SlideShare uma empresa Scribd logo
1 de 27
Baixar para ler offline
Presenter: Joe August, Product Manager
Date: Wednesday 22nd April 2015, 10am PDT
Enabling the Hybrid WAN Webinar Series
Host: Robb Boyd, Techwise TV
Speed Hybrid WAN Deployment with the
New Cisco Intelligent WAN Design Guide
Your Presenters
Product Manager
Joe August Robb Boyd
Techwise TV
• What is a Cisco Validated Design Guide
• Why Consider a Hybrid WAN
• Designing your Hybrid WAN: Top Five Recommendations
• Customer Use Cases
• Key Takeaways
Todays’ Session: What You Will Learn
What is a Cisco Validated
Design Guide
• How does new technology fit in with existing technology ?
• How can you know if all the pieces will work together ?
• How can I ensure my deployment is successful?
Technology is Always Changing
Big Challenges = Big Returns
• Built to incorporate a broad set of technologies, features, and use cases.
• Each CVD has been comprehensively tested and documented
• Two types of documents
• Technology Designs
• Deployment details
• Information on validated product, sizing, hardware/software options etc.
• Best practices for specific technologies
• Solution Design Guides
• Integrate or reference existing technology design guides
• Include features and functionality across Cisco products
• May include third party integration
Cisco Validated Designs (CVD)
• Each guide incorporates a Navigator to determine if it applies to your
requirements
• The Navigator provides
• Use Case – clearly defined technology use cases based on the issue that you need
to address. Define a specific combination of PIN components and design options that
might be deployed within the context of a specific design topology
• Scope – indicates the scope or breadth of technology covered by the guide
• Proficiency – indicates the proficiency or experience level recommended in order to
understand and use the guide
• Related CVD Guides – The Navigator points the user to other guides that are
related to the same topic matter
• Once the correct guide is chosen it can can used in its whole or in parts
Cisco Validated Designs
• Comprehensively Tested and Documented
• Written with Your Needs in Mind
• Adjustable to meet needs of current and
future architectures
• Flexible for Tomorrow
• CVD’s lay the groundwork for consistent
Successful Technology deployments
Cisco Validated Designs
Why Consider a Hybrid WAN?
Simplification CostsUser Experience
SDNCloud Security
Business Challenges
Technology Trends
Today’s Branch Office Challenges
• Is your branch infrastructure meeting your corporate needs?
• Today and tomorrow?
• Are there plans for the next-generation Branch?
• Is there a need for high-availability at Branch ?
• Are you exceeding your current bandwidth capabilities?
• Is lower cost internet feasible for my WAN?
• What are your security needs at the Branch ?
• Do you need to prioritize applications across the WAN?
Questions to Ask
Transport
Independence
Intelligent
Path Control
Application
Optimization
Secure
Connectivity
 IPsec WAN Overlay
 Consistent Operational Model
 Optimal application routing
 Efficient use of bandwidth
 Performance monitoring
 Optimization and Caching
 NG Strong Encryption
 Threat Defense
Management & Orchestration
Cisco Prime
Infrastructure
Cisco Application Policy
Infrastructure Controller
Hybrid WAN
Transport
Branch
MPLS
Internet
Direct Internet
Access
Private
Cloud
Virtual
Private
Cloud
Public
Cloud
Cisco Intelligent WAN
DMVPN + PKI PfR, QoS AVC, WAAS, Akamai Suite-B, ZBFW, CWS
Designing your Hybrid WAN:
Top Five Recommendations
1. Transport Independence
• Dynamic Multipoint Virtual Private Network (DMVPN) design and deployment over public
and private WAN transport
• Transport Independent Design (TID) provides capabilities for easy multi-homing over any
carrier service offering, including MPLS, broadband, and cellular 3G/4G/LTE
2. Intelligent Path Control
• Cisco Performance Routing (PfR) improves application delivery and WAN efficiency
3. Application Optimization
• WAN quality of server (QoS) design and configuration
4. Secure Connectivity
• Protects the corporate communications and offloads user traffic directly to the Internet
Cisco Intelligent WAN CVD
1. Leverage the Internet
Hybrid WAN
Transport
IPsec Secure
Branch
MPLS (IP-VPN)
Internet
Direct Internet
Access
Private
Cloud
Virtual
Private
Cloud
Public
Cloud
• Secure WAN transport for private
and virtual private cloud access
• Leverage local Internet path for
public cloud and Internet access
• Increased WAN transport capacity;
and cost effectively!
• Improve application performance
(right flows to right places)
2. Select Deployment Model
Hybrid Dual Internet
Consistent VPN Overlay Enables Security Across Transition
 More BW for key applications
 Balanced SLA guarantees
– Moderately priced
 Best price/performance
 Most SP flexibility
– Enterprise responsible for SLAs
Intern
et
PublicEnterprise
Branch Branch
 
