1© 2018 ThousandEyes Inc. All Rights Reserved.Confidential © 2017 ThousandEyes Inc. All Rights Reserved.
2© 2018 ThousandEyes Inc. All Rights Reserved.
• Welcome & Introduction
• Who Moved My Network? –
2018 WAN Trends
• Implications for network
access & routing
• Visibility for the Hybrid WAN
• Wrap up & Q&A
Agenda
3© 2018 ThousandEyes Inc. All Rights Reserved.
About ThousandEyes
Network Intelligence platform
that gives you a complete
picture from users to internal
and cloud-based applications
Surface insights from
a global data set
Lightweight, flexible
data collection
Unified view of diverse
performance data
Solve issues across
shared infrastructure
See any network like
it’s your own
Routing
User App
End-to-End Performance Data
App
Performance
User
Experience
Network
Topology
Routing
Topology
Enterprise, Endpoint and Cloud Agents
Network
Connectivity
Device
Performance
4© 2018 ThousandEyes Inc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved.
Who moved my network?
5© 2018 ThousandEyes Inc. All Rights Reserved.
• Cloud-oriented
• Internet-centric
– 75% of IT spending shifting
to cloud and related
technologies by 2019 (IDC)
The Rise of the Modern WAN
6© 2018 ThousandEyes Inc. All Rights Reserved.
Why the Modern WAN is Internet-Centric
7© 2018 ThousandEyes Inc. All Rights Reserved.
The Modern WAN Communications Matrix
8© 2018 ThousandEyes Inc. All Rights Reserved.
IT Owns Every
Connected Experience
• Scope of IT governance
has expanded beyond
the boundaries of the
traditional WAN
• IT leaders own the user
experience outcome,
whether they own the
networks or not
9© 2018 ThousandEyes Inc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved.
Implications for network access & routing
10© 2018 ThousandEyes Inc. All Rights Reserved.
This is a time of transformation for branch networks
Cloudification
Internet as Enterprise WAN Direct Internet Access
Bring Your Own DeviceCreative Attackers
11© 2018 ThousandEyes Inc. All Rights Reserved.
…with quite a few new challenges & requirements
Advanced Threat
Detection
 Good ol’ outside-to-in
perimeter defense not
near adequate
 Must protect against
inside threats as well as
outside-to-in attacks
 Intelligent and immediate
detection and mitigation
Easy & cheap
migration
 Minimum # of hardware
 Easy to deploy
 Easy to orchestrate
 Integrate into standard
reporting tools
Optimize my
Network’s
Capacity
 Make better use of my
bandwidth costs
 Routing per application &
per user
 Reporting per-branch and
per-application
Align routing to
my business
needs
 Look inside the HTTP
flows
 Comply to my business’
security regulations
Performance Becomes a Key Challenge
for our Branch transformation
DMVPN
PfRv3
WAAS
/
Akamai
ZBFW
Stealth
watch
AVC /
NBAR2
12© 2018 ThousandEyes Inc. All Rights Reserved.
RP
Interconn.
Forwarding
Processor
(Dataplane)
FECPCrypto Assist
QFP Subsystem
Interconn.
Route
Processor
(Controlplane)
Solution: A Distributed Forwarding Architecture…
SPA
Agg.
SPA SPA
Interconn.
IOCP
SPA
Agg.
SPA SPA
Interconn.
IOCP
IOSd
Serviceplane
Forwarding
Processor
(Dataplane)
Forwarding
CPUs
Route & Service
Processor
(Controlplane)
NIMFPGE SM-X
MGF
ASR 1000 ISR 4000
13© 2018 ThousandEyes Inc. All Rights Reserved.
