SlideShare una empresa de Scribd logo
1 de 42
Descargar para leer sin conexión
BBVA Bank on 
OpenStack 
OpenStack Summit 
Paris, November 2014 
Jose Maria San José, 
Jose Luis Lucas, 
Daniel Chavero,
1Introduction
Bbva bank on Open Stack
Vision 
Why hasn’t a bank 1B customers? 
Because we can’t
2Vision
Vision: Let’s go Cloud! 
● Cloud sets up self provisioning infrastructure 
● Hybrid Cloud allows unlimited elasticity (no constraints) 
● Active-Active Hybrid Cloud boosts resilience 
● Hybrid data model (sensitive aware) ensures privacy 
● Programmable automation simplifies management
BBVA BBVA 
It's a Cloud World 
BBVA Datacenter 
BBVA DMZ 
ES MX US 
physical constraints 
Z 
Long 
term 
transfer 
Amazon 
Google 
Manage-ment 
& 
Support 
no constraints 
business 
model 
constraints
New lifecycle 
SecDevOps 
Cooperation 
Deployment 
Package 
Tested 
Deployment 
Package 
Evolved 
Deployment 
Package 
Development Testing Production Maintenance 
Cloud Catalog (Virtual Machines, SW packages, SW Developments)
Strategic Roadmap 
Private Cloud 
Cultural engagement. 
Assure sustainability of IT 
DevOps Adoption 
Improve speed of development and deployment without flaws. 
Hybrid Cloud 
Internet-scale infrastructure. 
High Value Applications 
Web-scale applications on top of Liberty and Hydra. 
Cloud Consolidation 
Migrate internal process and applications to internal cloud.
3OpenStack
3 - OpenStack: the beginnings. 
● Our goals. 
● Previous experience in public clouds. 
● Why OpenStack? 
● Why RedHat? 
● How are we planning to use it?
3 - OpenStack: there we go! 
● Environments: PRE and PRO. 
● Enclosures with Virtual Connects 
o HP Blades, Proliant BL 660c 
o Intel Xeon E5-2660 
● Cloud Controller & Compute & Admin: 
o 256Gb RAM 
● Swift: 
o 64Gb RAM & 12 HDD 1,2Tb 
● Cinder & Glance: 
o NetApp NFS
3 - OpenStack: there we go! 
● Infrastructure deployment: Foreman + Puppet (Staypuft)
3 - OpenStack: there we go! 
● Infrastructure deployment: Foreman + Puppet
3 - OpenStack: technical details 
Router 
Inet B 
Router 
Inet A 
Internet 
OpenStack
Firewall 
Foreman 
Management OpenStack 
BBVA 
Internal Management 
NFS 
Storage 
Migration 
RHEV - NFS 
Nagios 
Internet 
Security 
stuff 
DMZ/Endpoint 
Log 
collector 
Firewall 
Route 
r 
Service subnet 
RHEV 
DNS/NTP
Firewall 
Foreman 
OpenStack components: 
Swift 
Management OpenStack 
BBVA 
Internal Management 
NFS 
Storage 
RHEV - NFS 
Nagios 
Internet 
Security 
stuff 
Swift 
DMZ/Endpoint 
Log 
collector 
Firewall 
Route 
r 
Service subnet 
RHEV 
● Cinder 
● Glance 
● Swift 
DNS/NTP 
Migration
Firewall 
Foreman 
Swift 
Management OpenStack 
BBVA 
Internal Management 
WAF 
NFS 
Storage 
RHEV - NFS 
Nagios 
Internet 
Security 
stuff 
Cloud 
Controller 
Endpoint API 
Swift 
DMZ/Endpoint 
Horizon 
Load 
Balancer 
Log 
collector 
Firewall 
Route 
r 
Load 
Balancer 
Service subnet 
OpenStack components: 
● Cinder 
● Glance 
● Swift 
● Horizon 
● Keystone 
● Cloud Controller 
DNS/NTP 
MySQL 
RabbitMQ 
RHEV 
Migration
Firewall 
Foreman 
Swift 
Management OpenStack 
BBVA 
Internal Management 
WAF 
NFS 
Storage 
RHEV - NFS 
Nagios 
Internet 
Security 
stuff 
Cloud 
Controller 
Endpoint API 
Swift 
DMZ/Endpoint 
Horizon 
Load 
Balancer 
Log 
collector 
Firewall 
Route 
r 
Load 
Balancer 
Service subnet 
RHEV 
Hey!… what 
about Neutron? 
OpenStack components: 
● Cinder 
● Glance 
● Swift 
● Horizon 
● Keystone 
● Cloud Controller 
● Nova 
● Neutron??? 
DNS/NTP 
Nova 
Compute + 
KVM + VRS 
MySQL 
RabbitMQ 
Migration
4SDN
4 - SDN: Motivation 
● Security Team needs to enforce security at all deployment 
stages automatically. 
● Programmability of network functions to automate 
deployments. 
● Growth capabilities between data centers. 
● It’s a good point to introduce SDN into the organization.
4 - SDN: Why Nuage? 
● Domain Templates. 
● Users roles. 
● Automation. 
● Consumable via REST API. 
● Openstack integration via neutron plugin. 
● dVRS (Distributed Routing and Switching). 
● Hypervisor agnostic solution.
4 - SDN: Openstack integration 
● Virtualized Services Platform (VSP): 
○ Virtualized Services Directory (VSD). 
○ Virtualized Services Controller (VSC). 
○ Virtual Routing and Switching (VRS). 
○ Virtualized Services Gateway (VSG). 
● Neutron plugin. 
● Basic vs. Advanced mode integration. 
● Floating-IPs. 
● Horizon customization.
4 - SDN: Openstack integration. 
Firewall 
VSG 
Internet 
Data 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
Transit network 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin
4 - SDN: Openstack integration (VSD). 
Firewall 
VSG 
Internet 
Data 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
REST API / WEB GUI 
... 
Neutron 
Plugin 
Transit network
4 - SDN: Openstack integration (VSD). 
Firewall 
VSG 
Internet 
Data 
XMPP 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
Transit network
4 - SDN: Openstack integration (VSC). 
Firewall 
VSG 
Internet 
Data 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
Open Flow 
Transit network
4 - SDN: Openstack integration (VSC). 
Firewall 
VSG 
Internet 
Data 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
MP-BGP 
Transit network
4 - SDN: Openstack integration (VRS). 
Firewall 
VSG 
Internet 
Data 
Transit network 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
VXLAN
4 - SDN: Openstack integration (VSG). 
Firewall 
VSG 
Internet 
Data 
Break out 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
VXLAN
4 - SDN: Openstack integration (Plugin) 
Firewall 
VSG 
Internet 
Data 
Cloud Controller Nova Compute 
DMZ 
VSC 
Management OpenStack 
Router 
VSD 
Load Balancer 
+ 
WAF 
VRS 
VRS 
Nova Compute 
... 
Neutron 
Plugin 
REST API 
Transit network
4 - SDN: Openstack integration (Custom)
4 - SDN: Openstack integration (Custom)
4 - SDN: Openstack integration (Custom)
4 - SDN: Openstack integration (Custom)
4 - SDN Security based on Nuage 
● ACL and policies applied on different network levels. 
● Service chaining.
5Lesson Learned 
& 
Next Steps
5 - Lessons learned. 
● Internal process to be adapted to consume the Openstack 
services. 
● Difficult to deploy with department silos, is better a “one-team” 
approach, multi disciplinar.
5 - Next steps 
● Icehouse > Juno or kilo 
● Dockers 
● Ceph 
● ...
5 - One Team, SecDevOps Crew ;) 
● Alberto Morgante Medina (Security) 
● Leticia García Martín (Security) 
● Mariano Ruiz Muñoz (Storage) 
● German Moya Olmedo (IT) 
● Vicente Miranda Cagigas (IT) 
● Alberto Martín (IT) 
● Helena Cornic Giron (Networking) 
● Cesar Martinez Segura (Networking) 
● Enrique Garcia Pablos (Innovation) 
● Karim Boumedhel (RedHat) 
● Oscar Martin Vega (Nuage Networks) 
● Francisco Alcantara Hernandez (Nuage Networks) 
● Phillipe Jeurissen (Nuage Networks)
Thank you!
Full presentation in youtube: 
http://www.youtube.com/watch?v=PESWFDPbexs 
Summary keynote: 
http://www.youtube.com/watch?v=Pp2TiOKjWLY

Más contenido relacionado

La actualidad más candente

OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...
OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...
OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...OpenNebula Project
 
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst IT
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst ITThings You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst IT
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst ITOpenStack
 
LlinuxKit security, Security Scanning and Notary
LlinuxKit security, Security Scanning and NotaryLlinuxKit security, Security Scanning and Notary
LlinuxKit security, Security Scanning and NotaryDocker, Inc.
 
DevOpsDays Taipei 2021 - How FinTech Embrace Change Management
DevOpsDays Taipei 2021 - How FinTech Embrace Change ManagementDevOpsDays Taipei 2021 - How FinTech Embrace Change Management
DevOpsDays Taipei 2021 - How FinTech Embrace Change Managementsmalltown
 
Netflix Cloud Platform and Open Source
Netflix Cloud Platform and Open SourceNetflix Cloud Platform and Open Source
Netflix Cloud Platform and Open Sourceaspyker
 
Cloud Solution Day 2016: Service Mesh for Kubernetes
Cloud Solution Day 2016: Service Mesh for KubernetesCloud Solution Day 2016: Service Mesh for Kubernetes
Cloud Solution Day 2016: Service Mesh for KubernetesAWS Vietnam Community
 
Sebastien goasguen cloud stack and docker
Sebastien goasguen   cloud stack and dockerSebastien goasguen   cloud stack and docker
Sebastien goasguen cloud stack and dockerShapeBlue
 
Openstack and Reddwarf Overview
Openstack and Reddwarf OverviewOpenstack and Reddwarf Overview
Openstack and Reddwarf OverviewCraig Vyvial
 
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...NETWAYS
 
Triangle Devops Meetup 10/2015
Triangle Devops Meetup 10/2015Triangle Devops Meetup 10/2015
Triangle Devops Meetup 10/2015aspyker
 
