SlideShare une entreprise Scribd logo
1  sur  32
Télécharger pour lire hors ligne
CloudVPN
Fostering The Evolution of Network-Based Cloud
Service Providers.
Bart Van de Velde
Sr. Director, Engineering, Chief Technology & Architecture Office
MPLS SDN NFV Congress - Paris
© 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public
Agenda
•  Introduction
•  CloudVPN Use Case
•  CloudVPN Architecture
•  CloudVPN as a Servive Delivery Platform
•  Summary
2
CloudVPN – A Programmable Platform for SP’s to evolve their
VPN offerings with Cloud integration at a lower TCO (agility,
automation, simplification) and low marginal cost achieved through
Virtualization and SDN enablement.
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
User ≠ One Size Fits AllNew Solutions Demand More Flexible & Comprehensive Offerings that Interoperate with Existing
Equipment inclusive of hardware and software.
On-Demand
Bandwidth & Capacity
Big Data & AnalyticsRapid Deployment of New
Business Applications
Anywhere/Anytime
Secure Accessibility
User Experience,
Delivered
Open Solutions
Seamless
Connectivity
One Stop
Shop
UX &
Multi-Platform
On-Demand
Solutions
The New Customer Requirements
PAYG Models
Cisco Confidential 5© 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Starting Point:
Unique Opportunity of the SMB Market
An Excellent starting point to evolve Business Services Models
Modular Architecture: Low Cost Customization
Cloud Services Delivers on New Buy Models
Demands & Cycles
Variability in Vertical, Size & Offering Needs,
Buy-Cycle; One-Size Does Not Fit All
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
SDN, NFV and Orchestration
Creating the Change Platform
Orchestration
Automation, provisioning and interworking
of physical and virtual resources
Service
Orchestration
NFVSDN
SDN
Separation of control and data plane
NFV
Network functions and software running
on any open standards-based hardware
The Time is NOW to put SDN , NFV, and Orchestration into Action
Services
Platform
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
The Mission: Service Provider Business Transformation
AUTOMATION, VIRTUALIZATION AND ORCHESTRATION ARE REQUIRED…HOW?
Virtualized
Resource Pools
(network ready
compute/storage)
Virtualized
Network Functions
Secure Overlays
Dynamic Set-Up,
Tear Down and
Provisioning
On-Demand Workload
Movement with
Service Profiles
Data Center
NetworkWorkload
Portability
Orchestration
Full Access to
Resource Pools
Anywhere
Cloud Services
Cost Reduction and Agility Delivers Profits
© 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public
Agenda
•  SDN, NFV & Orchestration
•  CloudVPN Use Case
•  CloudVPN Architecture
•  CloudVPN as a Service Delivery Platform
•  Summary
8
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
xDSL
GPON
FTTX
Mobile
xDSL
GPON
FTTX
Mobile
xDSL
GPON
FTTX
Mobile
R2
R1
R1
R1
Goal: Multi-tenant Virtual Private
Network+Cloud
Virtual Private Cloud ( VPC )
Logical design automatically created
within the WAN and Cloud Data Center
self-service creation and modifications
animated
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CloudVPN – Key Focus Areas
•  Self Service – Catalog Driven
•  Address Small [branches] of the large [enterprises]
•  Remote Worker, SOHO, Distributed Sites (hospitality, retail)
•  One Offering: Integrate VPN with Cloud Services
•  Lower TCO (agility, automation, simplification) via Virtualization & Cloud
Management
•  Leverage existing SP Network Infrastructure
•  Shorter Time To Revenue with NO upfront CAPEX
•  Ability to bundle offers. SMB -> Mobile, Video, Smart business, security
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Customer Experience in a Nutshell
Unbox & Plug-in
Service up and running
CPE ships
Orchestration happens!
Order Services
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CloudVPN Business Services:
Use Case 1: CloudVPN with Internet, Firewall (FW), Remote Access (RA)
Cloud IPVPN with FW and Remote
Access to Internet
!  vFW with NAT and Policy
!  vFW with IPSec/SSL Remote
Access including Remote End-
Host posture verification
CPE
CPE
CPE
Internet
Router
vFW
SP CLOUD
Internet
Cloud-Hosted Management
Scalable, elastic, on-demand
Overlay Packet Tunnels
!  IPSec tunnels – mesh, hub&spoke
VR
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CPE
CPE
CPE
SP CLOUD
Cloud-Hosted Management
Scalable, elastic, on-demand
Internet
Router
vFWVR
WSAv
CloudVPN Business Services:
Use Case 2: CloudVPN with Internet, FW, RA and Enhanced Web Security
Cloud IPVPN with FW and Remote
Access to Internet
!  vFW with NAT and Policy
!  vFW with IPSec/SSL Remote Access
including Remote End-Host posture
verification
!  WSAv for Enhanced Web Security
Overlay Packet Tunnels
!  IPSec tunnels – mesh, hub&spoke
Internet
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CPE
CPE
CPE
SP CLOUD
Cloud-Hosted Management
Scalable, elastic, on-demand
Internet
Router
vFWVR
vNG-
IPS
Internet
CloudVPN Business Services:
Use Case 3: CloudVPN with Internet, FW, RA and Next-Gen-IPS
Cloud IPVPN with FW and Remote
Access to Internet
!  vFW with NAT and Policy
!  vFW with IPSec/SSL Remote Access
including Remote End-Host posture
verification
!  vNG-IPS (SourceFire) for advanced
threat protection and real-time
contextual awareness
Overlay Packet Tunnels
!  IPSec tunnels – mesh, hub&spoke;
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Demo Time
15
© 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public
Agenda
•  Introduction
•  CloudVPN Use Case
•  CloudVPN Architecture
•  CloudVPN as a Service Delivery Platform
•  Summary
16
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
SP
VR
