SlideShare a Scribd company logo
Next-Gen Cisco SD-WAN Architecture
Shamil Fernando
Manager Systems Engineering (Cisco SD-WAN)
User and Application Landscape is Changing
Change in App Content Change in App Delivery Change in App Consumption
Rich, Dynamic, Web-Based Cloud, SaaS, Virtualized Mobile, Diverse devices
Internet Edge Is Moving to the Branch
Applications Are Moving to the Cloud
INTERNET MPLS 4G
DC vDC
IaaS SaaS
mobile
branch
guest
head
office
Customer Requirements
Security and Compliance are critical areas and require us to
have the appropriate Segmentation, Policing, Access
Controls and Visibility from end-to-end
Network Planning
I want to Simplify Deployments and Automate
Policy Enforcement to ensure a Consistent and
Seamless Application Experience
Network Operations
I want to Centralized Policy Enforcement and
Assurance to Accelerate Time to Resolution
Network Manager
I need to Replace or Change existing Infrastructure
and WAN Services to Lower Costs and Maximize
Investments
Security Operations
Traditional and Legacy Architectures cannot scale to
address changing needs
SOFTWARE DEFINED: True separation of control, data
and management
CLOUD: Cloud hosted and delivered
APPLICATION AWARE: Visibility & SLA business intent
policy enforcement
SCALE AND FLEXIBILITY: True enterprise scale
SECURITY: Ingrained authentication, encryption,
segmentation, access controls & service chaining
OPEN: for automation, orchestration,
best-of-breed integration
Application
Bandwidth
Requirements
Cloud
Consumption
Disjointed
Security
Simplified
Operations
WAN
Flexibility
Time
To Capability
Challenges
Enabling Seamless transition
from traditional WAN to SD WAN
SECURE WAN FABRIC
Broadband 4G/LTEMPLS
ZERO TOUCH ZERO TRUST
1
• Reduce Cost
• Secure Your Network
• Operate Faster and Simplicity
• Integrate Latest Cloud and Network Technologies
Cisco SD-WAN Solution helps you to:
Traditional Networks
 Control and Data Plane same
devices
 Peer-to-peer control plane
 Routing protocol prorogate
for all (N^2) complexity
 Localize management
 Complex to manage
 Not scalable
 Impossible to support
multiple transport
 Link down create route storm
Control &
Data Plane
Control &
Data Plane
Control &
Data Plane
4G/LTE
MPLS1Internet
MPLS2
SD-WAN Principals
• Separation Control and Data Plane
• DTLS/TLS is used to establish the
control channel
• Control channel is established only
with central controllers
• No scaling issues are with full mesh
of control plane
• Control channel does not have to
follow the data path
• No disruption one link fail
Data Plane
Control Plane
Data PlaneData Plane
Data Plane
Cisco SD-WAN Architecture
Control Plane
(Containers or VMs)
Data Plane
(Physical or Virtual)
Management Plane
(Multi-tenant or Dedicated)
Orchestration Plane
API
4GINTERNET MPLS
vSmart
ANALYTICSORCHESTRATION
vManager
vManage
vSmart
vEdge
vBond
vBond
Data Center Campus Branch Home Office
Cisco SD-WAN Solution Elements
4G/LTE
MPLSInternet
vEdge Routers
vSmartvManage
Ubiquitous
Data Plane
Secure
Control Plane
Controllers
On-premise/cisco Cloud/
Partner Cloud
vBond
Cisco SD-WAN Solution
Transport Independent Fabric
CellularMPLSBroadband
Delivery Platform
QoS
Application Policies
Security
Per-Segment
Topologies
Segmentation Svc Insertion
Cloud
Path
Application
Visibility
& SLA
Secure
Perimeter
Traffic
Engineering
SurvivabilityRouting
Analytics
Monitoring
Operations
Transport
Hub
Multicast
Cloud
Accel
Zero-Trust Security Principles
DTLS/TLS
Control Tunnel
 Strong authentication
- PKI certificates, 2048bit keys
 Highly encrypted tunnels
- DTLS/TLS AES256
- White-list model
 Ubiquitous Deployment
- Automatic NAT mitigation
Control Elements
X.509 Certificate
Secure Bring-up With Approval
• Per-device control on TPM identity trust
• Single stage (Zero Touch Provisioning) – TPM identity is automatically trusted
• Two stage (One Touch Provisioning) – TPM identity is not automatically
trusted. Requires administrator validation.
• Staging Mode – TPM identity is automatically trusted for control, but not for
data. Requires administrator validation.
End to End Security
TransportsTransportsTransports
Site 1 Site 2
IPSec AES256-GCM
ESPv3 with HMAC SHA-1
vSmart
Controllers
Control Plane
DTLS/TLS
