Upgrade to Pro — share decks privately, control downloads, hide ads and more …

オープンソースで学ぶ PrivateCloudネットワーク技術

Sponsored · SiteGround - Reliable hosting with speed, security, and support you can count on.
Avatar for ttsubo ttsubo
June 18, 2020

オープンソースで学ぶ PrivateCloudネットワーク技術

Avatar for ttsubo

ttsubo

June 18, 2020
Tweet

More Decks by ttsubo

Other Decks in Technology

Transcript

  1.  &OUFSQSJTF$MPVE͸ɺ1SJWBUF$MPVE؀ڥΛϢʔβ ఏڙ͢ΔΫϥ΢υαʔϏεͰ͢  ͦͷωοτϫʔΫٕज़ͷ؊͸ɺ  $-04ωοτϫʔΫΛ׆༻ͨ͠%$ωοτϫʔΫߏங  ϑϨΩγϒϧͳςφϯτ/8؀ڥͷఏڙ 

    %$ωοτϫʔΫ΁ͷςφϯτ/8ऩ༰ͷࣗಈԽ ʹͳΓ·͢ ·ͣ͸ɺ༧උ஌ࣝͱͯ͠ɺैདྷͷ*1ωοτϫʔΫٕज़Λཧղ͓ͯ͠ ͘͜ͱΛ͓קΊ͠·͢ ৄࡉʹ͍ͭͯ͸ɺʮ#(1.1-471/ͷ͓ษڧࢿྉʯΛࢀরͷ͜ͱ ຊࢿྉΛಡΉʹ͋ͨͬͯ
  2.  -71/ &71/7Y-"/ ͷಛ௃<> 4QJOF 4QJOF -FBG -FBG -FBG ʜ

    -FBG-FBGؒͰ.1J#(1Λ׆༻͢Δ͜ͱʹΑΓ YYاۀ ZZاۀ [[اۀ .1J#(1 ɾ.1J#(1ʹΑΔ."$ΞυϨεʗ7Y-"/ࣝผ৘ใ 7/* ഑෍͕Մೳ ɾ."$73'΁ͷ."$ΞυϨε৘ใͷ஫ೖՄ൱͸ɺ3PVUF5BSHFUͰ൑ఆ ɾ1&$&ؒͰͷ.VMUJIPNJOHߏ੒͕Մೳ "4
  3.  -71/ &71/7Y-"/ ͷಛ௃<̏> 4QJOF 4QJOF -FBG -FBG -FBG ʜ

    -FBG-FBGؒͰͷϢʔβ௨৴Λ࣮ݱ͢ΔͨΊʹ͸ɺ75&1ؒΛ ϫϯϗοϓͰసૹͰ͖Δτϯωϧٕज़͕ඞཁͱͳΔ 75&1 75&1 7Y-"/ ɾ௨ৗͷ6%1ύέοτ্Ͱɺ-ϑϨʔϜ͕సૹͰ͖ΔΑ͏ʹ7Y-"/ద༻ ɾ7Y-"/ߏஙʹ͸ɺ.1-4ͷΑ͏ͳγάφϦϯάϓϩτίϧ͸ෆཁʂ ɾ4QJOFଆͰ͸௨ৗͷ*1ϧʔςΟϯάΛ࣮ࢪ͢Ε͹Α͍
  4.  ͍ͬΆ͏ɺ-71/ #(1.1-4 ͷಛ௃ -%1౳ͷγάφϦϯάϓϩτίϧ׆༻ʹΑΔ .1-4τϯωϧͷ֬อ͕ඞཁ 041'౳ͷѼઌ৘ใͷ఻ୡ͕ඞཁ .1#(1ͷѼઌ৘ใͷ఻ୡ͕ඞཁ ˔ಉҰ"4಺Ͱͷ*1ૄ௨ੑΛ֬อ͢Δඞཁ͕͋Δ ˔1&ʙ1&ؒͰͷγϯάϧϗοϓʹΑΔ౸ୡੑΛ

    ֬อ͢Δඞཁ͕͋Δ ˔-71/ͰϚϧνςφϯτઃఆΛ੍ޚ͢Δඞཁ͕͋Δ ଟछଟ༷ͳϓϩτίϧΛ׆༻͢ΔͨΊɺઃఆ͕൥ࡶʹͳΓ΍͍͢ ো֐ൃੜ࣌ʹɺࠜຊݪҼಛఆʹ͸๛෋ͳٕज़ख़࿅͕ඞཁ
  5.  &OUFSQSJTF$MPVEOFUXPSLFNVMBUJPO "4 4QJOF 4QJOF -FBG -FBG 3PVUF 3FqFDUPS -FBG

