Integration and Interoperation of Existing Nexus Networks into an ACI Architecture Mike Herbert, Principal Engineer, INSBU BRKACI-2001 Introduction We Are at the Cusp of a Major Shift TRADITIONAL DATA CENTRE CLOUD DATA CENTRE Adoption Curve HYBRID CLOUDS We are here Efficiency AUTOMATION IT as a Service IaaS| PaaS | SaaS | XaaS Flexible Consumption Models VIRTUALISATION CONSOLIDATION EFFICIENCY SIMPLICITY | SPEED DIGITAL EXPERIENCES 2000 2010 2015 The Next 5+ Years BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 4 Introducing: Application Centric Infrastructure (ACI) Apps + Infrastructure Open + Secure Physical + Virtual + Containers On-Premises + Cloud Application Oriented Policy = Operational Simplicity BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 5 ACI - Components Logical network provisioning of stateless hardware Web App DB Outside QoS QoS QoS (Tenant VRF) Filter Service Filter ACI Policy APIC Application Policy Infrastructure Controller ACI Fabric Integrated GBP VXLAN Overlay BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 6 APIC provides full FCAPS Automation and Operations Capacity Dashboard Drag and Drop Configuration Troubleshooting Wizards BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 7 APIC & ACI – A Crypto Based Platform • User and Orchestration access to APIC Same SSL Certificate presented by all APICs to • Web-Token or X.509 based certs External HTTPS SSL connections • APIC to Switch - SSL connection leveraging public key certificates APIC • APIC ISO is encrypted and keys are stored on APIC TPM Cisco Signed Certificates SSL • Anti Counterfeit Technology-2 (shipped with switch and APIC) Hardware Security Module (ACT2 HSM) • Validates the FPGA software, ROMMON software, switch pre-boot image and the switch full image BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 8 ACI Policy Based Forwarding via an Integrated Overlay ACI - Components Logical network provisioning of stateless hardware Web App DB Outside QoS QoS QoS (Tenant VRF) Filter Service Filter ACI Policy APIC Application Policy Infrastructure Controller ACI Fabric Integrated GBP VXLAN Overlay BRKACI-2001 © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Description: