SlideShare une entreprise Scribd logo
1  sur  31
Télécharger pour lire hors ligne
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
A Better Architecture
for Hybrid WAN
Steve Woo, VP Products & Co-founder, VeloCloud
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
hybrid network
noun / hy – brid net - work
: combination of two or more different types of networks
: typically referring to combination of private
and public WAN transport
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Challenge the Definition
Private WAN
Hybrid WAN
• Hybrid WAN bar is pretty low
• Also only looking at one dimension of network – the transport
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Transport - Tiers
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Bar is pretty low
Hybrid WAN
-use both public and private
-BUT DISPARATE or
-BACKUP ONLY
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Yes, Simplify
SD-WAN Hybrid
-unified usage of links
-simplified policy
BUT CRITICAL TRAFFIC RELIES
ON PRIVATE SLA
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Shoot for the…
… Optimized Performance
TRANSPORT INDEPENDENT
PERFORMANCE
-Enable the use of any
transport even for critical,
network sensitive applications
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid WAN versus True Transport Independence
Policy Managed Hybrid
Priority Site-2-site
traffic
Private
Normal Site-2-site
traffic
Load balance private
and Internet
Cloud traffic Direct to cloud over
Internet
True Transport Independence
Site-2-site traffic:
Priority and
Normal
Dynamic Multi-Path Opt to automatically
select link, on a per-packet basis, based on
priority, app type and link performance
Cloud traffic
Priority and
Normal
Dynamic Multi-Path Opt over Internet links,
based on priority and link performance
• Most technologies simplify policy assignment of critical traffic to MPLS
– Utilize broadband for low priority
– May also deploy local QoS
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Simplicity of Transport Independence
 Abstract actual interface/WAN links from the
business policy
Automatic [default]
All Transport
 Based on:
 Business priority for app
 App-specific network SLAs
 Real-time link conditions
 Automatically steer each app
onto a suitable available link
 Per-packet re-steer a session
mid-flow if changing link
conditions necessitate
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Advanced SD-WAN for Hybrid
Assured Application performance over MPLS, Internet broadband and LTE circuits
Continuous Link Monitoring
Drives automation and
optimization
Dynamic Per Packet Steering
Sub-second steering
without session drops
Aggregated bandwidth for
single flows
On Demand Remediation
Protects against
concurrent degradation
Enables single link
performance
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Policy Based Link Steering Overrides
 Pin an application to a path
even when the link fails
e.g. > PCI to compliant provider
 Prefer application on a path but
steer away if cannot meet SLA
e.g. > Prefer high bandwidth
video conferencing on broadband
 Prefer application on a path but
steer away if the link fails
e.g. > Wired to wireless
 Add metered usage of wireless
 Abstract actual interface/WAN links from the
business policy
Mandatory
Private
Available
Public Wired
Preferred
Public
Internet
Public-Wireless
Private
Public
Public-Wired
Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Target Advanced SD-WAN Hybrid
Private WAN
Hybrid WAN
• Much more possible with hybrid transport
SDWAN
Advanced
SDWAN
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Expanded
Dimensions for
Hybrid Network
Services
Private WAN
Hybrid WAN
SD-WAN
Advanced
SDWAN
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Shoot for the…clouds
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Legacy Hybrid Compute: Backhaul
Datacenter
BranchBranch
• Not optimized for migration to cloud
• Backhaul performance penalty
• Congests datacenter WAN
Internet
MPLS/Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Legacy Hybrid Compute: Best Effort Direct
Datacenter
BranchBranch
• “Direct” to Internet
• Best effort for availability and performance
• Manual, two-sided secure tunnel setup
Internet
MPLS/Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
SD-WAN On-Premises
SaaS / IaaS
SD-WAN
Edge
Enterprise DC
Edges in “hub” role at enterprise datacenters and regional hubs
On-premises Orchestrator and Controllers
Direct breakout to Internet for non-backhaul traffic
SD-WAN
Orchestrator
&
Controllers
Régional Hubs
Branch
Web
SD-WAN
Edge
SDWAN
Edge
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Cloud-Delivered SD-WAN
SaaS / IaaS
Enterprise DCBranch
Web
Cloud
Gateways
Pre-installed at cloud doorstep
Delivered as-a-service
Performance, Reliability & Security
SD-WAN extended to cloud for hybrid applications, compute and services
SD-WAN
Edge
SD-WAN
Orchestrator
&
Controllers
SD-WAN
Edge
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Services Insertion
Branch Site
Enterprise Hub
On Premises
Security
Other Web traffic
Salesforce.com
Web email
Internet
• Backhaul to on-premises services
– Regional and central
• Forwarding to cloud services, with SD-WAN performance
Cloud
Security
Services
SD-WAN service chaining for hybrid services
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Network - Topologies
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Parallel” Topology
MPLS/Private
Internet
 MPLS and Internet to destination
 Use both links in active/active or
active/backup
 On-premises [bottom] purely OTT end-
to-end solution – not in SP network
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Off Net to On Net” Topology
MPLS/Private
 Private core / backbone
 Last mile / access is SD-WAN Internet or hybrid
 Access to private network via enterprise regional
hub or service provider SDWAN gateway
 SD-WAN in the (SP) network provides value-add
and strategic on-ramp
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WANSD-WAN
Hybrid “Regional WAN” Topology
MPLS/Private
 Private network connects regional
SD-WAN domains
 Branches cross regions via private net
 Dynamic branch to branch only within a
region
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Mixed Sites” Topology
Silver Site / SD-WAN Hybrid
Existing SP MPLS Router
New SD-WAN Edge
Legacy Site / Hybrid
MPLS with
VPN backup
Bronze Site / SD-WAN
Internet
Single/dual
Internet
MPLS/Private
Internet
Legacy and SD-WAN hybrid and Internet sites can co-exist
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Advanced Services
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Engineered Performance vs SLA
>99% of the time SD-WAN
delivers quality VOIP over
the Internet
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Unified OTT Security
Branch Site
Enterprise DC
Hub Edge
Branch
Edge
Enterprise DC
Traditional
Private
Datacenters
INTERNET
Cloud Gateways
Private - MPLS
IPsec VPN
Same IPsec VPN, whether public or private transport – to Ent and cloud DCs
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Simplified Cloud VPN
Branch Site
Enterprise DC
Enterprise DC
 Cloud traffic not backhauled to enterprise datacenter
 Cloud gateway provides automated branch VPN to
aggregated cloud connection
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Full Potential of SD-WAN Hybrid Networks
Services
Cloud-
Delivered
SD-WAN
Network (as
a) Service
On-Premises
SD-WAN
Enterprise
Apps
Hybrid Apps
SaaS / IaaS
Private WAN
Hybrid WAN
SD-WAN
Advanced
SD-WAN
On-Premises
Services
• Flexibility
• Synergy
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Next:
Maximizing SD-WAN Architecture with
Service Chaining
Live webinar on Aug 17 at 10am
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Thank You