    "4 "4 "4 "4    $-04OFUXPSL VTJOH&71/  %PDLFSίϯςφͰɺ&OUFSQSJTF$MPVEͷڍಈΛ͓खܰʹମݧͰ͖Δ಺੡πʔϧ IUUQTCJUCVDLFUPSHUUTVCPFDMQMVTOFUXPSLFNVMBUJPOTSDNBTUFS
  6.  1SJWBUF$MPVEωοτϫʔΫͰͷಈ࡞֬ೝ $-04ωοτϫʔΫͷଘࡏΛҙࣝͤͣʹɺاۀωοτϫʔΫͷχʔζʹ ͋ͬͨଟஈαϒωοτߏ੒ͷ1SJWBUF$MPVEΛ഑උͯ͠ɺ֤αϒωο τͰͷϧʔςΟϯάઃఆʹΑΓɺΤϯυΤϯυ௨৴͕ՄೳͱͳΔ J#(1 "4 "4 F#(1 F#(1

       7331   .BTUFS CBDLVQ Ϋϥ΢υج൫ 6CVOUV GSS JOFUHX JOFUHX GSS 6CVOUV # ping -c 5 192.168.2.2 -I 192.168.4.2 PING 192.168.2.2 (192.168.2.2) from 192.168.4.2 : 56(84) bytes of data. 64 bytes from 192.168.2.2: icmp_seq=1 ttl=61 time=1.00 ms 64 bytes from 192.168.2.2: icmp_seq=2 ttl=61 time=0.832 ms 64 bytes from 192.168.2.2: icmp_seq=3 ttl=61 time=0.795 ms 64 bytes from 192.168.2.2: icmp_seq=4 ttl=61 time=0.826 ms 64 bytes from 192.168.2.2: icmp_seq=5 ttl=61 time=0.834 ms --- 192.168.2.2 ping statistics --- 5 packets transmitted, 5 received, 0% packet loss, time 3999ms rtt min/avg/max/mdev = 0.795/0.858/1.005/0.079 ms
  7. 0QFO4UBDLʹΑΔςφϯτωοτϫʔΫߏஙΠϝʔδ  Compute Node Network Node br-ex qbrXXX qbrXXX qbrXXX

    qvoXXX qvbXXX qvoXXX qvbXXX qvoXXX qvbXXX OpenvSwitch EOTNBTR OpenvSwitch iptables iptables VM1 VM2 VM3 tap XX tap XX tap XX tap XXX tap XXX qr-XXX qr-XXX qg-XXX qg-XXX br-tun br-int br-tun br-int VxLAN Tunnel tag 3 tag 4 VNI: xxx VNI: yyy tag 2 tag 2 tag 1 tag 1 tag 3 VM2 L2SW L2SW DHCP ϧʔλ VM1 L2SW L2SW ϧʔλ VM3 DHCP ext_net اۀxxxͷςφϯτߏ੒ اۀyyyͷςφϯτߏ੒ EOTNBTR SBEWE SBEWE /FVUSPO͸ɺ$PNQVUFOPEF্ʹ഑උ͞Εͨςφϯτ7.͕ɺ ֎෦ωοτϫʔΫͱ௨৴Ͱ͖Δʹ֤छઃఆΛߦ͏໾ׂΛ୲͏
  8.  ͳΜͱɺQJOH͕ࣦഊ͢Δ Ѽઌ º %SPQ ૹ৴ݩ CE3#ping 192.168.201.1 Type escape

    sequence to abort. Sending 5, 100-byte ICMP Echos to 192.168.201.1, timeout is 2 seconds: ..... Success rate is 0 percent (0/5) CE3#traceroute 192.168.201.1 Type escape sequence to abort. Tracing the route to 192.168.201.1 VRF info: (vrf in name/id, vrf out name/id) 1 192.168.103.1 28 msec 24 msec 28 msec 2 172.100.1.1 180 msec 60 msec 72 msec 3 192.168.0.1 84 msec 96 msec 100 msec 4 * * * 5 * * * ..(snip)
  9. Ѽઌ ૹ৴ݩ  CE3#ping 192.168.201.1 Type escape sequence to abort.

    Sending 5, 100-byte ICMP Echos to 192.168.201.1, timeout is 2 seconds: !!!!! Success rate is 100 percent (5/5), round-trip min/avg/max = 184/244/284 ms CE3#traceroute 192.168.201.1 Type escape sequence to abort. Tracing the route to 192.168.201.1 VRF info: (vrf in name/id, vrf out name/id) 1 192.168.103.1 8 msec 36 msec 28 msec 2 172.100.1.1 48 msec 28 msec 96 msec 3 192.168.0.1 200 msec 148 msec 124 msec 4 * * * 5 172.16.1.1 244 msec 144 msec 200 msec 6 192.168.101.1 [AS 65001] 252 msec 168 msec * ࣮ࡍɺQJOH௨৴ͯ͠ΈΔͱ ੒ޭ͢ΔΑ͏ʹͳͬͨ