Automation rau cov me nyuam. Ntu ob. Network tsim

Hauv thawj ob kab lus, kuv tau tsa qhov teeb meem ntawm automation thiab sketched tawm nws lub moj khaum, nyob rau hauv lub thib ob kuv ua ib tug tawm mus rau hauv lub network virtualization, raws li thawj txoj kev mus rau automating lub configuration ntawm cov kev pab cuam.
Tam sim no nws yog lub sij hawm los kos ib daim duab ntawm lub cev network.

Yog tias koj tsis paub txog kev teeb tsa cov ntaub ntawv chaw network, ces kuv xav kom pib nrog cov lus hais txog lawv.

Txhua yam teeb meem:

Cov kev coj ua tau piav qhia hauv cov koob no yuav tsum siv tau rau txhua hom kev sib txuas, txhua qhov loj me, nrog rau ntau yam ntawm cov neeg muag khoom (tsis yog). Txawm li cas los xij, nws tsis tuaj yeem piav qhia qhov piv txwv thoob ntiaj teb ntawm kev siv cov txheej txheem no. Yog li ntawd, kuv yuav tsom mus rau niaj hnub architecture ntawm DC network: Kloz Factory.
Peb yuav ua DCI ntawm MPLS L3VPN.

Ib qho Overlay network khiav rau sab saum toj ntawm lub cev network los ntawm tus tswv tsev (qhov no tuaj yeem yog OpenStack's VXLAN lossis Tungsten Fabric lossis lwm yam uas yuav tsum muaj kev sib txuas IP yooj yim ntawm lub network).

Automation rau cov me nyuam. Ntu ob. Network tsim

Nyob rau hauv cov ntaub ntawv no, peb tau ib tug kuj yooj yim scenario rau automation, vim hais tias peb muaj ib tug ntau ntawm cov khoom uas yog configured nyob rau hauv tib txoj kev.

Peb yuav xaiv ib lub DC kheej kheej hauv lub tshuab nqus tsev:

  • Ib qho qauv tsim nyob txhua qhov chaw.
  • Ob tus neeg muag khoom tsim ob lub dav hlau network.
  • Ib lub DC zoo li lwm tus zoo li ob lub peas hauv lub plhaub.

Txheem

  • Lub cev topology
  • Txoj kev
  • IP txoj kev npaj
  • Laba
  • xaus
  • Pab kev sib txuas lus

Cia peb Tus Muab Kev Pabcuam LAN_DC, piv txwv li, tus tswv tsev qhia cov yeeb yaj kiab txog kev muaj sia nyob hauv lub elevator daig.

Nyob rau hauv megacities no yog wildly nrov, yog li koj xav tau ntau lub cev tshuab.

Ua ntej, kuv yuav piav qhia txog lub network kwv yees li kuv xav tau. Thiab tom qab ntawd kuv yuav ua kom yooj yim rau lub lab.

Lub cev topology

Qhov chaw

LAN_DC yuav muaj 6 DCs:

  • Russia (RU):
    • Moscow (msk ua)
    • Kazan (kzn ua)

  • Spain (SP):
    • Barcelona (bcn ib)
    • Malaga (mlg ua)

  • Tuam Tshoj (CN):
    • Shanghai (sha)
    • Xi'an (Sia)

Automation rau cov me nyuam. Ntu ob. Network tsim

Sab hauv DC (Intra-DC)

Tag nrho cov DCs muaj cov kev sib txuas sib txuas zoo ib yam raws li Clos topology.
Dab tsi ntawm Clos network yog lawv thiab vim li cas lawv nyob hauv ib qho cais Tshooj.

Txhua DC muaj 10 racks nrog cov tshuab, lawv yuav raug suav ua A, B, C Thiab yog li ntawd.

Txhua lub khib muaj 30 tshuab. Lawv yuav tsis txaus siab rau peb.

Tsis tas li ntawd nyob rau hauv txhua lub khib muaj qhov hloov mus rau txhua lub tshuab txuas nrog - qhov no yog Sab saum toj ntawm Rack hloov - ToR los yog lwm yam, nyob rau hauv cov nqe lus ntawm Clos Hoobkas, peb yuav hu nws Nplooj.