CSR
NED
VR_CSR
Other Network
Services
vFW
vASA
NED
ISR
NED
O/S
virt infra mgr
Portal:
Service
Consumer
Self Service
Create
Deliver
Operate
Optimize
cisco
Network
Compute
Storage
Service Design
Create
Deliver
Operate
Optimize
cisco
Service Design
My DeploymentsMy Designs
Deploy
Deployment Wizard
Select Scope
Engineering
New Folder
Testing
Operator
Self Service
vNG-Intrusion
Protection
vSecWeb-WSAv
NC/YANG
REST/XSD
vNG
IPS
NED
vSec
Web
NED
Customer VPN
BSS
Systems
RC/YANG
NC/YANG
VFW_vASA
ESC
virt service
lifecycle
management
netconfd
service
models
device models
fastmap
reactive
fastmap
yangyang
yang
O/S component
APIs
RC/YANG
NC/YANG
RC/YANG
NC/YANG
Config &
Operation
java
Virtual
Switch
netconfd
Virtual
Switch
Model driven service consumer portal for self-
service service lifecycle : create, modify,
redeploy, delete
NCS
network service lifecycle management
ISR CPE
Csco PnP
http
Csco CLI
via SSH
Config &
Operation
Discovery
& Call Home
PnP Server
(Call Home)
WAN network
and Internet
CloudVPN End-to-End Architecture
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Network Services Orchestrator (NSO)
PnP Server
CloudVPN with ISR CPE Use Case
Elastic Services
Controller (ESC)
Tenant Portal
REST API REST API
SP’s OSS/BSS
ISR CPE
PnP Functionality
Zero Touch Provisioning
OpenStack
X86ServerCloudVPN Connectivity up
Provision
CSR
ISR CPE Shipped to Customer
Site, connected & Powered ON
Customer Orders VPN Service
Provide Day 1
Configuration
Establish VPN: IPSec, IP Overlay
(VXLAN, GRE, LISP), L2
DCI/PE
CSR1Kv
Spin up CSR
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CloudVPN - Adding VNFs In The Cloud
Elastic Services
Controller (ESC)
Tenant Portal
Network Services Orchestrator (NSO)
REST API REST API
SP’s OSS/BSS
ISR CPE
PnP Functionality
Zero Touch Provisioning
OpenStack
CSR1Kv ASAv
X86Server
Internet
Gateway
vESA
CloudVPN Connectivity up
If more VNFs are needed
for a Service Chain ?
ISR CPE Shipped to Customer
Site, connected & Powered ON
Customer Orders VPN Service
Provide Day 1
Configuration
Establish VPN: IPSec, IP Overlay
(VXLAN, GRE, LISP), L2
PnP Server
DCI/PE
VTF
More scalable and flexible
service chaining enabled with
VTC & high-performance VTF
OVS
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
vFW
vDDoS
vR
CPE
CPE
CPE
vISE
Internet
Router
vWSA
6
vIPVPN with BYOD, FW, RA, WebSec, DDoS
- vFW with NAT and FW policy.
- vFW with IPSec/SSL remote access incl.
remote end-host security posture verification.
- vISE for BYOD svc auth (AAA, trust-sec label
to IP binding)
- vWSA for Enhanced Web Security
- vDDoS (Radware DefensePro) for volumetric
and application DDoS visibility and mitigation
services
6
vIPVPN with BYOD, FW, RA, WebSec,
ngIPS
- vFW with NAT and FW policy.
- vFW with IPSec/SSL remote access
incl. remote end-host security posture
verification.
- vISE for BYOD svc auth (AAA, trust-
sec label to IP binding)
- vWSA for Enhanced Web Security
-vNG-IPS (SourceFire) for advanced
threat protection and real-time
contextual awareness
5
vWSA
vFW
vNG-
IPS
vR
CPE
CPE
CPE
vISE
Internet
Router
vNG-
IPS
5
vIPVPN with BYOD, FW, RA, EmailSec
- vFW with NAT and FW policy.
- vFW with IPSec/SSL remote access
incl. remote end-host security posture
verification.
- vESA for Critical Information Protection
(inbound and outbound Emails)
4
vESA
vFWvR
CPE
CPE
CPE
Internet
Router
DMZ
email
server?
4
vIPVPN with BYOD, FW, RA, WebSec
- vFW with NAT and FW policy.
- vFW with IPSec/SSL remote access
incl. remote end-host security posture
verification.
- vISE for BYOD svc auth (AAA, trust-
sec label to IP binding)
- vWSA for Enhanced Web Security
3
vWSA
vFWvR
CPE
CPE
CPE
vISE
Internet
Router
3
vWSA
vIPVPN with BYOD, FW and RA
- vFW with NAT and FW policy.
- vFW with IPSec/SSL remote
access incl. remote end-host
security posture verification.
- vISE for BYOD svc auth (AAA,
trust-sec label to IP binding)
2
vFWvR
CPE
CPE
CPE
Internet
Router
vISE
2
vIPVPN with FW and RA
- vFW with NAT and FW policy.
- vFW with IPSec/SSL Remote
Access (RA) incl. remote end-host
security posture verification.
1
vFWvR
CPE
CPE
CPE
Internet
Router
1
vWSA
vESA
vISE
vNG-
IPS
vFW
vDDoS
web security
appliance
email security
appliance
identity services
engine
fire wall
intrusion protection
system
ddos mitigation
services
vR
vLB
Internet
Router
router
load balancer
Internet
Router
Packet service nodes
L2
L3
Termination points
tunnel
local link
Packet links
unclassified
BYOD AAA
http requests
email (inside&outside)
DDoS threat
IPSec/SSL
IPS threat
Packet flows
CloudVPN Service Topologies
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Operator
Portal
User
Portal
CloudVPN – Soft Real-Time Orchestration Loop
ISR CPE
CSR
ESC
Openstack
CloudVPN
Function Pack
NCS
ASAv
ISR CPE
ISR CPE
NETCONF
Console
NCS
CLI, NBI
Service models and
implementation
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
ISR CPE
CSR
ESC
Openstack
NCS
ASAv
ISR CPE
ISR CPE
CREATE SERVICE
UPDATE SERVICE
DELETE SERVICE
Changed
network state
(PnP, ESC
notifs) trigger
service
redeploy
REDEPLOY
SERVICE
FASTMAP
CloudVPN – Soft Real-Time Orchestration Loop
ESC and NCS Interaction
allows for dynamic Service
creation and Update
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
node.4node.3 node.5
network topology model
node.1
node.2
nodeslinks termination_points
link.1
link.2
link.3 link.4
tp.1
tp.2
tp.3
tp.4
tp.5 tp.6 tp.7 tp.8
[Example of a network topology model]
CloudVPN – zooming in on the modeled
Networking Layer
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
- S2S: inter-site VPN with CPE-to-VR tunnels;
- RA: VFW with encrypted Remote Access (RA) incl.
remote end-host security posture verification;
