SlideShare uma empresa Scribd logo
1 de 31
#ATM16
Extending mobility to remote
branch networks
@ArubaNetworks |
2#ATM16
Agenda
– Branch Solutions Overview
– Branch Disruptions, Cost Savings
– Centralized WLAN in Branch
– Cloud Services Controllers Positioning
– Branch AOS Features & New Opportunities
– Branch WAN Services
– Decentralized WLAN in Branch
– Aruba Instant with VPN
– Choosing the right solution for your business
@ArubaNetworks |
3#ATM16
Branch Solution Overview
@ArubaNetworks |
CSC
IAP RAP
INTERNET
4
Branch Disruptions, Cost Savings
5#ATM16
Disruptive Changes for Branch IT
@ArubaNetworks |
ETHERNET/3G/4G
LEGACY WAN
CONNECTIVITY
CLOUD APPS
LOCAL APP SERVERS
E3
By 2016, 30% of the advanced
attacks will enter organizations via
branch networks.
Public cloud IaaS will grow to over
$34B worldwide by 2018.
CLOUD SECURITY
ARCHITECTURES
DEDICATED SECURITY APPLIANCES
6#ATM16
New Requirements for the Branch Network
@ArubaNetworks |
Unified role-based policies
and network rightsizing
WIRELESS + WIRED
Threat management and secure
guest access
SECURITY
WAN optimization, WAN health
monitoring, and availability during
failures
WAN INTELLIGENCE
Visibility and quality of services
for business critical applications
CLOUD PERFORMANCE
7#ATM16
Cost Savings By Rightsizing The Branch
@ArubaNetworks |
Eliminate the need for separate WAN service
router, firewall...
One platform for wireless and wired clients
with common policy enforcement
Unified wireless architecture across campus
and branch
Deliver the all-wireless branch office with
unified communications
8
Cloud Services Controller Positioning
9#ATM16
Branch Cloud Services Controller Positioning
@ArubaNetworks |
10#ATM16
Controller Portfolio
@ArubaNetworks |
11
Branch AOS Features & New opportunities
12#ATM16
Cost Savings By Rightsizing The Branch
@ArubaNetworks |
Zero-touch provisioning
WAN optimization
WAN survivability
WAN health checks
Secured ports wired access
Policy-based WAN routing
Context based firewall
(user, app, device, location, content,
reputation)
13#ATM16
Branch AOS Features & New opportunities
@ArubaNetworks |
Software and Cloud Services driving to Rightsized Branch IT
• Branch device and services consolidation
• Cloud security services. By 2016, 30% of advanced threats will enter
via branches (Source – Gartner Branch Office Security)
• Cloud and guest services drive the need for hybrid WAN architectures
Branch Infrastructure Refresh
Trends / Opportunities
ARUBA 7005 ARUBA 7010
ARUBA 7024
14
Branch WAN Services
15#ATM16
Intelligent WAN / PBR
– Policy based routing to multiple WAN links
(MPLS, Internet, 3G/4G) for cost savings
and improved WAN usage, performance
– WAN health check monitors loss and
latency on WAN links, Redundancy with
multiple next hops on WAN health or
performance issues
– Selective traffic routing to Active-Active
HQ/DC (DC1, DC2 etc.) IKE IPSEC tunnels
(Cellular is Standby)
– Routing inside tunnels, L3 GRE over
IPSEC – Corporate (IPSEC) Vs. Guest (L3
GRE)
@ArubaNetworks |
Public Cloud
HQ / DC
7240 7240
MAS
Internet`
Aruba 7000 CSC
CSC
16#ATM16
WAN Optimization (Compression)
– WAN compression (hardware enabled)
between CSC (70xx) and 72xx Campus
Controllers
– 15-25% average payload compression
expected on traffic between branch and
HQ/DC
– The Master to Branch Cloud Services
Controller traffic over IPSEC will be
compressed and decompressed, Encrypted
traffic has NO compression
@ArubaNetworks |
HQ / DC
7240 7240
MAS
Aruba 7000 CSC CSC
17#ATM16
Intelligent WAN / Bandwidth Contracts
– Application or App Category bandwidth
contracts on WAN Uplinks
– Limit App or App category bandwidth on
non-critical applications (E.g. Social Media,
Entertainment etc.)
– AppRF / DPI and Advanced QoS to
prioritize app/app categories on WAN
uplinks
@ArubaNetworks |
Public Cloud
HQ / DC
7240 7240
MAS
Internet`
Aruba 7000 CSC
CSC
Business Low
Business Critical
18#ATM16
Aruba / Palo Alto Integration
Data Center
Aruba CSC w/ PA
Global Protect
PA
Gateway /
Portal
Branch (US)
Aruba CSC w/
PA Global Protect
• Aruba CSC gets cloud
provisioned via Activate and
downloads configurations
(including PA) via ZTP
• Aruba CSC Initiates a HTTPS
connection to PA portal and
downloads list of PA FW’s and
FW priorities.
Branch (Shanghai)
1
1
Aruba CSC w/ PA
Global Protect
2
Aruba CSC w/
PA Global Protect
2
2
• Branch offices establish secure
IPSEC tunnels to all PA
Gateways
• Branch routing policies (PBR)
selectively routes traffic to the
highest priority Gateway
Private Cloud
On Firewall failure or de-
commission, traffic will get re-
routed to FW with the next
highest priority
3
PA
Gateway
Aruba 72xx MC
Internet, SAAS or selective
traffic can get inspected via PA
Cloud SAAS
Advanced security threats
(ATP/APT, Zero Day, DLP etc.)
to distributed enterprise
enabled via Wild Fire
integration
4
SAAS
Pre-Provisioning:-
- Install PA certificates at 72xx (MC)
- Configure PA portal IP under PAN options in the MC under
Configuration -> Branch -> Smart Config -> WAN
19
Aruba Instant WLAN
20#ATM16
ARUBA INSTANT WI-FI
EASY DEPLOYMENT
Less hardware, faster set-up
BUILT-IN RF MANAGEMENT
Adaptive Radio Management™
ClientMatch™
BUILT-IN SECURITY
Firewall/Role-based Access
Intrusion Prevention/Detection
App Visibility, Compliance
BUILT-IN RESILIENCY
Site Survivability
Uplink Redundancy
ENTERPRISE-GRADE &
ALL INCLUSIVE
 SIMPLE
 POWERFUL
 COST EFFECTIVE
21#ATM16
HOW IT WORKS
• First AP configured through built-in UI use Activate for zero-touch
provisioning
–READY…
• It becomes the “master” & performs firewall and controller functions
–SET…
• New APs in the same VLAN automatically connect to the “master” &
download config
–GO!!
• New APs in different locations can also use Activate or import configuration from
the first AP
• Data center connectivity can be established with VPN tunnel between the master
AP and Aruba controllers as needed
–EXPAND!!
Instant APs
 NO ONSITE IT NEEDED
 NETWORK SURVIVABILITY
22#ATM16
WI-FI THAT CAN EVOLVE WITH BUSINESS
Internet
Mobility
Controller
AD / RADIUS
Enterprise HQ
Instant UI
Instant
Aruba Central Aruba Airwave
MULTIPLE MANAGEMENT OPTIONS - MULTIPLE DEPLOYMENT OPTIONS
23#ATM16
Easily transition from simple…
24#ATM16
… To Complex
25
Choosing the right solution for your business
26#ATM16
Decision Criteria for Wireless in a Branch
Branch Network
Size and complexity of
the branch
Type of branch:
Greenfield or
Brownfield
Backhaul and Wired
Infrastructure Choices
Services
Requirements
Existing campus
Network in place?
27#ATM16
Benefits of a Centralized WLAN in Branches
Branch in a Box
– Intelligent WAN - PBR, Bandwidth Contracts
– WAN Optimization – acceleration, caching
– Secure WAN – URL filtering, web reputation,
PEF
– Integrated wired ports for a greenfield branch
with wireless services
– Architectural parity with Campus Network
– Earlier Access to Advanced services – Lync
SDN, Full Palo Alto Firewall Integration, etc
28#ATM16
Benefits of a de-centralized WLAN in a Branch
Add WLAN and VPN to wired inftrastructure
– Cost-effective, especially for smaller
branches or when wired/backhaul
infrastructure is already in place or well-
planned
– Less redundant hardware required for local
WLAN survivability
– Easier to understand and set-up (No master-
local architecture required in data center)
– Great value in the form of AppRF,
ClientMatch, Cloud guest, Basic Palo Alto
Firewall Integration
29#ATM16
Guidance for a Branch
– Consider Service Requirements
– Centralized architecture for branch in a box services
– Decentralized architecture for wireless and VPN services
– Consider Type of branch (Greenfield, Brownfield)
– For greenfield branches lead with centralized architecture
– Consider Existing Campus Wireless Architecture
– Customers might prefer architectural uniformity, especially if master-local architecture is already present in the data center
– Consider Local WLAN Survivability and Simplicity
– Customers that primarily use local branch services with occasional data center access may prefer the simplicity
and local survivability of a de-centralized solution
30#ATM16
Join Aruba’s Titans of Tomorrow
force in the fight against network
mayhem. Find out what your
IT superpower is.
Share your results with friends
and receive a free superpower
t-shirt.
www.arubatitans.com
Thank you