Contenu connexe

Tendances

Enterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANEnterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANToshal Dudhwala
 
Demystifying Prisma Access
Demystifying Prisma AccessDemystifying Prisma Access
Demystifying Prisma AccessHaris Chughtai
 
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloudCloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloudVeloCloud Networks, Inc.
 
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTXCustomer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTXssuser5824cf
 
SD WAN VS MPLS – Which is better for your Business?
SD WAN VS MPLS – Which is better for your Business?SD WAN VS MPLS – Which is better for your Business?
SD WAN VS MPLS – Which is better for your Business?Phani Kumar
 
Cisco nexus series
Cisco nexus seriesCisco nexus series
Cisco nexus seriesAnwesh Dixit
 
Palo alto networks product overview
Palo alto networks product overviewPalo alto networks product overview
Palo alto networks product overviewBelsoft
 
Cisco Security portfolio update
Cisco Security portfolio updateCisco Security portfolio update
Cisco Security portfolio updateAtanas Gergiminov
 
IT Automation with Ansible
IT Automation with AnsibleIT Automation with Ansible
IT Automation with AnsibleRayed Alrashed
 
Introduction to Software Defined WANs
Introduction to Software Defined WANsIntroduction to Software Defined WANs
Introduction to Software Defined WANsAPNIC
 
네트워크 가상화 발표자료-SDN/NFV/Cloud
네트워크 가상화 발표자료-SDN/NFV/Cloud네트워크 가상화 발표자료-SDN/NFV/Cloud
네트워크 가상화 발표자료-SDN/NFV/Cloudseungdols
 
Secure Access – Anywhere by Prisma, PaloAlto
Secure Access – Anywhere by Prisma, PaloAltoSecure Access – Anywhere by Prisma, PaloAlto
Secure Access – Anywhere by Prisma, PaloAltoPrime Infoserv
 

Tendances (20)

SD WAN
SD WANSD WAN
SD WAN
 
Enterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WANEnterprise WAN Evolution with SD-WAN
Enterprise WAN Evolution with SD-WAN
 