IPSec security
associations
IPSec security
associations
Update Update
 Symmetric encryption IPsec AES256-GCM
ESPv3 with HMAC SHA-1
 Traffic Encryption and Authentication Header
 Tunnel Liveliness Detection (BFD)
 Anti-Replay Protection
 Rekey 12 hours
 Each vEdge advertises its local
IPsec encryption key
Traffic Encrypted
with Key 2
Traffic Encrypted
with Key 1
vEdge
Router
vEdge
Router
Local
Remote Local
Remote
Configuration Simplicity and ZTP
• Templates are attached to provisioned
vEdge routers
• Variables are used for rapid bulk
configuration rollout with unique per-
device settings
• Local configuration changes are not
allowed
- Prevents configuration drift
Configuration Simplicity and ZTP
Zero Touch Bringup
Server
Control and Policy
Elements
Full Registration
and Configuration
vEdge Router
1 2
3 4 5
* Factory default config
Assumption:
 DNS to resolve ztp.viptela.com*
 Authentication
 Push the configuration
 Enforce the version
Application Visibility
Secure
SD-WAN
Fabric
Deep Packet Inspection
Over 3000+ application
 App Firewall
 Traffic prioritization
 Transport selection
vEdge Router
App 1
App 2
App 3,000
Application Performances and AAR
Path1: 10ms, 0% loss, 2ms jitter
Path2: 200ms, 3% loss 5ms jitter
Path3: 140ms, 1% loss 3ms jitter
vSmart
Controllers
App Aware Routing Policy
App A path must have
latency <150ms and loss <2%
Path 2
 vEdge Routers continuously perform
path liveliness and quality
measurements Latency, Loss and Jitter,
 Auto Load Balance
Device QoS
(shaping, policing,
queuing, marking)
Internet
MPLS
4G LTE
Optimal Throughput
End to End Segmentation
Use Cases
 Security Zoning
 Compliance
 Guest WiFi
 Multi-Tenancy
 Extranet
Interface
VLAN
Prefix
TransportsTransports
Site 1
Site 2
Data Center
VPN
A
VPN
B
VPN
C
IPSec
20
IP
8
UDP
36
ESP
4
VPN
…
Data
Label
802.1q
802.1q
IF
IF
IF
IF
 Isolated virtual private networks across any
transport
 VPN mapping is based on physical vEdge Router
interface, 802.1Q VLAN tag or a mix of both
Per-Segment Topologies
Full Mesh Hub-and-Spoke Regional Hub
Unified Communications Data Center Applications Regional Internet/Services
Optimal Application Experience
Cloud onRamp for IaaS
Secure
SD-WAN
Fabric
Provide security,
segmentation, QoS and
reliability to cloud
workloads?
Optimize Public Cloud Performance (SaaS)
Regional
internet exit
Branch with
local DMZ
Data
Center/DMZ
vFabric
httping probes
SaaS traffic primary
SaaS traffic backup
Score Color
8-10 GREEN
5-8 YELLOW
0-5 RED
Secure Internet Access
Secure
SD-WAN
Fabric
Branch
Campus
Regional
Data Center
Internet
& Cloud
Small Office
Home Office
Cisco
Security
Centralize Management & Monitoring
Centralize Configuration
• Security
• Template Configuration
• Policy
• Routing
• QoS, Marking
• ACL
• Application SLA
• …..
Centralize Monitoring
• Devices
• Application
• Bandwidth usage
• Link Performances
• Alerts
Analytics Dashboard
Visibility
• Application Visibility
• Network Visibility
• Network Co-relation
• Cross-Customer Comparison
Forecast
• Application Usage Forecast
• Bandwidth Usage Forecast
What-If
• Branch Expansions
• Rolling out new applications
• Policy changes
Recommendation
Self Healing Capabilities
Active Software
Available Software
Available Software
Available Software
A
B
C
D
Activate
Rollback
vEdge Router
1
2
3
Failed
Upgrade
vEdge Router
1
Attach Template
vManage
2
Connectivity
Lost
Rollback
3
High Availability and Redundancy
VRRP OSPF/
BGP
OSPF/
BGP
Internet InternetMPLSMPLS
Internet
MPLS
Site
Data
Center
MPLS
Internet
vSmart Controllers
Control
Data
vEdge Portfolio
vEdge capabilities integrated
into all IOS-XE platforms
(ISR, CSR, ENCS, ASR1K)
cloud
Interconnect
(2 Gbps +)
Small Office
Home Office
100 Mbps
Branch
Campus
1 Gbps
Large Campus
Data Center
10 Gbps
Higher Capacity
Aggregation
20 Gbps+
ISR4K
ASR1K
Private Cloud
ENCS
Why Cisco SD-WAN
Trusted by Fortune 500 Enterprises
Cisco SD-WAN: The Most-Deployed Enterprise Grade SD-WAN
Thousands of sites, every major industry, including:
RETAIL HEALTHCARE FINANCIAL SERVICES ENERGY
Most deployed and trusted by
Fortune 500 enterprises
Winning 95% of
competitive POCs
Standards Compliant: …and more
[Cisco Connect 2018 - Vietnam] Shamil fernando hcmc next-gen cisco sd-wan (viptela) architecture