MPLS+
Internet
• IPsec Overlay – DMVPN
• Site-to-site dynamic tunnels
• Per-Tunnel QOS
• PfR interoperability
• Multiple DMVPNs for Path Diversity
• Separate failure domains
• Allows Multi-homing over any carrier service
• Load balancing—PfR and routing protocol
• Single Routing Domain
• Simplified operations and support
• Simple ECMP or best path provisioning
• EIGRP or BGP
3. Transport Independent Design
Branch
Internet MPLS
DMVPN
Blue
DMVPN
Green
IWAN HYBRID
Data Center
ISP A SP V
ASR 1000 ASR 1000
ISR-G2ISR-G2
Transport Level Security
• Protects the corporate
communications
• Strong IPsec encryption, zone-based
firewalls, and strict access controls are
used to protect the WAN over the
public Internet.
4. Secure Connectivity at the Branch
Cisco
Suite-B
Old Encryption
Hazards
Commodity
Routers
DH,
RSA
Significant Risk
RSA Significant Risk
MD5,
SHA1
Collision Attacks
AES,
3DES
1GB Encryption Limit
HMAC-
MD5
Theoretical Weaknesses
Entropy Significant Risk
TLS1.0,
IKEv1
Known Flaws, Lack of
Authenticated Encryption
IKEv2
• Control the Perimeter
• External and internal protection: internal network is no longer trusted
• Protocol anomaly detection and stateful inspection
• Communicate Securely
• Call flow awareness (SIP, SCCP, H323)
• Prevent DoS attacks
• Flexible & Integrated
• No need for additional devices, expenses and power
• Works with other Cisco Services: SRE, CWS, WAAS
• Cisco Cloud Web Security Service (CWS)
• Advanced scanning and protection for HTTP/HTTPS applications
• URL Filtering, Blocking and malware protection
• Centralized policy provisioning in the cloud
5. Integrated Threat Defense For DIA
DSL
Branch
ISR-G2
ASR 1000 ASR 1000
ISP A ISP C
Data Center
Zone Based Firewall & Cloud Web Security
Cable
Public Cloud
CWS
Cisco IWAN App
Provisioning
Policy Automated,
Prescriptive
Deployment of IWAN in
Greenfield with PnP and
PKI Automation
Cisco IWAN App
Cisco Prime
Infrastructure
Full Configurability of
IWAN Features in
Greenfield or Brownfield
with PnP and PKI
Automation
Monitoring and
Troubleshooting
Cisco Prime Infrastructure
Small to mid sizeMid to large size
Solutions Plus 3rd Parties
Sold by Cisco
Cloud based and
MSP/Multi-tenant
Advanced Flow
Visualization/Scale
Management and Automation of Intelligent WAN CVD designs
Customer Use Cases
Lufthansa Systems GmbH & Co.KG
Challenges
• Support Lufthansa and other Alliance members
• Manage network equipment across locations
• Improve bandwidth utilization and improve costs
81 countries and 1800 locations across dozens of customers
Best Practice
• Implement Cisco Intelligent WAN to achieve optimum scale
Manage network equipment across locations
• Improve bandwidth utilization and improve costs
• Increased bandwidth by 30 percent
• Simplified management through standard infrastructure
• Improved utilization rates by eliminating need for redundancies
Results
IWAN Technologies Intelligent Path Control, Transport Independent IWAN Automation
Ritchie Brothers (Auction Sales)
• Prevent network outages
• Protect sensitive information
• Provide great experience for employees and customers
40 Websites 73 Locations
• Implement Cisco Intelligent WAN for security to protect
internet hosted applications
• Improve and optimize bandwidth utilization
• Increased bandwidth by 30 percent
• Simplified management through standard infrastructure
• Improved utilization rates by eliminating need for redundancies
IWAN Technologies Intelligent Path Control, Secure Connectivity, Direct Internet Access
Challenges
Best Practice
Results
Key Takeaways
• The network is a strategic asset
• Enabling companies to rapidly respond to new
business opportunities
• A Quality User Experience
• Deploy Branch Services that can deliver the proper
level of Application Intelligence, Security and Network
Services to meet user expectations
• Deliver on today’s and tomorrow’s business needs
• The CVD’s prescriptive approach gives you tested
network configurations that will allow you to deploy
with confidence
Cisco Validated Design for Intelligent WAN
• Cisco Intelligent WAN Design Guide
www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Jan2015/CVD-IWANDesignGuide-JAN15.pdf
• Cisco Intelligent WAN Security for the Remote Site Technology Design
www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Mar2015/CVD-IWAN-DIADesignGuide-Mar15.pdf
• Cisco Intelligent WAN
www.cisco.com/go/iwan
• Cisco Integrated Services Routers
www.cisco.com/go/isr
• Enabling the Hybrid WAN Webinar Series
www.cisco.com/c/en/us/solutions/enterprise-networks/intelligent-wan/index.html#~webinars
More Information
New
Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide - April 22, 2015

