnect Virtual Circuit 2 Availability Domain 1 FastConnect Edge CUSTOMER DATACENTER CPE PARTNER NETWORK Partner Edge Avalability Domain 2 Availability Domain 3 Partner Demarc Oracle CAGE FastConnect DATACENTER LOCATION BGP Route advertisements (Oracle <-> Customer) Example Megaport, Equinix, Interxion OCI Region 31
Logical Connectivity Using an Oracle Network Provider or Exchange Partner Layer 3 FastConnect Virtual Circuit 1 FastConnect Virtual Circuit 2 Availability Domain 1 FastConnect Edge CUSTOMER DATACENTER CPE PARTNER NETWORK Partner Edge Availability Domain 2 Availability Domain 3 Partner Demarc Oracle CAGE BGP Route advertisements (Customer Partner) FastConnect DATACENTER LOCATION BGP Route advertisements (Partner Oracle) OCI Region 32
FastConnect Connectivity Partners https://cloud.oracle.com/en_us/fastconnect/providers 33
FastConnect Locations https://cloud.oracle.com/en_us/fastconnect/providers 34
How to Setup a FastConnect virtual circuit with Partner: Demo example - Megaport Layer3 Partner Service Models Direct to Oracle: Datacenter Colocation 1a Dedicated Circuits from a 3 rd Party Network Carrier 1b Using an Oracle Network Provider or Exchange Partner (Layer 2 or Layer 3) 35
1. Setup OCI Components a. DRG (Private Peering Only) b. Setup a Virtual Circuit with Provider 36
1. Setup OCI Components a. DRG (Private Peering Only) b. Setup a Virtual Circuit with Provider Select the type of circuit Select the DRG Private Peering: Provide customer and oracle BGP IP address and ASN Public Peering: Customer Public BGP ASN and public Prefixes 37
1. Setup OCI Components c. Provide details of Virtual Circuit to provider OCID of the Virtual Circuit Pending Provider 38
2. Setup Megaport Connection a. Use OCID of the Virtual Circuit in Megaport Create a Virtual Circuit 39
40
Choose POP Location Provide OCI virtual circuit OCID 41
42
43
44
45
46
47
Summary After completing this lesson, you should have learned: FastConnect Use cases FastConnect Concepts Describe FastConnect Service Models Direct to Oracle: Datacenter Colocation (1a) Dedicated Circuits from a 3rd Party Network Carrier (1b) Using an Oracle Network Provider or Exchange Partner Pre-requisites: Connectivity Level 100 48
cloud.oracle.com/iaas cloud.oracle.com/tryit 49