SlideShare une entreprise Scribd logo
1  sur  6
Télécharger pour lire hors ligne
Best Common Practices
for IXPs management
infrastructure
Franck Simon – France IX Services
fsimon@franceix.net
BCP for IXPs –
Management infrastructure
•  Monitoring	
  and	
  management	
  :	
  	
  
– Dedicated	
  infrastructure	
  (DMZ	
  or	
  VLAN	
  dedicated	
  
to	
  management)	
  
– OOB	
  management	
  
•  Console	
  access	
  
•  SSH	
  access	
  and	
  VPNs	
  
– In-­‐band	
  management	
  
	
  
=>	
  Secure/restrict	
  access	
  to	
  your	
  equipment	
  
2	
  
BCP for IXPs – Monitoring
•  Deploy	
  servers/monitoring	
  tools	
  
•  Elements	
  to	
  monitor:	
  
–  Detect	
  any	
  chance	
  of	
  MAC	
  address	
  on	
  the	
  IXP	
  
(ARPwatch…)	
  
–  Chassis:	
  
•  CPU/processor	
  (including	
  linecards	
  CPU	
  when	
  
appropriate)	
  
•  Memory	
  usage	
  
•  Fans	
  
•  Power	
  units	
  
	
   3	
  
•  Elements	
  to	
  monitor:	
  
–  Ports	
  (both	
  members	
  and	
  backbone	
  ports):	
  
•  Ports	
  status	
  changes	
  
•  CRC,	
  input	
  errors…	
  
•  Unicast	
  packets,	
  non	
  Unicast	
  packets,	
  average	
  packets	
  
size	
  …	
  
•  OpXcal	
  levels	
  and	
  opXcs	
  temperatures	
  
•  In/out	
  traffic	
  
=>	
  Don’t	
  forget	
  to	
  also	
  monitor	
  your	
  monitoring	
  infrastructure,	
  
not	
  only	
  the	
  IXP	
  infrastructure	
  !	
  
4	
  
BCP for IXPs – Monitoring
Cf.	
  Euro-­‐IX	
  document	
  :	
  	
  
h^ps://www.euro-­‐ix.net/documents/1391-­‐euro-­‐ix-­‐
ixp-­‐bcops-­‐221014-­‐pdf?download=yes	
  
5	
  
BCP for IXPs
 
	
  
QuesXons	
  ???	
  
6	
  
BCP for IXPs

Contenu connexe

Tendances

Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric Vanderburg
Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric VanderburgComputer Architecture - Hardware - Lesson 8A - I/O Devices - Eric Vanderburg
Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric VanderburgEric Vanderburg
 
Control Unit Design
Control Unit DesignControl Unit Design
Control Unit DesignVinit Raut
 
ARM stacks, subroutines, Cortex M3, LPC 214X
ARM  stacks, subroutines, Cortex M3, LPC 214XARM  stacks, subroutines, Cortex M3, LPC 214X
ARM stacks, subroutines, Cortex M3, LPC 214XKarthik Vivek
 
Block ciphers & public key cryptography
Block ciphers & public key cryptographyBlock ciphers & public key cryptography
Block ciphers & public key cryptographyRAMPRAKASHT1
 
Introduction to embedded computing and arm processors
Introduction to embedded computing and arm processorsIntroduction to embedded computing and arm processors
Introduction to embedded computing and arm processorsRAMPRAKASHT1
 
Control Units : Microprogrammed and Hardwired:control unit
Control Units : Microprogrammed and Hardwired:control unitControl Units : Microprogrammed and Hardwired:control unit
Control Units : Microprogrammed and Hardwired:control unitabdosaidgkv
 
Pic architecture done by Priyanga KR
Pic architecture done by Priyanga KRPic architecture done by Priyanga KR
Pic architecture done by Priyanga KRPriyangaKR1
 