Automation rau cov me nyuam. Ntu ob. Network tsim
Daim duab dav dav ntawm lub Hoobkas.

Peb yuav hu lawv XXX- nploojYqhov twg XXX - peb tsab ntawv DC, thiab Y - serial tooj. Piv txwv li, kzn-nplooj 11.

Hauv kuv cov ntawv kuv yuav tso cai rau kuv tus kheej siv cov lus Leaf thiab ToR theej frivolously li synonyms. Txawm li cas los xij, peb yuav tsum nco ntsoov tias qhov no tsis yog li ntawd.
ToR yog qhov hloov pauv tau nruab rau hauv khib rau cov tshuab txuas nrog.
Nplooj yog lub luag haujlwm ntawm lub cuab yeej hauv lub cev lub cev lossis kev hloov pauv thawj zaug raws li Cloes topology.
Ntawd yog, Nplooj != ToR.
Yog li Leaf tuaj yeem yog EndofRaw hloov, piv txwv li.
Txawm li cas los xij, nyob rau hauv lub moj khaum ntawm kab lus no peb tseem yuav kho lawv raws li cov lus sib piv.

Txhua qhov ToR hloov pauv tau txuas nrog plaub qhov sib xyaw ua ke siab dua - Ntsig. Ib lub khib hauv DC yog faib rau Spines. Peb yuav muab lub npe zoo sib xws: XXX- qaumY.

Tib lub khib yuav muaj cov khoom siv sib txuas rau kev sib txuas ntawm DC - 2 routers nrog MPLS ntawm lub nkoj. Tab sis los ntawm thiab loj, cov no yog tib ToRs. Ntawd yog, los ntawm qhov pom ntawm Spine keyboards, ToR ib txwm nrog cov tshuab txuas lossis lub router rau DCI tsis muaj teeb meem txhua - tsuas yog xa mus.

Cov ToR tshwj xeeb no hu ua Ntug-nplooj. Peb yuav hu lawv XXX-Qhov muagY.

Nws yuav zoo li no.

Automation rau cov me nyuam. Ntu ob. Network tsim

Nyob rau hauv daim duab saum toj no, kuv yeej muab ntug thiab nplooj nyob rau tib theem. Classic peb-txheej tes hauj lwm Lawv tau qhia peb kom xav txog uplinking (li no lub sij hawm) li uplinks. Thiab ntawm no nws hloov tawm tias DCI "uplink" rov qab mus, uas rau qee qhov me ntsis cuam tshuam qhov kev xav li ib txwm. Nyob rau hauv cov ntaub ntawv ntawm lub network loj, thaum cov ntaub ntawv chaw muab faib mus rau hauv txawm me me units - POD's (Point Of Delivery), qhia txog tus kheej Ntug-POD's rau DCI thiab nkag mus rau lwm lub network.

Kom yooj yim rau kev nkag siab yav tom ntej, kuv tseem yuav kos Edge hla Spine, thaum peb yuav nco ntsoov tias tsis muaj kev txawj ntse ntawm Spine thiab tsis muaj qhov sib txawv thaum ua haujlwm nrog Leaf thiab Edge-nplooj (txawm hais tias tej zaum yuav muaj nuances ntawm no. , tab sis feem ntau Qhov no muaj tseeb).

Automation rau cov me nyuam. Ntu ob. Network tsim
Scheme ntawm lub Hoobkas nrog Edge-nplooj.

Lub trinity ntawm Nplooj, qaum thiab ntug tsim ib qho kev sib txuas hauv qab lossis lub Hoobkas.

Lub luag haujlwm ntawm lub Hoobkas network (nyeem Underlay), raws li peb twb tau teev tseg hauv qhov teeb meem kawg, heev, yooj yim heev - muab IP kev sib txuas ntawm cov tshuab ob leeg hauv tib DC thiab nruab nrab ntawm lawv.
Tias yog vim li cas lub network hu ua lub Hoobkas, ib yam li, piv txwv li, lub Hoobkas hloov hauv lub thawv modular network, uas koj tuaj yeem nyeem ntxiv txog hauv SDSM14.

