Sunteți pe pagina 1din 82

Enhancing Application Performance

Performance Routing (PfR)


Jean-Marc Barozet (jmb@cisco.com)
Sumanth Kakaraparthi (sukakara@cisco.com) Network Operating Systems Technology Group
The Cisco TechAdvantage Webinars January 9, 2013

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

Register for a Technical Seminar with our Cisco Software SMEs: http://www.ciscolive.com/london/registration-packages/
Session Title Session Number

Advanced LISP Techtorial Advanced Network Automation

TECIPM-3191 TECNMS-3601

Application Awareness in the Network; the Route to Application Visibility and Control TECRST-2672 Converged Access: Wired/Wireless System Architecture, Design and Operations Enterprise QoS Design Strategy IP Mobility Deep Dive IPv6 for Dummies: An Introduction to IPv6 IPv6 Security Scaling the IP NGN with Unified MPLS Software Defined Networking and Use Cases Understanding and Deploying IP Multicast Networks
2012 Cisco and/or its affiliates. All rights reserved.

TECCRS-2678 TECRST-2501 TECSPG-3668 TECMPL-2192 TECRST-2680 TECNMS-3601 TECSPG-2667 TECIMP-1008


Cisco Confidential 2

Speakers

Panelists

Sumanth Kakaraparthi Product Manager sukakara@cisco.com

Jean-Marc Barozet Technical Leader jbarozet@cisco.com

Shabaz Yousaf Technical Marketing Engineer syousaf@cisco.com

Scott Van de Houten Distinguished Architect svandeho@cisco.com

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

Submit questions in Q&A panel and send to All Panelists Avoid CHAT window for better access to panelists For WebEx audio, select COMMUNICATE > Join Audio Broadcast For WebEx call back, click ALLOW phone button at the bottom of participants side panel Where can I get the presentation? Or send email to: ask_techadvantage@cisco.com Please complete the post-event survey Join us February 13th for our next TechAdvantage Webinar:
Unleash the Power of Your Network with One Platform Kit (onePK)

www.cisco.com/go/techadvantage
2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4

Positioning
Key Customer Challenges PfR Benefits

Performance Routing 101 Use cases:


Internet Edge Enterprise WAN

Reporting Tools NetFlow export, SNMP Conclusion

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

Drastic Change in Application Consumption, Delivery, Type

2012 Cisco and/or its affiliates. All rights reserved.

How Application Are Consumed

Cisco Confidential

Drastic Change in Application Consumption, Delivery, Type

2012 Cisco and/or its affiliates. All rights reserved.

How Applications Are Delivered

Cisco Confidential

Drastic Change in Application Consumption, Delivery, Type

2012 Cisco and/or its affiliates. All rights reserved.

Type of Applications

Cisco Confidential

Key FindingsCisco Global Cloud Networking Survey, April 2012* Expectation

50%
Percent of CIO s who say the majority of their apps will be in the Cloud by 2015

37%
Consider Cloud ready WAN to be the Most Critical Infrastructure for Cloud 28% : Virtualized DC 21% - SP SLA

* 1300+ Global IT professionals across 13 countries www.cisco.com/go/cloudsurvey


2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10

Key FindingsCisco Global Cloud Networking Survey, April 2012* Expectation Reality: Top Network Challenges vs.

50%
Percent of CIO s who say the majority of their apps will be in the Cloud by 2015

37%
Consider Cloud ready WAN to be the Most Critical Infrastructure for Cloud 28% : Virtualized DC 21% - SP SLA

60%
Cited Performance as a Key Challenge for Cloud

66%
Cited Security and Policy as a Key Challenge for Cloud

60%
Cited Management as a Key Challenge for Cloud

* 1300+ Global IT professionals across 13 countries www.cisco.com/go/cloudsurvey


2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11

Data Centers Public SaaS

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

12

Data Centers Public SaaS

I dont know, if I am getting my SLA I dont know, the applications running in my network I dont know, how to isolate performance problems I dont know, how much non-business traffic is consuming

