SlideShare a Scribd company logo
KHNOG Micro Event – PHNOM PENH MAY2016
Skeeve Stevens & Try Chhay
ElasticISP
NFV in Action
eintellegonetworks
. a s i a
ElasticISP KHNOG MAY 2016
• NFV
• ElasticISP – The (Original) Concept
• ElasticISP – The Reality
• Elastic Architecture
• Q&A
Agenda
ELASTICISP
ElasticISP KHNOG MAY 2016
• Network Function Virtualisation
• https://en.wikipedia.org/wiki/Network_function_virtualization
• The NFV framework consists of three main components
1. Virtualized network functions (VNFs) are software implementations
of network functions that can be deployed on NFVI
1. Network function virtualizationinfrastructure
2. Network functions virtualizationmanagement and orchestration
architectural framework
NFV
ELASTICISP
ElasticISP KHNOG MAY 2016
ELASTICISP
The Business
ElasticISP KHNOG MAY 2016
• We had a lot of hardware in the AU office
• We have many people who want to start ISP
• Talk to 10 per month, Proposal to 3, build maybe 1
• Capex intensive
• Start small ISP cost is around $35k PS and $50k-$100k for hardware
• 50% of small ISP fail because they are not good at business
• No skills to run ISP network
Why ElasticISP?
ELASTICISP
ElasticISP KHNOG MAY 2016
• Cloud – Direct Access (AWS, Azure, Google Compute, OrionVM, Vmware)
• Core ISP Infrastructure (LNS, CGN, Routing, Peering, etc)
• IP Transit – Backup paths, OnDemand capacity
• Tails - xDSL, Fibre/NBN, MetroE, International Circuits - anything Layer 2
• Voice - SIPTrunks, Hosted Voice; Full Enterprise PABXs
• DDoS Protection-aaS
• VPN, Proxy, Security
What can we do?
ELASTICISP
ElasticISP KHNOG MAY 2016
• Make it easy for Cheap to start ~$15k (less CapEx, move to OpEx)
• Fast to start ~0.5 – 2 days
• Minimal risk of loss
• No Expertise for Network infrastructure
• Professional ISP Engineers doing management and liaise with providers
• Legal relationshipremains with ISP (not EIN)
• Grow to beyond 1000 customers – can move to physical or hybrid options
• EIN can use excess hardware (7200/MX80/switching)
• Use Cloud for off-loadafter exceeding hardware capacity
ElasticISP – The (Original) Concept
ELASTICISP
ElasticISP KHNOG MAY 2016
• Orchestrationis easy (Ansible)
• Cloud is awesome (once we found layer 2 cloud provider)
• Do not actually need any hardware except Switching - We are using
• Open Networking Switching (Cumulus + Dell for 10/40Gb)
• Juniper MX80 / Cisco 7200 (all to be retired?)
• Scales to massive numbers – millionusers? Capacity?
• Can be used for outsourced corporate network core
ElasticISP – The Reality
ELASTICISP
ElasticISP KHNOG MAY 2016
ELASTICISP
The Architecture
ElasticISP KHNOG MAY 2016
• APNIC Membership+ ASN and IPAddress Resources
• If not, eintellegowill consult/helpto get them
• Transit provider + Peering (IX)
• Wholesale Tail/carrier provider (i.e. CFOCN, Telecom, Wicam, SI, etc..)
• Own your billingsystem/authenticationservice (we can help find)
• $$$
• Support skills (EIN does not do Level 1 support!)
ElasticISP – Pre-Requisites
ELASTICISP
ElasticISP KHNOG MAY 2016
• BGP Edge Router: Transit and Peering
• Core Routing/Switching (IGP)
• LNS/LAC: Terminate PPPoE sessions
• CGN (if needed)
• Firewall - Security if needed
• Authentication server – Radius (AAA server)
• Anything else of your choosing (Proxy/Cache, Physical hardware, etc)
ElasticISP – ISP Equipment
