SlideShare a Scribd company logo
2
Most read
3
Most read
4
Most read
Project Calico
SECURE NETWORKING FOR THE CLOUD NATIVE ERA
What is SDN?
 Software-Defined Networking (SDN)
 Software-defined networking (SDN) is an architecture purporting to be
dynamic, manageable, cost-effective, and adaptable, seeking to be
suitable for the high-bandwidth, dynamic nature of today's applications.
SDN architectures decouple network control and forwarding functions,
enabling network control to become directly programmable and the
underlying infrastructure to be abstracted from applications and
network services.
 Wikipedia
Why Calico?
 Calico provides secure network connectivity for containers and
virtual machine workloads.
 Calico creates and manages a flat layer 3 network, assigning each
workload a fully routable IP address. Workloads can communicate
without IP encapsulation or network address translation for bare
metal performance, easier troubleshooting, and better
interoperability. In environments that require an overlay, Calico uses
IP-in-IP tunneling or can work with other overlay networking such as
flannel.
Why Calico?
 Simple, remove the complexity, traditional SDNs are complex,
making them hard to deploy and troubleshoot. Calico removes that
complexity, with a simplified networking model designed for the
demands of today's cloud-native applications.
 Calico also provides dynamic enforcement of network security rules.
Using Calico’s simple policy language, you can achieve fine-
grained control over communications between containers, virtual
machine workloads, and bare metal host endpoints.
Why Calico?
 Scalable
 From dev/test to enterprise deployment
 Unlike SDNs that require a central controller, limiting scalability, Calico is
built on a fully distributed, scale-out architecture. So it scales smoothly
from a single developer laptop to large enterprise deployments.
Why Calico?
 Secure
 Policy-based micro-segmentation
 Defining secure network policy used to be reserved for skilled network
engineers. Calico's powerful micro-segmentation capabilities build on a
simple policy language that naturally expresses the developer's intent.
Features
 Scalable, distributed control plane
 We turned to the latest cloud techniques pioneered by web-scale
operators such as Google. Making use of the same raft consensus
algorithm found in systems like Kubernetes, we achieved consistent, fast
convergence times (typically a few milliseconds, even at scale) with
high levels of fault tolerance.
Features
 Policy-driven network security
 Perimeter security (edge firewalls) has been demonstrated time and
again to be insufficient. That's why we built a security layer into Calico
that enables developers and operations staff to easily define with fine
granularity which connections are allowed, and which are not. These
rules implement and extend the Kubernetes Network Policy API – but
also work on all other platforms supported by Calico.
Features
 No overlay required
 Wouldn't it be nice if your virtual networking solution adapted to the
underlying infrastructure, using an overlay only when required? That's
what Calico does. In most environments, Calico simply routes packets
from the workload onto the underlying IP network without any extra
headers. Where an overlay is needed – for example when crossing
availability zone boundaries in public cloud –
Features
 Integrated with all major cloud platforms
 Support for industry standard APIs such as Container Network Interface
(CNI), Neutron, and libnetwork, enables Calico to plug into a wide
variety of cloud orchestrators including:
 Kubernetes
 Mesos
 Docker
 OpenStack
 and various vendor derivatives and distributions
Features
 Widely deployed, and proven at scale
 From a multi-exabyte public storage cloud delivering 99.99999999999%
(that's 13 9's!) durability, to multi-tenant public cloud services powered
by Calico+OpenStack, to the Kubernetes platform that delivers Yahoo!
services to Japan, Calico has established a reputation for enterprise-
grade performance and reliability.
 http://www.virtustream.com/cloud/virtustream-storage-cloud
 http://blog.kubernetes.io/2016/10/kubernetes-and-openstack-at-yahoo-japan.html
Getting Started with Calico?
 Calico with Kubernetes
 Calico with Mesos
 Calico with DC/OS
 Calico with Docker
 Calico with OpenStack
 Calico with rkt
 Host protection
 Proposal date for workshop and which one?
Questions & Contact?
 https://hazzim.io
 Hazzim@Hazzim.io
 Hazzim.Anaya@Gmail.com
 @HazzimAnaya