More Related Content

What's hot

Anuta Networks at Networking Field Day 14
Anuta  Networks at Networking Field Day 14Anuta  Networks at Networking Field Day 14
Anuta Networks at Networking Field Day 14
Kiran Sirupa
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
Cisco Canada
 
Secure Your Network for Scale & the Cloud
Secure Your Network for Scale & the CloudSecure Your Network for Scale & the Cloud
Secure Your Network for Scale & the Cloud
VeloCloud Networks, Inc.
 
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Kiran Sirupa
 
CenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily PechalCenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily Pechal
Emily Pechal
 
Simplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN ApplicationSimplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN Application
Cisco Enterprise Networks
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
Cisco Canada
 
Presentation NetScaler SD-WAN - David Gallo
Presentation NetScaler SD-WAN - David GalloPresentation NetScaler SD-WAN - David Gallo
Presentation NetScaler SD-WAN - David Gallo
Michelle Guerrero Montalvo
 
Forward Networks - Networking Field Day 13 presentation
Forward Networks - Networking Field Day 13 presentationForward Networks - Networking Field Day 13 presentation
Forward Networks - Networking Field Day 13 presentation
Forward Networks
 
Access Management with Aruba ClearPass
Access Management with Aruba ClearPassAccess Management with Aruba ClearPass
Access Management with Aruba ClearPass
Aruba, a Hewlett Packard Enterprise company
 
Motorola Wing 5.6 specification sheet
Motorola  Wing 5.6 specification sheetMotorola  Wing 5.6 specification sheet
Motorola Wing 5.6 specification sheet
Advantec Distribution
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
VeloCloud Networks, Inc.
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA Automation
Cisco Canada
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?
CloudSyntrix
 
A consolidated virtualization approach to deploying distributed cloud networks
A consolidated virtualization approach to deploying distributed cloud networksA consolidated virtualization approach to deploying distributed cloud networks
A consolidated virtualization approach to deploying distributed cloud networks
Aruba, a Hewlett Packard Enterprise company
 
SDN in the Enterprise: APIC Enterprise Module
SDN in the Enterprise:  APIC Enterprise Module SDN in the Enterprise:  APIC Enterprise Module
SDN in the Enterprise: APIC Enterprise Module
Cisco Canada
 
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WANMoving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Digital Transformation EXPO Event Series
 
Introduction April 22
Introduction April 22Introduction April 22
Introduction April 22Nick Kovacic
 
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloudMaximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
VeloCloud Networks, Inc.
 

What's hot (20)

Anuta Networks at Networking Field Day 14
Anuta  Networks at Networking Field Day 14Anuta  Networks at Networking Field Day 14
Anuta Networks at Networking Field Day 14
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
Secure Your Network for Scale & the Cloud
Secure Your Network for Scale & the CloudSecure Your Network for Scale & the Cloud
Secure Your Network for Scale & the Cloud
 
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
Intel Network Builders Summit: Key Lessons from an advanced multi-vendor NFV ...
 
CenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily PechalCenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily Pechal
 
Simplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN ApplicationSimplify WAN Deployment with the Cisco IWAN Application
Simplify WAN Deployment with the Cisco IWAN Application
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 
Presentation NetScaler SD-WAN - David Gallo
Presentation NetScaler SD-WAN - David GalloPresentation NetScaler SD-WAN - David Gallo
Presentation NetScaler SD-WAN - David Gallo
 
Forward Networks - Networking Field Day 13 presentation
Forward Networks - Networking Field Day 13 presentationForward Networks - Networking Field Day 13 presentation
Forward Networks - Networking Field Day 13 presentation
 
Access Management with Aruba ClearPass
Access Management with Aruba ClearPassAccess Management with Aruba ClearPass
Access Management with Aruba ClearPass
 
Motorola Wing 5.6 specification sheet
Motorola  Wing 5.6 specification sheetMotorola  Wing 5.6 specification sheet
Motorola Wing 5.6 specification sheet
 
Secure sd wan
Secure sd wanSecure sd wan
Secure sd wan
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA Automation
 
SD-WAN: Why should you care?
SD-WAN: Why should you care?SD-WAN: Why should you care?
SD-WAN: Why should you care?
 
A consolidated virtualization approach to deploying distributed cloud networks
A consolidated virtualization approach to deploying distributed cloud networksA consolidated virtualization approach to deploying distributed cloud networks
A consolidated virtualization approach to deploying distributed cloud networks
 
SDN in the Enterprise: APIC Enterprise Module
SDN in the Enterprise:  APIC Enterprise Module SDN in the Enterprise:  APIC Enterprise Module
SDN in the Enterprise: APIC Enterprise Module
 
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WANMoving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
 
Introduction April 22
Introduction April 22Introduction April 22
Introduction April 22
 
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloudMaximizing SD-WAN Architecture with Service Chaining - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
 

Similar to [Cisco Connect 2018 - Vietnam] Shamil fernando hcmc next-gen cisco sd-wan (viptela) architecture

Understanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN SolutionUnderstanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN Solution
Cisco Canada
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco Canada
 