Feem ntau, xws li topology yog hu ua lub Hoobkas, vim hais tias ntaub hauv kev txhais lus txhais tau tias ntaub. Thiab nws nyuaj rau tsis pom zoo:
Automation rau cov me nyuam. Ntu ob. Network tsim

Lub Hoobkas yog kiag li L3. Tsis muaj VLAN, tsis muaj tshaj tawm - peb muaj cov programmers zoo li no ntawm LAN_DC, lawv paub sau cov ntawv thov uas nyob hauv L3 paradigm, thiab cov tshuab virtual tsis tas yuav nyob Migration nrog kev khaws cia ntawm IP chaw nyob.

Thiab ib zaug ntxiv: cov lus teb rau lo lus nug yog vim li cas lub Hoobkas thiab vim li cas L3 nyob rau hauv ib qho kev sib cais Tshooj.

DCI - Data Center Interconnect (Inter-DC)

DCI yuav raug teeb tsa siv Edge-Leaf, uas yog, lawv yog peb qhov chaw tawm mus rau txoj kev loj.
Rau qhov yooj yim, peb xav tias DCs txuas nrog ib leeg los ntawm kev sib txuas ncaj qha.
Cia peb tshem tawm kev sib txuas sab nraud los ntawm kev xav.

Kuv paub tias txhua zaus kuv tshem tawm ib feem, kuv ua kom yooj yim rau lub network. Thiab thaum peb automate peb cov kev paub daws teeb meem, txhua yam yuav zoo, tab sis ntawm qhov tseeb yuav muaj cov ntoo.
Qhov no muaj tseeb. Txawm li cas los xij, lub ntsiab lus ntawm cov koob no yog xav thiab ua haujlwm ntawm txoj hauv kev, tsis yog los daws cov teeb meem xav txog kev xav.

Ntawm Edge-Leafs, cov kab hauv qab tau muab tso rau hauv VPN thiab xa mus los ntawm MPLS qaum (qhov txuas ncaj qha tib yam).

Nov yog daim duab saum toj kawg nkaus peb tau txais.

Automation rau cov me nyuam. Ntu ob. Network tsim

Txoj kev

Rau routing hauv DC peb yuav siv BGP.
Ntawm MPLS lub cev OSPF + LDP.
Rau DCI, uas yog, npaj kev sib txuas hauv av - BGP L3VPN dhau MPLS.

Automation rau cov me nyuam. Ntu ob. Network tsim
General routing tswvyim

Tsis muaj OSPF lossis ISIS (txoj cai txwv tsis pub nyob hauv Lavxias Federation) ntawm lub Hoobkas.

Qhov no txhais tau hais tias yuav tsis muaj Auto-discovery los yog xam ntawm txoj kev luv tshaj plaws - tsuas yog phau ntawv (qhov tseeb tsis siv neeg - peb tab tom tham txog automation ntawm no) teeb tsa cov txheej txheem, zej zog thiab cov cai.

Automation rau cov me nyuam. Ntu ob. Network tsim
BGP routing scheme hauv DC

Vim li cas BGP?

Ntawm lub ncauj lus no muaj tag nrho RFC npe tom Facebook thiab Arista, uas qhia yuav ua li cas tsim loj heev cov ntaub ntawv chaw network siv BGP. Nws nyeem yuav luag zoo li ntawv tseeb, Kuv xav kom nws rau yav tsaus ntuj languid.

Thiab tseem muaj tag nrho cov seem hauv kuv tsab xov xwm mob siab rau qhov no. Kuv coj koj mus qhov twg thiab kuv xa.

Tab sis tseem, nyob rau hauv luv luv, tsis muaj IGP yog haum rau tes hauj lwm ntawm loj cov ntaub ntawv chaw, qhov twg cov xov tooj ntawm network pab kiag li lawm khiav mus rau ntau txhiab.

