
æå°éã®æéã³ã¹ãã§ä»®æ³åã¢ããªã±ãŒã·ã§ã³ã®ã³ã³ããŒãã³ãéã®ãã©ãã£ãã¯å¶åŸ¡ãæäŸããæ¹æ³ã¯ïŒ ãããã¯ãŒã¯æ§æãã¢ããªã±ãŒã·ã§ã³èªäœã®æ§æãå€æŽããã«ããã¡ã€ã¢ãŠã©ãŒã«ããã±ãããã£ã«ã¿ãŒããã©ãã£ãã¯ãã©ã³ã·ã³ã°ã·ã¹ãã ãªã©ã®è€æ°ã®ãµãŒãã¹ã³ã³ããŒãã³ããä»ããŠãã§ãŒã³ã§ãã©ãã£ãã¯ã転éã§ãããã¯ãããžãŒã¯ãããŸããïŒ ããã§ã¯ãCisco vPathãã¯ãããžãŒã«ã€ããŠèª¬æããŸããããã«ããããã€ããŒãã€ã¶ãŒã®è£œé å
ã«äŸåããã«ãä»®æ³åç°å¢ã§ãµãŒãã¹ãã§ãŒã³ãé©åã«äœæã§ããŸãã
1.åé¡ã®å£°æ
ãœãŒã¹ããŒã¿ïŒ- WEBãAPPãDBãªã©ãããã€ãã®ã³ã³ããŒãã³ãã§æ§æãããã¢ããªã±ãŒã·ã§ã³ããããŸãã
- ã³ã³ããŒãã³ãã¯ä»®æ³ãã·ã³ïŒVMïŒã§ããããã€ããŒãã€ã¶ãŒã®ã¯ã©ã¹ã¿ãŒå
ã«ãããŸãã
- ãã¹ãŠã®ã³ã³ããŒãã³ãã¯åããããã¯ãŒã¯ã»ã°ã¡ã³ãã«æ¥ç¶ããã1ã€ã®ããã©ã«ãã²ãŒããŠã§ã€ã䜿çšããŠå€éšãšéä¿¡ããŸãã
ã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãã®ãããã¯ãŒã¯æ¥ç¶ã®æ§æå³ã¯ãå³2ã®ããã«ãªããŸãã 1ã
å³ 1ã¢ããªã±ãŒã·ã§ã³ããããã¯ãŒã¯ã«æ¥ç¶ããçµç¹ã®è«çå³ããã©ã«ãã§ã¯ãã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ããšå€éšã®äžçãšã®éã®çžäºäœçšãããªãã¯ã¹ã¯æ¬¡ã®ããã«ãªããŸãã
å³ 2ã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã®çžäºäœçšã®ãœãŒã¹ãããªãã¯ã¹ã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã§éä¿¡ããããã©ãã£ãã¯ã¯ããããªãæ¹æ³ã§ãå¶åŸ¡ãããŸãã-ãã¹ãŠããã¹ãŠã®äººã«èš±å¯ãããŸãã
äžè¬çãªåœ¢åŒã®åé¡ã®èª¬æïŒ- ã¢ããªã±ãŒã·ã§ã³æ§æãå€æŽããã«ãã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã®ãã©ãã£ãã¯ãå¶åŸ¡ããæ©èœãæäŸããŸãã
- å¶åŸ¡ãšã¯ãã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã®ãã©ãã£ãã¯è»¢éã®ãã¹ã«æ²¿ã£ãŠãµãŒãã¹èŠçŽ ãééçã«åã蟌ãæ©èœãæå³ããŸãã
- ãµãŒãã¹èŠçŽ ã¯ããã±ãããã£ã«ã¿ãªã³ã°ãè² è·åæ£ãã¢ããªã±ãŒã·ã§ã³ã¬ãã«ã§ã®è©³çŽ°æ€æ»ããã©ãã£ãã¯å§çž®ããããã¯ãŒã¯ãã©ãã£ãã¯åæãªã©ãå®è¡ããä»®æ³ãã·ã³ã§ãã ãªã©ã