- FW-INET: VFW with NAT44 and stateful FW policy
for Internet connectivity;
CVPN-S2S-RA-FW-INET
VFWVR Internet
CVPN-S2S-RA-FW-INET
network service topology
RACPECPE
CPECPE
RA
RAC
RAC
VFWVR Internet
RACPECPE
CPECPE
RA
RAC
RAC
CVPN-S2S-RA-FW-INET
packet flows
unclassified
http requests
DDoS threat
SSL
IPS threat
packet flows
NAT44’ed
WCCPv2 redirect, http only
IP fwding, static or dynamic route
SSL termination
ACL based forward
pkt processing & fwding
NAT44
local connection
tunnel connection
links
L2, Ethernet
L3, IPv6 and/or IPv4
termination points
[Example of a network topology model]
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
cpe-01
r2
esc-01
br-outside-01
Gig0/1
cisco-isr
eth4.100
eth1
eth4
compute-01
cisco-ucs esc
ovs-network
Topology: dt_mvp1_underlay
Tags: sjc_lab, underlay
cpe-01
router-01
cisco-isr
ipsec_vpn
Topology: dt_mvp1_overlay
Tags: overlay
ipsec_tunnel
cisco-
csr1000v
cpe tunnel
cpe-01 tunnel-01 router-01
uni cpe csr nni
Virto: myvpn
Tags: sjc_lab
vFirewall
VRF
ovs-
network
vWSA
vBridge
cisco-
asa100V
cisco-vwsa
vBridge
ovs-
network
Virtual
Routercpe
br-01
bridge
bridge inside outside
wsa
router firewall firewall gateway
wsa-01
firewall-01 br-02
br-01
external
network
internet
br-internet-01
IVRF
firewall-01
wsa-01
eth0
eth1
eth2
Gig1 Gig2
Gig1 Gig2
eth0
Gig0/1 cpe-01.Gig0/1 router-01.Gig1
Gig1 Gig2
Unmanaged IP
Network
tp2
tp1
eth4.101
eth4
eth1
tp3
module: virto
+--rw virto [id]
...
| +--rw topology-types?
| | +--rw cvpnv:cloudvpn-virto?
| +--rw tags* string
| +--rw supporting-topology [id]
...
| +--rw node [id]
...
| | +--rw node-type?
| | | +--rw cvpnv:cloudvpn-virto
| | | +--rw cvpnv:cpe?
| | | +--rw cvpnv:tunnel?
| | | +--rw cvpnv:vRouter?
| | | +--rw cvpnv:vFirewall?
| | | +--rw cvpnv:vAAA?
| | | +--rw cvpnv:vWSA?
| | | +--rw cvpnv:vESA?
| | | +--rw cvpnv:vIPS?
| | | +--rw cvpnv:vDOS?
| | | +--rw cvpnv:network?
...
| | +--rw supporting-node* node-ref
| | +--rw termination-point [id]
...
| | +--rw function?
...
| +--rw link [id]
...
+--rw occupancy
...
Underlay
Overlay
Virto
© 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public
Agenda
•  Key Focus areas
•  CloudVPN Use case
•  CloudVPN Architecture
•  CloudVPN as a Service Delivery Platform
•  Summary
26
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Service Platform Characteristics
Modularity & Interoperability
"  Reusable & flexible; interoperable components; consistent APIs & open interfaces
Open Innovation, Open Source, Standards
"  Standardization & development of open, multi-vendor solutions
Scale & Simplify the Network
"  Virtualization & programmability; multi-layer convergence &
interoperability, automated solutions
Increase Value for Partners, Customers, Users
"  New user experiences, faster time-to-market, new consumption & business models
Modular
Simple &
Scalable
Standards-
Based
Interoperable
Open
Multi-Vendor,
Multi-Environment
Flexible Infrastructure;
New Classes of
Applications
Open & Interoperable
Solutions; Standards &
Open Source
Modular & Reusable
Components
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Generalized Orchestration Model
Operations and Life-Cycle
management of infrastructure
Domain Controllers
Svc Producer Layer
Infrastructure
Physical and Virtual
Operations and Life-Cycle
management of Services
Cross Domain Service Lifecycle
Orchestration
Principles
!  Functional architecture
comprised of a layered,
loosely coupled distributed
system components
!  Functions can operate and
evolve independently
!  Functions can be deployed
in combination or isolation
!  Each layer abstracts the
detail of what is below it
from any functions above
Domain Controller
or Orchestrator
Domain Controller
or Orchestrator
Domain Controller
or Orchestrator
API
Service Consumer Lifecycle
Management
Svc Consumer Layer
Consumer Facing Service
VIRTUAL
NETWORK
FUNCTIONS
TENANT
VMs PHYSICAL
PACKET /
OPTICAL
NETWORK
COMPUTE / STORAGE
DomainDomain
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
CloudVPN Model Driven Architectural Approach
•  Services are driven with an E2E
Scope.
•  E2E Scope is model driven.
•  Models have both a Service
and Device component.
•  Service-Network mappings bind
Service Models to Network and
Device Instantiations.
•  Models need to span across the
multi-domain CVPN service
path.
Prem Access WAN Compute
CPE
L2NID
MX
ISR
Metro
VNF
Service Chaining
ME36xx 9K
CRS
3rd Party
CSR
vASA
…
Service
Models
Svc-Ntwrk
Models
Device
Models
NCS
Service Definition
Service Definition
Service Definition
Router VNF
x86
…
© 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public
Business Operations, BSS
All
Access
MSAN
OLT
LTE
Data Center
User
Area
DC
Packet Network
DC
Internet&peerings&
So-&Real1Time&SDN&
Orchestra9on&and&OSS&
Packet flows
Internet
Services
Physical: IP Optical Network x86 Compute
Logical: IP and Overlay Transport (Virtualized) Service Creation
Converging to Software Driven Architecture – Addressing the
Hunger Gap
Programmability: YANG over NETCONF, RESTCONF, RESTful , JSON
Control: Soft Real Time Network OSS Soft Real Time Compute
Orchestration
Reduce Marginal Cost of Service Creation to ~0
Eliminate human operator intervention; Integrate custom IT back-end
S
D
N
Data Model
Driven
Adaptation
devices
topologies
topologies
services
agents
plugins
controllers
automation
e2e services
abstractionstack
decomposition
CloudVPN – A Programmable Platform for SP’s to evolve their
VPN offerings with Cloud integration with a lower TCO (agility,
automation, simplification) and low marginal cost achieved through
Virtualization and SDN enablement.
Fostering the Evolution of Network Based Cloud Service Providers.

