japan softlayer summit 2015 資料「softlayer基礎 詳細ネットワーク編」

70
Copyright © 2014 Nippon Information and Communication Corporation SoftLayer ネットワークサービス基礎編 本SoftLayerユーザ会 本情報通信株式会社

Upload: hideaki-tokida

Post on 16-Jul-2015

217 views

Category:

Technology


0 download

TRANSCRIPT

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayer

    SoftLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    201412SoftLayer4

    Twitter: @tokidaFacebook : hideaki.tokida

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayer11

    14 201412

    POP19

    POP(tok02)

    Networking Architecture

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

    Hong Kong ShingaporeSydneySan Jone

    Equinix (10GNTT(10G) Telstra (10G)

    SoftLayerPOPDataCenter(

  • Copyright 2014 Nippon Information and Communication Corporation

    12:30 Ping : 70-90 ms traceroute to 119.81.131.xx (119.81.131.xx), 64 hops max, 52 byte packets

    1 10.4.176.2 (10.4.176.2) 178.735 ms 92.541 ms 85.954 ms 2 172.26.0.62 (172.26.0.62) 143.677 ms * 33.010 ms 3 * 172.26.0.126 (172.26.0.126) 91.419 ms 41.744 ms 4 * 103.5.142.62 (103.5.142.62) 56.994 ms 86.072 ms 5 210.130.135.13 (210.130.135.13) 87.032 ms 22.763 ms * 6 tky008bf00.iij.net (58.138.82.65) 21.476 ms tky009bf00.iij.net (58.138.82.73) 66.177 ms tky008bf00.iij.net (58.138.82.65) 53.425 ms 7 * tky001ip59.iij.net (58.138.82.102) 32.663 ms * 8 202.232.8.146 (202.232.8.146) 45.079 ms 19.690 ms 19.007 ms 9 xe-1-0-2-0.gw2.nrt4.asianetcom.net (202.147.0.235) 21.625 ms 35.214 ms 21.397 ms 10 s-0027.asianetcom.net (203.192.131.250) 49.586 ms 22.650 ms 23.416 ms 11 ae0.bbr01.pn01.hkg01.networklayer.com (50.97.18.167) 66.452 ms 68.885 ms 66.839 ms 12 ae5.dar01.hkg02.networklayer.com (50.97.19.29) 74.326 ms 69.508 ms 67.651 ms 13 po1.fcr01.hkg02.networklayer.com (119.81.138.131) 69.410 ms * po3.fcr01.hkg02.networklayer.com (119.81.138.139) 72.708 ms 14 119.81.135.86-staJc.reverse.networklayer.com (119.81.135.86) 71.267 ms 74.359 ms 66.761 ms 15 119.81.131.3-staJc.reverse.soLlayer.com (119.81.131.xx) 76.559 ms 70.778 ms 70.309 ms

    SoLLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    Priavte Network SoftLayerSoftLayer1

    Networking Architecture

    DC#3 DC#nDC#1 DC#2

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

    3

    Networking Architecture

  • Copyright 2014 Nippon Information and Communication Corporation

    Internet 1 InternetTransitNetwork PoP

    Load BalancerFirewall

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayerStorageOS Update Repository

    VPNNetwork PoP

  • Copyright 2014 Nippon Information and Communication Corporation

    IP SoftLayerIP 10.x.x.x

    2

    IP-SECNAT

  • Copyright 2014 Nippon Information and Communication Corporation

    IP

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

    2 2

    Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    Servers

    Servers Servers Servers Servers Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    Servers

    28bit (8

    26bit (64

    Servers Servers Servers Servers Servers

    1 Subnet

    Subnet

  • Copyright 2014 Nippon Information and Communication Corporation

    Subnet Subnet Subnet

    10.x.x.x/26 SubnetVLAN

    26bit (64 28bit (8

  • Copyright 2014 Nippon Information and Communication Corporation

    SubnetIP

    Subnet

    Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers

    Subnet

  • Copyright 2014 Nippon Information and Communication Corporation

    Subnet SoftLayer

    Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    Subnet VLAN VLAN

    ServersServersServersServersServersServers ServersServersServersServersServersServers ServersServersServersServersServersServers ServersServersServersServersServersServers