HKG15-107: ACPI Power Management on ARM64 Servers (v2)
HKG15-107: ACPI Power Management on ARM64 Servers (v2)HKG15-107: ACPI Power Management on ARM64 Servers (v2)
HKG15-107: ACPI Power Management on ARM64 Servers (v2)Linaro
 
Programmable Logic Controller
Programmable Logic ControllerProgrammable Logic Controller
Programmable Logic ControllerSatyamShivansh
 
Timer
TimerTimer
TimerAisu
 
introduction to embedded systems part 2
introduction to embedded systems part 2introduction to embedded systems part 2
introduction to embedded systems part 2Hatem Abd El-Salam
 
BLOCK DIAGRAM OF HARDWIRED CONTROL UNIT
BLOCK DIAGRAM OF HARDWIRED CONTROL UNITBLOCK DIAGRAM OF HARDWIRED CONTROL UNIT
BLOCK DIAGRAM OF HARDWIRED CONTROL UNITRahul Sharma
 
PIC-18 Microcontroller
PIC-18 MicrocontrollerPIC-18 Microcontroller
PIC-18 MicrocontrollerASHISH RANJAN
 

Tendances (20)

Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric Vanderburg
Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric VanderburgComputer Architecture - Hardware - Lesson 8A - I/O Devices - Eric Vanderburg
Computer Architecture - Hardware - Lesson 8A - I/O Devices - Eric Vanderburg
 
Control Unit Design
Control Unit DesignControl Unit Design
Control Unit Design
 
ARM stacks, subroutines, Cortex M3, LPC 214X
ARM  stacks, subroutines, Cortex M3, LPC 214XARM  stacks, subroutines, Cortex M3, LPC 214X
ARM stacks, subroutines, Cortex M3, LPC 214X
 
Lecture 03 basics of pic
Lecture 03 basics of picLecture 03 basics of pic
Lecture 03 basics of pic
 
Block ciphers & public key cryptography
Block ciphers & public key cryptographyBlock ciphers & public key cryptography
Block ciphers & public key cryptography
 
CPU Architecture
CPU ArchitectureCPU Architecture
CPU Architecture
 
Introduction to embedded computing and arm processors
Introduction to embedded computing and arm processorsIntroduction to embedded computing and arm processors
Introduction to embedded computing and arm processors
 
Control unit
Control unitControl unit
Control unit
 
Control Units : Microprogrammed and Hardwired:control unit
Control Units : Microprogrammed and Hardwired:control unitControl Units : Microprogrammed and Hardwired:control unit
Control Units : Microprogrammed and Hardwired:control unit
 
Plant Operation System
Plant Operation SystemPlant Operation System
Plant Operation System
 
Pic architecture done by Priyanga KR
Pic architecture done by Priyanga KRPic architecture done by Priyanga KR
Pic architecture done by Priyanga KR
 
HKG15-107: ACPI Power Management on ARM64 Servers (v2)
HKG15-107: ACPI Power Management on ARM64 Servers (v2)HKG15-107: ACPI Power Management on ARM64 Servers (v2)
HKG15-107: ACPI Power Management on ARM64 Servers (v2)
 
Amba bus
Amba busAmba bus
Amba bus
 
Programmable Logic Controller
Programmable Logic ControllerProgrammable Logic Controller
Programmable Logic Controller
 
MarsBoard - NXP IMX6 Processor
MarsBoard - NXP IMX6 ProcessorMarsBoard - NXP IMX6 Processor
MarsBoard - NXP IMX6 Processor
 
Timer
TimerTimer
Timer
 
introduction to embedded systems part 2
introduction to embedded systems part 2introduction to embedded systems part 2
introduction to embedded systems part 2
 
Parallel processing and pipelining
Parallel processing and pipeliningParallel processing and pipelining
Parallel processing and pipelining
 
BLOCK DIAGRAM OF HARDWIRED CONTROL UNIT
BLOCK DIAGRAM OF HARDWIRED CONTROL UNITBLOCK DIAGRAM OF HARDWIRED CONTROL UNIT
BLOCK DIAGRAM OF HARDWIRED CONTROL UNIT
 