- ã¿ã¹ã¯ã®éèŠãªéšå- ããã€ãã®ãµãŒãã¹èŠçŽ ãååšããå¯èœæ§ããããåã蟌ã¿ã®è€éãã¯ãã®éã«äŸåãã¹ãã§ã¯ãããŸããã
- ãã§ãŒã³ã§ãµãŒãã¹èŠçŽ ãæ§ç¯ããããšãå¯èœã§ããã¹ãã§ãã
å®éã®ã¿ã¹ã¯çªå·1ã®äŸ-ãã±ãããã£ã«ã¿ãŒã®åã蟌ã¿ã¢ããªã±ãŒã·ã§ã³éã®ãã©ãã£ãã¯ãå¶åŸ¡ããæ©èœã¯ã
Cisco VSGãªã©ã®ãã±ãããã£ã«ã¿ãŒãšåŒã°ãããµãŒãã¹èŠçŽ ã«ãã£ãŠæäŸãããŸãã ãã±ãããã£ã«ã¿ãŒã¯ãä»®æ³ãã·ã³éã®ããŒã¿è»¢éã®ãã¹ã«çµã¿èŸŒãŸããŠããŸãã ãã£ã«ã¿ãŒãåã蟌ãã åŸãçžäºäœçšè¡åãå€åãã次ã®ããã«ãªããŸãã
å³ 3ééåã蟌ã¿ãã±ãããã£ã«ã¿ãŒå³ã®æ³š 3 ïŒå³ã¯ããã±ãããã£ã«ã¿ãŒãå®è¡ããè«çæŒç®ã瀺ããŠããŸãã äžè¬ã«ã1ã€ã®ä»®æ³ãã·ã³ããã®ã¿ã¹ã¯ãåŠçã§ããŸãã ãã®æ³šèšã¯ã以äžã®å³ã«ãé¢é£ããŠããŸãã
ãã±ãããã£ã«ã¿ãŒã®æ©èœïŒ
- å€éšã»ã°ã¡ã³ããããŠãŒã¶ãŒã®ã¢ããªã±ãŒã·ã§ã³ã®WEBã³ã³ããŒãã³ããžã®çä¿¡ãã©ãã£ãã¯ã®ã¿ãèš±å¯ããŸãã
- å€éšã»ã°ã¡ã³ãããAPPããã³DBã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ããžã®ãã©ãã£ãã¯ã¯çŠæ¢ãããŠããŸãã
- WEB-APPãšAPP-DBã³ã³ããŒãã³ãã®ãã¢éã®ãã©ãã£ãã¯ã¯ãæ¢ç¥ã®ãããã³ã«ãšããŒããä»ããŠèš±å¯ãããŸãã
- ä»ã®ãã¹ãŠã®ãã©ãã£ãã¯ã¯çŠæ¢ãããŠããŸãã
å®éã®ã¿ã¹ã¯çªå·2ã®äŸ-ãµãŒãã¹ãã§ãŒã³ã®äœæå®éã®ãããžã§ã¯ãã®çµéšã«åºã¥ããŠãå€ãã®å Žåãã¢ããªã±ãŒã·ã§ã³ææè
ããããã¯ãŒã¯ç®¡çè
ãããã³ã»ãã¥ãªãã£ç®¡çè
ã¯ãã€ã³ãã©ã¹ãã©ã¯ãã£ããã®åãªããã±ãããã£ã«ã¿ãªã³ã°ä»¥äžã®ãã®ãæ±ããŠããŸãã ãããžã§ã¯ãã§æ¯æ¥ééããåé¡ã«è¿ãåé¡ã®å®åŒåã¯ããã®ããã«èŠããŸãã
å³ 4ã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã®ãµãŒãã¹ãã§ãŒã³ã¢ããªã±ãŒã·ã§ã³ã®WEBã³ã³ããŒãã³ãå®ãŠã®ãŠãŒã¶ãŒãã©ãã£ãã¯ã¯ãæåã®ãµãŒãã¹ãã§ãŒã³ãééããŸãã
- ãã©ãã£ãã¯ã¯ããŸãCisco Netscaler 1000Vãªã©ã®ããŒããã©ã³ãµãŒã«éãããå¿
èŠããããŸãã
- 次ã«ãããã°ãã£ã«ã¿ãŒã®å€§ãŸããªã¯ãªãŒãã³ã°ãè¡ããŸãã
