SlideShare a Scribd company logo
Process for joining
Fernando López,
Cloud Architect, TID
fernando.lopezaguilar@telefonica.com, @flopezaguilar
Agenda
• Geographical Partition
• XIFI Federation Process
• Deployment Steps
• Cloud portal
• Keystone Proxy
• MD-VPN
FIWARE Lab Federation Process
3
• Manages the introduction of a new node in the FIWARE Lab federation, an important step
of this phase is the deployment.
• Deployment of a new node in FIWARE Lab stands before the node production phase.
• In order to successfully finish the deployment of a new node, some constraints has to be
satisfied:
– Connection to GEANT (or P2P internet VPN as backup solution).
– Hardware procurement.
• The deployment ends when the FIWARE Lab node is on production (when a node in on
production is not a new node anymore !) and is managed by FIWARE Lab support
Deployment Steps
Deployment has been partitioned as follows:
• Connectivity to FIWARE Lab Core
Backbone: MD-VPN connectivity
through the local NREN.
• HW procurement: It means hardware
procured and deployed with the base
operating system.
• Cloud Infrastructure Installation: this
is basically the OpenStack installation
(included in ITBox).
• Cloud Management (GE): This step is
inside ITBox, otherwise a manually
installation of the needed GEs is
required.
• Monitoring: This step is inside ITBox,
otherwise a manually installation of the
needed Nagios plugins is required.
• FIWARE Lab Joining: This is
essentially the installation and
configuration of the Keystone Proxy
module.
Note: Connectivity to FIWARE Lab
backbone is mandatory for Monitoring and
FIWARE Lab Joining but not for Cloud
Installation and Management.
4
Cloud Portal - Integration
• Provides the federation portal that allows to manage
FIWARE Lab platforms in federated mode.
• It requires to create user accounts on FIWARE Lab.
– https://account.lab.fi-ware.org/
• Other requirements:
– MD-VPN connectivity (firstly it could be connected without
this functionality).
– Keystone Proxy connectivity.
– DCRM GE installed (otherwise a simple OpenStack
installation should be enough).
5
Keystone Proxy - Integration
• The keystone proxy provide the access to federation IdM.
• Actually one instance of Keystone Proxy is running in the
Spanish node.
• Requirements
– Update the catalogue service (impacts all nodes).
– Configure the Firewall policies to allow communications with
remote nodes.
6
Keystone Proxy - Integration
• Impacts
– Data on the local keystone (users, tenants, …) is unused.
– VMs and their configuration remains but are not using the
configuration parameters of the FIWARE Lab portal.
– Horizon component should be stopped. It could be up and
running but we encourage to stop it in order to prevent
possible.
7
MD-VPN - Integration
• Provides the federation connectivity across the nodes
– Privacy
– Security
– Traffic Engineering on the backbone possible
• MD-VPN is created on top of the NREN connection
– Typically delivered on a VLAN
– Dedicated VRF should be used
– BGP is used to exchange routing across the nodes
8
MD-VPN - Integration
• The setup must be discussed with local NRENs
• Federation IP addressing plan
– per node configuration available on public XiFi documents
Deliverable 5.2
– must be implemented on the network in which all the
federation related hosts are connected
• It is possible to provide backup solutions based on P2P
VPN.
– important delay of deployment of the NREN
– if the NREN do not provide MD-VPN service
– the Infrastructure can’t get NREN connectivity
9
10
Thanks!Thanks!

More Related Content

PPTX
FIWARE Lab architecture, an open point to start the installation of a new region
PDF
Join FIWARE Lab
PPTX
Federating new FIWARE Lab nodes
PPTX
Setting up your virtual infrastructure using FIWARE Lab Cloud
PPTX
Using fiware lab cloud
PPTX
FIWARE and FIWARE Lab service offer
PPTX
Fiware ops demo meeting (health) (06 07-15)
PDF
Setting up your virtual infrastructure using fi-lab cloud
FIWARE Lab architecture, an open point to start the installation of a new region
Join FIWARE Lab
Federating new FIWARE Lab nodes
Setting up your virtual infrastructure using FIWARE Lab Cloud
Using fiware lab cloud
FIWARE and FIWARE Lab service offer
Fiware ops demo meeting (health) (06 07-15)
Setting up your virtual infrastructure using fi-lab cloud

What's hot (20)