…which also accommodates smart Apps
IOSd
Serviceplane
Forwarding
Processor
(Dataplane)
Forwarding
CPUs
Route & Service
Processor
(Controlplane)
NIMFPGE SM-X
MGF
ISR 4000
44xx
4331 / 4351
4321 / 4221 / 1100
• All ISR 4000 series routers have spare
X86 CPU cores
• Generic Applications can run on these
cores with no impact to router
performance
• Std KVM environment = Any app is good
• We call this technology Cisco Service
Containers
14© 2018 ThousandEyes Inc. All Rights Reserved.
Application Hosting Spectrum
Different models for different application needs.
Native Process
•Very Tight Integration
•Best Performance
LXC
•Strict Kernel
Requirements
•Good performance
with some security
Docker
•Emerging Industry
Standard
•Future Support
KVM
•Any OS
•Complete separation
•Linux host OS
normally – Type 2
hypervisor
Type 1
Hypervisor
•Service Module Only
•VMWare, HyperV,
Zen…
Service Containers
Linux Containers
15© 2018 ThousandEyes Inc. All Rights Reserved.
EN Virtualization: One Solution, Three Footprints
ISR4K + Service Containers ISR4K + UCS-E ENCS Virtual Branch
Common Orchestration DNA Center
Dedicated Open NFV
Hosting Platform
Reliable Access through
ISR4K
Proven Reliability
Any Hypervisor/Container
Integrated
Routing/Switching &
Services
Integrated Open NFV
Hosting
Proven Reliability
KVM / LXC
Complete Open Branch
Virtualization Platform
Flexible Interface Options
Designed & Hardened for
Branch Environments
KVM / LXC
16© 2018 ThousandEyes Inc. All Rights Reserved.
ISR 4400 & 1100
Built for today’s transformation of branch networks
– Distributed forwarding, crypto and scheduling resources
– Unpresedented security with full cyber threat lock-down
– Programmable through Netconf/Yang model APIs
– Std X86 architecture for accommodating any app
– Built for a virtualized environment
– Fully Cisco SD WAN ready
– Any service, any feature
17© 2018 ThousandEyes Inc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved.
Visibility for the Hybrid WAN
18© 2018 ThousandEyes Inc. All Rights Reserved.
Network Intelligence
• The data, technology,
algorithms and techniques
used to collect, analyze and
visualize network
information for the globally
connected, digital world.
19© 2018 ThousandEyes Inc. All Rights Reserved.
ThousandEyes Solution
• Updates network monitoring to better suit today’s WAN
• Distributed cloud, enterprise and endpoint agents actively
monitor SaaS, IaaS, internal apps and their network paths
20© 2018 ThousandEyes Inc. All Rights Reserved.
Cisco + ThousandEyes for Cisco Enterprise Routers
• ThousandEyes Enterprise Agents are
natively supported on the ISR 4000 Series
and ASR 1000 Series routers using
Cisco’s IOS XE 3.17 software and service
containers
• Collocate network intelligence with WAN
services provided by the ISR and ASR
routers to monitor both internal and
external networks
21© 2018 ThousandEyes Inc. All Rights Reserved.
New Visibility Needed for Modern WANs
Baseline the “new
normal” of Internet-
based communications
Every perspective:
Branches, remote
users, customers,
datacenters and clouds
Shift from passive to
active monitoring
Data-driven provider
accountability
22© 2018 ThousandEyes Inc. All Rights Reserved.
Baseline and Monitor and Hybrid WAN Connectivity
23© 2018 ThousandEyes Inc. All Rights Reserved.
Troubleshoot and Optimize Application Performance
24© 2018 ThousandEyes Inc. All Rights Reserved.
Network Intelligence for the Internet-centric world
Lightweight, Flexible
Data Collection
Cloud, Enterprise,
Endpoint Agents
Resolve Issues
Collaboratively
Share links, reports,
integrations, API
Surface Insights
Instantly
Outage detection,
root cause analysis
See Any Network
Segment
Path and route
visualization,
user sessions
One View of Diverse
Performance Data
Active, routing,
end user
25© 2018 ThousandEyes Inc. All Rights Reserved.