- 次ã«ããã¡ã€ã¢ãŠã©ãŒã«ã䜿çšããŠãããšãã°Cisco ASAv *ãªã©ããã现ããã¯ãªãŒãã³ã°ãè¡ããŸãã
- ãããŠããã©ã³ã¹ã®åãããã¯ãªãŒã³ãªãæ€æ»ããããã©ãã£ãã¯ãWEBã³ã³ããŒãã³ãã«è»¢éãããå¿
èŠããããŸãã
* ASAv 9.2ïŒ1ïŒã®çŸåšã®ããŒãžã§ã³ã«ã¯ãvPathãµããŒãããããŸããã ãã®å®è£
ã¯è¿ãå°æ¥ã«èšç»ãããŠããŸãã
ãµãŒãã¹ã³ã³ããŒãã³ãã®ã»ãããšé åºãç°ãªãä»ã®ãµãŒãã¹ãã§ãŒã³ã¯ããã©ãã£ãã¯ãã¹ã«æ²¿ã£ãŠçºçããå ŽåããããŸãã ãã®äŸã§ã¯ã2çªç®ã®ãµãŒãã¹ãã§ãŒã³ã¯ãã±ãããã£ã«ã¿ãŒãšãã¡ã€ã¢ãŠã©ãŒã«ã§æ§æãããŠããŸãã
2.åŸæ¥ã®æ¹æ³ã«ããåé¡ã®è§£æ±º
åŸæ¥ã®æ¹æ³ã䜿çšããŠãµãŒãã¹ãã§ãŒã³ãäœæããå Žåã1ã€ã®ãµãŒãã¹ã³ã³ããŒãã³ãããå¥ã®ãµãŒãã¹ã³ã³ããŒãã³ãã«ãã©ãã£ãã¯ããªãã€ã¬ã¯ãããåé¡ã¯ããããã¯ãŒã¯ããããžãå€æŽããããšã§è§£æ±ºãããŸãã èããããã°ããã®ãå®éã®åé¡2ããã©ã®ããã«è§£æ±ºã§ããããèŠãŠã¿ãŸãããã ãµãŒãã¹ä»®æ³ãã·ã³ãšã¢ããªã±ãŒã·ã§ã³ã®éã§ãå¯äžå¯èœãªããŒã¿è»¢éãã¹ãäœæãããŸããå³ãåç
§ããŠãã ããã 5ã
å³ 5ããããžãå€æŽããŠãµãŒãã¹ãã§ãŒã³ãäœæãããµãŒãã¹ã³ã³ããŒãã³ãã¯ãç©çãã©ãã£ãã¯ãã¹ã«çµã¿èŸŒãŸããŠããŸãã ãµãŒãã¹ãã§ãŒã³ã®è«ççãªå€æŽã¯ããããã¯ãŒã¯ããããžã®ç©ççãªå€æŽã«ã€ãªãããŸãã å³ãããããããã« 5.å
ã®åé¡ã®1ã€ã®ã¹ã€ãããš1ã€ã®VLANã®ä»£ããã«ã2ã€ã®è«çã¹ã€ããïŒå
éš/å€éšïŒãš9ã€ã®VLANããããŸãã åŸæ¥ã®ããããžææ³ã䜿çšãããšãvPathãæäŸãããã®ãšæ¯èŒããŠãããããžã®è€é床ãäœåã«ãªãããåå¥ã«èšç®ã§ããŸãã VLANã®ä»£ããã«ãVXLANããããžã®è€éãããããŸãããããã¯æžå°ããŸããã
3.èšäºã®äž»ãªè³ªå
ä»®æ³åãããã¢ããªã±ãŒã·ã§ã³ã®ãµãŒãã¹ãã§ãŒã³ã®äœæãä¿é²ããããã«ãã·ã¹ã³ã¯äœãæäŸã§ããŸããïŒ ã€ã³ãã©ã¹ãã©ã¯ãã£ã®è€éããå¢ãããã«ããã€ããŒãã€ã¶ãŒã«äŸåããªãæè»ãªããŒã«ãååŸããæ¹æ³ãæããŠãã ããã
4.èšäºã®äž»ãªçã
ã·ã¹ã³ã¯ãä»®æ³åç°å¢ã§ãšã¬ã¬ã³ããªãµãŒãã¹ãã§ãŒã³ãå®çŸããvPathãã¯ãããžãŒãæäŸããŠããŸãã vPathã¯ãCisco Nexus 1000Våæ£ä»®æ³ã¹ã€ããã®æ©èœã§ãã Cisco Nexus1000Vã¹ã€ããã¯ã