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...OpenNebula Project
 
Groovy there's a docker in my application pipeline
Groovy there's a docker in my application pipelineGroovy there's a docker in my application pipeline
Groovy there's a docker in my application pipelineKris Buytaert
 
KURMA - A Containerized Container Platform - KubeCon 2016
KURMA - A Containerized Container Platform - KubeCon 2016KURMA - A Containerized Container Platform - KubeCon 2016
KURMA - A Containerized Container Platform - KubeCon 2016Apcera
 
Continuous Packaging is also Mandatory for DevOps
Continuous Packaging is also Mandatory for DevOpsContinuous Packaging is also Mandatory for DevOps
Continuous Packaging is also Mandatory for DevOpsDocker, Inc.
 
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...Ambassador Labs
 
Rohit yadav cloud stack internals
Rohit yadav   cloud stack internalsRohit yadav   cloud stack internals
Rohit yadav cloud stack internalsShapeBlue
 
20140708 - Jeremy Edberg: How Netflix Delivers Software
20140708 - Jeremy Edberg: How Netflix Delivers Software20140708 - Jeremy Edberg: How Netflix Delivers Software
20140708 - Jeremy Edberg: How Netflix Delivers SoftwareDevOps Chicago
 
Living with microservices at Pipedrive
Living with microservices at PipedriveLiving with microservices at Pipedrive
Living with microservices at PipedriveRenno Reinurm
 
Netflix Open Source Meetup Season 3 Episode 2
Netflix Open Source Meetup Season 3 Episode 2Netflix Open Source Meetup Season 3 Episode 2
Netflix Open Source Meetup Season 3 Episode 2aspyker
 

La actualidad más candente (20)

OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...
OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...
OpenNebulaConf2019 - Crytek: A Video gaming Edge Implementation "on the shoul...
 
Promise of DevOps
Promise of DevOpsPromise of DevOps
Promise of DevOps
 
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst IT
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst ITThings You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst IT
Things You MUST Know Before Deploying OpenStack: Bruno Lago, Catalyst IT
 
LlinuxKit security, Security Scanning and Notary
LlinuxKit security, Security Scanning and NotaryLlinuxKit security, Security Scanning and Notary
LlinuxKit security, Security Scanning and Notary
 
DevOpsDays Taipei 2021 - How FinTech Embrace Change Management
DevOpsDays Taipei 2021 - How FinTech Embrace Change ManagementDevOpsDays Taipei 2021 - How FinTech Embrace Change Management
DevOpsDays Taipei 2021 - How FinTech Embrace Change Management
 
Netflix Cloud Platform and Open Source
Netflix Cloud Platform and Open SourceNetflix Cloud Platform and Open Source
Netflix Cloud Platform and Open Source
 
Cloud Solution Day 2016: Service Mesh for Kubernetes
Cloud Solution Day 2016: Service Mesh for KubernetesCloud Solution Day 2016: Service Mesh for Kubernetes
Cloud Solution Day 2016: Service Mesh for Kubernetes
 
Sebastien goasguen cloud stack and docker
Sebastien goasguen   cloud stack and dockerSebastien goasguen   cloud stack and docker
Sebastien goasguen cloud stack and docker
 
Openstack and Reddwarf Overview
Openstack and Reddwarf OverviewOpenstack and Reddwarf Overview
Openstack and Reddwarf Overview
 
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...
OSMC 2017 | Building a Monitoring solution for modern applications by Martin ...
 
Triangle Devops Meetup 10/2015
Triangle Devops Meetup 10/2015Triangle Devops Meetup 10/2015
Triangle Devops Meetup 10/2015
 
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...
OpenNebulaConf2017US: Welcome and project update by Ignacio M. Llorente and R...
 
Groovy there's a docker in my application pipeline
Groovy there's a docker in my application pipelineGroovy there's a docker in my application pipeline
Groovy there's a docker in my application pipeline
 
KURMA - A Containerized Container Platform - KubeCon 2016
KURMA - A Containerized Container Platform - KubeCon 2016KURMA - A Containerized Container Platform - KubeCon 2016
KURMA - A Containerized Container Platform - KubeCon 2016
 
Continuous Packaging is also Mandatory for DevOps
Continuous Packaging is also Mandatory for DevOpsContinuous Packaging is also Mandatory for DevOps
Continuous Packaging is also Mandatory for DevOps
 
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...
2017 Microservices Practitioner Virtual Summit: Microservices at Squarespace ...
 