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

13

Data Centers Public SaaS

I dont know, if I am getting my SLA I dont know, the applications running in my network I dont know, how to isolate performance problems I dont know, how much non-business traffic is consuming

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

14

Data Centers Public SaaS

I dont know, if I am getting my SLA I dont know, the applications running in my network I dont know, how to isolate performance problems I dont know, how much non-business traffic is consuming

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

I cant do, anything about poor and inconsistent performance I cant do, anything about my Network outages I cant do, anything about under utilization of my Expensive WAN links I cant do, anything about unreliability for my WAN links

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

15

Data Centers Public SaaS

I dont know, if I am getting my SLA I dont know, the applications running in my network I dont know, how to isolate performance problems I dont know, how much non-business traffic is consuming

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

I cant do, anything about poor and inconsistent performance I cant do, anything about my Network outages I cant do, anything about under utilization of my Expensive WAN links I cant do, anything about unreliability for my WAN links

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

16

Data Centers Public SaaS

I dont know, if I am getting my SLA I dont know, the applications running in my network I dont know, how to isolate performance problems I dont know, how much non-business traffic is consuming

WAN

Internet

Branch with no direct Internet access

Branch with direct Internet access

I cant do, anything about poor and inconsistent performance I cant do, anything about my Network outages I cant do, anything about under utilization of my Expensive WAN links I cant do, anything about unreliability for my WAN links

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

17

Visibility

Control

Report

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

18

Save 40% operational cost by smart load balancing Increase WAN reliability with out increase in $ cost Avoid service outages

Improve application performance

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

19

SP-A

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

20

SP-A
Network Outage Network Outage

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

21

Pfr enabled

SP-A
Network Outage Network Outage

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

22

Voice and Video Bussiness Critical Rest of traffic

Expensive SP-A

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

23

Voice and Video Bussiness Critical Rest of traffic

Pfr enabled

Expensive SP-A

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

24

Voice and Video Business Critical Rest of traffic

SP-A

BR

SP-B

BR

MC/BR

MC

BR

HQ

SP-C
BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

25

Voice and Video Business Critical Rest of traffic

Pfr enabled

SP-A

BR

SP-B

BR

MC/BR

MC

BR

HQ

SP-C
BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

26

Voice and Video Business Critical Rest of traffic

Pfr enabled

SP-A

BR

SP-B

BR

MC/BR

MC

BR

HQ

SP-C
BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

27

Voice and Video Business Critical Rest of traffic

Pfr enabled

SP-A

Ready for Business Critical

BR

SP-B

BR

Ready for Voice MC/BR and Video


MC

BR

HQ

SP-C
BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

28

SP-A

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

29

SP-A
Service outage Service Outage

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

30

Pfr enabled

SP-A
Service outage Service Outage

BR

BR

SP-B
MC

MC/BR

BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

31

Detect loss > 10%

Internet

Internet Access with Multiple ISPs Optimization policies based on Prefixes

Cloud Service

Egress and Ingress Optimization


Best Effort traffic

ISP-1 (Primary)

ISP-2 (Secondary)

Cloud Service & Load Balancing Policy

Maximize all ISP bandwidth by load sharing other

Internet traffic
Protect business Cloud applications from network

brownout
Loss > 10%

Cloud Service preferred path ISP1

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

32

Detect loss > 10%

Internet

Internet Access with Multiple ISPs Optimization policies based on Prefixes


Cloud Service

Egress and Ingress Optimization

Best Effort traffic


ISP-1 (Primary) ISP-2 (Secondary)

Cloud Service & Load Balancing Policy

Protect business Cloud applications from network

brownout
Loss > 10%

Cloud Service preferred path ISP1 Maximize all ISP bandwidth by load sharing other

Internet traffic

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

33

Detect high jitter

WAN

Enterprise WAN Optimization policies based on Applications Egress Optimization only

Critical Apps Voice - Video

Best Effort traffic


SP-A (MPLS VPN) SP-B (DMVPN)