More Related Content

PPTX
OpenStack Introduction
PPT
Drive into calico architecture
PDF
Oracle RAC 19c: Best Practices and Secret Internals
PDF
Kubernetes
PDF
What Is OpenStack | OpenStack Tutorial For Beginners | OpenStack Training | E...
PPTX
An Intrudction to OpenStack 2017
PDF
What's Coming in CloudStack 4.19
PDF
OpenShift 4, the smarter Kubernetes platform
OpenStack Introduction
Drive into calico architecture
Oracle RAC 19c: Best Practices and Secret Internals
Kubernetes
What Is OpenStack | OpenStack Tutorial For Beginners | OpenStack Training | E...
An Intrudction to OpenStack 2017
What's Coming in CloudStack 4.19
OpenShift 4, the smarter Kubernetes platform

What's hot (20)

PDF
Deep dive into Kubernetes Networking
PDF
[OpenStack 하반기 스터디] Docker를 이용한 OpenStack 가상화
PDF
Google Anthos - Azure Stack - AWS Outposts :Comparison
PDF
Autoscaling Kubernetes
PPTX
Docker Container Security
PDF
PDF
Ceph issue 해결 사례
PPTX
Kubernetes Networking 101
PDF
Openstack 101
PDF
Kubernetes Concepts And Architecture Powerpoint Presentation Slides
PDF
Cloud Computing Using OpenStack
PDF
Kubernetes Introduction
PDF
CloudStack - Top 5 Technical Issues and Troubleshooting
PPT
Oracle GoldenGate
PPTX
OpenStack Architecture and Use Cases
PPTX
Kubernetes for Beginners: An Introductory Guide
PPTX
Azure kubernetes service (aks)
PPTX
Introduction to kubernetes
PDF
Testing Persistent Storage Performance in Kubernetes with Sherlock
PPTX
OpenStackユーザ会資料 - Masakari
Deep dive into Kubernetes Networking
[OpenStack 하반기 스터디] Docker를 이용한 OpenStack 가상화
Google Anthos - Azure Stack - AWS Outposts :Comparison
Autoscaling Kubernetes
Docker Container Security
Ceph issue 해결 사례
Kubernetes Networking 101
Openstack 101
Kubernetes Concepts And Architecture Powerpoint Presentation Slides
Cloud Computing Using OpenStack
Kubernetes Introduction
CloudStack - Top 5 Technical Issues and Troubleshooting
Oracle GoldenGate
OpenStack Architecture and Use Cases
Kubernetes for Beginners: An Introductory Guide
Azure kubernetes service (aks)
Introduction to kubernetes
Testing Persistent Storage Performance in Kubernetes with Sherlock
OpenStackユーザ会資料 - Masakari
Ad

Similar to Project calico - introduction (20)