Mais conteúdo relacionado

Mais procurados

Extend mobility to remote branch networks with Aruba's new cloud services con...
Extend mobility to remote branch networks with Aruba's new cloud services con...Extend mobility to remote branch networks with Aruba's new cloud services con...
Extend mobility to remote branch networks with Aruba's new cloud services con...Aruba, a Hewlett Packard Enterprise company
 
Enhance network security with Multi-Factor Authentication for BYOD and guest ...
Enhance network security with Multi-Factor Authentication for BYOD and guest ...Enhance network security with Multi-Factor Authentication for BYOD and guest ...
Enhance network security with Multi-Factor Authentication for BYOD and guest ...Aruba, a Hewlett Packard Enterprise company
 
Deploying mobile unified communications and collaboration (UCC) with Microsof...
Deploying mobile unified communications and collaboration (UCC) with Microsof...Deploying mobile unified communications and collaboration (UCC) with Microsof...
Deploying mobile unified communications and collaboration (UCC) with Microsof...Aruba, a Hewlett Packard Enterprise company
 

Mais procurados (20)

Shanghai Breakout: Location Analytics – Key Considerations and Use Cases
Shanghai Breakout: Location Analytics – Key Considerations and Use CasesShanghai Breakout: Location Analytics – Key Considerations and Use Cases
Shanghai Breakout: Location Analytics – Key Considerations and Use Cases
 
Lync over Aruba Wi-Fi Validated Reference Design Guide
Lync over Aruba Wi-Fi Validated Reference Design GuideLync over Aruba Wi-Fi Validated Reference Design Guide
Lync over Aruba Wi-Fi Validated Reference Design Guide
 
Access Management with Aruba ClearPass
Access Management with Aruba ClearPassAccess Management with Aruba ClearPass
Access Management with Aruba ClearPass
 
EMEA Airheads - Aruba Central- Managing Networks from the Cloud
EMEA Airheads - Aruba Central- Managing Networks from the CloudEMEA Airheads - Aruba Central- Managing Networks from the Cloud
EMEA Airheads - Aruba Central- Managing Networks from the Cloud
 
WLAN Design for Location
WLAN Design for LocationWLAN Design for Location
WLAN Design for Location
 
Extend mobility to remote branch networks with Aruba's new cloud services con...
Extend mobility to remote branch networks with Aruba's new cloud services con...Extend mobility to remote branch networks with Aruba's new cloud services con...
Extend mobility to remote branch networks with Aruba's new cloud services con...
 