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaUnderstanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Cisco Canada
 
Cisco IWAN – Intelligent Connectivity for Today’s Reality
Cisco IWAN – Intelligent Connectivity for Today’s RealityCisco IWAN – Intelligent Connectivity for Today’s Reality
Cisco IWAN – Intelligent Connectivity for Today’s Reality
Cisco Canada
 
en_perfect_pitch_training_2015.pptx
en_perfect_pitch_training_2015.pptxen_perfect_pitch_training_2015.pptx
en_perfect_pitch_training_2015.pptx
MadhuGupta99385
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Canada
 
SD-WAN - comSpark 2019
SD-WAN - comSpark 2019SD-WAN - comSpark 2019
SD-WAN - comSpark 2019
Advanced Technology Consulting (ATC)
 
SD-WAN iFLX-Brochure
SD-WAN iFLX-BrochureSD-WAN iFLX-Brochure
SD-WAN iFLX-Brochure
Tata Tele Business Services
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer PresentationSyed Arsalan
 
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
Cisco Canada
 
iWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience SolutioniWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience Solution
xband
 
Using a secured, cloud-delivered SD-WAN to transform your business network
Using a secured, cloud-delivered SD-WAN to transform your business networkUsing a secured, cloud-delivered SD-WAN to transform your business network
Using a secured, cloud-delivered SD-WAN to transform your business network
Netpluz Asia Pte Ltd
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
VeloCloud Networks, Inc.
 
Igor lakhman net_res_v1
Igor lakhman net_res_v1Igor lakhman net_res_v1
Igor lakhman net_res_v1
Igor Lakhman
 
Visualizing Application & Delivery Flows to Make Data-Driven Decisions
Visualizing Application & Delivery Flows to Make Data-Driven DecisionsVisualizing Application & Delivery Flows to Make Data-Driven Decisions
Visualizing Application & Delivery Flows to Make Data-Driven Decisions
CA Technologies
 
Cisco Connect 2018 Thailand - Software defined access a transformational appr...
Cisco Connect 2018 Thailand - Software defined access a transformational appr...Cisco Connect 2018 Thailand - Software defined access a transformational appr...
Cisco Connect 2018 Thailand - Software defined access a transformational appr...
NetworkCollaborators
 
Cross selling 5
Cross selling 5Cross selling 5
Cross selling 5Sen Nathan
 
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
Nuage Networks
 
WWT IWAN Technical Presentation
WWT IWAN Technical PresentationWWT IWAN Technical Presentation
WWT IWAN Technical Presentation
World Wide Technology
 
Transform your enterprise branch with secure sd-wan
Transform your enterprise branch with secure sd-wanTransform your enterprise branch with secure sd-wan
Transform your enterprise branch with secure sd-wan
DATA SECURITY SOLUTIONS
 

Similar to [Cisco Connect 2018 - Vietnam] Shamil fernando hcmc next-gen cisco sd-wan (viptela) architecture (20)

Understanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN SolutionUnderstanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN Solution
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaUnderstanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
 
Cisco IWAN – Intelligent Connectivity for Today’s Reality
Cisco IWAN – Intelligent Connectivity for Today’s RealityCisco IWAN – Intelligent Connectivity for Today’s Reality
Cisco IWAN – Intelligent Connectivity for Today’s Reality
 
en_perfect_pitch_training_2015.pptx
en_perfect_pitch_training_2015.pptxen_perfect_pitch_training_2015.pptx
en_perfect_pitch_training_2015.pptx
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
 
SD-WAN - comSpark 2019
SD-WAN - comSpark 2019SD-WAN - comSpark 2019
SD-WAN - comSpark 2019
 
SD-WAN iFLX-Brochure
SD-WAN iFLX-BrochureSD-WAN iFLX-Brochure
SD-WAN iFLX-Brochure
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer Presentation
 
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
 
iWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience SolutioniWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience Solution
 
Using a secured, cloud-delivered SD-WAN to transform your business network
Using a secured, cloud-delivered SD-WAN to transform your business networkUsing a secured, cloud-delivered SD-WAN to transform your business network
Using a secured, cloud-delivered SD-WAN to transform your business network
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
 
Igor lakhman net_res_v1
Igor lakhman net_res_v1Igor lakhman net_res_v1
Igor lakhman net_res_v1
 
Visualizing Application & Delivery Flows to Make Data-Driven Decisions
Visualizing Application & Delivery Flows to Make Data-Driven DecisionsVisualizing Application & Delivery Flows to Make Data-Driven Decisions
Visualizing Application & Delivery Flows to Make Data-Driven Decisions
 
Cisco Connect 2018 Thailand - Software defined access a transformational appr...
Cisco Connect 2018 Thailand - Software defined access a transformational appr...Cisco Connect 2018 Thailand - Software defined access a transformational appr...
Cisco Connect 2018 Thailand - Software defined access a transformational appr...
 
Cross selling 5
Cross selling 5Cross selling 5
Cross selling 5
 
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
Nuage Networks: Delivering Datacenter Networks As Consumable as Computee_scot...
 
WWT IWAN Technical Presentation
WWT IWAN Technical PresentationWWT IWAN Technical Presentation
WWT IWAN Technical Presentation
 
Transform your enterprise branch with secure sd-wan
Transform your enterprise branch with secure sd-wanTransform your enterprise branch with secure sd-wan
Transform your enterprise branch with secure sd-wan
 

More from Nur Shiqim Chok

[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Long ton dc pss hyper flex
[Cisco Connect 2018 - Vietnam] Long ton dc pss  hyper flex[Cisco Connect 2018 - Vietnam] Long ton dc pss  hyper flex
[Cisco Connect 2018 - Vietnam] Long ton dc pss hyper flex
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Jeff chua hcm print - cisco connect 2018 (hc...
[Cisco Connect 2018 - Vietnam] Jeff chua   hcm print - cisco connect 2018 (hc...[Cisco Connect 2018 - Vietnam] Jeff chua   hcm print - cisco connect 2018 (hc...
[Cisco Connect 2018 - Vietnam] Jeff chua hcm print - cisco connect 2018 (hc...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
Nur Shiqim Chok
 
Brink sanders cisco architecture keynote
Brink sanders   cisco architecture keynoteBrink sanders   cisco architecture keynote
Brink sanders cisco architecture keynote
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Brian cotaz cyber security strategy
[Cisco Connect 2018 - Vietnam] Brian cotaz   cyber security strategy [Cisco Connect 2018 - Vietnam] Brian cotaz   cyber security strategy
[Cisco Connect 2018 - Vietnam] Brian cotaz cyber security strategy
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
[Cisco Connect 2018 - Vietnam] 3. rajinder singh   cisco sd-wan-next generati...[Cisco Connect 2018 - Vietnam] 3. rajinder singh   cisco sd-wan-next generati...
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] 1. lam doan introducing cisco dna assurance-...
[Cisco Connect 2018 - Vietnam] 1. lam doan   introducing cisco dna assurance-...[Cisco Connect 2018 - Vietnam] 1. lam doan   introducing cisco dna assurance-...
[Cisco Connect 2018 - Vietnam] 1. lam doan introducing cisco dna assurance-...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Vipul shah intel it transformation an imperat...
[Cisco Connect 2018 - Vietnam] Vipul shah  intel it transformation an imperat...[Cisco Connect 2018 - Vietnam] Vipul shah  intel it transformation an imperat...
[Cisco Connect 2018 - Vietnam] Vipul shah intel it transformation an imperat...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Yedu s. cisco cmx
[Cisco Connect 2018 - Vietnam] Yedu s.   cisco cmx[Cisco Connect 2018 - Vietnam] Yedu s.   cisco cmx
[Cisco Connect 2018 - Vietnam] Yedu s. cisco cmx
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
Nur Shiqim Chok
 
[Cisco Connect 2018 - Vietnam] Thuy luong hcm welcome &amp; opening address
[Cisco Connect 2018 - Vietnam] Thuy luong hcm   welcome &amp; opening address[Cisco Connect 2018 - Vietnam] Thuy luong hcm   welcome &amp; opening address
[Cisco Connect 2018 - Vietnam] Thuy luong hcm welcome &amp; opening address
Nur Shiqim Chok
 

More from Nur Shiqim Chok (20)

[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
 
[Cisco Connect 2018 - Vietnam] Long ton dc pss hyper flex
[Cisco Connect 2018 - Vietnam] Long ton dc pss  hyper flex[Cisco Connect 2018 - Vietnam] Long ton dc pss  hyper flex
[Cisco Connect 2018 - Vietnam] Long ton dc pss hyper flex
 
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
 
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
[Cisco Connect 2018 - Vietnam] Joseph yap journey to the multi cloud
 
[Cisco Connect 2018 - Vietnam] Jeff chua hcm print - cisco connect 2018 (hc...
[Cisco Connect 2018 - Vietnam] Jeff chua   hcm print - cisco connect 2018 (hc...[Cisco Connect 2018 - Vietnam] Jeff chua   hcm print - cisco connect 2018 (hc...
[Cisco Connect 2018 - Vietnam] Jeff chua hcm print - cisco connect 2018 (hc...
 
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
[Cisco Connect 2018 - Vietnam] It transformation an imperative for driving bu...
 
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
[Cisco Connect 2018 - Vietnam] Huyen duong hn_cisco aci_delivering intent for...
 