Optimizing Aruba WLANs for Roaming Devices
Optimizing Aruba WLANs for Roaming DevicesOptimizing Aruba WLANs for Roaming Devices
Optimizing Aruba WLANs for Roaming Devices
 
Demystifying Prisma Access
Demystifying Prisma AccessDemystifying Prisma Access
Demystifying Prisma Access
 
ACI Hands-on Lab
ACI Hands-on LabACI Hands-on Lab
ACI Hands-on Lab
 
Secure sd wan
Secure sd wanSecure sd wan
Secure sd wan
 
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloudCloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
 
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTXCustomer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
 
SD WAN VS MPLS – Which is better for your Business?
SD WAN VS MPLS – Which is better for your Business?SD WAN VS MPLS – Which is better for your Business?
SD WAN VS MPLS – Which is better for your Business?
 
SDWAN.pdf
SDWAN.pdfSDWAN.pdf
SDWAN.pdf
 
Cisco nexus series
Cisco nexus seriesCisco nexus series
Cisco nexus series
 
Palo alto networks product overview
Palo alto networks product overviewPalo alto networks product overview
Palo alto networks product overview
 
Software Defined WAN – SD-WAN
Software Defined WAN – SD-WANSoftware Defined WAN – SD-WAN
Software Defined WAN – SD-WAN
 
Cisco Security portfolio update
Cisco Security portfolio updateCisco Security portfolio update
Cisco Security portfolio update
 
IT Automation with Ansible
IT Automation with AnsibleIT Automation with Ansible
IT Automation with Ansible
 
Introduction to Software Defined WANs
Introduction to Software Defined WANsIntroduction to Software Defined WANs
Introduction to Software Defined WANs
 
Advanced rf troubleshooting_peter lane
Advanced rf troubleshooting_peter laneAdvanced rf troubleshooting_peter lane
Advanced rf troubleshooting_peter lane
 
네트워크 가상화 발표자료-SDN/NFV/Cloud
네트워크 가상화 발표자료-SDN/NFV/Cloud네트워크 가상화 발표자료-SDN/NFV/Cloud
네트워크 가상화 발표자료-SDN/NFV/Cloud
 
ISE-CiscoLive.pdf
ISE-CiscoLive.pdfISE-CiscoLive.pdf
ISE-CiscoLive.pdf
 
Secure Access – Anywhere by Prisma, PaloAlto
Secure Access – Anywhere by Prisma, PaloAltoSecure Access – Anywhere by Prisma, PaloAlto
Secure Access – Anywhere by Prisma, PaloAlto
 

Similaire à A Better Architecture for Hybrid WAN - VeloCloud

Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloudUnder the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloudVeloCloud Networks, Inc.
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016ADVA
 
The Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloudThe Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloudVeloCloud Networks, Inc.
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Canada
 
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowaniaPLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowaniaPROIDEA
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
Inteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivityInteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivityMarketingArrowECS_CZ
 
SD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloudSD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloudVeloCloud Networks, Inc.
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Russia
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?CloudSyntrix
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Canada
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesThousandEyes
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANRobb Boyd
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...SWITCHPOINT NV/SA
 
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS NetworksUsing Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS NetworksMultapplied Networks
 
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...Amazon Web Services
 
Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01Boris Rojas
 
Cloud Services: Is the Transport Network a Utility or Differentiator
Cloud Services: Is the Transport Network a Utility or DifferentiatorCloud Services: Is the Transport Network a Utility or Differentiator
Cloud Services: Is the Transport Network a Utility or DifferentiatorADVA
 

Similaire à A Better Architecture for Hybrid WAN - VeloCloud (20)

Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloudUnder the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
 
Secure Your Network for Scale & the Cloud
Secure Your Network for Scale & the CloudSecure Your Network for Scale & the Cloud
Secure Your Network for Scale & the Cloud
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016
 
The Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloudThe Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloud
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation Branch
 
Turbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WANTurbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WAN
 
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowaniaPLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Inteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivityInteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivity
 
SD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloudSD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloud
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) Solution
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS NetworksUsing Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
 
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
 
Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01
 
Cloud Services: Is the Transport Network a Utility or Differentiator
Cloud Services: Is the Transport Network a Utility or DifferentiatorCloud Services: Is the Transport Network a Utility or Differentiator
Cloud Services: Is the Transport Network a Utility or Differentiator
 

Dernier

Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxLoriGlavin3
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityIES VE
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentPim van der Noll
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersNicole Novielli
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxLoriGlavin3
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsNathaniel Shimoni
 
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesThousandEyes
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024BookNet Canada
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demoHarshalMandlekar2
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfpanagenda
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Farhan Tariq
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI AgeCprime
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfNeo4j
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPathCommunity
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch TuesdayIvanti
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...Wes McKinney
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rick Flair
 