ELASTICISP
ElasticISP KHNOG MAY 2016
Physical Topology
ELASTICISP
Transit
CORE-SW
LNS FW
IX Peering
CPE
Auth Server
Carrier
• Example of small/medium ISP
• Core Switch/Router
• LNS
• Firewall
• Authentication server
ElasticISP KHNOG MAY 2016
Logical Topology
ELASTICISP
• Public user access Internet through
LNS and Core router
• Private user access Internet through
firewall by using NAT
Transit
Core
LNS
Firewall
IX Peering
Private CPE
Auth Server
Public CPE
NAT
Private Internet session
Public Internet session
ElasticISP KHNOG MAY 2016
• The same Core Switch/Router/LNS/FW
• But they are inside physical devices
• Ex: Vmware inside physical server
• You don’t need any hardware
• Less budget
Physical Network - eISP
ELASTICISP
Transit
CORE-SW
LNS
FW
IX Peering
CPE
Auth Server
Carrier
EISP
ElasticISP KHNOG MAY 2016
• The same process as normal ISP
• Less cost, less risk and scalable
Logical Network eISP
ELASTICISP Transit
Core-SW
LNS Firewall
IX Peering
Private CPE
Auth Server
Public CPE
NAT
Private Internet session
Public Internet session
EISP
ElasticISP KHNOG MAY 2016
• Only physical switch for connectivity
• LNS and FW are in Cloud
• Ex: Cisco CRS1kv is
free 60 days
• Easy to scale as you grow
• Also easy to stop
if you give up the business
Physical Network – Cloud Provider
ELASTICISP
Transit-01
Wholesale-01
Wholesale-02
Transit-02
IX Peering-01
IX Peering-02
CPE-02
CPE-01
Cloud-01
Cloud-02
EISP
CORE-SW01
CORE-SW02
LNS-01
LNS-02
FW-01
FW-02
ElasticISP KHNOG MAY 2016
• Totally the same function
as previous ISP
• More easier to scale
from small/medium tobig ISP
Logical Network – Cloud Provider
ELASTICISP
Transit-01
Wholesale-01
Wholesale-02
Transit-02
IX Peering-01
IX Peering-02
CPE-02
CPE-01
EISP
CORE-SW01
CORE-SW02
LNS-01
LNS-02
FW-01
FW-02
Cloud-01
Cloud-01
ElasticISP KHNOG MAY 2016
• User send PPPOE request to LNS
• Divide user to two types: private user and public user
• LNS checks PPOE request and forward to authenticationserver (Radius)
• After authenticating, public user can access Internet directly
• Private user access Internet through firewall or CGN
• LNS and firewall access Internet through Core router with specific
virtual instance (VRF)
• Core router setup eBGP with Transit for Internet access for the network
• User is able to access Internet
ElasticISP – The User Process
ELASTICISP
ElasticISP KHNOG MAY 2016
• Cisco CSR1000v
• Juniper vSRX
• Cumulus VX
• Debian Linux as Edge Router (BGP Quagga)
• Centos
• Racoon (IPSec VPN)
• More to come!
• LNS
ElasticISP – What We’ve Tested
ELASTICISP
ElasticISP KHNOG MAY 2016
• Orchestration/ Automation via web portal
• More Cloud providers
• More Wholesale providers
ElasticISP – Plans
ELASTICISP
ElasticISP KHNOG MAY 2016
• Elastic Everything
• ElasticISPconcept is possible here in KH – more capex though
• This will be the future for everywhere, including Cambodia
• This is the new way – do not be left behind
• Network Engineers need to understand NFV and associatedtechnologies,esp
ecially virtualisation,cloud providers and elastic fabrics
• Open Networking is going to be a big part due to choice and costs
Summary & QA
ELASTICISP
TRY CHHAY
THANK YOU.
e: skeeve@eintellegonetworks.asia
t: @skeevestevens
linkedin: /in/skeeve
e: try@eintellegonetworks.asia
linkedin: /in/trychhay
SKEEVE STEVENS
eintellegonetworks.asia
Ad