PIC-18 Microcontroller
PIC-18 MicrocontrollerPIC-18 Microcontroller
PIC-18 Microcontroller
 

Similaire à IXP Best Common Practices trilogy - for the Infrastructure

Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...
Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...
Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...DefconRussia
 
Introduction to the CAN-HG augmentation of CAN for security and performance
Introduction to the CAN-HG augmentation of CAN for security and performanceIntroduction to the CAN-HG augmentation of CAN for security and performance
Introduction to the CAN-HG augmentation of CAN for security and performanceKenTindell
 
2010 02 instrumentation_and_runtime_measurement
2010 02 instrumentation_and_runtime_measurement2010 02 instrumentation_and_runtime_measurement
2010 02 instrumentation_and_runtime_measurementPTIHPA
 
Functional Areas of Network Management Configuration Management
Functional Areas of Network Management Configuration ManagementFunctional Areas of Network Management Configuration Management
Functional Areas of Network Management Configuration Managementjeronimored
 
Introduction to Nokia RNC
Introduction to Nokia RNCIntroduction to Nokia RNC
Introduction to Nokia RNCAhmed Nabeeh
 
IX Best Practices by Tay Chee Yong
IX Best Practices by Tay Chee YongIX Best Practices by Tay Chee Yong
IX Best Practices by Tay Chee YongMyNOG
 
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.Atollic
 
BonFIRE: features, sites and tools
BonFIRE: features, sites and toolsBonFIRE: features, sites and tools
BonFIRE: features, sites and toolsBonFIRE
 
Sept 2017 boot process
Sept 2017   boot processSept 2017   boot process
Sept 2017 boot processshahin raj
 
Polycom Automation Framework - Polycom
Polycom Automation Framework - PolycomPolycom Automation Framework - Polycom
Polycom Automation Framework - Polycomqualisystems
 
Securing management, control & data plane
Securing management, control & data planeSecuring management, control & data plane
Securing management, control & data planeNetProtocol Xpert
 
Packet Analysis - Course Technology Computing Conference
Packet Analysis - Course Technology Computing ConferencePacket Analysis - Course Technology Computing Conference
Packet Analysis - Course Technology Computing ConferenceCengage Learning
 
Network protocols and vulnerabilities
Network protocols and vulnerabilitiesNetwork protocols and vulnerabilities
Network protocols and vulnerabilitiesG Prachi
 
SOC Peripheral Components & SOC Tools
SOC Peripheral Components & SOC ToolsSOC Peripheral Components & SOC Tools
SOC Peripheral Components & SOC ToolsA B Shinde
 
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...Julio César Carrasquel
 

Similaire à IXP Best Common Practices trilogy - for the Infrastructure (20)

Cache profiling on ARM Linux
Cache profiling on ARM LinuxCache profiling on ARM Linux
Cache profiling on ARM Linux
 
ARM AAE - Architecture
ARM AAE - ArchitectureARM AAE - Architecture
ARM AAE - Architecture
 
Opmanager Workshop - Middle East
Opmanager Workshop - Middle EastOpmanager Workshop - Middle East
Opmanager Workshop - Middle East
 
Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...
Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...
Nikita Abdullin - Reverse-engineering of embedded MIPS devices. Case Study - ...
 
Introduction to the CAN-HG augmentation of CAN for security and performance
Introduction to the CAN-HG augmentation of CAN for security and performanceIntroduction to the CAN-HG augmentation of CAN for security and performance
Introduction to the CAN-HG augmentation of CAN for security and performance
 
2010 02 instrumentation_and_runtime_measurement
2010 02 instrumentation_and_runtime_measurement2010 02 instrumentation_and_runtime_measurement
2010 02 instrumentation_and_runtime_measurement
 
Functional Areas of Network Management Configuration Management
Functional Areas of Network Management Configuration ManagementFunctional Areas of Network Management Configuration Management
Functional Areas of Network Management Configuration Management
 
Introduction to Nokia RNC
Introduction to Nokia RNCIntroduction to Nokia RNC
Introduction to Nokia RNC
 
IX Best Practices by Tay Chee Yong
IX Best Practices by Tay Chee YongIX Best Practices by Tay Chee Yong
IX Best Practices by Tay Chee Yong
 
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.
Advanced debugging on ARM Cortex devices such as STM32, Kinetis, LPC, etc.
 
