SD WAN
- 2. Overview
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY
• Purpose:
‒ Simplifies branch office connectivity and ongoing management, reduces hardware sprawl and significantly
improves enterprise application performance while strengthening visibility and control for IT departments
• Only 6% of people are using it, but it is expected that 70% will use
• Differs from SDN because it is a technology you can buy or get as a managed service
• VCPe- similar to a router but more powerful, VNFs (Virtual Network Function)
• Prioritize network connection by application type or workload
2
- 3. Basics of SD WAN
• Stems off of SDN (Software Defined Network)
– Branch connectivity using a physical or virtual device (smaller than a router)
• Rely more on broadband instead of private links
– When broadband is weak and can’t handle the functions we need, SD WAN can
switch over to private links only when needed (decreases costs)
• Channels used: MPLS, wireless LTE, broadband (least to greatest)
• SD WAN can reroute traffic based on the current state of the network.
– IT tells it how to route the different traffic rather than us doing it manually (same job
being done, but we don’t have to do the hard work, so it is less complex)
– Reacts to changing network conditions automatically which saves IT time
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 3
- 4. Constraints
• SD WAN products vary and hence are not compatible, so if your WAN
hardware must be replaced, it could result in an extra charge
• ROI tool is not standard for all enterprises which makes it hard to
understand how much SD WAN can save them
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 4
- 5. Pure-Play SD WAN Solutions
• A company that specializes in only one type of product or service to
obtain a large market share.
Viptela
CloudGenix
VeloCloud
Versa Networks
Cybera
Talari
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 5
- 6. Cloud SD WAN
• Goals:
– Provide access to end users, monitor security, manage resource allocation,
manage tracking, handles system failures
• Challenges for the enterprise:
– Managing information flow, pricing, security concerns, no full visibility or
control
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 6
- 7. © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 7
IP or MPLS based
Service Provider
Network
SP Datacenter/
Cloud
Platform
- 8. CSP Managed SD WAN
• Communication service providers (Verizon, AT&T, etc) offer a managed
SD WAN option for their customers to purchase
• Helps their customers stay competitive and gives them the ability to
keep up with demand while minimizing costs
• Our target, so they can create a service around it, they would compete
with the pure-play companies
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 8
- 9. © 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 9
Robust & Secure
Infrastructure1
Application Aware
Networking2
Operational
simplicity & ease3
Business Logic and Compliance Policies
WAN path control
App
Classification Network QoS
Automation, Orchestration and Operations
Monitoring and Visibility
MPLS
Internet
4G /LTE
VPN 1
VPN 2
VPN n
Hybrid WAN connectivity
Zero-trust edge
Fully encrypted
secure fabric
End-to-end network segmentation
Intelligent
network
services
insertion
Mesh Star Hub
Segment-based
networks
- 11. Secure Extensible Network
• Layer 3 VPN overlay
• Partnered with Verizon to target a healthcare company and financial
services firm – also to create the most innovative SD WAN platform
• Are said to be the most experienced and have the most enterprise
customers using their products, even though they are a young company
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 11
- 13. ION
• Application-defined fabric that eliminates the need for hardware routers – promises to
provide a service that delivers the cloud without compromise to the remote office
• Their Central Controller doesn’t perform routing protocols, but instead uses a flow
forwarding policy that is capable of forwarding multi-gigabit line rates
• Unique approach to application fingerprinting: sessions flowing between endpoints to
identify applications, rather than using signatures or deep packet inspection
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 13
- 15. Cloud-Delivered SD WAN
• Zero touch deployment capability
• Their SD-WANs separate control plane and data plane layers, they
move intelligence from the data plane into the programmable control
plane for greater agility
• Operates across any combination of public or private circuits
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 15
- 17. SD WAN & SD Security
• CenturyLink has chosen them as a SD security and SD WAN vendor
• Capable of securing internet access over SD WAN
• Software and NFV architecture that bundles well with their other
managed services
• Can be deployed in a matter of hours as opposed to days or weeks
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 17
- 19. SD WAN
• Built on SSEE principle (security, speed, ease, economics) of
provisioning new applications and locations
• It consolidates multiple network functions including routing, VPN,
firewall, IDS, multi-factor authentication, network segmentation and
Wi-Fi in a single on premise device that can be installed in minutes
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 19
- 21. SD WAN
• All available bandwidth is used which reduces congestion
• Quality sensitive applications remain on high quality paths and bulk
transfers complete faster by using aggregated link capacity without
displacing high priority traffic
© 2016 BROCADE COMMUNICATIONS SYSTEMS, INC. CONFIDENTIAL INTERNAL USE ONLY 21