F5 Networks in the Software Defined DataCenter Era Paolo Pambianco System Engineer CSP p.pambianco@f5.com
Data Center Transformation Business demands are driving changes in IT service delivery
Driving Towards an Application Centric World IT/Ops Struggle to Deliver SDDC/Cloud Mobility Internet of things Advanced threats Lines of business Application Availability Quality of experience Time to Market F5 Networks, Inc... 3
New requirements for Application Delivery Deployment Infrastructure Delivery Access YESTERDAY Days Human configuration Product manuals Hardware products Single tenant Vertical stack - Closed Traditional data center Over-Provisioning Managing boxes Network-bound Network-based identity Fixed FUTURE Minutes Automation Developer community / API s Software Defined platform Multi-tenant Eco-system - Open Modern / Hybrid data centers Just-in-time provisioning Managing service chains Federation Contextual identity Mobile F5 Networks, Inc... 4
Putting Pressure on Networks to Scale Applications double every 4 years Data volumes double every 18 Months IT Budgets double every 8 years F5 Networks, Inc... 5
Challenges in Scaling Modern Data Centers Architect Clients Network Engineers and Admins Manual and Scripted Configuration Data Plane Application Time consuming Error prone process Difficult to debug Router Switch LB Firewall VEs F5 Networks, Inc... 6
SDN is the answer?!
Definition of SDN: SDN is a family of architectures (not technologies) for operationalizing networks with improved time to market, reduced risks, and reduced operating expenses by centralizing control into a control plane that programmatically controls and extends all network data path elements and services via open APIs. F5 Networks, Inc... 8
Applications Rely on Stateful Layer 4-7 Services LAYER 4-7 STATEFUL SERVICES ADC Local Load Balancing Application Security Application Performance Secure Web Gateway Global Load Balancing DDoS Protection Identity and Access Malware Detection Firewall LAYER 2-4 STATELESS SERVICES VIRTUAL AND OVERLAY NETWORKING Router Switch F5 Networks, Inc... 9
SDN Solution Space F5 in L4-L7 Service Chaining Architect Interoperability Control Plane Data Plane Interoperability VXLAN NVGRE F5 Networks, Inc... 10
Programmability is the KEY F5 Networks, Inc... 11
F5 Programmability Story Internal Interfaces icall iapp Events & Timers Monitoring Statistics Packaged Solutions Business Logic Templating irule Listen Traffic Intelligence Protocol Implementation External Interfaces Deliver BIG-IQ (TMUI) icontrol REST GUI & CLI External Interaction TMSH Cloud Orchestration DevOps F5 Networks, Inc... 12
F5 Programmability Story One-Stop Packaging One-Step Delivery BIG-IQ (TMUI) iapp Workspace Aggregation point for all components of a solution Universal mechanism, even for a single irule 3 rd Party signing and encryption F5 Marketplace icontrol REST GUI & CLI External Interaction TMSH Cloud Orchestration DevOps F5 Networks, Inc... 13
iapp Auto Generates The Configuration Needed Per App F5 Networks, Inc... 14
Integrating L4-L7 SDN services with Vmware NSX and Cisco ACI
F5 SDAS and VMware NSX F5 Software Defined Application Services (SDAS) Intelligent L4-7 Services & Traffic Management Internet Hypervisor Hypervisor NSX Fabric Mgmt. BIG-IQ Hypervisor Hypervisor Hypervisor iapps VMware s NSX solution provides an overlay fabric Basic L4-7 Services Management/Orchestration system Customer provides applications and advanced services. F5 SDAS provides Stateful L4-7 Intelligence and Traffic Mgmt. F5 Networks, Inc... 16
F5 and Cisco ACI Integration Models ACI Fabric BIG-IQ Virtual Edition Appliance Chassis BIG-IP F5 Synthesis Fabric APIC to BIG-IQ Integration Model F5 Networks, Inc... 17
BIG-IQ Integration Workflow Connectors F5 Networks, Inc... 18
Service Insertion using iapp templates F5 Networks, Inc... 19
Service Insertion with template provisioning under NSX Edge F5 Networks, Inc... 20
Deploy iapps thru BIG-IQ Implementation Thru BIG-IQ, create a new catalog template base on the custom iapps. iapps configurable parameters are customizable in BIG- IQ, allow use to set default value or Tenant edible F5 Networks, Inc... 21
F5 ACI Service Insertion Implementation through APIC Create Function Profile for ADC 1-Arm mode F5 Networks, Inc... 22
Simple to complex deployments F5 Networks, Inc... 23
Summary SDN validates F5 vision It s all about dynamic services SDN drives adoption of three main data center technologies: network virtualization and centralized control plane for L2/L3 and Application Layer SDN for L4-7 Network and Application Layer SDN are complementary and solve different data center challenges F5 brings its industry leading innovation, maturity and expertise in application delivery in traditional data centers to Software Defined Data Centers with Application Layer SDN F5 Networks, Inc... 24
F5 Networks, Inc... 25