Cisco Blogs


Cisco Blog > Data Center

CCIE : ITD and RISE in CCIE Data Center

ITD and RISE are now part of CCIE Data Center:

https://learningnetwork.cisco.com/community/certifications/ccie_data_center/written-exam-v2/exam-topics

Intelligent Traffic Director (ITD) is a hardware based multi-terabit layer 4 load-balancing, traffic steering and services insertion solution on the Nexus 5k/6k/7k/9k series of switches.

Domain Written Exam (%) Lab Exam (%)  
1.0 Cisco Data Center L2/L3 Technologies 24% 27% Show Details
2.0 Cisco Data Center Network Services 12% 13% Hide Details
2.1 Design, Implement and Troubleshoot Service Insertion and Redirection

  • 2.1.a Design, Implement and Troubleshoot Service Insertion and Redirection for example LB, vPATH, ITD, RISE

2.2 Design, Implement and Troubleshoot network services

  • 2.2.a Design, Implement and Troubleshoot network services for example policy drivenL4-L7 services
3.0 Data Center Storage Networking and Compute 23% 26% Show Details
4.0 Data Center Automation and Orchestration 13% 14% Show Details
5.0 Data Center Fabric Infrastructure 18% 14% Show Details
6.0 Evolving Technologies 10% N/A Show Details

 

To learn about RISE (Remote Integrated Services Engine), please see: http://www.cisco.com/go/rise

To learn about ITD (Intelligent Traffic Director), please see: http://www.cisco.com/go/itd

http://blogs.cisco.com/datacenter/itd-load-balancing-traffic-steering-clustering-using-nexus-5k6k7k9k

 

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,

Server Load balancing with NAT, using Nexus switches: ITD

Server load balancer (SLB) has become very common in network deployments, as the data & video traffic are expanding at rapid rate. There are various modes of SLB deployments today. Application load balancing with network address translation (NAT) has become a necessity for various benefits.

Cisco Intelligent Traffic Director (ITD) is a hardware based multi-terabit layer 4 load-balancing and traffic steering solution on the Nexus 5k/6k/7k/9k series of switches.

With our latest NX-OS Software 7.2(1)D1(1) (also known as Gibraltar MR), ITD supports SLB NAT on Nexus 7k series of switches.

In SLB-NAT deployment, client can send traffic to a virtual IP address, and need not know about the IP of the underlying servers. NAT provides additional security in hiding the real server IP from the outside world. In the case of Virtualized server environments, this NAT capability provides increased flexibility in moving the real servers across the different server pools with out being noticed by the their clients. With respect health monitoring and traffic reassignment, SLB NAT helps applications to work seamlessly without client being aware of any IP change.

ITD won the Best of Interop 2015 in Data Center Category.

BOI15_Data_Center_728x90

ITD provides :

  1. Zero latency load-balancing.
  2. CAPEX savings : No service module or external L3/L4 load-balancer needed. Every Nexus port can be used as load-balancer.
  3. IP-stickiness
  4. Resilient (like resilient ECMP), Consistent hash
  5. Bi-directional flow-coherency. Traffic from A–>B and B–>A goes to same node.
  6. Monitoring the health of servers/appliances.
  7. Handles unlimited number of flows.

Documentation, slides, videos:

Email Query or feedback:ask-itd@external.cisco.com

Connect on twitter: @samar4

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,

ITD: Load Balancing, Traffic Steering & Clustering using Nexus 5k/6k/7k/9k

Cisco Intelligent Traffic Director (ITD) is an innovative solution to bridge the performance gap between a multi-terabit switch and gigabit servers and appliances. It is a hardware based multi-terabit layer 4 load-balancing, traffic steering and clustering solution on the Nexus 5k/6k/7k/9k series of switches.

It allows customers to deploy servers and appliances from any vendor with no network or topology changes. With a few simple configuration steps on a Cisco Nexus switch, customers can create an appliance or server cluster and deploy multiple devices to scale service capacity with ease. The servers or appliances do not have to be directly connected to the Cisco Nexus switch.

ITD won the Best of Interop 2015 in Data Center Category.

With our patent pending innovative algorithms, ITD (Intelligent Traffic Director) supports IP-stickiness, resiliency, consistent hash, exclude access-list, NAT (EFT), VIP, health monitoring, sophisticated failure handling policies, N+M redundancy, IPv4, IPv6, VRF, weighted load-balancing, bi-directional flow-coherency, and IPSLA probes including DNS. There is no service module or external appliance needed. ITD provides order of magnitude CAPEX and OPEX savings for the customers. ITD is much superior than legacy solutions like PBR, WCCP, ECMP, port-channel, layer-4 load-balancer appliances.

