Cloud computing (yomwe imatchedwa Cloud) ndi chitsanzo chopereka mwayi wogwiritsa ntchito zipangizo zamakompyuta zomwe zimagawidwa zomwe ziyenera kutumizidwa ndi kukhazikitsidwa pofunidwa ndi latency yotsika kwambiri komanso mtengo wochepa kwa wothandizira.
Virtualization - uku ndikutha kugawa chinthu chimodzi (mwachitsanzo, seva) m'magawo angapo, potero kuwonjezera kagwiritsidwe ntchito kazinthu (mwachitsanzo, munali ndi ma seva atatu odzaza 3-25 peresenti, mutatha kukhazikika mumapeza seva imodzi yodzaza. pa 30-1 peresenti). Mwachilengedwe, virtualization imadya zina mwazinthu - muyenera kudyetsa hypervisor, komabe, monga momwe zasonyezera, masewerawa ndi ofunika kandulo. Chitsanzo chabwino cha virtualization ndi VMWare, yomwe imakonzekera bwino makina enieni, kapena mwachitsanzo KVM, yomwe ndimakonda, koma iyi ndi nkhani ya kukoma.
Timagwiritsa ntchito virtualization popanda kuzindikira, ndipo ngakhale ma routers achitsulo amagwiritsa ntchito kale virtualization - mwachitsanzo, mu JunOS yaposachedwa, makina ogwiritsira ntchito amaikidwa ngati makina enieni pamwamba pa nthawi yeniyeni yogawa Linux (Wind River 9). Koma virtualization si mtambo, koma mtambo sungakhalepo popanda virtualization.
Virtualization ndi imodzi mwazinthu zomangira zomwe mtambo umamangidwa.
Kupanga mtambo pongosonkhanitsa ma hypervisors angapo mu domain imodzi ya L2, kuwonjezera ma yaml playbook angapo kuti mulembetse ma vlans kudzera mumtundu wina wa Ansible ndikuyika china chake ngati orchestration system pamwamba pake kuti mupange makina enieni sangagwire ntchito. Zidzakhala zolondola kwambiri, koma zotsatira za Frankenstein si mtambo womwe timafunikira, ngakhale ukhoza kukhala maloto omaliza kwa ena. Komanso, ngati mutenga Openstack yemweyo, akadali Frankenstein, koma chabwino, tisalankhule za izi pakadali pano.
Koma ndikumvetsa kuti kuchokera ku tanthawuzo lomwe laperekedwa pamwambapa silikumveka bwino lomwe lingathe kutchedwa mtambo.
Chifukwa chake, chikalata chochokera ku NIST (National Institute of Standards and Technology) chimapereka mikhalidwe yayikulu 5 yomwe maziko amtambo ayenera kukhala nawo:
Kupereka chithandizo pakupempha. Wogwiritsa ntchitoyo ayenera kupatsidwa mwayi wopeza zida zamakompyuta zomwe adapatsidwa (monga ma network, ma disks, kukumbukira, ma processor cores, etc.), ndipo zinthu izi ziyenera kuperekedwa zokha - ndiko kuti, popanda kulowererapo kuchokera kwa wothandizira.
Kupezeka kochuluka kwa mautumiki. Kupeza chuma kuyenera kuperekedwa ndi njira zovomerezeka zololeza kugwiritsa ntchito ma PC wamba komanso makasitomala oonda ndi zida zam'manja.
Kuphatikizira zinthu mu maiwe. Maiwe azinthu ayenera kukhala ndi mwayi wopereka zothandizira kwa makasitomala angapo nthawi imodzi, kuwonetsetsa kuti makasitomala ali kwaokha komanso opanda chikoka chilichonse komanso mpikisano wazinthu. Maukonde amaphatikizidwanso m'madziwe, zomwe zikuwonetsa kuthekera kogwiritsa ntchito maadiresi opitilira. Madzi osambira ayenera kukhala okwera pakufunika. Kugwiritsiridwa ntchito kwa maiwe kumapangitsa kuti pakhale mwayi wopereka mulingo wofunikira wololera zolakwika ndi kuchotsedwa kwazinthu zakuthupi ndi zenizeni - wolandila ntchitoyo amangoperekedwa ndi zida zomwe adapempha (komwe zinthuzi zilipo, zingati. ma seva ndi ma switch - zilibe kanthu kwa kasitomala). Komabe, tiyenera kuganizira mfundo yakuti wopereka chithandizo ayenera kuonetsetsa kusungitsa poyera zinthu zimenezi.
Kusintha mwachangu kuzinthu zosiyanasiyana. Ntchito ziyenera kukhala zosinthika - kuperekedwa mwachangu kwazinthu, kugawanso kwawo, kuwonjezera kapena kuchepetsa zinthu zomwe kasitomala akufuna, ndipo kumbali ya kasitomala payenera kukhala kumverera kuti zida zamtambo sizimatha. Kuti mumvetsetse bwino, mwachitsanzo, simukuwona chenjezo kuti gawo la danga lanu la disk mu Apple iCloud lasowa chifukwa hard drive pa seva yawonongeka, ndipo ma drive amawonongeka. Kuphatikiza apo, kumbali yanu, mwayi wautumikiwu ndi wopanda malire - muyenera 2 TB - palibe vuto, mudalipira ndikulandila. Chitsanzo chofanana chikhoza kuperekedwa ndi Google.Drive kapena Yandex.Disk.
Kuthekera kwa kuyeza ntchito yoperekedwa. Makina amtambo amayenera kuwongolera ndi kukhathamiritsa zomwe zimagwiritsidwa ntchito, ndipo njirazi ziyenera kukhala zowonekera kwa onse ogwiritsa ntchito komanso wopereka chithandizo. Ndiye kuti, mutha kuyang'ana nthawi zonse kuchuluka kwazinthu zomwe inu ndi makasitomala anu mukugwiritsa ntchito.
Ndikoyenera kulingalira kuti zofunikirazi ndizofunikira kwambiri pamtambo wapagulu, kotero kuti mtambo wachinsinsi (ndiko kuti, mtambo wokhazikitsidwa ndi zosowa za mkati mwa kampani), zofunikirazi zikhoza kusinthidwa pang'ono. Komabe, ziyenera kuchitidwabe, apo ayi sitipeza phindu lonse la cloud computing.
Chifukwa chiyani timafunikira mtambo?
Komabe, teknoloji iliyonse yatsopano kapena yomwe ilipo, ndondomeko iliyonse yatsopano imapangidwira chinachake (chabwino, kupatulapo RIP-ng, ndithudi). Palibe amene amafunikira protocol chifukwa cha protocol (chabwino, kupatula RIP-ng, inde). Ndizomveka kuti Cloud idapangidwa kuti ipereke mtundu wina wa ntchito kwa wogwiritsa ntchito / kasitomala. Tonse timadziwa ntchito zingapo zamtambo, mwachitsanzo Dropbox kapena Google.Docs, ndipo ndikukhulupirira kuti anthu ambiri amazigwiritsa ntchito bwino - mwachitsanzo, nkhaniyi idalembedwa pogwiritsa ntchito mtambo wa Google.Docs. Koma mautumiki amtambo omwe timawadziwa ndi gawo limodzi la kuthekera kwa mtambo - ndendende, ndi ntchito yamtundu wa SaaS. Titha kupereka ntchito yamtambo m'njira zitatu: mwa mawonekedwe a SaaS, PaaS kapena IaaS. Utumiki womwe mukufunikira umadalira zofuna zanu ndi luso lanu.
Tiyeni tiwone chilichonse mwadongosolo:
Pulogalamu monga Service (SaaS) ndi chitsanzo chopereka chithandizo chokwanira kwa kasitomala, mwachitsanzo, ntchito ya imelo monga Yandex.Mail kapena Gmail. Muchitsanzo choperekera chithandizochi, inu, monga kasitomala, simukuchita chilichonse kupatula kugwiritsa ntchito ntchitozo - ndiko kuti, simuyenera kuganiza za kukhazikitsa ntchitoyo, kulolerana kwa zolakwika kapena kuperewera. Chachikulu ndichakuti musasokoneze mawu anu achinsinsi; wopereka chithandizochi akuchitirani zina zonse. Kuchokera pakuwona kwa wopereka chithandizo, iye ali ndi udindo wonse wa utumiki wonse - kuchokera ku hardware ya seva ndi machitidwe opangira ogwiritsira ntchito ku database ndi mapulogalamu a mapulogalamu.
Pulatifomu ngati Ntchito (PaaS) - pogwiritsira ntchito chitsanzo ichi, wothandizira amapereka chithandizo kwa kasitomala ndi ntchito yothandizira, mwachitsanzo, tiyeni titenge seva ya Webusaiti. Wopereka chithandizo adapatsa kasitomala seva yeniyeni (kwenikweni, zida zambiri, monga RAM/CPU/Storage/Nets, etc.), ndipo adayikanso OS ndi mapulogalamu ofunikira pa seva iyi, komabe, kasinthidwe ka zonsezi zimachitidwa ndi kasitomala mwiniwake komanso chifukwa cha ntchito yomwe kasitomala amayankha. Wopereka chithandizo, monga momwe zinalili m'mbuyomu, ali ndi udindo wogwiritsa ntchito zida zakuthupi, ma hypervisors, makina enieniwo, kupezeka kwa maukonde, ndi zina zotero, koma utumikiwo sulinso m'dera lake la udindo.
Zowonongeka ngati Ntchito (IaaS) - njira iyi ndi yosangalatsa kwambiri, makamaka, wothandizira amapereka chithandizo kwa kasitomala ndi zipangizo zonse zokhazikika - ndiko kuti, zina (dziwe) lazinthu, monga CPU Cores, RAM, Networks, ndi zina. kasitomala - zomwe kasitomala akufuna kuchita ndi zinthu izi mkati mwa dziwe lomwe apatsidwa (gawo) - sizofunikira makamaka kwa wopereka. Kaya kasitomala akufuna kupanga vEPC yake kapena kupanga mini operator ndi kupereka mauthenga - palibe funso - chitani. Zikatero, wopereka chithandizo ali ndi udindo wopereka zothandizira, kulekerera kwawo zolakwika ndi kupezeka, komanso OS yomwe imawalola kuti azitha kugwirizanitsa zinthuzi ndikuzipereka kwa kasitomala ndi kuthekera koonjezera kapena kuchepetsa chuma nthawi iliyonse. pa pempho la kasitomala. Makasitomala amakonza makina onse owoneka bwino ndi ma tinsel ena kudzera pa portal yodzithandizira komanso kutonthoza, kuphatikiza kukhazikitsa maukonde (kupatula maukonde akunja).
Kodi OpenStack ndi chiyani?
Muzosankha zonse zitatu, wopereka chithandizo amafunikira OS yomwe ingathandize kupanga maziko amtambo. Ndipotu, ndi SaaS, magawano oposa amodzi ali ndi udindo pa ndondomeko yonse ya matekinoloje - pali magawano omwe amayang'anira zomangamanga - ndiko kuti, amapereka IaaS ku gawo lina, gawoli limapereka SaaS kwa kasitomala. OpenStack ndi imodzi mwa machitidwe ogwiritsira ntchito mtambo omwe amakulolani kusonkhanitsa gulu la masinthidwe, ma seva ndi makina osungiramo zinthu mu dziwe limodzi lothandizira, kugawanitsa dziwe lodziwika bwino mumagulu ang'onoang'ono (opanga antchito) ndikupereka izi kwa makasitomala pa intaneti.
OpenStack ndi makina ogwiritsira ntchito mtambo omwe amakulolani kuti muzitha kuyang'anira maiwe akuluakulu azinthu zamakompyuta, kusungirako deta ndi zothandizira pa intaneti, zoperekedwa ndi kuyendetsedwa kudzera mu API pogwiritsa ntchito njira zovomerezeka zovomerezeka.
Mwa kuyankhula kwina, iyi ndi mapulogalamu a mapulogalamu aulere omwe amapangidwa kuti apange mautumiki amtambo (onse apagulu ndi achinsinsi) - ndiko kuti, zida zomwe zimakulolani kuti muphatikize seva ndi kusintha zipangizo kukhala dziwe limodzi lazinthu, kusamalira. zinthu izi, kupereka mlingo wofunika wa kulolerana zolakwa .