Mais conteúdo relacionado

Mais procurados

Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StoryCisco Enterprise Networks
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudVeloCloud Networks, Inc.
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)Cisco Canada
 
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...Cisco Canada
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer PresentationSyed Arsalan
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!Ciaran Roche
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN Ashutosh Kaushik
 
CisCon 2018 - Overlay Management Protocol e IPsec
CisCon 2018 - Overlay Management Protocol e IPsecCisCon 2018 - Overlay Management Protocol e IPsec
CisCon 2018 - Overlay Management Protocol e IPsecAreaNetworking.it
 
SD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementSD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementColt Technology Services
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Russia
 
SD-WAN & Hybrid-WAN Solutions for CSPs
SD-WAN & Hybrid-WAN Solutions for CSPsSD-WAN & Hybrid-WAN Solutions for CSPs
SD-WAN & Hybrid-WAN Solutions for CSPsRicky Pierson
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...SWITCHPOINT NV/SA
 
Tech Talk by Tim Van Herck: SDN & NFV for WAN
Tech Talk by Tim Van Herck: SDN & NFV for WANTech Talk by Tim Van Herck: SDN & NFV for WAN
Tech Talk by Tim Van Herck: SDN & NFV for WANnvirters
 
Get More for Less with the New Cisco Catalyst 6840-X Series Switch
Get More for Less with the New Cisco Catalyst 6840-X Series SwitchGet More for Less with the New Cisco Catalyst 6840-X Series Switch
Get More for Less with the New Cisco Catalyst 6840-X Series SwitchCisco Enterprise Networks
 

Mais procurados (20)

Preparing Your Network for 802.11ac Wave 2
Preparing Your Network for 802.11ac Wave 2Preparing Your Network for 802.11ac Wave 2
Preparing Your Network for 802.11ac Wave 2
 
Software-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success StorySoftware-Defined WAN: A Real World Success Story
Software-Defined WAN: A Real World Success Story
 
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloudSD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 
An SD-WAN Bill of Rights
An SD-WAN Bill of RightsAn SD-WAN Bill of Rights
An SD-WAN Bill of Rights
 
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...Cisco Connect Halifax 2018   Understanding Cisco's next generation sd-wan sol...
Cisco Connect Halifax 2018 Understanding Cisco's next generation sd-wan sol...
 
CloudGenix_Customer Presentation
CloudGenix_Customer PresentationCloudGenix_Customer Presentation
CloudGenix_Customer Presentation
 
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
 
SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN SD WAN Overview | What is SD WAN | Benefits of SD WAN
SD WAN Overview | What is SD WAN | Benefits of SD WAN
 
CisCon 2018 - Overlay Management Protocol e IPsec
CisCon 2018 - Overlay Management Protocol e IPsecCisCon 2018 - Overlay Management Protocol e IPsec
CisCon 2018 - Overlay Management Protocol e IPsec
 
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WANMoving Beyond the Router to a Thin-branch or Application-driven SD-WAN
Moving Beyond the Router to a Thin-branch or Application-driven SD-WAN
 
SD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancementSD WAN MPLS service disruption or enhancement
SD WAN MPLS service disruption or enhancement
 
SD-WAN
SD-WANSD-WAN
SD-WAN
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) Solution
 
SD-WAN & Hybrid-WAN Solutions for CSPs
SD-WAN & Hybrid-WAN Solutions for CSPsSD-WAN & Hybrid-WAN Solutions for CSPs
SD-WAN & Hybrid-WAN Solutions for CSPs
 
SD WAN
SD WANSD WAN
SD WAN
 
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
Silver Peak presentation used during the SWITCHPOINT NV/SA Quarterly Experien...
 
