SlideShare a Scribd company logo
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
A Better Architecture
for Hybrid WAN
Steve Woo, VP Products & Co-founder, VeloCloud
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
hybrid network
noun / hy – brid net - work
: combination of two or more different types of networks
: typically referring to combination of private
and public WAN transport
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Challenge the Definition
Private WAN
Hybrid WAN
• Hybrid WAN bar is pretty low
• Also only looking at one dimension of network – the transport
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Transport - Tiers
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Bar is pretty low
Hybrid WAN
-use both public and private
-BUT DISPARATE or
-BACKUP ONLY
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Yes, Simplify
SD-WAN Hybrid
-unified usage of links
-simplified policy
BUT CRITICAL TRAFFIC RELIES
ON PRIVATE SLA
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Shoot for the…
… Optimized Performance
TRANSPORT INDEPENDENT
PERFORMANCE
-Enable the use of any
transport even for critical,
network sensitive applications
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid WAN versus True Transport Independence
Policy Managed Hybrid
Priority Site-2-site
traffic
Private
Normal Site-2-site
traffic
Load balance private
and Internet
Cloud traffic Direct to cloud over
Internet
True Transport Independence
Site-2-site traffic:
Priority and
Normal
Dynamic Multi-Path Opt to automatically
select link, on a per-packet basis, based on
priority, app type and link performance
Cloud traffic
Priority and
Normal
Dynamic Multi-Path Opt over Internet links,
based on priority and link performance
• Most technologies simplify policy assignment of critical traffic to MPLS
– Utilize broadband for low priority
– May also deploy local QoS
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Simplicity of Transport Independence
 Abstract actual interface/WAN links from the
business policy
Automatic [default]
All Transport
 Based on:
 Business priority for app
 App-specific network SLAs
 Real-time link conditions
 Automatically steer each app
onto a suitable available link
 Per-packet re-steer a session
mid-flow if changing link
conditions necessitate
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Advanced SD-WAN for Hybrid
Assured Application performance over MPLS, Internet broadband and LTE circuits
Continuous Link Monitoring
Drives automation and
optimization
Dynamic Per Packet Steering
Sub-second steering
without session drops
Aggregated bandwidth for
single flows
On Demand Remediation
Protects against
concurrent degradation
Enables single link
performance
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Policy Based Link Steering Overrides
 Pin an application to a path
even when the link fails
e.g. > PCI to compliant provider
 Prefer application on a path but
steer away if cannot meet SLA
e.g. > Prefer high bandwidth
video conferencing on broadband
 Prefer application on a path but
steer away if the link fails
e.g. > Wired to wireless
 Add metered usage of wireless
 Abstract actual interface/WAN links from the
business policy
Mandatory
Private
Available
Public Wired
Preferred
Public
Internet
Public-Wireless
Private
Public
Public-Wired
Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Target Advanced SD-WAN Hybrid
Private WAN
Hybrid WAN
• Much more possible with hybrid transport
SDWAN
Advanced
SDWAN
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Expanded
Dimensions for
Hybrid Network
Services
Private WAN
Hybrid WAN
SD-WAN
Advanced
SDWAN
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Shoot for the…clouds
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Legacy Hybrid Compute: Backhaul
Datacenter
BranchBranch
• Not optimized for migration to cloud
