SlideShare a Scribd company logo
© 2020 Burhan Abu Baja bourhan@hotmail.com1
© 2020 Burhan Abu Baja bourhan@hotmail.com2
© 2020 Burhan Abu Baja bourhan@hotmail.com3










© 2020 Burhan Abu Baja bourhan@hotmail.com4
© 2020 Burhan Abu Baja bourhan@hotmail.com5
A new paradigm of cloud architecture for connecting users/devices to applications over the
internet.
It’s not vendors’ architecture.
It’s vendor neutral.
It’s neither a product nor a protocol.
It is a framework.
It is a convergence of NaaS and Network SaaS.
© 2020 Burhan Abu Baja bourhan@hotmail.com6
It is how network and security coming together; creating security fabric that enables security
and network to do the best for mobile users and cloud world.
It is a convergence of services in the cloud; the network connectivity and security.
It is an emerging offering combining comprehensive WAN capabilities with comprehensive
network.
It is a security functions (such as SWG, CASB, FWaaS and ZTNA) to support the dynamic
secure access needs of digital enterprises.
© 2020 Burhan Abu Baja bourhan@hotmail.com7
© 2020 Burhan Abu Baja bourhan@hotmail.com8
• The ecosystem stakeholders are having to invent their own descriptions & terminologies1
.
• The enterprise perimeter is no longer a location; it is a set of dynamic edge capabilities
delivered when needed as a service from the cloud1.
• There are two service functions; Network and Security.
• SASE assuming distributing networking and security functionalities dynamically.
• There are always two edge-points; User/Machine edge-point and Service edge-point.
• User/Machine edge-point is mobile while service edge-point is in the cloud.
• lightweight edge-point (User), should be always simple (direct access to internet).
• Heavyweight edge-point (Cloud).
• There are minimum three parties; SASE user, SASE Service Provider (SASE-SP), and
connectivity provider.
• user as subscriber is a consumer to the service
• Connectivity should to transparent to the user
1 https://www.gartner.com/doc/reprints?id=1-1XQ099IW&ct=191104&st=sb
© 2020 Burhan Abu Baja bourhan@hotmail.com9
• There are two type of users/machine Edge-point fixed ID and ad-hoc ID
• Is it mandatory to included SD-WAN components along with SASE service?
• how to gain the momentum and include SD-WAN.
• Since SD-WAN vendors are promoting their solution as policy-driven;
• how to be shift and becoming SASE Service-Policy driven?
• how to be shift and becoming SASE Service-Policy Controller?
• how to SASE-Service policy enforcement at all edge-points?
• SASE service is a necessity to the new way of application consumption; Cloud workloads
• How is responsibility delivering SASE E2E service with SLA?
• Will we see CSE?
• Customer Service Edge instead CPE?
© 2020 Burhan Abu Baja bourhan@hotmail.com10
• Users accessing Application is changing.
• Applications hosted anywhere.
• Application Access from anywhere from any device.
• Delivery and management is changed, from cloud.
• Increasing threats IoT, BYOD, … .
• Traffic pattern is changing from;
• User/Branch -> DC -> Cloud.
to
• User/Branch -> DC.
• We need to consider user/machine ID and Behavioral.
• Cloud is better infrastructure for workloads and application.
• Cloud is better for Auto-Scaling/Dynamic-Scaling.
• Providers needs to be competitive.
© 2020 Burhan Abu Baja bourhan@hotmail.com11
• Internet is the undelaying.
• DC is still the center of VPN, unfortunately.
• SD-WAN doesn't need a router (Layer 3 Device).
• SD-WAN needs L3-L7 Device (Edge).
• Edge-> Placing the function (required) at the Edge-point.
• Unified single platform.
• Freedom of use-cases.
• Security-as-a-Service
• SDN decupling control plane from data plane.
• Advanced SD-WAN fully Adapting and Enabling SASE.
• SD-WAN should be secure connecting:
• Users and devices.
© 2020 Burhan Abu Baja bourhan@hotmail.com12
© 2020 Burhan Abu Baja bourhan@hotmail.com13
Is a service describing the functions; the network and the security
Is a service describing the connectivity; how, where, and which
Is describing who will connect two Edge-points, and
how two Edge-points connected secured and with performance
Is describing the Edge-points are part of this service
1 https://www.gartner.com/doc/reprints?id=1-1XQ099IW&ct=191104&st=sb
© 2020 Burhan Abu Baja bourhan@hotmail.com14
© 2020 Burhan Abu Baja bourhan@hotmail.com15
In Cloud era and mobile world
and
The desire to be secured, to secure the new world; mobile users and Apps on Cloud.
Cloud Cloud
© 2020 Burhan Abu Baja bourhan@hotmail.com16
© 2020 Burhan Abu Baja bourhan@hotmail.com17
1
DDoS, IPDs, FW, VPN,
URL/Web filtering …
WAF, SWG, SSL inspection
User & Device Identity
2
Migrate, Connect, and
Secure
3
SASE
4
© 2020 Burhan Abu Baja bourhan@hotmail.com18
© 2020 Burhan Abu Baja bourhan@hotmail.com19
• To secure remote (Edge-Points) users/machines in the modern world is
• To reduce cost, complexity, and risk, deliver better ROI UX
• New framework is required with following characteristics:
• Simplified
• Centralized management and monitoring
• Scalable
• Open API driven
• Open platform
• SD-WAN is a critical components at the edge
© 2020 Burhan Abu Baja bourhan@hotmail.com20
• How to protect an investment?
• Does the customers have the freedom to BYOFunction?
• What if customers' workload are still on-prim?
• or a percentage is on-prim "Hybrid-model"? not a could native?
• Shall we see CSE?
• Customer Secure Edge instead of Customer Premises Equipment
• Is the growth next few years, and the fast track adaption in 2021
• The new use cases;
© 2020 Burhan Abu Baja bourhan@hotmail.com21
© 2020 Burhan Abu Baja bourhan@hotmail.com22