PDF
Marvell QLogic 2600 Series 16Gb Gen 5 FC HBAs Double Performance and Flexibility
PDF
cross cloud inter-operability with iPaaS and serverless for Telco cloud SDN/NFV
PDF
Why modern cloud infrastructure require automation
PDF
Netronome Corporate Brochure
PPTX
Solution Demonstration Overview - Steve Wallo
PPTX
DEVNET-1008 Private or Public or Hybrid ? Which Cloud Should I choose?
PPTX
Simple, Scalable and Secure Networking for Data Centers with Project Calico
PDF
Netronome Corporate Brochure
PDF
OpenStack for EDGE computing
PDF
Top 9 DevOps Technologies Every Engineer Should Learn in 2025.pdf
PDF
The evolution of data center network fabrics
PDF
Royal Saudi Air Force - RSAF
PPTX
Cloudstack conference open_contrail v4
PDF
ONP 2.1 platforms maximize VNF interoperability
PDF
Nokia_Delivering_virtual_services_faster_with_Nokia_CloudBand_Case_Study_EN.pdf
PPTX
Cisco Generic Session with the products q
PDF
OVNC 2015-Software-Defined Networking: Where Are We Today?
PDF
e6c952d11fcd811dac5d0dd086e23790_Dell technology.pdf
PDF
Multicloud as the Next Generation of Cloud Infrastructure
PPTX
From COBOL to Kubernetes: A 250 Year Old Bank's Cloud Native Journey
Marvell QLogic 2600 Series 16Gb Gen 5 FC HBAs Double Performance and Flexibility
cross cloud inter-operability with iPaaS and serverless for Telco cloud SDN/NFV
Why modern cloud infrastructure require automation
Netronome Corporate Brochure
Solution Demonstration Overview - Steve Wallo
DEVNET-1008 Private or Public or Hybrid ? Which Cloud Should I choose?
Simple, Scalable and Secure Networking for Data Centers with Project Calico
Netronome Corporate Brochure
OpenStack for EDGE computing
Top 9 DevOps Technologies Every Engineer Should Learn in 2025.pdf
The evolution of data center network fabrics
Royal Saudi Air Force - RSAF
Cloudstack conference open_contrail v4
ONP 2.1 platforms maximize VNF interoperability
Nokia_Delivering_virtual_services_faster_with_Nokia_CloudBand_Case_Study_EN.pdf
Cisco Generic Session with the products q
OVNC 2015-Software-Defined Networking: Where Are We Today?
e6c952d11fcd811dac5d0dd086e23790_Dell technology.pdf
Multicloud as the Next Generation of Cloud Infrastructure
From COBOL to Kubernetes: A 250 Year Old Bank's Cloud Native Journey
Ad

Recently uploaded (20)

PDF
How Creative Agencies Leverage Project Management Software.pdf
PDF
Adobe Illustrator 28.6 Crack My Vision of Vector Design
PDF
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
PDF
Which alternative to Crystal Reports is best for small or large businesses.pdf
PDF
Design an Analysis of Algorithms II-SECS-1021-03
PPTX
L1 - Introduction to python Backend.pptx
PDF
Audit Checklist Design Aligning with ISO, IATF, and Industry Standards — Omne...
PDF
Addressing The Cult of Project Management Tools-Why Disconnected Work is Hold...
PDF
2025 Textile ERP Trends: SAP, Odoo & Oracle
PPTX
Online Work Permit System for Fast Permit Processing
PDF
Design an Analysis of Algorithms I-SECS-1021-03
PDF
AI in Product Development-omnex systems
PPTX
Odoo POS Development Services by CandidRoot Solutions
PDF
System and Network Administraation Chapter 3
PPTX
Operating system designcfffgfgggggggvggggggggg
PDF
Digital Strategies for Manufacturing Companies
PPTX
history of c programming in notes for students .pptx
PDF
Why TechBuilder is the Future of Pickup and Delivery App Development (1).pdf
PPTX
ISO 45001 Occupational Health and Safety Management System
PDF
Flood Susceptibility Mapping Using Image-Based 2D-CNN Deep Learnin. Overview ...
How Creative Agencies Leverage Project Management Software.pdf
Adobe Illustrator 28.6 Crack My Vision of Vector Design
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
Which alternative to Crystal Reports is best for small or large businesses.pdf
Design an Analysis of Algorithms II-SECS-1021-03
L1 - Introduction to python Backend.pptx
Audit Checklist Design Aligning with ISO, IATF, and Industry Standards — Omne...
Addressing The Cult of Project Management Tools-Why Disconnected Work is Hold...
2025 Textile ERP Trends: SAP, Odoo & Oracle
Online Work Permit System for Fast Permit Processing
Design an Analysis of Algorithms I-SECS-1021-03
AI in Product Development-omnex systems
Odoo POS Development Services by CandidRoot Solutions
System and Network Administraation Chapter 3
Operating system designcfffgfgggggggvggggggggg
Digital Strategies for Manufacturing Companies
history of c programming in notes for students .pptx
Why TechBuilder is the Future of Pickup and Delivery App Development (1).pdf
ISO 45001 Occupational Health and Safety Management System
Flood Susceptibility Mapping Using Image-Based 2D-CNN Deep Learnin. Overview ...