Recommended

Open Networking Revolution - Cambodia - How?
Open Networking Revolution - Cambodia - How?
KHNOG
 
Open Networking Revolution - Cambodia - Why?
Open Networking Revolution - Cambodia - Why?
KHNOG
 
Introduction to BRAS
Introduction to BRAS
KHNOG
 
OpenStack: Networking Roadmap, Collaboration and Contribution
OpenStack: Networking Roadmap, Collaboration and Contribution
Open Networking Summit
 
Container Networking
Container Networking
Open Networking Summit
 
Private cloud networking_cloudstack_days_austin
Private cloud networking_cloudstack_days_austin
Chiradeep Vittal
 
Building Business on Top of Open Source
Building Business on Top of Open Source
Open Networking Summit
 
Network Virtualization Meets the WAN
Network Virtualization Meets the WAN
Bruce Davie
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStack
Bruce Davie
 
Neutron scale
Neutron scale
Justin Hammond
 
Kube ovn-sandbox-proposal
Kube ovn-sandbox-proposal
梦馨 刘
 
Neutron scaling
Neutron scaling
Vinay Bannai
 
OpenNebula from the Perspective of an ISP
OpenNebula from the Perspective of an ISP
OpenNebula Project
 
ONOS-Based VIM Implementation
ONOS-Based VIM Implementation
OPNFV
 
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebula Project
 
OpenStack Telco Cloud Challenges, David Fick, Oracle
OpenStack Telco Cloud Challenges, David Fick, Oracle
Sriram Subramanian
 
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Cloudify Community
 
Atf 3 q15-1 - introduction
Atf 3 q15-1 - introduction
Mason Mei
 
DEVNET-1155 Branch Virtualization
DEVNET-1155 Branch Virtualization
Cisco DevNet
 
Why OpenDaylight
Why OpenDaylight
Lumina Networks
 
Onboarding and Orchestrating High Performing Networking Software
Onboarding and Orchestrating High Performing Networking Software
Cloudify Community
 
Clone your Network with OpenNebula
Clone your Network with OpenNebula
NETWAYS
 
Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44
Jisc
 
ONAP - Open Network Automation Platform
ONAP - Open Network Automation Platform
Atul Pandey
 
Introducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis Meetup
djzook
 
how to simulate ACI
how to simulate ACI
Abderrahmane TEKFI
 
How we built Packet's bare metal cloud platform
How we built Packet's bare metal cloud platform
Packet
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
Scott Sneddon
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
Patricia Dugan
 
WINS: Peering and IXPs
WINS: Peering and IXPs
APNIC
 

More Related Content

What's hot (19)

Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStack
Bruce Davie
 
Neutron scale
Neutron scale
Justin Hammond
 
Kube ovn-sandbox-proposal
Kube ovn-sandbox-proposal
梦馨 刘
 
Neutron scaling
Neutron scaling
Vinay Bannai
 
OpenNebula from the Perspective of an ISP
OpenNebula from the Perspective of an ISP
OpenNebula Project
 
ONOS-Based VIM Implementation
ONOS-Based VIM Implementation
OPNFV
 
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebula Project
 
OpenStack Telco Cloud Challenges, David Fick, Oracle
OpenStack Telco Cloud Challenges, David Fick, Oracle
Sriram Subramanian
 
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Cloudify Community
 
Atf 3 q15-1 - introduction
Atf 3 q15-1 - introduction
Mason Mei
 
DEVNET-1155 Branch Virtualization
DEVNET-1155 Branch Virtualization
Cisco DevNet
 
Why OpenDaylight
Why OpenDaylight
Lumina Networks
 
Onboarding and Orchestrating High Performing Networking Software
Onboarding and Orchestrating High Performing Networking Software
Cloudify Community
 
Clone your Network with OpenNebula
Clone your Network with OpenNebula
NETWAYS
 
Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44
Jisc
 
ONAP - Open Network Automation Platform
ONAP - Open Network Automation Platform
Atul Pandey
 
Introducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis Meetup
djzook
 
how to simulate ACI
how to simulate ACI
Abderrahmane TEKFI
 
How we built Packet's bare metal cloud platform
How we built Packet's bare metal cloud platform
Packet
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStack
Bruce Davie
 
Kube ovn-sandbox-proposal
Kube ovn-sandbox-proposal
梦馨 刘
 
OpenNebula from the Perspective of an ISP
OpenNebula from the Perspective of an ISP
OpenNebula Project
 
ONOS-Based VIM Implementation
ONOS-Based VIM Implementation
OPNFV
 
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebulaConf2019 - CORD and Edge computing with OpenNebula - Alfonso Aureli...
OpenNebula Project
 
OpenStack Telco Cloud Challenges, David Fick, Oracle
OpenStack Telco Cloud Challenges, David Fick, Oracle
Sriram Subramanian
 
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Introducing ONAP (Open Network Automation Platform) - Bay Area Meetup
Cloudify Community
 
Atf 3 q15-1 - introduction
Atf 3 q15-1 - introduction
Mason Mei
 
DEVNET-1155 Branch Virtualization
DEVNET-1155 Branch Virtualization
Cisco DevNet
 
Onboarding and Orchestrating High Performing Networking Software
Onboarding and Orchestrating High Performing Networking Software
Cloudify Community
 
Clone your Network with OpenNebula
Clone your Network with OpenNebula
NETWAYS
 
Data networking at UCL - Networkshop44
Data networking at UCL - Networkshop44
Jisc
 
ONAP - Open Network Automation Platform
ONAP - Open Network Automation Platform
Atul Pandey
 
Introducing ONAP for OpenStack St Louis Meetup
Introducing ONAP for OpenStack St Louis Meetup
djzook
 
How we built Packet's bare metal cloud platform
How we built Packet's bare metal cloud platform
Packet
 

Similar to ElasticISP (20)

CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
Scott Sneddon
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
Patricia Dugan
 