Hyper-V ã
KVM *ã
vSphereãªã©ã®ãã¹ãŠã®äž»èŠãªãã€ããŒãã€ã¶ãŒã§çŸåšå©çšå¯èœã§ãã vPathãã©ã®ããã«èšèšãããã©ã®ããã«æ§æãããã«ãã»ã«åãã©ã®ããã«èŠããããèŠãŠã¿ãŸãããã
* KVMããŒãžã§ã³5.2ïŒ1ïŒSK1ïŒ2.2ïŒã®æåã®Nexus 1000VãªãªãŒã¹ã§ã¯ãvPathããµããŒããããŠããŸããã ãã®å®è£
ã¯ãä»åŸã®ãªãªãŒã¹ã§èšç»ãããŠããŸãã
5. vPathã¢ãŒããã¯ãã£
vPathãã¯ãããžãŒã䜿çšããã«ã¯ã次ã®ãã®ãå¿
èŠã§ãã
- Cisco Nexus 1000Vä»®æ³ã¹ã€ãã
- vPathããµããŒããããµãŒãã¹ä»®æ³ãã·ã³ã
ã¢ããªã±ãŒã·ã§ã³ã®ãããã¯ãŒã¯æ¥ç¶ãæŽçããæåã®è«çã¹ããŒã ãèŠãŠã¿ãŸãããã 1.å³6ã¯ãvPathãå®è£
ãããšãã«è¡ãå¿
èŠãããå€æŽã瀺ããŠããŸãã
å³ 6 vPathã®äž»èŠãªã¢ãŒããã¯ãã£ã³ã³ããŒãã³ãäœãå€ãã£ãïŒ
- ãã€ããŒãã€ã¶ãŒã«ãæ¥ç¶ããããŠããæšæºã¹ã€ãããNexus 1000Vã¹ã€ããã«çœ®ãæããããŸããã
- æšæºã¹ã€ããããNexus 1000Vã«ç§»è¡ãããWEBãAPPãDBä»®æ³ãã·ã³ã
- ãŸããvPathããµããŒããããµãŒãã¹ä»®æ³ãã·ã³ãè¿œå ãããŸãããããã¯ããã£ã«ã¿ãªã³ã°ããã©ã³ã¹èª¿æŽããã¡ã€ã¢ãŠã©ãŒã«ã®äœ¿ãæ
£ãã圹å²ãå®è¡ããŸãã
ãã©ãã£ãã¯ãªãã¬ãŒã·ã§ã³ãå®è¡ããããã«å¿
èŠãªæ°ã®ãµãŒãã¹ãã·ã³ãè¿œå ã§ããŸãããŸãã¯ãå®éã®ã¿ã¹ã¯1ã®äŸã§æ¢ã«èŠãããã«ã1ã€ã®ãã±ãããã£ã«ã¿ãŒã§å¯Ÿå¿ã§ããŸãã è¿œå ã®ã¹ã€ããããã³æ°ããVLAN / VXLANã¯ç»å ŽããŠããŸããã ããããžçã«ã¯ãã¹ããŒã ã¯å€æŽãããŠããŸããã
Nexus 1000Vã¢ãŒããã¯ãã£å
ã«é²ã¿ãvPathã®ä»çµã¿ãç解ããåã«ãNexus 1000Vã¹ã€ããããã€ã¹ã«ã€ããŠç解ããŸãããã
å³ 7 Nexus 1000Vã¹ã€ããã¢ãŒããã¯ãã£å³ãããããããã«ãNexus 1000V 7ã2ã€ã®ã³ã³ããŒãã³ãããããŸãã
- VEMã¢ãžã¥ãŒã«ïŒä»®æ³ã€ãŒãµãããã¢ãžã¥ãŒã«ïŒ-ãã€ããŒãã€ã¶ãŒã«çµã¿èŸŒãŸãããã©ãã£ãã¯ã¹ã€ããã³ã°ãæäŸããããã°ã©ã ã³ãŒãã
- VSMã¢ãžã¥ãŒã«ïŒä»®æ³ãµãŒãã¹ã¢ãžã¥ãŒã«ïŒ-VEMã¢ãžã¥ãŒã«ã®éäžç®¡çãšæ§æãæäŸããã³ã³ããŒãã³ãã
ã¢ãŒããã¯ãã£å