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
[Cisco Connect 2018 - Vietnam] Brink sanders cisco connect opening_keynote_vn_v4
 
Brink sanders cisco architecture keynote
Brink sanders   cisco architecture keynoteBrink sanders   cisco architecture keynote
Brink sanders cisco architecture keynote
 
[Cisco Connect 2018 - Vietnam] Brian cotaz cyber security strategy
[Cisco Connect 2018 - Vietnam] Brian cotaz   cyber security strategy [Cisco Connect 2018 - Vietnam] Brian cotaz   cyber security strategy
[Cisco Connect 2018 - Vietnam] Brian cotaz cyber security strategy
 
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
[Cisco Connect 2018 - Vietnam] 3. rajinder singh   cisco sd-wan-next generati...[Cisco Connect 2018 - Vietnam] 3. rajinder singh   cisco sd-wan-next generati...
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
 
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
 
[Cisco Connect 2018 - Vietnam] 1. lam doan introducing cisco dna assurance-...
[Cisco Connect 2018 - Vietnam] 1. lam doan   introducing cisco dna assurance-...[Cisco Connect 2018 - Vietnam] 1. lam doan   introducing cisco dna assurance-...
[Cisco Connect 2018 - Vietnam] 1. lam doan introducing cisco dna assurance-...
 
[Cisco Connect 2018 - Vietnam] Vipul shah intel it transformation an imperat...
[Cisco Connect 2018 - Vietnam] Vipul shah  intel it transformation an imperat...[Cisco Connect 2018 - Vietnam] Vipul shah  intel it transformation an imperat...
[Cisco Connect 2018 - Vietnam] Vipul shah intel it transformation an imperat...
 
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
[Cisco Connect 2018 - Vietnam] Vib nang cap ha tang cntt san sang cho chuyen ...
 
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 30 min hcmc cisco connect 2018
 
[Cisco Connect 2018 - Vietnam] Yedu s. cisco cmx
[Cisco Connect 2018 - Vietnam] Yedu s.   cisco cmx[Cisco Connect 2018 - Vietnam] Yedu s.   cisco cmx
[Cisco Connect 2018 - Vietnam] Yedu s. cisco cmx
 
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
[Cisco Connect 2018 - Vietnam] Vib 15 min hn cisco connect 2018
 
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
[Cisco Connect 2018 - Vietnam] Trung nguyen and an le demo security everywher...
 
[Cisco Connect 2018 - Vietnam] Thuy luong hcm welcome &amp; opening address
[Cisco Connect 2018 - Vietnam] Thuy luong hcm   welcome &amp; opening address[Cisco Connect 2018 - Vietnam] Thuy luong hcm   welcome &amp; opening address
[Cisco Connect 2018 - Vietnam] Thuy luong hcm welcome &amp; opening address
 

Recently uploaded

The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
Jemma Hussein Allen
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Ramesh Iyer
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
Kari Kakkonen
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
Frank van Harmelen
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
Product School
 
Leading Change strategies and insights for effective change management pdf 1.pdf
Leading Change strategies and insights for effective change management pdf 1.pdfLeading Change strategies and insights for effective change management pdf 1.pdf
Leading Change strategies and insights for effective change management pdf 1.pdf
OnBoard
 
Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
DianaGray10
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
James Anderson
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
Product School
 
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Product School
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
Prayukth K V
 
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Jeffrey Haguewood
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
Alan Dix
 
How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...
Product School
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Tobias Schneck
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
Cheryl Hung
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
DianaGray10
 

Recently uploaded (20)

The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
 
FIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdfFIDO Alliance Osaka Seminar: Overview.pdf
FIDO Alliance Osaka Seminar: Overview.pdf
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
 
Leading Change strategies and insights for effective change management pdf 1.pdf
Leading Change strategies and insights for effective change management pdf 1.pdfLeading Change strategies and insights for effective change management pdf 1.pdf
Leading Change strategies and insights for effective change management pdf 1.pdf
 
Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
 
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...
 
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 previewState of ICS and IoT Cyber Threat Landscape Report 2024 preview
State of ICS and IoT Cyber Threat Landscape Report 2024 preview
 
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
 
Epistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI supportEpistemic Interaction - tuning interfaces to provide information for AI support
Epistemic Interaction - tuning interfaces to provide information for AI support
 
How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
 

[Cisco Connect 2018 - Vietnam] Shamil fernando hcmc next-gen cisco sd-wan (viptela) architecture