Tsis tas li ntawd, kev siv BGP txhua qhov chaw yuav tso cai rau koj tsis txhob nkim sijhawm los txhawb ntau qhov kev cai sib txawv thiab kev sib koom ua ke ntawm lawv.

Tes ntawm lub plawv, nyob rau hauv peb lub Hoobkas, uas muaj ib tug high degree ntawm qhov tshwm sim yuav tsis loj hlob sai, OSPF yuav txaus rau ob lub qhov muag. Cov no yog cov teeb meem ntawm megascalers thiab huab titans. Tab sis cia peb xav txog qee qhov kev tshaj tawm uas peb xav tau, thiab peb yuav siv BGP, raws li Pyotr Lapukhov bequeathed.

Txoj Cai Routing

Ntawm nplooj ntawv hloov, peb xa cov ntawv ua ntej los ntawm Underlay network interfaces rau hauv BGP.
Peb yuav muaj kev sib tham BGP ntawm txhua Leaf-Spine khub, uas cov Underlay prefixes yuav raug tshaj tawm hauv lub network ntawm no thiab nyob ntawd.

Automation rau cov me nyuam. Ntu ob. Network tsim

Hauv ib lub chaw cov ntaub ntawv peb yuav faib cov kev qhia tshwj xeeb uas peb tau xa mus rau ToRe. Ntawm Edge-Leafs peb yuav sau lawv thiab tshaj tawm rau cov chaw taws teeb DCs thiab xa lawv mus rau TORs. Ntawd yog, txhua tus ToR yuav paub meej tias yuav mus rau lwm qhov ToR hauv tib DC thiab qhov twg nkag mus rau ToR hauv lwm DC.

Hauv DCI, cov kev yuav raug xa mus ua VPNv4. Txhawm rau ua qhov no, ntawm Edge-Nplooj, qhov cuam tshuam ntawm lub Hoobkas yuav muab tso rau hauv VRF, cia peb hu nws UNDERLAY, thiab cov zej zog nrog Spine on Edge-Nplooj yuav nce siab hauv VRF, thiab ntawm Edge-Leafs hauv VPNv4- tsev neeg.

Automation rau cov me nyuam. Ntu ob. Network tsim

Peb kuj tseem yuav txwv tsis pub tshaj tawm txoj hauv kev tau txais los ntawm qaum rov qab rau lawv.

Automation rau cov me nyuam. Ntu ob. Network tsim

Ntawm nplooj thiab qaum peb yuav tsis import Loopbacks. Peb tsuas yog xav kom lawv txiav txim siab Router ID.

Tab sis ntawm Edge-Leafs peb muab nws tso rau hauv Ntiaj Teb BGP. Ntawm Loopback chaw nyob, Edge-Leafs yuav tsim kom muaj kev sib tham BGP hauv IPv4 VPN-tsev neeg nrog ib leeg.

Peb yuav muaj OSPF + LDP nraub qaum ntawm EDGE cov khoom siv. Txhua yam nyob hauv ib cheeb tsam. Yooj yim heev configuration.

Qhov no yog daim duab nrog routing.

PAB ASN

Ntug-Nplooj ASN

Ntawm Edge-Leafs yuav muaj ib qho ASN hauv tag nrho DCs. Nws yog ib qho tseem ceeb uas muaj iBGP ntawm Edge-Leafs, thiab peb tsis tau ntes tau nyob rau hauv lub nuances ntawm eBGP. Cia nws yog 65535. Qhov tseeb, qhov no tuaj yeem yog tus lej ntawm cov pej xeem AS.

Poob ASN

Ntawm Spine peb yuav muaj ib qho ASN rau DC. Cia peb pib ntawm no nrog thawj tus lej los ntawm ntau yam ntawm tus kheej AS - 64512, 64513 Thiab lwm yam.

Vim li cas ASN ntawm DC?

Cia peb faib lo lus nug no ua ob:

  • Vim li cas ASNs zoo ib yam ntawm txhua tus txha nraub qaum ntawm ib qho DC?
  • Vim li cas lawv txawv ntawm DCs sib txawv?

Vim li cas tib ASNs ntawm txhua tus txha nraub qaum ntawm ib lub DC?