Multimedia & Critical Data Policy

Protect voice and video quality


Latency > 200ms; Jitter > 30ms

Protect Critical applications from brownouts


Loss > 5%

Voice & Video preferred path SP-A Critical Apps preferred path SP-A Maximize utilization by load sharing

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

34

Detect high jitter

WAN

Enterprise WAN Optimization policies based on Applications


Voice - Video

Critical Apps

Egress Optimization only

Best Effort traffic


SP-A (MPLS VPN) SP-B (DMVPN)

Multimedia & Critical Data Policy

Protect voice and video quality


Latency > 200ms; Jitter > 30ms

Protect Critical applications from brownouts


Loss > 5%

Voice & Video preferred path SP-A Critical Apps preferred path SP-A Maximize utilization by load sharing

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

35

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

36

The Decision Maker: Master Controller (MC)


Apply policy, verification, reporting No packet forwarding/ inspection required
MC

The Forwarding Path: Border Router (BR)


Learn, measure, enforcement
BR BR

Optimize by:
Reachability, Delay, Loss, Jitter, MOS, Throughput, Load, and/or $Cost
WAN1 WAN2

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

37

Internet Edge
ISP2

Enterprise WAN
WAN1
(IP-VPN)
MC/BR

Branch

ISP1

BR MC

BR

MC/BR

BR

MC

BR

(IPVPN, DMVPN)

WAN2

BR

MC/BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

38

HQ

Multisite MC Peering Framework MC to MC Peering Framework can be used to

MC

exchange policies, services and feedback


Automatic discovery of branch routers

BR

BR

Remote Site Discovery


Simplifies Configuration prefix and target discovery Probing Efficiency sharing of probe data across policies Enhance PfR remote site bandwidth discovery
WAN1 (IP-VPN) WAN2 (IPVPN, DMVPN)

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

39

HQ

Site HQ

Each MC announces its site name, inside

MC

prefixes, probe target address and remote bandwidth


BR

Publish Prefix H1, H2, H3 Responder H

BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Site BR1 Publish Prefix A Responder 1

MC/

Site BR2 Publish Prefix B Responder 2

MC/

MC/ BR BR Site 3
Publish Prefix C, D, E Responder 3, 4

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

40

HQ

MC

Prefixes Prefix A Prefix B Prefix C, D, E

Responders Responder1 Responder2 Responder3, 4

Sites Site 1 Site 2 Site 3

BR

BR

Mapping table built on each site Allows automatic jitter probe configuration Allows automatic probe generation
MC/BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

41

Learning

Get the Traffic Classes in the MC database Get the Traffic Classes Performance Metrics Check Delay, loss, threshold, Bandwidth and more Use a good performing path per Traffic Class

Monitoring (Passive Active)

Choosing Your Policies

Enforcing the Path

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

42

HQ

PfR determines the traffic classes from the

Traffic Classes

MC

traffic flowing through the border routers Subsets of the total traffic must be identified, and these traffic subsets are named traffic classes
Dest. IP DSCP Delay 0 Loss

Voice, Video, Critical


BW

BR

BR

The Rest of the Traffic

Jitter

Global or

10.2.2.0/24

WAN1 (IP-VPN)
Jitter BW

WAN2 (IPVPN, DMVPN)

Dest. IP 10.2.2.0/24

DSCP EF

AppID

Delay 0

Loss

Application Groups

MC/BR
Dest. IP 10.2.2.0/24 DSCP AF31 AppID Delay 0 Loss Jitter BW

MC/BR

MC/BR

BR

10.1.1.0/24 10.1.2.0/24
2012 Cisco and/or its affiliates. All rights reserved.

