Upload
switchpoint-nvsa
View
247
Download
0
Embed Size (px)
Citation preview
Confidential | © 2015 Silver Peak Systems, Inc. All Rights Reserved.
Broadband Your WANSilver Peak: Securely connecting users to applications via the highest quality and most cost-effective form of connectivity available.
Jan-Willem Keinke
Sr. SE EMEA
Scalable WAN OpFounded to deliver highest-capacity, highest-performing data center and branch office WAN optimization products
VirtualizationPioneered virtual WAN optimization - software for any platform, any size network and any applications
SD-WANMoving beyond WAN optimization to enable broadband and hybrid WANs
A Brief History
2004
2011
2015
Join Those Already Relying on Silver PeakOver 2,000 Customers Worldwide
Robust Portfolio of WAN Solutions
Problem: Applications slow over distanceImprove productivity for users by dramatically improving the quality and performance of the WAN
NX & VX
WAN Optimization
Unity EdgeConnect
Branch Connectivity
Problem: Finding connectivity alternativesLeverage broadband to augment or replace MPLS, reducing connectivity costs
Select applications or sites that need application acceleration (Unity Boost)
Problem: Missing RPOs and need faster replicationMaximize throughput for data replication over distance and shrink your recover point objectives (RPOs)
VRX
Replication Acceleration
virtual virtual virtual
The Legacy WAN
MPLS makes sense when applications live in the data center
The Good…• Predictable, Reliable, PrivateThe Challenges…• Rigid, No Control, Expensive
Data Center
BranchBranch
Branch Branch
BranchBranch
MPLS MPLS
MPLSFrame RelayLeased Lines
1980 1990 2000
The WAN is Due for Change
Legacy WAN Optimization
Maximize the ROI for the cost of MPLS
Key Features• Data compression & pattern deduplication• Application/Protocol acceleration
Selected on Price&PerformanceThe Challenges…..• Drop in the cost of BW• Not designed to work across multiple links• Not designed to work in different quality links
• How to optimize to the cloud?
Data Center
BranchBranch
Branch Branch
BranchBranch
MPLS MPLS
Enterprises Need to Operate at “Cloud Speed”
As apps move to the cloud…• MPLS backhaul limits performance
• Users frustrated with sluggish apps
• New sites take months to connect
• Adds/moves/changes take too long
• Cannot see & control all apps
• Costs rising annually
BranchBranch
Branch Branch
BranchBranch
Data Center
MPLS MPLS
Internet
Classical WAN design
BranchBranch
Branch Branch
BranchBranch
Data CenterMPLS
Created through Organic growth• Internet Access only needed at the DC
• Limited capacity needed
• Single demarcation point between public and private
• All Firewall, AV-scanning, content filtering, DLP and monitoring at a single point
WAN design based on actual traffic
BranchBranch
Branch Branch
BranchBranch
Data CenterMPLS
The Good
• Off-load the MPLS
• Shorter distance to the Cloud
• Alternative path to the DC
The Bad
• Many public/private connection points to secure
• Massive investment in kit and manpower to operate
Hybrid Design
BranchBranch
Branch Branch
BranchBranch
Data CenterMPLS
Leverage The Internet (1)
• Move DC apps to the cloud• Use IaaS • Optimized and secure
connections from each Branch• VPN terminates at the IaaS DC
Hybrid Design
BranchBranch
Branch Branch
BranchBranch
Data CenterMPLS
Leverage The Internet (2)
• Move DC apps to the cloud• Use IaaS • Optimized and secure
connections from each Branch• VPN terminates at the IaaS DC
• Add SaaS Optimization • IaaS hosted Silver Peak
appliance will advertise only configured SaaS applications
Hybrid Design
BranchBranch
Branch Branch
BranchBranch
Data CenterMPLS
Leverage The Internet (3)• Move DC apps to the Cloud
• Use IaaS • Optimized and secure
connections from each Branch• VPN terminates at the IaaS DC
• Add SaaS Optimization • IaaS hosted Silver Peak
appliance will advertise only configured SaaS applications
• Do Internet Hand-off in the Cloud• Deploy a Security street in the
cloud• In multiple GEO’s for scalability
and resiliency
Internet Design
BranchBranch
Branch Branch
BranchBranch
Go all Internet• No more need for MPLS
• DC Connected via Internet VPN’s
Hybrid Design
The new WAN Optimization
• Solution must support identical functionality and scalability in Virtual and hardware format
• Must offer path selection• During transition phase and to provide resiliency across Internet• Advanced selection features based on availability but also quality
• Maintain separation between public and private networks while using public infrastructure for connectivity
• Must have features to compensate for higher loss and latency typically seen on Internet VPN links
Key needs for such a transformation
Introducing the Unity EdgeConnect PortfolioDeployed in Minutes to Deliver the Highest-Quality Connections
• Virtual and Hardware appliances
• Certified for Azure, AWS and Hybrid Cloud
• Scales from 2M to 10G bps• Compression and
Acceleration up to 5Gbps
Unity EdgeConnect
• Single screen administration • Automated business
intent policies• Performance monitoring with
heat map• Visibility into legacy
and cloud applications• Bandwidth cost
savings reports
Unity Orchestrator
• Optional performance pack• Latency mitigation • Data reduction • Apply where and
when needed
Unity Boost
physical virtual
Packets Out-of-Order
Packet Lost
Private Line Reliability Over InternetPath Conditioning Enables Carrier Grade Reliability Over Internet
123P
Lost Packet Rebuilt from Parity
123P 123P
Forward Error Correction
Packet Order Correction
123
Packets Reordered
12 3
23 1
12 3
Detect Out-of-Order
Selecting Topology
Selecting the Overlay
Match and Filter
Brownout Thresholds
Selecting Transports
Bonding Policy
QoS and Boost Failover Action
Configuring Business Intent Overlays
MPLS
Internet
4G / LTE
Ultra Resilient Packet DeliveryUltra Resilient Mode Provides Voice Quality Reliability
Appliance can recover from the loss of multiple packets and multiple parity packets
123
Any lost packets are rebuilt from parity
41234
1P2P3P4P
Parity PacketsEach parity packet contains
data about all 4 packets
Packets Lost
123
1P2P3P4P
MPLS
Internet
4G / LTE
Packet-Based Load BalancingAggregated Links Sized for High-Volume Workloads
1
2
3
7 6 5 12348
45
67
8
Packets are distributed proportionally across the aggregated link
Packets are reassembled on egress
7 6 5 12348
Internet
Encryption and WAN Hardening Allows Direct Connections to Internet
SecureHardened interfaces are internet safe andadmit only tunneled traffic
ConfigurableHardening can be done pre link so that links such as MPLS can run with standard corporate security policies
EncryptionAll IPsec tunnels are encrypted with 256-bit AES
X
IPsec Encrypted
MPLS
Limit the effect of Latenct
TransmitAck
Latency 100 ms
Total time: 500 msWithout Network Acceleration
TransmitAck
Latency 100 ms
Total time: 100 ms With Network Acceleration
Latency Determined by Distance, Speed, Congestion
The Internet Is a Logical Alternative with Silver Peak
Why companies can move to thepublic Internet to augment or
replaceMPLS private
networks!
