SlideShare a Scribd company logo
Software-Defined Wide Area Networking
SD WAN
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
Overview
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
• Purpose:
‒ Simplifies branch office connectivity and ongoing management, reduces hardware sprawl and significantly
improves enterprise application performance while strengthening visibility and control for IT departments
• Only 6% of people are using it, but it is expected that 70% will use
• Differs from SDN because it is a technology you can buy or get as a managed service
• VCPe- similar to a router but more powerful, VNFs (Virtual Network Function)
• Prioritize network connection by application type or workload
2
Basics of SD WAN
• Stems off of SDN (Software Defined Network)
– Branch connectivity using a physical or virtual device (smaller than a router)
• Rely more on broadband instead of private links
– When broadband is weak and can’t handle the functions we need, SD WAN can
switch over to private links only when needed (decreases costs)
• Channels used: MPLS, wireless LTE, broadband (least to greatest)
• SD WAN can reroute traffic based on the current state of the network.
– IT tells it how to route the different traffic rather than us doing it manually (same job
being done, but we don’t have to do the hard work, so it is less complex)
– Reacts to changing network conditions automatically which saves IT time
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 3
Constraints
• SD WAN products vary and hence are not compatible, so if your WAN
hardware must be replaced, it could result in an extra charge
• ROI tool is not standard for all enterprises which makes it hard to
understand how much SD WAN can save them
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 4
Pure-Play SD WAN Solutions
• A company that specializes in only one type of product or service to
obtain a large market share.
 Viptela
 CloudGenix
 VeloCloud
 Versa Networks
 Cybera
 Talari
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 5
Cloud SD WAN
• Goals:
– Provide access to end users, monitor security, manage resource allocation,
manage tracking, handles system failures
• Challenges for the enterprise:
– Managing information flow, pricing, security concerns, no full visibility or
control
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 6
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 7
IP or MPLS based
Service Provider
Network
SP Datacenter/
Cloud
Platform
CSP Managed SD WAN
• Communication service providers (Verizon, AT&T, etc) offer a managed
SD WAN option for their customers to purchase
• Helps their customers stay competitive and gives them the ability to
keep up with demand while minimizing costs
• Our target, so they can create a service around it, they would compete
with the pure-play companies
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 8
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 9
Robust & Secure
Infrastructure1
Application Aware
Networking2
Operational
simplicity & ease3
Business Logic and Compliance Policies
WAN path control
App
Classification Network QoS
Automation, Orchestration and Operations
Monitoring and Visibility
MPLS
Internet
4G /LTE
VPN 1
VPN 2
VPN n
Hybrid WAN connectivity
Zero-trust edge
Fully encrypted
secure fabric
End-to-end network segmentation
Intelligent
network
services
insertion
Mesh Star Hub
Segment-based
networks
Viptela
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
Secure Extensible Network
• Layer 3 VPN overlay
• Partnered with Verizon to target a healthcare company and financial
services firm – also to create the most innovative SD WAN platform
• Are said to be the most experienced and have the most enterprise
customers using their products, even though they are a young company
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 11
CloudGenix
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
ION
• Application-defined fabric that eliminates the need for hardware routers – promises to
provide a service that delivers the cloud without compromise to the remote office
• Their Central Controller doesn’t perform routing protocols, but instead uses a flow
forwarding policy that is capable of forwarding multi-gigabit line rates
• Unique approach to application fingerprinting: sessions flowing between endpoints to
identify applications, rather than using signatures or deep packet inspection
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 13
VeloCloud
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
Cloud-Delivered SD WAN
• Zero touch deployment capability
• Their SD-WANs separate control plane and data plane layers, they
move intelligence from the data plane into the programmable control
plane for greater agility
• Operates across any combination of public or private circuits
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 15
Versa Networks
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
SD WAN & SD Security
• CenturyLink has chosen them as a SD security and SD WAN vendor
• Capable of securing internet access over SD WAN
• Software and NFV architecture that bundles well with their other
managed services
• Can be deployed in a matter of hours as opposed to days or weeks
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 17
Cybera
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
SD WAN
• Built on SSEE principle (security, speed, ease, economics) of
provisioning new applications and locations
• It consolidates multiple network functions including routing, VPN,
firewall, IDS, multi-factor authentication, network segmentation and
Wi-Fi in a single on premise device that can be installed in minutes
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 19
Talari
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
SD WAN
• All available bandwidth is used which reduces congestion
• Quality sensitive applications remain on high quality paths and bulk
transfers complete faster by using aggregated link capacity without
displacing high priority traffic
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 21