Project calico - introduction

  • 1. Project Calico SECURE NETWORKING FOR THE CLOUD NATIVE ERA
  • 2. What is SDN?  Software-Defined Networking (SDN)  Software-defined networking (SDN) is an architecture purporting to be dynamic, manageable, cost-effective, and adaptable, seeking to be suitable for the high-bandwidth, dynamic nature of today's applications. SDN architectures decouple network control and forwarding functions, enabling network control to become directly programmable and the underlying infrastructure to be abstracted from applications and network services.  Wikipedia
  • 3. Why Calico?  Calico provides secure network connectivity for containers and virtual machine workloads.  Calico creates and manages a flat layer 3 network, assigning each workload a fully routable IP address. Workloads can communicate without IP encapsulation or network address translation for bare metal performance, easier troubleshooting, and better interoperability. In environments that require an overlay, Calico uses IP-in-IP tunneling or can work with other overlay networking such as flannel.
  • 4. Why Calico?  Simple, remove the complexity, traditional SDNs are complex, making them hard to deploy and troubleshoot. Calico removes that complexity, with a simplified networking model designed for the demands of today's cloud-native applications.  Calico also provides dynamic enforcement of network security rules. Using Calico’s simple policy language, you can achieve fine- grained control over communications between containers, virtual machine workloads, and bare metal host endpoints.
  • 5. Why Calico?  Scalable  From dev/test to enterprise deployment  Unlike SDNs that require a central controller, limiting scalability, Calico is built on a fully distributed, scale-out architecture. So it scales smoothly from a single developer laptop to large enterprise deployments.
  • 6. Why Calico?  Secure  Policy-based micro-segmentation  Defining secure network policy used to be reserved for skilled network engineers. Calico's powerful micro-segmentation capabilities build on a simple policy language that naturally expresses the developer's intent.
  • 7. Features  Scalable, distributed control plane  We turned to the latest cloud techniques pioneered by web-scale operators such as Google. Making use of the same raft consensus algorithm found in systems like Kubernetes, we achieved consistent, fast convergence times (typically a few milliseconds, even at scale) with high levels of fault tolerance.
  • 8. Features  Policy-driven network security  Perimeter security (edge firewalls) has been demonstrated time and again to be insufficient. That's why we built a security layer into Calico that enables developers and operations staff to easily define with fine granularity which connections are allowed, and which are not. These rules implement and extend the Kubernetes Network Policy API – but also work on all other platforms supported by Calico.
  • 9. Features  No overlay required  Wouldn't it be nice if your virtual networking solution adapted to the underlying infrastructure, using an overlay only when required? That's what Calico does. In most environments, Calico simply routes packets from the workload onto the underlying IP network without any extra headers. Where an overlay is needed – for example when crossing availability zone boundaries in public cloud –
  • 10. Features  Integrated with all major cloud platforms  Support for industry standard APIs such as Container Network Interface (CNI), Neutron, and libnetwork, enables Calico to plug into a wide variety of cloud orchestrators including:  Kubernetes  Mesos  Docker  OpenStack  and various vendor derivatives and distributions
  • 11. Features  Widely deployed, and proven at scale  From a multi-exabyte public storage cloud delivering 99.99999999999% (that's 13 9's!) durability, to multi-tenant public cloud services powered by Calico+OpenStack, to the Kubernetes platform that delivers Yahoo! services to Japan, Calico has established a reputation for enterprise- grade performance and reliability.  http://www.virtustream.com/cloud/virtustream-storage-cloud  http://blog.kubernetes.io/2016/10/kubernetes-and-openstack-at-yahoo-japan.html
  • 12. Getting Started with Calico?  Calico with Kubernetes  Calico with Mesos  Calico with DC/OS  Calico with Docker  Calico with OpenStack  Calico with rkt  Host protection  Proposal date for workshop and which one?
  • 13. Questions & Contact?  https://hazzim.io  Hazzim@Hazzim.io  Hazzim.Anaya@Gmail.com  @HazzimAnaya