10.2.1.0/24 10.2.9.0/24
Cisco Confidential

43

HQ

Voice - Video

Traffic Classes

MC

Traffic Classes Definition


Prefixes Prefixes + DSCP Applications
EXAMPLE Critical Apps DSCP AF31 Mask 24 11 TCs Mask 16 2 TCs WAN1 (IP-VPN) WAN2 (IPVPN, DMVPN)

Critical Application Rest of the Traffic


Voice, Video, Critical
BR BR

The Rest of the Traffic

Check Prefixes and application/DSCP per branch


This will give an idea of the number of Traffic Classes Tune Aggregation Mask as needed

MC/BR

MC/BR

MC/BR

BR

10.10.1.0/24 10.10.2.0/24

2012 Cisco and/or its affiliates. All rights reserved.

10.20.1.0/24 10.20.9.0/24
Cisco Confidential

44

HQ

Traffic Classes
Destination Prefix DSCP App Id Delay Loss Ingress BW Egress BW BR Exit

MC

NetFlow Cache
Traffic Classes

BR

BR

NetFlow Cache

MC commands BRs to learn Traffic Classes

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

45

HQ

MC
Destination Prefix 10.1.1.1/32 20.2.1.0/24 30.1.1.0/24 DSCP EF AF31 0 App Id Delay Loss Ingress BW Egress BW BR BR1 BR2 BR1 Exit E0/0 E0/0 E0/0

NetFlow Cache

BR

BR

NetFlow Cache

Traffic Classes

BRs use their NetFlow cache


Top Talkers based on throughput

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

BRs aggregate based on the configured destination mask Send the reports to the MC every minute

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

46

HQ

Traffic Classes

MC

Passive
Reachability Egress BW PfR Netflow Monitoring Flows Need not be symmetrical Delay Loss Ingress BW

Passive Performance Metrics

NetFlow Cache

BR

BR

NetFlow Cache

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Learning Monitoring (Passive Active) Choosing Your Policies Enforcing the Path
MC/BR MC/BR MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

47

HQ

Destination Prefix 10.1.1.1/32 10.1.10.0/24

DSCP 0 AF11 0

App Id

Delay

Loss

Ingress BW

Egress BW

MC
BR BR1 BR1 BR2 Exit Gi1/1 Gi1/2 Gi1/1

BR

BR

Traffic Classes
BR BR1 BR2 Links Gig1/1 Gig1/2 Ingress Egress

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

PfR uses NetFlow to collect and aggregate passive monitoring statistics on a per traffic class basis. MC Instructs BRs to monitor the performance

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

48

HQ

Destination Prefix 10.1.1.1/32 10.1.10.0/24

DSCP 0 AF11 0

App Id

Delay 60 110 89 BR BR1 BR2

Loss 0 0 1

Ingress BW 20 52 34 Links Gig1/1 Gig1/2

Egress BW 40 60 10 Ingress 200 130

MC
BR BR1 BR1 BR2 Egress 40 60 Exit Gi1/1 Gi1/2 Gi1/1

Traffic Classes

NetFlow Cache

BR

BR

NetFlow Cache

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Border routers collect and report passive monitoring statistics to the master controller approximately once per minute. BRs gather performance measurements using Netflow BRs report Performance Metrics for Traffic Classes to the Master Controller
2012 Cisco and/or its affiliates. All rights reserved.

MC/BR

MC/BR

MC/BR

BR

Cisco Confidential

49

HQ

Active
Reachability Jitter PfR enables IP SLA feature Probes sourced from BR ICMP probes learned or configured TCP, UDP, JITTER need ip sla responder Delay Loss MOS

Traffic Classes Active Performance Metrics

MC

BR

BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Learning Monitoring (Passive - Active) Choosing Your Policies Enforcing the Path
MC/BR MC/BR MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

50

HQ

Fast
Active probes on all path all the time Passive to measure BW only

Traffic Classes Active Performance Metrics

MC

BR

BR

Active Throughput
Passive to measure BW only Active probing on current exit
MC/BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

MC/BR

MC/BR

BR

Fast Mode is used when fast failover is needed


2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 51

HQ

MC
Destination Prefix 10.1.1.1/32 10.1.10.0/24 App Id Ingress BW Egress BW

DSCP EF AF31 0

Delay

Jitter

Loss

BR BR1 BR1 BR2

Exit Gi1/1 Gi1/2 Gi1/1

BR

BR

Traffic Classes

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Active monitoring involves creating a stream of synthetic traffic (IP SLA probes) that replicates a traffic class as closely as possible. MC Instructs BRs to send probes and monitor the performance
MC/BR MC/BR MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