Performance and Reliability• Broadband QoS via Path Conditioning• Dynamic Path Control• Tunnel Bonding
Security• 256-bit AES IPSec Overlay• Traffic Segmentation• Zero-touch Eliminates Complexity
Visibility and Control • Business Intent Policies• Centralized Orchestration and Administration• Performance Monitoring with Heat Map
Q&A
Backup slides
Enabling Business Intent Overlays Silver Peak Virtualizes the WAN
CriticalApps
Business Apps
Network
Network Virtualization
MPLS Internet 4G LTE
Virtual TransportOverlay
Virtual TransportOverlay
Virtual TransportOverlay
Real-TimeApps
Business Intent Overlays
Virtual Network Transport
Physical Network Transport
Silver Peak Virtual Network OverlaysOrchestrator Applies Business Intent to Network Segments
MPLS 4G LTE
Transport
QoSTopology ConnectionAccess Policy
VoIP
MaxQuality
Full Mesh
MPLS + LTE
VoiceVLAN
Enterprise Applications
Max Availability
Dual Hub and
Spoke
MPLS + Internet
Data VLAN
Guest Wi-Fi
Min CostHub-Spoke Internet
GuestVLAN
Internet
Selecting Topology
Selecting the Overlay
Match and Filter
Brownout Thresholds
Selecting Transports
Bonding Policy
QoS and Boost Failover Action
Configuring Business Intent Overlays
MPLS
Internet
4G / LTE
Ultra Resilient Packet DeliveryUltra Resilient Mode Provides Voice Quality Reliability
Appliance can recover from the loss of multiple packets and multiple parity packets
123
Any lost packets are rebuilt from parity
41234
1P2P3P4P
Parity PacketsEach parity packet contains
data about all 4 packets
Packets Lost
123
1P2P3P4P
MPLS
Internet
4G / LTE
Packet-Based Load BalancingAggregated Links Sized for High-Volume Workloads
1
2
3
7 6 5 12348
45
67
8
Packets are distributed proportionally across the aggregated link
Packets are reassembled on egress
7 6 5 12348
Unity EdgeConnect Feature OverviewEdgeConnect Simplifies Management and Control
Physical Appliances
Zero Touch Provisioning
Boost WAN Optimization
Virtual Appliances Cloud
QoS
Dynamic Path Control
Path Conditioning
Application Visibility
AutomaticIPsec VPN
Business Intent Overlays
Orchestration
SaaS Optimization
Infrastructure
Optimization Options
SD-WAN Features(Base License)
EdgeConnect XS EdgeConnect S EdgeConnect M EdgeConnect L EdgeConnect XL
Part Identifier EC-XS EC-S EC-M EC-L EC-XL
Typical Deployment
Small Branch
Large Branch
Head OfficeSmall Hub
Data CenterLarge Hub
Data CenterLarge Hub
Typical WAN BW 2–200 Mbps 10–1000 Mbps 50–2000 Mbps 1–5 Gbps 2–10 Gbps
Recommended Boost up to 50 Mbps 200 Mbps 500 Mbps 1 Gbps 5 Gbps
Redundancy / FRUs No No Power and SSD Power and SSD Power and SSD
Data Path Interfaces
4 x RJ4510 / 100 / 1000
6 x RJ451/10G Option
4 x RJ452 x 1/10G Fiber
4 x RJ452 x 1/10G Fiber 4 x 1/10G Fiber
Unity EdgeConnect Hardware Platforms
Virtual Deployment Options (EC-V)
Hypervisor
IaaS Clouds
Branch
Silver Peak delivers the flexibility to securely connect users to applications via the highest quality and most cost-effective source of connectivity available
Visibility and ControlSee and control all applications, and encrypt all WAN traffic with AES-256
FlexibilityAugment or replace MPLS with any form of broadband connectivity (Cable, DSL, LTE)
PerformanceMaking the Internet perform like a private line
SavingsDramatically reduce connectivity and equipment costs by up to 90%
Silver Peak: Where It All Comes Together
Internet
MPLS
Broadband Your WANThank You
www.silver-peak.com