  • 1.
  • 2. Next-Gen Cisco SD-WAN Architecture Shamil Fernando Manager Systems Engineering (Cisco SD-WAN)
  • 3. User and Application Landscape is Changing Change in App Content Change in App Delivery Change in App Consumption Rich, Dynamic, Web-Based Cloud, SaaS, Virtualized Mobile, Diverse devices Internet Edge Is Moving to the Branch Applications Are Moving to the Cloud INTERNET MPLS 4G DC vDC IaaS SaaS mobile branch guest head office
  • 4. Customer Requirements Security and Compliance are critical areas and require us to have the appropriate Segmentation, Policing, Access Controls and Visibility from end-to-end Network Planning I want to Simplify Deployments and Automate Policy Enforcement to ensure a Consistent and Seamless Application Experience Network Operations I want to Centralized Policy Enforcement and Assurance to Accelerate Time to Resolution Network Manager I need to Replace or Change existing Infrastructure and WAN Services to Lower Costs and Maximize Investments Security Operations
  • 5. Traditional and Legacy Architectures cannot scale to address changing needs SOFTWARE DEFINED: True separation of control, data and management CLOUD: Cloud hosted and delivered APPLICATION AWARE: Visibility & SLA business intent policy enforcement SCALE AND FLEXIBILITY: True enterprise scale SECURITY: Ingrained authentication, encryption, segmentation, access controls & service chaining OPEN: for automation, orchestration, best-of-breed integration Application Bandwidth Requirements Cloud Consumption Disjointed Security Simplified Operations WAN Flexibility Time To Capability Challenges Enabling Seamless transition from traditional WAN to SD WAN SECURE WAN FABRIC Broadband 4G/LTEMPLS ZERO TOUCH ZERO TRUST 1
  • 6. • Reduce Cost • Secure Your Network • Operate Faster and Simplicity • Integrate Latest Cloud and Network Technologies Cisco SD-WAN Solution helps you to:
  • 7. Traditional Networks  Control and Data Plane same devices  Peer-to-peer control plane  Routing protocol prorogate for all (N^2) complexity  Localize management  Complex to manage  Not scalable  Impossible to support multiple transport  Link down create route storm Control & Data Plane Control & Data Plane Control & Data Plane
  • 8. 4G/LTE MPLS1Internet MPLS2 SD-WAN Principals • Separation Control and Data Plane • DTLS/TLS is used to establish the control channel • Control channel is established only with central controllers • No scaling issues are with full mesh of control plane • Control channel does not have to follow the data path • No disruption one link fail Data Plane Control Plane Data PlaneData Plane Data Plane
  • 9. Cisco SD-WAN Architecture Control Plane (Containers or VMs) Data Plane (Physical or Virtual) Management Plane (Multi-tenant or Dedicated) Orchestration Plane API 4GINTERNET MPLS vSmart ANALYTICSORCHESTRATION vManager vManage vSmart vEdge vBond vBond Data Center Campus Branch Home Office
  • 10. Cisco SD-WAN Solution Elements 4G/LTE MPLSInternet vEdge Routers vSmartvManage Ubiquitous Data Plane Secure Control Plane Controllers On-premise/cisco Cloud/ Partner Cloud vBond
  • 11. Cisco SD-WAN Solution Transport Independent Fabric CellularMPLSBroadband Delivery Platform QoS Application Policies Security Per-Segment Topologies Segmentation Svc Insertion Cloud Path Application Visibility & SLA Secure Perimeter Traffic Engineering SurvivabilityRouting Analytics Monitoring Operations Transport Hub Multicast Cloud Accel
  • 12. Zero-Trust Security Principles DTLS/TLS Control Tunnel  Strong authentication - PKI certificates, 2048bit keys  Highly encrypted tunnels - DTLS/TLS AES256 - White-list model  Ubiquitous Deployment - Automatic NAT mitigation Control Elements X.509 Certificate
  • 13. Secure Bring-up With Approval • Per-device control on TPM identity trust • Single stage (Zero Touch Provisioning) – TPM identity is automatically trusted • Two stage (One Touch Provisioning) – TPM identity is not automatically trusted. Requires administrator validation. • Staging Mode – TPM identity is automatically trusted for control, but not for data. Requires administrator validation.
  • 14. End to End Security TransportsTransportsTransports Site 1 Site 2 IPSec AES256-GCM ESPv3 with HMAC SHA-1 vSmart Controllers Control Plane DTLS/TLS IPSec security associations IPSec security associations Update Update  Symmetric encryption IPsec AES256-GCM ESPv3 with HMAC SHA-1  Traffic Encryption and Authentication Header  Tunnel Liveliness Detection (BFD)  Anti-Replay Protection  Rekey 12 hours  Each vEdge advertises its local IPsec encryption key Traffic Encrypted with Key 2 Traffic Encrypted with Key 1 vEdge Router vEdge Router Local Remote Local Remote
  • 15. Configuration Simplicity and ZTP • Templates are attached to provisioned vEdge routers • Variables are used for rapid bulk configuration rollout with unique per- device settings • Local configuration changes are not allowed - Prevents configuration drift
  • 16. Configuration Simplicity and ZTP Zero Touch Bringup Server Control and Policy Elements Full Registration and Configuration vEdge Router 1 2 3 4 5 * Factory default config Assumption:  DNS to resolve ztp.viptela.com*  Authentication  Push the configuration  Enforce the version
  • 17. Application Visibility Secure SD-WAN Fabric Deep Packet Inspection Over 3000+ application  App Firewall  Traffic prioritization  Transport selection vEdge Router App 1 App 2 App 3,000
  • 18. Application Performances and AAR Path1: 10ms, 0% loss, 2ms jitter Path2: 200ms, 3% loss 5ms jitter Path3: 140ms, 1% loss 3ms jitter vSmart Controllers App Aware Routing Policy App A path must have latency <150ms and loss <2% Path 2  vEdge Routers continuously perform path liveliness and quality measurements Latency, Loss and Jitter,  Auto Load Balance Device QoS (shaping, policing, queuing, marking) Internet MPLS 4G LTE Optimal Throughput
  • 19. End to End Segmentation Use Cases  Security Zoning  Compliance  Guest WiFi  Multi-Tenancy  Extranet Interface VLAN Prefix TransportsTransports Site 1 Site 2 Data Center VPN A VPN B VPN C IPSec 20 IP 8 UDP 36 ESP 4 VPN … Data Label 802.1q 802.1q IF IF IF IF  Isolated virtual private networks across any transport  VPN mapping is based on physical vEdge Router interface, 802.1Q VLAN tag or a mix of both
  • 20. Per-Segment Topologies Full Mesh Hub-and-Spoke Regional Hub Unified Communications Data Center Applications Regional Internet/Services Optimal Application Experience
  • 21. Cloud onRamp for IaaS Secure SD-WAN Fabric Provide security, segmentation, QoS and reliability to cloud workloads?
  • 22. Optimize Public Cloud Performance (SaaS) Regional internet exit Branch with local DMZ Data Center/DMZ vFabric httping probes SaaS traffic primary SaaS traffic backup Score Color 8-10 GREEN 5-8 YELLOW 0-5 RED
  • 23. Secure Internet Access Secure SD-WAN Fabric Branch Campus Regional Data Center Internet & Cloud Small Office Home Office Cisco Security
  • 24. Centralize Management & Monitoring Centralize Configuration • Security • Template Configuration • Policy • Routing • QoS, Marking • ACL • Application SLA • ….. Centralize Monitoring • Devices • Application • Bandwidth usage • Link Performances • Alerts
  • 25. Analytics Dashboard Visibility • Application Visibility • Network Visibility • Network Co-relation • Cross-Customer Comparison Forecast • Application Usage Forecast • Bandwidth Usage Forecast What-If • Branch Expansions • Rolling out new applications • Policy changes Recommendation
  • 26. Self Healing Capabilities Active Software Available Software Available Software Available Software A B C D Activate Rollback vEdge Router 1 2 3 Failed Upgrade vEdge Router 1 Attach Template vManage 2 Connectivity Lost Rollback 3
  • 27. High Availability and Redundancy VRRP OSPF/ BGP OSPF/ BGP Internet InternetMPLSMPLS Internet MPLS Site Data Center MPLS Internet vSmart Controllers Control Data
  • 28. vEdge Portfolio vEdge capabilities integrated into all IOS-XE platforms (ISR, CSR, ENCS, ASR1K) cloud Interconnect (2 Gbps +) Small Office Home Office 100 Mbps Branch Campus 1 Gbps Large Campus Data Center 10 Gbps Higher Capacity Aggregation 20 Gbps+ ISR4K ASR1K Private Cloud ENCS
  • 29. Why Cisco SD-WAN Trusted by Fortune 500 Enterprises Cisco SD-WAN: The Most-Deployed Enterprise Grade SD-WAN Thousands of sites, every major industry, including: RETAIL HEALTHCARE FINANCIAL SERVICES ENERGY Most deployed and trusted by Fortune 500 enterprises Winning 95% of competitive POCs Standards Compliant: …and more