Nov yog qhov AS-Path ntawm Txoj Kev Underlay ntawm Edge-Leaf yuav zoo li:
[leafX_ASN, spine_ASN, edge_ASN]
Thaum koj sim tshaj tawm nws rov qab rau Spine, nws yuav muab pov tseg vim nws AS (Spine_AS) twb nyob rau hauv cov npe.

Txawm li cas los xij, nyob rau hauv DC peb txaus siab tag nrho tias txoj kev Underlay uas nce mus rau Ntug yuav tsis muaj peev xwm nqis mus. Txhua qhov kev sib txuas lus ntawm cov tswv hauv DC yuav tsum tshwm sim nyob rau hauv tus txha nraub qaum.

Automation rau cov me nyuam. Ntu ob. Network tsim

Hauv qhov no, cov kev sib sau ua ke ntawm lwm cov DCs yuav nyob rau hauv txhua rooj plaub yooj yim mus txog ToRs - lawv AS-Path tsuas yog muaj ASN 65535 - tus naj npawb ntawm AS Edge-Leafs, vim tias qhov ntawd yog qhov uas lawv tau tsim.

Vim li cas lawv txawv ntawm DCs sib txawv?

Raws li txoj cai, peb yuav tsum rub Loopback thiab qee qhov kev pabcuam virtual ntawm DCs.

Piv txwv li, ntawm tus tswv tsev peb yuav khiav Route Reflector lossis tib VNGW (Virtual Network Gateway), uas yuav kaw nrog TopR ntawm BGP thiab tshaj tawm nws txoj kev rov qab, uas yuav tsum nkag mus tau los ntawm txhua qhov DCs.

Yog li qhov no yog qhov nws AS-Path yuav zoo li:
[VNF_ASN, leafX_DC1_ASN, spine_DC1_ASN, edge_ASN, spine_DC2_ASN, leafY_DC2_ASN]

Thiab yuav tsum tsis muaj qhov sib npaug ntawm ASNs nyob qhov twg.

Automation rau cov me nyuam. Ntu ob. Network tsim

Ntawd yog, Spine_DC1 thiab Spine_DC2 yuav tsum sib txawv, ib yam li leafX_DC1 thiab leafY_DC2, uas yog raws nraim li peb tab tom mus.

Raws li koj paub, muaj cov hacks uas tso cai rau koj lees txais txoj hauv kev nrog theej ASNs txawm tias lub voj thaiv kev tiv thaiv (allowas-hauv ntawm Cisco). Thiab nws txawm muaj cai siv. Tab sis qhov no yog qhov sib txawv ntawm lub network kev ruaj ntseg. Thiab kuv tus kheej poob rau hauv nws ob peb zaug.

Thiab yog tias peb muaj lub sijhawm tsis txhob siv tej yam uas txaus ntshai, peb yuav coj kom zoo dua.

Nplooj ASN

Peb yuav muaj ib tus neeg ASN ntawm txhua nplooj hloov pauv thoob plaws hauv lub network.
Peb ua qhov no rau cov laj thawj uas tau hais los saum toj no: AS-Path tsis muaj voj voog, BGP teeb tsa yam tsis muaj bookmarks.

Rau txoj kev ntawm Nplooj kom dhau mus zoo, AS-Path yuav tsum zoo li no:
[leafX_ASN, spine_ASN, leafY_ASN]
qhov twg leafX_ASN thiab leafY_ASN yuav zoo yuav txawv.

Qhov no kuj tseem xav tau rau qhov xwm txheej nrog kev tshaj tawm ntawm VNF loopback ntawm DCs:
[VNF_ASN, leafX_DC1_ASN, spine_DC1_ASN, edge_ASN, spine_DC2_ASN, leafY_DC2_ASN]

Peb yuav siv 4-byte ASN thiab tsim nws raws li Spine's ASN thiab Leaf hloov tus lej, uas yog, zoo li qhov no: Spine_ASN.0000X.