More Related Content

SD WAN

  • 1. Software-Defined Wide Area Networking SD WAN © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 2. Overview © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY • Purpose: ‒ Simplifies branch office connectivity and ongoing management, reduces hardware sprawl and significantly improves enterprise application performance while strengthening visibility and control for IT departments • Only 6% of people are using it, but it is expected that 70% will use • Differs from SDN because it is a technology you can buy or get as a managed service • VCPe- similar to a router but more powerful, VNFs (Virtual Network Function) • Prioritize network connection by application type or workload 2
  • 3. Basics of SD WAN • Stems off of SDN (Software Defined Network) – Branch connectivity using a physical or virtual device (smaller than a router) • Rely more on broadband instead of private links – When broadband is weak and can’t handle the functions we need, SD WAN can switch over to private links only when needed (decreases costs) • Channels used: MPLS, wireless LTE, broadband (least to greatest) • SD WAN can reroute traffic based on the current state of the network. – IT tells it how to route the different traffic rather than us doing it manually (same job being done, but we don’t have to do the hard work, so it is less complex) – Reacts to changing network conditions automatically which saves IT time © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 3
  • 4. Constraints • SD WAN products vary and hence are not compatible, so if your WAN hardware must be replaced, it could result in an extra charge • ROI tool is not standard for all enterprises which makes it hard to understand how much SD WAN can save them © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 4
  • 5. Pure-Play SD WAN Solutions • A company that specializes in only one type of product or service to obtain a large market share.  Viptela  CloudGenix  VeloCloud  Versa Networks  Cybera  Talari © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 5
  • 6. Cloud SD WAN • Goals: – Provide access to end users, monitor security, manage resource allocation, manage tracking, handles system failures • Challenges for the enterprise: – Managing information flow, pricing, security concerns, no full visibility or control © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 6
  • 7. © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 7 IP or MPLS based Service Provider Network SP Datacenter/ Cloud Platform
  • 8. CSP Managed SD WAN • Communication service providers (Verizon, AT&T, etc) offer a managed SD WAN option for their customers to purchase • Helps their customers stay competitive and gives them the ability to keep up with demand while minimizing costs • Our target, so they can create a service around it, they would compete with the pure-play companies © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 8
  • 9. © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 9 Robust & Secure Infrastructure1 Application Aware Networking2 Operational simplicity & ease3 Business Logic and Compliance Policies WAN path control App Classification Network QoS Automation, Orchestration and Operations Monitoring and Visibility MPLS Internet 4G /LTE VPN 1 VPN 2 VPN n Hybrid WAN connectivity Zero-trust edge Fully encrypted secure fabric End-to-end network segmentation Intelligent network services insertion Mesh Star Hub Segment-based networks
  • 10. Viptela © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 11. Secure Extensible Network • Layer 3 VPN overlay • Partnered with Verizon to target a healthcare company and financial services firm – also to create the most innovative SD WAN platform • Are said to be the most experienced and have the most enterprise customers using their products, even though they are a young company © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 11
  • 12. CloudGenix © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 13. ION • Application-defined fabric that eliminates the need for hardware routers – promises to provide a service that delivers the cloud without compromise to the remote office • Their Central Controller doesn’t perform routing protocols, but instead uses a flow forwarding policy that is capable of forwarding multi-gigabit line rates • Unique approach to application fingerprinting: sessions flowing between endpoints to identify applications, rather than using signatures or deep packet inspection © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 13
  • 14. VeloCloud © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 15. Cloud-Delivered SD WAN • Zero touch deployment capability • Their SD-WANs separate control plane and data plane layers, they move intelligence from the data plane into the programmable control plane for greater agility • Operates across any combination of public or private circuits © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 15
  • 16. Versa Networks © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 17. SD WAN & SD Security • CenturyLink has chosen them as a SD security and SD WAN vendor • Capable of securing internet access over SD WAN • Software and NFV architecture that bundles well with their other managed services • Can be deployed in a matter of hours as opposed to days or weeks © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 17
  • 18. Cybera © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 19. SD WAN • Built on SSEE principle (security, speed, ease, economics) of provisioning new applications and locations • It consolidates multiple network functions including routing, VPN, firewall, IDS, multi-factor authentication, network segmentation and Wi-Fi in a single on premise device that can be installed in minutes © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 19
  • 20. Talari © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
  • 21. SD WAN • All available bandwidth is used which reduces congestion • Quality sensitive applications remain on high quality paths and bulk transfers complete faster by using aggregated link capacity without displacing high priority traffic © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 21