Dernier (20)

Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptxPasskey Providers and Enabling Portability: FIDO Paris Seminar.pptx
Passkey Providers and Enabling Portability: FIDO Paris Seminar.pptx
 
How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
Decarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a realityDecarbonising Buildings: Making a net-zero built environment a reality
Decarbonising Buildings: Making a net-zero built environment a reality
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native developmentEmixa Mendix Meetup 11 April 2024 about Mendix Native development
Emixa Mendix Meetup 11 April 2024 about Mendix Native development
 
A Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software DevelopersA Journey Into the Emotions of Software Developers
A Journey Into the Emotions of Software Developers
 
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptxDigital Identity is Under Attack: FIDO Paris Seminar.pptx
Digital Identity is Under Attack: FIDO Paris Seminar.pptx
 
Time Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directionsTime Series Foundation Models - current state and future directions
Time Series Foundation Models - current state and future directions
 
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyesAssure Ecommerce and Retail Operations Uptime with ThousandEyes
Assure Ecommerce and Retail Operations Uptime with ThousandEyes
 
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: Loan Stars - Tech Forum 2024
 
Sample pptx for embedding into website for demo
Sample pptx for embedding into website for demoSample pptx for embedding into website for demo
Sample pptx for embedding into website for demo
 
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdfSo einfach geht modernes Roaming fuer Notes und Nomad.pdf
So einfach geht modernes Roaming fuer Notes und Nomad.pdf
 
Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...Genislab builds better products and faster go-to-market with Lean project man...
Genislab builds better products and faster go-to-market with Lean project man...
 
A Framework for Development in the AI Age
A Framework for Development in the AI AgeA Framework for Development in the AI Age
A Framework for Development in the AI Age
 
Connecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdfConnecting the Dots for Information Discovery.pdf
Connecting the Dots for Information Discovery.pdf
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
UiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to HeroUiPath Community: Communication Mining from Zero to Hero
UiPath Community: Communication Mining from Zero to Hero
 
2024 April Patch Tuesday
2024 April Patch Tuesday2024 April Patch Tuesday
2024 April Patch Tuesday
 
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
The Future Roadmap for the Composable Data Stack - Wes McKinney - Data Counci...
 
Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...Rise of the Machines: Known As Drones...
Rise of the Machines: Known As Drones...
 