WINS: Peering and IXPs
WINS: Peering and IXPs
APNIC
 
Better Than Best Effort at Bloomberg from ThousandEyes Connect
Better Than Best Effort at Bloomberg from ThousandEyes Connect
ThousandEyes
 
Revolutionizing IT and Telecom Industry with OpenStack, SDN and NFV
Revolutionizing IT and Telecom Industry with OpenStack, SDN and NFV
PLUMgrid
 
Keynote Address - SDN A path to programmable, elastic and optimized networks
Keynote Address - SDN A path to programmable, elastic and optimized networks
Sanjay Kapoor
 
KHNOG 1: IXPs and Peering
KHNOG 1: IXPs and Peering
APNIC
 
Technical and Operational Aspects of Regional Internet Exchange Model
Technical and Operational Aspects of Regional Internet Exchange Model
APNIC
 
PacNOG 25: Keeping local traffic local by doing local peering
PacNOG 25: Keeping local traffic local by doing local peering
APNIC
 
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
APNIC
 
Network Function Virtualization - Telkomsel Perspective (SDN NFV Day ITB 2016)
Network Function Virtualization - Telkomsel Perspective (SDN NFV Day ITB 2016)
SDNRG ITB
 
Chris Swan's CloudExpo Europe presentation "Waves of adoption for Network Fun...
Chris Swan's CloudExpo Europe presentation "Waves of adoption for Network Fun...
Cohesive Networks
 
Building a Connected Future: The Power of Interconnection
Building a Connected Future: The Power of Interconnection
MyNOG
 
App to Cloud: Patrick Kerpan's DataCenter Dynamics Converged Keynote
App to Cloud: Patrick Kerpan's DataCenter Dynamics Converged Keynote
Cohesive Networks
 
"How overlay networks can make public clouds your global WAN" by Ryan Koop o...
"How overlay networks can make public clouds your global WAN" by Ryan Koop o...
Cohesive Networks
 
PCTA 2018: ASNs - why is it important to cable broadband providers?
PCTA 2018: ASNs - why is it important to cable broadband providers?
APNIC
 
APT PRFP 11: IXPs
APT PRFP 11: IXPs
APNIC
 
Elastic Fabrics & Cloud ISPs
Elastic Fabrics & Cloud ISPs
Skeeve Stevens
 
Netsft2017 day in_life_of_nfv
Netsft2017 day in_life_of_nfv
Intel
 
PacNOG 24: Keeping local traffic local by doing local peering
PacNOG 24: Keeping local traffic local by doing local peering
APNIC
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage
Scott Sneddon
 
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
CommsDay Keynote - SDN, NFV and Cloud - How Telco's can take advantage of SDN
Patricia Dugan
 
WINS: Peering and IXPs
WINS: Peering and IXPs
APNIC
 
Better Than Best Effort at Bloomberg from ThousandEyes Connect
Better Than Best Effort at Bloomberg from ThousandEyes Connect
ThousandEyes
 
Revolutionizing IT and Telecom Industry with OpenStack, SDN and NFV
Revolutionizing IT and Telecom Industry with OpenStack, SDN and NFV
PLUMgrid
 
Keynote Address - SDN A path to programmable, elastic and optimized networks
Keynote Address - SDN A path to programmable, elastic and optimized networks
Sanjay Kapoor
 
KHNOG 1: IXPs and Peering
KHNOG 1: IXPs and Peering
APNIC
 
Technical and Operational Aspects of Regional Internet Exchange Model
Technical and Operational Aspects of Regional Internet Exchange Model
APNIC
 
PacNOG 25: Keeping local traffic local by doing local peering
PacNOG 25: Keeping local traffic local by doing local peering
APNIC
 
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
Benefits of doing Internet peering and running an Internet Exchange (IX) pres...
APNIC
 
Network Function Virtualization - Telkomsel Perspective (SDN NFV Day ITB 2016)
Network Function Virtualization - Telkomsel Perspective (SDN NFV Day ITB 2016)
SDNRG ITB
 
Chris Swan's CloudExpo Europe presentation "Waves of adoption for Network Fun...
Chris Swan's CloudExpo Europe presentation "Waves of adoption for Network Fun...
Cohesive Networks
 
Building a Connected Future: The Power of Interconnection
Building a Connected Future: The Power of Interconnection
MyNOG
 
App to Cloud: Patrick Kerpan's DataCenter Dynamics Converged Keynote
App to Cloud: Patrick Kerpan's DataCenter Dynamics Converged Keynote
Cohesive Networks
 
"How overlay networks can make public clouds your global WAN" by Ryan Koop o...
"How overlay networks can make public clouds your global WAN" by Ryan Koop o...
Cohesive Networks
 