Panthawi yolemba izi, mawonekedwe a OpenStack amawoneka motere:
Chigawo chilichonse chomwe chikuphatikizidwa mu OpenStack chimagwira ntchito inayake. Zomangamanga zogawidwazi zimakulolani kuti muphatikizepo mu yankho la zigawo zogwira ntchito zomwe mukufuna. Komabe, zigawo zina ndizozigawo za mizu ndipo kuchotsedwa kwawo kungayambitse kusagwira ntchito kwathunthu kapena pang'ono kwa yankho lonse. Zigawozi nthawi zambiri zimagawidwa motere:
lakutsogolo - GUI yochokera pa intaneti pakuwongolera ntchito za OpenStack
Mwalawafungulo ndi ntchito yapakati yomwe imapereka chitsimikiziro ndi chilolezo cha mautumiki ena, komanso kuyang'anira zidziwitso za ogwiritsa ntchito ndi maudindo awo.
Neutron - ntchito yapaintaneti yomwe imapereka kulumikizana pakati pa zolumikizira zosiyanasiyana za OpenStack (kuphatikiza kulumikizana pakati pa ma VM ndi mwayi wawo wopita kudziko lakunja)
Cinder - imapereka mwayi wosungirako chipika cha makina enieni
Nova - kasamalidwe ka moyo wa makina enieni
Glance - malo osungiramo zithunzi zamakina ndi zithunzi
Swift - imapereka mwayi wopita ku chinthu chosungirako
Chigawo chilichonse cha OpenStack ndi ntchito yomwe imagwira ntchito inayake ndipo imapereka API yoyendetsera ntchitoyi ndikulumikizana ndi mautumiki ena ogwiritsira ntchito mitambo kuti apange maziko ogwirizana. Mwachitsanzo, Nova imapereka kasamalidwe kazinthu zamakompyuta ndi API kuti mupeze zosintha izi, Glance imapereka kasamalidwe kazithunzi ndi API yowongolera, Cinder imapereka block block ndi API yoyang'anira, ndi zina zambiri. Ntchito zonse zimalumikizidwa moyandikira kwambiri.
Tiyeni tidutse ma aligorivimu popanga makina enieni ndikulumikiza ku netiweki ndikusunga kosalekeza ku Openstack.
Mukapanga pempho lopanga makina, kukhala pempho kudzera pa Horizon (Dashboard) kapena pempho kudzera pa CLI, chinthu choyamba chomwe chimachitika ndikuvomereza pempho lanu pa Keystone - mutha kupanga makina, kodi ili ndi ali ndi ufulu wogwiritsa ntchito netiweki iyi, kodi kuchuluka kwanu, ndi zina zotero.
Keystone imatsimikizira pempho lanu ndikupanga chizindikiro chotsimikizika mu uthenga wakuyankha, womwe udzagwiritsidwa ntchito mopitilira. Atalandira yankho kuchokera kwa Keystone, pempholo limatumizidwa ku Nova (nova api).
Nova-api imayang'ana kutsimikizika kwa pempho lanu polumikizana ndi Keystone pogwiritsa ntchito chizindikiro cholembedwa kale
Keystone amatsimikizira ndikupereka zilolezo ndi zoletsa kutengera chizindikiro ichi.
Nova-api imapanga cholowera cha VM yatsopano mu nova-database ndipo ipereka pempho lopanga makinawo ku nova-scheduler.
Nova-scheduler amasankha wolandila (kompyuta node) pomwe VM idzatumizidwa kutengera magawo, miyeso ndi madera. Mbiri ya izi ndi ID ya VM yalembedwa ku nova-database.
Kenako, nova-scheduler contacts nova-compute ndi pempho loti atumize chochitika. Nova-compute contacts nova-conductor kuti mudziwe zambiri zamakina (nova-conductor ndi chinthu cha nova chomwe chimagwira ntchito ngati seva ya proxy pakati pa nova-database ndi nova-compute, kuchepetsa kuchuluka kwa zopempha ku nova-database kuti mupewe mavuto ndi database. kuchepetsa kusinthasintha kwa katundu).
Nova-conductor amalandira zomwe akufunsidwa kuchokera ku nova-database ndikuzipereka ku nova-compute.
Kenako, ma foni a nova-compute ayang'ana kuti mupeze chithunzi cha ID. Glace imatsimikizira pempho ku Keystone ndikubweza zomwe mwapempha.
Nova-compute contacts nyutroni kuti mudziwe zambiri zamagawo amtaneti. Mofanana ndi kuyang'ana, nyutroni imatsimikizira pempho ku Keystone, pambuyo pake imapanga cholowa mu nkhokwe (chozindikiritsa doko, ndi zina zotero), imapanga pempho lopanga doko, ndikubwezera zomwe mwapempha ku nova-compute.
Nova-compute contacts cinder ndi pempho loti agawire voliyumu ku makina enieni. Mofanana ndi kuyang'ana, cider imatsimikizira pempho ku Keystone, imapanga pempho lopanga voliyumu, ndikubwezera zomwe mwapempha.
Nova-compute contacts libvirt ndi pempho lotumiza makina enieni okhala ndi magawo omwe atchulidwa.
M'malo mwake, ntchito yomwe ikuwoneka ngati yosavuta yopanga makina osavuta owoneka bwino imasandulika kukhala chiwombankhanga cha mafoni a API pakati pa zinthu za nsanja yamtambo. Komanso, monga mukuwonera, ngakhale ntchito zomwe zidasankhidwa kale zimakhalanso ndi tizigawo ting'onoting'ono tomwe timalumikizana. Kupanga makina ndi gawo laling'ono chabe la zomwe nsanja yamtambo imakulolani kuchita - pali ntchito yomwe imayang'anira kuwongolera magalimoto, ntchito yomwe imayang'anira kusungirako chipika, ntchito yomwe imayang'anira DNS, ntchito yomwe imayang'anira kupereka ma seva opanda zitsulo, ndi zina zotero. Mtambo umakupatsani mwayi wochitira makina anu enieni ngati gulu la nkhosa (mosiyana ndi virtualization). Ngati china chake chikachitika pamakina anu pamalo owoneka bwino - mumachibwezeretsa kuchokera ku zosunga zobwezeretsera, ndi zina zambiri, koma mapulogalamu amtambo amamangidwa m'njira yoti makinawo asakhale ndi gawo lofunikira - makinawo "anafa" - palibe vuto. - chatsopano chimangopangidwa galimotoyo imachokera pa template ndipo, monga akunena, gululo silinazindikire kutayika kwa womenyayo. Mwachilengedwe, izi zimapereka kupezeka kwa njira zoyimba - pogwiritsa ntchito ma tempulo a Kutentha, mutha kuyika ntchito yovuta yomwe ili ndi ma network ambiri ndi makina pafupifupi.
Ndikoyenera kukumbukira nthawi zonse kuti palibe maziko amtambo popanda netiweki - chilichonse mwanjira ina chimalumikizana ndi zinthu zina kudzera pamaneti. Kuphatikiza apo, mtambowu uli ndi netiweki yopanda static. Mwachilengedwe, netiweki yapansi panthaka imakhala yocheperako kapena yocheperako - ma node atsopano ndi masiwichi siziwonjezedwa tsiku lililonse, koma gawo lophatikizika limatha kusintha mosalekeza - maukonde atsopano adzawonjezedwa kapena kuchotsedwa, makina atsopano adzawonekera ndipo akale adzawoneka. kufa. Ndipo monga mukukumbukira kuchokera ku tanthauzo la mtambo lomwe laperekedwa koyambirira kwa nkhaniyo, zothandizira ziyenera kuperekedwa kwa wogwiritsa ntchito basi komanso mocheperako (kapena bwino, popanda) kulowererapo kuchokera kwa wothandizira. Ndiko kuti, mtundu wa makonzedwe a chuma maukonde amene tsopano alipo mu mawonekedwe a kutsogolo-kumapeto mu mawonekedwe a akaunti yanu munthu Kufikika kudzera http/https ndi pa-ntchito network injiniya Vasily monga backend si mtambo, ngakhale ngati Vasily ali ndi manja asanu ndi atatu.
Neutron, monga ntchito yapaintaneti, imapereka API yoyang'anira gawo la netiweki la zomangamanga zamtambo. Ntchitoyi imapereka mphamvu ndikuwongolera gawo lamanetiweki la Openstack popereka chosanjikiza chotchedwa Network-as-a-Service (NaaS). Ndiko kuti, maukonde ndi gawo lomwe lingayesedwe, mwachitsanzo, ma cores a CPU kapena kuchuluka kwa RAM.
Koma tisanapitirire kumamangidwe a gawo la netiweki la OpenStack, tiyeni tiwone momwe maukondewa amagwirira ntchito ku OpenStack komanso chifukwa chake maukonde ndi gawo lofunikira komanso lofunikira pamtambo.
Chifukwa chake tili ndi ma VM awiri a RED kasitomala ndi ma VM awiri a GREEN kasitomala. Tiyerekeze kuti makinawa ali pa hypervisors awiri motere:
Pakadali pano, uku ndikungowoneka kwa ma seva a 4 ndipo palibenso china, popeza mpaka pano zonse zomwe tachita ndikukhazikitsa ma seva 4, kuwayika pa seva ziwiri zakuthupi. Ndipo mpaka pano iwo sanalumikizidwe nkomwe ndi netiweki.
Kuti tipange mtambo, tiyenera kuwonjezera zigawo zingapo. Choyamba, timagwirizanitsa gawo la maukonde - tiyenera kulumikiza makina 4 awa awiriawiri, ndipo makasitomala amafuna L2 kugwirizana. Mutha kugwiritsa ntchito chosinthira ndikusintha thunthu momwe mumayendera ndikuthetsa chilichonse pogwiritsa ntchito mlatho wa linux kapena, kwa ogwiritsa ntchito apamwamba kwambiri, openvswitch (tibwerera ku izi pambuyo pake). Koma pakhoza kukhala maukonde ambiri, ndipo nthawi zonse kukankhira L2 kudzera chosinthira si lingaliro labwino kwambiri - pali madipatimenti osiyanasiyana, desiki lantchito, miyezi yodikirira kuti pulogalamuyo ikwaniritsidwe, masabata othetsa mavuto - m'dziko lamakono izi. njira sikugwiranso ntchito. Ndipo kampani ikamvetsetsa izi mwachangu, zimakhala zosavuta kuti zipite patsogolo. Chifukwa chake, pakati pa ma hypervisors tidzasankha maukonde a L3 omwe makina athu enieni adzalumikizana nawo, ndipo pamwamba pa intaneti ya L3 iyi tidzapanga maukonde ophatikizika a L2 komwe magalimoto athu amayendera. Mutha kugwiritsa ntchito GRE, Geneve kapena VxLAN ngati encapsulation. Tiyeni tiyang'ane pa zomalizazo pakadali pano, ngakhale sizofunikira kwenikweni.
Popeza magalimoto pakati pa ma VM ayenera kugawidwa, madoko olowera kumakina enieni adzakhala ndi manambala osiyanasiyana a vlan. Nambala ya tag imakhala ndi gawo lokhalokha mkati mwa switch imodzi yokha, popeza ikayikidwa mu VxLAN titha kuichotsa mosavuta, popeza tidzakhala ndi VNI.
Tsopano titha kupanga makina athu ndi maukonde pafupifupi kwa iwo popanda vuto lililonse.
Komabe, bwanji ngati kasitomala ali ndi makina ena, koma ali pa netiweki ina? Timafunikira mizu pakati pa maukonde. Tidzayang'ana njira yosavuta pamene njira yapakati ikugwiritsidwa ntchito - ndiko kuti, magalimoto amayendetsedwa kudzera muzitsulo zapadera zodzipatulira (chabwino, monga lamulo, zimaphatikizidwa ndi ma node olamulira, kotero tidzakhala ndi chinthu chomwecho).
Zikuwoneka ngati palibe chovuta - timapanga mawonekedwe a mlatho pamayendedwe owongolera, kuyendetsa magalimoto kupitako ndipo kuchokera pamenepo timayiyendetsa komwe tikufunikira. Koma vuto ndiloti kasitomala wa RED akufuna kugwiritsa ntchito netiweki ya 10.0.0.0/24, ndipo kasitomala wa GREEN akufuna kugwiritsa ntchito netiweki ya 10.0.0.0/24. Ndiko kuti, timayamba kudutsa malo adilesi. Kuphatikiza apo, makasitomala safuna kuti makasitomala ena azitha kulowa mumaneti awo amkati, zomwe ndizomveka. Kuti tisiyanitse ma netiweki ndi kuchuluka kwa data yamakasitomala, tigawa dzina la aliyense wa iwo. Namespace kwenikweni ndi kopi ya Linux network stack, ndiko kuti, makasitomala omwe ali mu namespace RED ali olekanitsidwa kwa makasitomala kuchokera ku namespace GREEN (chabwino, mwina kuyenda pakati pamanetiweki amakasitomalawa kumaloledwa kudzera mumalo osasintha kapena pazida zonyamulira zam'mwamba).
