SlideShare ist ein Scribd-Unternehmen logo
1 von 37
Downloaden Sie, um offline zu lesen
Cisco ConfidentialŠ 2016 Cisco and/or its affiliates. All rights reserved. 1
Understanding Cisco’ Next
Generation SD-WAN Solution
Steven Wood
Principal Engineer, SD-WAN & Enterprise Architecture
October 12, 2017
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2
Opening Comments
• Cisco SDWAN is the name for Cisco’s next generation SDWAN
solution.
• Cisco SDWAN will have a roadmap for Innovation and for Integration
(ISR/ASR/ENCS and IOS-XE)
• Cisco IWAN has over 200,000 sites deployed or in deployment
• IWAN 2.x support and roadmap will continue as per customer
commitments
• Cisco is making significant investments in innovation and integration
roadmaps
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3
Digital Innovations Overwhelming the Branch & the WAN
of revenue
is generated
in the branch
90%
MORE
THREATS
30%
Of advanced threats will
target branch offices by
2016 (up from 5%)
MORE
USERS
80% Of employee and
customers are served in
branch offices
MORE
DEVICES
73%
Growth in mobile
devices from
2014-2018
MORE
APPS
20-50% Increase in enterprise
bandwidth per year
through 2018
IoT devices
connected to
internet by 2020
30B
Annual increase in
enterprise bandwidth
and video adoption50%
Up to
Mobile-connected
devices by 201910B
Of Organizations primarily
use public cloud by 201980%
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4
The ROI is real
Traditional WAN vs Cisco SD-WAN
5X Cloud Performance
Cloud Aware architectures and SLA-based
traffic steering deliver blazing performance
for applications like O365, AWS, SFDC, and
more
10X More Bandwidth
No capacity restraints. No Choke
points. Instantly add bandwidth
anytime, anywhere based on
application requirements
50% Lower Cost
Reduced CapEx & OpEx.
Simplified Management.
Rapid troubleshooting
Circuit Costs
Time to enable
New services
Bandwidth Security & Compliance Change Control
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5
Cloud-first
management
with flexible
deployment options
Accelerate key
SD-WAN use cases;
Cloud-edge and
Segmentation
Sophisticated, but
still simple to deploy
and operate
Complements Cisco’s Enterprise Networks architecture strategy
Why Viptela?
Cisco Digital
Network Architecture
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6
Better Together: Providing Better Outcomes
Leading Routing &
SD-WAN Platforms
Goal: Building next generation SD-WAN solutions
Together, helping businesses and IT to innovate faster, securing and delivering
better customer outcomes, while reducing costs and lowering risk
Cloud-managed &
Feature-rich SD-WAN
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7
Accelerating SD-WAN Vision and Strategy
Secure VPN Overlay, Any Transport, Bandwidth Efficiency, Application SLA
Secure, Simple, Centralized Policy Automation, Optimization, Security, E2E Policies
Cloud Migration, Cloud Delivery, Analytics, SDN Architecture
vRouter, vService and NFV
Enterprise Fabric
INTELLIGENT
VIRTUALIZATION
AUTOMATION
CLOUD
INTEGRATION
SERVICE
VIRTUALIZATION
DNA
Next Generation Cisco SDWANIWAN SD-WAN
Cisco Confidential 8Š 2016 Cisco and/or its affiliates. All rights reserved.
Cisco SD-WAN:
Architecture & Use Cases
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9
Cisco SD-WAN Solution with Viptela
APPLICATION POLICIES
SERVICES DELIVERY PLATFORM
TRANSPORT INDEPENDENT FABRIC
Broadband CellularMPLS
ZERO TOUCH ZERO TRUST
QoSSecurity Segmentation Svc Insertion SurvivabilityRouting Multicast
Per-Segment
Topologies
Cloud
Path
Application
SLA
Secure
Perimeter
Traffic
Engineering
Transport
Hub
Cloud
Accel
Analytics
Monitoring
Operations
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10
APPLICATIONS
SDWAN
Cloud IoT
.…
Enterprise
Fabric
SD-WAN Fabric – Networking for the Cloud Era