• Backhaul performance penalty
• Congests datacenter WAN
Internet
MPLS/Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Legacy Hybrid Compute: Best Effort Direct
Datacenter
BranchBranch
• “Direct” to Internet
• Best effort for availability and performance
• Manual, two-sided secure tunnel setup
Internet
MPLS/Private
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
SD-WAN On-Premises
SaaS / IaaS
SD-WAN
Edge
Enterprise DC
Edges in “hub” role at enterprise datacenters and regional hubs
On-premises Orchestrator and Controllers
Direct breakout to Internet for non-backhaul traffic
SD-WAN
Orchestrator
&
Controllers
Régional Hubs
Branch
Web
SD-WAN
Edge
SDWAN
Edge
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Cloud-Delivered SD-WAN
SaaS / IaaS
Enterprise DCBranch
Web
Cloud
Gateways
Pre-installed at cloud doorstep
Delivered as-a-service
Performance, Reliability & Security
SD-WAN extended to cloud for hybrid applications, compute and services
SD-WAN
Edge
SD-WAN
Orchestrator
&
Controllers
SD-WAN
Edge
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Services Insertion
Branch Site
Enterprise Hub
On Premises
Security
Other Web traffic
Salesforce.com
Web email
Internet
• Backhaul to on-premises services
– Regional and central
• Forwarding to cloud services, with SD-WAN performance
Cloud
Security
Services
SD-WAN service chaining for hybrid services
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Hybrid Network - Topologies
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Parallel” Topology
MPLS/Private
Internet
 MPLS and Internet to destination
 Use both links in active/active or
active/backup
 On-premises [bottom] purely OTT end-
to-end solution – not in SP network
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Off Net to On Net” Topology
MPLS/Private
 Private core / backbone
 Last mile / access is SD-WAN Internet or hybrid
 Access to private network via enterprise regional
hub or service provider SDWAN gateway
 SD-WAN in the (SP) network provides value-add
and strategic on-ramp
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WANSD-WAN
Hybrid “Regional WAN” Topology
MPLS/Private
 Private network connects regional
SD-WAN domains
 Branches cross regions via private net
 Dynamic branch to branch only within a
region
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
SD-WAN
Hybrid “Mixed Sites” Topology
Silver Site / SD-WAN Hybrid
Existing SP MPLS Router
New SD-WAN Edge
Legacy Site / Hybrid
MPLS with
VPN backup
Bronze Site / SD-WAN
Internet
Single/dual
Internet
MPLS/Private
Internet
Legacy and SD-WAN hybrid and Internet sites can co-exist
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Advanced Services
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Engineered Performance vs SLA
>99% of the time SD-WAN
delivers quality VOIP over
the Internet
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Unified OTT Security
Branch Site
Enterprise DC
Hub Edge
Branch
Edge
Enterprise DC
Traditional
Private
Datacenters
INTERNET
Cloud Gateways
Private - MPLS
IPsec VPN
Same IPsec VPN, whether public or private transport – to Ent and cloud DCs
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Simplified Cloud VPN
Branch Site
Enterprise DC
Enterprise DC
 Cloud traffic not backhauled to enterprise datacenter
 Cloud gateway provides automated branch VPN to
aggregated cloud connection
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Full Potential of SD-WAN Hybrid Networks
Services
Cloud-
Delivered
SD-WAN
Network (as
a) Service
On-Premises
SD-WAN
Enterprise
Apps
Hybrid Apps
SaaS / IaaS
Private WAN
Hybrid WAN
SD-WAN
Advanced
SD-WAN
On-Premises
Services
• Flexibility
• Synergy
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Next:
Maximizing SD-WAN Architecture with
Service Chaining
Live webinar on Aug 17 at 10am
VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016
Thank You