More Information
• Come and see us at Cisco Live!
– Stand WEP 11
• See Stefan’s presentation on branch router architectures
– How to choose the correct Branch device [BRKRST-3404]
• Wednesday 31st 2:30 – 4:00pm
For more information on ThousandEyes visit www.thousandeyes.com
or
Sign up to our 15-day free trial @ www.thousandeyes.com/signup
Please take the survey!

Who Moved My Network? Mastering Hybrid WANs with ThousandEyes and Cisco

  • 1.
    1© 2018 ThousandEyesInc. All Rights Reserved.Confidential © 2017 ThousandEyes Inc. All Rights Reserved.
  • 2.
    2© 2018 ThousandEyesInc. All Rights Reserved. • Welcome & Introduction • Who Moved My Network? – 2018 WAN Trends • Implications for network access & routing • Visibility for the Hybrid WAN • Wrap up & Q&A Agenda
  • 3.
    3© 2018 ThousandEyesInc. All Rights Reserved. About ThousandEyes Network Intelligence platform that gives you a complete picture from users to internal and cloud-based applications Surface insights from a global data set Lightweight, flexible data collection Unified view of diverse performance data Solve issues across shared infrastructure See any network like it’s your own Routing User App End-to-End Performance Data App Performance User Experience Network Topology Routing Topology Enterprise, Endpoint and Cloud Agents Network Connectivity Device Performance
  • 4.
    4© 2018 ThousandEyesInc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved. Who moved my network?
  • 5.
    5© 2018 ThousandEyesInc. All Rights Reserved. • Cloud-oriented • Internet-centric – 75% of IT spending shifting to cloud and related technologies by 2019 (IDC) The Rise of the Modern WAN
  • 6.
    6© 2018 ThousandEyesInc. All Rights Reserved. Why the Modern WAN is Internet-Centric
  • 7.
    7© 2018 ThousandEyesInc. All Rights Reserved. The Modern WAN Communications Matrix
  • 8.
    8© 2018 ThousandEyesInc. All Rights Reserved. IT Owns Every Connected Experience • Scope of IT governance has expanded beyond the boundaries of the traditional WAN • IT leaders own the user experience outcome, whether they own the networks or not
  • 9.
    9© 2018 ThousandEyesInc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved. Implications for network access & routing
  • 10.
    10© 2018 ThousandEyesInc. All Rights Reserved. This is a time of transformation for branch networks Cloudification Internet as Enterprise WAN Direct Internet Access Bring Your Own DeviceCreative Attackers
  • 11.
    11© 2018 ThousandEyesInc. All Rights Reserved. …with quite a few new challenges & requirements Advanced Threat Detection  Good ol’ outside-to-in perimeter defense not near adequate  Must protect against inside threats as well as outside-to-in attacks  Intelligent and immediate detection and mitigation Easy & cheap migration  Minimum # of hardware  Easy to deploy  Easy to orchestrate  Integrate into standard reporting tools Optimize my Network’s Capacity  Make better use of my bandwidth costs  Routing per application & per user  Reporting per-branch and per-application Align routing to my business needs  Look inside the HTTP flows  Comply to my business’ security regulations Performance Becomes a Key Challenge for our Branch transformation DMVPN PfRv3 WAAS / Akamai ZBFW Stealth watch AVC / NBAR2
  • 12.
    12© 2018 ThousandEyesInc. All Rights Reserved. RP Interconn. Forwarding Processor (Dataplane) FECPCrypto Assist QFP Subsystem Interconn. Route Processor (Controlplane) Solution: A Distributed Forwarding Architecture… SPA Agg. SPA SPA Interconn. IOCP SPA Agg. SPA SPA Interconn. IOCP IOSd Serviceplane Forwarding Processor (Dataplane) Forwarding CPUs Route & Service Processor (Controlplane) NIMFPGE SM-X MGF ASR 1000 ISR 4000
  • 13.