Contenu connexe

Tendances

Evolving to a New Generation Network based on IP, SDN, NFV & Cloud
Evolving to a New Generation Networkbased on IP, SDN, NFV & CloudEvolving to a New Generation Networkbased on IP, SDN, NFV & Cloud
Evolving to a New Generation Network based on IP, SDN, NFV & CloudEricsson
 
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit kimw001
 
Introducing Ensemble Simulator – ADVA’s virtual networking environment
Introducing Ensemble Simulator – ADVA’s virtual networking environmentIntroducing Ensemble Simulator – ADVA’s virtual networking environment
Introducing Ensemble Simulator – ADVA’s virtual networking environmentADVA
 
Managing and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSManaging and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSComarch
 
Service Mesh on Kubernetes with Istio
Service Mesh on Kubernetes with IstioService Mesh on Kubernetes with Istio
Service Mesh on Kubernetes with IstioMichelle Holley
 
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPE
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPEMeetup 1st _ SDN/NFV Use case in Operators' Networks: vCPE
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPEOPNFV_Vietnam
 
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...Kiran Sirupa
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackSupporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackBruce Davie
 
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...Indonesia Network Operators Group
 
Anuta Networks at Networking Field Day 14
Anuta  Networks at Networking Field Day 14Anuta  Networks at Networking Field Day 14
Anuta Networks at Networking Field Day 14Kiran Sirupa
 
F5 Networks - - OpenStack Summit 2016/Red Hat NFV Mini Summit
F5 Networks -  - OpenStack Summit 2016/Red Hat NFV Mini SummitF5 Networks -  - OpenStack Summit 2016/Red Hat NFV Mini Summit
F5 Networks - - OpenStack Summit 2016/Red Hat NFV Mini Summitkimw001
 
Has video really killed the audio star?
Has video really killed the audio star?Has video really killed the audio star?
Has video really killed the audio star?Cisco Canada
 
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment Challenges of L2 NID Based Architecture for vCPE and NFV Deployment
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment Bangladesh Network Operators Group
 
Nfd18 anuta-networks
Nfd18 anuta-networksNfd18 anuta-networks
Nfd18 anuta-networksKiran Sirupa
 
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit kimw001
 
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFV
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFVFSP 150 ProVMe (P2.4): The Easy Route to Edge NFV
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFVADVA
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN Ashutosh Kaushik
 
9th SDN Expert Group Seminar - Session1
9th SDN Expert Group Seminar - Session19th SDN Expert Group Seminar - Session1
9th SDN Expert Group Seminar - Session1NAIM Networks, Inc.
 

Tendances (20)

Evolving to a New Generation Network based on IP, SDN, NFV & Cloud
Evolving to a New Generation Networkbased on IP, SDN, NFV & CloudEvolving to a New Generation Networkbased on IP, SDN, NFV & Cloud
Evolving to a New Generation Network based on IP, SDN, NFV & Cloud
 
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
Dell EMC - - OpenStack Summit 2016/Red Hat NFV Mini Summit
 
Introducing Ensemble Simulator – ADVA’s virtual networking environment
Introducing Ensemble Simulator – ADVA’s virtual networking environmentIntroducing Ensemble Simulator – ADVA’s virtual networking environment
Introducing Ensemble Simulator – ADVA’s virtual networking environment
 
Managing and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSSManaging and Implementing Network Function Virtualization with Intelligent OSS
Managing and Implementing Network Function Virtualization with Intelligent OSS
 
Service Mesh on Kubernetes with Istio
Service Mesh on Kubernetes with IstioService Mesh on Kubernetes with Istio
Service Mesh on Kubernetes with Istio
 
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPE
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPEMeetup 1st _ SDN/NFV Use case in Operators' Networks: vCPE
Meetup 1st _ SDN/NFV Use case in Operators' Networks: vCPE
 
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
 
Supporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStackSupporting Virtualized Telco Applications with OpenStack
Supporting Virtualized Telco Applications with OpenStack
 
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
08 (IDNOG02) SP Transition to NG Infrastructure based on NFV Service Offering...
 
Anuta Networks at Networking Field Day 14
Anuta  Networks at Networking Field Day 14Anuta  Networks at Networking Field Day 14
Anuta Networks at Networking Field Day 14
 
F5 Networks - - OpenStack Summit 2016/Red Hat NFV Mini Summit
F5 Networks -  - OpenStack Summit 2016/Red Hat NFV Mini SummitF5 Networks -  - OpenStack Summit 2016/Red Hat NFV Mini Summit
F5 Networks - - OpenStack Summit 2016/Red Hat NFV Mini Summit
 
Has video really killed the audio star?
Has video really killed the audio star?Has video really killed the audio star?
Has video really killed the audio star?
 
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment Challenges of L2 NID Based Architecture for vCPE and NFV Deployment
Challenges of L2 NID Based Architecture for vCPE and NFV Deployment
 
Nfd18 anuta-networks
Nfd18 anuta-networksNfd18 anuta-networks
Nfd18 anuta-networks
 
SD WAN
SD WANSD WAN
SD WAN
 
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit
Cisco - OpenStack Summit 2016/Red Hat NFV Mini Summit
 
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFV
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFVFSP 150 ProVMe (P2.4): The Easy Route to Edge NFV
FSP 150 ProVMe (P2.4): The Easy Route to Edge NFV
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN
 
Sd wan
Sd wan Sd wan
Sd wan
 
9th SDN Expert Group Seminar - Session1
9th SDN Expert Group Seminar - Session19th SDN Expert Group Seminar - Session1
9th SDN Expert Group Seminar - Session1
 

Similaire à Fostering the Evolution of Network Based Cloud Service Providers.

Cisco at v mworld 2015 theater presentation brfarnha
Cisco at v mworld 2015 theater presentation brfarnhaCisco at v mworld 2015 theater presentation brfarnha
Cisco at v mworld 2015 theater presentation brfarnhaldangelo0772
 
DEVNET-1155 Branch Virtualization
DEVNET-1155	Branch VirtualizationDEVNET-1155	Branch Virtualization
DEVNET-1155 Branch VirtualizationCisco DevNet
 
Hosted Security as a Service - Solution Architecture Design
Hosted Security as a Service - Solution Architecture DesignHosted Security as a Service - Solution Architecture Design
Hosted Security as a Service - Solution Architecture DesignCisco Canada
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Canada
 
7th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session27th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session2NAIM Networks, Inc.
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!Ciaran Roche
 
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof KonkowskiPLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof KonkowskiPROIDEA
 
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...PROIDEA
 
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...Cisco Canada
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)Cisco Canada
 
DEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS CloudDEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS CloudAmazon Web Services
 
Network Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFNetwork Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFAPNIC
 
#NSD14 - Sécuriser l'infrastructure réseau des datacenters
#NSD14 - Sécuriser l'infrastructure réseau des datacenters#NSD14 - Sécuriser l'infrastructure réseau des datacenters
#NSD14 - Sécuriser l'infrastructure réseau des datacentersNetSecure Day
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco Canada
 
Introducing the ADVA FSP 150-GE110 Pro Series
Introducing the ADVA FSP 150-GE110 Pro SeriesIntroducing the ADVA FSP 150-GE110 Pro Series
Introducing the ADVA FSP 150-GE110 Pro SeriesADVA
 
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Canada
 
Security & Virtualization in the Data Center
Security & Virtualization in the Data CenterSecurity & Virtualization in the Data Center
Security & Virtualization in the Data CenterCisco Russia
 
2014 Big_Data_Forum_Cisco
2014 Big_Data_Forum_Cisco2014 Big_Data_Forum_Cisco
2014 Big_Data_Forum_CiscoCOMPUTEX TAIPEI
 

Similaire à Fostering the Evolution of Network Based Cloud Service Providers. (20)