Deep dive: Radio technologies for indoor location
Deep dive: Radio technologies for indoor locationDeep dive: Radio technologies for indoor location
Deep dive: Radio technologies for indoor location
 
Working with mobile app developers to enable indoor location based services
Working with mobile app developers to enable indoor location based servicesWorking with mobile app developers to enable indoor location based services
Working with mobile app developers to enable indoor location based services
 
Enhance network security with Multi-Factor Authentication for BYOD and guest ...
Enhance network security with Multi-Factor Authentication for BYOD and guest ...Enhance network security with Multi-Factor Authentication for BYOD and guest ...
Enhance network security with Multi-Factor Authentication for BYOD and guest ...
 
Mobile Devices and Wi-Fi
Mobile Devices and Wi-FiMobile Devices and Wi-Fi
Mobile Devices and Wi-Fi
 
Aruba Atmosphere / Airheads 2014 Keerti Melkote Keynote
Aruba Atmosphere / Airheads 2014 Keerti Melkote KeynoteAruba Atmosphere / Airheads 2014 Keerti Melkote Keynote
Aruba Atmosphere / Airheads 2014 Keerti Melkote Keynote
 
Aruba Webinar - 1-29-15
Aruba Webinar - 1-29-15Aruba Webinar - 1-29-15
Aruba Webinar - 1-29-15
 
Shanghai Breakout: Advanced Airwave Workshop
Shanghai Breakout: Advanced Airwave WorkshopShanghai Breakout: Advanced Airwave Workshop
Shanghai Breakout: Advanced Airwave Workshop
 
A-to-Z design guide for the all-wireless workplace
A-to-Z design guide for the all-wireless workplaceA-to-Z design guide for the all-wireless workplace
A-to-Z design guide for the all-wireless workplace
 
EMEA Airheads – Aruba controller features used to optimize performance
EMEA Airheads – Aruba controller features used to optimize performanceEMEA Airheads – Aruba controller features used to optimize performance
EMEA Airheads – Aruba controller features used to optimize performance
 
Multi-Vendor Access Network Management with Aruba Airwave
Multi-Vendor Access Network Management with Aruba AirwaveMulti-Vendor Access Network Management with Aruba Airwave
Multi-Vendor Access Network Management with Aruba Airwave
 
Fast-track your career by going from wireless to mobility engineer
Fast-track your career by going from wireless to mobility engineerFast-track your career by going from wireless to mobility engineer
Fast-track your career by going from wireless to mobility engineer
 
Advanced RF Design & Troubleshooting
Advanced RF Design & TroubleshootingAdvanced RF Design & Troubleshooting
Advanced RF Design & Troubleshooting
 
Acmx study guide
Acmx study guideAcmx study guide
Acmx study guide
 
Deploying mobile unified communications and collaboration (UCC) with Microsof...
Deploying mobile unified communications and collaboration (UCC) with Microsof...Deploying mobile unified communications and collaboration (UCC) with Microsof...
Deploying mobile unified communications and collaboration (UCC) with Microsof...
 

Destaque

Fast tracking network configuration with Aruba Solution Exchange (ASE) config...
Fast tracking network configuration with Aruba Solution Exchange (ASE) config...Fast tracking network configuration with Aruba Solution Exchange (ASE) config...
Fast tracking network configuration with Aruba Solution Exchange (ASE) config...Aruba, a Hewlett Packard Enterprise company
 
Connect and protect building a trust based internet of things for business cr...
Connect and protect building a trust based internet of things for business cr...Connect and protect building a trust based internet of things for business cr...
Connect and protect building a trust based internet of things for business cr...Aruba, a Hewlett Packard Enterprise company
 
Integrating Unified Communications and Collaboration on an Aruba Access Network
Integrating Unified Communications and Collaboration on an Aruba Access NetworkIntegrating Unified Communications and Collaboration on an Aruba Access Network
Integrating Unified Communications and Collaboration on an Aruba Access NetworkAruba, a Hewlett Packard Enterprise company
 
Enhancing mobile apps in the public facing enterprise with the aruba meridian...
Enhancing mobile apps in the public facing enterprise with the aruba meridian...Enhancing mobile apps in the public facing enterprise with the aruba meridian...
Enhancing mobile apps in the public facing enterprise with the aruba meridian...Aruba, a Hewlett Packard Enterprise company
 
Mobile Experience Management and Network Services Health Check with Aruba Air...
Mobile Experience Management and Network Services Health Check with Aruba Air...Mobile Experience Management and Network Services Health Check with Aruba Air...
Mobile Experience Management and Network Services Health Check with Aruba Air...Aruba, a Hewlett Packard Enterprise company
 

Destaque (20)

Wireless LAN Security Fundamentals
Wireless LAN Security FundamentalsWireless LAN Security Fundamentals
Wireless LAN Security Fundamentals
 
Large scale, distributed access management deployment with aruba clear pass
Large scale, distributed access management deployment with aruba clear passLarge scale, distributed access management deployment with aruba clear pass
Large scale, distributed access management deployment with aruba clear pass
 
Fast tracking network configuration with Aruba Solution Exchange (ASE) config...
Fast tracking network configuration with Aruba Solution Exchange (ASE) config...Fast tracking network configuration with Aruba Solution Exchange (ASE) config...
Fast tracking network configuration with Aruba Solution Exchange (ASE) config...
 
Connect and protect building a trust based internet of things for business cr...
Connect and protect building a trust based internet of things for business cr...Connect and protect building a trust based internet of things for business cr...
Connect and protect building a trust based internet of things for business cr...
 