ã®Nexus 1000Vã¯ãVSM-ã¹ãŒããŒãã€ã¶ïŒå¶åŸ¡ã¢ãžã¥ãŒã«ïŒãšããŠæ©èœããVEM-ã©ã€ã³ã«ãŒããšããŠæ©èœããç©ççãªã¢ãžã¥ã©ãŒã¹ã€ããã«éåžžã«äŒŒãŠããŸãã
ä»®æ³ãã·ã³ãVEMã¢ãžã¥ãŒã«ã«æ¥ç¶ããããã«äœ¿çšãããã€ã³ã¿ãŒãã§ã€ã¹ã®èšå®ã¯ãã¹ãŠãããŒããããã¡ã€ã«ãšåŒã°ããèšèšã«ä¿åãããŸãã
vPathã®æ©èœãå®èšŒããããã«ãNexus 1000Vã䜿çšããŸããNexus1000Vã¯ãå°å
ã®ç 究宀ã«å°å
¥ãããŠããŸãã ã©ãã®ä»®æ³ãã·ã³ããŒãã¯æ¬¡ã®ããã«æ§æãããŠããŸãã
port-profile type vethernet V-CONT.WEB switchport mode access switchport access vlan 21 no shutdown state enabled port-profile type vethernet V-CONT.APP switchport mode access switchport access vlan 21 no shutdown state enabled port-profile type vethernet V-CONT.DB switchport mode access switchport access vlan 21 no shutdown state enabled
ãããŸã§ã®ãšããããã¹ãŠã®ããŒãã®æ§æã¯åãã§ãã ãã ããåããŒãã«ç¬èªã®ãµãŒãã¹ãã§ãŒã³ãå®è£
ããããã3ã€ã®ç°ãªããããã¡ã€ã«ãèšå®ããŸãã
VPathã®ã³ã¢ã¢ã€ãã¢äž»ãªã¢ã€ãã¢ã¯ãæ¢åã®ãããã¯ãŒã¯ããããžããæœè±¡åããå¿
èŠãªãµãŒãã¹ã³ã³ããŒãã³ããä»ããŠãã©ãã£ãã¯ããããã¯ãŒã¯ããã€ã¹ãšãšã³ãä»®æ³ãã·ã³ã®äž¡æ¹ã«ééçã«æž¡ãããšãã§ããã¡ã«ããºã ãäœæããããšã§ãã ãã¹ãŠã®ãœãŒã¹ã®äŸã§ãä»®æ³ãã·ã³ã¯åãVLANã«ããããšã«æ³šæããŠãã ããã
vPathã¯ãããã©ã®ããã«è¡ããŸããïŒVEMã¢ãžã¥ãŒã«ã¯ãéä¿¡ããããã¹ãŠã®ããŒã¿ã¹ããªãŒã ã远跡ããŸãã ãã®ããŒã¿ã¯ãããŒããŒãã«ã«åéãããŸãã ã¹ããªãŒã ã¯ãçºä¿¡å
IPã¢ãã¬ã¹ãå®å
IPã¢ãã¬ã¹ãçºä¿¡å
ããŒããå®å
ããŒãããããã³ã«ãVLANã®6ã€ã®ãšã³ãã£ãã£ã«ãã£ãŠèå¥ãããŸãã ãããã¯ãŒã¯ã«æ°ããã¹ããªãŒã ã衚瀺ããããã³ã«ãã¹ããªãŒã ããŒãã«ã«æ°ãããšã³ããªã衚瀺ãããŸãã
å³ 8 VEMã¢ãžã¥ãŒã«ãä»ããŠéä¿¡ãããã¹ããªãŒã ã®è¡šæ°ããæ€åºãããåã¹ããªãŒã ã®æåã®ãã±ããã¯ããµãŒãã¹ããã€ã¹ã«éä¿¡ãããŸãã ãããã£ãŠãVEMã¢ãžã¥ãŒã«ã¯ãµãŒãã¹ããã€ã¹ã«è³ªåããå°ãããŸãããããæž¡ãããšãã§ãããã©ããã ãã±ããããµãŒãã¹ããã€ã¹ã«è»¢éããããšãvPathã«ãã»ã«åãããããããŒãè¿œå ãããŸãã