Cisco at v mworld 2015 theater presentation brfarnha
Cisco at v mworld 2015 theater presentation brfarnhaCisco at v mworld 2015 theater presentation brfarnha
Cisco at v mworld 2015 theater presentation brfarnha
 
DEVNET-1155 Branch Virtualization
DEVNET-1155	Branch VirtualizationDEVNET-1155	Branch Virtualization
DEVNET-1155 Branch Virtualization
 
Hosted Security as a Service - Solution Architecture Design
Hosted Security as a Service - Solution Architecture DesignHosted Security as a Service - Solution Architecture Design
Hosted Security as a Service - Solution Architecture Design
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
 
7th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session27th SDN Expert Group Seminar - Session2
7th SDN Expert Group Seminar - Session2
 
BRKCRS-2110.pdf
BRKCRS-2110.pdfBRKCRS-2110.pdf
BRKCRS-2110.pdf
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
 
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof KonkowskiPLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof Konkowski
PLNOG16: Kreowanie usług przez operatorów – SP IWAN, Krzysztof Konkowski
 
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...
PLNOG16: Automatyzacja kreaowania usług operatorskich w separacji od rodzaju ...
 
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 
DEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS CloudDEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
 
Network Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoFNetwork Function Virtualization (NFV) BoF
Network Function Virtualization (NFV) BoF
 
#NSD14 - Sécuriser l'infrastructure réseau des datacenters
#NSD14 - Sécuriser l'infrastructure réseau des datacenters#NSD14 - Sécuriser l'infrastructure réseau des datacenters
#NSD14 - Sécuriser l'infrastructure réseau des datacenters
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
Introducing the ADVA FSP 150-GE110 Pro Series
Introducing the ADVA FSP 150-GE110 Pro SeriesIntroducing the ADVA FSP 150-GE110 Pro Series
Introducing the ADVA FSP 150-GE110 Pro Series
 
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
Cisco Connect Toronto 2017 - NFV/SDN Platform for Orchestrating Cloud and vBr...
 
Security & Virtualization in the Data Center
Security & Virtualization in the Data CenterSecurity & Virtualization in the Data Center
Security & Virtualization in the Data Center
 
2014 Big_Data_Forum_Cisco
2014 Big_Data_Forum_Cisco2014 Big_Data_Forum_Cisco
2014 Big_Data_Forum_Cisco
 

Plus de Cisco Service Provider

SP Network Automation: Automated Operations Overview
SP Network Automation: Automated Operations Overview SP Network Automation: Automated Operations Overview
SP Network Automation: Automated Operations Overview Cisco Service Provider
 
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORSCisco Service Provider
 
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...Cisco Service Provider
 
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users GrowthCisco Service Provider
 
Cisco Cloud-Scale Innovation Infographic
Cisco Cloud-Scale Innovation InfographicCisco Cloud-Scale Innovation Infographic
Cisco Cloud-Scale Innovation InfographicCisco Service Provider
 
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link Performance
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link PerformanceOperator Drives Bandwidth Efficiency and Optimizes Satellite Link Performance
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link PerformanceCisco Service Provider
 
Application Engineered Routing Segment Routing and the Cisco WAN Automation ...
Application Engineered Routing  Segment Routing and the Cisco WAN Automation ...Application Engineered Routing  Segment Routing and the Cisco WAN Automation ...
Application Engineered Routing Segment Routing and the Cisco WAN Automation ...Cisco Service Provider
 
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Cisco Service Provider
 
Cisco Policy Suite for Service Providers
Cisco Policy Suite for Service ProvidersCisco Policy Suite for Service Providers
Cisco Policy Suite for Service ProvidersCisco Service Provider
 
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...Cisco Service Provider
 
Segment Routing: Prepare Your Network For New Business Models
Segment Routing:  Prepare Your Network For New Business ModelsSegment Routing:  Prepare Your Network For New Business Models
Segment Routing: Prepare Your Network For New Business ModelsCisco Service Provider
 
Cisco Virtual Managed Services: Transform Your Business with Cloud-based Inn...
Cisco Virtual Managed Services:  Transform Your Business with Cloud-based Inn...Cisco Virtual Managed Services:  Transform Your Business with Cloud-based Inn...
Cisco Virtual Managed Services: Transform Your Business with Cloud-based Inn...Cisco Service Provider
 
Cisco Virtual Managed Services Solution
Cisco Virtual Managed Services SolutionCisco Virtual Managed Services Solution
Cisco Virtual Managed Services SolutionCisco Service Provider
 
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...Cisco Service Provider
 
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...Cisco Service Provider
 

Plus de Cisco Service Provider (20)

SP 5G: Unified Enablement Platform
SP 5G: Unified Enablement Platform  SP 5G: Unified Enablement Platform
SP 5G: Unified Enablement Platform
 
SP Network Automation: Automated Operations Overview
SP Network Automation: Automated Operations Overview SP Network Automation: Automated Operations Overview
SP Network Automation: Automated Operations Overview
 
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS
[Whitepaper] Cisco Vision: 5G - THRIVING INDOORS
 
Cisco at OFC 2016
Cisco at OFC 2016Cisco at OFC 2016
Cisco at OFC 2016
 
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...
[Infographic] Cisco Visual Networking Index (VNI): Mobile-Connected Devices p...
 
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth
[Infographic] Cisco Visual Networking Index (VNI): Mobile Users Growth
 
Cisco Cloud-Scale Innovation Infographic
Cisco Cloud-Scale Innovation InfographicCisco Cloud-Scale Innovation Infographic
Cisco Cloud-Scale Innovation Infographic
 
Simplify Operations
Simplify OperationsSimplify Operations
Simplify Operations
 
Expand Your Market Opportunities
Expand Your Market OpportunitiesExpand Your Market Opportunities
Expand Your Market Opportunities
 
Orchestrated Assurance
Orchestrated Assurance Orchestrated Assurance
Orchestrated Assurance
 
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link Performance
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link PerformanceOperator Drives Bandwidth Efficiency and Optimizes Satellite Link Performance
Operator Drives Bandwidth Efficiency and Optimizes Satellite Link Performance
 
Application Engineered Routing Segment Routing and the Cisco WAN Automation ...
Application Engineered Routing  Segment Routing and the Cisco WAN Automation ...Application Engineered Routing  Segment Routing and the Cisco WAN Automation ...
Application Engineered Routing Segment Routing and the Cisco WAN Automation ...
 
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
 
Cisco Policy Suite for Service Providers
Cisco Policy Suite for Service ProvidersCisco Policy Suite for Service Providers
Cisco Policy Suite for Service Providers
 
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...
Deploy New Technologies Quickly with Cisco Managed Services for Service Provi...
 