52

HQ

MC
Destination Prefix 10.1.1.1/32 10.1.10.0/24 App Id Ingress BW 20 52 34 Egress BW 40 60 10

DSCP EF AF31 0

Delay 60 110 89

Jitter 10 15 26

Loss 0 0 1

BR BR1 BR1 BR2

Exit Gi1/1 Gi1/2 Gi1/1

BR

BR

Traffic Classes

BRs gather performance measurements using IP SLA probes The performance metrics of the synthetic traffic are collected BRs report Performance Metrics for Traffic Classes to the MC
MC/BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

MC/BR

MC/BR

BR

The MC applies results to the traffic class entry in the Master Controller database

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

53

HQ

Traffic Classes

MC

Link
Load balancing Max utilization Link grouping $Cost

Application Performance
Reachability Delay Loss MOS Jitter
WAN1 (IP-VPN) WAN2 (IPVPN, DMVPN)

Voice, Video, Critical

BR

BR

The Rest of the Traffic

Learning Monitoring (Passive Active) Choosing Your Policies Enforcing the Path
MC/BR MC/BR MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

54

HQ

1. Link-Group Voice - Video 2. Loss 3. Jitter 4. Delay 1. Link-Group Critical Application 2. Loss 4. Delay Rest of the Traffic Load-Balancing
MC/BR

MC

Voice, Video, Critical

BR

BR

The Rest of the Traffic

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Multiple resolvers can be assigned Set of Policies per Application Group Resolver Priority
2012 Cisco and/or its affiliates. All rights reserved.

MC/BR

MC/BR

BR

Cisco Confidential

55

HQ

Destination Prefix
BGP
- Egress: route injection or Modifying the BGP Local Preference attribute - Ingress: BGP AS-PATH Prepend or AS Community

Application
Dynamic PBR NBAR/CCE

MC

Voice, Video, Critical

BR

BR

The Rest of the Traffic

EIGRP Route Control Static Route Injection PIRO

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Learning Monitoring (Passive Active) Choosing Your Policies Enforcing the Path
2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 56

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

57

Internet Edge
Branch

ISP1

ISP2

WAN1
(IP-VPN)
BR MC BR BR

MC/BR

MC/BR

MC

BR

(IPVPN, DMVPN)

WAN2

BR

MC/BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

58

Problem Statement
Ingress/Egress path are under/over utilized Maximize bandwidth utilization (uplinks with different BW
ISP A

Internet
ISP B

Manual Solution
Consider The Traffic Patterns of the Enterprise.
Does the Enterprise Host Content? 1000 Mbps 20 Mbps

Not Sure?
Graph Interface Byte Count Use NetFlow Even better, use Flexible NetFlow

Egress

Does the Enterprise Access Content?

R1

R2

In General, sites have a 80:20 traffic volume (in

bytes) mix. Fix only the 80% Direction.

20% direction doesnt matter unless links are widely varying speeds.
2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 59

Ingress

Tool/Attribute
Longest Match Local Preference AS_Path Communities

Direction of Traffic Flow Affected


Inbound and Outbound Outbound Inbound Inbound

Implementation
Static or Redistribution / Received Direction Applied: Inbound Direction Applied: Outbound Direction Applied: Outbound

Direction Applied, works together with Route Maps

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

60

HQ

PfR used to load balance the traffic


Distributes traffic based upon Link Utilization (Load) Links can have different bandwidths New default policies based on load-balancing

R3

iBGP
R4 R5

Cisco ASR1k is typical BR/MC with BR

terminating Internet connections


BGP routing
BRs must be iBGP peers Default routing or Partial routes or Full routes

eBGP

eBGP

ISP1 ISP4

ISP3

ISP2

PfR can actively manage up to 20k Prefixes concurrently (with

ISP5 ISP6

ASR1000)
12.4T/15.0.1M IOS-XE 3.3.0
2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