PCTA 2018: ASNs - why is it important to cable broadband providers?
PCTA 2018: ASNs - why is it important to cable broadband providers?
APNIC
 
APT PRFP 11: IXPs
APT PRFP 11: IXPs
APNIC
 
Elastic Fabrics & Cloud ISPs
Elastic Fabrics & Cloud ISPs
Skeeve Stevens
 
Netsft2017 day in_life_of_nfv
Netsft2017 day in_life_of_nfv
Intel
 
PacNOG 24: Keeping local traffic local by doing local peering
PacNOG 24: Keeping local traffic local by doing local peering
APNIC
 
Ad

More from KHNOG (20)

SIP (Session Initiation Protocol)
SIP (Session Initiation Protocol)
KHNOG
 
Network Attack Counter
Network Attack Counter
KHNOG
 
Wireless Network Pentestration
Wireless Network Pentestration
KHNOG
 
Core Concept of TCP/IP
Core Concept of TCP/IP
KHNOG
 
Bonding Interface in MikroTik
Bonding Interface in MikroTik
KHNOG
 
Network Exploitation
Network Exploitation
KHNOG
 
Network Security-Honeypot
Network Security-Honeypot
KHNOG
 
Bandwidth Management on Linux
Bandwidth Management on Linux
KHNOG
 
Why / How to become the Linux certified
Why / How to become the Linux certified
KHNOG
 
Terminal Access Controller
Terminal Access Controller
KHNOG
 
Cambodia International Backbone Network
Cambodia International Backbone Network
KHNOG
 
Introduction to BRAS
Introduction to BRAS
KHNOG
 
ElasticISP
ElasticISP
KHNOG
 
Hotspot on Mikrotik Router
Hotspot on Mikrotik Router
KHNOG
 
Virtual Extensible LAN (VXLAN)
Virtual Extensible LAN (VXLAN)
KHNOG
 
Policy Based Routing (PBR)
Policy Based Routing (PBR)
KHNOG
 
Bidirectional Forwarding Detection (BFD)
Bidirectional Forwarding Detection (BFD)
KHNOG
 
Network Mapper (NMAP)
Network Mapper (NMAP)
KHNOG
 
IT Service Level Agreement
IT Service Level Agreement
KHNOG
 
Routing Implementation - Cisco vs. Mikrotik
Routing Implementation - Cisco vs. Mikrotik
KHNOG
 
SIP (Session Initiation Protocol)
SIP (Session Initiation Protocol)
KHNOG
 
Network Attack Counter
Network Attack Counter
KHNOG
 
Wireless Network Pentestration
Wireless Network Pentestration
KHNOG
 
Core Concept of TCP/IP
Core Concept of TCP/IP
KHNOG
 
Bonding Interface in MikroTik
Bonding Interface in MikroTik
KHNOG
 
Network Exploitation
Network Exploitation
KHNOG
 
Network Security-Honeypot
Network Security-Honeypot
KHNOG
 
Bandwidth Management on Linux
Bandwidth Management on Linux
KHNOG
 
Why / How to become the Linux certified
Why / How to become the Linux certified
KHNOG
 
Terminal Access Controller
Terminal Access Controller
KHNOG
 
Cambodia International Backbone Network
Cambodia International Backbone Network
KHNOG
 
Introduction to BRAS
Introduction to BRAS
KHNOG
 
ElasticISP
ElasticISP
KHNOG
 
Hotspot on Mikrotik Router
Hotspot on Mikrotik Router
KHNOG
 
Virtual Extensible LAN (VXLAN)
Virtual Extensible LAN (VXLAN)
KHNOG
 
Policy Based Routing (PBR)
Policy Based Routing (PBR)
KHNOG
 
Bidirectional Forwarding Detection (BFD)
Bidirectional Forwarding Detection (BFD)
KHNOG
 
Network Mapper (NMAP)
Network Mapper (NMAP)
KHNOG
 
IT Service Level Agreement
IT Service Level Agreement
KHNOG
 
Routing Implementation - Cisco vs. Mikrotik
Routing Implementation - Cisco vs. Mikrotik
KHNOG
 
Ad

Recently uploaded (20)

AI Agents and FME: A How-to Guide on Generating Synthetic Metadata
AI Agents and FME: A How-to Guide on Generating Synthetic Metadata
Safe Software
 
UserCon Belgium: Honey, VMware increased my bill
UserCon Belgium: Honey, VMware increased my bill
stijn40
 
A Constitutional Quagmire - Ethical Minefields of AI, Cyber, and Privacy.pdf
A Constitutional Quagmire - Ethical Minefields of AI, Cyber, and Privacy.pdf
Priyanka Aash
 