å³ 9 vPathããžãã¯ãµãŒãã¹ããã€ã¹ã¯ãã»ãã¥ãªãã£ãã¢ããªã±ãŒã·ã§ã³ããŸãã¯ãããã¯ãŒã¯ç®¡çè
ã«ãã£ãŠæ§æãããã«ãŒã«ãšããªã·ãŒã«åŸã£ãŠããã±ãŒãžãæ€æ»ããŸãã 次ã«ããµãŒãã¹ã¯vPathã«ãã»ã«åã䜿çšããŠåãæ¹æ³ã§ãœãŒã¹ããã±ãŒãžãVEMã¢ãžã¥ãŒã«ã«è¿ããŸããvPathã«ãã»ã«åã«ã¯ãçããå«ãŸããŠããŸããã¯ãããã±ãããããã«è»¢éã§ããŸãã
ãµãŒãã¹ããã€ã¹ããããã±ãŒãžãåãåãVEMã¢ãžã¥ãŒã«ïŒ
- å¿çãã¹ããªãŒã ããŒãã«ã®Actionãã£ãŒã«ãã«æžã蟌ã¿ãŸãã
- Forwardã³ãã³ããActionãã£ãŒã«ãã«ãã£ãå ŽåãvPathã«ãã»ã«åãªãã§ãã±ãããå®å
ããŒãã«éä¿¡ããŸãã
- [ãªãã€ã¬ã¯ã]ã³ãã³ãã[ã¢ã¯ã·ã§ã³]ãã£ãŒã«ãã«ããå ŽåãvPathããããŒã䜿çšããŠããã±ãŒãžããã§ãŒã³ã®äžã«ç§»åããŸãã
- Dropã³ãã³ããActionãã£ãŒã«ãã«ãã£ãå Žåããã±ãããç Žæ£ããŸãã
Cisco VSGãã±ãããã£ã«ã¿ã®å Žåã®ããã«ããµãŒãã¹ã®æ§è³ªããµãŒãã¹èŠçŽ ãä»ããäžå®ã®ããŒã¿éä¿¡ãå¿
èŠãšããªãå ŽåãåŸç¶ã®ãã¹ãŠã®ãã±ããã¯ããã£ãã·ã¥ã«èšé²ããããµãŒãã¹ããã€ã¹ããã®å¿çã䜿çšããŠãµãŒãã¹èŠçŽ ããã€ãã¹ããŠéä¿¡ãããŸãã
以äžã¯ãã¢ããªã±ãŒã·ã§ã³ã³ã³ããŒãã³ãéã§ããããã£ã«ã¿ãªã³ã°ãæŽçããå¿
èŠãããå Žåã®åçŽåãããvPathã¢ã«ãŽãªãºã ã§ãã
å³ Cisco VSGã®10 vPathã¢ã«ãŽãªãºã 6. vPathã®æ§æ
ããã§ã¯ãã©ããã³ãã§ã®vPathã¡ã«ããºã ã®å®éçãªã»ããã¢ããã«ç§»ããŸãããã 次ã®ããããžãå®è£
ããŸããã
å³ 11å®éšå°ã®ããããžãŒæåã«ããã©ãã£ãã¯ã®ãªãã€ã¬ã¯ãå
ãšãªããµãŒãã¹ããŒããç»é²ããŸãã
vservice node ASA-1 type asa ip address 10.0.21.1 adjacency l2 vlan 21 fail-mode close vservice node VSG-1 type vsg ip address 10.0.21.254 adjacency l2 vlan 21 fail-mode close
Nexus 1000Vãç»é²æžã¿ã¢ãžã¥ãŒã«ããèªèããããã®ã¹ããŒã¿ã¹ãAliveã§ããããšã確èªããŸãã
N1K
以åã«ç»é²ãã2ã€ã®ã¢ãžã¥ãŒã«ã®ãµãŒãã¹ãã§ãŒã³ãäœæããŸãã