Nov yog daim duab nrog ASN.
Automation rau cov me nyuam. Ntu ob. Network tsim

IP txoj kev npaj

Hauv paus, peb yuav tsum faib chaw nyob rau kev sib txuas hauv qab no:

  1. Underlay network chaw nyob nruab nrab ntawm ToR thiab tshuab. Lawv yuav tsum muaj qhov tshwj xeeb hauv tag nrho lub network kom txhua lub tshuab tuaj yeem sib txuas lus nrog lwm tus. Zoo heev 10/8. Rau txhua khib muaj / 26 nrog ib tug cia. Peb yuav faib /19 rau DC thiab /17 rau ib cheeb tsam.
  2. Txuas chaw nyob ntawm Nplooj / Tor thiab qaum.

    Kuv xav muab lawv algorithmically, uas yog, xam lawv los ntawm cov npe ntawm cov khoom siv uas yuav tsum tau txuas nrog.

    Cia nws yog... 169.254.0.0/16.
    Namely 169.254.00 X.Y/31qhov twg X - Tus nab npawb qaum, Y - P2P network / 31.
    Qhov no yuav tso cai rau koj tawm mus txog 128 racks, thiab mus txog 10 Spines hauv DC. Txuas chaw nyob tuaj yeem (thiab yuav) rov qab los ntawm DC mus rau DC.

  3. Peb npaj cov Spine-Edge-Leaf junction ntawm subnets 169.254.10 X.Y/31, qhov twg raws nraim tib yam X - Tus nab npawb qaum, Y - P2P network / 31.
  4. Txuas chaw nyob ntawm Edge-Leaf mus rau MPLS qaum. Ntawm no qhov xwm txheej yog qhov txawv me ntsis - qhov chaw uas tag nrho cov khoom txuas nrog rau hauv ib lub ncuav, yog li rov siv tib qhov chaw nyob yuav tsis ua haujlwm - koj yuav tsum xaiv lub subnet dawb tom ntej. Yog li ntawd, cia peb ua raws li lub hauv paus 192.168.0.0/16 thiab peb yuav tshem tawm cov dawb ntawm nws.
  5. Loopback Chaw Nyob. Peb yuav muab tag nrho ntau yam rau lawv 172.16.0.0/12.
    • Nplooj - / 25 ib DC - tib yam 128 racks. Peb yuav faib /23 rau ib cheeb tsam.
    • Pob txha - / 28 ib DC - mus txog 16 qaum. Cia peb faib / 26 rau ib cheeb tsam.
    • Ntug-Nplooj - / 29 ib DC - txog li 8 lub thawv. Cia peb faib / 27 rau ib cheeb tsam.

Yog tias peb tsis muaj qhov sib faib txaus hauv DC (thiab yuav tsis muaj - peb thov tias yog hyperscalers), peb tsuas xaiv qhov thaiv tom ntej.

Nov yog daim duab nrog IP chaw nyob.

Automation rau cov me nyuam. Ntu ob. Network tsim

Loopbacks:

Lub Npe
Lub luag haujlwm ntawm lub cuab yeej
Cheeb Tsam
DC

172.16.0.0/23
ntug
 
 

172.16.0.0/27
ru
 

172.16.0.0/29
msk ua

172.16.0.8/29
kzn ua

172.16.0.32/27
sp
 

172.16.0.32/29
bcn ib

172.16.0.40/29
mlg ua

172.16.0.64/27
cn
 

172.16.0.64/29
sha

172.16.0.72/29
Sia

172.16.2.0/23
tus txha nqaj qaum
 
 

172.16.2.0/26
ru
 

172.16.2.0/28
msk ua

172.16.2.16/28
kzn ua

172.16.2.64/26
sp
 

172.16.2.64/28
bcn ib

172.16.2.80/28
mlg ua

172.16.2.128/26
cn
 

172.16.2.128/28
sha

172.16.2.144/28
Sia

172.16.8.0/21
nplooj
 
 

172.16.8.0/23
ru
 

172.16.8.0/25
msk ua

172.16.8.128/25
kzn ua

172.16.10.0/23
sp
 

172.16.10.0/25
bcn ib

172.16.10.128/25
mlg ua

172.16.12.0/23
cn
 

172.16.12.0/25
sha

172.16.12.128/25
Sia

Hauv qab:

Lub Npe
Cheeb Tsam
DC

10.0.0.0/17
ru
 

10.0.0.0/19
msk ua

10.0.32.0/19
kzn ua

10.0.128.0/17
sp
 

10.0.128.0/19
bcn ib

10.0.160.0/19
mlg ua

10.1.0.0/17
cn
 

10.1.0.0/19
sha

10.1.32.0/19
Sia

Laba

Ob tus neeg muag khoom. Ib lub network. ADSM.