Securing AI - There Is No Try, Only Do!.pdf
Securing AI - There Is No Try, Only Do!.pdf
Priyanka Aash
 
ReSTIR [DI]: Spatiotemporal reservoir resampling for real-time ray tracing ...
ReSTIR [DI]: Spatiotemporal reservoir resampling for real-time ray tracing ...
revolcs10
 
Enhance GitHub Copilot using MCP - Enterprise version.pdf
Enhance GitHub Copilot using MCP - Enterprise version.pdf
Nilesh Gule
 
PyCon SG 25 - Firecracker Made Easy with Python.pdf
PyCon SG 25 - Firecracker Made Easy with Python.pdf
Muhammad Yuga Nugraha
 
10 Key Challenges for AI within the EU Data Protection Framework.pdf
10 Key Challenges for AI within the EU Data Protection Framework.pdf
Priyanka Aash
 
“MPU+: A Transformative Solution for Next-Gen AI at the Edge,” a Presentation...
“MPU+: A Transformative Solution for Next-Gen AI at the Edge,” a Presentation...
Edge AI and Vision Alliance
 
Tech-ASan: Two-stage check for Address Sanitizer - Yixuan Cao.pdf
Tech-ASan: Two-stage check for Address Sanitizer - Yixuan Cao.pdf
caoyixuan2019
 
Quantum AI: Where Impossible Becomes Probable
Quantum AI: Where Impossible Becomes Probable
Saikat Basu
 
Smarter Aviation Data Management: Lessons from Swedavia Airports and Sweco
Smarter Aviation Data Management: Lessons from Swedavia Airports and Sweco
Safe Software
 
GenAI Opportunities and Challenges - Where 370 Enterprises Are Focusing Now.pdf
GenAI Opportunities and Challenges - Where 370 Enterprises Are Focusing Now.pdf
Priyanka Aash
 
Curietech AI in action - Accelerate MuleSoft development
Curietech AI in action - Accelerate MuleSoft development
shyamraj55
 
Using the SQLExecutor for Data Quality Management: aka One man's love for the...
Using the SQLExecutor for Data Quality Management: aka One man's love for the...
Safe Software
 
WebdriverIO & JavaScript: The Perfect Duo for Web Automation
WebdriverIO & JavaScript: The Perfect Duo for Web Automation
digitaljignect
 
The Future of Product Management in AI ERA.pdf
The Future of Product Management in AI ERA.pdf
Alyona Owens
 
9-1-1 Addressing: End-to-End Automation Using FME
9-1-1 Addressing: End-to-End Automation Using FME
Safe Software
 
Raman Bhaumik - Passionate Tech Enthusiast
Raman Bhaumik - Passionate Tech Enthusiast
Raman Bhaumik
 
AI vs Human Writing: Can You Tell the Difference?
AI vs Human Writing: Can You Tell the Difference?
Shashi Sathyanarayana, Ph.D
 
AI Agents and FME: A How-to Guide on Generating Synthetic Metadata
AI Agents and FME: A How-to Guide on Generating Synthetic Metadata
Safe Software
 
UserCon Belgium: Honey, VMware increased my bill
UserCon Belgium: Honey, VMware increased my bill
stijn40
 
A Constitutional Quagmire - Ethical Minefields of AI, Cyber, and Privacy.pdf
A Constitutional Quagmire - Ethical Minefields of AI, Cyber, and Privacy.pdf
Priyanka Aash
 
Securing AI - There Is No Try, Only Do!.pdf
Securing AI - There Is No Try, Only Do!.pdf
Priyanka Aash
 
ReSTIR [DI]: Spatiotemporal reservoir resampling for real-time ray tracing ...
ReSTIR [DI]: Spatiotemporal reservoir resampling for real-time ray tracing ...
revolcs10
 
Enhance GitHub Copilot using MCP - Enterprise version.pdf
Enhance GitHub Copilot using MCP - Enterprise version.pdf
Nilesh Gule
 
PyCon SG 25 - Firecracker Made Easy with Python.pdf
PyCon SG 25 - Firecracker Made Easy with Python.pdf
Muhammad Yuga Nugraha
 
10 Key Challenges for AI within the EU Data Protection Framework.pdf
10 Key Challenges for AI within the EU Data Protection Framework.pdf
Priyanka Aash
 
“MPU+: A Transformative Solution for Next-Gen AI at the Edge,” a Presentation...
“MPU+: A Transformative Solution for Next-Gen AI at the Edge,” a Presentation...
Edge AI and Vision Alliance
 
Tech-ASan: Two-stage check for Address Sanitizer - Yixuan Cao.pdf
Tech-ASan: Two-stage check for Address Sanitizer - Yixuan Cao.pdf
caoyixuan2019
 