vservice path WEB-CHAIN node VSG-1 profile WEB_SP order 1 node ASA-1 profile TEST-EDGE-SP order 3
Nexus 1000VããµãŒãã¹ãã§ãŒã³ããèŠããããšã確èªããŸãã
N1K
ASAãšVSGã§æ§æããããµãŒãã¹ãã§ãŒã³ããWEBä»®æ³ãã·ã³ã®ãããã¯ãŒã¯ãžã®æ¥ç¶ãå®çŸ©ãããããã¡ã€ã«ã«æ¥ç¶ããŸãã
port-profile type vethernet V-CONT.WEB org root/tenant-01 vservice path WEB-CHAIN
Nexus 1000Vãèšå®ããããã§ãŒã³ããèŠããããšã確èªããŸãã
N1K
ããã§ãAPPããã³DBä»®æ³ãã·ã³ã«éä¿¡ããããã©ãã£ãã¯ããã±ãããã£ã«ã¿ãŒãä»ããŠéä¿¡ãããããšã確èªããŸãã
port-profile type vethernet V-CONT.APP org root/tenant-01 vservice node VSG-1 profile APP_SP port-profile type vethernet V-CONT.DB org root/tenant-01 vservice node VSG-1 profile DB_SP
ãã®çµæãå®éšå®€ã§è€æ°ã®æ§æã©ã€ã³ã䜿çšããŠã次ã®ãã©ãã£ãã¯è»¢éã¹ããŒã ãVLAN = 21å
ã«å®è£
ãããŸããã åæã«ãæ°ããè£å©ã¹ã€ãããŸãã¯VLANãäœæããŸããã§ããã å³ å³12ã¯ãå€æãããµãŒãã¹ãã§ãŒã³ã瀺ããŠããŸãã
å³ 12äŸã§æ§æããããµãŒãã¹ãã§ãŒã³æ瀺ãããæ§æãããããããã«ããµãŒãã¹èŠçŽ ãããã«åãããŠãããã¯ãŒã¯ããããžãå€æŽããå¿
èŠãããå Žåã«è¡ãå¿
èŠã®ããå€æŽãšæ¯èŒãããšãéåžžã«ç°¡åã§ãã ããäžåºŠåŒ·èª¿ããŸã-å
ã®ããããžã¯å€æŽãããŠããŸããã
7. vPathã«ãã»ã«å
vPathã¯ããœãŒã¹ããã±ãŒãžã次ã®ããã«ããããŒã«ããã±ãŒãžåããŸãã
å³ 13 vPathã«ãã»ã«åãµãŒãã¹ä»®æ³ãã·ã³ãåãã»ã°ã¡ã³ãã«ããå Žåããã©ã³ã¹ããŒãL2ããããŒãå
ã®ãã±ããã«è¿œå ãããŸãã ãµãŒãã¹ãã·ã³ãå¥ã®ã»ã°ã¡ã³ãã«ããå Žåããã©ã³ã¹ããŒãL3ããããŒãè¿œå ãããŸãã å
ã®ãã¬ãŒã ã®æ¬äœã¯å€æŽãããŸããã ãã©ã³ã¹ããŒãããããŒãšãœãŒã¹ããã±ãŒãžã®éã«ã¯ãvPathããããŒããããŸãã
vPathããããŒã¯ã3ã€ã®å¿
é ã³ã³ããŒãã³ãã§æ§æãããŠããŸãã
- ããŒã¹ããããŒ
- ãµãŒãã¹ããããŒ
- ãã©ãããã©ãŒã ããããŒã
å³ 14 vPathããããŒããŒã¹ããããŒïŒ
- ãããã³ã«ããŒãžã§ã³ãšãµãŒãã¹ãã§ãŒã³èå¥åãå«ãŸããŸãã