Rohit yadav cloud stack internals
Rohit yadav   cloud stack internalsRohit yadav   cloud stack internals
Rohit yadav cloud stack internals
 
20140708 - Jeremy Edberg: How Netflix Delivers Software
20140708 - Jeremy Edberg: How Netflix Delivers Software20140708 - Jeremy Edberg: How Netflix Delivers Software
20140708 - Jeremy Edberg: How Netflix Delivers Software
 
Living with microservices at Pipedrive
Living with microservices at PipedriveLiving with microservices at Pipedrive
Living with microservices at Pipedrive
 
Netflix Open Source Meetup Season 3 Episode 2
Netflix Open Source Meetup Season 3 Episode 2Netflix Open Source Meetup Season 3 Episode 2
Netflix Open Source Meetup Season 3 Episode 2
 

Destacado

[El comercio]php zend framework (speech)
[El comercio]php zend framework (speech)[El comercio]php zend framework (speech)
[El comercio]php zend framework (speech)Ernesto Anaya
 
Automated conflict resolution - enabling masterless data distribution (Rune S...
Automated conflict resolution - enabling masterless data distribution (Rune S...Automated conflict resolution - enabling masterless data distribution (Rune S...
Automated conflict resolution - enabling masterless data distribution (Rune S...Swiss Big Data User Group
 
BBVA Arquitectura - Demo DevOps
BBVA Arquitectura - Demo DevOpsBBVA Arquitectura - Demo DevOps
BBVA Arquitectura - Demo DevOpsErnesto Anaya
 
BBVA - Thinking Ahead
 BBVA - Thinking Ahead BBVA - Thinking Ahead
BBVA - Thinking AheadBBVA
 
Consul: Microservice Enabling Microservices and Reactive Programming
Consul: Microservice Enabling Microservices and Reactive ProgrammingConsul: Microservice Enabling Microservices and Reactive Programming
Consul: Microservice Enabling Microservices and Reactive ProgrammingRick Hightower
 
BBVA Digital Banking
BBVA Digital BankingBBVA Digital Banking
BBVA Digital BankingBBVA
 
Service Discovery using etcd, Consul and Kubernetes
Service Discovery using etcd, Consul and KubernetesService Discovery using etcd, Consul and Kubernetes
Service Discovery using etcd, Consul and KubernetesSreenivas Makam
 
OpenStack Introduction
OpenStack IntroductionOpenStack Introduction
OpenStack Introductionopenstackindia
 
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...jaxLondonConference
 

Destacado (10)

Disruption trends
Disruption trendsDisruption trends
Disruption trends
 
[El comercio]php zend framework (speech)
[El comercio]php zend framework (speech)[El comercio]php zend framework (speech)
[El comercio]php zend framework (speech)
 
Automated conflict resolution - enabling masterless data distribution (Rune S...
Automated conflict resolution - enabling masterless data distribution (Rune S...Automated conflict resolution - enabling masterless data distribution (Rune S...
Automated conflict resolution - enabling masterless data distribution (Rune S...
 
BBVA Arquitectura - Demo DevOps
BBVA Arquitectura - Demo DevOpsBBVA Arquitectura - Demo DevOps
BBVA Arquitectura - Demo DevOps
 
BBVA - Thinking Ahead
 BBVA - Thinking Ahead BBVA - Thinking Ahead
BBVA - Thinking Ahead
 
Consul: Microservice Enabling Microservices and Reactive Programming
Consul: Microservice Enabling Microservices and Reactive ProgrammingConsul: Microservice Enabling Microservices and Reactive Programming
Consul: Microservice Enabling Microservices and Reactive Programming
 
BBVA Digital Banking
BBVA Digital BankingBBVA Digital Banking
BBVA Digital Banking
 
Service Discovery using etcd, Consul and Kubernetes
Service Discovery using etcd, Consul and KubernetesService Discovery using etcd, Consul and Kubernetes
Service Discovery using etcd, Consul and Kubernetes
 
OpenStack Introduction
OpenStack IntroductionOpenStack Introduction
OpenStack Introduction
 
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...
Conflict Free Replicated Data-types in Eventually Consistent Systems - Joel J...
 

Similar a Bbva bank on Open Stack

[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'OpenStack Korea Community
 
Cloud computing OpenStack_discussion_2014-05
Cloud computing OpenStack_discussion_2014-05Cloud computing OpenStack_discussion_2014-05
Cloud computing OpenStack_discussion_2014-05Le Cuong
 
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014VNG/IRD - Cloud computing & Openstack discussion 3/5/2014
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014Tran Nhan
 
Getting Safe Swiss Cloud up and running with CloudStack
Getting Safe Swiss Cloud up and running with CloudStackGetting Safe Swiss Cloud up and running with CloudStack
Getting Safe Swiss Cloud up and running with CloudStackProdosh Banerjee
 
VMworld 2013: Real-world Deployment Scenarios for VMware NSX
VMworld 2013: Real-world Deployment Scenarios for VMware NSX VMworld 2013: Real-world Deployment Scenarios for VMware NSX
VMworld 2013: Real-world Deployment Scenarios for VMware NSX VMworld
 
Red hat NFV Roadmap - OpenStack Summit 2016/Red Hat NFV Mini Summit
Red hat NFV Roadmap    - OpenStack Summit 2016/Red Hat NFV Mini SummitRed hat NFV Roadmap    - OpenStack Summit 2016/Red Hat NFV Mini Summit
Red hat NFV Roadmap - OpenStack Summit 2016/Red Hat NFV Mini Summitkimw001
 
Quantum - Virtual networks for Openstack
Quantum - Virtual networks for OpenstackQuantum - Virtual networks for Openstack
Quantum - Virtual networks for Openstacksalv_orlando
 