Tech Talk by Tim Van Herck: SDN & NFV for WAN
Tech Talk by Tim Van Herck: SDN & NFV for WANTech Talk by Tim Van Herck: SDN & NFV for WAN
Tech Talk by Tim Van Herck: SDN & NFV for WAN
 
Get More for Less with the New Cisco Catalyst 6840-X Series Switch
Get More for Less with the New Cisco Catalyst 6840-X Series SwitchGet More for Less with the New Cisco Catalyst 6840-X Series Switch
Get More for Less with the New Cisco Catalyst 6840-X Series Switch
 

Semelhante a Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide - April 22, 2015

Cisco application infrastracture controller (apic) billyjones
Cisco application infrastracture controller (apic) billyjonesCisco application infrastracture controller (apic) billyjones
Cisco application infrastracture controller (apic) billyjonesBilly jones Monarquia
 
Future Proofing your Data Center Network
Future Proofing your Data Center NetworkFuture Proofing your Data Center Network
Future Proofing your Data Center NetworkInnoTech
 
IBM Software Defined Networking = Brave New World of IT
IBM Software Defined Networking = Brave New World of  ITIBM Software Defined Networking = Brave New World of  IT
IBM Software Defined Networking = Brave New World of ITSteve Cole
 
Introduction to SDN and NFV
Introduction to SDN and NFVIntroduction to SDN and NFV
Introduction to SDN and NFVCoreStack
 
ATS-Overview_v0.1.pptx
ATS-Overview_v0.1.pptxATS-Overview_v0.1.pptx
ATS-Overview_v0.1.pptxNakhoudah
 
kavya cn ppt.pdf.pptx Hotel Management system using computer network
kavya cn ppt.pdf.pptx Hotel Management system using computer networkkavya cn ppt.pdf.pptx Hotel Management system using computer network
kavya cn ppt.pdf.pptx Hotel Management system using computer networkDevPratapSinghTomar1
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayCisco Canada
 
SM Consulting Services_Presentation_for Social Media
SM Consulting Services_Presentation_for Social MediaSM Consulting Services_Presentation_for Social Media
SM Consulting Services_Presentation_for Social MediaSM Consulting Services Inc
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA AutomationCisco Canada
 
Anti Hack Solution
Anti Hack Solution Anti Hack Solution
Anti Hack Solution Naved Ahmed
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco Canada
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANRobb Boyd
 
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Cisco Service Provider
 
Resume_Dinesh Sharma(1)
Resume_Dinesh Sharma(1)Resume_Dinesh Sharma(1)
Resume_Dinesh Sharma(1)Dinesh Sharma
 
Simplifying SDN Networking Across Private and Public Clouds
Simplifying SDN Networking Across Private and Public CloudsSimplifying SDN Networking Across Private and Public Clouds
Simplifying SDN Networking Across Private and Public Clouds5nine
 
Selvakumar Maniyan - Resume - Jan 2016
Selvakumar Maniyan - Resume - Jan 2016Selvakumar Maniyan - Resume - Jan 2016
Selvakumar Maniyan - Resume - Jan 2016Selvakumar Maniyan
 
Intelligence at the Edge: How SD-WAN can Enable a Smarter Network
Intelligence at the Edge: How SD-WAN can Enable a Smarter NetworkIntelligence at the Edge: How SD-WAN can Enable a Smarter Network
Intelligence at the Edge: How SD-WAN can Enable a Smarter NetworkQOS Networks
 
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingVTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingSachin Gowda
 
iinfrasol presentation
iinfrasol presentationiinfrasol presentation
iinfrasol presentationGirish Adsul
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld
 

Semelhante a Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide - April 22, 2015 (20)