ãµãŒãã¹ãã§ãŒã³èªäœã¯ããããŒã«å«ãŸããªãããšã«æ³šæããŠãã ããã äžæã®èå¥åã®ã¿ãååšããŸãã ãã§ãŒã³ã«é¢ããæ
å ±ã¯ãç¹å¥ãªããŒãã«ãµãŒãã¹ããŒãã«ã«ä¿åãããŸãããµãŒãã¹ããŒãã«ã¯ãFlowTableãšåæ§ããã¹ãŠã®VEMã¢ãžã¥ãŒã«ã«ãããŸãã ãã®ããŒãã«ã¯ãã·ã¹ãã ææè
ãæ§æãå€æŽãããšãã«VSMã¢ãžã¥ãŒã«ããéäžçã«ããã°ã©ã ãããŸãã
ãµãŒãã¹ããããŒïŒ
- vPathã®äœ¿çšæžã¿ããŒãžã§ã³ã®æ¿èªæé ãå®è£
ããŸãã
- ãµãŒãã¹ããã€ã¹äžã®ãããã¡ã€ã«èå¥åã«é¢ããæ
å ±ã転éããŸãã
- VEMã¢ãžã¥ãŒã«ãšãµãŒãã¹ããã€ã¹éã®èŠæ±/å¿çæé ãå®è£
ããŸãã
ãã©ãããã©ãŒã ããããŒïŒ
- vPathãå®è£
ãããã©ãããã©ãŒã ã«åºæã®æ
å ±ã転éããŸãã
- éä¿¡å
ããŒãèå¥åãå«ãŸããŠããŸã
- VLANãVXLANã®ã»ã°ã¡ã³ãã¿ã€ãã®èå¥åãå«ãŸããŸãã
- ã»ã°ã¡ã³ãèå¥åãå«ã-VLANçªå·ãVXLANçªå·ã
VEMã¢ãžã¥ãŒã«ãä»®æ³ãã·ã³ããåä¿¡ãããµãŒãã¹ã¢ãžã¥ãŒã«ã«ãªãã€ã¬ã¯ãããããã±ãŒãžã次ã«ç€ºããŸãã åŸè
ã¯ããã®ãã±ããããµãŒãã¹ãã§ãŒã³ã«æ²¿ã£ãŠããã«éä¿¡ã§ãããã©ããã決å®ããå¿
èŠããããŸãã ãµãŒãã¹ããããŒã§ã¯ãREDIRECTé¢æ°ãå®è¡ãããŠããããšãããããŸãã ãµãŒãã¹ã¢ãžã¥ãŒã«ã¯ãL2ãä»ããŠVEMã¢ãžã¥ãŒã«ã«æ¥ç¶ãããŸãã
å³ 15 VEMããµãŒãã¹ã¢ãžã¥ãŒã«ã«éä¿¡ãããã±ãã次ã®ã¹ã¯ãªãŒã³ã·ã§ããã¯ãããã±ãŒãžã®æ€æ»åŸã«VEMã¢ãžã¥ãŒã«ããµãŒãã¹ã¢ãžã¥ãŒã«ããåãåã£ãããã±ãŒãžã§ãã Service Context Headerãã£ãŒã«ãã«ã¯RESPONSEèå¥åãå«ãŸããACTIONãã£ãŒã«ãã¯PERMITã«èšå®ãããŸããããã¯ããã®ãã±ãããæž¡ãããšãã§ããããšãæå³ããŸãã
å³ 16 VEMãæ€æ»åŸã«ãµãŒãã¹ã¢ãžã¥ãŒã«ããåä¿¡ãããã±ãã8.çµè«
ãã®èšäºã§ã¯ãããŒã¿ã»ã³ã¿ãŒã§ãµãŒãã¹ãã§ãŒã³ãäœæããåé¡ã«ã€ããŠèª¬æããŸããã ä»®æ³åã€ã³ãã©ã¹ãã©ã¯ãã£ã®ææè
ã®å€ãã¯ãã¢ããªã±ãŒã·ã§ã³ãå±éãããšãã«ãã®åé¡ã«çŽé¢ããŠããŸãã ãããã¯ãŒã¯ããããžãå€æŽããŠãµãŒãã¹ããã€ã¹ã«åãããŠåé¡ã解決ãããšããããã¯ãŒã¯æ§æãããè€éã«ãªããŸãã ããããNexus 1000Vã¹ã€ãããå±éããããã€ãã®ç°¡åãªã³ãã³ãã§æ§æãããvPathãã¯ãããžãŒã䜿çšããŠããã®åé¡ã解決ããç°¡åãªæ¹æ³ãèŠãŸããã