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVM
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVMSven Vogel: Running CloudStack and OpenShift with NetApp on KVM
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVMShapeBlue
 
The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittalbuildacloud
 
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...Pierre GRANDIN
 
Cloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify Community
 
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipOpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipPLUMgrid
 
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...Eduardo Patrocinio
 
VMware - Openstack e VMware: la strana coppia
VMware - Openstack e VMware: la strana coppia VMware - Openstack e VMware: la strana coppia
VMware - Openstack e VMware: la strana coppia VMUG IT
 
VIO30 Technical Overview
VIO30 Technical OverviewVIO30 Technical Overview
VIO30 Technical OverviewJulienne Pham
 
20141111_SOS3_Gallo
20141111_SOS3_Gallo20141111_SOS3_Gallo
20141111_SOS3_GalloAndrea Gallo
 
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networking
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack NetworkingONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networking
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networkingmarkmcclain
 
Directions for CloudStack Networking
Directions for CloudStack  NetworkingDirections for CloudStack  Networking
Directions for CloudStack NetworkingChiradeep Vittal
 

Similar a Bbva bank on Open Stack (20)

State of the OpenDaylight Union
State of the OpenDaylight UnionState of the OpenDaylight Union
State of the OpenDaylight Union
 
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
[OpenStack Day in Korea 2015] Track 2-3 - 오픈스택 클라우드에 최적화된 네트워크 가상화 '누아지(Nuage)'
 
Cloud computing OpenStack_discussion_2014-05
Cloud computing OpenStack_discussion_2014-05Cloud computing OpenStack_discussion_2014-05
Cloud computing OpenStack_discussion_2014-05
 
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014VNG/IRD - Cloud computing & Openstack discussion 3/5/2014
VNG/IRD - Cloud computing & Openstack discussion 3/5/2014
 
Getting Safe Swiss Cloud up and running with CloudStack
Getting Safe Swiss Cloud up and running with CloudStackGetting Safe Swiss Cloud up and running with CloudStack
Getting Safe Swiss Cloud up and running with CloudStack
 
VMworld 2013: Real-world Deployment Scenarios for VMware NSX
VMworld 2013: Real-world Deployment Scenarios for VMware NSX VMworld 2013: Real-world Deployment Scenarios for VMware NSX
VMworld 2013: Real-world Deployment Scenarios for VMware NSX
 
Red hat NFV Roadmap - OpenStack Summit 2016/Red Hat NFV Mini Summit
Red hat NFV Roadmap    - OpenStack Summit 2016/Red Hat NFV Mini SummitRed hat NFV Roadmap    - OpenStack Summit 2016/Red Hat NFV Mini Summit
Red hat NFV Roadmap - OpenStack Summit 2016/Red Hat NFV Mini Summit
 
OpenStack as an Infrastructure
OpenStack as an InfrastructureOpenStack as an Infrastructure
OpenStack as an Infrastructure
 
Quantum - Virtual networks for Openstack
Quantum - Virtual networks for OpenstackQuantum - Virtual networks for Openstack
Quantum - Virtual networks for Openstack
 
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVM
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVMSven Vogel: Running CloudStack and OpenShift with NetApp on KVM
Sven Vogel: Running CloudStack and OpenShift with NetApp on KVM
 
The Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep VittalThe Future of SDN in CloudStack by Chiradeep Vittal
The Future of SDN in CloudStack by Chiradeep Vittal
 
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...
Openstack Summit Tokyo 2015 - Building a private cloud to efficiently handle ...
 
Cloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinarCloudify 4.6 highlights webinar
Cloudify 4.6 highlights webinar
 
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate RelationshipOpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
OpenStack and Application Delivery: Joy and Pain of an Intricate Relationship
 
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
Lessons Learned during IBM SmartCloud Orchestrator Deployment at a Large Tel...
 
VMware - Openstack e VMware: la strana coppia
VMware - Openstack e VMware: la strana coppia VMware - Openstack e VMware: la strana coppia
VMware - Openstack e VMware: la strana coppia
 
VIO30 Technical Overview
VIO30 Technical OverviewVIO30 Technical Overview
VIO30 Technical Overview
 
20141111_SOS3_Gallo
20141111_SOS3_Gallo20141111_SOS3_Gallo
20141111_SOS3_Gallo
 
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networking
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack NetworkingONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networking
ONUG Tutorial: Bridges and Tunnels Drive Through OpenStack Networking
 
Directions for CloudStack Networking
Directions for CloudStack  NetworkingDirections for CloudStack  Networking
Directions for CloudStack Networking
 

Último

Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...
Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...
Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...DianaGray10
 
UiPath Platform: The Backend Engine Powering Your Automation - Session 1
UiPath Platform: The Backend Engine Powering Your Automation - Session 1UiPath Platform: The Backend Engine Powering Your Automation - Session 1
UiPath Platform: The Backend Engine Powering Your Automation - Session 1DianaGray10
 
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdfJamie (Taka) Wang
 
Machine Learning Model Validation (Aijun Zhang 2024).pdf
Machine Learning Model Validation (Aijun Zhang 2024).pdfMachine Learning Model Validation (Aijun Zhang 2024).pdf
Machine Learning Model Validation (Aijun Zhang 2024).pdfAijun Zhang
 