Integrating Unified Communications and Collaboration on an Aruba Access Network
Integrating Unified Communications and Collaboration on an Aruba Access NetworkIntegrating Unified Communications and Collaboration on an Aruba Access Network
Integrating Unified Communications and Collaboration on an Aruba Access Network
 
Take a Walk on the Wired Side
Take a Walk on the Wired SideTake a Walk on the Wired Side
Take a Walk on the Wired Side
 
Getting the most out of the aruba policy enforcement firewall
Getting the most out of the aruba policy enforcement firewallGetting the most out of the aruba policy enforcement firewall
Getting the most out of the aruba policy enforcement firewall
 
Adapting to evolving user, security, and business needs with aruba clear pass
Adapting to evolving user, security, and business needs with aruba clear passAdapting to evolving user, security, and business needs with aruba clear pass
Adapting to evolving user, security, and business needs with aruba clear pass
 
Wireless LAN Design Fundamentals in the Campus
Wireless LAN Design Fundamentals in the CampusWireless LAN Design Fundamentals in the Campus
Wireless LAN Design Fundamentals in the Campus
 
Very High Density (vhd) 802.11ac Wireless Network Design and Deployment Basics
Very High Density (vhd) 802.11ac Wireless Network Design and Deployment BasicsVery High Density (vhd) 802.11ac Wireless Network Design and Deployment Basics
Very High Density (vhd) 802.11ac Wireless Network Design and Deployment Basics
 
Simplifying Wired Network Deployments with Software-Defined Networking (SDN)
Simplifying Wired Network Deployments with Software-Defined Networking (SDN)Simplifying Wired Network Deployments with Software-Defined Networking (SDN)
Simplifying Wired Network Deployments with Software-Defined Networking (SDN)
 
Aruba ClearPass Exchange Deep Dive
Aruba ClearPass Exchange Deep DiveAruba ClearPass Exchange Deep Dive
Aruba ClearPass Exchange Deep Dive
 
Enhancing mobile apps in the public facing enterprise with the aruba meridian...
Enhancing mobile apps in the public facing enterprise with the aruba meridian...Enhancing mobile apps in the public facing enterprise with the aruba meridian...
Enhancing mobile apps in the public facing enterprise with the aruba meridian...
 
Anatomy of an AP
Anatomy of an APAnatomy of an AP
Anatomy of an AP
 
Securing the LAN Best practices to secure the wired access network
Securing the LAN Best practices to secure the wired access networkSecuring the LAN Best practices to secure the wired access network
Securing the LAN Best practices to secure the wired access network
 
Overview of Major Aruba Switching Features incl. Smart Rate for Multi-Gig Ports
Overview of Major Aruba Switching Features incl. Smart Rate for Multi-Gig PortsOverview of Major Aruba Switching Features incl. Smart Rate for Multi-Gig Ports
Overview of Major Aruba Switching Features incl. Smart Rate for Multi-Gig Ports
 
The new imperative in the data center with workload centric networking
The new imperative in the data center with workload centric networkingThe new imperative in the data center with workload centric networking
The new imperative in the data center with workload centric networking
 
Wi-fi and Radio Fundamentals, and 802.11ac Technology Deep Dive
Wi-fi and Radio Fundamentals, and 802.11ac Technology Deep DiveWi-fi and Radio Fundamentals, and 802.11ac Technology Deep Dive
Wi-fi and Radio Fundamentals, and 802.11ac Technology Deep Dive
 
Mobile Experience Management and Network Services Health Check with Aruba Air...
Mobile Experience Management and Network Services Health Check with Aruba Air...Mobile Experience Management and Network Services Health Check with Aruba Air...
Mobile Experience Management and Network Services Health Check with Aruba Air...
 
Deep visibility to secure network access with aruba ClearPass Insight
Deep visibility to secure network access with aruba ClearPass InsightDeep visibility to secure network access with aruba ClearPass Insight
Deep visibility to secure network access with aruba ClearPass Insight
 

Semelhante a Extending mobility to remote networks with aruba instant, remote APs, and cloud services controllers

Ccna 4 Chapter 5 V4.0 Answers
Ccna 4 Chapter 5 V4.0 AnswersCcna 4 Chapter 5 V4.0 Answers
Ccna 4 Chapter 5 V4.0 Answersccna4discovery
 
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN Colt Technology Services
 
Framework for the New IP - Phil O'Reilly
Framework for the New IP - Phil O'ReillyFramework for the New IP - Phil O'Reilly
Framework for the New IP - Phil O'Reillyscoopnewsgroup
 
Wi Max Network Architecture V0.1 Pdf Version
Wi Max Network Architecture V0.1 Pdf VersionWi Max Network Architecture V0.1 Pdf Version
Wi Max Network Architecture V0.1 Pdf VersionDeepak Sharma
 
Aruba Netwrok(1).pptx
Aruba Netwrok(1).pptxAruba Netwrok(1).pptx
Aruba Netwrok(1).pptxEmanHashem6
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Canada
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
Cisco Intelligent WAN: Enabling the Next-Generation Branch
Cisco Intelligent WAN: Enabling the Next-Generation BranchCisco Intelligent WAN: Enabling the Next-Generation Branch
Cisco Intelligent WAN: Enabling the Next-Generation BranchCisco Canada
 
Reduce refresh costs and gain more beyond security!
Reduce refresh costs and gain more beyond security!Reduce refresh costs and gain more beyond security!
Reduce refresh costs and gain more beyond security!Salient Networks Limited
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer PresentationSyed Arsalan
 
Design and Deployment using the Cisco Smart Business Architecture (SBA)
Design and Deployment using the Cisco Smart Business Architecture (SBA)Design and Deployment using the Cisco Smart Business Architecture (SBA)
Design and Deployment using the Cisco Smart Business Architecture (SBA)Cisco Russia
 

Semelhante a Extending mobility to remote networks with aruba instant, remote APs, and cloud services controllers (20)

Ccna 4 Chapter 5 V4.0 Answers
Ccna 4 Chapter 5 V4.0 AnswersCcna 4 Chapter 5 V4.0 Answers
Ccna 4 Chapter 5 V4.0 Answers
 
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
 
Framework for the New IP - Phil O'Reilly
Framework for the New IP - Phil O'ReillyFramework for the New IP - Phil O'Reilly
Framework for the New IP - Phil O'Reilly
 
Wireless LAN Network Topologies (ENG)
Wireless LAN Network Topologies (ENG)Wireless LAN Network Topologies (ENG)
Wireless LAN Network Topologies (ENG)
 
Wi Max Network Architecture V0.1 Pdf Version
Wi Max Network Architecture V0.1 Pdf VersionWi Max Network Architecture V0.1 Pdf Version
Wi Max Network Architecture V0.1 Pdf Version
 
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WANMoving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
 