Ndiye kuti, timapeza chithunzi chotsatira:
Ma tunnel a L2 amasintha kuchokera ku ma node onse apakompyuta kupita kumalo olamulira. node komwe mawonekedwe a L3 a maukondewa ali, iliyonse ili m'malo odzipatulira odzipatula.
Komabe, tinaiwala chinthu chofunika kwambiri. Makina enieni ayenera kupereka chithandizo kwa kasitomala, ndiko kuti, ayenera kukhala ndi mawonekedwe akunja omwe amatha kufikirako. Ndiko kuti, tiyenera kupita kudziko lakunja. Pali zosankha zosiyanasiyana pano. Tiyeni tichite njira yosavuta. Tidzawonjezera netiweki imodzi kwa kasitomala aliyense, yomwe ingakhale yovomerezeka pa intaneti ya omwe amapereka ndipo sichingafanane ndi maukonde ena. Maukonde amathanso kudutsana ndikuyang'ana ma VRF osiyanasiyana kumbali ya netiweki yopereka. Deta ya netiweki idzakhalanso mu malo amtundu wa kasitomala aliyense. Komabe, adzapitabe kudziko lakunja kudzera mu mawonekedwe amodzi (kapena chomangira, chomwe chili chomveka). Kuti mulekanitse kuchuluka kwamakasitomala, kuchuluka kwa magalimoto omwe amatuluka kunja kumayikidwa chizindikiro cha VLAN choperekedwa kwa kasitomala.
Chifukwa chake, tapeza chithunzi ichi:
Funso lomveka ndilakuti bwanji osapanga zipata pama compute node okha? Ili si vuto lalikulu; Komanso, mukayatsa rauta yogawidwa (DVR), izi zitha kugwira ntchito. Munkhaniyi, tikuganizira njira yosavuta kwambiri yokhala ndi chipata chapakati, chomwe chimagwiritsidwa ntchito mosakhazikika mu Openstack. Kwa ntchito zolemetsa kwambiri, adzagwiritsa ntchito njira zonse zogawira rauta ndi ukadaulo wothamangitsa monga SR-IOV ndi Passthrough, koma monga akunena, ndi nkhani yosiyana kwambiri. Choyamba, tiyeni tigwirizane ndi gawo lofunikira, ndiyeno tidzapita mwatsatanetsatane.
Kwenikweni, dongosolo lathu likugwira ntchito kale, koma pali ma nuances angapo:
Tiyenera kuteteza makina athu mwanjira ina, ndiye kuti, kuyika fyuluta pakusinthana kwa kasitomala.
Pangani zotheka kuti makina azitha kupeza adilesi ya IP yokha, kuti musalowemo kudzera pa console nthawi zonse ndikulembetsa adilesi.
Tiyeni tiyambe ndi kuteteza makina. Pachifukwa ichi mungagwiritse ntchito ma banal iptables, bwanji osatero.
Tiyeni tipitirire. Tiyenera kuwonjezera seva ya DHCP. Malo abwino kwambiri opezera ma seva a DHCP kwa kasitomala aliyense angakhale malo owongolera omwe atchulidwa pamwambapa, pomwe malowa ali:
Komabe, pali vuto laling'ono. Bwanji ngati chirichonse chiyambiranso ndipo zonse zokhudza kubwereka maadiresi pa DHCP zikusowa. Ndizomveka kuti makinawo adzapatsidwa maadiresi atsopano, omwe si abwino kwambiri. Pali njira ziwiri kunja kuno - mwina gwiritsani ntchito mayina a mayina ndikuwonjezera seva ya DNS kwa kasitomala aliyense, ndiye kuti adilesiyo siidzakhala yofunika kwambiri kwa ife (yofanana ndi gawo la netiweki mu k8s) - koma pali vuto ndi maukonde akunja, popeza maadiresi amathanso kuperekedwa mwa iwo kudzera pa DHCP - muyenera kulunzanitsa ndi ma seva a DNS pamtambo wamtambo ndi seva yakunja ya DNS, yomwe m'malingaliro mwanga sikusintha kwambiri, koma ndizotheka. Kapena njira yachiwiri ndiyo kugwiritsa ntchito metadata - ndiko kuti, sungani zambiri za adiresi yoperekedwa ku makina kuti seva ya DHCP idziwe kuti ndi adiresi yotani yomwe ingapereke ku makina ngati makina alandira kale adiresi. Njira yachiwiri ndi yosavuta komanso yowonjezereka, chifukwa imakulolani kuti musunge zambiri zokhudza galimotoyo. Tsopano tiyeni tiwonjeze metadata ya wothandizira pachithunzichi:
Nkhani ina yomwe ikufunikanso kukambirana ndi kuthekera kogwiritsa ntchito maukonde akunja ndi makasitomala onse, popeza maukonde akunja, ngati akuyenera kukhala omveka pamaneti onse, zimakhala zovuta - muyenera kugawa nthawi zonse ndikuwongolera kugawa kwa maukonde awa. Kukhoza kugwiritsa ntchito intaneti imodzi yokha yokonzedweratu kwa makasitomala onse kudzakhala kothandiza kwambiri popanga mtambo wa anthu. Izi zipangitsa kukhala kosavuta kutumizira makina chifukwa sitiyenera kuyang'ana nkhokwe ya maadiresi ndikusankha malo apadera a adilesi pamaneti akunja a kasitomala aliyense. Kuonjezera apo, tikhoza kulembetsa maukonde akunja pasadakhale ndipo panthawi yotumizidwa tidzangofunika kugwirizanitsa maadiresi akunja ndi makina a kasitomala.
Ndipo apa NAT itithandiza - tingopangitsa kuti makasitomala azitha kulumikizana ndi dziko lakunja kudzera m'malo osasinthika a mayina pogwiritsa ntchito kumasulira kwa NAT. Chabwino, apa pali vuto laling'ono. Izi ndi zabwino ngati seva ya kasitomala ikuchita ngati kasitomala osati ngati seva - ndiye kuti, imayamba m'malo movomereza kulumikizana. Koma kwa ife zikhala mwanjira ina mozungulira. Pankhaniyi, tifunika kuchita kopita NAT kotero kuti polandira magalimoto, malo olamulira amvetsetsa kuti magalimotowa amapangidwira makina A kasitomala A, zomwe zikutanthauza kuti tiyenera kumasulira NAT kuchokera ku adiresi yakunja, mwachitsanzo 100.1.1.1 .10.0.0.1, ku adilesi yamkati 100. Pankhaniyi, ngakhale makasitomala onse adzagwiritsa ntchito maukonde omwewo, kudzipatula kwamkati kumasungidwa kwathunthu. Ndiye kuti, tiyenera kuchita dNAT ndi sNAT pa node yolamulira. Kaya mugwiritse ntchito netiweki imodzi yokhala ndi ma adilesi oyandama kapena maukonde akunja, kapena zonse nthawi imodzi, zimatengera zomwe mukufuna kubweretsa mumtambo. Sitidzawonjezera ma adilesi oyandama pachithunzichi, koma tisiya maukonde akunja omwe adawonjezedwa kale - kasitomala aliyense ali ndi netiweki yake yakunja (pachithunzichi akuwonetsedwa ngati vlan 200 ndi XNUMX pa mawonekedwe akunja).
Chotsatira chake, tinalandira njira yosangalatsa komanso yoganizira bwino, yomwe imakhala ndi kusinthasintha koma ilibe njira zolekerera zolakwika.
Choyamba, tili ndi node imodzi yokha yolamulira - kulephera kwake kudzatsogolera kugwa kwa machitidwe onse. Kuti muthane ndi vutoli, muyenera kupanga ma quorum atatu. Tiyeni tiwonjeze izi pajambula:
Mwachilengedwe, mfundo zonse zimalumikizidwa ndipo node yogwira ikachoka, mfundo ina idzatenga udindo wake.
Vuto lotsatira ndi ma disks a makina enieni. Pakalipano, amasungidwa pa hypervisors okha, ndipo ngati pali vuto ndi hypervisor, timataya deta yonse - ndipo kupezeka kwa chiwonongeko sikungathandize pano ngati sititaya disk, koma seva yonse. Kuti tichite izi, tifunika kupanga ntchito yomwe idzakhala ngati kutsogolo kwa mtundu wina wa zosungirako. Kusungirako kudzakhala kotani sikuli kofunikira kwa ife, koma kuyenera kuteteza deta yathu ku kulephera kwa disk ndi node, ndipo mwina nduna yonse. Pali zosankha zingapo pano - pali, ndithudi, ma intaneti a SAN omwe ali ndi Fiber Channel, koma tiyeni tikhale oona mtima - FC ili kale ndi zotsalira zakale - analogue ya E1 mu zoyendera - inde, ndikuvomereza, ikugwiritsidwabe ntchito, koma kokha kumene kuli kosatheka mwamtheradi popanda izo. Chifukwa chake, sindikanatumiza mwaufulu netiweki ya FC mu 2020, podziwa kuti palinso zina zosangalatsa. Ngakhale kwa aliyense wake, pakhoza kukhala omwe amakhulupirira kuti FC ndi zofooka zake zonse zomwe timafunikira - sindingatsutse, aliyense ali ndi malingaliro ake. Komabe, yankho losangalatsa kwambiri m'malingaliro anga ndikugwiritsa ntchito SDS, monga Ceph.
Ceph imakulolani kuti mupange njira yosungiramo deta yomwe ilipo kwambiri ndi mulu wa zosankha zosunga zobwezeretsera, kuyambira ndi zizindikiro zoyang'ana parity (zofanana ndi zowononga 5 kapena 6) zomwe zimathera ndi kubwereza kwa deta ku disks zosiyanasiyana, poganizira malo omwe ma disks ali mkati. ma seva, ndi ma seva mu makabati, etc.
Kuti mupange Ceph mufunika ma node ena atatu. Kuyanjana ndi zosungirako kudzachitikanso kudzera pa intaneti pogwiritsa ntchito chipika, chinthu ndi ntchito zosungira mafayilo. Tiyeni tiwonjezere zosungirako ku schema:
Zindikirani: mutha kupanganso ma hyperconverged compute node - ili ndi lingaliro la kuphatikiza ntchito zingapo pa node imodzi - mwachitsanzo, yosungirako + compute - osapereka ma node apadera osungira ceph. Tidzalandira chiwembu chofanana chololera zolakwika - popeza SDS idzasunga deta ndi mulingo wosungitsa womwe timatchula. Komabe, ma hyperconverged node nthawi zonse amakhala osagwirizana - popeza malo osungira samangotenthetsa mpweya monga momwe amawonekera poyamba (popeza palibe makina enieni) - amawononga CPU zothandizira SDS (kwenikweni, imachita zonse). kubwereza ndi kuchira pambuyo pakulephera kwa ma node, ma disks, ndi zina). Ndiko kuti, mudzataya mphamvu ina ya compute node ngati mutayiphatikiza ndi yosungirako.
Zinthu zonsezi ziyenera kuyendetsedwa mwanjira ina - timafunikira china chake chomwe titha kupanga makina, maukonde, rauta yeniyeni, ndi zina zambiri. Kuti tichite izi, tidzawonjezera ntchito ku node yolamulira yomwe ingakhale ngati dashboard - the kasitomala azitha kulumikizana ndi portal iyi kudzera pa http/ https ndikuchita zonse zomwe akufuna (chabwino, pafupifupi).
Zotsatira zake, tsopano tili ndi dongosolo lololera zolakwika. Zinthu zonse zachitukukozi ziyenera kuyendetsedwa mwanjira ina. Zinanenedwa kale kuti Openstack ndi ma projekiti, omwe amapereka ntchito inayake. Monga tikuonera, pali zinthu zambiri zokwanira zomwe ziyenera kukonzedwa ndikuwongolera. Lero tikambirana gawo la network.
Neutron zomangamanga
Mu OpenStack, ndi Neutron yemwe ali ndi udindo wolumikiza madoko amakina pa intaneti wamba wa L2, kuwonetsetsa kuyenda kwa magalimoto pakati pa ma VM omwe ali pamanetiweki osiyanasiyana a L2, komanso njira zakunja, zoperekera ntchito monga NAT, Floating IP, DHCP, ndi zina zambiri.
Pamwamba, ntchito ya utumiki wa maukonde (gawo loyambirira) likhoza kufotokozedwa motere.