More Related Content

What's hot

How SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze NetworksHow SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze Networks
Articulate Marketing
 
5 Highest-Impact CASB Use Cases
5 Highest-Impact CASB Use Cases5 Highest-Impact CASB Use Cases
5 Highest-Impact CASB Use Cases
Netskope
 
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise Management Associates
 
Building A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation SlidesBuilding A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation Slides
SlideTeam
 
Inside the Cato Networks Management Console
Inside the Cato Networks Management ConsoleInside the Cato Networks Management Console
Inside the Cato Networks Management Console
David Greenfield
 
Cisco umbrella overview
Cisco umbrella overviewCisco umbrella overview
Cisco umbrella overview
Cisco Canada
 
10 Benefits of Mobile Device Managment
10 Benefits of Mobile Device Managment10 Benefits of Mobile Device Managment
10 Benefits of Mobile Device Managment
MTG IT Professionals
 
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdf
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdfAryaka Bringing SASE to Life with a Zero Trust WAN.pdf
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdf
KlausSchwegler
 
Aligning to the NIST Cybersecurity Framework in the AWS
Aligning to the NIST Cybersecurity Framework in the AWSAligning to the NIST Cybersecurity Framework in the AWS
Aligning to the NIST Cybersecurity Framework in the AWS
Amazon Web Services
 
Meraki Overview
Meraki OverviewMeraki Overview
Meraki Overview
Cloud Distribution
 
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTXCustomer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
ssuser5824cf
 
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing ZonesBuilding a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Tom Laszewski
 
The secure, direct to-internet branch
The secure, direct to-internet branchThe secure, direct to-internet branch
The secure, direct to-internet branch
Zscaler
 
Cisco Meraki- Simplifying IT
Cisco Meraki- Simplifying ITCisco Meraki- Simplifying IT
Cisco Meraki- Simplifying IT
Cisco Canada
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN Technology
Cisco Canada
 
Advanced Architectures with AWS Transit Gateway
Advanced Architectures with AWS Transit GatewayAdvanced Architectures with AWS Transit Gateway
Advanced Architectures with AWS Transit Gateway
Amazon Web Services
 
Duo Security
Duo Security Duo Security
Duo Security
Amy Shah
 
Cisco Meraki Overview
Cisco Meraki OverviewCisco Meraki Overview
Cisco Meraki Overview
SSISG
 
Cisco Meraki Portfolio Guide
Cisco Meraki Portfolio GuideCisco Meraki Portfolio Guide
Cisco Meraki Portfolio Guide
Maticmind
 
CLOUD NATIVE SECURITY
CLOUD NATIVE SECURITYCLOUD NATIVE SECURITY
CLOUD NATIVE SECURITY
Maganathin Veeraragaloo
 

What's hot (20)

How SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze NetworksHow SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze Networks
 
5 Highest-Impact CASB Use Cases
5 Highest-Impact CASB Use Cases5 Highest-Impact CASB Use Cases
5 Highest-Impact CASB Use Cases
 
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the PandemicEnterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
Enterprise WAN Transformation: SD-WAN, SASE, and the Pandemic
 
Building A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation SlidesBuilding A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation Slides
 
Inside the Cato Networks Management Console
Inside the Cato Networks Management ConsoleInside the Cato Networks Management Console
Inside the Cato Networks Management Console
 
Cisco umbrella overview
Cisco umbrella overviewCisco umbrella overview
Cisco umbrella overview
 
10 Benefits of Mobile Device Managment
10 Benefits of Mobile Device Managment10 Benefits of Mobile Device Managment
10 Benefits of Mobile Device Managment
 
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdf
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdfAryaka Bringing SASE to Life with a Zero Trust WAN.pdf
Aryaka Bringing SASE to Life with a Zero Trust WAN.pdf
 
Aligning to the NIST Cybersecurity Framework in the AWS
Aligning to the NIST Cybersecurity Framework in the AWSAligning to the NIST Cybersecurity Framework in the AWS
Aligning to the NIST Cybersecurity Framework in the AWS
 
Meraki Overview
Meraki OverviewMeraki Overview
Meraki Overview
 
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTXCustomer Presentation - Aruba Wi-Fi Overview (1).PPTX
Customer Presentation - Aruba Wi-Fi Overview (1).PPTX
 
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing ZonesBuilding a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
 
The secure, direct to-internet branch
The secure, direct to-internet branchThe secure, direct to-internet branch
The secure, direct to-internet branch
 
Cisco Meraki- Simplifying IT
Cisco Meraki- Simplifying ITCisco Meraki- Simplifying IT
Cisco Meraki- Simplifying IT
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN Technology
 
Advanced Architectures with AWS Transit Gateway
Advanced Architectures with AWS Transit GatewayAdvanced Architectures with AWS Transit Gateway
Advanced Architectures with AWS Transit Gateway
 
Duo Security
Duo Security Duo Security
Duo Security
 
Cisco Meraki Overview
Cisco Meraki OverviewCisco Meraki Overview
Cisco Meraki Overview
 
Cisco Meraki Portfolio Guide
Cisco Meraki Portfolio GuideCisco Meraki Portfolio Guide
Cisco Meraki Portfolio Guide
 
CLOUD NATIVE SECURITY
CLOUD NATIVE SECURITYCLOUD NATIVE SECURITY
CLOUD NATIVE SECURITY
 

Similar to SASE Future Proof sdwan 20 Sep2020 v2.1 BA

SD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivitySD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivity
bayusch
 
How to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout, and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
ThousandEyes
 
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
ThousandEyes
 
Cscc cloud-customer-architecture-for-e commerce
Cscc cloud-customer-architecture-for-e commerceCscc cloud-customer-architecture-for-e commerce
Cscc cloud-customer-architecture-for-e commerce
r_arorabms
 
ciscothousandeyesusecase
ciscothousandeyesusecaseciscothousandeyesusecase
ciscothousandeyesusecase
RENJITHKNAIR5
 
CenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily PechalCenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily Pechal
Emily Pechal
 
SDWAN.pdf
SDWAN.pdfSDWAN.pdf
SDWAN.pdf
sushil kumar
 
2021 Predictions and Trends for the SD-WAN and Edge Market
2021 Predictions and Trends for the SD-WAN and Edge Market2021 Predictions and Trends for the SD-WAN and Edge Market
2021 Predictions and Trends for the SD-WAN and Edge Market
QOS Networks
 
Thousand Eyes FMD.pptx
Thousand Eyes FMD.pptxThousand Eyes FMD.pptx
Thousand Eyes FMD.pptx
AnandYadav542909
 
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
ThousandEyes
 
Cloud Customer Architecture for Hybrid Integration
Cloud Customer Architecture for Hybrid IntegrationCloud Customer Architecture for Hybrid Integration
Cloud Customer Architecture for Hybrid Integration
Cloud Standards Customer Council
 
Serverless service adoption for Thailand
Serverless service adoption for ThailandServerless service adoption for Thailand
Serverless service adoption for Thailand
Watcharin Yang-Ngam
 