Cisco application infrastracture controller (apic) billyjones
Cisco application infrastracture controller (apic) billyjonesCisco application infrastracture controller (apic) billyjones
Cisco application infrastracture controller (apic) billyjones
 
Future Proofing your Data Center Network
Future Proofing your Data Center NetworkFuture Proofing your Data Center Network
Future Proofing your Data Center Network
 
IBM Software Defined Networking = Brave New World of IT
IBM Software Defined Networking = Brave New World of  ITIBM Software Defined Networking = Brave New World of  IT
IBM Software Defined Networking = Brave New World of IT
 
Introduction to SDN and NFV
Introduction to SDN and NFVIntroduction to SDN and NFV
Introduction to SDN and NFV
 
ATS-Overview_v0.1.pptx
ATS-Overview_v0.1.pptxATS-Overview_v0.1.pptx
ATS-Overview_v0.1.pptx
 
kavya cn ppt.pdf.pptx Hotel Management system using computer network
kavya cn ppt.pdf.pptx Hotel Management system using computer networkkavya cn ppt.pdf.pptx Hotel Management system using computer network
kavya cn ppt.pdf.pptx Hotel Management system using computer network
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
SM Consulting Services_Presentation_for Social Media
SM Consulting Services_Presentation_for Social MediaSM Consulting Services_Presentation_for Social Media
SM Consulting Services_Presentation_for Social Media
 
Reducing Cost with DNA Automation
Reducing Cost with DNA AutomationReducing Cost with DNA Automation
Reducing Cost with DNA Automation
 
Anti Hack Solution
Anti Hack Solution Anti Hack Solution
Anti Hack Solution
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
Research Highlight: Independent Validation of Cisco Service Provider Virtuali...
 
Resume_Dinesh Sharma(1)
Resume_Dinesh Sharma(1)Resume_Dinesh Sharma(1)
Resume_Dinesh Sharma(1)
 
Simplifying SDN Networking Across Private and Public Clouds
Simplifying SDN Networking Across Private and Public CloudsSimplifying SDN Networking Across Private and Public Clouds
Simplifying SDN Networking Across Private and Public Clouds
 
Selvakumar Maniyan - Resume - Jan 2016
Selvakumar Maniyan - Resume - Jan 2016Selvakumar Maniyan - Resume - Jan 2016
Selvakumar Maniyan - Resume - Jan 2016
 
Intelligence at the Edge: How SD-WAN can Enable a Smarter Network
Intelligence at the Edge: How SD-WAN can Enable a Smarter NetworkIntelligence at the Edge: How SD-WAN can Enable a Smarter Network
Intelligence at the Edge: How SD-WAN can Enable a Smarter Network
 
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud ComputingVTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
VTU Open Elective 6th Sem CSE - Module 2 - Cloud Computing
 
iinfrasol presentation
iinfrasol presentationiinfrasol presentation
iinfrasol presentation
 
VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX VMworld 2013: Virtualized Network Services Model with VMware NSX
VMworld 2013: Virtualized Network Services Model with VMware NSX
 

Último

Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...apidays
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyKhushali Kathiriya
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businesspanagenda
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)wesley chun
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MIND CTI
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAndrey Devyatkin
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsJoaquim Jorge
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdflior mazor
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUK Journal
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProduct Anonymous
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CVKhem
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobeapidays
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonAnna Loughnan Colquhoun
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 

Último (20)

Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)Powerful Google developer tools for immediate impact! (2023-24 C)
Powerful Google developer tools for immediate impact! (2023-24 C)
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Data Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt RobisonData Cloud, More than a CDP by Matt Robison
Data Cloud, More than a CDP by Matt Robison
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 

Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide - April 22, 2015

  • 1. Presenter: Joe August, Product Manager Date: Wednesday 22nd April 2015, 10am PDT Enabling the Hybrid WAN Webinar Series Host: Robb Boyd, Techwise TV Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide
  • 2. Your Presenters Product Manager Joe August Robb Boyd Techwise TV
  • 3. • What is a Cisco Validated Design Guide • Why Consider a Hybrid WAN • Designing your Hybrid WAN: Top Five Recommendations • Customer Use Cases • Key Takeaways Todays’ Session: What You Will Learn
  • 4. What is a Cisco Validated Design Guide
  • 5. • How does new technology fit in with existing technology ? • How can you know if all the pieces will work together ? • How can I ensure my deployment is successful? Technology is Always Changing Big Challenges = Big Returns
  • 6. • Built to incorporate a broad set of technologies, features, and use cases. • Each CVD has been comprehensively tested and documented • Two types of documents • Technology Designs • Deployment details • Information on validated product, sizing, hardware/software options etc. • Best practices for specific technologies • Solution Design Guides • Integrate or reference existing technology design guides • Include features and functionality across Cisco products • May include third party integration Cisco Validated Designs (CVD)
  • 7. • Each guide incorporates a Navigator to determine if it applies to your requirements • The Navigator provides • Use Case – clearly defined technology use cases based on the issue that you need to address. Define a specific combination of PIN components and design options that might be deployed within the context of a specific design topology • Scope – indicates the scope or breadth of technology covered by the guide • Proficiency – indicates the proficiency or experience level recommended in order to understand and use the guide • Related CVD Guides – The Navigator points the user to other guides that are related to the same topic matter • Once the correct guide is chosen it can can used in its whole or in parts Cisco Validated Designs
  • 8. • Comprehensively Tested and Documented • Written with Your Needs in Mind • Adjustable to meet needs of current and future architectures • Flexible for Tomorrow • CVD’s lay the groundwork for consistent Successful Technology deployments Cisco Validated Designs
  • 9. Why Consider a Hybrid WAN?
  • 10. Simplification CostsUser Experience SDNCloud Security Business Challenges Technology Trends Today’s Branch Office Challenges
  • 11. • Is your branch infrastructure meeting your corporate needs? • Today and tomorrow? • Are there plans for the next-generation Branch? • Is there a need for high-availability at Branch ? • Are you exceeding your current bandwidth capabilities? • Is lower cost internet feasible for my WAN? • What are your security needs at the Branch ? • Do you need to prioritize applications across the WAN? Questions to Ask
  • 12. Transport Independence Intelligent Path Control Application Optimization Secure Connectivity  IPsec WAN Overlay  Consistent Operational Model  Optimal application routing  Efficient use of bandwidth  Performance monitoring  Optimization and Caching  NG Strong Encryption  Threat Defense Management & Orchestration Cisco Prime Infrastructure Cisco Application Policy Infrastructure Controller Hybrid WAN Transport Branch MPLS Internet Direct Internet Access Private Cloud Virtual Private Cloud Public Cloud Cisco Intelligent WAN DMVPN + PKI PfR, QoS AVC, WAAS, Akamai Suite-B, ZBFW, CWS
  • 13. Designing your Hybrid WAN: Top Five Recommendations
  • 14. 1. Transport Independence • Dynamic Multipoint Virtual Private Network (DMVPN) design and deployment over public and private WAN transport • Transport Independent Design (TID) provides capabilities for easy multi-homing over any carrier service offering, including MPLS, broadband, and cellular 3G/4G/LTE 2. Intelligent Path Control • Cisco Performance Routing (PfR) improves application delivery and WAN efficiency 3. Application Optimization • WAN quality of server (QoS) design and configuration 4. Secure Connectivity • Protects the corporate communications and offloads user traffic directly to the Internet Cisco Intelligent WAN CVD
  • 15. 1. Leverage the Internet Hybrid WAN Transport IPsec Secure Branch MPLS (IP-VPN) Internet Direct Internet Access Private Cloud Virtual Private Cloud Public Cloud • Secure WAN transport for private and virtual private cloud access • Leverage local Internet path for public cloud and Internet access • Increased WAN transport capacity; and cost effectively! • Improve application performance (right flows to right places)