Mukayamba VM, ntchito yapaintaneti:
Amapanga doko la VM yopatsidwa (kapena madoko) ndikudziwitsa ntchito ya DHCP za izo;
Chipangizo chatsopano cha netiweki chimapangidwa (kudzera pa libvirt);
VM imalumikizana ndi doko (ma) opangidwa mu gawo 1;
Zodabwitsa ndizakuti, ntchito ya Neutron idakhazikitsidwa pamakina omwe amadziwika kwa aliyense yemwe adalowapo mu Linux - malo a mayina, ma iptables, milatho ya linux, openvswitch, contrack, ndi zina zambiri.
Ziyenera kufotokozedwa mwachangu kuti Neutron siwowongolera wa SDN.
Neutron imakhala ndi zigawo zingapo zolumikizana:
Openstack-neutron-server ndi daemon yomwe imagwira ntchito ndi zopempha za ogwiritsa ntchito kudzera pa API. Chiwanda ichi sichimakhudzidwa ndikulembetsa maukonde aliwonse, koma imapereka chidziwitso chofunikira pa izi mapulagini ake, omwe amakonza zomwe mukufuna pa intaneti. Othandizira a Neutron pa OpenStack node amalembetsa ndi seva ya Neutron.
Neutron-server kwenikweni ndi ntchito yolembedwa mu python, yokhala ndi magawo awiri:
REST utumiki
Pulogalamu ya Neutron (pachimake / ntchito)
Ntchito ya REST idapangidwa kuti ilandire mafoni a API kuchokera kuzinthu zina (mwachitsanzo, pempho loti mupereke zambiri, ndi zina).
Mapulagini ndi mapulogalamu a pulagi / ma module omwe amatchedwa panthawi yofunsira API - ndiye kuti, kuperekedwa kwa ntchito kumachitika kudzera mwa iwo. Mapulagini amagawidwa m'mitundu iwiri - utumiki ndi mizu. Monga lamulo, plugin ya kavalo ndiyo makamaka imayang'anira malo adilesi ndi kulumikizana kwa L2 pakati pa ma VM, ndipo mapulagini amtunduwu amapereka kale magwiridwe antchito monga VPN kapena FW.
Mndandanda wa mapulagini omwe alipo lero akhoza kuwonedwa mwachitsanzo apa
Pakhoza kukhala mapulagini angapo a ntchito, koma pangakhale pulogalamu yowonjezera imodzi yokha.
Openstack-neutron-ml2 ndiye pulogalamu yowonjezera ya Openstack root. Pulagi iyi ili ndi zomangira zokhazikika (mosiyana ndi zomwe zidalipo kale) ndipo imakonza ma network kudzera pa madalaivala olumikizidwa nayo. Tidzayang'ana pulogalamu yowonjezerayo pakapita nthawi, popeza imapereka kusinthasintha komwe OpenStack ili nayo mu gawo la intaneti. Pulagi ya mizu imatha kusinthidwa (mwachitsanzo, Contrail Networking imasinthanso).
Ntchito ya RPC (rabbitmq-server) - ntchito yomwe imapereka kasamalidwe ka mizere ndi kulumikizana ndi mautumiki ena a OpenStack, komanso kuyanjana pakati pa othandizira maukonde.
Ma network othandizira - othandizira omwe ali mu node iliyonse, kudzera momwe maukonde amakonzedwera.
Pali mitundu ingapo ya othandizira.
Wothandizira wamkulu ndi L2 wothandizira. Othandizirawa amayendetsa pamtundu uliwonse wa hypervisors, kuphatikiza ma node owongolera (molondola, pama node onse omwe amapereka ntchito iliyonse kwa obwereketsa) ndipo ntchito yawo yayikulu ndikulumikiza makina enieni ku netiweki wamba wa L2, komanso kupanga zidziwitso zikachitika zochitika zilizonse. mwachitsanzo zimitsani / yambitsani doko).
Chotsatira, chofunikira kwambiri ndi wothandizira L3 wothandizira. Mwachikhazikitso, wothandizira uyu amangoyenda pa node ya netiweki (nthawi zambiri node ya netiweki imaphatikizidwa ndi node yowongolera) ndipo imapereka njira pakati pa ma network a lendi (pakati pa maukonde ake ndi ma netiweki a lendi ena, ndipo imapezeka kudziko lakunja, kupereka. NAT, komanso ntchito ya DHCP). Komabe, mukamagwiritsa ntchito DVR (rauta yogawidwa), kufunikira kwa pulogalamu yowonjezera ya L3 kumawonekeranso pamakompyuta.
Wothandizira L3 amagwiritsa ntchito malo a Linux kuti apatse mwininyumba aliyense ma network ake omwe amadzipatula komanso magwiridwe antchito a ma routers omwe amayendetsa magalimoto ndikupereka zipata zama netiweki a Layer 2.
Nawonso achichepere - nkhokwe yakuzindikiritsa maukonde, ma subnets, madoko, maiwe, ndi zina.
M'malo mwake, Neutron imavomereza zopempha za API kuchokera pakupangidwa kwa mabungwe aliwonse a netiweki, imatsimikizira pempholo, ndipo kudzera pa RPC (ngati ipeza pulogalamu yowonjezera kapena wothandizira) kapena REST API (ngati imalumikizana ndi SDN) imatumiza kwa othandizira (kudzera mapulagini) malangizo ofunikira kuti akonze ntchito yomwe mwafunsidwa.
(overcloud) [stack@undercloud ~]$ openstack network agent list
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
| ID | Agent Type | Host | Availability Zone | Alive | State | Binary |
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
| 10495de9-ba4b-41fe-b30a-b90ec3f8728b | Open vSwitch agent | overcloud-novacompute-1.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| 1515ad4a-5972-46c3-af5f-e5446dff7ac7 | L3 agent | overcloud-controller-0.localdomain | nova | :-) | UP | neutron-l3-agent |
| 322e62ca-1e5a-479e-9a96-4f26d09abdd7 | DHCP agent | overcloud-controller-0.localdomain | nova | :-) | UP | neutron-dhcp-agent |
| 9c1de2f9-bac5-400e-998d-4360f04fc533 | Open vSwitch agent | overcloud-novacompute-0.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| d99c5657-851e-4d3c-bef6-f1e3bb1acfb0 | Open vSwitch agent | overcloud-controller-0.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| ff85fae6-5543-45fb-a301-19c57b62d836 | Metadata agent | overcloud-controller-0.localdomain | None | :-) | UP | neutron-metadata-agent |
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
(overcloud) [stack@undercloud ~]$
Kwenikweni, ndilo dongosolo lonse la Neutron. Tsopano ndikoyenera kuthera nthawi pa pulogalamu yowonjezera ya ML2.
Modular Layer 2
Monga tafotokozera pamwambapa, pulogalamu yowonjezera ndi pulogalamu yowonjezera ya OpenStack mizu ndipo ili ndi zomangamanga.
Woyambitsa pulojekiti ya ML2 anali ndi dongosolo la monolithic, lomwe silinalole, mwachitsanzo, kugwiritsa ntchito kusakaniza kwa matekinoloje angapo pakuyika kumodzi. Mwachitsanzo, simungathe kugwiritsa ntchito Openvswitch ndi linuxbridge nthawi imodzi - yoyamba kapena yachiwiri. Pachifukwa ichi, pulogalamu yowonjezera ya ML2 yokhala ndi zomangamanga idapangidwa.
ML2 ili ndi zigawo ziwiri - mitundu iwiri ya madalaivala: Madalaivala amtundu ndi madalaivala a Mechanism.
Lembani ma driver Dziwani matekinoloje omwe adzagwiritsidwe ntchito kukonza maukonde ochezera, mwachitsanzo VxLAN, VLAN, GRE. Panthawi imodzimodziyo, dalaivala amalola kugwiritsa ntchito matekinoloje osiyanasiyana. Ukadaulo wokhazikika ndi VxLAN encapsulation for overlay networks and vlan outside network.
Ma driver amtundu ali ndi mitundu iyi ya netiweki:
Flat - netiweki popanda tagging Zithunzi za VLAN -Tagged network Local - mtundu wapadera wa netiweki pazokhazikitsa zonse-mu-modzi (kuyika kotere kumafunika kwa opanga kapena kuphunzitsa) GRE - Kuphimba maukonde pogwiritsa ntchito ngalande za GRE VxLAN - Kukuta maukonde pogwiritsa ntchito tunnel za VxLAN
Makina oyendetsa fotokozerani zida zomwe zimatsimikizira kukhazikitsidwa kwa matekinoloje omwe atchulidwa mu dalaivala wamtundu - mwachitsanzo, openvswitch, sr-iov, opendaylight, OVN, etc.
Kutengera kukhazikitsidwa kwa dalaivala uyu, mwina othandizira omwe amawongoleredwa ndi Neutron adzagwiritsidwa ntchito, kapena kulumikizana ndi wowongolera wakunja wa SDN adzagwiritsidwa ntchito, omwe amasamalira nkhani zonse zokhudzana ndi kukonza ma network a L2, mayendedwe, ndi zina zambiri.
Chitsanzo: ngati tigwiritsa ntchito ML2 pamodzi ndi OVS, ndiye kuti L2 wothandizira amaikidwa pa node iliyonse ya kompyuta yomwe imayang'anira OVS. Komabe, ngati tigwiritsa ntchito, mwachitsanzo, OVN kapena OpenDayLight, ndiye kuti ulamuliro wa OVS umabwera pansi pa ulamuliro wawo - Neutron, kupyolera muzu wa plugin, amapereka malamulo kwa wolamulira, ndipo amachita kale zomwe adauzidwa.
Tiyeni tiyambepo pa Open vSwitch
Pakadali pano, chimodzi mwazinthu zazikulu za OpenStack ndi Open vSwitch.
Mukayika OpenStack popanda SDN yowonjezera yowonjezera monga Juniper Contrail kapena Nokia Nuage, OVS ndiye gawo lalikulu la netiweki yamtambo ndipo, kuphatikiza ma iptables, contrack, namespaces, amakulolani kuti mukonzekere maukonde ophatikizika amitundu yambiri. Mwachibadwa, chigawo ichi chikhoza kusinthidwa, mwachitsanzo, pogwiritsa ntchito njira zachitatu za eni (wogulitsa) SDN.
Pakadali pano, OVS ili ndi magwiridwe antchito abwino kwambiri, omwe amaphatikiza matekinoloje monga QoS, LACP, VLAN, VxLAN, GENEVE, OpenFlow, DPDK, ndi zina zambiri.
Zindikirani: OVS poyamba sinapangidwe ngati chosinthira chofewa cha ntchito zodzaza kwambiri ndi telecom ndipo idapangidwa kuti igwire ntchito za IT zomwe sizimafuna bandwidth monga seva WEB kapena seva yamakalata. Komabe, OVS ikupititsidwa patsogolo ndipo kukhazikitsidwa kwa OVS panopa kwasintha kwambiri ntchito yake ndi mphamvu zake, zomwe zimalola kuti zigwiritsidwe ntchito ndi ogwiritsira ntchito telecom omwe ali ndi ntchito zodzaza kwambiri, mwachitsanzo, pali kukhazikitsidwa kwa OVS ndi chithandizo cha DPDK kufulumizitsa.
Pali zigawo zitatu zofunika za OVS zomwe muyenera kuzidziwa:
Kernel module - gawo lomwe lili mu kernel space lomwe limayendetsa magalimoto potengera malamulo omwe alandilidwa kuchokera ku control element;
vSinthani daemon (ovs-vswitchd) ndi njira yomwe idakhazikitsidwa m'malo ogwiritsa ntchito omwe ali ndi udindo wopanga gawo la kernel - ndiye kuti, imayimira mwachindunji lingaliro la ntchito ya switch.
Seva ya database - nkhokwe yam'deralo yomwe ili pagulu lililonse lomwe likuyendetsa OVS, momwe masinthidwe amasungidwa. Owongolera a SDN amatha kulumikizana kudzera mugawoli pogwiritsa ntchito protocol ya OVSDB.
Zonsezi zimatsagana ndi zida zowunikira komanso zowongolera, monga ovs-vsctl, ovs-appctl, ovs-ofctl, ndi zina.
Pakadali pano, Openstack imagwiritsidwa ntchito kwambiri ndi opanga ma telecom kuti asamutsire ntchito zama network, monga EPC, SBC, HLR, ndi zina. Ntchito zina zimatha kukhala popanda mavuto ndi OVS momwe zilili, koma mwachitsanzo, EPC imayendetsa magalimoto olembetsa - kenako imadutsa. kuchuluka kwa magalimoto (tsopano kuchuluka kwa magalimoto kumafika magigabit mazana angapo pamphindikati). Mwachilengedwe, kuyendetsa magalimoto oterowo kudzera m'malo a kernel (popeza wotumizirayo amakhala pamenepo mwachisawawa) si lingaliro labwino kwambiri. Chifukwa chake, OVS nthawi zambiri imayikidwa kwathunthu m'malo ogwiritsa ntchito pogwiritsa ntchito ukadaulo wa DPDK wopititsa patsogolo magalimoto kuchokera ku NIC kupita kumalo ogwiritsira ntchito podutsa kernel.