Enabling the Digital Transformation
USERS
DC
IaaS
SaaS
vDC
Analytics
SECURE SCALE OPEN
Cloud Delivered
DEVICES
THINGS
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11
Cisco SD-WAN with Viptela: Solution Overview
Data Center Campus Branch Home Office
Control Plane
(Containers or VMs)
Data Plane
(Physical or Virtual)
Management Plane
(Multi-tenant or Dedicated)
Orchestration Plane
vManage
vSmart
vBond
vEdge
vOrchestrator
API
4GINTERNET MPLS
CONTROL
ANALYTICSORCHESTRATION
MANAGEMENT
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12
Critical Applications SLA
Bandwidth
Oversubscription
Path
Brownout
Application-
aware
Topologies
All Links
Failure
Corporate
Data Center
Small Office
Home Office
Cloud
Data Center
Single Link
Failure
Cloud
Applications
Latency
Path MTU
Changes
CPE Device
Failure
4G/LTE
Internet MPLS
BranchCampus
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13
Application Recognition
Deep Packet Inspection Engine
Primary Use Cases:
- Application visibility
- Application Firewall
- Traffic prioritization
- Transport selection
vEdge Router
App 1
App 2
App 3,000
Cloud Data
Center
Data
Center
Campus
Branch
Small Office
Home
Office
MPLS INET
3G/4G
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14
Secure Segmentation
Ingress
vEdge
VPN 3
VPN 1
VPN 2
SD-WAN
IPSec
Tunnel
20
IP
8
UDP
36
ESP
4
VPN
…
Data
Egress
vEdge
Interface
VLAN
• Segment connectivity across fabric w/o
reliance on underlay transport
• vEdge routers maintain per-VPN
routing table
• Labels are used to identify VPN for
destination route lookup
• Interfaces and sub-interfaces (802.1Q
tags) are mapped into VPNs
VPN1
VPN2
Interface
VLAN
VPN1
VPN2
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15
Arbitrary VPN Topologies
VPN1 VPN2
VPN3 VPN4
• Each VPN can have it’s own topology
• VPN topology can be influenced by
leveraging control policies
- Filtering TLOCs or modifying next-
hop TLOC attribute for routes
• Applications can benefit from
shortest path, e.g. voice takes full-
mesh topology
• Security compliance can benefit from
controlled connectivity topology, e.g.
PCI data takes hub-and-spoke
topology
Full-Mesh Hub-and-Spoke
Partial Mesh Point-to-Point
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16
Cloud Ready WAN
IaaS SaaS
Data
Center
Small Office
Home Office
Data
Center
Campus
Small Office
Home Office
Branch
Cloud
Data Center
Secure
SD-WAN
Fabric
CampusBranch
Cloud
Applications
Secure
SD-WAN
Fabric
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17
Enabling optimal Cloud OnRamp
ESSENTIALS
Cloud-ready WAN
Optimal exit points
and access
Pervasive security
Direct Internet
Access
ExpressRoute
Access
CNF
3
Regional
Internet Access
Internet
Exchange
2
Branch
1 2 3
Direct Internet Access
(DIA) for optimal
user experience
Supported by regional
Internet access
ExpressRoute peering
with Microsoft Azure 1
Secure
SD-WAN
Fabric
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 18
Cloud onRamp for SaaS – Internet DIA
Regional
Data Center
Remote Site
ISP2
ISP1
SD-WAN
Fabric
Loss/
Latency
!
Data Center
Quality Probing (HTTP ping)
• Remote site path-quality probing for
selected SaaS applications across each
DIA exit
- Simulates client connection using HTTP
ping
• Results are quantified as vQoE score
(combination of loss and latency)
• DIA exit with better vQoE score is
chosen to carry the traffic for the
selected SaaS application
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19
Cloud onRamp for IaaS – Gateway VPC/VNET
Remote Site
SD-WAN
Fabric
Branch
Campus
Cloud
Data Center
Host
VPCs/VNETs
Gateway
VPC/VNET
• A pair of vEdge routers is instantiated in
Amazon VPC or Microsoft Azure VNET
- Gateway VPC/VNET
• A pair of standard-based IPSec tunnels
is stretched from gateway VPC/VNET to
each host VPCs/VNETs
- Connectivity redundancy