    VLAN#1

    VLAN#2 VLAN#4

    VLAN#3

    VLAN$25

  • Copyright 2014 Nippon Information and Communication Corporation

    VLANVLANVLANON

    ServersServersServersServersServersServers ServersServersServersServersServersServers ServersServersServersServersServersServers ServersServersServersServersServersServers

    VLAN#1

    VLAN#2 VLAN#4

    VLAN#3

  • Copyright 2014 Nippon Information and Communication Corporation

    VLAN VLAN

    VLAN

    VLAN VLAN VLANVLAN

    VLANSubnet

  • Copyright 2014 Nippon Information and Communication Corporation

    MutlicastDNS

    L2 IPSubnet

    Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    Servers

    Servers Servers Servers Servers Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    3

    Servers

    Servers Servers Servers Servers Servers

    DMZ

    Local Load Balancer

    Router

    Firewall

    Router

  • Copyright 2014 Nippon Information and Communication Corporation

    Gateway ApplianceVLAN

    (A)

    Local Load Balancer

    Router

    Firewall

    Router

    Network Gateway Appliance Servers Servers Servers Servers Servers

    (B)

  • Copyright 2014 Nippon Information and Communication Corporation

    Public NetworkPrivate Network Interface

    ManagementNetworkPrivate Network

    IP

    eth0

    eth1

    eth0

    eth1

    Bond0:

    Public Network

    Private NetworkManagement Network

    eth2

    eth3

    Bond1:

    eth4

    ManagementOS

    Virtual Servers Baremetal Servers

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayer 3

  • Copyright 2014 Nippon Information and Communication Corporation

    SSL-VPN

    1Gbps8h

    SoftLayer

    SSL-VPNVPNManagement NetworkPrivate NetworkSSLVPNArrayVPNWeb

    SSL-VPNL2TP

  • Copyright 2014 Nippon Information and Communication Corporation

    IP-Sec VPN

    SoftLayer IPNAT NATTicket

    Gateway

    NAT Gateway

  • Copyright 2014 Nippon Information and Communication Corporation

    DirectLink POPEquinix)NTT-Uno, KDDI-

    WAVS, SoftBank-Ultina) Direct LinkPOPSoftLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    /

    SSL VPN

    PC/

    DC/POPPPTP VPN

    IPSec VPN

    DC/VPN/

    DC

    DC/VPNVPNInternet

    DCInternet

    SoftLayerPoPDC/

    PoP

    Internet

    SoftLayer WAN

    DC VLAN

    VLAN

    VyaXa gateway appliance

    DC

    Internet

    SSL VPNPPTP VPNIPSec VPN

    IPSec VPN Vya-a PoP

    PoP

    PoP

    PoPDC

    DC

  • Copyright 2014 Nippon Information and Communication Corporation

    Networking Architecture

    Internet

    VPN

  • Copyright 2014 Nippon Information and Communication Corporation

    Internet VPNIP-Sec

    1

    5TB/ 20TB/

    $25 $25/

    Networking Architecture

  • Copyright 2014 Nippon Information and Communication Corporation

    Networking Architecture

    Internet

    VPN

    $0.10/GB

  • Copyright 2014 Nippon Information and Communication Corporation

    SOFTLAYER SERVICES

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayer 3

    IaaS

    Managed

    AWSMarketplacesCong

    OEMSoftLayerIaaS

    SoftLayerAs a Service

  • Copyright 2014 Nippon Information and Communication Corporation

    Network

    IaaS

    Managed

    DNS

    Domain

    Direct Link

    VPN(SSL-VPN)

    VPN(IP-SEC)

    SSL

    Local Load Balancer

    Hardware Firewall

    Vyatta Gateway

    Fortigate Security

    Ctrix NetScaler

    Nessus

    CDN

    API

  • Copyright 2014 Nippon Information and Communication Corporation

    SoftLayer

    SoftLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    DNS IPDNS IP

    SoftLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    com, org ,net,info,biz, us

    10

  • Copyright 2014 Nippon Information and Communication Corporation

    SSL SSLCLI

  • Copyright 2014 Nippon Information and Communication Corporation

    Local Load Balancer (Managed)

    SSL

  • Copyright 2014 Nippon Information and Communication Corporation

    Ctrix Netscaler VPX (Global Load Balancer) L7Load Balancer VPXMPX Public/PrivateInterface

  • Copyright 2014 Nippon Information and Communication Corporation

    Hardware Firewall

    Firewall TCP/UDP

    VLANDedicated VLANFirewall FirewallHardware Firewall DedicatedFortiGate Security Appliance