Zindikirani: pamtambo womwe umagwiritsidwa ntchito pa telecom, ndizotheka kutulutsa kuchuluka kwa magalimoto kuchokera ku compute node kudutsa OVS mwachindunji kupita ku zida zosinthira. Njira za SR-IOV ndi Passthrough zimagwiritsidwa ntchito pa izi.
[root@hp-gen9 bormoglotx]# cat /sys/module/kvm_intel/parameters/nested
N
[root@hp-gen9 bormoglotx]#
Ngati muwona chilembo N, ndiye kuti timathandizira kuti pakhale zisankho molingana ndi chiwongolero chilichonse chomwe mungapeze pa intaneti, mwachitsanzo. yotero .
Tiyenera kusonkhanitsa dera lotsatira kuchokera ku makina enieni:
Kwa ine, kulumikiza makina enieni omwe ali mbali ya kukhazikitsidwa kwamtsogolo (ndipo ndinapeza 7 mwa iwo, koma mukhoza kudutsa ndi 4 ngati mulibe zinthu zambiri), ndinagwiritsa ntchito OpenvSwitch. Ndinapanga mlatho umodzi wa ovs ndikulumikiza makina enieni kwa iwo kudzera pamagulu adoko. Kuti muchite izi, ndidapanga fayilo ya xml motere:
Magulu atatu adoko amalengezedwa pano - kupeza awiri ndi thunthu limodzi (chomalizacho chinali chofunikira pa seva ya DNS, koma mutha kuchita popanda izo, kapena kuyiyika pa makina opangira - chilichonse chomwe chili chosavuta kwa inu). Kenako, pogwiritsa ntchito template iyi, timalengeza zathu kudzera mu virsh net-define:
local_mtu -MTU. Popeza tili ndi labotale yoyesera ndipo ndili ndi MTU ya 1500 pamadoko osinthira a OVS, ndikofunikira kuyiyika ku 1450 kuti mapaketi omwe ali mu VxLAN adutse.
vi undercloud.conf
2020-08-13 23:13:12,668 INFO:
#############################################################################
Undercloud install complete.
The file containing this installation's passwords is at
/home/stack/undercloud-passwords.conf.
There is also a stackrc file at /home/stack/stackrc.
These files are needed to interact with the OpenStack services, and should be
secured.
#############################################################################
Popeza tikugwira ntchito ngati mizu, tifunika kusintha eni ake a disks kuti tisakhale ndi vuto ndi ufulu:
[root@hp-gen9 images]# ls -lh
total 5.8G
drwxr-xr-x. 2 qemu qemu 4.0K Aug 13 16:15 backups
-rw-r--r--. 1 root root 61G Aug 14 03:07 compute-1.qcow2
-rw-r--r--. 1 root root 61G Aug 14 03:07 compute-2.qcow2
-rw-r--r--. 1 root root 61G Aug 14 03:07 control-1.qcow2
-rw-------. 1 qemu qemu 41G Aug 14 03:03 dns-server.qcow2
-rw-r--r--. 1 root root 161G Aug 14 03:07 storage-1.qcow2
-rw-r--r--. 1 root root 161G Aug 14 03:07 storage-2.qcow2
-rw-------. 1 qemu qemu 41G Aug 14 03:07 undercloud.qcow2
[root@hp-gen9 images]#
[root@hp-gen9 images]#
[root@hp-gen9 images]# chown qemu:qemu /var/lib/libvirt/images/*qcow2
[root@hp-gen9 images]# ls -lh
total 5.8G
drwxr-xr-x. 2 qemu qemu 4.0K Aug 13 16:15 backups
-rw-r--r--. 1 qemu qemu 61G Aug 14 03:07 compute-1.qcow2
-rw-r--r--. 1 qemu qemu 61G Aug 14 03:07 compute-2.qcow2
-rw-r--r--. 1 qemu qemu 61G Aug 14 03:07 control-1.qcow2
-rw-------. 1 qemu qemu 41G Aug 14 03:03 dns-server.qcow2
-rw-r--r--. 1 qemu qemu 161G Aug 14 03:07 storage-1.qcow2
-rw-r--r--. 1 qemu qemu 161G Aug 14 03:07 storage-2.qcow2
-rw-------. 1 qemu qemu 41G Aug 14 03:08 undercloud.qcow2
[root@hp-gen9 images]#
Zindikirani: ngati simukukonzekera kukhazikitsa ceph kuti muphunzire, ndiye kuti malamulowo sapanga ma node osachepera atatu okhala ndi ma disks osachepera awiri, koma mu template akuwonetsa kuti ma disks vda, vdb, etc.
Chabwino, tsopano tiyenera kufotokozera makina onsewa:
Pamapeto pake pali lamulo -print-xml > /tmp/storage-1.xml, lomwe limapanga fayilo ya xml ndikufotokozera makina aliwonse mu /tmp/ foda; ngati simukuwonjezera, simudzakhala. amatha kuzindikira makina enieni.
Tsopano tiyenera kufotokozera makina onsewa mu virsh:
virsh define --file /tmp/control-1.xml
virsh define --file /tmp/compute-1.xml
virsh define --file /tmp/compute-2.xml
virsh define --file /tmp/storage-1.xml
virsh define --file /tmp/storage-2.xml
[root@hp-gen9 ~]# virsh list --all
Id Name State
----------------------------------------------------
6 dns-server running
64 undercloud running
- compute-1 shut off
- compute-2 shut off
- control-1 shut off
- storage-1 shut off
- storage-2 shut off
[root@hp-gen9 ~]#
Tsopano kagawo kakang'ono - tripleO imagwiritsa ntchito IPMI kuyang'anira ma seva panthawi ya kukhazikitsa ndi kuyang'ana.
Introspection ndi njira yoyendera ma hardware kuti apeze magawo ake ofunikira pakupititsa patsogolo ma node. Introspection ikuchitika pogwiritsa ntchito ironic, ntchito yopangidwa kuti igwire ntchito ndi ma seva opanda zitsulo.
Koma apa pali vuto - pamene ma seva a IPMI a hardware ali ndi doko losiyana (kapena doko logawana nawo, koma izi sizofunika), ndiye makina enieni alibe madoko oterowo. Apa ndodo yotchedwa vbmc imatithandizira - chida chomwe chimakulolani kutsanzira doko la IPMI. Nuance iyi ndiyoyenera kulabadira makamaka kwa iwo omwe akufuna kukhazikitsa labotale pa ESXI hypervisor - kunena zoona, sindikudziwa ngati ili ndi analogue ya vbmc, ndiye ndiyenera kudabwa za nkhaniyi musanatumize chilichonse. .
Ikani vbmc:
yum install yum install python2-virtualbmc
Ngati OS yanu siyikupeza phukusi, yonjezerani chosungira:
Tsopano tiyeni tipite ku undercloud ndikuwona ngati zonse zikuyenda. Adilesi ya makina ochitirako ndi 192.168.255.200, pamtambo wamtambo tidawonjezera phukusi lofunikira la ipmitool pokonzekera kutumiza:
[stack@undercloud ~]$ ipmitool -I lanplus -U admin -P admin -H 192.168.255.200 -p 7001 power status
Chassis Power is off
[stack@undercloud ~]$ ipmitool -I lanplus -U admin -P admin -H 192.168.255.200 -p 7001 power on
Chassis Power Control: Up/On
[stack@undercloud ~]$
[root@hp-gen9 ~]# virsh list
Id Name State
----------------------------------------------------
6 dns-server running
64 undercloud running
65 control-1 running
[stack@undercloud ~]$ ipmitool -I lanplus -U admin -P admin -H 192.168.255.200 -p 7001 power off
Chassis Power Control: Down/Off
[stack@undercloud ~]$ ipmitool -I lanplus -U admin -P admin -H 192.168.255.200 -p 7001 power status
Chassis Power is off
[stack@undercloud ~]$
[root@hp-gen9 ~]# virsh list --all
Id Name State
----------------------------------------------------
6 dns-server running
64 undercloud running
- compute-1 shut off
- compute-2 shut off
- control-1 shut off
- storage-1 shut off
- storage-2 shut off
[root@hp-gen9 ~]#
Chotsatira ndikuwunika ma node omwe overcloud idzayikidwe. Kuti tichite izi, tifunika kukonzekera fayilo ya json ndi kufotokoza kwa node zathu. Chonde dziwani kuti, mosiyana ndi kukhazikitsa pa maseva opanda kanthu, fayilo imawonetsa doko lomwe vbmc ikugwira ntchito pamakina aliwonse.
[root@hp-gen9 ~]# virsh domiflist --domain control-1
Interface Type Source Model MAC
-------------------------------------------------------
- network ovs-network-1 virtio 52:54:00:20:a2:2f
- network ovs-network-1 virtio 52:54:00:3f:87:9f
[root@hp-gen9 ~]# virsh domiflist --domain compute-1
Interface Type Source Model MAC
-------------------------------------------------------
- network ovs-network-1 virtio 52:54:00:98:e9:d6
[root@hp-gen9 ~]# virsh domiflist --domain compute-2
Interface Type Source Model MAC
-------------------------------------------------------
- network ovs-network-1 virtio 52:54:00:6a:ea:be
[root@hp-gen9 ~]# virsh domiflist --domain storage-1
Interface Type Source Model MAC
-------------------------------------------------------
- network ovs-network-1 virtio 52:54:00:79:0b:cb
[root@hp-gen9 ~]# virsh domiflist --domain storage-2
Interface Type Source Model MAC
-------------------------------------------------------
- network ovs-network-1 virtio 52:54:00:a7:fe:27
Zindikirani: gawo lowongolera lili ndi mawonekedwe awiri, koma pakadali pano izi sizofunikira, pakukhazikitsa uku kudzakhala kokwanira kwa ife.
Tsopano tikukonzekera fayilo ya json. Tiyenera kuwonetsa adiresi ya poppy ya doko momwe kuperekera kudzachitikira, magawo a node, kuwapatsa mayina ndikuwonetsa momwe mungapitire ipmi:
(undercloud) [stack@undercloud ~]$ sudo wget https://images.rdoproject.org/queens/delorean/current-tripleo-rdo/overcloud-full.tar --no-check-certificate
(undercloud) [stack@undercloud ~]$ sudo wget https://images.rdoproject.org/queens/delorean/current-tripleo-rdo/ironic-python-agent.tar --no-check-certificate
(undercloud) [stack@undercloud ~]$ ls -lh
total 1.9G
-rw-r--r--. 1 stack stack 447M Aug 14 10:26 ironic-python-agent.tar
-rw-r--r--. 1 stack stack 1.5G Aug 14 10:26 overcloud-full.tar
-rw-------. 1 stack stack 916 Aug 13 23:10 stackrc
-rw-r--r--. 1 stack stack 15K Aug 13 22:50 undercloud.conf
-rw-------. 1 stack stack 2.0K Aug 13 22:50 undercloud-passwords.conf
(undercloud) [stack@undercloud ~]$ mkdir images/
(undercloud) [stack@undercloud ~]$ tar -xpvf ironic-python-agent.tar -C ~/images/
ironic-python-agent.initramfs
ironic-python-agent.kernel
(undercloud) [stack@undercloud ~]$ tar -xpvf overcloud-full.tar -C ~/images/
overcloud-full.qcow2
overcloud-full.initrd
overcloud-full.vmlinuz
(undercloud) [stack@undercloud ~]$
(undercloud) [stack@undercloud ~]$ ls -lh images/
total 1.9G
-rw-rw-r--. 1 stack stack 441M Aug 12 17:24 ironic-python-agent.initramfs
-rwxr-xr-x. 1 stack stack 6.5M Aug 12 17:24 ironic-python-agent.kernel
-rw-r--r--. 1 stack stack 53M Aug 12 17:14 overcloud-full.initrd
-rw-r--r--. 1 stack stack 1.4G Aug 12 17:18 overcloud-full.qcow2
-rwxr-xr-x. 1 stack stack 6.5M Aug 12 17:14 overcloud-full.vmlinuz
(undercloud) [stack@undercloud ~]$
Kukweza zithunzi ku undercloud:
(undercloud) [stack@undercloud ~]$ openstack overcloud image upload --image-path ~/images/
Image "overcloud-full-vmlinuz" was uploaded.