A Better Architecture for Hybrid WAN - VeloCloud

  • 1. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 A Better Architecture for Hybrid WAN Steve Woo, VP Products & Co-founder, VeloCloud
  • 2. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 hybrid network noun / hy – brid net - work : combination of two or more different types of networks : typically referring to combination of private and public WAN transport
  • 3. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Challenge the Definition Private WAN Hybrid WAN • Hybrid WAN bar is pretty low • Also only looking at one dimension of network – the transport
  • 4. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Transport - Tiers
  • 5. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Bar is pretty low Hybrid WAN -use both public and private -BUT DISPARATE or -BACKUP ONLY
  • 6. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Yes, Simplify SD-WAN Hybrid -unified usage of links -simplified policy BUT CRITICAL TRAFFIC RELIES ON PRIVATE SLA
  • 7. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Shoot for the… … Optimized Performance TRANSPORT INDEPENDENT PERFORMANCE -Enable the use of any transport even for critical, network sensitive applications
  • 8. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid WAN versus True Transport Independence Policy Managed Hybrid Priority Site-2-site traffic Private Normal Site-2-site traffic Load balance private and Internet Cloud traffic Direct to cloud over Internet True Transport Independence Site-2-site traffic: Priority and Normal Dynamic Multi-Path Opt to automatically select link, on a per-packet basis, based on priority, app type and link performance Cloud traffic Priority and Normal Dynamic Multi-Path Opt over Internet links, based on priority and link performance • Most technologies simplify policy assignment of critical traffic to MPLS – Utilize broadband for low priority – May also deploy local QoS
  • 9. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Simplicity of Transport Independence  Abstract actual interface/WAN links from the business policy Automatic [default] All Transport  Based on:  Business priority for app  App-specific network SLAs  Real-time link conditions  Automatically steer each app onto a suitable available link  Per-packet re-steer a session mid-flow if changing link conditions necessitate
  • 10. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Advanced SD-WAN for Hybrid Assured Application performance over MPLS, Internet broadband and LTE circuits Continuous Link Monitoring Drives automation and optimization Dynamic Per Packet Steering Sub-second steering without session drops Aggregated bandwidth for single flows On Demand Remediation Protects against concurrent degradation Enables single link performance
  • 11. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Policy Based Link Steering Overrides  Pin an application to a path even when the link fails e.g. > PCI to compliant provider  Prefer application on a path but steer away if cannot meet SLA e.g. > Prefer high bandwidth video conferencing on broadband  Prefer application on a path but steer away if the link fails e.g. > Wired to wireless  Add metered usage of wireless  Abstract actual interface/WAN links from the business policy Mandatory Private Available Public Wired Preferred Public Internet Public-Wireless Private Public Public-Wired Private
  • 12. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Target Advanced SD-WAN Hybrid Private WAN Hybrid WAN • Much more possible with hybrid transport SDWAN Advanced SDWAN
  • 13. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Expanded Dimensions for Hybrid Network Services Private WAN Hybrid WAN SD-WAN Advanced SDWAN
  • 14. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Shoot for the…clouds
  • 15. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Legacy Hybrid Compute: Backhaul Datacenter BranchBranch • Not optimized for migration to cloud • Backhaul performance penalty • Congests datacenter WAN Internet MPLS/Private
  • 16. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Legacy Hybrid Compute: Best Effort Direct Datacenter BranchBranch • “Direct” to Internet • Best effort for availability and performance • Manual, two-sided secure tunnel setup Internet MPLS/Private
  • 17. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN SD-WAN On-Premises SaaS / IaaS SD-WAN Edge Enterprise DC Edges in “hub” role at enterprise datacenters and regional hubs On-premises Orchestrator and Controllers Direct breakout to Internet for non-backhaul traffic SD-WAN Orchestrator & Controllers Régional Hubs Branch Web SD-WAN Edge SDWAN Edge
  • 18. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Cloud-Delivered SD-WAN SaaS / IaaS Enterprise DCBranch Web Cloud Gateways Pre-installed at cloud doorstep Delivered as-a-service Performance, Reliability & Security SD-WAN extended to cloud for hybrid applications, compute and services SD-WAN Edge SD-WAN Orchestrator & Controllers SD-WAN Edge
  • 19. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Services Insertion Branch Site Enterprise Hub On Premises Security Other Web traffic Salesforce.com Web email Internet • Backhaul to on-premises services – Regional and central • Forwarding to cloud services, with SD-WAN performance Cloud Security Services SD-WAN service chaining for hybrid services
  • 20. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Network - Topologies
  • 21. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Parallel” Topology MPLS/Private Internet  MPLS and Internet to destination  Use both links in active/active or active/backup  On-premises [bottom] purely OTT end- to-end solution – not in SP network
  • 22. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Off Net to On Net” Topology MPLS/Private  Private core / backbone  Last mile / access is SD-WAN Internet or hybrid  Access to private network via enterprise regional hub or service provider SDWAN gateway  SD-WAN in the (SP) network provides value-add and strategic on-ramp
  • 23. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WANSD-WAN Hybrid “Regional WAN” Topology MPLS/Private  Private network connects regional SD-WAN domains  Branches cross regions via private net  Dynamic branch to branch only within a region
  • 24. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Mixed Sites” Topology Silver Site / SD-WAN Hybrid Existing SP MPLS Router New SD-WAN Edge Legacy Site / Hybrid MPLS with VPN backup Bronze Site / SD-WAN Internet Single/dual Internet MPLS/Private Internet Legacy and SD-WAN hybrid and Internet sites can co-exist
  • 25. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Advanced Services
  • 26. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Engineered Performance vs SLA >99% of the time SD-WAN delivers quality VOIP over the Internet
  • 27. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Unified OTT Security Branch Site Enterprise DC Hub Edge Branch Edge Enterprise DC Traditional Private Datacenters INTERNET Cloud Gateways Private - MPLS IPsec VPN Same IPsec VPN, whether public or private transport – to Ent and cloud DCs
  • 28. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Simplified Cloud VPN Branch Site Enterprise DC Enterprise DC  Cloud traffic not backhauled to enterprise datacenter  Cloud gateway provides automated branch VPN to aggregated cloud connection
  • 29. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Full Potential of SD-WAN Hybrid Networks Services Cloud- Delivered SD-WAN Network (as a) Service On-Premises SD-WAN Enterprise Apps Hybrid Apps SaaS / IaaS Private WAN Hybrid WAN SD-WAN Advanced SD-WAN On-Premises Services • Flexibility • Synergy
  • 30. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Next: Maximizing SD-WAN Architecture with Service Chaining Live webinar on Aug 17 at 10am
  • 31. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Thank You