    13© 2018 ThousandEyesInc. All Rights Reserved. …which also accommodates smart Apps IOSd Serviceplane Forwarding Processor (Dataplane) Forwarding CPUs Route & Service Processor (Controlplane) NIMFPGE SM-X MGF ISR 4000 44xx 4331 / 4351 4321 / 4221 / 1100 • All ISR 4000 series routers have spare X86 CPU cores • Generic Applications can run on these cores with no impact to router performance • Std KVM environment = Any app is good • We call this technology Cisco Service Containers
  • 14.
    14© 2018 ThousandEyesInc. All Rights Reserved. Application Hosting Spectrum Different models for different application needs. Native Process •Very Tight Integration •Best Performance LXC •Strict Kernel Requirements •Good performance with some security Docker •Emerging Industry Standard •Future Support KVM •Any OS •Complete separation •Linux host OS normally – Type 2 hypervisor Type 1 Hypervisor •Service Module Only •VMWare, HyperV, Zen… Service Containers Linux Containers
  • 15.
    15© 2018 ThousandEyesInc. All Rights Reserved. EN Virtualization: One Solution, Three Footprints ISR4K + Service Containers ISR4K + UCS-E ENCS Virtual Branch Common Orchestration DNA Center Dedicated Open NFV Hosting Platform Reliable Access through ISR4K Proven Reliability Any Hypervisor/Container Integrated Routing/Switching & Services Integrated Open NFV Hosting Proven Reliability KVM / LXC Complete Open Branch Virtualization Platform Flexible Interface Options Designed & Hardened for Branch Environments KVM / LXC
  • 16.
    16© 2018 ThousandEyesInc. All Rights Reserved. ISR 4400 & 1100 Built for today’s transformation of branch networks – Distributed forwarding, crypto and scheduling resources – Unpresedented security with full cyber threat lock-down – Programmable through Netconf/Yang model APIs – Std X86 architecture for accommodating any app – Built for a virtualized environment – Fully Cisco SD WAN ready – Any service, any feature
  • 17.
    17© 2018 ThousandEyesInc. All Rights Reserved.© 2018 ThousandEyes Inc. All Rights Reserved. Visibility for the Hybrid WAN
  • 18.
    18© 2018 ThousandEyesInc. All Rights Reserved. Network Intelligence • The data, technology, algorithms and techniques used to collect, analyze and visualize network information for the globally connected, digital world.
  • 19.
    19© 2018 ThousandEyesInc. All Rights Reserved. ThousandEyes Solution • Updates network monitoring to better suit today’s WAN • Distributed cloud, enterprise and endpoint agents actively monitor SaaS, IaaS, internal apps and their network paths
  • 20.
    20© 2018 ThousandEyesInc. All Rights Reserved. Cisco + ThousandEyes for Cisco Enterprise Routers • ThousandEyes Enterprise Agents are natively supported on the ISR 4000 Series and ASR 1000 Series routers using Cisco’s IOS XE 3.17 software and service containers • Collocate network intelligence with WAN services provided by the ISR and ASR routers to monitor both internal and external networks
  • 21.
    21© 2018 ThousandEyesInc. All Rights Reserved. New Visibility Needed for Modern WANs Baseline the “new normal” of Internet- based communications Every perspective: Branches, remote users, customers, datacenters and clouds Shift from passive to active monitoring Data-driven provider accountability
  • 22.
    22© 2018 ThousandEyesInc. All Rights Reserved. Baseline and Monitor and Hybrid WAN Connectivity
  • 23.
    23© 2018 ThousandEyesInc. All Rights Reserved. Troubleshoot and Optimize Application Performance
  • 24.
    24© 2018 ThousandEyesInc. All Rights Reserved. Network Intelligence for the Internet-centric world Lightweight, Flexible Data Collection Cloud, Enterprise, Endpoint Agents Resolve Issues Collaboratively Share links, reports, integrations, API Surface Insights Instantly Outage detection, root cause analysis See Any Network Segment Path and route visualization, user sessions One View of Diverse Performance Data Active, routing, end user
  • 25.