61

HQ

R3

Learning Monitoring

Dest Prefixes (NetFlow) Passive Global


Egress BW Utilization eBGP
R4

iBGP
R5

55% 45%

eBGP

Policies Path Enforcement

Load-Balancing (range) BGP


Inject BGP Route BGP Local Pref

ISP1 ISP4

ISP3

ISP2

ISP5 ISP6

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

62

HQ

R3

Learning Monitoring

Inside Prefixes (BGP) Passive Global


Ingress BW Utilization eBGP
R4

iBGP
R5

20% 17%

eBGP

Policies Path Enforcement

Load-Balancing (range) BGP


BGP AS-PATH Prepend BGP Community

ISP1 ISP4

ISP3

ISP2

ISP5 ISP6

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

63

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

64

ISP1

ISP2

Enterprise WAN
WAN1
(IP-VPN)
MC/BR

Branch

BR MC

BR

MC/BR

BR

MC

BR

(IPVPN, DMVPN)

WAN2

BR

MC/BR

HQ

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

65

HQ

Voice - Video

Problem Statement:
Recent carrier routing problem cause a network outage (Blackout).

Critical Application Rest of the Trac


Voice, Video, Critical

MC

Fluctuating performance over the WAN is causing intermittent application problems (Brownout) Secondary/Backup WAN path under utilized

BR

BR

The Rest of the Traffic

Solution: PfR Application based optimization


Protect Voice and Video traffic:
primary path, check delay, loss, jitter fallback secondary

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

Protect Business Applications:


primary path, check loss, utilization fallback secondary

Best effort Applications Maximize bandwidth utilization:


load balanced across SPs or use the secondary path

MC/BR

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

66

HQ

Traffic Classes

MC

Learning
Voice - Video
Voice, Video, Critical
BR BR

Classes of Applications

The Rest of the Traffic

Critical Application Rest of the Traffic


WAN1 (IP-VPN) WAN2 (IPVPN, DMVPN)

Prefixes Prefixes + DSCP Applications


MC/BR MC/BR MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

67

HQ

Traffic Classes

MC

Monitoring

Fast Voice/Video Active Critical Apps Passive Rest


NetFlow BR BR NetFlow

Probes

Probes

Destination DSCP Prefix 10.1.1.1/32 10.1.10.0/24 Destination Prefix 10.1.1.1/32 10.1.10.0/24 EF AF31 EF DSCP 0 AF11 0

App Id

Delay 60 110 89

Jitter 10 20 35

Loss 0 0 1

Ingress BW 20 52 34

Egress BW 40 60 10 Egress BW 40 60 10

BR BR1 BR1 BR2 BR BR1 BR1 BR2

Exit Gi1/1 Gi1/2 Gi1/1 Exit Gi1/1 Gi1/2 Gi1/1 MC/BR

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

App Id

Delay 60 110 89

Loss 0 0 1

Ingress BW 20 52 34

MC/BR

MC/BR

BR

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

68

HQ

MC

Policies
1. Link-Group
Voice, Video, Critical
BR BR

The Rest of the Traffic

Voice - Video

2. Loss 3. Jitter 4. Delay 1. Link-Group


WAN1 (IP-VPN) WAN2 (IPVPN, DMVPN)

Critical Application

2. Loss 4. Delay
MC/BR MC/BR MC/BR

BR

Rest of the Trac

Load-Balancing

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

69

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

70

HQ

Standard based PfR NetFlow v9 Export


The PfR NetFlow v9 Exporter resides on the PfR Master Controller Exports Passive Metrics, Active Metrics, Events, Configuration
BR

NetFlow
MC

SNMP Read
BR

PfR SNMP MIB


TC as a row of cpfrTrafficClassTable TC Status as a row of cpfrTrafficClassStatusTable performance metrics as a row of cpfrTrafficClassMetricsTable Traps

WAN1 (IP-VPN)

WAN2 (IPVPN, DMVPN)

NMS application vendors engaged! Cisco Prime Assurance engaged!