Spring24-Release Overview - Wellingtion User Group-1.pdf
Spring24-Release Overview - Wellingtion User Group-1.pdfSpring24-Release Overview - Wellingtion User Group-1.pdf
Spring24-Release Overview - Wellingtion User Group-1.pdfAnna Loughnan Colquhoun
 
Videogame localization & technology_ how to enhance the power of translation.pdf
Videogame localization & technology_ how to enhance the power of translation.pdfVideogame localization & technology_ how to enhance the power of translation.pdf
Videogame localization & technology_ how to enhance the power of translation.pdfinfogdgmi
 
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve Decarbonization
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve DecarbonizationUsing IESVE for Loads, Sizing and Heat Pump Modeling to Achieve Decarbonization
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve DecarbonizationIES VE
 
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...Will Schroeder
 
Empowering Africa's Next Generation: The AI Leadership Blueprint
Empowering Africa's Next Generation: The AI Leadership BlueprintEmpowering Africa's Next Generation: The AI Leadership Blueprint
Empowering Africa's Next Generation: The AI Leadership BlueprintMahmoud Rabie
 
Do we need a new standard for visualizing the invisible?
Do we need a new standard for visualizing the invisible?Do we need a new standard for visualizing the invisible?
Do we need a new standard for visualizing the invisible?SANGHEE SHIN
 
9 Steps For Building Winning Founding Team
9 Steps For Building Winning Founding Team9 Steps For Building Winning Founding Team
9 Steps For Building Winning Founding TeamAdam Moalla
 
Introduction to Quantum Computing
Introduction to Quantum ComputingIntroduction to Quantum Computing
Introduction to Quantum ComputingGDSC PJATK
 
Cybersecurity Workshop #1.pptx
Cybersecurity Workshop #1.pptxCybersecurity Workshop #1.pptx
Cybersecurity Workshop #1.pptxGDSC PJATK
 
UiPath Community: AI for UiPath Automation Developers
UiPath Community: AI for UiPath Automation DevelopersUiPath Community: AI for UiPath Automation Developers
UiPath Community: AI for UiPath Automation DevelopersUiPathCommunity
 
GenAI and AI GCC State of AI_Object Automation Inc
GenAI and AI GCC State of AI_Object Automation IncGenAI and AI GCC State of AI_Object Automation Inc
GenAI and AI GCC State of AI_Object Automation IncObject Automation
 
Cloud Revolution: Exploring the New Wave of Serverless Spatial Data
Cloud Revolution: Exploring the New Wave of Serverless Spatial DataCloud Revolution: Exploring the New Wave of Serverless Spatial Data
Cloud Revolution: Exploring the New Wave of Serverless Spatial DataSafe Software
 
UiPath Studio Web workshop series - Day 6
UiPath Studio Web workshop series - Day 6UiPath Studio Web workshop series - Day 6
UiPath Studio Web workshop series - Day 6DianaGray10
 
AI Fame Rush Review – Virtual Influencer Creation In Just Minutes
AI Fame Rush Review – Virtual Influencer Creation In Just MinutesAI Fame Rush Review – Virtual Influencer Creation In Just Minutes
AI Fame Rush Review – Virtual Influencer Creation In Just MinutesMd Hossain Ali
 
Nanopower In Semiconductor Industry.pdf
Nanopower  In Semiconductor Industry.pdfNanopower  In Semiconductor Industry.pdf
Nanopower In Semiconductor Industry.pdfPedro Manuel
 
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019IES VE
 

Último (20)

Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...
Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...
Connector Corner: Extending LLM automation use cases with UiPath GenAI connec...
 
UiPath Platform: The Backend Engine Powering Your Automation - Session 1
UiPath Platform: The Backend Engine Powering Your Automation - Session 1UiPath Platform: The Backend Engine Powering Your Automation - Session 1
UiPath Platform: The Backend Engine Powering Your Automation - Session 1
 
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf
20200723_insight_release_plan_v6.pdf20200723_insight_release_plan_v6.pdf
 
Machine Learning Model Validation (Aijun Zhang 2024).pdf
Machine Learning Model Validation (Aijun Zhang 2024).pdfMachine Learning Model Validation (Aijun Zhang 2024).pdf
Machine Learning Model Validation (Aijun Zhang 2024).pdf
 
Spring24-Release Overview - Wellingtion User Group-1.pdf
Spring24-Release Overview - Wellingtion User Group-1.pdfSpring24-Release Overview - Wellingtion User Group-1.pdf
Spring24-Release Overview - Wellingtion User Group-1.pdf
 
Videogame localization & technology_ how to enhance the power of translation.pdf
Videogame localization & technology_ how to enhance the power of translation.pdfVideogame localization & technology_ how to enhance the power of translation.pdf
Videogame localization & technology_ how to enhance the power of translation.pdf
 
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve Decarbonization
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve DecarbonizationUsing IESVE for Loads, Sizing and Heat Pump Modeling to Achieve Decarbonization
Using IESVE for Loads, Sizing and Heat Pump Modeling to Achieve Decarbonization
 
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...
Apres-Cyber - The Data Dilemma: Bridging Offensive Operations and Machine Lea...
 