Aruba Netwrok(1).pptx
Aruba Netwrok(1).pptxAruba Netwrok(1).pptx
Aruba Netwrok(1).pptx
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation Branch
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
 
Cisco Intelligent WAN: Enabling the Next-Generation Branch
Cisco Intelligent WAN: Enabling the Next-Generation BranchCisco Intelligent WAN: Enabling the Next-Generation Branch
Cisco Intelligent WAN: Enabling the Next-Generation Branch
 
Verizon Managed SD-WAN with Cisco IWAN
Verizon Managed SD-WAN with Cisco IWAN Verizon Managed SD-WAN with Cisco IWAN
Verizon Managed SD-WAN with Cisco IWAN
 
Jvvnl 071108
Jvvnl 071108Jvvnl 071108
Jvvnl 071108
 
NET6.PPT
NET6.PPTNET6.PPT
NET6.PPT
 
Wan networks
Wan networksWan networks
Wan networks
 
Wireless Networks
Wireless NetworksWireless Networks
Wireless Networks
 
Reduce refresh costs and gain more beyond security!
Reduce refresh costs and gain more beyond security!Reduce refresh costs and gain more beyond security!
Reduce refresh costs and gain more beyond security!
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer Presentation
 
Wajahat Hussain cv
Wajahat Hussain cvWajahat Hussain cv
Wajahat Hussain cv
 
Design and Deployment using the Cisco Smart Business Architecture (SBA)
Design and Deployment using the Cisco Smart Business Architecture (SBA)Design and Deployment using the Cisco Smart Business Architecture (SBA)
Design and Deployment using the Cisco Smart Business Architecture (SBA)
 

Mais de Aruba, a Hewlett Packard Enterprise company

Mais de Aruba, a Hewlett Packard Enterprise company (20)

Airheads Tech Talks: Cloud Guest SSID on Aruba Central
Airheads Tech Talks: Cloud Guest SSID on Aruba CentralAirheads Tech Talks: Cloud Guest SSID on Aruba Central
Airheads Tech Talks: Cloud Guest SSID on Aruba Central
 
Airheads Tech Talks: Understanding ClearPass OnGuard Agents
Airheads Tech Talks: Understanding ClearPass OnGuard AgentsAirheads Tech Talks: Understanding ClearPass OnGuard Agents
Airheads Tech Talks: Understanding ClearPass OnGuard Agents
 
Airheads Tech Talks: Advanced Clustering in AOS 8.x
Airheads Tech Talks: Advanced Clustering in AOS 8.xAirheads Tech Talks: Advanced Clustering in AOS 8.x
Airheads Tech Talks: Advanced Clustering in AOS 8.x
 
EMEA Airheads_ Advance Aruba Central
EMEA Airheads_ Advance Aruba CentralEMEA Airheads_ Advance Aruba Central
EMEA Airheads_ Advance Aruba Central
 
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.xEMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
EMEA Airheads_ Aruba AppRF – AOS 6.x & 8.x
 
EMEA Airheads- Switch stacking_ ArubaOS Switch
EMEA Airheads- Switch stacking_ ArubaOS SwitchEMEA Airheads- Switch stacking_ ArubaOS Switch
EMEA Airheads- Switch stacking_ ArubaOS Switch
 
EMEA Airheads- LACP and distributed LACP – ArubaOS Switch
EMEA Airheads- LACP and distributed LACP – ArubaOS SwitchEMEA Airheads- LACP and distributed LACP – ArubaOS Switch
EMEA Airheads- LACP and distributed LACP – ArubaOS Switch
 
Introduction to AirWave 10
Introduction to AirWave 10Introduction to AirWave 10
Introduction to AirWave 10
 
EMEA Airheads- Virtual Switching Framework- Aruba OS Switch
EMEA Airheads- Virtual Switching Framework- Aruba OS SwitchEMEA Airheads- Virtual Switching Framework- Aruba OS Switch
EMEA Airheads- Virtual Switching Framework- Aruba OS Switch
 
EMEA Airheads- Aruba Central with Instant AP
EMEA Airheads- Aruba Central with Instant APEMEA Airheads- Aruba Central with Instant AP
EMEA Airheads- Aruba Central with Instant AP
 
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.xEMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
EMEA Airheads- AirGroup profiling changes across 8.1 & 8.2 – ArubaOS 8.x
 
EMEA Airheads- Getting Started with the ClearPass REST API – CPPM
EMEA Airheads-  Getting Started with the ClearPass REST API – CPPMEMEA Airheads-  Getting Started with the ClearPass REST API – CPPM
EMEA Airheads- Getting Started with the ClearPass REST API – CPPM
 
EMEA Airheads - AP Discovery Logic and AP Deployment
EMEA Airheads - AP Discovery Logic and AP DeploymentEMEA Airheads - AP Discovery Logic and AP Deployment
EMEA Airheads - AP Discovery Logic and AP Deployment
 
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.xEMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
EMEA Airheads- Layer-3 Redundancy for Mobility Master - ArubaOS 8.x
 
EMEA Airheads- Manage Devices at Branch Office (BOC)
EMEA Airheads- Manage Devices at Branch Office (BOC)EMEA Airheads- Manage Devices at Branch Office (BOC)
EMEA Airheads- Manage Devices at Branch Office (BOC)
 
EMEA Airheads - What does AirMatch do differently?v2
 EMEA Airheads - What does AirMatch do differently?v2 EMEA Airheads - What does AirMatch do differently?v2
EMEA Airheads - What does AirMatch do differently?v2
 
Airheads Meetups: 8400 Presentation
Airheads Meetups: 8400 PresentationAirheads Meetups: 8400 Presentation
Airheads Meetups: 8400 Presentation
 
Airheads Meetups: Ekahau Presentation
Airheads Meetups: Ekahau PresentationAirheads Meetups: Ekahau Presentation
Airheads Meetups: Ekahau Presentation
 
Airheads Meetups- High density WLAN
Airheads Meetups- High density WLANAirheads Meetups- High density WLAN
Airheads Meetups- High density WLAN
 
Airheads Meetups- Avans Hogeschool goes Aruba
Airheads Meetups- Avans Hogeschool goes ArubaAirheads Meetups- Avans Hogeschool goes Aruba
Airheads Meetups- Avans Hogeschool goes Aruba
 

Último

How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.Curtis Poe
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .Alan Dix
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Mark Simos
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brandgvaughan
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsPixlogix Infotech
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsSergiu Bodiu
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DaySri Ambati
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr BaganFwdays
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxhariprasad279825
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024BookNet Canada
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfPrecisely
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationSlibray Presentation
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024Lonnie McRorey
 
Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Manik S Magar
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLScyllaDB
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningLars Bell
 

Último (20)

How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.How AI, OpenAI, and ChatGPT impact business and software.
How AI, OpenAI, and ChatGPT impact business and software.
 