More Related Content

What's hot

A Deepdive into Azure Networking
A Deepdive into Azure NetworkingA Deepdive into Azure Networking
A Deepdive into Azure Networking
Karim Vaes
 
Software Defined WAN – SD-WAN
Software Defined WAN – SD-WANSoftware Defined WAN – SD-WAN
Software Defined WAN – SD-WAN
MarketingArrowECS_CZ
 
Part 01: Azure Virtual Networks – An Overview
Part 01: Azure Virtual Networks – An OverviewPart 01: Azure Virtual Networks – An Overview
Part 01: Azure Virtual Networks – An Overview
Neeraj Kumar
 
SDWAN vs MPLS: What Enterprises need?
SDWAN vs MPLS: What Enterprises need?SDWAN vs MPLS: What Enterprises need?
SDWAN vs MPLS: What Enterprises need?
Haris Chughtai
 
A Software Defined WAN Architecture
A Software Defined WAN ArchitectureA Software Defined WAN Architecture
A Software Defined WAN Architecture
Open Networking Summits
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success Story
Cisco Enterprise Networks
 
Using Virtual Private Cloud (vpc)
Using Virtual Private Cloud (vpc)Using Virtual Private Cloud (vpc)
Using Virtual Private Cloud (vpc)
Amazon Web Services
 
SD-WAN
SD-WANSD-WAN
Virtual Intranet Access (VIA)
Virtual Intranet Access (VIA)Virtual Intranet Access (VIA)
Virtual Intranet Access (VIA)
Aruba, a Hewlett Packard Enterprise company
 
Az 104 session 5: Azure networking
Az 104 session 5: Azure networkingAz 104 session 5: Azure networking
Az 104 session 5: Azure networking
AzureEzy1
 
Azure Networking (1).pptx
Azure Networking (1).pptxAzure Networking (1).pptx
Azure Networking (1).pptx
Razith2
 
Cisco Meraki- Simplifying IT
Cisco Meraki- Simplifying ITCisco Meraki- Simplifying IT
Cisco Meraki- Simplifying IT
Cisco Canada
 
Real-world 802.1X Deployment Challenges
Real-world 802.1X Deployment ChallengesReal-world 802.1X Deployment Challenges
Real-world 802.1X Deployment Challenges
Aruba, a Hewlett Packard Enterprise company
 
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
Neeraj Kumar
 
Cisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network IntuitiveCisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Canada
 
Extending Security to EVERY Edge
Extending Security to EVERY EdgeExtending Security to EVERY Edge
Extending Security to EVERY Edge
itnewsafrica
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
VeloCloud Networks, Inc.
 
Azure Service Endpoints vs. Private Links
Azure Service Endpoints vs. Private LinksAzure Service Endpoints vs. Private Links
Azure Service Endpoints vs. Private Links
Matthias Güntert
 

What's hot (20)

A Deepdive into Azure Networking
A Deepdive into Azure NetworkingA Deepdive into Azure Networking
A Deepdive into Azure Networking
 
Software Defined WAN – SD-WAN
Software Defined WAN – SD-WANSoftware Defined WAN – SD-WAN
Software Defined WAN – SD-WAN
 
SD WAN
SD WANSD WAN
SD WAN
 
Part 01: Azure Virtual Networks – An Overview
Part 01: Azure Virtual Networks – An OverviewPart 01: Azure Virtual Networks – An Overview
Part 01: Azure Virtual Networks – An Overview
 
SDWAN vs MPLS: What Enterprises need?
SDWAN vs MPLS: What Enterprises need?SDWAN vs MPLS: What Enterprises need?
SDWAN vs MPLS: What Enterprises need?
 
A Software Defined WAN Architecture
A Software Defined WAN ArchitectureA Software Defined WAN Architecture
A Software Defined WAN Architecture
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success Story
 
Using Virtual Private Cloud (vpc)
Using Virtual Private Cloud (vpc)Using Virtual Private Cloud (vpc)
Using Virtual Private Cloud (vpc)
 
SD-WAN
SD-WANSD-WAN
SD-WAN
 
Virtual Intranet Access (VIA)
Virtual Intranet Access (VIA)Virtual Intranet Access (VIA)
Virtual Intranet Access (VIA)
 
Az 104 session 5: Azure networking
Az 104 session 5: Azure networkingAz 104 session 5: Azure networking
Az 104 session 5: Azure networking
 
Azure Networking (1).pptx
Azure Networking (1).pptxAzure Networking (1).pptx
Azure Networking (1).pptx
 
Cisco Meraki- Simplifying IT
Cisco Meraki- Simplifying ITCisco Meraki- Simplifying IT
Cisco Meraki- Simplifying IT
 
Secure sd wan
Secure sd wanSecure sd wan
Secure sd wan
 
Real-world 802.1X Deployment Challenges
Real-world 802.1X Deployment ChallengesReal-world 802.1X Deployment Challenges
Real-world 802.1X Deployment Challenges
 
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
Part 03: Azure Virtual Networks – Understanding and Creating Point-to-Site VP...
 
Cisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network IntuitiveCisco Digital Network Architecture - Introducing the Network Intuitive
Cisco Digital Network Architecture - Introducing the Network Intuitive
 
Extending Security to EVERY Edge
Extending Security to EVERY EdgeExtending Security to EVERY Edge
Extending Security to EVERY Edge
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
 
Azure Service Endpoints vs. Private Links
Azure Service Endpoints vs. Private LinksAzure Service Endpoints vs. Private Links
Azure Service Endpoints vs. Private Links
 

Similar to A Better Architecture for Hybrid WAN - VeloCloud

Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloudUnder the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
VeloCloud Networks, Inc.
 
Secure Your Network for Scale & the Cloud
Secure Your Network for Scale & the CloudSecure Your Network for Scale & the Cloud
Secure Your Network for Scale & the Cloud
VeloCloud Networks, Inc.
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016
ADVA
 
The Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloudThe Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloud
VeloCloud Networks, Inc.
 
SD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WANSD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WAN
ADVA
 
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloudCloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
VeloCloud Networks, Inc.
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Canada
 
Turbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WANTurbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WAN
VeloCloud Networks, Inc.
 
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowaniaPLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PROIDEA
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
Cisco Canada
 
Inteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivityInteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivity
MarketingArrowECS_CZ
 
SD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloudSD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloud
VeloCloud Networks, Inc.
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Russia
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?
CloudSyntrix
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Canada
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
ThousandEyes
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
Robb Boyd
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
SWITCHPOINT NV/SA
 
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS NetworksUsing Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Multapplied Networks
 
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Amazon Web Services
 

Similar to A Better Architecture for Hybrid WAN - VeloCloud (20)

Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloudUnder the Hood of Cloud-Delivered SD-WAN - VeloCloud
Under the Hood of Cloud-Delivered SD-WAN - VeloCloud
 
Secure Your Network for Scale & the Cloud
Secure Your Network for Scale & the CloudSecure Your Network for Scale & the Cloud
Secure Your Network for Scale & the Cloud
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016
 
The Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloudThe Power to Declare Network Independence - VeloCloud
The Power to Declare Network Independence - VeloCloud
 
SD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WANSD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WAN
 
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloudCloud-Delivered SD-WAN is Earth Friendly - VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation Branch
 
Turbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WANTurbo-boosting Hybrid WAN using SD-WAN
Turbo-boosting Hybrid WAN using SD-WAN
 
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowaniaPLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Inteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivityInteligentní řízení WAN konektivity
Inteligentní řízení WAN konektivity
 
SD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloudSD-WAN for Public & Private Clouds - VeloCloud
SD-WAN for Public & Private Clouds - VeloCloud
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) Solution
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?
 
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WANCisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
 
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyesHow to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
How to Effectively Monitor SD-WAN and SASE Environments with ThousandEyes
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS NetworksUsing Bonded Internet™ to Replace and Enhance Customer MPLS Networks
Using Bonded Internet™ to Replace and Enhance Customer MPLS Networks
 
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
Enterprise Network Transformation Powered by OrangeX, with Nokia Nuage and AW...
 

Recently uploaded

Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
James Anderson
 
Removing Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software FuzzingRemoving Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software Fuzzing
Aftab Hussain
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
Laura Byrne
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Paige Cruz
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Aggregage
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
BookNet Canada
 
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdfSAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
Peter Spielvogel
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
91mobiles
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
Alpen-Adria-Universität
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
Sri Ambati
 
Quantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIsQuantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIs
Vlad Stirbu
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
Safe Software
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...
sonjaschweigert1
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
Prayukth K V
 
By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
Pierluigi Pugliese
 
UiPath Community Day Dubai: AI at Work..
UiPath Community Day Dubai: AI at Work..UiPath Community Day Dubai: AI at Work..
UiPath Community Day Dubai: AI at Work..
UiPathCommunity
 

Recently uploaded (20)

Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
Alt. GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using ...
 
Removing Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software FuzzingRemoving Uninteresting Bytes in Software Fuzzing
Removing Uninteresting Bytes in Software Fuzzing
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
 
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdfObservability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
Observability Concepts EVERY Developer Should Know -- DeveloperWeek Europe.pdf
 
Generative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to ProductionGenerative AI Deep Dive: Advancing from Proof of Concept to Production
Generative AI Deep Dive: Advancing from Proof of Concept to Production
 
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...Transcript: Selling digital books in 2024: Insights from industry leaders - T...
Transcript: Selling digital books in 2024: Insights from industry leaders - T...
 