Empowering Africa's Next Generation: The AI Leadership Blueprint
Empowering Africa's Next Generation: The AI Leadership BlueprintEmpowering Africa's Next Generation: The AI Leadership Blueprint
Empowering Africa's Next Generation: The AI Leadership Blueprint
 
Do we need a new standard for visualizing the invisible?
Do we need a new standard for visualizing the invisible?Do we need a new standard for visualizing the invisible?
Do we need a new standard for visualizing the invisible?
 
9 Steps For Building Winning Founding Team
9 Steps For Building Winning Founding Team9 Steps For Building Winning Founding Team
9 Steps For Building Winning Founding Team
 
Introduction to Quantum Computing
Introduction to Quantum ComputingIntroduction to Quantum Computing
Introduction to Quantum Computing
 
Cybersecurity Workshop #1.pptx
Cybersecurity Workshop #1.pptxCybersecurity Workshop #1.pptx
Cybersecurity Workshop #1.pptx
 
UiPath Community: AI for UiPath Automation Developers
UiPath Community: AI for UiPath Automation DevelopersUiPath Community: AI for UiPath Automation Developers
UiPath Community: AI for UiPath Automation Developers
 
GenAI and AI GCC State of AI_Object Automation Inc
GenAI and AI GCC State of AI_Object Automation IncGenAI and AI GCC State of AI_Object Automation Inc
GenAI and AI GCC State of AI_Object Automation Inc
 
Cloud Revolution: Exploring the New Wave of Serverless Spatial Data
Cloud Revolution: Exploring the New Wave of Serverless Spatial DataCloud Revolution: Exploring the New Wave of Serverless Spatial Data
Cloud Revolution: Exploring the New Wave of Serverless Spatial Data
 
UiPath Studio Web workshop series - Day 6
UiPath Studio Web workshop series - Day 6UiPath Studio Web workshop series - Day 6
UiPath Studio Web workshop series - Day 6
 
AI Fame Rush Review – Virtual Influencer Creation In Just Minutes
AI Fame Rush Review – Virtual Influencer Creation In Just MinutesAI Fame Rush Review – Virtual Influencer Creation In Just Minutes
AI Fame Rush Review – Virtual Influencer Creation In Just Minutes
 
Nanopower In Semiconductor Industry.pdf
Nanopower  In Semiconductor Industry.pdfNanopower  In Semiconductor Industry.pdf
Nanopower In Semiconductor Industry.pdf
 
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019
IESVE Software for Florida Code Compliance Using ASHRAE 90.1-2019
 