+--------------------------------------+------------------------+-------------+---------+--------+
| ID | Name | Disk Format | Size | Status |
+--------------------------------------+------------------------+-------------+---------+--------+
| c2553770-3e0f-4750-b46b-138855b5c385 | overcloud-full-vmlinuz | aki | 6761064 | active |
+--------------------------------------+------------------------+-------------+---------+--------+
Image "overcloud-full-initrd" was uploaded.
+--------------------------------------+-----------------------+-------------+----------+--------+
| ID | Name | Disk Format | Size | Status |
+--------------------------------------+-----------------------+-------------+----------+--------+
| 949984e0-4932-4e71-af43-d67a38c3dc89 | overcloud-full-initrd | ari | 55183045 | active |
+--------------------------------------+-----------------------+-------------+----------+--------+
Image "overcloud-full" was uploaded.
+--------------------------------------+----------------+-------------+------------+--------+
| ID | Name | Disk Format | Size | Status |
+--------------------------------------+----------------+-------------+------------+--------+
| a2f2096d-c9d7-429a-b866-c7543c02a380 | overcloud-full | qcow2 | 1487475712 | active |
+--------------------------------------+----------------+-------------+------------+--------+
Image "bm-deploy-kernel" was uploaded.
+--------------------------------------+------------------+-------------+---------+--------+
| ID | Name | Disk Format | Size | Status |
+--------------------------------------+------------------+-------------+---------+--------+
| e413aa78-e38f-404c-bbaf-93e582a8e67f | bm-deploy-kernel | aki | 6761064 | active |
+--------------------------------------+------------------+-------------+---------+--------+
Image "bm-deploy-ramdisk" was uploaded.
+--------------------------------------+-------------------+-------------+-----------+--------+
| ID | Name | Disk Format | Size | Status |
+--------------------------------------+-------------------+-------------+-----------+--------+
| 5cf3aba4-0e50-45d3-929f-27f025dd6ce3 | bm-deploy-ramdisk | ari | 461759376 | active |
+--------------------------------------+-------------------+-------------+-----------+--------+
(undercloud) [stack@undercloud ~]$
Kuwona kuti zithunzi zonse zakwezedwa
(undercloud) [stack@undercloud ~]$ openstack image list
+--------------------------------------+------------------------+--------+
| ID | Name | Status |
+--------------------------------------+------------------------+--------+
| e413aa78-e38f-404c-bbaf-93e582a8e67f | bm-deploy-kernel | active |
| 5cf3aba4-0e50-45d3-929f-27f025dd6ce3 | bm-deploy-ramdisk | active |
| a2f2096d-c9d7-429a-b866-c7543c02a380 | overcloud-full | active |
| 949984e0-4932-4e71-af43-d67a38c3dc89 | overcloud-full-initrd | active |
| c2553770-3e0f-4750-b46b-138855b5c385 | overcloud-full-vmlinuz | active |
+--------------------------------------+------------------------+--------+
(undercloud) [stack@undercloud ~]$
Chinthu chinanso - muyenera kuwonjezera seva ya DNS:
(undercloud) [stack@undercloud ~]$ openstack overcloud node import --introspect --provide inspection.json
Started Mistral Workflow tripleo.baremetal.v1.register_or_update. Execution ID: d57456a3-d8ed-479c-9a90-dff7c752d0ec
Waiting for messages on queue 'tripleo' with no timeout.
5 node(s) successfully moved to the "manageable" state.
Successfully registered node UUID b4b2cf4a-b7ca-4095-af13-cc83be21c4f5
Successfully registered node UUID b89a72a3-6bb7-429a-93bc-48393d225838
Successfully registered node UUID 20a16cc0-e0ce-4d88-8f17-eb0ce7b4d69e
Successfully registered node UUID bfc1eb98-a17a-4a70-b0b6-6c0db0eac8e8
Successfully registered node UUID 766ab623-464c-423d-a529-d9afb69d1167
Waiting for introspection to finish...
Started Mistral Workflow tripleo.baremetal.v1.introspect. Execution ID: 6b4d08ae-94c3-4a10-ab63-7634ec198a79
Waiting for messages on queue 'tripleo' with no timeout.
Introspection of node b89a72a3-6bb7-429a-93bc-48393d225838 completed. Status:SUCCESS. Errors:None
Introspection of node 20a16cc0-e0ce-4d88-8f17-eb0ce7b4d69e completed. Status:SUCCESS. Errors:None
Introspection of node bfc1eb98-a17a-4a70-b0b6-6c0db0eac8e8 completed. Status:SUCCESS. Errors:None
Introspection of node 766ab623-464c-423d-a529-d9afb69d1167 completed. Status:SUCCESS. Errors:None
Introspection of node b4b2cf4a-b7ca-4095-af13-cc83be21c4f5 completed. Status:SUCCESS. Errors:None
Successfully introspected 5 node(s).
Started Mistral Workflow tripleo.baremetal.v1.provide. Execution ID: f5594736-edcf-4927-a8a0-2a7bf806a59a
Waiting for messages on queue 'tripleo' with no timeout.
5 node(s) successfully moved to the "available" state.
(undercloud) [stack@undercloud ~]$
Monga mukuwonera pazotulutsa, zonse zidatha popanda zolakwika. Tiyeni tiwone ngati ma node onse ali m'malo omwe alipo:
(undercloud) [stack@undercloud ~]$ openstack baremetal node list
+--------------------------------------+-----------+---------------+-------------+--------------------+-------------+
| UUID | Name | Instance UUID | Power State | Provisioning State | Maintenance |
+--------------------------------------+-----------+---------------+-------------+--------------------+-------------+
| b4b2cf4a-b7ca-4095-af13-cc83be21c4f5 | control-1 | None | power off | available | False |
| b89a72a3-6bb7-429a-93bc-48393d225838 | storage-1 | None | power off | available | False |
| 20a16cc0-e0ce-4d88-8f17-eb0ce7b4d69e | storage-2 | None | power off | available | False |
| bfc1eb98-a17a-4a70-b0b6-6c0db0eac8e8 | compute-1 | None | power off | available | False |
| 766ab623-464c-423d-a529-d9afb69d1167 | compute-2 | None | power off | available | False |
+--------------------------------------+-----------+---------------+-------------+--------------------+-------------+
(undercloud) [stack@undercloud ~]$
Ngati mfundozo zili mu chikhalidwe chosiyana, nthawi zambiri zimayendetsedwa, ndiye kuti chinachake chalakwika ndipo muyenera kuyang'ana pa chipikacho ndikuwona chifukwa chake izi zinachitika. Kumbukirani kuti muzochitika izi tikugwiritsa ntchito virtualization ndipo pakhoza kukhala nsikidzi zomwe zimagwirizanitsidwa ndi kugwiritsa ntchito makina enieni kapena vbmc.
Zindikirani: --libvirt-type qemu variable ndiyofunikira pamenepa, popeza tidzagwiritsa ntchito zisa. Apo ayi, simungathe kuyendetsa makina enieni.
Tsopano muli ndi ola limodzi, kapena mwina kupitilira apo (malingana ndi kuthekera kwa zida) ndipo mutha kuyembekeza kuti ikatha nthawi iyi muwona uthenga wotsatira:
Tsopano muli ndi mtundu wathunthu wa openstack, womwe mungaphunzire, kuyesa, ndi zina.
Tiyeni tiwone ngati zonse zikuyenda bwino. Pachikwatu cha wogwiritsa ntchito kunyumba pali mafayilo awiri - stackrc imodzi (yoyang'anira pansi pamtambo) ndi yachiwiri overcloudrc (yoyang'anira mitambo). Mafayilowa ayenera kutchulidwa ngati gwero, chifukwa ali ndi chidziwitso chofunikira kuti atsimikizidwe.
(undercloud) [stack@undercloud ~]$ openstack server list
+--------------------------------------+-------------------------+--------+-------------------------+----------------+--------------+
| ID | Name | Status | Networks | Image | Flavor |
+--------------------------------------+-------------------------+--------+-------------------------+----------------+--------------+
| fd7d36f4-ce87-4b9a-93b0-add2957792de | overcloud-controller-0 | ACTIVE | ctlplane=192.168.255.15 | overcloud-full | control |
| edc77778-8972-475e-a541-ff40eb944197 | overcloud-novacompute-1 | ACTIVE | ctlplane=192.168.255.26 | overcloud-full | compute |
| 5448ce01-f05f-47ca-950a-ced14892c0d4 | overcloud-cephstorage-1 | ACTIVE | ctlplane=192.168.255.34 | overcloud-full | ceph-storage |
| ce6d862f-4bdf-4ba3-b711-7217915364d7 | overcloud-novacompute-0 | ACTIVE | ctlplane=192.168.255.19 | overcloud-full | compute |
| e4507bd5-6f96-4b12-9cc0-6924709da59e | overcloud-cephstorage-0 | ACTIVE | ctlplane=192.168.255.44 | overcloud-full | ceph-storage |
+--------------------------------------+-------------------------+--------+-------------------------+----------------+--------------+
(undercloud) [stack@undercloud ~]$
(undercloud) [stack@undercloud ~]$ source overcloudrc
(overcloud) [stack@undercloud ~]$
(overcloud) [stack@undercloud ~]$ openstack project list
+----------------------------------+---------+
| ID | Name |
+----------------------------------+---------+
| 4eed7d0f06544625857d51cd77c5bd4c | admin |
| ee1c68758bde41eaa9912c81dc67dad8 | service |
+----------------------------------+---------+
(overcloud) [stack@undercloud ~]$
(overcloud) [stack@undercloud ~]$
(overcloud) [stack@undercloud ~]$ openstack network agent list
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
| ID | Agent Type | Host | Availability Zone | Alive | State | Binary |
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
| 10495de9-ba4b-41fe-b30a-b90ec3f8728b | Open vSwitch agent | overcloud-novacompute-1.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| 1515ad4a-5972-46c3-af5f-e5446dff7ac7 | L3 agent | overcloud-controller-0.localdomain | nova | :-) | UP | neutron-l3-agent |
| 322e62ca-1e5a-479e-9a96-4f26d09abdd7 | DHCP agent | overcloud-controller-0.localdomain | nova | :-) | UP | neutron-dhcp-agent |
| 9c1de2f9-bac5-400e-998d-4360f04fc533 | Open vSwitch agent | overcloud-novacompute-0.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| d99c5657-851e-4d3c-bef6-f1e3bb1acfb0 | Open vSwitch agent | overcloud-controller-0.localdomain | None | :-) | UP | neutron-openvswitch-agent |
| ff85fae6-5543-45fb-a301-19c57b62d836 | Metadata agent | overcloud-controller-0.localdomain | None | :-) | UP | neutron-metadata-agent |
+--------------------------------------+--------------------+-------------------------------------+-------------------+-------+-------+---------------------------+
(overcloud) [stack@undercloud ~]$
Kuyika kwanga kumafunikirabe kukhudza kumodzi kakang'ono - kuwonjezera njira pa wowongolera, popeza makina omwe ndikugwira nawo ntchito ali pa intaneti ina. Kuti muchite izi, pitani ku Control-1 pansi pa akaunti ya kutentha-admin ndikulembetsa njira
(undercloud) [stack@undercloud ~]$ ssh [email protected]
Last login: Fri Aug 14 09:47:40 2020 from 192.168.255.1
[heat-admin@overcloud-controller-0 ~]$
[heat-admin@overcloud-controller-0 ~]$
[heat-admin@overcloud-controller-0 ~]$ sudo ip route add 10.169.0.0/16 via 192.168.255.254
Koma tisanayang'ane momwe magalimoto amayendera, tiyeni tiwone zomwe tili nazo pakalipano pa node yolamulira (yomwe ilinso node ya intaneti) ndi pa compute node. Tiyeni tiyambe ndi compute node.
M'malo mwake, titha kunena kuti zonse ndizofanana, koma adilesi ya IP salinso pa mawonekedwe akuthupi koma pamlatho weniweni. Izi zimachitika chifukwa doko ili ndi doko lomwe magalimoto amatuluka kupita kunja.
Doko ili limamangiriridwa ku mlatho wa br-ex ndipo popeza kulibe ma tag a vlan pamenepo, doko ili ndi doko lomwe ma vlans onse amaloledwa, tsopano magalimoto amatuluka panja popanda tag, monga akuwonetsera vlan-id 0 mu zotuluka pamwamba.
Zina zonse pakadali pano ndizofanana ndi ma compute node - milatho yomweyo, ngalande zomwezo zimapita kumalo awiri owerengera.