ITD provides :

  1. Hardware based multi-terabit/s L3/L4 load-balancing at wire-speed.
  2. Zero latency load-balancing.
  3. CAPEX savings : No service module or external L3/L4 load-balancer needed. Every Nexus port can be used as load-balancer.
  4. Redirect line-rate traffic to any devices, for example web cache engines, Web Accelerator Engines (WAE), video-caches, etc.
  5. Capability to create clusters of devices, for example, Firewalls, Intrusion Prevention System (IPS), or Web Application Firewall (WAF), Hadoop cluster
  6. IP-stickiness
  7. Resilient (like resilient ECMP), Consistent hash
  8. VIP based L4 load-balancing
  9. NAT (available for EFT/PoC). Allows non-DSR deployments.
  10. Weighted load-balancing
  11. Load-balances to large number of devices/servers
  12. ACL along with redirection and load balancing simultaneously.
  13. Bi-directional flow-coherency. Traffic from A–>B and B–>A goes to same node.
  14. Order of magnitude OPEX savings : reduction in configuration, and ease of deployment
  15. Order of magnitude CAPEX savings : Wiring, Power, Rackspace and Cost savings
  16. The servers/appliances don’t have to be directly connected to Nexus switch
  17. Monitoring the health of servers/appliances.
  18. N + M redundancy.
  19. Automatic failure handling of servers/appliances.
  20. VRF support, vPC support, VDC support
  21. Supported on all linecards of Nexus 9k/7k/6k/5k series.
  22. Supports both IPv4 and IPv6
  23. Cisco Prime DCNM Support
  24. exclude access-list
  25. No certification, integration, or qualification needed between the devices and the Cisco NX-OS switch.
  26. The feature does not add any load to the supervisor CPU.
  27. ITD uses orders of magnitude less hardware TCAM resources than WCCP.
  28. Handles unlimited number of flows.

For example,

  • Load-balance traffic to 256 servers of 10Gbps each.
  • Load-balance to cluster of Firewalls. ITD is much superior than PBR.
  • Scale IPS, IDS and WAF by load-balancing to standalone devices.
  • Scale the NFV solution by load-balancing to low cost VM/container based NFV.
  • Scale the WAAS / WAE solution.
  • Scale the VDS-TC (video-caching) solution.
  • Scale the Layer-7 load-balancer, by distributing traffic to L7 LBs.
  • ECMP/Port-channel cause re-hashing of flows. ITD is resilient, and doesn’t cause re-hashing on node add/delete/failure.

Documentation, slides, videos:

Email Query or feedback:ask-itd@external.cisco.com

Please note that ITD is not a replacement for Layer-7 load-balancer (URL, cookies, SSL, etc). Please email: ask-itd@external.cisco.com for further questions.

Connect on twitter: @samar4

Tags: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,

RISE: Remote Integrated Service Engine Demo @ Cisco Live Milan

The Cisco® Remote Integrated Services Engine (RISE) allows both physical and virtual external service appliances to be attached to the Cisco Nexus® 7000 Series Switches and gain the same benefits as if the appliances were directly connected to the switch backplane like a dedicated service module. Cisco RISE provides a bidirectional control plane for tightly coupling network services to data center switching. Cisco RISE establishes a communication path between the network data plane and the service appliance, simplifying deployment and optimizing data paths with better traffic visibility in the data center. RISE is supported Cisco Prime NAM, Citrix NetScaler 1000v, Citrix NetScaler VPX, Citrix NetScaler MPX, Citrix NetScaler SDX etc.

Interested in knowing more about Cisco® RISE . The engineering team will showcase demos of some of the innovative features being designed for the Nexus 2K to 7K platforms. These are 15-30min Software Demos performed by our technical leaders. Please stop by our booth or visit the Nexus Data Center Whisper suites to watch the live demo and get some free goodies. Email questions to: rise-info@cisco.com

Tags: , , , , , , , , , , ,

How does RISE benefit Cisco Prime NAM?

As you may have seen in Gary Kinghorn’s blog, Cisco Prime Network Analysis Module (NAM) has been integrated with Cisco Nexus® 7000 Series Switches using Cisco® Remote Integrated Services Engine (RISE) technology providing a powerful story for data center integration. RISE with Prime NAM provides high performance monitoring and packet analysis on multiple virtual device contexts along with switch interface statistics for all modules.