Five Managed SD-WAN Trends to Watch in 2023
Five Managed SD-WAN Trends to Watch in 2023Five Managed SD-WAN Trends to Watch in 2023
Five Managed SD-WAN Trends to Watch in 2023
Enterprise Management Associates
 
Transforming enterprise network infrastructure with sd wan services
Transforming enterprise network infrastructure with sd wan servicesTransforming enterprise network infrastructure with sd wan services
Transforming enterprise network infrastructure with sd wan services
RehanShrivastav
 
Realise True Business Value With ThousandEyes
Realise True Business Value With ThousandEyesRealise True Business Value With ThousandEyes
Realise True Business Value With ThousandEyes
ThousandEyes
 
An SD-WAN Bill of Rights
An SD-WAN Bill of RightsAn SD-WAN Bill of Rights
An SD-WAN Bill of Rights
Cisco Enterprise Networks
 
SD-WAN Bill of Rights -infographic
SD-WAN Bill of Rights -infographicSD-WAN Bill of Rights -infographic
SD-WAN Bill of Rights -infographic
E.S.G. JR. Consulting, Inc.
 
Hybrid Integration
Hybrid IntegrationHybrid Integration
Hybrid Integration
BizTalk360
 
IRJET- Proficient Business Solutions through Cloud Services
IRJET- Proficient Business Solutions through Cloud ServicesIRJET- Proficient Business Solutions through Cloud Services
IRJET- Proficient Business Solutions through Cloud Services
IRJET Journal
 

Similar to SASE Future Proof sdwan 20 Sep2020 v2.1 BA (20)

SD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivitySD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivity
 
How to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout, and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout, and Operationalize Your SD-WAN Projects
 
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
 
Cscc cloud-customer-architecture-for-e commerce
Cscc cloud-customer-architecture-for-e commerceCscc cloud-customer-architecture-for-e commerce
Cscc cloud-customer-architecture-for-e commerce
 
ciscothousandeyesusecase
ciscothousandeyesusecaseciscothousandeyesusecase
ciscothousandeyesusecase
 
SD WAN
SD WANSD WAN
SD WAN
 
CenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily PechalCenturyLink SD-WAN Executive Brief -- Emily Pechal
CenturyLink SD-WAN Executive Brief -- Emily Pechal
 
SDWAN.pdf
SDWAN.pdfSDWAN.pdf
SDWAN.pdf
 
2021 Predictions and Trends for the SD-WAN and Edge Market
2021 Predictions and Trends for the SD-WAN and Edge Market2021 Predictions and Trends for the SD-WAN and Edge Market
2021 Predictions and Trends for the SD-WAN and Edge Market
 
Thousand Eyes FMD.pptx
Thousand Eyes FMD.pptxThousand Eyes FMD.pptx
Thousand Eyes FMD.pptx
 
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
 
Cloud Customer Architecture for Hybrid Integration
Cloud Customer Architecture for Hybrid IntegrationCloud Customer Architecture for Hybrid Integration
Cloud Customer Architecture for Hybrid Integration
 
Serverless service adoption for Thailand
Serverless service adoption for ThailandServerless service adoption for Thailand
Serverless service adoption for Thailand
 
Five Managed SD-WAN Trends to Watch in 2023
Five Managed SD-WAN Trends to Watch in 2023Five Managed SD-WAN Trends to Watch in 2023
Five Managed SD-WAN Trends to Watch in 2023
 
Transforming enterprise network infrastructure with sd wan services
Transforming enterprise network infrastructure with sd wan servicesTransforming enterprise network infrastructure with sd wan services
Transforming enterprise network infrastructure with sd wan services
 
Realise True Business Value With ThousandEyes
Realise True Business Value With ThousandEyesRealise True Business Value With ThousandEyes
Realise True Business Value With ThousandEyes
 
An SD-WAN Bill of Rights
An SD-WAN Bill of RightsAn SD-WAN Bill of Rights
An SD-WAN Bill of Rights
 
SD-WAN Bill of Rights -infographic
SD-WAN Bill of Rights -infographicSD-WAN Bill of Rights -infographic
SD-WAN Bill of Rights -infographic
 
Hybrid Integration
Hybrid IntegrationHybrid Integration
Hybrid Integration
 
IRJET- Proficient Business Solutions through Cloud Services
IRJET- Proficient Business Solutions through Cloud ServicesIRJET- Proficient Business Solutions through Cloud Services
IRJET- Proficient Business Solutions through Cloud Services
 