• BGP is established across IPSec tunnels
for route advertisement
- Bi-directional BGP/OMP redistribution on
the gateway VPC/VNET vEdge routers
• Entire process is automated through
vManage workflow
Standard IPSec
BGPBGP BGP
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 20
Service Insertion – Single or Multiple
Data
Center
Remote
Office
• vEdge router with connected L4-L7
service makes advertisement
- Service route OMP address family
- Service VPN label
• Service is advertised in specific VPN
• Service can be L3 routed or L2
bridged
• Service can be singly or dually
connected (Firewall trust zones) to
the advertising vEdge
• Control or data policies are used to
insert the service node into the
matching traffic forwarding path
- Match on 6-tuple or DPI signature
- Applied on ingress/egress vEdge
Regional
Hub
MPLS INET
4G
Service
Advertisement
Policy
Advertisement*vSmart
* For data policy only. Control policy enforced on vSmart.
VPN1
VPN1
VPN1
Traffic Path
Control Plane
FW
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 21
Replicators
Sender
vSmart
Controllers
Multicast Stream
SD-WAN
Fabric
RP
Control Plane
Branch
BranchReceiver
Receiver
Data
Center
Multicast Traffic
IGMP/PIM
IGMP/PIM
OMP
Update
OMP
Update
OMP
Update
OMP
Update
 vEdges interoperate with IGMP v1/v2 and
PIM on the service side
 vEdges advertise receiver multicast groups
using OMP
 Replicators advertise themselves using
OMP
 vEdge cannot be RP. Router is required.
- If running SSM, RP is not needed
 Replicators replicate multicast stream to
receivers as learnt through OMP
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 22
Zero Touch Provisioning – vEdge Appliance
Control and Policy
Elements
Full Registration and
Configuration
vEdge
5
* Factory default configured
Assumption:
 DHCP on Transport Side (WAN)
 DNS to resolve ZTP server name*
 Delivered as-a-Service
3
4
Zero Touch Provisioning
Server
1
2
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 23
Simplified Management
REST NETCONF Syslog
Flow
ExportSNMP
CLI Linux Shell
Power Tools
Single Pane Of Glass Rich Analytics & Monitoring
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 24
vAnalytics Dashboard
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25
vAnalytics Main Characteristics
Application/Flow Centric
• Based on DPI and cflowd
• Bandwidth Usage
- Top sources, destinations, apps
- Per-Site basis
• Application Performance
• Application to tunnel binding and
performance information
• Anomaly Detection
- Baseline of application usage
- Anomaly detection based on
overall application usage (by
application family, by site)
Network Centric
• Site Availability
• Network Availability
• Site Usage Analysis
- Top sites by bandwidth consumption
- Historical bandwidth consumption
• Carrier Performance
- App-Route stats on a per-carrier basis
- Carriers health ranking
Cisco Confidential 27Š 2016 Cisco and/or its affiliates. All rights reserved.
Integration Plans
Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Viptela Integration Plan
Phase 2
Platform Integration
Phase 1
No Integration
Phase 3
Management Integration
Platform:
• As-is
Management:
• vManage
Platform:
• vEdge capabilities integrated into all IOS-XE
platforms (ISR, CSR, ENCS, ASR1K)
Management:
• vManage for SD-WAN capabilities on IOS-XE
Management:
• Cloud hosted DNA Center integrates vManage
capabilities
• Full DNA Center capabilities (Assurance,
Integrated workflows for SD-Access and
SD-WAN)
Support current Viptela
customers
Viptela SD-WAN on strategic ISR
platform
Deliver end-to-end experience
with full DNA integration
DeploymentScenariosBenefitsDetails
vEdge ISR4K + vEdge SW
DNA Center
+ SD-WAN
ISR4K + vEdge SW
vManage
vEdge
vManage
vEdge
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 30
Integration Roadmap - Prioritization Guidelines
