Feed cleverhans-blog [copy] http://www.cleverhans.io/feed.xml has loading error: cURL error 22: The requested URL returned error: 404
Feed Security (b)log [copy] http://securityblogru.livejournal.com/data/rss has loading error: cURL error 22: The requested URL returned error: 403 Forbidden
Forwarding packets at scale - Building a Cloud Data Plane using eBPF/XDP (denog17)

At Hetzner we’ve historically used an Open vSwitch based data plane for connecting hundred thousands of cloud servers to the network. This has served us well for many years and mostly still does. We have however reached some limitations and wanted to improve scalability, resiliency and flexibility with a more specialized data plane that's tailored to our needs while being easy to operate and building a strong foundation for new features. When checking our options back in 2022, the team reached the conclusion that the best path to achieve this goal is to build and...
Day 1 Closing (denog17)

That's a wrap on Day1, time for the social!
Licensed to the public under http://creativecommons.org/licenses/by/4.0
about this event: https://pretalx.com/denog17/talk/MVDVUL/
Video:denog17-81768-eng-Day_1_Closing_hd.mp4
200 GbE network processing with 100 W - or "can I *make* a chip for that?" (denog17)

This talk presents how to to offload networking tasks onto dedicated hardware/smartNICs/NPUs (network processing units) - chips, and why this is a great idea. First, we take a look at chips in general - how they are made, integrated into networks, and why time is playing to the advantage of dedicated chips vs. CPUs/software. Then, focus is on how offloading network tasks is a particularly beautiful example of the advantages of hardware-implementing logic, with examples like TCP offloading, cybersecurity applications, or traffic shaping. To be fair and balanced, there will also be a look at the downsides...
Evolving Inter.link's Software Delivery: Lessons in Fast, Consistent, and Safe Deployments (denog17)

Automation is at the heart of Inter.link's operations. Our team manages complex software that automates the entire customer journey, from correctly accepting orders for services such as IP Transit or DDoS and translating them into precise network configurations, to setting up billing and robust monitoring. This automation is critical, allowing us to rapidly develop and deploy new features while maintaining operational excellence. Achieving this level of automation required investment in our software environment and tooling. Over time, we have significantly evolved our tooling, emphasizing easy and consistent environment setups, and we have implemented robust CI/CD...
Performance measurement goes Flow (denog17)

Do you have probes installed to monitor your network border? Ever struggled to estimate the fallout-perimeter of a probe alerting quality-deterioration? We show an example how to firmly map probes to interconnect points and secondly, how to identify which other traffic is likely affected by the same problem.
Licensed to the public under http://creativecommons.org/licenses/by/4.0
about this event: https://pretalx.com/denog17/talk/YGMU8X/
Video:denog17-75455-eng-Performance_measurement_goes_Flow_hd.mp4
EVPN for the rest of us – what happens when software people try to use EVPN (denog17)

Last year we migrated our datacentre networks from a flat layer 2-based architecture to EVPN-VXLAN. As an organisation whose primary technical background is in software, a network project of this complexity has been a journey into new and uncharted territory. Our previous network design had been showing signs of reaching its limits for several years, so in late 2023 we started designing a replacement based on EVPN-VXLAN, terminated directly on our Linux hypervisors. After not quite nine months of development the project culminated in an intensive week-long migration in our production datacentre – with zero...
Entering the big Cloud Game: A journey of ups and downs towards sovereignity at scale (denog17)

This talk would be held by my two colleagues: Michael Bayr (artcodix) and Gerhard Bader (Yorizon Cloud) Yorizon Cloud is the joint venture of HOCHTIEF PPP Solutions and Thomas-Krenn.AG In these times of global political and technical threats and disruptions, we are driven by our spirit of digital sovereignty when we design a new European, de-centralized, sustainable and custom-made cloud infrastructure. In their talk, my two colleagues would give an insight into the technologies we apply, open source based and European to the core. One basic focus will be the network technology and the standardized stack that...
Inventing the wheel - Network Orchestration at scale (denog17)

At DE-CIX, we're redefining network orchestration from first principles. Confronted with the limitations of existing systems, we set out to design a modern orchestration stack—one capable of managing a truly global network, seamlessly interfacing with a variety of upstream and downstream systems, supporting fully managed network devices, and, above all, delivering uncompromising reliability. In this talk, we share our transformation journey—from our starting point to our vision for the future. We'll delve into the architectural choices, design principles, and decision-making frameworks that guided our approach. We’ll also explore how we rigorously test our systems and...
400G ZR+ BiDi does not exist, it can't hurt you. Or can it? (denog17)

As it's common practice, each new hacker event needs something weird and funky. For this years summer camp in the Netherlands called WHY2025, we build a 400G link over a single fibre. Since 400G BiDi does not exist (yet), we had to get creative and built something, which might be considered out of spec.
Licensed to the public under http://creativecommons.org/licenses/by/4.0
about this event: https://pretalx.com/denog17/talk/KLXJS8/
Video:denog17-78260-eng-400G_ZR_BiDi_does_not_exist_it_cant_hurt_you_Or_can_it_hd.mp4
Channelmania! – future proof your DWDM network topology while keeping it flexible for 1.6T (denog17)

Past approaches for maximizing the data capacity per fiber pair went for running more and more DWDM channels with grid spacings as small as possible. This meant that grid spacings shrank from 200GHz to 100Ghz and then 50GHz with some applications even going for 25Ghz. In recent years the bandwidth per channel kept increasing, as complex modulation schemes came into favor over ON-OFF-Keying which has been a staple in fiber optic communication for decades. Those increased per channel bandwidths of 400Gbps, 800Gbps and now pushing into the 1.6Tbps realm demand for lager grids to...