Segment Routing: Prepare Your Network For New Business Models
Segment Routing:  Prepare Your Network For New Business ModelsSegment Routing:  Prepare Your Network For New Business Models
Segment Routing: Prepare Your Network For New Business Models
 
Cisco Virtual Managed Services: Transform Your Business with Cloud-based Inn...
Cisco Virtual Managed Services:  Transform Your Business with Cloud-based Inn...Cisco Virtual Managed Services:  Transform Your Business with Cloud-based Inn...
Cisco Virtual Managed Services: Transform Your Business with Cloud-based Inn...
 
Cisco Virtual Managed Services Solution
Cisco Virtual Managed Services SolutionCisco Virtual Managed Services Solution
Cisco Virtual Managed Services Solution
 
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...
Cisco cBR-8 Evolved CCAP: Deliver Scalable Network and Service Growth at a Lo...
 
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...
Cisco Service Provider Vision and Strategy: Business Transforming Through Inn...
 

Dernier

CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLScyllaDB
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfAlex Barbosa Coqueiro
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity PlanDatabarracks
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piececharlottematthew16
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Enterprise Knowledge
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DaySri Ambati
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsMark Billinghurst
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteDianaGray10
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionDilum Bandara
 

Dernier (20)

CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQL
 
Unraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdfUnraveling Multimodality with Large Language Models.pdf
Unraveling Multimodality with Large Language Models.pdf
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
DMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special EditionDMCC Future of Trade Web3 - Special Edition
DMCC Future of Trade Web3 - Special Edition
 
How to write a Business Continuity Plan
How to write a Business Continuity PlanHow to write a Business Continuity Plan
How to write a Business Continuity Plan
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piece
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024Designing IA for AI - Information Architecture Conference 2024
Designing IA for AI - Information Architecture Conference 2024
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
 
Human Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR SystemsHuman Factors of XR: Using Human Factors to Design XR Systems
Human Factors of XR: Using Human Factors to Design XR Systems
 
Take control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test SuiteTake control of your SAP testing with UiPath Test Suite
Take control of your SAP testing with UiPath Test Suite
 
"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
Advanced Computer Architecture – An Introduction
Advanced Computer Architecture – An IntroductionAdvanced Computer Architecture – An Introduction
Advanced Computer Architecture – An Introduction
 

Fostering the Evolution of Network Based Cloud Service Providers.