From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .From Family Reminiscence to Scholarly Archive .
From Family Reminiscence to Scholarly Archive .
 
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
Tampa BSides - Chef's Tour of Microsoft Security Adoption Framework (SAF)
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
WordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your BrandWordPress Websites for Engineers: Elevate Your Brand
WordPress Websites for Engineers: Elevate Your Brand
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
The Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and ConsThe Ultimate Guide to Choosing WordPress Pros and Cons
The Ultimate Guide to Choosing WordPress Pros and Cons
 
DevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platformsDevEX - reference for building teams, processes, and platforms
DevEX - reference for building teams, processes, and platforms
 
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo DayH2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
H2O.ai CEO/Founder: Sri Ambati Keynote at Wells Fargo Day
 
Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan"ML in Production",Oleksandr Bagan
"ML in Production",Oleksandr Bagan
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptx
 
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
Transcript: New from BookNet Canada for 2024: BNC CataList - Tech Forum 2024
 
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdfHyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
Hyperautomation and AI/ML: A Strategy for Digital Transformation Success.pdf
 
Connect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck PresentationConnect Wave/ connectwave Pitch Deck Presentation
Connect Wave/ connectwave Pitch Deck Presentation
 
TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024TeamStation AI System Report LATAM IT Salaries 2024
TeamStation AI System Report LATAM IT Salaries 2024
 
Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!Anypoint Exchange: It’s Not Just a Repo!
Anypoint Exchange: It’s Not Just a Repo!
 
Developer Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQLDeveloper Data Modeling Mistakes: From Postgres to NoSQL
Developer Data Modeling Mistakes: From Postgres to NoSQL
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
DSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine TuningDSPy a system for AI to Write Prompts and Do Fine Tuning
DSPy a system for AI to Write Prompts and Do Fine Tuning
 

Extending mobility to remote networks with aruba instant, remote APs, and cloud services controllers