BonFIRE: features, sites and tools
BonFIRE: features, sites and toolsBonFIRE: features, sites and tools
BonFIRE: features, sites and tools
 
IPv6 Transition Considerations for ISPs
IPv6 Transition Considerations for ISPsIPv6 Transition Considerations for ISPs
IPv6 Transition Considerations for ISPs
 
WEEK6_COMPUTER_ORGANIZATION.pptx
WEEK6_COMPUTER_ORGANIZATION.pptxWEEK6_COMPUTER_ORGANIZATION.pptx
WEEK6_COMPUTER_ORGANIZATION.pptx
 
Sept 2017 boot process
Sept 2017   boot processSept 2017   boot process
Sept 2017 boot process
 
Polycom Automation Framework - Polycom
Polycom Automation Framework - PolycomPolycom Automation Framework - Polycom
Polycom Automation Framework - Polycom
 
Securing management, control & data plane
Securing management, control & data planeSecuring management, control & data plane
Securing management, control & data plane
 
Packet Analysis - Course Technology Computing Conference
Packet Analysis - Course Technology Computing ConferencePacket Analysis - Course Technology Computing Conference
Packet Analysis - Course Technology Computing Conference
 
Network protocols and vulnerabilities
Network protocols and vulnerabilitiesNetwork protocols and vulnerabilities
Network protocols and vulnerabilities
 
SOC Peripheral Components & SOC Tools
SOC Peripheral Components & SOC ToolsSOC Peripheral Components & SOC Tools
SOC Peripheral Components & SOC Tools
 
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...
Introduction on STM32 Platform and Presentation of a Water-Level & Temperatur...
 

Plus de France IX Services

Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...
Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...
Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...France IX Services
 
Hurricane Electric - Ipv6 implementation in Europe
Hurricane Electric - Ipv6 implementation in EuropeHurricane Electric - Ipv6 implementation in Europe
Hurricane Electric - Ipv6 implementation in EuropeFrance IX Services
 
France-IX - Presentation for the general meeting 2012
France-IX - Presentation for the general meeting 2012France-IX - Presentation for the general meeting 2012
France-IX - Presentation for the general meeting 2012France IX Services
 
Extreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDNExtreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDNFrance IX Services
 
Case Study France-IX InterCloud
Case Study France-IX InterCloudCase Study France-IX InterCloud
Case Study France-IX InterCloudFrance IX Services
 
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...France IX Services
 
White Paper on Peering in France
White Paper on Peering in FranceWhite Paper on Peering in France
White Paper on Peering in FranceFrance IX Services
 
Etude cas France-IX InterCloud
Etude cas France-IX InterCloudEtude cas France-IX InterCloud
Etude cas France-IX InterCloudFrance IX Services
 
Le livre Blanc du Peering en France
Le livre Blanc du Peering en FranceLe livre Blanc du Peering en France
Le livre Blanc du Peering en FranceFrance IX Services
 
Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011France IX Services
 
Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011France IX Services
 
Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011France IX Services
 
LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011France IX Services
 
Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011France IX Services
 

Plus de France IX Services (20)

Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...
Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...
Africa Internet Summit 2013 - France-IX - challenges of setting up a new IXP ...
 