  • 1. CloudVPN Fostering The Evolution of Network-Based Cloud Service Providers. Bart Van de Velde Sr. Director, Engineering, Chief Technology & Architecture Office MPLS SDN NFV Congress - Paris
  • 2. © 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public Agenda •  Introduction •  CloudVPN Use Case •  CloudVPN Architecture •  CloudVPN as a Servive Delivery Platform •  Summary 2
  • 3. CloudVPN – A Programmable Platform for SP’s to evolve their VPN offerings with Cloud integration at a lower TCO (agility, automation, simplification) and low marginal cost achieved through Virtualization and SDN enablement.
  • 4. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public User ≠ One Size Fits AllNew Solutions Demand More Flexible & Comprehensive Offerings that Interoperate with Existing Equipment inclusive of hardware and software. On-Demand Bandwidth & Capacity Big Data & AnalyticsRapid Deployment of New Business Applications Anywhere/Anytime Secure Accessibility User Experience, Delivered Open Solutions Seamless Connectivity One Stop Shop UX & Multi-Platform On-Demand Solutions The New Customer Requirements PAYG Models
  • 5. Cisco Confidential 5© 2013-2014 Cisco and/or its affiliates. All rights reserved. The Starting Point: Unique Opportunity of the SMB Market An Excellent starting point to evolve Business Services Models Modular Architecture: Low Cost Customization Cloud Services Delivers on New Buy Models Demands & Cycles Variability in Vertical, Size & Offering Needs, Buy-Cycle; One-Size Does Not Fit All
  • 6. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public SDN, NFV and Orchestration Creating the Change Platform Orchestration Automation, provisioning and interworking of physical and virtual resources Service Orchestration NFVSDN SDN Separation of control and data plane NFV Network functions and software running on any open standards-based hardware The Time is NOW to put SDN , NFV, and Orchestration into Action Services Platform
  • 7. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public The Mission: Service Provider Business Transformation AUTOMATION, VIRTUALIZATION AND ORCHESTRATION ARE REQUIRED…HOW? Virtualized Resource Pools (network ready compute/storage) Virtualized Network Functions Secure Overlays Dynamic Set-Up, Tear Down and Provisioning On-Demand Workload Movement with Service Profiles Data Center NetworkWorkload Portability Orchestration Full Access to Resource Pools Anywhere Cloud Services Cost Reduction and Agility Delivers Profits
  • 8. © 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public Agenda •  SDN, NFV & Orchestration •  CloudVPN Use Case •  CloudVPN Architecture •  CloudVPN as a Service Delivery Platform •  Summary 8
  • 9. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public xDSL GPON FTTX Mobile xDSL GPON FTTX Mobile xDSL GPON FTTX Mobile R2 R1 R1 R1 Goal: Multi-tenant Virtual Private Network+Cloud Virtual Private Cloud ( VPC ) Logical design automatically created within the WAN and Cloud Data Center self-service creation and modifications animated
  • 10. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CloudVPN – Key Focus Areas •  Self Service – Catalog Driven •  Address Small [branches] of the large [enterprises] •  Remote Worker, SOHO, Distributed Sites (hospitality, retail) •  One Offering: Integrate VPN with Cloud Services •  Lower TCO (agility, automation, simplification) via Virtualization & Cloud Management •  Leverage existing SP Network Infrastructure •  Shorter Time To Revenue with NO upfront CAPEX •  Ability to bundle offers. SMB -> Mobile, Video, Smart business, security
  • 11. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Customer Experience in a Nutshell Unbox & Plug-in Service up and running CPE ships Orchestration happens! Order Services
  • 12. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CloudVPN Business Services: Use Case 1: CloudVPN with Internet, Firewall (FW), Remote Access (RA) Cloud IPVPN with FW and Remote Access to Internet !  vFW with NAT and Policy !  vFW with IPSec/SSL Remote Access including Remote End- Host posture verification CPE CPE CPE Internet Router vFW SP CLOUD Internet Cloud-Hosted Management Scalable, elastic, on-demand Overlay Packet Tunnels !  IPSec tunnels – mesh, hub&spoke VR
  • 13. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CPE CPE CPE SP CLOUD Cloud-Hosted Management Scalable, elastic, on-demand Internet Router vFWVR WSAv CloudVPN Business Services: Use Case 2: CloudVPN with Internet, FW, RA and Enhanced Web Security Cloud IPVPN with FW and Remote Access to Internet !  vFW with NAT and Policy !  vFW with IPSec/SSL Remote Access including Remote End-Host posture verification !  WSAv for Enhanced Web Security Overlay Packet Tunnels !  IPSec tunnels – mesh, hub&spoke Internet
  • 14. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CPE CPE CPE SP CLOUD Cloud-Hosted Management Scalable, elastic, on-demand Internet Router vFWVR vNG- IPS Internet CloudVPN Business Services: Use Case 3: CloudVPN with Internet, FW, RA and Next-Gen-IPS Cloud IPVPN with FW and Remote Access to Internet !  vFW with NAT and Policy !  vFW with IPSec/SSL Remote Access including Remote End-Host posture verification !  vNG-IPS (SourceFire) for advanced threat protection and real-time contextual awareness Overlay Packet Tunnels !  IPSec tunnels – mesh, hub&spoke;
  • 15. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Demo Time 15
  • 16. © 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public Agenda •  Introduction •  CloudVPN Use Case •  CloudVPN Architecture •  CloudVPN as a Service Delivery Platform •  Summary 16
  • 17. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public SP VR CSR NED VR_CSR Other Network Services vFW vASA NED ISR NED O/S virt infra mgr Portal: Service Consumer Self Service Create Deliver Operate Optimize cisco Network Compute Storage Service Design Create Deliver Operate Optimize cisco Service Design My DeploymentsMy Designs Deploy Deployment Wizard Select Scope Engineering New Folder Testing Operator Self Service vNG-Intrusion Protection vSecWeb-WSAv NC/YANG REST/XSD vNG IPS NED vSec Web NED Customer VPN BSS Systems RC/YANG NC/YANG VFW_vASA ESC virt service lifecycle management netconfd service models device models fastmap reactive fastmap yangyang yang O/S component APIs RC/YANG NC/YANG RC/YANG NC/YANG Config & Operation java Virtual Switch netconfd Virtual Switch Model driven service consumer portal for self- service service lifecycle : create, modify, redeploy, delete NCS network service lifecycle management ISR CPE Csco PnP http Csco CLI via SSH Config & Operation Discovery & Call Home PnP Server (Call Home) WAN network and Internet CloudVPN End-to-End Architecture
  • 18. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Network Services Orchestrator (NSO) PnP Server CloudVPN with ISR CPE Use Case Elastic Services Controller (ESC) Tenant Portal REST API REST API SP’s OSS/BSS ISR CPE PnP Functionality Zero Touch Provisioning OpenStack X86ServerCloudVPN Connectivity up Provision CSR ISR CPE Shipped to Customer Site, connected & Powered ON Customer Orders VPN Service Provide Day 1 Configuration Establish VPN: IPSec, IP Overlay (VXLAN, GRE, LISP), L2 DCI/PE CSR1Kv Spin up CSR
  • 19. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CloudVPN - Adding VNFs In The Cloud Elastic Services Controller (ESC) Tenant Portal Network Services Orchestrator (NSO) REST API REST API SP’s OSS/BSS ISR CPE PnP Functionality Zero Touch Provisioning OpenStack CSR1Kv ASAv X86Server Internet Gateway vESA CloudVPN Connectivity up If more VNFs are needed for a Service Chain ? ISR CPE Shipped to Customer Site, connected & Powered ON Customer Orders VPN Service Provide Day 1 Configuration Establish VPN: IPSec, IP Overlay (VXLAN, GRE, LISP), L2 PnP Server DCI/PE VTF More scalable and flexible service chaining enabled with VTC & high-performance VTF OVS