    25© 2018 ThousandEyesInc. All Rights Reserved. More Information • Come and see us at Cisco Live! – Stand WEP 11 • See Stefan’s presentation on branch router architectures – How to choose the correct Branch device [BRKRST-3404] • Wednesday 31st 2:30 – 4:00pm For more information on ThousandEyes visit www.thousandeyes.com or Sign up to our 15-day free trial @ www.thousandeyes.com/signup Please take the survey!

Editor's Notes

  • #2 Hello and thank you for joining this ThousandEyes webinar on Who Moved My Network. My name’s Ian Waters, I’m the Director of Solutions Marketing for ThousandEyes based in the UK and I’m joined today by my Cisco colleague Stefan Mansson, who’s a Senior Technical Marketing Engineer based in the US.
  • #3 Before we start a couple of points of housekeeping. Firstly, we’d love your questions via the GoToWebinar Q&A panel that you should see to the right of your screen. Keep those coming during the presentation and we have some of our lovely colleagues lined up to answer those as we go, or save them to the end when we hope to allow some time for Q&A. Secondly, anyone who’s registered for this session will get a follow up email tomorrow with a link to the recording of this session and the slideshare. We’re looking to make the most of your time so Stefan and I are aiming to take 25 to 30 minutes, let’s see what we’re going to cover.
  • #4 ThousandEyes was founded in 2010 and has office in the US, UK & now Japan. We’re backed by some key technology investors such as Sequoia, Sutter Hill, Google Ventures and Salesforce Ventures and provide a cloud based solution for network intelligence. Our customer include all 5 of the global top 5 software companies, 5 of the top 6 US banks and 3 of the Big 4 banks in the UK, as well as customers across manufacturing, retail, online commerce and any industry that is concerned with cloud migration and application availability for it’s employees and customers. ThousandEyes is partnering with Cisco to provide network intelligence for the modern wide area network. During this webinar we’ll talk about the joint Cisco / ThousandEyes solution as well as give some more detail around how ThousandEyes provides network intelligence to our customers, however at a high level we leverage our end-point, enterprise and cloud agents to investigate the corporate network, the internet and cloud provider networks to give you a unified view. Our agents are lightweight with flexible deployment options as we’ll learn today in the case of the Cisco solution and combined allow you to see any network like it’s your own. Your can use this intelligence to correlate application performance to network health on a global scale and because it’s a cloud based solution it’s dynamic and shareable so you can easily collaborate with network, cloud and service partners to solve what would have previously been complex network issues. So – Who Moved My Network?
  • #5 So, for most of us on this call the fact is that our network has moved, let’s investigate why.
  • #13 See ISR 4k as a ”mini-ASR” . The control plane CPU on which IOSd resides equals an ASR RP module The data plane core equals ASR ESP module IOSd on control plane side programs forwarding CPUs on data plane side
  • #14 See ISR 4k as a ”mini-ASR” . The control plane CPU on which IOSd resides equals an ASR RP module The data plane core equals ASR ESP module IOSd on control plane side programs forwarding CPUs on data plane side Unique to ISR4k are the dedicated cores for sevices
  • #25 These five elements bring you an clear understanding of user experience in an Internet-centric world. We call this Network Intelligence. Network Intelligence is based on unique data created by ThousandEyes, combined with collective performance information from other Internet-centric businesses. You can create visibility into the performance of any network segment, even if it is outside of your control, without the constraints of rigid monitoring architectures. You can make sense of complex, dynamic networks with visualizations and collective intelligence that brings together previously siloed data. You’ll be able to pinpoint network dependencies and faults with clearer insights for even the least-reliable, best-effort networks. And you’ll solve problems across shared infrastructures by collaborating with team members, clients and service providers with the same data set.