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdfSAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
SAP Sapphire 2024 - ASUG301 building better apps with SAP Fiori.pdf
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
 
Video Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the FutureVideo Streaming: Then, Now, and in the Future
Video Streaming: Then, Now, and in the Future
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
GenAISummit 2024 May 28 Sri Ambati Keynote: AGI Belongs to The Community in O...
 
Quantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIsQuantum Computing: Current Landscape and the Future Role of APIs
Quantum Computing: Current Landscape and the Future Role of APIs
 
Essentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FMEEssentials of Automations: The Art of Triggers and Actions in FME
Essentials of Automations: The Art of Triggers and Actions in FME
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...A tale of scale & speed: How the US Navy is enabling software delivery from l...
A tale of scale & speed: How the US Navy is enabling software delivery from l...
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
 
By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024By Design, not by Accident - Agile Venture Bolzano 2024
By Design, not by Accident - Agile Venture Bolzano 2024
 
UiPath Community Day Dubai: AI at Work..
UiPath Community Day Dubai: AI at Work..UiPath Community Day Dubai: AI at Work..
UiPath Community Day Dubai: AI at Work..
 

A Better Architecture for Hybrid WAN - VeloCloud

  • 1. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 A Better Architecture for Hybrid WAN Steve Woo, VP Products & Co-founder, VeloCloud
  • 2. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 hybrid network noun / hy – brid net - work : combination of two or more different types of networks : typically referring to combination of private and public WAN transport
  • 3. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Challenge the Definition Private WAN Hybrid WAN • Hybrid WAN bar is pretty low • Also only looking at one dimension of network – the transport
  • 4. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Transport - Tiers
  • 5. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Bar is pretty low Hybrid WAN -use both public and private -BUT DISPARATE or -BACKUP ONLY
  • 6. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Yes, Simplify SD-WAN Hybrid -unified usage of links -simplified policy BUT CRITICAL TRAFFIC RELIES ON PRIVATE SLA
  • 7. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Shoot for the… … Optimized Performance TRANSPORT INDEPENDENT PERFORMANCE -Enable the use of any transport even for critical, network sensitive applications
  • 8. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid WAN versus True Transport Independence Policy Managed Hybrid Priority Site-2-site traffic Private Normal Site-2-site traffic Load balance private and Internet Cloud traffic Direct to cloud over Internet True Transport Independence Site-2-site traffic: Priority and Normal Dynamic Multi-Path Opt to automatically select link, on a per-packet basis, based on priority, app type and link performance Cloud traffic Priority and Normal Dynamic Multi-Path Opt over Internet links, based on priority and link performance • Most technologies simplify policy assignment of critical traffic to MPLS – Utilize broadband for low priority – May also deploy local QoS
  • 9. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Simplicity of Transport Independence  Abstract actual interface/WAN links from the business policy Automatic [default] All Transport  Based on:  Business priority for app  App-specific network SLAs  Real-time link conditions  Automatically steer each app onto a suitable available link  Per-packet re-steer a session mid-flow if changing link conditions necessitate
  • 10. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Advanced SD-WAN for Hybrid Assured Application performance over MPLS, Internet broadband and LTE circuits Continuous Link Monitoring Drives automation and optimization Dynamic Per Packet Steering Sub-second steering without session drops Aggregated bandwidth for single flows On Demand Remediation Protects against concurrent degradation Enables single link performance
  • 11. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Policy Based Link Steering Overrides  Pin an application to a path even when the link fails e.g. > PCI to compliant provider  Prefer application on a path but steer away if cannot meet SLA e.g. > Prefer high bandwidth video conferencing on broadband  Prefer application on a path but steer away if the link fails e.g. > Wired to wireless  Add metered usage of wireless  Abstract actual interface/WAN links from the business policy Mandatory Private Available Public Wired Preferred Public Internet Public-Wireless Private Public Public-Wired Private