PPTX
How to deploy spark instance using ansible 2.0 in fiware lab v2
PPTX
Simple docker hosting in FIWARE Lab
PPTX
What is FIWARE Lab
PPTX
Intro to the FIWARE Lab
PDF
OWF12/Open Standards for Cloud - Cs owf
PPTX
Network Monitoring and Analytics
PDF
3 Years of Puppet at Cisco: The Secrets to Our Success - PuppetConf 2013
PPTX
Exploring the Final Frontier of Data Center Orchestration: Network Elements -...
PDF
Holistic Security for OpenStack Clouds
PDF
Cisco Automation with Puppet and onePK - PuppetConf 2013
PPTX
CENTRAL MANAGEMENT OF NETWORK AND CALL SERVICES
PPTX
NetDevOps for the Network Dude: How to get started with API's, Ansible and Py...
PDF
Configuration Management Tools on NX-OS
PDF
DevNetCreate - ACI and Kubernetes Integration
PDF
Automating with NX-OS: Let's Get Started!
PPT
Calico and ubuntu
PDF
Marcelo Perazolo, Lead Software Architect, IBM Corporation - Monitoring a Pow...
PDF
V mware nsx_network_virtualization_open_stack
 
PPTX
How to deploy spark instance using ansible 2.0 in fiware lab v2
Simple docker hosting in FIWARE Lab
What is FIWARE Lab
Intro to the FIWARE Lab
OWF12/Open Standards for Cloud - Cs owf
Network Monitoring and Analytics
3 Years of Puppet at Cisco: The Secrets to Our Success - PuppetConf 2013
Exploring the Final Frontier of Data Center Orchestration: Network Elements -...
Holistic Security for OpenStack Clouds
Cisco Automation with Puppet and onePK - PuppetConf 2013
CENTRAL MANAGEMENT OF NETWORK AND CALL SERVICES
NetDevOps for the Network Dude: How to get started with API's, Ansible and Py...
Configuration Management Tools on NX-OS
DevNetCreate - ACI and Kubernetes Integration
Automating with NX-OS: Let's Get Started!
Calico and ubuntu
Marcelo Perazolo, Lead Software Architect, IBM Corporation - Monitoring a Pow...
V mware nsx_network_virtualization_open_stack
 
Ad

Similar to Process for joining to the FIWARE Lab (8)

PDF
OpenStackDay - XIFI Federation
PPTX
XIFI: how we did federate different FI infrastructures
PDF
fiware-lab-dev-6.pdf
PDF
fiware-lab-dev-5.pdf
PPTX
Fiware testbed from hardware to openstack
PDF
FIWARE Tech Summit - FIWARE-based Smart City Platforms
PPTX
Setting up your virtual infrastructure using FIWARE Lab Cloud
PDF
How our Cloudy Mindsets Approached Physical Routers
OpenStackDay - XIFI Federation
XIFI: how we did federate different FI infrastructures
fiware-lab-dev-6.pdf
fiware-lab-dev-5.pdf
Fiware testbed from hardware to openstack
FIWARE Tech Summit - FIWARE-based Smart City Platforms
Setting up your virtual infrastructure using FIWARE Lab Cloud
How our Cloudy Mindsets Approached Physical Routers
Ad

More from Fernando Lopez Aguilar (20)

PDF
Introduction to FIWARE technology
PDF
DW2020 Data Models - FIWARE Platform
PPTX
FIWARE and Smart Data Models
PPTX
How to deploy a smart city platform?
PPTX
Building the Smart City Platform on FIWARE Lab
PDF
Data Modeling with NGSI, NGSI-LD
PDF
FIWARE and Robotics
PDF
Big Data and Machine Learning with FIWARE
PDF
Operational Dashboards with FIWARE WireCloud
PDF
Creating a Context-Aware solution, Complex Event Processing with FIWARE Perseo
PDF
FIWARE Identity Management and Access Control
PDF
Data persistency (draco, cygnus, sth comet, quantum leap)
PDF
How to debug IoT Agents
PDF
Core Context Management
PDF
What is an IoT Agent
PDF
FIWARE Overview
PDF
Overview of the FIWARE Ecosystem
PPTX
Cloud and Big Data in the agriculture sector
PDF
Berlin OpenStack Summit'18
PPTX
Context Information Management in IoT enabled smart systems - the basics
Introduction to FIWARE technology
DW2020 Data Models - FIWARE Platform
FIWARE and Smart Data Models
How to deploy a smart city platform?
Building the Smart City Platform on FIWARE Lab
Data Modeling with NGSI, NGSI-LD
FIWARE and Robotics
Big Data and Machine Learning with FIWARE
Operational Dashboards with FIWARE WireCloud
Creating a Context-Aware solution, Complex Event Processing with FIWARE Perseo
FIWARE Identity Management and Access Control
Data persistency (draco, cygnus, sth comet, quantum leap)
How to debug IoT Agents
Core Context Management
What is an IoT Agent
FIWARE Overview
Overview of the FIWARE Ecosystem
Cloud and Big Data in the agriculture sector
Berlin OpenStack Summit'18
Context Information Management in IoT enabled smart systems - the basics

Recently uploaded (20)