Editor's Notes

  1. Cisco SD-WAN provide Multi transport Network Over disjoin network - Separation of the control plane Application visibility over 3000+ application Limited scale them of thousand  Reduce the WAN cost Direct access to cloud and improve the performances  Simplify the operation
  2. Disjoined Network No application visibility Limited scale  Insufficient BW WAN cost No direct access to cloud app Hybrid  Fragment Security Complex Operations
  3. Component – vEdge Router (Hardware / Software), Control Component (software Support – smaller branch, Large Datacenter, Public and Private cloud Controller can be deployed – Viptela / Private / On Premise Transport Independent Fabric Create Secure data plane connection between the vEdge and controllers Only control information send to the controller vManage for Management and monitoring. Rest full APIS
  4. Transport Independent Fabric Can connect multiple transport to Single router Simplify the deployment using Zero Touch Zero trust All connation are A/A Eliminate WAN side routing Delivery Platform (Routing) Full Router, Full BGP and OSPF (VRF) Segmentation Full QoS and Shaping Multicast Traffic redirection (Svc Insertions) High Availability (AS/AP) Replace the router and simplify the Network Application & Policies DPI and Application Visibility, Application SLA base policy (best path base on the underline network performances) Traffic engineering Segmentation based topology Secure internet gateway SaaS and IaaS path selection and acceleration Operation, Monitoring and Analytics Complete configuration and Management No Configuration in Edge Device 5 min revert, 8 min revert for upgrade
  5. Optimal Throughput – MTU discovery
  6. Largest Deployed in Retail, Healthcare, Financial Services and Energy Most deployed across Fortune-500 Enterprises Thousands of production sites in every major industry Compliant with PCI, HIPAA and other industry standards 1. Sophistication of Use cases for the Enterprise - hybrid wan, business partners, soho, cloud, M&A etc 2. Most deployed and trusted SDWAN solution by Fortune 500