  • 20. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public vFW vDDoS vR CPE CPE CPE vISE Internet Router vWSA 6 vIPVPN with BYOD, FW, RA, WebSec, DDoS - vFW with NAT and FW policy. - vFW with IPSec/SSL remote access incl. remote end-host security posture verification. - vISE for BYOD svc auth (AAA, trust-sec label to IP binding) - vWSA for Enhanced Web Security - vDDoS (Radware DefensePro) for volumetric and application DDoS visibility and mitigation services 6 vIPVPN with BYOD, FW, RA, WebSec, ngIPS - vFW with NAT and FW policy. - vFW with IPSec/SSL remote access incl. remote end-host security posture verification. - vISE for BYOD svc auth (AAA, trust- sec label to IP binding) - vWSA for Enhanced Web Security -vNG-IPS (SourceFire) for advanced threat protection and real-time contextual awareness 5 vWSA vFW vNG- IPS vR CPE CPE CPE vISE Internet Router vNG- IPS 5 vIPVPN with BYOD, FW, RA, EmailSec - vFW with NAT and FW policy. - vFW with IPSec/SSL remote access incl. remote end-host security posture verification. - vESA for Critical Information Protection (inbound and outbound Emails) 4 vESA vFWvR CPE CPE CPE Internet Router DMZ email server? 4 vIPVPN with BYOD, FW, RA, WebSec - vFW with NAT and FW policy. - vFW with IPSec/SSL remote access incl. remote end-host security posture verification. - vISE for BYOD svc auth (AAA, trust- sec label to IP binding) - vWSA for Enhanced Web Security 3 vWSA vFWvR CPE CPE CPE vISE Internet Router 3 vWSA vIPVPN with BYOD, FW and RA - vFW with NAT and FW policy. - vFW with IPSec/SSL remote access incl. remote end-host security posture verification. - vISE for BYOD svc auth (AAA, trust-sec label to IP binding) 2 vFWvR CPE CPE CPE Internet Router vISE 2 vIPVPN with FW and RA - vFW with NAT and FW policy. - vFW with IPSec/SSL Remote Access (RA) incl. remote end-host security posture verification. 1 vFWvR CPE CPE CPE Internet Router 1 vWSA vESA vISE vNG- IPS vFW vDDoS web security appliance email security appliance identity services engine fire wall intrusion protection system ddos mitigation services vR vLB Internet Router router load balancer Internet Router Packet service nodes L2 L3 Termination points tunnel local link Packet links unclassified BYOD AAA http requests email (inside&outside) DDoS threat IPSec/SSL IPS threat Packet flows CloudVPN Service Topologies
  • 21. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Operator Portal User Portal CloudVPN – Soft Real-Time Orchestration Loop ISR CPE CSR ESC Openstack CloudVPN Function Pack NCS ASAv ISR CPE ISR CPE NETCONF Console NCS CLI, NBI Service models and implementation
  • 22. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public ISR CPE CSR ESC Openstack NCS ASAv ISR CPE ISR CPE CREATE SERVICE UPDATE SERVICE DELETE SERVICE Changed network state (PnP, ESC notifs) trigger service redeploy REDEPLOY SERVICE FASTMAP CloudVPN – Soft Real-Time Orchestration Loop ESC and NCS Interaction allows for dynamic Service creation and Update
  • 23. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public node.4node.3 node.5 network topology model node.1 node.2 nodeslinks termination_points link.1 link.2 link.3 link.4 tp.1 tp.2 tp.3 tp.4 tp.5 tp.6 tp.7 tp.8 [Example of a network topology model] CloudVPN – zooming in on the modeled Networking Layer
  • 24. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public - S2S: inter-site VPN with CPE-to-VR tunnels; - RA: VFW with encrypted Remote Access (RA) incl. remote end-host security posture verification; - FW-INET: VFW with NAT44 and stateful FW policy for Internet connectivity; CVPN-S2S-RA-FW-INET VFWVR Internet CVPN-S2S-RA-FW-INET network service topology RACPECPE CPECPE RA RAC RAC VFWVR Internet RACPECPE CPECPE RA RAC RAC CVPN-S2S-RA-FW-INET packet flows unclassified http requests DDoS threat SSL IPS threat packet flows NAT44’ed WCCPv2 redirect, http only IP fwding, static or dynamic route SSL termination ACL based forward pkt processing & fwding NAT44 local connection tunnel connection links L2, Ethernet L3, IPv6 and/or IPv4 termination points [Example of a network topology model]
  • 25. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public cpe-01 r2 esc-01 br-outside-01 Gig0/1 cisco-isr eth4.100 eth1 eth4 compute-01 cisco-ucs esc ovs-network Topology: dt_mvp1_underlay Tags: sjc_lab, underlay cpe-01 router-01 cisco-isr ipsec_vpn Topology: dt_mvp1_overlay Tags: overlay ipsec_tunnel cisco- csr1000v cpe tunnel cpe-01 tunnel-01 router-01 uni cpe csr nni Virto: myvpn Tags: sjc_lab vFirewall VRF ovs- network vWSA vBridge cisco- asa100V cisco-vwsa vBridge ovs- network Virtual Routercpe br-01 bridge bridge inside outside wsa router firewall firewall gateway wsa-01 firewall-01 br-02 br-01 external network internet br-internet-01 IVRF firewall-01 wsa-01 eth0 eth1 eth2 Gig1 Gig2 Gig1 Gig2 eth0 Gig0/1 cpe-01.Gig0/1 router-01.Gig1 Gig1 Gig2 Unmanaged IP Network tp2 tp1 eth4.101 eth4 eth1 tp3 module: virto +--rw virto [id] ... | +--rw topology-types? | | +--rw cvpnv:cloudvpn-virto? | +--rw tags* string | +--rw supporting-topology [id] ... | +--rw node [id] ... | | +--rw node-type? | | | +--rw cvpnv:cloudvpn-virto | | | +--rw cvpnv:cpe? | | | +--rw cvpnv:tunnel? | | | +--rw cvpnv:vRouter? | | | +--rw cvpnv:vFirewall? | | | +--rw cvpnv:vAAA? | | | +--rw cvpnv:vWSA? | | | +--rw cvpnv:vESA? | | | +--rw cvpnv:vIPS? | | | +--rw cvpnv:vDOS? | | | +--rw cvpnv:network? ... | | +--rw supporting-node* node-ref | | +--rw termination-point [id] ... | | +--rw function? ... | +--rw link [id] ... +--rw occupancy ... Underlay Overlay Virto
  • 26. © 2015 Cisco and/or its affiliates. All rights reserved.Presentation_ID Cisco Public Agenda •  Key Focus areas •  CloudVPN Use case •  CloudVPN Architecture •  CloudVPN as a Service Delivery Platform •  Summary 26
  • 27. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Service Platform Characteristics Modularity & Interoperability "  Reusable & flexible; interoperable components; consistent APIs & open interfaces Open Innovation, Open Source, Standards "  Standardization & development of open, multi-vendor solutions Scale & Simplify the Network "  Virtualization & programmability; multi-layer convergence & interoperability, automated solutions Increase Value for Partners, Customers, Users "  New user experiences, faster time-to-market, new consumption & business models Modular Simple & Scalable Standards- Based Interoperable Open Multi-Vendor, Multi-Environment Flexible Infrastructure; New Classes of Applications Open & Interoperable Solutions; Standards & Open Source Modular & Reusable Components
  • 28. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Generalized Orchestration Model Operations and Life-Cycle management of infrastructure Domain Controllers Svc Producer Layer Infrastructure Physical and Virtual Operations and Life-Cycle management of Services Cross Domain Service Lifecycle Orchestration Principles !  Functional architecture comprised of a layered, loosely coupled distributed system components !  Functions can operate and evolve independently !  Functions can be deployed in combination or isolation !  Each layer abstracts the detail of what is below it from any functions above Domain Controller or Orchestrator Domain Controller or Orchestrator Domain Controller or Orchestrator API Service Consumer Lifecycle Management Svc Consumer Layer Consumer Facing Service VIRTUAL NETWORK FUNCTIONS TENANT VMs PHYSICAL PACKET / OPTICAL NETWORK COMPUTE / STORAGE DomainDomain
  • 29. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public CloudVPN Model Driven Architectural Approach •  Services are driven with an E2E Scope. •  E2E Scope is model driven. •  Models have both a Service and Device component. •  Service-Network mappings bind Service Models to Network and Device Instantiations. •  Models need to span across the multi-domain CVPN service path. Prem Access WAN Compute CPE L2NID MX ISR Metro VNF Service Chaining ME36xx 9K CRS 3rd Party CSR vASA … Service Models Svc-Ntwrk Models Device Models NCS Service Definition Service Definition Service Definition Router VNF x86 …
  • 30. © 2015 Cisco and/or its affiliates. All rights reserved.PSOPS-2455 Cisco Public Business Operations, BSS All Access MSAN OLT LTE Data Center User Area DC Packet Network DC Internet&peerings& So-&Real1Time&SDN& Orchestra9on&and&OSS& Packet flows Internet Services Physical: IP Optical Network x86 Compute Logical: IP and Overlay Transport (Virtualized) Service Creation Converging to Software Driven Architecture – Addressing the Hunger Gap Programmability: YANG over NETCONF, RESTCONF, RESTful , JSON Control: Soft Real Time Network OSS Soft Real Time Compute Orchestration Reduce Marginal Cost of Service Creation to ~0 Eliminate human operator intervention; Integrate custom IT back-end S D N Data Model Driven Adaptation devices topologies topologies services agents plugins controllers automation e2e services abstractionstack decomposition
  • 31. CloudVPN – A Programmable Platform for SP’s to evolve their VPN offerings with Cloud integration with a lower TCO (agility, automation, simplification) and low marginal cost achieved through Virtualization and SDN enablement.