Bbva bank on Open Stack

  • 1. BBVA Bank on OpenStack OpenStack Summit Paris, November 2014 Jose Maria San José, Jose Luis Lucas, Daniel Chavero,
  • 4. Vision Why hasn’t a bank 1B customers? Because we can’t
  • 6. Vision: Let’s go Cloud! ● Cloud sets up self provisioning infrastructure ● Hybrid Cloud allows unlimited elasticity (no constraints) ● Active-Active Hybrid Cloud boosts resilience ● Hybrid data model (sensitive aware) ensures privacy ● Programmable automation simplifies management
  • 7. BBVA BBVA It's a Cloud World BBVA Datacenter BBVA DMZ ES MX US physical constraints Z Long term transfer Amazon Google Manage-ment & Support no constraints business model constraints
  • 8. New lifecycle SecDevOps Cooperation Deployment Package Tested Deployment Package Evolved Deployment Package Development Testing Production Maintenance Cloud Catalog (Virtual Machines, SW packages, SW Developments)
  • 9. Strategic Roadmap Private Cloud Cultural engagement. Assure sustainability of IT DevOps Adoption Improve speed of development and deployment without flaws. Hybrid Cloud Internet-scale infrastructure. High Value Applications Web-scale applications on top of Liberty and Hydra. Cloud Consolidation Migrate internal process and applications to internal cloud.
  • 11. 3 - OpenStack: the beginnings. ● Our goals. ● Previous experience in public clouds. ● Why OpenStack? ● Why RedHat? ● How are we planning to use it?
  • 12. 3 - OpenStack: there we go! ● Environments: PRE and PRO. ● Enclosures with Virtual Connects o HP Blades, Proliant BL 660c o Intel Xeon E5-2660 ● Cloud Controller & Compute & Admin: o 256Gb RAM ● Swift: o 64Gb RAM & 12 HDD 1,2Tb ● Cinder & Glance: o NetApp NFS
  • 13. 3 - OpenStack: there we go! ● Infrastructure deployment: Foreman + Puppet (Staypuft)
  • 14. 3 - OpenStack: there we go! ● Infrastructure deployment: Foreman + Puppet
  • 15. 3 - OpenStack: technical details Router Inet B Router Inet A Internet OpenStack
  • 16. Firewall Foreman Management OpenStack BBVA Internal Management NFS Storage Migration RHEV - NFS Nagios Internet Security stuff DMZ/Endpoint Log collector Firewall Route r Service subnet RHEV DNS/NTP
  • 17. Firewall Foreman OpenStack components: Swift Management OpenStack BBVA Internal Management NFS Storage RHEV - NFS Nagios Internet Security stuff Swift DMZ/Endpoint Log collector Firewall Route r Service subnet RHEV ● Cinder ● Glance ● Swift DNS/NTP Migration
  • 18. Firewall Foreman Swift Management OpenStack BBVA Internal Management WAF NFS Storage RHEV - NFS Nagios Internet Security stuff Cloud Controller Endpoint API Swift DMZ/Endpoint Horizon Load Balancer Log collector Firewall Route r Load Balancer Service subnet OpenStack components: ● Cinder ● Glance ● Swift ● Horizon ● Keystone ● Cloud Controller DNS/NTP MySQL RabbitMQ RHEV Migration
  • 19. Firewall Foreman Swift Management OpenStack BBVA Internal Management WAF NFS Storage RHEV - NFS Nagios Internet Security stuff Cloud Controller Endpoint API Swift DMZ/Endpoint Horizon Load Balancer Log collector Firewall Route r Load Balancer Service subnet RHEV Hey!… what about Neutron? OpenStack components: ● Cinder ● Glance ● Swift ● Horizon ● Keystone ● Cloud Controller ● Nova ● Neutron??? DNS/NTP Nova Compute + KVM + VRS MySQL RabbitMQ Migration
  • 20. 4SDN
  • 21. 4 - SDN: Motivation ● Security Team needs to enforce security at all deployment stages automatically. ● Programmability of network functions to automate deployments. ● Growth capabilities between data centers. ● It’s a good point to introduce SDN into the organization.
  • 22. 4 - SDN: Why Nuage? ● Domain Templates. ● Users roles. ● Automation. ● Consumable via REST API. ● Openstack integration via neutron plugin. ● dVRS (Distributed Routing and Switching). ● Hypervisor agnostic solution.
  • 23. 4 - SDN: Openstack integration ● Virtualized Services Platform (VSP): ○ Virtualized Services Directory (VSD). ○ Virtualized Services Controller (VSC). ○ Virtual Routing and Switching (VRS). ○ Virtualized Services Gateway (VSG). ● Neutron plugin. ● Basic vs. Advanced mode integration. ● Floating-IPs. ● Horizon customization.
  • 24. 4 - SDN: Openstack integration. Firewall VSG Internet Data Cloud Controller Nova Compute DMZ VSC Management OpenStack Router Transit network VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin
  • 25. 4 - SDN: Openstack integration (VSD). Firewall VSG Internet Data Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute REST API / WEB GUI ... Neutron Plugin Transit network
  • 26. 4 - SDN: Openstack integration (VSD). Firewall VSG Internet Data XMPP Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin Transit network
  • 27. 4 - SDN: Openstack integration (VSC). Firewall VSG Internet Data Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin Open Flow Transit network
  • 28. 4 - SDN: Openstack integration (VSC). Firewall VSG Internet Data Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin MP-BGP Transit network
  • 29. 4 - SDN: Openstack integration (VRS). Firewall VSG Internet Data Transit network Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin VXLAN
  • 30. 4 - SDN: Openstack integration (VSG). Firewall VSG Internet Data Break out Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin VXLAN
  • 31. 4 - SDN: Openstack integration (Plugin) Firewall VSG Internet Data Cloud Controller Nova Compute DMZ VSC Management OpenStack Router VSD Load Balancer + WAF VRS VRS Nova Compute ... Neutron Plugin REST API Transit network
  • 32. 4 - SDN: Openstack integration (Custom)
  • 33. 4 - SDN: Openstack integration (Custom)
  • 34. 4 - SDN: Openstack integration (Custom)
  • 35. 4 - SDN: Openstack integration (Custom)
  • 36. 4 - SDN Security based on Nuage ● ACL and policies applied on different network levels. ● Service chaining.
  • 37. 5Lesson Learned & Next Steps
  • 38. 5 - Lessons learned. ● Internal process to be adapted to consume the Openstack services. ● Difficult to deploy with department silos, is better a “one-team” approach, multi disciplinar.
  • 39. 5 - Next steps ● Icehouse > Juno or kilo ● Dockers ● Ceph ● ...
  • 40. 5 - One Team, SecDevOps Crew ;) ● Alberto Morgante Medina (Security) ● Leticia García Martín (Security) ● Mariano Ruiz Muñoz (Storage) ● German Moya Olmedo (IT) ● Vicente Miranda Cagigas (IT) ● Alberto Martín (IT) ● Helena Cornic Giron (Networking) ● Cesar Martinez Segura (Networking) ● Enrique Garcia Pablos (Innovation) ● Karim Boumedhel (RedHat) ● Oscar Martin Vega (Nuage Networks) ● Francisco Alcantara Hernandez (Nuage Networks) ● Phillipe Jeurissen (Nuage Networks)
  • 42. Full presentation in youtube: http://www.youtube.com/watch?v=PESWFDPbexs Summary keynote: http://www.youtube.com/watch?v=Pp2TiOKjWLY

Notas del editor

  1. .