Quantum AI: Where Impossible Becomes Probable
Quantum AI: Where Impossible Becomes Probable
Saikat Basu
 
Smarter Aviation Data Management: Lessons from Swedavia Airports and Sweco
Smarter Aviation Data Management: Lessons from Swedavia Airports and Sweco
Safe Software
 
GenAI Opportunities and Challenges - Where 370 Enterprises Are Focusing Now.pdf
GenAI Opportunities and Challenges - Where 370 Enterprises Are Focusing Now.pdf
Priyanka Aash
 
Curietech AI in action - Accelerate MuleSoft development
Curietech AI in action - Accelerate MuleSoft development
shyamraj55
 
Using the SQLExecutor for Data Quality Management: aka One man's love for the...
Using the SQLExecutor for Data Quality Management: aka One man's love for the...
Safe Software
 
WebdriverIO & JavaScript: The Perfect Duo for Web Automation
WebdriverIO & JavaScript: The Perfect Duo for Web Automation
digitaljignect
 
The Future of Product Management in AI ERA.pdf
The Future of Product Management in AI ERA.pdf
Alyona Owens
 
9-1-1 Addressing: End-to-End Automation Using FME
9-1-1 Addressing: End-to-End Automation Using FME
Safe Software
 
Raman Bhaumik - Passionate Tech Enthusiast
Raman Bhaumik - Passionate Tech Enthusiast
Raman Bhaumik
 
AI vs Human Writing: Can You Tell the Difference?
AI vs Human Writing: Can You Tell the Difference?
Shashi Sathyanarayana, Ph.D
 