1 All existing Viptela features must be supported
2 Workflow sanctity must be preserved
3 Platforms meet performance & scale expectations
4 Security (Embedded & Cloud)
5 Services (UC & WAAS)
6 Brownfield support
7 Advanced IOS capabilities (QoS, BGP etc)
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 31
High-level Feature Integration Plan
Existing IOSXE CapabilitiesExisting Viptela Capabilities
 Day 0, Workflows (User
Configuration, System setup,
Segmentation Setup)
 Day 1, Control phase setup, ZTP,
Templates), Segmentation, DC
routing, Topologies
 Day N, Application Policy, Qos, DIA,
Cloud Express, Monitoring &
Troubleshooting, Upgrade Options
Platform & Interfaces:
ASR1K, CSR, ISR4K, T1/E1, FSX/FXO etc
Security & Services:
ZBF, Umbrella, Waas, UC, etc
Advanced Capabilities: QoS, BGP etc.
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 32
SD-WAN Fabric Integration with DNA
APPs
SDWAN
Cloud IoT
.…
SDWAN Fabric
USERS
DC
IaaS
SaaS
vDC
Analytics
SECURE SCALE OPEN
Cloud Delivered
DEVICES
THINGS
SDA Fabric
(branch & campus)
SDA Fabric
(branch & campus)
DC
ACI Fabric
• User / Device Identity, network-wide
• Policy abstraction at User / Group and
Application levels
• Policy at Fabric Edge. Over-the-top.
• Increased Simplicity. Seamless Mobility.
End-to-end Context
Cisco Confidential 33Š 2016 Cisco and/or its affiliates. All rights reserved.
What should I do?
Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 34
Where are you in the SD-WAN journey ?
New SDWAN
customers
Customers with Viptela
vEdge or in process of
deployment
Customers
deployed IWAN or
in process of
deployment
Full breadth of solutions:
Cisco SDWAN or Meraki
Cisco will support Viptela
& vEdge hardware
Continued support for
IWAN
Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Choosing the Appropriate SD-WAN Solution
Discovery, Insights and Relevancy Triggers
• Cloud and OnRamp
• More than two active
transports or active LTE
• Comprehensive WAN
connectivity & services
• Complex topologies
• Custom policies at scale
• Advanced routing &
segmentation
• Native dynamic cloud
application acceleration
Advanced SD-WAN
• Hybrid WAN
• L3 overlay for hub-spoke
deployments
• Dynamic path selection
• Cloud-managed
• Zero touch deployment with
templates and easy to use
dashboard
SD-WAN Common
• Single pane-of-glass
management for full stack
infrastructure across the
branch
• Existing Meraki customers
evaluating SD-WAN
• Competitive pricing pressure
• Integrated branch security and
network connectivity solution
Single Dashboard
Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
vManage
Cisco SD-WAN Day 1 Deployment Scenarios
ISR
TI / E! / DSL
DeploymentScenarios
vEdge
ISR Providing Services
vManage
vEdge
Ethernet
ISR
vManage
ISR
TI / E! / DSL
vEdge
ISR Providing T1/E1/DSL
Connectivity
vManage
ISR
TI / E1 / DSL
vEdge
WaaS
UC
Thin Branch
vManage
vEdge
Ethernet
Available Bundles
Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
• I’ve started my IWAN deployment and it meets my Use Case needs
- Continue deployment
- Invest in strategic platforms: ISR4K/ASR1K/ENCS
- Software migration to NextGen when it is needed
• I’m considering an SD-WAN deployment. I need advanced use cases:
- Automated Segmentation, Cloud
- Consider NextGen Deployment
- Invest in strategic platforms: ISR4K/ASR1K/ENCS; Available vEdge
Bundles
What should I do?
Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
• Cisco SDWAN is the name for Cisco’s next generation SDWAN
solution.
• Cisco SDWAN has a roadmap for Innovation and for Integration
(ISR/ASR/ENCS and IOS-XE)
• Cisco IWAN has of 200,000 sites deployed or in deployment
• IWAN 2.x support and roadmap will continue as per customer
commitments
• Cisco is making significant investments in innovation and
integration roadmaps
Key Takeaways
Thank you.