Juniper + Arista. Ubuntu. Nyob zoo Eve.

Tus nqi ntawm cov peev txheej ntawm peb lub server virtual hauv Mirana tseem txwv, yog li kev xyaum peb yuav siv lub network uas yooj yim rau qhov txwv.

Automation rau cov me nyuam. Ntu ob. Network tsim

Ob lub chaw zov me nyuam: Kazan thiab Barcelona.

  • Ob leeg txhua tus: Juniper thiab Arista.
  • Ib lub torus (Nplooj) nyob rau hauv txhua tus - Juniper thiab Arista, nrog rau ib tus tswv tsev txuas nrog (cia coj lub teeb ci Cisco IOL rau qhov no).
  • Ib Ntug-Nplooj node txhua (rau tam sim no tsuas yog Juniper).
  • Ib Cisco hloov los kav lawv txhua tus.
  • Ntxiv nrog rau lub thawv network, lub tshuab virtual tswj tau ua haujlwm. Khiav Ubuntu.
    Nws muaj kev nkag mus rau txhua yam khoom siv, nws yuav khiav IPAM / DCIM systems, ib pawg ntawm Python scripts, Ansible thiab lwm yam uas peb xav tau.

Tag nrho configuration ntawm tag nrho cov khoom siv network, uas peb yuav sim rov tsim dua siv automation.

xaus

Qhov ntawd kuj txais thiab? Kuv puas yuav tsum sau ib nqe lus luv luv hauv txhua kab lus?

Yog li peb xaiv peb qib Kloz network hauv DC, txij li peb cia siab tias yuav muaj ntau lub tsheb khiav East-West thiab xav tau ECMP.

Lub network tau muab faib ua lub cev (underlay) thiab virtual (overlay). Nyob rau tib lub sijhawm, lub overlay pib los ntawm tus tswv tsev - yog li ua kom yooj yim cov kev xav tau rau lub hauv qab.

Peb tau xaiv BGP ua tus txheej txheem rau kev sib txuas lus rau kev sib txuas lus rau nws txoj kev scalability thiab txoj cai yooj.

Peb yuav muaj cov kab sib cais rau kev teeb tsa DCI - Ntug-nplooj.
Lub nraub qaum yuav muaj OSPF + LDP.
DCI yuav raug siv raws li MPLS L3VPN.
Rau P2P txuas, peb yuav suav IP chaw nyob algorithmically raws li cov npe khoom siv.
Peb yuav muab cov loopbacks raws li lub luag haujlwm ntawm cov khoom siv thiab lawv qhov chaw nyob ua ntu zus.
Underlay prefixes - tsuas yog ntawm nplooj ntawv hloov ua ntu zus raws li lawv qhov chaw nyob.

Cia peb xav tias tam sim no peb tsis muaj cov cuab yeej teeb tsa tsis tau.
Yog li ntawd, peb cov kauj ruam tom ntej yuav yog ntxiv rau lawv rau hauv lub tshuab (IPAM, cov khoom muag), teeb tsa kev nkag, tsim ib qho kev teeb tsa thiab xa mus.

Hauv tsab xov xwm tom ntej peb yuav hais txog Netbox - cov khoom muag thiab kev tswj hwm rau IP chaw nyob hauv DC.

Ua tsaug

  • Andrey Glazkov aka @glazgoo rau proofreading thiab kho
  • Alexander Klimenko aka @v00lk rau proofreading thiab edits
  • Artyom Chernobay rau KDPV

Tau qhov twg los: www.hab.com

Ntxiv ib saib