Core Network Services

15
Core Network Services Robin Tasker 10 May 2013

description

Core Network Services. Robin Tasker 10 May 2013. Network Performance. Network Performance. The Way We Were. LHC Tier 1 Centre. Atlas 2*10G LHC OPN Primary and Secondary 2*10G Janet Primary and Secondary. UKLR. A. F/W. SAR. RAL Site. And the Strategic Shortcomings. - PowerPoint PPT Presentation

Transcript of Core Network Services

Page 1: Core Network Services

Core Network Services

Robin Tasker

10 May 2013

Page 2: Core Network Services

Network Performance

Page 3: Core Network Services

Network Performance

Page 4: Core Network Services

SAR

UKLR

F/W

A

Atlas2*10G LHC OPN

Primary and Secondary

2*10G JanetPrimary and Secondary

LHC Tier 1Centre

RAL Site

The Way We Were

Page 5: Core Network Services

And the Strategic Shortcomings

Page 6: Core Network Services

The Network Technical Design Authority (TDA) is responsible for establishing and maintaining the overall technical architecture of the Core Network so that it might be developed and operated in a manner which is consistent with the strategic goals of the STFC, and remains fit for purpose in the light of the evolving demands of its user base.

The TDA reports to the IT Operations Board (ITOB) and to the Information Management & Technology Strategy and Oversight Committee (IMTSOC).

A Technical Design Authority for the Network

Page 7: Core Network Services

Requirements of a National Laboratory

Page 8: Core Network Services

Commercial ISPs JANET LightpathHSIC JANET

(Campus and) Site Access and Distribution

Site Security Infrastructure

Internal Site Distribution

General RAL Site Science & Facilities

Access

Tenants

Security

Visitors

Access Access

SecuritySecurity

A New Network Architecture

Page 9: Core Network Services

Commercial ISPs JANET LightpathHSIC JANET

(Campus and) Site Access and Distribution

Site Security Infrastructure

Internal Site Distribution

General RAL Site Science & Facilities

Access

Tenants

Security

Visitors

Access Access

SecuritySecurity

FY2011-12 (£350k)1. Janet connectivity increased to resilient 30Gb2. RAL site geographically resilient3. New external core routers operating in a resilient

configuration using a 80Gb ring operational June 20124. “Big” Data centric “clouds” being migrated to the new

infrastructure: LHC Tier 2 migrated, JASIM/CEMS in advanced stages, British Atmospheric Data Centre and LHC Tier 1 started

A New Network Architecture

Implementing a New Network

Page 10: Core Network Services

Commercial ISPs JANET LightpathHSIC JANET

(Campus and) Site Access and Distribution

Site Security Infrastructure

Internal Site Distribution

General RAL Site Science & Facilities

Access

Tenants

Security

Visitors

Access Access

SecuritySecurity

FY2011-12 (£350k)1. Janet connectivity increased to resilient 30Gb2. RAL site geographically resilient3. New external core routers operating in a resilient

configuration using a 80Gb ring operational June 20124. “Big” Data centric “clouds” being migrated to the new

infrastructure: LHC Tier 2 migrated, JASIM/CEMS in advanced stages, British Atmospheric Data Centre and LHC Tier 1 started

FY2012/13 (£200k)1. RAL Firewall re-procurement to provide 40Gb throughput in

HA configuration 2. Fortinet Fortigate-3240C firewall selected and procured3. Implementation planning underway with target operational

service in summer 2013

Implementing a New Network

A New Network Architecture

Page 11: Core Network Services

Commercial ISPs JANET LightpathHSIC JANET

(Campus and) Site Access and Distribution

Site Security Infrastructure

Internal Site Distribution

General RAL Site Science & Facilities

Access

Tenants

Security

Visitors

Access Access

SecuritySecurity

FY2011-12 (£350k)1. Janet connectivity increased to resilient 30Gb2. RAL site geographically resilient3. New external core routers operating in a resilient

configuration using a 80Gb ring operational June 20124. “Big” Data centric “clouds” being migrated to the new

infrastructure: LHC Tier 2 migrated, JASIM/CEMS in advanced stages, British Atmospheric Data Centre and LHC Tier 1 started

FY2012/13 (£200k)1. RAL Firewall re-procurement to provide 40Gb throughput in

HA configuration 2. Fortinet Fortigate-3240C firewall selected and procured3. Implementation planning underway with target operational

service in summer 2013

FY2013/14 (£130k)1. Focus: internal RAL network: to dis-aggregate complex

configurations; to provide a simple IP routed environment2. Review (and replace) Nortel stacked switches and routers to

provide appropriate, i.e. modern, technology to level performance needs and based on reliability assessment

3. Introduce better instrumentation through the network

Implementing a New Network

A New Network Architecture

Page 12: Core Network Services

T1

F/W

S1

S2

LHC Tier 1Centre

Atlas30G Janet Primary

10G LHC OPN Primary

R8930G Janet Secondary

10G LHC OPN Secondary

R2 R4

R3R1

D1

Data CentricCloud

Department

C

Facility

F

A

F/W

Department

A Design for Life

Page 13: Core Network Services

Reorganising Service Delivery

Page 14: Core Network Services
Page 15: Core Network Services

JANET CommercialLHCOPN KEY TO ROUTED NETWORK

RAL CORE NETWORK

8 February 2013

TDA-2012-XX

ISIC

CLF

CLF

SSTD

PPD

RC@H

DLS Admin

ISISAtlas

JANET BCE Legacy STFC Innovations

STFC Tenants

JASMINCEMS

BADCLHC Tier 2LHC Tier 1

DLS Science

External Core

Internal Core

Commercial

LHC Tier 1

LHC Tier 2

BADC

JASMIN / CEMS

ISIC

SSTD

RC@H

ISIS

DLS Admin

CICT

PPD

DMZ

DLS Science

CLF

JANET

LHCOPN

Router

ISIC

Location

R89

JASMINOPN’s

JASMIN OPN’s

Mapping the New Landscape