Feeds

Google exposes its Andromeda software-defined networking

Search giant plugs cloud customers into its thrumming network arteries

Beginner's guide to SSL certificates

Google is exposing the beating heart of its distributed infrastructure to developers of its cloud services.

The company announced on Wednesday that developers using the us-central1-b and europe-west1-a zones of its Google Compute Engine infrastructure-as-a-service will now be running their apps directly on top of Andromeda, Google's network virtualization technology.

"Andromeda is a Software Defined Networking (SDN)-based substrate for our network virtualization efforts," explained Google distinguished engineer Amin Vahdat in a blog post on Wednesday. "It is the orchestration point for provisioning, configuring, and managing virtual networks and in-network packet processing."

The Andromeda technology allows Google to offer developers "distributed-denial-of-service (DDoS) protection, transparent service load balancing, access control lists, and firewalls" along with bandwidth provisioning, virtual machine migration, and increased performance regarding network latency.

AndromedaGoogle

Andromeda: the fundamental networking substrate of Google's cloud

"Andromeda will enable Cloud Platform to expose more and more of Google’s raw network infrastructure performance to all GCE virtual machines (VMs)," he wrote in a blog describing the technology. "Some of the most valuable enhancements enable VMs built on supporting Linux kernels to exploit offload/multi-queue capabilities. I encourage interested customers to create new GCE VMs using the Debian backports-image."

The company gave further details on the technology at a presentation at the Open Networking Summit in early March, where Vahdat said Andromeda splits network function virtualization (NFV) between software switches and "commodity packet processors". This gives it a large number of features but not at the cost of network performance.

Google's goals for NFV are "native performance, full isolation, extensible NFV, high available [and] scale out to many VMs," read a slide given by Vahdat at the conference. Given the scale at which Google operates, "many VMs" is likely better summarized as millions.

The Andromeda reveal follows Google dramatically cutting the prices of its cloud storage and compute last week as the company attempts to create another non-advertising business for itself and in the process go head-to-head with Amazon and Microsoft in a battle for (more) data from cloudy consumers.

"Cloud Platform's network will continue to be an agent of disruption to cloud computing moving forward," Vahdat wrote in the blog. Not quite a declaration of war, but as good a check out our advanced munitions claim as we here on El Reg's cloud desk have heard in a while. ®

Security for virtualized datacentres

More from The Register

next story
It's Big, it's Blue... it's simply FABLESS! IBM's chip-free future
Or why the reversal of globalisation ain't gonna 'appen
'Hmm, why CAN'T I run a water pipe through that rack of media servers?'
Leaving Las Vegas for Armenia kludging and Dubai dune bashing
Facebook slurps 'paste sites' for STOLEN passwords, sprinkles on hash and salt
Zuck's ad empire DOESN'T see details in plain text. Phew!
CAGE MATCH: Microsoft, Dell open co-located bit barns in Oz
Whole new species of XaaS spawning in the antipodes
Microsoft and Dell’s cloud in a box: Instant Azure for the data centre
A less painful way to run Microsoft’s private cloud
AWS pulls desktop-as-a-service from the PC
Support for PCoIP protocol means zero clients can run cloudy desktops
prev story

Whitepapers

Choosing cloud Backup services
Demystify how you can address your data protection needs in your small- to medium-sized business and select the best online backup service to meet your needs.
Forging a new future with identity relationship management
Learn about ForgeRock's next generation IRM platform and how it is designed to empower CEOS's and enterprises to engage with consumers.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.