Sitidzaganizira zosungirako m'nkhaniyi, koma kuti timvetsetse ndikofunika kunena kuti gawo la maukonde a mfundozi ndi banal mpaka manyazi. Kwa ife, pali doko limodzi lokha (eth0) lomwe lili ndi adilesi ya IP yomwe wapatsidwa ndipo ndi momwemo. Palibe ma tunnel a VxLAN, milatho ya tunnel, ndi zina zotero - palibe ma ovs nkomwe, popeza palibe chifukwa chake. Mukamagwiritsa ntchito kudzipatula kwa netiweki, node iyi idzakhala ndi mawonekedwe awiri (madoko akuthupi, bodny, kapena ma vlans awiri okha - zilibe kanthu - zimatengera zomwe mukufuna) - imodzi yoyang'anira, yachiwiri ya traffic (kulembera ku VM disk. , kuwerenga kuchokera pa disk, etc.)
Tinalingalira zomwe tili nazo pama node popanda ntchito iliyonse. Tsopano tiyeni tiyambitse makina 4 enieni ndikuwona momwe chiwembu chomwe tafotokoza pamwambapa chikusintha - tiyenera kukhala ndi madoko, ma routers, ndi zina zambiri.
Pakadali pano network yathu ikuwoneka motere:
Tili ndi makina awiri pakompyuta iliyonse. Pogwiritsa ntchito compute-0 monga chitsanzo, tiyeni tiwone momwe zonse zikuphatikizidwa.
[heat-admin@overcloud-novacompute-0 ~]$ sudo virsh list
Id Name State
----------------------------------------------------
1 instance-00000001 running
3 instance-00000003 running
[heat-admin@overcloud-novacompute-0 ~]$
Makinawa ali ndi mawonekedwe amodzi okha - tap95d96a75-a0:
[heat-admin@overcloud-novacompute-0 ~]$ sudo virsh domiflist instance-00000001
Interface Type Source Model MAC
-------------------------------------------------------
tap95d96a75-a0 bridge qbr95d96a75-a0 virtio fa:16:3e:44:98:20
[heat-admin@overcloud-novacompute-0 ~]$
Mawonekedwe awa akuwoneka mu mlatho wa linux:
[heat-admin@overcloud-novacompute-0 ~]$ sudo brctl show
bridge name bridge id STP enabled interfaces
docker0 8000.0242904c92a8 no
qbr5bd37136-47 8000.5e4e05841423 no qvb5bd37136-47
tap5bd37136-47
qbr95d96a75-a0 8000.de076cb850f6 no qvb95d96a75-a0
tap95d96a75-a0
[heat-admin@overcloud-novacompute-0 ~]$
Apa ndikofunikira kukhazikika pang'ono pamitundu ya zida zapaintaneti za OpenStack:
vtap - mawonekedwe enieni ophatikizidwa ndi chitsanzo (VM)
qbr - Linux mlatho
qvb ndi qvo - vEth awiri olumikizidwa ku Linux mlatho ndi Open vSwitch bridge
br-int, br-tun, br-vlan - Open vSwitch milatho
chigamba-, int-br-, phy-br- - Tsegulani vSwitch patch interfaces kulumikiza milatho
qg, qr, ha, fg, sg - Tsegulani madoko a vSwitch omwe amagwiritsidwa ntchito ndi zida zenizeni kuti mulumikizane ndi OVS
Monga mukumvetsetsa, ngati tili ndi doko la qvb95d96a75-a0 mu mlatho, womwe ndi vEth pair, ndiye penapake pali mnzake, womwe uyenera kutchedwa qvo95d96a75-a0. Tiyeni tiwone zomwe madoko ali pa OVS.
Monga tikuonera, doko lili mu br-int. Br-int imagwira ntchito ngati chosinthira chomwe chimathetsa madoko a makina enieni. Kuphatikiza pa qvo95d96a75-a0, doko qvo5bd37136-47 likuwoneka pazotulutsa. Ili ndiye doko la makina achiwiri enieni. Zotsatira zake, chithunzi chathu tsopano chikuwoneka motere:
Funso lomwe liyenera kusangalatsa owerenga mwatcheru - kodi mlatho wa linux pakati pa doko la makina ndi doko la OVS ndi lotani? Chowonadi ndi chakuti kuteteza makinawo, magulu otetezera amagwiritsidwa ntchito, omwe sali kanthu koma iptables. OVS sagwira ntchito ndi ma iptables, kotero "crutch" iyi idapangidwa. Komabe, ikutha ntchito - ikusinthidwa ndi contrack mu zotulutsidwa zatsopano.
Makina awiri pa hypervisor imodzi pa intaneti imodzi ya L2
Popeza ma VM awiriwa ali pa netiweki yomweyo ya L2 komanso pa hypervisor yomweyo, kuchuluka kwa magalimoto pakati pawo kumayenda momveka bwino mdera lanu kudzera mu br-int, popeza makina onsewa azikhala pa VLAN imodzi:
[heat-admin@overcloud-novacompute-0 ~]$ sudo virsh domiflist instance-00000001
Interface Type Source Model MAC
-------------------------------------------------------
tap95d96a75-a0 bridge qbr95d96a75-a0 virtio fa:16:3e:44:98:20
[heat-admin@overcloud-novacompute-0 ~]$
[heat-admin@overcloud-novacompute-0 ~]$
[heat-admin@overcloud-novacompute-0 ~]$ sudo virsh domiflist instance-00000003
Interface Type Source Model MAC
-------------------------------------------------------
tap5bd37136-47 bridge qbr5bd37136-47 virtio fa:16:3e:83:ad:a4
[heat-admin@overcloud-novacompute-0 ~]$
[heat-admin@overcloud-novacompute-0 ~]$ sudo ovs-appctl fdb/show br-int
port VLAN MAC Age
6 1 fa:16:3e:83:ad:a4 0
3 1 fa:16:3e:44:98:20 0
[heat-admin@overcloud-novacompute-0 ~]$
Makina awiri pa ma hypervisors osiyanasiyana pamaneti amodzi a L2
Tsopano tiyeni tiwone momwe magalimoto adzayendera pakati pa makina awiri pa intaneti yomweyo ya L2, koma yomwe ili pama hypervisors osiyanasiyana. Kunena zowona, palibe chomwe chidzasinthe kwambiri, basi magalimoto pakati pa hypervisors adzadutsa mumsewu wa vxlan. Tiyeni tione chitsanzo.
Maadiresi a makina enieni omwe tiwonapo magalimoto:
[heat-admin@overcloud-novacompute-0 ~]$ sudo virsh domiflist instance-00000001
Interface Type Source Model MAC
-------------------------------------------------------
tap95d96a75-a0 bridge qbr95d96a75-a0 virtio fa:16:3e:44:98:20
[heat-admin@overcloud-novacompute-0 ~]$
[heat-admin@overcloud-novacompute-1 ~]$ sudo virsh domiflist instance-00000002
Interface Type Source Model MAC
-------------------------------------------------------
tape7e23f1b-07 bridge qbre7e23f1b-07 virtio fa:16:3e:72:ad:53
[heat-admin@overcloud-novacompute-1 ~]$
Timayang'ana pa tebulo lotumizira mu br-int pa compute-0:
Mac ili patebulo lotumizira br-int pa compute-1, ndipo monga zikuwonekera kuchokera pazomwe zili pamwambapa, zikuwonekera kudzera padoko 2, lomwe ndi doko lolowera ku br-tun:
Ndiko kuti, paketi yolandiridwa idzawulukira ku doko 3, kumbuyo komwe kuli kale makina amtundu-00000003.
Kukongola kwa kutumiza Openstack pophunzira pa zomangamanga zenizeni ndikuti titha kujambula mosavuta magalimoto pakati pa ma hypervisors ndikuwona zomwe zikuchitika nawo. Izi ndi zomwe tidzachita tsopano, thamangani tcpdump pa doko la vnet kupita ku compute-0:
[root@hp-gen9 bormoglotx]# tcpdump -vvv -i vnet3
tcpdump: listening on vnet3, link-type EN10MB (Ethernet), capture size 262144 bytes
*****************omitted*******************
04:39:04.583459 IP (tos 0x0, ttl 64, id 16868, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.19.39096 > 192.168.255.26.4789: [no cksum] VXLAN, flags [I] (0x08), vni 22
IP (tos 0x0, ttl 64, id 8012, offset 0, flags [DF], proto ICMP (1), length 84)
10.0.1.85 > 10.0.1.88: ICMP echo request, id 5634, seq 16, length 64
04:39:04.584449 IP (tos 0x0, ttl 64, id 35181, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.26.speedtrace-disc > 192.168.255.19.4789: [no cksum] VXLAN, flags [I] (0x08), vni 22
IP (tos 0x0, ttl 64, id 59124, offset 0, flags [none], proto ICMP (1), length 84)
10.0.1.88 > 10.0.1.85: ICMP echo reply, id 5634, seq 16, length 64
*****************omitted*******************
Mzere woyamba ukuwonetsa kuti Patek kuchokera ku adilesi 10.0.1.85 amapita ku 10.0.1.88 (ICMP traffic), ndipo atakulungidwa mu VxLAN paketi ndi vni 22 ndipo paketi imachokera ku host 192.168.255.19 (compute-0) kuchititsa 192.168.255.26 .1 ( compute-XNUMX). Titha kuwona kuti VNI ikugwirizana ndi zomwe zafotokozedwa mu ovs.
Tiyeni tibwerere ku mzerewu actions=load:0->NXM_OF_VLAN_TCI[],load:0x16->NXM_NX_TUN_ID[],output:2. 0x16 ndi vni mu dongosolo la nambala ya hexadecimal. Tiyeni tisinthe nambala iyi kukhala 16th system:
$ ping 10.0.2.8
PING 10.0.2.8 (10.0.2.8): 56 data bytes
64 bytes from 10.0.2.8: seq=0 ttl=63 time=7.727 ms
64 bytes from 10.0.2.8: seq=1 ttl=63 time=3.832 ms
^C
--- 10.0.2.8 ping statistics ---
2 packets transmitted, 2 packets received, 0% packet loss
round-trip min/avg/max = 3.832/5.779/7.727 ms
Popeza pakadali pano paketi iyenera kupita kuchipata ndikuthamangitsidwa kumeneko, tiyenera kupeza adilesi ya poppy pachipata, chomwe timayang'ana pa tebulo la ARP mwachitsanzo:
$ arp
host-10-0-1-254.openstacklocal (10.0.1.254) at fa:16:3e:c4:64:70 [ether] on eth0
host-10-0-1-1.openstacklocal (10.0.1.1) at fa:16:3e:e6:2c:5c [ether] on eth0
host-10-0-1-90.openstacklocal (10.0.1.90) at fa:16:3e:83:ad:a4 [ether] on eth0
host-10-0-1-88.openstacklocal (10.0.1.88) at fa:16:3e:72:ad:53 [ether] on eth0
Monga mukukumbukira, node yolamulira mkatimo inkawoneka chimodzimodzi ndi mfundo yowerengera - milatho itatu yomweyi, br-ex yokha inali ndi doko lakuthupi lomwe nodeyo imatha kutumiza magalimoto kunja. Kupanga zochitika kunasintha kasinthidwe pa ma compute node - mlatho wa linux, ma iptables ndi ma interfaces adawonjezeredwa ku node. Kulengedwa kwa maukonde ndi rauta pafupifupi anasiya chizindikiro pa kasinthidwe node ulamuliro.
Chifukwa chake, ndizodziwikiratu kuti adilesi yachipata ya MAC iyenera kukhala patebulo lotumizira br-int pagawo lowongolera. Tiyeni tiwone ngati ili pomwepo ndi pomwe ikuyang'ana:
Mac ikuwoneka kuchokera padoko qr-0c52b15f-8f. Ngati tibwereranso pamndandanda wamadoko omwe ali ku Openstack, doko lamtunduwu limagwiritsidwa ntchito kulumikiza zida zosiyanasiyana ku OVS. Kuti mukhale olondola, qr ndi doko la rauta yeniyeni, yomwe imayimiridwa ngati malo a mayina.
Pafupifupi makope atatu. Koma potengera mayina, mutha kulingalira cholinga cha aliyense wa iwo. Tibwereranso kuzinthu zokhala ndi ID 0 ndi 1 pambuyo pake, tsopano tili ndi chidwi ndi namespace qrouter-0a4d2420-4b9c-46bd-aec1-86a1ef299abe:
[heat-admin@overcloud-controller-0 ~]$ sudo ip netns exec qrouter-0a4d2420-4b9c-46bd-aec1-86a1ef299abe ip route
10.0.1.0/24 dev qr-0c52b15f-8f proto kernel scope link src 10.0.1.254
10.0.2.0/24 dev qr-92fa49b5-54 proto kernel scope link src 10.0.2.254
[heat-admin@overcloud-controller-0 ~]$
Malo a mayinawa ali ndi ziwiri zamkati zomwe tidapanga kale. Madoko onse awiri awonjezedwa ku br-int. Tiyeni tiwone adilesi ya mac ya doko qr-0c52b15f-8f, popeza kuchuluka kwa magalimoto, potengera komwe akupita, adapita ku mawonekedwe awa.