PDF
Encapsulation_ Review paper, used for researhc scholars
PPTX
A Presentation on Artificial Intelligence
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
Encapsulation theory and applications.pdf
PPTX
Cloud computing and distributed systems.
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Approach and Philosophy of On baking technology
PDF
cuic standard and advanced reporting.pdf
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Empathic Computing: Creating Shared Understanding
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
Electronic commerce courselecture one. Pdf
PDF
CIFDAQ's Market Insight: SEC Turns Pro Crypto
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
NewMind AI Weekly Chronicles - August'25 Week I
Encapsulation_ Review paper, used for researhc scholars
A Presentation on Artificial Intelligence
The Rise and Fall of 3GPP – Time for a Sabbatical?
Encapsulation theory and applications.pdf
Cloud computing and distributed systems.
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Reach Out and Touch Someone: Haptics and Empathic Computing
Approach and Philosophy of On baking technology
cuic standard and advanced reporting.pdf
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Empathic Computing: Creating Shared Understanding
Dropbox Q2 2025 Financial Results & Investor Presentation
Advanced methodologies resolving dimensionality complications for autism neur...
Diabetes mellitus diagnosis method based random forest with bat algorithm
Per capita expenditure prediction using model stacking based on satellite ima...
Electronic commerce courselecture one. Pdf
CIFDAQ's Market Insight: SEC Turns Pro Crypto
Spectral efficient network and resource selection model in 5G networks
NewMind AI Weekly Chronicles - August'25 Week I

Process for joining to the FIWARE Lab

  • 1. Process for joining Fernando López, Cloud Architect, TID fernando.lopezaguilar@telefonica.com, @flopezaguilar
  • 2. Agenda • Geographical Partition • XIFI Federation Process • Deployment Steps • Cloud portal • Keystone Proxy • MD-VPN
  • 3. FIWARE Lab Federation Process 3 • Manages the introduction of a new node in the FIWARE Lab federation, an important step of this phase is the deployment. • Deployment of a new node in FIWARE Lab stands before the node production phase. • In order to successfully finish the deployment of a new node, some constraints has to be satisfied: – Connection to GEANT (or P2P internet VPN as backup solution). – Hardware procurement. • The deployment ends when the FIWARE Lab node is on production (when a node in on production is not a new node anymore !) and is managed by FIWARE Lab support
  • 4. Deployment Steps Deployment has been partitioned as follows: • Connectivity to FIWARE Lab Core Backbone: MD-VPN connectivity through the local NREN. • HW procurement: It means hardware procured and deployed with the base operating system. • Cloud Infrastructure Installation: this is basically the OpenStack installation (included in ITBox). • Cloud Management (GE): This step is inside ITBox, otherwise a manually installation of the needed GEs is required. • Monitoring: This step is inside ITBox, otherwise a manually installation of the needed Nagios plugins is required. • FIWARE Lab Joining: This is essentially the installation and configuration of the Keystone Proxy module. Note: Connectivity to FIWARE Lab backbone is mandatory for Monitoring and FIWARE Lab Joining but not for Cloud Installation and Management. 4
  • 5. Cloud Portal - Integration • Provides the federation portal that allows to manage FIWARE Lab platforms in federated mode. • It requires to create user accounts on FIWARE Lab. – https://account.lab.fi-ware.org/ • Other requirements: – MD-VPN connectivity (firstly it could be connected without this functionality). – Keystone Proxy connectivity. – DCRM GE installed (otherwise a simple OpenStack installation should be enough). 5
  • 6. Keystone Proxy - Integration • The keystone proxy provide the access to federation IdM. • Actually one instance of Keystone Proxy is running in the Spanish node. • Requirements – Update the catalogue service (impacts all nodes). – Configure the Firewall policies to allow communications with remote nodes. 6
  • 7. Keystone Proxy - Integration • Impacts – Data on the local keystone (users, tenants, …) is unused. – VMs and their configuration remains but are not using the configuration parameters of the FIWARE Lab portal. – Horizon component should be stopped. It could be up and running but we encourage to stop it in order to prevent possible. 7
  • 8. MD-VPN - Integration • Provides the federation connectivity across the nodes – Privacy – Security – Traffic Engineering on the backbone possible • MD-VPN is created on top of the NREN connection – Typically delivered on a VLAN – Dedicated VRF should be used – BGP is used to exchange routing across the nodes 8
  • 9. MD-VPN - Integration • The setup must be discussed with local NRENs • Federation IP addressing plan – per node configuration available on public XiFi documents Deliverable 5.2 – must be implemented on the network in which all the federation related hosts are connected • It is possible to provide backup solutions based on P2P VPN. – important delay of deployment of the NREN – if the NREN do not provide MD-VPN service – the Infrastructure can’t get NREN connectivity 9
  • 10. 10