  • 16. 2. Select Deployment Model Hybrid Dual Internet Consistent VPN Overlay Enables Security Across Transition  More BW for key applications  Balanced SLA guarantees – Moderately priced  Best price/performance  Most SP flexibility – Enterprise responsible for SLAs Intern et PublicEnterprise Branch Branch   MPLS+ Internet
  • 17. • IPsec Overlay – DMVPN • Site-to-site dynamic tunnels • Per-Tunnel QOS • PfR interoperability • Multiple DMVPNs for Path Diversity • Separate failure domains • Allows Multi-homing over any carrier service • Load balancing—PfR and routing protocol • Single Routing Domain • Simplified operations and support • Simple ECMP or best path provisioning • EIGRP or BGP 3. Transport Independent Design Branch Internet MPLS DMVPN Blue DMVPN Green IWAN HYBRID Data Center ISP A SP V ASR 1000 ASR 1000 ISR-G2ISR-G2
  • 18. Transport Level Security • Protects the corporate communications • Strong IPsec encryption, zone-based firewalls, and strict access controls are used to protect the WAN over the public Internet. 4. Secure Connectivity at the Branch Cisco Suite-B Old Encryption Hazards Commodity Routers DH, RSA Significant Risk RSA Significant Risk MD5, SHA1 Collision Attacks AES, 3DES 1GB Encryption Limit HMAC- MD5 Theoretical Weaknesses Entropy Significant Risk TLS1.0, IKEv1 Known Flaws, Lack of Authenticated Encryption IKEv2
  • 19. • Control the Perimeter • External and internal protection: internal network is no longer trusted • Protocol anomaly detection and stateful inspection • Communicate Securely • Call flow awareness (SIP, SCCP, H323) • Prevent DoS attacks • Flexible & Integrated • No need for additional devices, expenses and power • Works with other Cisco Services: SRE, CWS, WAAS • Cisco Cloud Web Security Service (CWS) • Advanced scanning and protection for HTTP/HTTPS applications • URL Filtering, Blocking and malware protection • Centralized policy provisioning in the cloud 5. Integrated Threat Defense For DIA DSL Branch ISR-G2 ASR 1000 ASR 1000 ISP A ISP C Data Center Zone Based Firewall & Cloud Web Security Cable Public Cloud CWS
  • 20. Cisco IWAN App Provisioning Policy Automated, Prescriptive Deployment of IWAN in Greenfield with PnP and PKI Automation Cisco IWAN App Cisco Prime Infrastructure Full Configurability of IWAN Features in Greenfield or Brownfield with PnP and PKI Automation Monitoring and Troubleshooting Cisco Prime Infrastructure Small to mid sizeMid to large size Solutions Plus 3rd Parties Sold by Cisco Cloud based and MSP/Multi-tenant Advanced Flow Visualization/Scale Management and Automation of Intelligent WAN CVD designs
  • 22. Lufthansa Systems GmbH & Co.KG Challenges • Support Lufthansa and other Alliance members • Manage network equipment across locations • Improve bandwidth utilization and improve costs 81 countries and 1800 locations across dozens of customers Best Practice • Implement Cisco Intelligent WAN to achieve optimum scale Manage network equipment across locations • Improve bandwidth utilization and improve costs • Increased bandwidth by 30 percent • Simplified management through standard infrastructure • Improved utilization rates by eliminating need for redundancies Results IWAN Technologies Intelligent Path Control, Transport Independent IWAN Automation
  • 23. Ritchie Brothers (Auction Sales) • Prevent network outages • Protect sensitive information • Provide great experience for employees and customers 40 Websites 73 Locations • Implement Cisco Intelligent WAN for security to protect internet hosted applications • Improve and optimize bandwidth utilization • Increased bandwidth by 30 percent • Simplified management through standard infrastructure • Improved utilization rates by eliminating need for redundancies IWAN Technologies Intelligent Path Control, Secure Connectivity, Direct Internet Access Challenges Best Practice Results
  • 25. • The network is a strategic asset • Enabling companies to rapidly respond to new business opportunities • A Quality User Experience • Deploy Branch Services that can deliver the proper level of Application Intelligence, Security and Network Services to meet user expectations • Deliver on today’s and tomorrow’s business needs • The CVD’s prescriptive approach gives you tested network configurations that will allow you to deploy with confidence Cisco Validated Design for Intelligent WAN
  • 26. • Cisco Intelligent WAN Design Guide www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Jan2015/CVD-IWANDesignGuide-JAN15.pdf • Cisco Intelligent WAN Security for the Remote Site Technology Design www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Mar2015/CVD-IWAN-DIADesignGuide-Mar15.pdf • Cisco Intelligent WAN www.cisco.com/go/iwan • Cisco Integrated Services Routers www.cisco.com/go/isr • Enabling the Hybrid WAN Webinar Series www.cisco.com/c/en/us/solutions/enterprise-networks/intelligent-wan/index.html#~webinars More Information New