Now a part of Cisco · ViptelaSecure Extensible Fabric Enabling the Journey to the Cloud and Beyond...
Transcript of Now a part of Cisco · ViptelaSecure Extensible Fabric Enabling the Journey to the Cloud and Beyond...
Now a part of Cisco
We bought Viptela
Intelligent WAN: Leveraging the InternetSecure WAN Transport and Internet Access
Hybrid WAN Transport
IPsec Secure
Hybrid WAN Transport
IPsec Secure
Branch
MPLS (IP-VPN)
InternetDirect InternetAccess
Direct InternetAccess
PrivateCloud
VirtualPrivateCloud
PublicCloud
Viptela Secure Extensible FabricEnabling the Journey to the Cloud and Beyond
ANY PLATFORM
ANY TRANSPORT
ANY LOCATION
USERSAPPS
SCALESECURE OPEN CLOUD
ANY CLOUD
DC
IaaSSaaS
An extensible FABRIC that securely and reliably
connects users to applications from any
location across any transport,in the public or private cloud
Architectural Constructs
SOFTWARE DEFINED: True separation of control, data and management
CLOUD: Cloud hosted and delivered
APPLICATION AWARE: Visibility & SLA business intent policy enforcement
SCALE AND FLEXIBILITY: True enterprise scale
SECURITY: Ingrained authentication, encryption, segmentation, access controls & service chaining
OPEN: for automation, orchestration, best-of-breed integration
ApplicationBandwidth
Requirements
Cloud Consumption
DisjointedSecurity
SimplifiedOperations
WAN Flexibility
TimeTo Capability
Challenges
Control back to the EnterpriseEnabling Seamless transition from traditional WAN to SD WAN
SECURE WAN FABRIC
Broadband 4G/LTEMPLS
ZERO TOUCH ZERO TRUST
Viptela Secure Extensible Network
Data Center Campus Branch Home Office
Control Plane (Containers or VMs)
Data Plane(Physical or Virtual)
Management Plane(Multi-tenant or Dedicated)
Orchestration Plane
vManage
vSmartvBond
vEdge
vOrchestrator
API
4GINTERNET MPLS
CONTROL
ANALYTICSORCHESTRATION
MANAGEMENT
Internet& Cloud
RegionalData Center
Campus
Small OfficeHome Office
Branch
INTEGRATED PKI
HIGHEST GRADE ENCRYPTION
NETWORK SEGMENTATION
INBOUND DDOS PROTECTION
STATELESS IPSEC
HIERARCHICAL DATA PLANE
vFabric
Secure and Scalable Data Plane architecture
Policy Driven WAN InfrastructurePolicy Augmented Dynamic Routing
vEdgeWAN router
Access Layer
Branch/DC
vSmart controller – Policy Enforcement/Advertisement
Control Policy:
Routing and Services
vManage GUI – Policy Orchestration1
2
3
Data Policy:
Extensive Policy-based Routing and Services
App-Route Policy:
App-Aware SLA-based Routing
Combine and Apply per Site
Execute Control Policy
Advertise AAR/Data Policies to Sites
Execute AAR and Data Policy as received
Dynamic Routing and Policies Combine to dictate behavior
Connectivity ApplicationsServices
Operations Security
Viptela SD-WAN Functions and Capabilities
Connectivity ApplicationsServices
Operations Security
MPLS
LTE
INTERNET
Hybrid WAN
Segmentation/VPNs
Dynamic Redundancy
Bandwidth On DemandFast Convergence
X
Dynamic Per-VPNTopologies
MPLS
LTE
INTERNET
Ubiquitous Data Plane
Viptela SD-WAN Functions and CapabilitiesConnectivity Aspects
Connectivity ApplicationsServices
Operations Security
Centralized OperationsDistributed Execution
Zero Touch ProvisioningTemplate-basedConfigurations
Programmatic APIsOpen Object Model
NetConf Ad-HocAdds/Moves/Changes
CentralizedPolicy Orchestration
Viptela SD-WAN Functions and CapabilitiesOperations Aspects
Connectivity ApplicationsServices
Operations Security
Centralized DeviceAuth-DB
Authenticated/EncryptedControl Plane
Automatic Key Rollover
Scalable Data-PlaneEncryption
Embedded Security Secure Bring-up
Viptela SD-WAN Functions and CapabilitiesSecurity Aspects
Connectivity ApplicationsServices
Operations Security
Carrier-style Portfolio Central Orchestration
Application-AwareRouting
Transport SLAMonitoring
MPLS
LTE
INTERNET
Cloud ServicesIntegration
SEN Overlay
Application LayerAnalytics
Viptela SD-WAN Functions and CapabilitiesApplications and Services Aspects
• Optimal connectivity to SaaS
• Leverages Viptela overlay WAN path control
• CloudExpress enables
• End – End visibility of SaaS Apps
• Auto-detect optimal path to Applications
• Dynamic path selection
• Centralized control
CloudExpressEnhancing the SaaS Experience
• Viptela fabric solves WAN & cloud on-ramp
• Centralized policy & config management for branch, on-prem and cloud
• Application assurance for IaaS and SaaS
Cloud On-Ramp Seamless IaaS Connectivity
Viptela – Networking for the Cloud Era
Cloud Applications
• WAN to Cloud Extension
• Branch to Cloud Connectivity
• Single WAN Network across Branch, DC & Cloud
• Secure Connectivity to applications
• Multi-Cloud / Multi-Region connectivity
• Carrier Independent hybrid transport
• User – Application Visibility
IaaS Deployment: vEdge-Cloud
Internet
Branch
DC
MPLS
Public Cloud Provider
IaaS instances
IaaS instances vEdge GW
vManagePlatform
• Optimized Connectivity to SaaS Applications
• across DIA, DC and Regional exits
• Continuous Network Health-checks
• Automatic selection of Optimized Path
CloudExpress – Optimizing SaaS Connectivity
Cloud Managed
APIsPartner
IntegrationsIntuitive UI
• Planning
• Staging & Zero-Trust
• Pre-Provisioning
• Automation
Day-0
• Secure & Zero-touch Activations
• Deployment Scale
• Policy Compliance
Day-1
• User & Application Visibility
• Centralized Monitoring
• Software Upgrades
• Self-healing
• Troubleshooting
Day-2
MSP Integrations
Centralized Management and Analytics
REST NETCONF SyslogFlow ExportSNMP
CLI Linux Shell
Power Tools
Single Pane Of Glass Rich Analytics & Monitoring
Comprehensive Technology Alliance Partnerships
Viptela Products and Pricing Model
vEdge Platform Portfolio
SOHOSMB
(100 M)
Branch(1 G)
Head-EndAggregation(10 G)
NFV, vCPE(N x cores)
IaaS & Cloud Interconnect(Nx cores)
Higher CapacityAggregation(20 G+)
ARM
IOT /Small Footprint
Viptela Subscription License Tiers
vEdge HW
(one-time cost)
vEdge HW
(one-time cost)
vSmart License(annual recurring)
vSmart License(annual recurring)
Operational Viptela Solution
Operational Viptela Solution
Viptela Solution Components – Pricing Structure
1. Select vEdge based on
physical connectivity and
lifetime throughput
requirements.
2. Select vSmart subscription
based on current throughput
needs and feature
requirements.
vSmart Controller license is included in vSmart license.
Multiple controllers may be deployed for redundancy.
vBond orchestration functionality can be enabled on any
licensed vEdge. Dedicated vBond can be licensed at
lowest throughput tier.
Thank you