网络虚拟化的变革(1).ppt
《网络虚拟化的变革(1).ppt》由会员分享,可在线阅读,更多相关《网络虚拟化的变革(1).ppt(40页珍藏版)》请在三一办公上搜索。
1、网络虚拟化的变革,思科系统(中国)网络技术有限公司,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,司空见惯的虚拟化,Ethenet port chanel,Multilink ppp,HSRP/GLBP,Local AccessLoop=64 kbps,DLCI:400,PVC,DLCI:500,DLCI:200,DLCI:100,PVC,Frame-relay/ATM-SVC/PVC,Virtualized Interconnect,L3 VPNs MPLS VPNs,GRE,VRF-Lite,MPLS services over GRE,VNETs*L2 VP
2、Ns-AToM,Unified I/O,VLAN trunks,OTV*,虚拟链路(ipsec/ssl-vpn)实现远程用户安全接入,总部,SITE-SITE VPN,远程办公室,Intranet VPN 低的成本,通道连接,丰富的VPN服务新应用,省钱,家庭办公,移动用户,POP,POP,远程访问 VPN安全,可扩展,加密的通道省钱,简单,VPN 路由器ISR,VPN 路由器ISR,VPN 软件,VPN 软件,思科ASA5500 作为EASY-VPN SERVER,SITE-SITE VPN,EASY VPN,EASY VPN,AAA认证服务器ACS,GRE-VPDN,FCoE,数据中心网络
3、融合:IP,SAN,HPC,UnifiedFabric,存储网络,管理网络,后台网络,前端网络,网络备份,Agenda,链路的虚拟化 设备的虚拟化 服务的虚拟化 全面的虚拟化 总结,VLAN-TRUNK,VLAN Tag added by incoming port,VLAN Tag stripped by forwarding port,802.1Q VLAN identifier,路径隔离:router vrf(Virtual Routing/Forwarding),设备虚拟化Control Plane VirtualizationData Plane VirtualizationMana
4、gement Virtualization数据路径虚拟化Single-hopMulti-hop,802.1q DLCIVPI/VCI PW,VFI,Tags/circuits,Tags/circuits,vlan,vlan,Network Virtualization-Extension,Servers,Mainframe,WhichVirtualizationTechnology For Extending:L2?L3?,Campus and Data Center,Virtual SANs(VSANs)-将lan的概念移植到存储,Eliminates costs associated wi
5、th separate physical fabrics through consolidationAllows partitioning of individual switches and/or fabricsOverlay isolated virtual fabrics on same physical infrastructureVSANs contain zones and separate fabric servicesAvailabilityFault isolation isolate virtual fabrics from fabric-wide faults/recon
6、figurationsScalabilityReplicated fabric services per VSANSecurityComplete hardware isolation between virtual SAN,Department/Customer A,Shared Storage,Department/Customer B,VSAN-EnabledFabric,MgmtVSAN,MDS 9222i,Inter-VSAN Routing(IVR)Sharing Resources Across VSANs,Allows sharing of centralized resour
7、ces such as tape and disks across VSANs without merging separate fabrics Provides high fabric resiliency and VSAN-based manageabilityDistributed,scaleable,and highly resilient architecture Transparent to third-party switchesEnables blade-per-VSANarchitecture for blade servers,Tape VSAN_4(access via
8、IVR),HRVSAN_3,MarketingVSAN_2,BladeServer,TapeVSAN_4(access via IVR),VSAN-SpecificDisk,Engineering VSAN_1,MarketingVSAN_2,HRVSAN_3,IVR,IVR,MDS 9222i,MDS 9222i,IVR,Virtual Firewall,Core/Internet,Catalyst 6500/7600,FW SM,A,B,C,VFW,VFW,VFW,MSFC,E.g.three customers a three security contexts scales up to
9、 256VLANs can be shared if needed(VLAN 10 on the right-hand side exampleEach context has its own policies(NAT,access-lists,fixups,etc.),Core/Internet,Catalyst 6500/7600,A,FW SM,B,C,VFW,VFW,VFW,MSFC,Vlan 10,Vlan 20,Vlan 30,Vlan 11,Vlan 21,Vlan 31,Vlan 10,Vlan 11,Vlan 21,Vlan 31,Online BankApplication
10、,Virtualized Application Switching ACE Way,Cisco ACE,ESX Server,MicrosoftOutlook,App Has Capacity Available,Ideal Isolation,IDSM-2 Module for the Catalyst 6500 Chassis,Catalyst-integrated security module delivering full-featured intrusion protectionIndustry-exclusive product providing high speed thr
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- 网络 虚拟 变革
链接地址:https://www.31ppt.com/p-2777084.html