2012 Cisco and/or its affiliates. All rights reserved.

MC/BR

MC/BR

MC/BR

BR

Cisco Confidential

71

To Support Technologies Such as MPLS or Multicast, This Export Format Can Be Leveraged to Easily Insert New Fields

Flows from Interface A

Flows from Interface B

Template FlowSet #0
(Version, # Packets, Sequence #, Source ID) Template Record Template ID #254 (Specific Field Types and Lengths) Template Record Template ID #257 (Specific Field Types and Lengths)

Data FlowSet
FlowSet ID #256 Data Record Data Record

Data FlowSet
FlowSet ID #257 Data Record

Option Template FlowSet #1 Template ID 258 (Specific Field Types and Lengths)

Option Data FlowSet


FlowSet ID

Option Data Record

Option Data Record

(Field Values)

(Field Values)

(Field Values)

(Field Values) (Field Values)

Matching ID numbers are the way to associate template to the data records The header follows the same format as prior NetFlow versions so collectors will be backward compatible Each data record represents one flow If exported flows have different fields, they cannot be contained in the same template record (i.e., BGP next hop

cannot be combined with MPLS-aware, NetFlow records)

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

72

Traffic Analysis

Denial of Service

Billing

More info: http://www.cisco.com/warp/public/732/Tech/nmp/netflow/partners/commercial/


2012 Cisco and/or its affiliates. All rights reserved. 73

MC

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

74

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

75

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

76

Cisco 3900 Cisco 2900 Cisco 1900 Cisco 1800 12.4, 12.4T, 15M/T Cisco 2800 12.4, 12.4T 15M/T Cisco 3900 Cisco 3800 12.4, 12.4T Cisco 3800 15M/T 12.4, 12.4T 15M/T

Cisco ASR 1000 BR in IOS-XE 2.6.1 MC in IOS-XE 3.3.0

Cisco 6500
12.2(33)SXH (Deprecated)

Cisco 7200-NPE-G2 12.2(33)SRB 12.4, 12.4T (Limited Support) 15M/T

Cisco 7600

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

77

77

New Cisco ISR G2 Simplified Feature Sets


New ISR-G2 1900, 2900, 3900 A single IOS Universal Image for all ISR Generation 2

Classic Cisco IOS Software Feature Sets


Existing ISR 1800, 2800, 3800, 7200

ISR Platforms

PfR is within the DATA package.


PfR

ASR 1000 Series


ASR1001: Use Universal Image (U or UK9) with Advanced IP Services (AIS) or Advanced Enterprise

Services (AES) technology package license All other ASR1000 (ASR1002-F, ASR1002, ASR1004, ASR1006, ASR1013): Use Advanced IP Services (AIS/AISK9) or Advanced Enterprise Services (AES/AESK9) images
2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 78

78

Docwiki Performance Routing Home Technology Overview, Solution Guides, Troubleshooting Guides, FAQ
http://docwiki.cisco.com/wiki/PfR:Home

Performance Routing Technology Overview


http://docwiki.cisco.com/wiki/PfR:Technology_Overview

Performance Routing Solution Guides


http://docwiki.cisco.com/wiki/PfR:Solutions

Performance Routing Troubleshooting Guide


http://docwiki.cisco.com/wiki/PfR:Troubleshooting

Configuration Understanding Performance Routing


http://www.cisco.com/en/US/docs/ios/pfr/configuration/guide/pfr-understand.html

Basic Configuration
http://www.cisco.com/en/US/docs/ios/pfr/configuration/guide/pfr-basic.html

Advanced Configuration
http://www.cisco.com/en/US/docs/ios/pfr/configuration/guide/pfr-advanced.html
2012 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 79

2h Session: Deploying PfR Breakout BRKRST-2362

4h Lab: Deploying and Operating PfR LTRRST-2006 9h Techtorial: Application Visibility and Control TECRST-2672

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

80

Thank you! Please complete the post-event survey Join us February 13th for our next webinar: Unleash the Power of Your Network with One Platform Kit (onePK) Register: www.cisco.com/go/techadvantage Follow us @GetYourBuildOn

2012 Cisco and/or its affiliates. All rights reserved.

Cisco Confidential

81

Thank you.

S-ar putea să vă placă și