Ndiye kuti, mu nkhani iyi, chirichonse chimagwira ntchito molingana ndi malamulo a standard routing. Popeza kuchuluka kwa magalimoto kumapangidwira 10.0.2.8, iyenera kutuluka kudzera mu mawonekedwe achiwiri qr-92fa49b5-54 ndikudutsa mumsewu wa vxlan kupita ku compute node:
[heat-admin@overcloud-controller-0 ~]$ sudo ip netns exec qrouter-0a4d2420-4b9c-46bd-aec1-86a1ef299abe arp
Address HWtype HWaddress Flags Mask Iface
10.0.1.88 ether fa:16:3e:72:ad:53 C qr-0c52b15f-8f
10.0.1.90 ether fa:16:3e:83:ad:a4 C qr-0c52b15f-8f
10.0.2.8 ether fa:16:3e:6c:ad:9c C qr-92fa49b5-54
10.0.2.42 ether fa:16:3e:f5:0b:29 C qr-92fa49b5-54
10.0.1.85 ether fa:16:3e:44:98:20 C qr-0c52b15f-8f
[heat-admin@overcloud-controller-0 ~]$
Zonse ndi zomveka, palibe zodabwitsa. Tiyeni tiwone komwe adilesi ya poppy ya host 10.0.2.8 ikuwonekera mu br-int:
[heat-admin@overcloud-novacompute-1 ~]$ brctl show
bridge name bridge id STP enabled interfaces
docker0 8000.02429c001e1c no
qbr3210e8ec-c0 8000.ea27f45358be no qvb3210e8ec-c0
tap3210e8ec-c0
qbre7e23f1b-07 8000.b26ac0eded8a no qvbe7e23f1b-07
tape7e23f1b-07
[heat-admin@overcloud-novacompute-1 ~]$
[heat-admin@overcloud-novacompute-1 ~]$ sudo virsh domiflist instance-00000004
Interface Type Source Model MAC
-------------------------------------------------------
tap3210e8ec-c0 bridge qbr3210e8ec-c0 virtio fa:16:3e:6c:ad:9c
[heat-admin@overcloud-novacompute-1 ~]$
Kwenikweni, tinadutsa njira yonse ya phukusi. Ndikuganiza kuti mwazindikira kuti magalimoto adadutsa munjira zosiyanasiyana za vxlan ndikutuluka ndi ma VNI osiyanasiyana. Tiyeni tiwone kuti ndi mtundu wanji wa VNI, pambuyo pake tidzasonkhanitsa zotayira pa doko lowongolera la node ndikuwonetsetsa kuti magalimoto amayenda ndendende monga tafotokozera pamwambapa.
Chifukwa chake, njira yowerengera-0 ili ndi zotsatirazi = katundu:0->NXM_OF_VLAN_TCI[],load:0x16->NXM_NX_TUN_ID[],output:3. Tiyeni tisinthe 0x16 kukhala dongosolo la nambala ya decimal:
0x16 = 6*16^0+1*16^1 = 6+16 = 22
Njira yowerengera-1 ili ndi VNI:actions=load:0->NXM_OF_VLAN_TCI[],load:0x63->NXM_NX_TUN_ID[],output:2. Tiyeni tisinthe 0x63 kukhala dongosolo la nambala ya decimal:
0x63 = 3*16^0+6*16^1 = 3+96 = 99
Chabwino, tsopano tiyeni tiwone zotayirapo:
[root@hp-gen9 bormoglotx]# tcpdump -vvv -i vnet4
tcpdump: listening on vnet4, link-type EN10MB (Ethernet), capture size 262144 bytes
*****************omitted*******************
04:35:18.709949 IP (tos 0x0, ttl 64, id 48650, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.19.41591 > 192.168.255.15.4789: [no cksum] VXLAN, flags [I] (0x08), vni 22
IP (tos 0x0, ttl 64, id 49042, offset 0, flags [DF], proto ICMP (1), length 84)
10.0.1.85 > 10.0.2.8: ICMP echo request, id 5378, seq 9, length 64
04:35:18.710159 IP (tos 0x0, ttl 64, id 23360, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.15.38983 > 192.168.255.26.4789: [no cksum] VXLAN, flags [I] (0x08), vni 99
IP (tos 0x0, ttl 63, id 49042, offset 0, flags [DF], proto ICMP (1), length 84)
10.0.1.85 > 10.0.2.8: ICMP echo request, id 5378, seq 9, length 64
04:35:18.711292 IP (tos 0x0, ttl 64, id 43596, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.26.42588 > 192.168.255.15.4789: [no cksum] VXLAN, flags [I] (0x08), vni 99
IP (tos 0x0, ttl 64, id 55103, offset 0, flags [none], proto ICMP (1), length 84)
10.0.2.8 > 10.0.1.85: ICMP echo reply, id 5378, seq 9, length 64
04:35:18.711531 IP (tos 0x0, ttl 64, id 8555, offset 0, flags [DF], proto UDP (17), length 134)
192.168.255.15.38983 > 192.168.255.19.4789: [no cksum] VXLAN, flags [I] (0x08), vni 22
IP (tos 0x0, ttl 63, id 55103, offset 0, flags [none], proto ICMP (1), length 84)
10.0.2.8 > 10.0.1.85: ICMP echo reply, id 5378, seq 9, length 64
*****************omitted*******************
Phukusi loyamba ndi paketi ya vxlan yochokera ku host 192.168.255.19 (compute-0) kuchititsa 192.168.255.15 (control-1) ndi vni 22, mkati momwe ICMP paketi imayikidwa kuchokera ku host 10.0.1.85 kuti ikhale ndi 10.0.2.8. Monga tawerengera pamwambapa, vni ikufanana ndi zomwe tawona pazotulutsa.
Phukusi lachiwiri ndi paketi ya vxlan yochokera ku host 192.168.255.15 (control-1) kuchititsa 192.168.255.26 (compute-1) ndi vni 99, mkati momwe ICMP paketi imayikidwa kuchokera ku host 10.0.1.85 kuti ikhale ndi 10.0.2.8. Monga tawerengera pamwambapa, vni ikufanana ndi zomwe tawona pazotulutsa.
Mapaketi awiri otsatirawa akubwerera magalimoto kuchokera ku 10.0.2.8 osati 10.0.1.85.
Ndiye kuti, pamapeto pake tili ndi dongosolo lotsatira la node:
Zikuwoneka ngati ndi choncho? Tinayiwala za malo awiri:
Pamene tinalankhula za kamangidwe ka nsanja ya mtambo, zingakhale bwino ngati makina adzalandira maadiresi okha kuchokera ku seva ya DHCP. Awa ndi ma seva awiri a DHCP pamanetiweki athu awiri 10.0.1.0/24 ndi 10.0.2.0/24.
Tiyeni tiwone ngati izi ndi zoona. Pali adilesi imodzi yokha m'malo awa - 10.0.1.1 - adilesi ya seva ya DHCP yokha, ndipo ikuphatikizidwanso mu br-int:
Zotsatira zake, timapeza ntchito zotsatirazi pa node yolamulira:
Chabwino, kumbukirani - awa ndi makina 4 okha, ma netiweki 2 amkati ndi rauta imodzi ... rauta yogawidwa idazimitsidwa, ndipo pamapeto pake, panali node imodzi yokha yowongolera mu benchi yoyeserera (pakulekerera zolakwika payenera kukhala quorum ya mfundo zitatu). Ndizomveka kuti muzamalonda chilichonse ndi "pang'ono" chovuta kwambiri, koma mu chitsanzo chosavuta ichi timamvetsetsa momwe ziyenera kukhalira - kaya muli ndi mayina a 3 kapena 300 ndizofunikira, koma pakuwona momwe ntchito yonse ikuyendera. dongosolo, palibe chomwe chidzasinthe kwambiri ... ngakhale mpaka simungalowetse ena ogulitsa SDN. Koma imeneyo ndi nkhani yosiyana kotheratu.
Pomaliza, ndikufuna kunena mawu ochepa okhudzana ndi kufananiza Openstack (onse vanila ndi wogulitsa) ndi yankho lamtambo kuchokera ku VMWare - ndakhala ndikufunsidwa funsoli pafupipafupi zaka zingapo zapitazi ndipo, kunena zoona, ndine. kale atatopa nazo, komabe. Malingaliro anga, ndizovuta kwambiri kufanizitsa njira ziwirizi, koma tikhoza kunena kuti pali zovuta muzothetsera zonsezo ndipo posankha njira imodzi muyenera kuyeza ubwino ndi kuipa.
Ngati OpenStack ndi yankho loyendetsedwa ndi anthu, ndiye kuti VMWare ili ndi ufulu wochita zomwe akufuna (kuwerenga - zomwe zili zopindulitsa kwa izo) ndipo izi ndizomveka - chifukwa ndi kampani yamalonda yomwe imagwiritsidwa ntchito kupanga ndalama kuchokera kwa makasitomala ake. Koma pali imodzi yayikulu komanso yonenepa KOMA - mutha kuchoka ku OpenStack, mwachitsanzo kuchokera ku Nokia, ndikusintha ndalama pang'ono kupita ku yankho kuchokera, mwachitsanzo, Juniper (Contrail Cloud), koma simungathe kuchoka pa VMWare. . Kwa ine, mayankho awiriwa amawoneka ngati awa - Openstack (wogulitsa) ndi khola losavuta momwe mumayikamo, koma muli ndi kiyi ndipo mutha kuchoka nthawi iliyonse. VMWare ndi khola lagolide, mwiniwakeyo ali ndi kiyi ya khola ndipo adzakudyerani ndalama zambiri.
Sindikutsatsa malonda oyamba kapena achiwiri - mumasankha zomwe mukufuna. Koma ndikadakhala ndi chisankho choterocho, ndikadasankha mayankho onse awiri - VMWare pamtambo wa IT (zonyamula zotsika, zowongolera zosavuta), OpenStack kuchokera kwa ogulitsa ena (Nokia ndi Juniper amapereka mayankho abwino kwambiri a turnkey) - pamtambo wa Telecom. Sindingagwiritse ntchito Openstack pa IT yoyera - zili ngati kuwombera mpheta ndi cannon, koma sindikuwona zotsutsana ndikugwiritsa ntchito kupatula kufutukula. Komabe, kugwiritsa ntchito VMWare mu telecom kuli ngati kukoka mwala wosweka mu Ford Raptor - ndizokongola kuchokera kunja, koma dalaivala ayenera kupanga maulendo 10 m'malo mwa amodzi.
M'malingaliro anga, choyipa chachikulu cha VMWare ndikutseka kwathunthu - kampaniyo sidzakupatsani chidziwitso cha momwe imagwirira ntchito, mwachitsanzo, vSAN kapena zomwe zili mu hypervisor kernel - sizopindulitsa kwa izo - ndiko kuti, mudzachita. osakhalanso katswiri wa VMWare - popanda kuthandizidwa ndi ogulitsa, ndiwe wothedwa (nthawi zambiri ndimakumana ndi akatswiri a VMWare omwe amadabwitsidwa ndi mafunso ang'onoang'ono). Kwa ine, VMWare ikugula galimoto yokhala ndi hood yotsekedwa - inde, mutha kukhala ndi akatswiri omwe angasinthe lamba wanthawi, koma ndi yekhayo amene adakugulitsani yankho ili ndi omwe angatsegule hood. Inemwini, sindimakonda mayankho omwe sindingathe kulowamo. Mudzanena kuti simuyenera kupita pansi pa hood. Inde, izi ndi zotheka, koma ndikuyang'ana pa inu pamene muyenera kusonkhanitsa ntchito yaikulu mumtambo kuchokera ku makina pafupifupi 20-30, maukonde 40-50, theka la omwe akufuna kupita kunja, ndipo theka lachiwiri likufunsani. SR-IOV mathamangitsidwe, apo ayi mudzafunika angapo angapo a magalimoto awa - apo ayi ntchito sikokwanira.
Palinso malingaliro ena, kotero inu nokha mungasankhe zomwe mungasankhe ndipo, chofunika kwambiri, mudzakhala ndi udindo pazosankha zanu. Awa ndi malingaliro anga chabe - munthu yemwe wawona ndikukhudza zinthu zosachepera 4 - Nokia, Juniper, Red Hat ndi VMWare. Ndiko kuti, ndili ndi chofanizira nacho.