Cisco RISE can be used to tightly integrate the Cisco Nexus 7000 series switches with the Cisco Prime NAM to provide VDC awareness and SPAN traffic across multiple VDCs without burning slots on the switch. RISE overcomes the limitation of applying SPAN configuration only in the VDC to which the management cable is attached by intelligently managing the movement of NAM data ports and SPAN configuration to other VDCs as needed. The integration includes the following main features:

  • NAM appliance acts as a module on Nexus switches
  • One NAM appliance can receive traffic from multiple Nexus VDCs without re-cabling
  • One NAM appliance can collect interface statistics for multiple VDCs
  • Dynamic vdc-aware SPAN configuration on Nexus switches using NAM GUI
  • Up to 4 NAM ports can be automatically assigned to Nexus VDCs using NAM GUI
  • Graph of per-interface ingress and egress statistics for multiple VDCs
  • Auto-discovery and bootstrap of NAM appliance from Nexus switch
  • Health monitoring of NAM appliance
  • Visibility to multiple VDCs from one NAM appliance with ongoing VDC configuration updates
  • Configurable timer intervals and VDC list for interface statistics collection
  • User-friendly error handling for SPAN creation/deletion/modification
  • Order of magnitude OPEX and CAPEX savings: reduction in configuration, simplified provisioning and data-path optimization

 

Screen Shot 2014-09-22 at 11.10.49 PM

Figure 1. RISE Physical and logical topology

 

Deployment Modes

Cisco RISE supports attachment to the NAM appliance in the following modes:

  • Direct Attach mode with single NAM: The appliance has a management link that is directly attached to the Nexus switch. Up to 4 data links on the NAM can be attached to one or more VDCs on the Nexus switch to send SPAN traffic (Figure 2).

Screen Shot 2014-09-22 at 2.38.48 PM

Figure 2. Direct Attach Mode with single NAM

Direct Attach modes with multiple NAMs: The appliance has a management link that is directly attached to the Nexus switch. Up to 4 data links on each NAM can be attached to one or more VDCs on the Nexus switch to send SPAN traffic (Figure 3).

Screen Shot 2014-09-22 at 12.51.35 PM

Figure 3: Direct Attach mode with multiple NAMs

Indirect Attach modes with multiple NAMs: The appliance has a management link that is attached via an L2 network to the Nexus switch. Up to 4 data links on each NAM can be attached to one or more VDCs on the Nexus switch to send SPAN traffic (Figure 4).

 

Screen Shot 2014-10-27 at 9.38.15 AM

Core Features

Cisco RISE with NAM provides the following key features that allow the solution to provide traffic and performance analysis across all the VDCs on the Nexus switch without changing the wiring connections.

 Dynamic VDC-aware SPAN Configuration

  • Configure SPAN sessions for up to 4 NAM dataports from NAM GUI.
  • Create, edit, delete SPAN sessions, select destination ports and source ports for the SPAN sessions.
  • SPAN sessions can be configured in other VDCs by selecting VDC and data ports from NAM GUI. Dataport will be automatically moved to required VDC.
  • The options of SPAN configuration available to N7K CLI users are available via NAM GUI using RISE.
  • Provides visibility to all VDCs from one NAM.

 Multi-VDC Interface Statistics

  • Retrieve interface statistics of all VDCs on N7K via RISE
  • Set short term and long term polling intervals for getting interface statistics
  • Set the interested list of VDCs from which statistics needs to be retrieved
  • Statistics can be viewed on per interface basis as a graph or data points

Main Benefits

  • Enhanced application availability via simplified provisioning and efficient manageability.
  • Data path optimization: ADC off-load, low latency policy engine.
  • Dynamic VDC-aware SPAN configuration: Create SPAN sessions on any VDC
  • Multi-VDC awareness: Deliver traffic and performance reports in multiple VDCs
  • Cisco RISE provides significant savings in capital expenditures (CapEx) and operating expenses (OpEx) through simplified provisioning and data-plane optimizations:
  • Dramatic OpEx savings: Reduction in configuration time and ease of deployment
  • Dramatic CapEx savings: Reduced wiring, power, and rack-space needs
  • The solution provides enhanced business resiliency and stickiness to Cisco products.

Ordering Information

Cisco RISE is supported in Cisco NX-OS Software Release 7.1(0) and requires the Enhanced Layer 2 Package license. Please contact nxos-rise@cisco.com if you are interest in an EFT.

 References

http://cisco.com/go/rise

http://blogs.cisco.com/datacenter/rise

http://blogs.cisco.com/datacenter/rise-nam

RISE with Prime NAM White Paper

 

Tags: ,