ElasticISP

  • 1. KHNOG Micro Event – PHNOM PENH MAY2016 Skeeve Stevens & Try Chhay ElasticISP NFV in Action eintellegonetworks . a s i a
  • 2. ElasticISP KHNOG MAY 2016 • NFV • ElasticISP – The (Original) Concept • ElasticISP – The Reality • Elastic Architecture • Q&A Agenda ELASTICISP
  • 3. ElasticISP KHNOG MAY 2016 • Network Function Virtualisation • https://en.wikipedia.org/wiki/Network_function_virtualization • The NFV framework consists of three main components 1. Virtualized network functions (VNFs) are software implementations of network functions that can be deployed on NFVI 1. Network function virtualizationinfrastructure 2. Network functions virtualizationmanagement and orchestration architectural framework NFV ELASTICISP
  • 4. ElasticISP KHNOG MAY 2016 ELASTICISP The Business
  • 5. ElasticISP KHNOG MAY 2016 • We had a lot of hardware in the AU office • We have many people who want to start ISP • Talk to 10 per month, Proposal to 3, build maybe 1 • Capex intensive • Start small ISP cost is around $35k PS and $50k-$100k for hardware • 50% of small ISP fail because they are not good at business • No skills to run ISP network Why ElasticISP? ELASTICISP
  • 6. ElasticISP KHNOG MAY 2016 • Cloud – Direct Access (AWS, Azure, Google Compute, OrionVM, Vmware) • Core ISP Infrastructure (LNS, CGN, Routing, Peering, etc) • IP Transit – Backup paths, OnDemand capacity • Tails - xDSL, Fibre/NBN, MetroE, International Circuits - anything Layer 2 • Voice - SIPTrunks, Hosted Voice; Full Enterprise PABXs • DDoS Protection-aaS • VPN, Proxy, Security What can we do? ELASTICISP
  • 7. ElasticISP KHNOG MAY 2016 • Make it easy for Cheap to start ~$15k (less CapEx, move to OpEx) • Fast to start ~0.5 – 2 days • Minimal risk of loss • No Expertise for Network infrastructure • Professional ISP Engineers doing management and liaise with providers • Legal relationshipremains with ISP (not EIN) • Grow to beyond 1000 customers – can move to physical or hybrid options • EIN can use excess hardware (7200/MX80/switching) • Use Cloud for off-loadafter exceeding hardware capacity ElasticISP – The (Original) Concept ELASTICISP
  • 8. ElasticISP KHNOG MAY 2016 • Orchestrationis easy (Ansible) • Cloud is awesome (once we found layer 2 cloud provider) • Do not actually need any hardware except Switching - We are using • Open Networking Switching (Cumulus + Dell for 10/40Gb) • Juniper MX80 / Cisco 7200 (all to be retired?) • Scales to massive numbers – millionusers? Capacity? • Can be used for outsourced corporate network core ElasticISP – The Reality ELASTICISP
  • 9. ElasticISP KHNOG MAY 2016 ELASTICISP The Architecture
  • 10. ElasticISP KHNOG MAY 2016 • APNIC Membership+ ASN and IPAddress Resources • If not, eintellegowill consult/helpto get them • Transit provider + Peering (IX) • Wholesale Tail/carrier provider (i.e. CFOCN, Telecom, Wicam, SI, etc..) • Own your billingsystem/authenticationservice (we can help find) • $$$ • Support skills (EIN does not do Level 1 support!) ElasticISP – Pre-Requisites ELASTICISP
  • 11. ElasticISP KHNOG MAY 2016 • BGP Edge Router: Transit and Peering • Core Routing/Switching (IGP) • LNS/LAC: Terminate PPPoE sessions • CGN (if needed) • Firewall - Security if needed • Authentication server – Radius (AAA server) • Anything else of your choosing (Proxy/Cache, Physical hardware, etc) ElasticISP – ISP Equipment ELASTICISP
  • 12. ElasticISP KHNOG MAY 2016 Physical Topology ELASTICISP Transit CORE-SW LNS FW IX Peering CPE Auth Server Carrier • Example of small/medium ISP • Core Switch/Router • LNS • Firewall • Authentication server
  • 13. ElasticISP KHNOG MAY 2016 Logical Topology ELASTICISP • Public user access Internet through LNS and Core router • Private user access Internet through firewall by using NAT Transit Core LNS Firewall IX Peering Private CPE Auth Server Public CPE NAT Private Internet session Public Internet session
  • 14. ElasticISP KHNOG MAY 2016 • The same Core Switch/Router/LNS/FW • But they are inside physical devices • Ex: Vmware inside physical server • You don’t need any hardware • Less budget Physical Network - eISP ELASTICISP Transit CORE-SW LNS FW IX Peering CPE Auth Server Carrier EISP
  • 15. ElasticISP KHNOG MAY 2016 • The same process as normal ISP • Less cost, less risk and scalable Logical Network eISP ELASTICISP Transit Core-SW LNS Firewall IX Peering Private CPE Auth Server Public CPE NAT Private Internet session Public Internet session EISP
  • 16. ElasticISP KHNOG MAY 2016 • Only physical switch for connectivity • LNS and FW are in Cloud • Ex: Cisco CRS1kv is free 60 days • Easy to scale as you grow • Also easy to stop if you give up the business Physical Network – Cloud Provider ELASTICISP Transit-01 Wholesale-01 Wholesale-02 Transit-02 IX Peering-01 IX Peering-02 CPE-02 CPE-01 Cloud-01 Cloud-02 EISP CORE-SW01 CORE-SW02 LNS-01 LNS-02 FW-01 FW-02
  • 17. ElasticISP KHNOG MAY 2016 • Totally the same function as previous ISP • More easier to scale from small/medium tobig ISP Logical Network – Cloud Provider ELASTICISP Transit-01 Wholesale-01 Wholesale-02 Transit-02 IX Peering-01 IX Peering-02 CPE-02 CPE-01 EISP CORE-SW01 CORE-SW02 LNS-01 LNS-02 FW-01 FW-02 Cloud-01 Cloud-01
  • 18. ElasticISP KHNOG MAY 2016 • User send PPPOE request to LNS • Divide user to two types: private user and public user • LNS checks PPOE request and forward to authenticationserver (Radius) • After authenticating, public user can access Internet directly • Private user access Internet through firewall or CGN • LNS and firewall access Internet through Core router with specific virtual instance (VRF) • Core router setup eBGP with Transit for Internet access for the network • User is able to access Internet ElasticISP – The User Process ELASTICISP
  • 19. ElasticISP KHNOG MAY 2016 • Cisco CSR1000v • Juniper vSRX • Cumulus VX • Debian Linux as Edge Router (BGP Quagga) • Centos • Racoon (IPSec VPN) • More to come! • LNS ElasticISP – What We’ve Tested ELASTICISP
  • 20. ElasticISP KHNOG MAY 2016 • Orchestration/ Automation via web portal • More Cloud providers • More Wholesale providers ElasticISP – Plans ELASTICISP
  • 21. ElasticISP KHNOG MAY 2016 • Elastic Everything • ElasticISPconcept is possible here in KH – more capex though • This will be the future for everywhere, including Cambodia • This is the new way – do not be left behind • Network Engineers need to understand NFV and associatedtechnologies,esp ecially virtualisation,cloud providers and elastic fabrics • Open Networking is going to be a big part due to choice and costs Summary & QA ELASTICISP
  • 22. TRY CHHAY THANK YOU. e: [email protected] t: @skeevestevens linkedin: /in/skeeve e: [email protected] linkedin: /in/trychhay SKEEVE STEVENS eintellegonetworks.asia