  • 12. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Target Advanced SD-WAN Hybrid Private WAN Hybrid WAN • Much more possible with hybrid transport SDWAN Advanced SDWAN
  • 13. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Expanded Dimensions for Hybrid Network Services Private WAN Hybrid WAN SD-WAN Advanced SDWAN
  • 14. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Shoot for the…clouds
  • 15. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Legacy Hybrid Compute: Backhaul Datacenter BranchBranch • Not optimized for migration to cloud • Backhaul performance penalty • Congests datacenter WAN Internet MPLS/Private
  • 16. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Legacy Hybrid Compute: Best Effort Direct Datacenter BranchBranch • “Direct” to Internet • Best effort for availability and performance • Manual, two-sided secure tunnel setup Internet MPLS/Private
  • 17. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN SD-WAN On-Premises SaaS / IaaS SD-WAN Edge Enterprise DC Edges in “hub” role at enterprise datacenters and regional hubs On-premises Orchestrator and Controllers Direct breakout to Internet for non-backhaul traffic SD-WAN Orchestrator & Controllers Régional Hubs Branch Web SD-WAN Edge SDWAN Edge
  • 18. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Cloud-Delivered SD-WAN SaaS / IaaS Enterprise DCBranch Web Cloud Gateways Pre-installed at cloud doorstep Delivered as-a-service Performance, Reliability & Security SD-WAN extended to cloud for hybrid applications, compute and services SD-WAN Edge SD-WAN Orchestrator & Controllers SD-WAN Edge
  • 19. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Services Insertion Branch Site Enterprise Hub On Premises Security Other Web traffic Salesforce.com Web email Internet • Backhaul to on-premises services – Regional and central • Forwarding to cloud services, with SD-WAN performance Cloud Security Services SD-WAN service chaining for hybrid services
  • 20. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Hybrid Network - Topologies
  • 21. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Parallel” Topology MPLS/Private Internet  MPLS and Internet to destination  Use both links in active/active or active/backup  On-premises [bottom] purely OTT end- to-end solution – not in SP network
  • 22. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Off Net to On Net” Topology MPLS/Private  Private core / backbone  Last mile / access is SD-WAN Internet or hybrid  Access to private network via enterprise regional hub or service provider SDWAN gateway  SD-WAN in the (SP) network provides value-add and strategic on-ramp
  • 23. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WANSD-WAN Hybrid “Regional WAN” Topology MPLS/Private  Private network connects regional SD-WAN domains  Branches cross regions via private net  Dynamic branch to branch only within a region
  • 24. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 SD-WAN Hybrid “Mixed Sites” Topology Silver Site / SD-WAN Hybrid Existing SP MPLS Router New SD-WAN Edge Legacy Site / Hybrid MPLS with VPN backup Bronze Site / SD-WAN Internet Single/dual Internet MPLS/Private Internet Legacy and SD-WAN hybrid and Internet sites can co-exist
  • 25. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Advanced Services
  • 26. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Engineered Performance vs SLA >99% of the time SD-WAN delivers quality VOIP over the Internet
  • 27. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Unified OTT Security Branch Site Enterprise DC Hub Edge Branch Edge Enterprise DC Traditional Private Datacenters INTERNET Cloud Gateways Private - MPLS IPsec VPN Same IPsec VPN, whether public or private transport – to Ent and cloud DCs
  • 28. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Simplified Cloud VPN Branch Site Enterprise DC Enterprise DC  Cloud traffic not backhauled to enterprise datacenter  Cloud gateway provides automated branch VPN to aggregated cloud connection
  • 29. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Full Potential of SD-WAN Hybrid Networks Services Cloud- Delivered SD-WAN Network (as a) Service On-Premises SD-WAN Enterprise Apps Hybrid Apps SaaS / IaaS Private WAN Hybrid WAN SD-WAN Advanced SD-WAN On-Premises Services • Flexibility • Synergy
  • 30. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Next: Maximizing SD-WAN Architecture with Service Chaining Live webinar on Aug 17 at 10am
  • 31. VeloCloud Networks, Inc. | Proprietary & Confidential | © Copyright 2016 Thank You