Recently uploaded

Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
DianaGray10
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
Product School
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
Cheryl Hung
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
Product School
 
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
Thierry Lestable
 
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
Product School
 
Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........
Alison B. Lowndes
 
ODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User GroupODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User Group
CatarinaPereira64715
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
James Anderson
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Ramesh Iyer
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
91mobiles
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
Jemma Hussein Allen
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Tobias Schneck
 
Essentials of Automations: Optimizing FME Workflows with Parameters
Essentials of Automations: Optimizing FME Workflows with ParametersEssentials of Automations: Optimizing FME Workflows with Parameters
Essentials of Automations: Optimizing FME Workflows with Parameters
Safe Software
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
Guy Korland
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
DanBrown980551
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
Bhaskar Mitra
 
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdfFIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi
Fwdays
 

Recently uploaded (20)

Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
 
Key Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdfKey Trends Shaping the Future of Infrastructure.pdf
Key Trends Shaping the Future of Infrastructure.pdf
 
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
De-mystifying Zero to One: Design Informed Techniques for Greenfield Innovati...
 
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
Empowering NextGen Mobility via Large Action Model Infrastructure (LAMI): pav...
 
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
From Siloed Products to Connected Ecosystem: Building a Sustainable and Scala...
 
Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........Bits & Pixels using AI for Good.........
Bits & Pixels using AI for Good.........
 
ODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User GroupODC, Data Fabric and Architecture User Group
ODC, Data Fabric and Architecture User Group
 
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
GDG Cloud Southlake #33: Boule & Rebala: Effective AppSec in SDLC using Deplo...
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
 
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdfSmart TV Buyer Insights Survey 2024 by 91mobiles.pdf
Smart TV Buyer Insights Survey 2024 by 91mobiles.pdf
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
 
Essentials of Automations: Optimizing FME Workflows with Parameters
Essentials of Automations: Optimizing FME Workflows with ParametersEssentials of Automations: Optimizing FME Workflows with Parameters
Essentials of Automations: Optimizing FME Workflows with Parameters
 
GraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge GraphGraphRAG is All You need? LLM & Knowledge Graph
GraphRAG is All You need? LLM & Knowledge Graph
 
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdfFIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
 
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
LF Energy Webinar: Electrical Grid Modelling and Simulation Through PowSyBl -...
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
 
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdfFIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
FIDO Alliance Osaka Seminar: FIDO Security Aspects.pdf
 
"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi"Impact of front-end architecture on development cost", Viktor Turskyi
"Impact of front-end architecture on development cost", Viktor Turskyi
 