  • 1. #ATM16 Extending mobility to remote branch networks @ArubaNetworks |
  • 2. 2#ATM16 Agenda – Branch Solutions Overview – Branch Disruptions, Cost Savings – Centralized WLAN in Branch – Cloud Services Controllers Positioning – Branch AOS Features & New Opportunities – Branch WAN Services – Decentralized WLAN in Branch – Aruba Instant with VPN – Choosing the right solution for your business @ArubaNetworks |
  • 5. 5#ATM16 Disruptive Changes for Branch IT @ArubaNetworks | ETHERNET/3G/4G LEGACY WAN CONNECTIVITY CLOUD APPS LOCAL APP SERVERS E3 By 2016, 30% of the advanced attacks will enter organizations via branch networks. Public cloud IaaS will grow to over $34B worldwide by 2018. CLOUD SECURITY ARCHITECTURES DEDICATED SECURITY APPLIANCES
  • 6. 6#ATM16 New Requirements for the Branch Network @ArubaNetworks | Unified role-based policies and network rightsizing WIRELESS + WIRED Threat management and secure guest access SECURITY WAN optimization, WAN health monitoring, and availability during failures WAN INTELLIGENCE Visibility and quality of services for business critical applications CLOUD PERFORMANCE
  • 7. 7#ATM16 Cost Savings By Rightsizing The Branch @ArubaNetworks | Eliminate the need for separate WAN service router, firewall... One platform for wireless and wired clients with common policy enforcement Unified wireless architecture across campus and branch Deliver the all-wireless branch office with unified communications
  • 9. 9#ATM16 Branch Cloud Services Controller Positioning @ArubaNetworks |
  • 11. 11 Branch AOS Features & New opportunities
  • 12. 12#ATM16 Cost Savings By Rightsizing The Branch @ArubaNetworks | Zero-touch provisioning WAN optimization WAN survivability WAN health checks Secured ports wired access Policy-based WAN routing Context based firewall (user, app, device, location, content, reputation)
  • 13. 13#ATM16 Branch AOS Features & New opportunities @ArubaNetworks | Software and Cloud Services driving to Rightsized Branch IT • Branch device and services consolidation • Cloud security services. By 2016, 30% of advanced threats will enter via branches (Source – Gartner Branch Office Security) • Cloud and guest services drive the need for hybrid WAN architectures Branch Infrastructure Refresh Trends / Opportunities ARUBA 7005 ARUBA 7010 ARUBA 7024
  • 15. 15#ATM16 Intelligent WAN / PBR – Policy based routing to multiple WAN links (MPLS, Internet, 3G/4G) for cost savings and improved WAN usage, performance – WAN health check monitors loss and latency on WAN links, Redundancy with multiple next hops on WAN health or performance issues – Selective traffic routing to Active-Active HQ/DC (DC1, DC2 etc.) IKE IPSEC tunnels (Cellular is Standby) – Routing inside tunnels, L3 GRE over IPSEC – Corporate (IPSEC) Vs. Guest (L3 GRE) @ArubaNetworks | Public Cloud HQ / DC 7240 7240 MAS Internet` Aruba 7000 CSC CSC
  • 16. 16#ATM16 WAN Optimization (Compression) – WAN compression (hardware enabled) between CSC (70xx) and 72xx Campus Controllers – 15-25% average payload compression expected on traffic between branch and HQ/DC – The Master to Branch Cloud Services Controller traffic over IPSEC will be compressed and decompressed, Encrypted traffic has NO compression @ArubaNetworks | HQ / DC 7240 7240 MAS Aruba 7000 CSC CSC
  • 17. 17#ATM16 Intelligent WAN / Bandwidth Contracts – Application or App Category bandwidth contracts on WAN Uplinks – Limit App or App category bandwidth on non-critical applications (E.g. Social Media, Entertainment etc.) – AppRF / DPI and Advanced QoS to prioritize app/app categories on WAN uplinks @ArubaNetworks | Public Cloud HQ / DC 7240 7240 MAS Internet` Aruba 7000 CSC CSC Business Low Business Critical
  • 18. 18#ATM16 Aruba / Palo Alto Integration Data Center Aruba CSC w/ PA Global Protect PA Gateway / Portal Branch (US) Aruba CSC w/ PA Global Protect • Aruba CSC gets cloud provisioned via Activate and downloads configurations (including PA) via ZTP • Aruba CSC Initiates a HTTPS connection to PA portal and downloads list of PA FW’s and FW priorities. Branch (Shanghai) 1 1 Aruba CSC w/ PA Global Protect 2 Aruba CSC w/ PA Global Protect 2 2 • Branch offices establish secure IPSEC tunnels to all PA Gateways • Branch routing policies (PBR) selectively routes traffic to the highest priority Gateway Private Cloud On Firewall failure or de- commission, traffic will get re- routed to FW with the next highest priority 3 PA Gateway Aruba 72xx MC Internet, SAAS or selective traffic can get inspected via PA Cloud SAAS Advanced security threats (ATP/APT, Zero Day, DLP etc.) to distributed enterprise enabled via Wild Fire integration 4 SAAS Pre-Provisioning:- - Install PA certificates at 72xx (MC) - Configure PA portal IP under PAN options in the MC under Configuration -> Branch -> Smart Config -> WAN
  • 20. 20#ATM16 ARUBA INSTANT WI-FI EASY DEPLOYMENT Less hardware, faster set-up BUILT-IN RF MANAGEMENT Adaptive Radio Management™ ClientMatch™ BUILT-IN SECURITY Firewall/Role-based Access Intrusion Prevention/Detection App Visibility, Compliance BUILT-IN RESILIENCY Site Survivability Uplink Redundancy ENTERPRISE-GRADE & ALL INCLUSIVE  SIMPLE  POWERFUL  COST EFFECTIVE
  • 21. 21#ATM16 HOW IT WORKS • First AP configured through built-in UI use Activate for zero-touch provisioning –READY… • It becomes the “master” & performs firewall and controller functions –SET… • New APs in the same VLAN automatically connect to the “master” & download config –GO!! • New APs in different locations can also use Activate or import configuration from the first AP • Data center connectivity can be established with VPN tunnel between the master AP and Aruba controllers as needed –EXPAND!! Instant APs  NO ONSITE IT NEEDED  NETWORK SURVIVABILITY
  • 22. 22#ATM16 WI-FI THAT CAN EVOLVE WITH BUSINESS Internet Mobility Controller AD / RADIUS Enterprise HQ Instant UI Instant Aruba Central Aruba Airwave MULTIPLE MANAGEMENT OPTIONS - MULTIPLE DEPLOYMENT OPTIONS
  • 25. 25 Choosing the right solution for your business
  • 26. 26#ATM16 Decision Criteria for Wireless in a Branch Branch Network Size and complexity of the branch Type of branch: Greenfield or Brownfield Backhaul and Wired Infrastructure Choices Services Requirements Existing campus Network in place?
  • 27. 27#ATM16 Benefits of a Centralized WLAN in Branches Branch in a Box – Intelligent WAN - PBR, Bandwidth Contracts – WAN Optimization – acceleration, caching – Secure WAN – URL filtering, web reputation, PEF – Integrated wired ports for a greenfield branch with wireless services – Architectural parity with Campus Network – Earlier Access to Advanced services – Lync SDN, Full Palo Alto Firewall Integration, etc
  • 28. 28#ATM16 Benefits of a de-centralized WLAN in a Branch Add WLAN and VPN to wired inftrastructure – Cost-effective, especially for smaller branches or when wired/backhaul infrastructure is already in place or well- planned – Less redundant hardware required for local WLAN survivability – Easier to understand and set-up (No master- local architecture required in data center) – Great value in the form of AppRF, ClientMatch, Cloud guest, Basic Palo Alto Firewall Integration
  • 29. 29#ATM16 Guidance for a Branch – Consider Service Requirements – Centralized architecture for branch in a box services – Decentralized architecture for wireless and VPN services – Consider Type of branch (Greenfield, Brownfield) – For greenfield branches lead with centralized architecture – Consider Existing Campus Wireless Architecture – Customers might prefer architectural uniformity, especially if master-local architecture is already present in the data center – Consider Local WLAN Survivability and Simplicity – Customers that primarily use local branch services with occasional data center access may prefer the simplicity and local survivability of a de-centralized solution
  • 30. 30#ATM16 Join Aruba’s Titans of Tomorrow force in the fight against network mayhem. Find out what your IT superpower is. Share your results with friends and receive a free superpower t-shirt. www.arubatitans.com