TouIX
TouIXTouIX
TouIX
 
Top-IX
Top-IX Top-IX
Top-IX
 
Hurricane Electric - Ipv6 implementation in Europe
Hurricane Electric - Ipv6 implementation in EuropeHurricane Electric - Ipv6 implementation in Europe
Hurricane Electric - Ipv6 implementation in Europe
 
France-IX - Presentation for the general meeting 2012
France-IX - Presentation for the general meeting 2012France-IX - Presentation for the general meeting 2012
France-IX - Presentation for the general meeting 2012
 
Extreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDNExtreme networks - Multi-Pathing L2 & SDN
Extreme networks - Multi-Pathing L2 & SDN
 
Case Study France-IX InterCloud
Case Study France-IX InterCloudCase Study France-IX InterCloud
Case Study France-IX InterCloud
 
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
Résilience de l'internet, point de vue de l'opérateur de point d'échange Fran...
 
White Paper on Peering in France
White Paper on Peering in FranceWhite Paper on Peering in France
White Paper on Peering in France
 
Etude cas France-IX InterCloud
Etude cas France-IX InterCloudEtude cas France-IX InterCloud
Etude cas France-IX InterCloud
 
Le livre Blanc du Peering en France
Le livre Blanc du Peering en FranceLe livre Blanc du Peering en France
Le livre Blanc du Peering en France
 
Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011Barracuda - AG France IX - Juin-2011
Barracuda - AG France IX - Juin-2011
 
Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011Brocade - AG France IX - 30 Juin 2011
Brocade - AG France IX - 30 Juin 2011
 
France IX - AG Juin 2011
France IX - AG Juin 2011France IX - AG Juin 2011
France IX - AG Juin 2011
 
France IX - AG Septembre 2011
France IX - AG Septembre 2011France IX - AG Septembre 2011
France IX - AG Septembre 2011
 
Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011Integra - AG France IX - 30 Septembre 2011
Integra - AG France IX - 30 Septembre 2011
 
LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011LU-CIX - AG France IX - 30 Septembre 2011
LU-CIX - AG France IX - 30 Septembre 2011
 
Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011Cube optics - AG France IX - 30 Septembre 2011
Cube optics - AG France IX - 30 Septembre 2011
 
France IX - FRnOG 18
France IX - FRnOG 18France IX - FRnOG 18
France IX - FRnOG 18
 
France IX - Presentation
France IX - PresentationFrance IX - Presentation
France IX - Presentation
 

IXP Best Common Practices trilogy - for the Infrastructure

  • 1. Best Common Practices for IXPs management infrastructure Franck Simon – France IX Services fsimon@franceix.net
  • 2. BCP for IXPs – Management infrastructure •  Monitoring  and  management  :     – Dedicated  infrastructure  (DMZ  or  VLAN  dedicated   to  management)   – OOB  management   •  Console  access   •  SSH  access  and  VPNs   – In-­‐band  management     =>  Secure/restrict  access  to  your  equipment   2  
  • 3. BCP for IXPs – Monitoring •  Deploy  servers/monitoring  tools   •  Elements  to  monitor:   –  Detect  any  chance  of  MAC  address  on  the  IXP   (ARPwatch…)   –  Chassis:   •  CPU/processor  (including  linecards  CPU  when   appropriate)   •  Memory  usage   •  Fans   •  Power  units     3  
  • 4. •  Elements  to  monitor:   –  Ports  (both  members  and  backbone  ports):   •  Ports  status  changes   •  CRC,  input  errors…   •  Unicast  packets,  non  Unicast  packets,  average  packets   size  …   •  OpXcal  levels  and  opXcs  temperatures   •  In/out  traffic   =>  Don’t  forget  to  also  monitor  your  monitoring  infrastructure,   not  only  the  IXP  infrastructure  !   4   BCP for IXPs – Monitoring
  • 5. Cf.  Euro-­‐IX  document  :     h^ps://www.euro-­‐ix.net/documents/1391-­‐euro-­‐ix-­‐ ixp-­‐bcops-­‐221014-­‐pdf?download=yes   5   BCP for IXPs
  • 6.     QuesXons  ???   6   BCP for IXPs