  • Copyright 2014 Nippon Information and Communication Corporation

    Vyatta Appliance Gateway VLAN VyattaFirewall,VPN,

    Vyatta OSSVyOSSoftLayer

  • Copyright 2014 Nippon Information and Communication Corporation

    CDN CDN

    SoftLayerEdgeCast

    2413

    ObjectStorageHTTPCDN

  • Copyright 2014 Nippon Information and Communication Corporation

    Bandwith Pool

    1

    Region

  • Copyright 2014 Nippon Information and Communication Corporation

    Global IP Global IP(29bit)whois

    RIR Registration

  • Copyright 2014 Nippon Information and Communication Corporation

    Network Tools

    Ping Traceroute NSLookup Whois Check DNS

    GlobalDNS

  • Copyright 2014 Nippon Information and Communication Corporation

    NETWORK API

  • Copyright 2014 Nippon Information and Communication Corporation

    API API Code

    SoftLayerAPI SoftLayer Command Line Interface API

  • Copyright 2014 Nippon Information and Communication Corporation

    CLI(API Hardware Firewall Firewall

    FirewallCLI

  • Copyright 2014 Nippon Information and Communication Corporation

    sl

    subnetsl$ sl subnet list -- help

  • Copyright 2014 Nippon Information and Communication Corporation

    vlan list

    vlan detail id

    id vlan

  • Copyright 2014 Nippon Information and Communication Corporation

    subnet list

    Subnet lookup ip_address

    ip_address Subnet create Network Quantity Vlan_ip

    vlanSubnet detail subnet_id

    subnet_id cancel subnet_id

    subnet_id

  • Copyright 2014 Nippon Information and Communication Corporation

    rwhois show

    IPwhois edit [OPTIONS]

  • Copyright 2014 Nippon Information and Communication Corporation

    rewall add [OPTIONS] TARGET

    Firewall cancel id

    IdFirewall list

    Firewall edit id

    idFirewall($EDITOR) detail id

    id

  • Copyright 2014 Nippon Information and Communication Corporation

    dns zone-list

    Zone zone-print zone_id

    ZoneBIND zone-delete zone_id

    Zone zone-create zone_name

    Zone record-list zone_id

    Zone record-remove record_id

    record-edit [OPTIONS] zone_id

    [OPTIONS]Zone record-add [OPTIONS] zone_id RECORD TYPE DATA

    Zone Import [OPTIONS] zonele

    BINDZoneImport[--dry-run]

  • Copyright 2014 Nippon Information and Communication Corporation

    globalip assign Assigns the global IP to a target. cancel Cancel global IP. create Creates a global IP. list List all global Ips. unassign Unassigns a global IP from a target.

  • Copyright 2014 Nippon Information and Communication Corporation

    Loadbal cancel Cancel an existing load balancer. create Adds a load balancer given the id returned create-options Reset connections on a certain service group. detail Get Load balancer details. group-add Adds a new load_balancer service. group-delete Deletes an existing load balancer service group-edit Edit an existing load balancer service group. group-reset Reset connections on a certain service group. health-checks List health check types. list List active load balancers. routing-methods List routing types. routing-types List routing types. service-add Adds a new load balancer service. service-delete Deletes an existing load balancer service. service-edit Edit the properties of a service group. service-toggle Toggle the status of an existing load...

  • Copyright 2014 Nippon Information and Communication Corporation

    Cdn detail Detail a CDN Account. list List all CDN accounts. load Cache one or more les on all edge nodes. origin-add Create an origin pull mapping. origin-list List origin pull mappings. origin-remove Remove an origin pull mapping. purge Purge cached les from all edge nodes.

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

  • Copyright 2014 Nippon Information and Communication Corporation

    Speed and Change SoftLayer

    [email protected]

  • Copyright 2014 Nippon Information and Communication Corporation

    Local Load Balancer

    VPN Router Router Network Switch

    Storage

    Firewall

    Internet

    Internet MPLS

    iSCSI

    Virtual Servers

    Baremetal Servers

    Mass Storage Servers / QuantaStor

    Image Template

    Network Gateway Appliance

    CDN

    Object Storage

    Database

    Client

    Monitoring

    Mobille

    E-Mail

    API Server

    Chat Phone IPS

    Netscaler VPX