SASE Future Proof sdwan 20 Sep2020 v2.1 BA

  • 1. © 2020 Burhan Abu Baja bourhan@hotmail.com1
  • 2. © 2020 Burhan Abu Baja bourhan@hotmail.com2
  • 3. © 2020 Burhan Abu Baja bourhan@hotmail.com3          
  • 4. © 2020 Burhan Abu Baja bourhan@hotmail.com4
  • 5. © 2020 Burhan Abu Baja bourhan@hotmail.com5 A new paradigm of cloud architecture for connecting users/devices to applications over the internet. It’s not vendors’ architecture. It’s vendor neutral. It’s neither a product nor a protocol. It is a framework. It is a convergence of NaaS and Network SaaS.
  • 6. © 2020 Burhan Abu Baja bourhan@hotmail.com6 It is how network and security coming together; creating security fabric that enables security and network to do the best for mobile users and cloud world. It is a convergence of services in the cloud; the network connectivity and security. It is an emerging offering combining comprehensive WAN capabilities with comprehensive network. It is a security functions (such as SWG, CASB, FWaaS and ZTNA) to support the dynamic secure access needs of digital enterprises.
  • 7. © 2020 Burhan Abu Baja bourhan@hotmail.com7
  • 8. © 2020 Burhan Abu Baja bourhan@hotmail.com8 • The ecosystem stakeholders are having to invent their own descriptions & terminologies1 . • The enterprise perimeter is no longer a location; it is a set of dynamic edge capabilities delivered when needed as a service from the cloud1. • There are two service functions; Network and Security. • SASE assuming distributing networking and security functionalities dynamically. • There are always two edge-points; User/Machine edge-point and Service edge-point. • User/Machine edge-point is mobile while service edge-point is in the cloud. • lightweight edge-point (User), should be always simple (direct access to internet). • Heavyweight edge-point (Cloud). • There are minimum three parties; SASE user, SASE Service Provider (SASE-SP), and connectivity provider. • user as subscriber is a consumer to the service • Connectivity should to transparent to the user 1 https://www.gartner.com/doc/reprints?id=1-1XQ099IW&ct=191104&st=sb
  • 9. © 2020 Burhan Abu Baja bourhan@hotmail.com9 • There are two type of users/machine Edge-point fixed ID and ad-hoc ID • Is it mandatory to included SD-WAN components along with SASE service? • how to gain the momentum and include SD-WAN. • Since SD-WAN vendors are promoting their solution as policy-driven; • how to be shift and becoming SASE Service-Policy driven? • how to be shift and becoming SASE Service-Policy Controller? • how to SASE-Service policy enforcement at all edge-points? • SASE service is a necessity to the new way of application consumption; Cloud workloads • How is responsibility delivering SASE E2E service with SLA? • Will we see CSE? • Customer Service Edge instead CPE?
  • 10. © 2020 Burhan Abu Baja bourhan@hotmail.com10 • Users accessing Application is changing. • Applications hosted anywhere. • Application Access from anywhere from any device. • Delivery and management is changed, from cloud. • Increasing threats IoT, BYOD, … . • Traffic pattern is changing from; • User/Branch -> DC -> Cloud. to • User/Branch -> DC. • We need to consider user/machine ID and Behavioral. • Cloud is better infrastructure for workloads and application. • Cloud is better for Auto-Scaling/Dynamic-Scaling. • Providers needs to be competitive.
  • 11. © 2020 Burhan Abu Baja bourhan@hotmail.com11 • Internet is the undelaying. • DC is still the center of VPN, unfortunately. • SD-WAN doesn't need a router (Layer 3 Device). • SD-WAN needs L3-L7 Device (Edge). • Edge-> Placing the function (required) at the Edge-point. • Unified single platform. • Freedom of use-cases. • Security-as-a-Service • SDN decupling control plane from data plane. • Advanced SD-WAN fully Adapting and Enabling SASE. • SD-WAN should be secure connecting: • Users and devices.
  • 12. © 2020 Burhan Abu Baja bourhan@hotmail.com12
  • 13. © 2020 Burhan Abu Baja bourhan@hotmail.com13 Is a service describing the functions; the network and the security Is a service describing the connectivity; how, where, and which Is describing who will connect two Edge-points, and how two Edge-points connected secured and with performance Is describing the Edge-points are part of this service 1 https://www.gartner.com/doc/reprints?id=1-1XQ099IW&ct=191104&st=sb
  • 14. © 2020 Burhan Abu Baja bourhan@hotmail.com14
  • 15. © 2020 Burhan Abu Baja bourhan@hotmail.com15 In Cloud era and mobile world and The desire to be secured, to secure the new world; mobile users and Apps on Cloud. Cloud Cloud
  • 16. © 2020 Burhan Abu Baja bourhan@hotmail.com16
  • 17. © 2020 Burhan Abu Baja bourhan@hotmail.com17 1 DDoS, IPDs, FW, VPN, URL/Web filtering … WAF, SWG, SSL inspection User & Device Identity 2 Migrate, Connect, and Secure 3 SASE 4
  • 18. © 2020 Burhan Abu Baja bourhan@hotmail.com18
  • 19. © 2020 Burhan Abu Baja bourhan@hotmail.com19 • To secure remote (Edge-Points) users/machines in the modern world is • To reduce cost, complexity, and risk, deliver better ROI UX • New framework is required with following characteristics: • Simplified • Centralized management and monitoring • Scalable • Open API driven • Open platform • SD-WAN is a critical components at the edge
  • 20. © 2020 Burhan Abu Baja bourhan@hotmail.com20 • How to protect an investment? • Does the customers have the freedom to BYOFunction? • What if customers' workload are still on-prim? • or a percentage is on-prim "Hybrid-model"? not a could native? • Shall we see CSE? • Customer Secure Edge instead of Customer Premises Equipment • Is the growth next few years, and the fast track adaption in 2021 • The new use cases;
  • 21. © 2020 Burhan Abu Baja bourhan@hotmail.com21
  • 22. © 2020 Burhan Abu Baja bourhan@hotmail.com22