Notas do Editor

  1. This is a sample Picture with Content slide ideal for including a picture with a brief descriptive statement. To Replace the Picture on this Sample Slide (this applies to all slides in this template that contain replaceable pictures) Select the sample picture and press Delete. Click the icon inside the shape to open the Insert Picture dialog box. Navigate to the location where the picture is stored, select desired picture and click on the Insert button to fit the image proportionally within the shape. Note: Do not right-click the image to change the picture inside the picture placeholder. This will change the frame size of the picture placeholder. Instead, follow the steps outlined above. Tip: use the Crop tool to reposition a picture within a placeholder. From the Picture Tools Format tab on the ribbon, click the Crop button. Click and drag the picture within the placeholder to reposition. To scale the picture within the placeholder (while Crop is active), grab a round corner handle and drag to resize. Hold Shift key to constrain picture aspect ratio when resizing.
  2. This is a sample Picture with Content slide ideal for including a picture with a brief descriptive statement. To Replace the Picture on this Sample Slide (this applies to all slides in this template that contain replaceable pictures) Select the sample picture and press Delete. Click the icon inside the shape to open the Insert Picture dialog box. Navigate to the location where the picture is stored, select desired picture and click on the Insert button to fit the image proportionally within the shape. Note: Do not right-click the image to change the picture inside the picture placeholder. This will change the frame size of the picture placeholder. Instead, follow the steps outlined above. Tip: use the Crop tool to reposition a picture within a placeholder. From the Picture Tools Format tab on the ribbon, click the Crop button. Click and drag the picture within the placeholder to reposition. To scale the picture within the placeholder (while Crop is active), grab a round corner handle and drag to resize. Hold Shift key to constrain picture aspect ratio when resizing.
  3. This is a sample Picture with Content slide ideal for including a picture with a brief descriptive statement. To Replace the Picture on this Sample Slide (this applies to all slides in this template that contain replaceable pictures) Select the sample picture and press Delete. Click the icon inside the shape to open the Insert Picture dialog box. Navigate to the location where the picture is stored, select desired picture and click on the Insert button to fit the image proportionally within the shape. Note: Do not right-click the image to change the picture inside the picture placeholder. This will change the frame size of the picture placeholder. Instead, follow the steps outlined above. Tip: use the Crop tool to reposition a picture within a placeholder. From the Picture Tools Format tab on the ribbon, click the Crop button. Click and drag the picture within the placeholder to reposition. To scale the picture within the placeholder (while Crop is active), grab a round corner handle and drag to resize. Hold Shift key to constrain picture aspect ratio when resizing.
  4. Pre-Provisioning:- Install PA certificates at 72xx (MC) Configure PA portal IP under PAN options in the MC under Configuration -> Branch -> Smart Config -> WAN
  5. Unification of wired and wireless policies – some of these branch office appliances will need wired Ethernet ports for plugging in devices like cameras, phones, printers etc. Similar policies for wired and wireless devices need to be applied in this environment. This enables unification of security policies and further helps with management and troubleshooting of the branch network as a whole Intelligent and dynamic WAN optimization – techniques like compression and acceleration further ensures that the scarce WAN resources are utilized effectively. Survivability – the branch needs the capability to support multiple uplinks from ISPs and implement policy based routing to use the WAN resources efficiently Advanced Security – large distributed organizations need an array of techniques to combat blended attacks, wherein managing multiple, separate security tools can be overwhelming, inefficient and expensive. Advanced tools that enable Unified Threat Management (UTM) is beneficial for these branches. Content-based classification, behavioral analysis and reputation based system further enables the visibility and control that is needed to track usage and further control branch traffic. Centralized encryption ensures that all user traffic is encrypted that ensures comprehensive end-to-end security. Multiple Uplink Options – in the case of a WAN failure the branch network should be able to offer alternative uplink options (3G, 4G) so that the network is highly available Architectural parity with a campus network – For a customer who is used to a controller based architecture at the campus, having a smaller form factor appliances with built-in WLAN controller functionality at the branch will maintain architectural and operational consistency Greenfield branch with basic wireless services – A brand new branch with just basic wireless services might want to take a look at the appliance based unified wired and wireless solution to have an integrated network
  6. The size, scale and the scope of any branch office is typically lesser than what one would see in a campus. In a branch office environment scalability of services and mobility becomes less important. It is more important to have a solution that is plug & play, highly redundant, resilient to WAN outages, that can be deployed easily/Zero touch and managed centrally and so on. The controller less architecture with all the innovation that vendors have put in becomes an ideal choice for large distributed enterprises over a controller-based architecture. Reliable Wireless Access – to offer wireless access to connect the endpoint devices. Authentication and security – to provide secure network access to the endpoints and keep the network secure against rogues and other attacks Quality of Service (QoS) - for multimedia applications: the branch network needs to support enterprise class QoS to support applications like voice, video, UCC etc. Plug-and-play services: the branch network needs to support newer generation services like an Apple TV, Chromecast etc. so that users can build an all wireless office environment Cloud based zero touch provisioning – Given the number of branch offices that an enterprise might have, the more plug and play the solution is, easier is the solution to roll out in a large scale Secure Corporate connectivity – depending on the traffic type the branch office solution needs to be able to route traffic back to HQ securely so that the users at the branch can get their work done Centralized management – it is critical that an administrator is able to install, manage and troubleshoot these distributed branch networks from one central location  
  7. When, what is it. Condense. Legacy WAN (E1, T1 etc. ) -> Ethernet Local app server -> cloud apps Dedicated security appliances - > cloud security architectures MPLS, dedicated P2P circuit -> Hybrid WAN with low cost 4G/DSL handoff Complex networks -> L2 handoff Software and Cloud Services driving to Rightsized Branch IT Box consolidation. Moving to business wan away from T1/ei. Best of breeed cloud integrated with palo alto. We need zero touch provisioning, central management, business WAN
  8. Contest Overview - Aruba is running a marketing campaign where we ask “What is your IT superpower?” - Go to arubatitans.com to take a quick quiz to discover your superpower. - Share your results with friends and encourage others to play the game - Once you share, go to the Social and Community Hub, Gracia Commons, 3rd fl to pick up your free superpower shirt. FAQ 1. What do I have to do to get a shirt? Share your IT superpower results with friends and encourage them to play the game. Then come to the Social & Community Hub, 3rd Floor Gracia Commons to pick up your shirt. We just need your name and badge for verification. 2. Where do I get my shirt? Come to the #ATM16 Social & Community hub located at Gracia Commons on the 3rd Floor 3. Do I have to be at the event to get the shirt? Yes. You have to be at #ATM16 to get a shirt. 4. Can I get my colleague a shirt? He/she is in a session right now. Unfortunately not. We encourage your colleague to participate so that they can win a shirt for themselves. 5. Can I bring a shirt home for my colleague? Unfortunately not. You have to be at #ATM16 to get a shirt. 6. You don’t have a shirt in my size, can you ship the right size to me later? Unfortunately not. Please select the best size from our inventory on site.