Weitere ähnliche Inhalte

Was ist angesagt?

[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
Nur Shiqim Chok
 

Was ist angesagt? (20)

Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaUnderstanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
 
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
Architecture of NFV Platform for Orchestrating Cloud-based & vBranch Managed ...
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
Cisco connect winnipeg 2018   putting firepower into the next generation fire...Cisco connect winnipeg 2018   putting firepower into the next generation fire...
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
 
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
 
Cisco Connect Halifax 2018 Optimizing your client's wi-fi experience
Cisco Connect Halifax 2018   Optimizing your client's wi-fi experienceCisco Connect Halifax 2018   Optimizing your client's wi-fi experience
Cisco Connect Halifax 2018 Optimizing your client's wi-fi experience
 
Putting firepower into the next generation firewall
Putting firepower into the next generation firewallPutting firepower into the next generation firewall
Putting firepower into the next generation firewall
 
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...Cisco Connect Halifax 2018   Compute infrastructure for a hybrid cloud ucs an...
Cisco Connect Halifax 2018 Compute infrastructure for a hybrid cloud ucs an...
 
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...Cisco Connect Halifax 2018   cloud and on premises collaboration security exp...
Cisco Connect Halifax 2018 cloud and on premises collaboration security exp...
 
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...[Cisco Connect 2018 - Vietnam] Rajinder singh   cisco sd-wan-next generation ...
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
 
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For YouCisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
Cisco Connect Vancouver 2017 - Cisco Meraki -Let Simple Work For You
 
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
 
Cisco connect winnipeg 2018 simply powerful networking with meraki
Cisco connect winnipeg 2018   simply powerful networking with merakiCisco connect winnipeg 2018   simply powerful networking with meraki
Cisco connect winnipeg 2018 simply powerful networking with meraki
 
Simplifying Cloud Adoption with Cisco
Simplifying Cloud Adoption with CiscoSimplifying Cloud Adoption with Cisco
Simplifying Cloud Adoption with Cisco
 
TechWiseTV Workshop: SD-WAN Security
TechWiseTV Workshop: SD-WAN SecurityTechWiseTV Workshop: SD-WAN Security
TechWiseTV Workshop: SD-WAN Security
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
 
TechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WANTechWiseTV Workshop: Cisco SD-WAN
TechWiseTV Workshop: Cisco SD-WAN
 
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud AdoptionCisco Connect Toronto 2017 - Simplifying Cloud Adoption
Cisco Connect Toronto 2017 - Simplifying Cloud Adoption
 
Meraki Cloud Networking Workshop
Meraki Cloud Networking WorkshopMeraki Cloud Networking Workshop
Meraki Cloud Networking Workshop
 
Understanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN SolutionUnderstanding Cisco Next Generation SD-WAN Solution
Understanding Cisco Next Generation SD-WAN Solution
 

Andere mochten auch

Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
Michelle Holley
 

Andere mochten auch (16)

CONNECT your Brand with GENERATION Z
CONNECT your Brand with GENERATION ZCONNECT your Brand with GENERATION Z
CONNECT your Brand with GENERATION Z
 
WWT Intelligent WAN Presentation
WWT Intelligent WAN PresentationWWT Intelligent WAN Presentation
WWT Intelligent WAN Presentation
 
Cisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven TelemetryCisco Connect Toronto 2017 - Model-driven Telemetry
Cisco Connect Toronto 2017 - Model-driven Telemetry
 
Automate programmable fabric in seconds with an open standards based solution
Automate programmable fabric in seconds with an open standards based solutionAutomate programmable fabric in seconds with an open standards based solution
Automate programmable fabric in seconds with an open standards based solution
 
Gpon Fundamentals
Gpon FundamentalsGpon Fundamentals
Gpon Fundamentals
 
BGP Flowspec (RFC5575) Case study and Discussion
BGP Flowspec (RFC5575) Case study and DiscussionBGP Flowspec (RFC5575) Case study and Discussion
BGP Flowspec (RFC5575) Case study and Discussion
 
Cisco Live! :: Cisco ASR 9000 Architecture :: BRKARC-2003 | Las Vegas 2017
Cisco Live! :: Cisco ASR 9000 Architecture :: BRKARC-2003 | Las Vegas 2017Cisco Live! :: Cisco ASR 9000 Architecture :: BRKARC-2003 | Las Vegas 2017
Cisco Live! :: Cisco ASR 9000 Architecture :: BRKARC-2003 | Las Vegas 2017
 
Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)
Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)
Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)
 
Shift Happens: From Value Destruction to Value Creation
Shift Happens: From Value Destruction to Value CreationShift Happens: From Value Destruction to Value Creation
Shift Happens: From Value Destruction to Value Creation
 
#CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic #CiscoLiveLA 2017 Presentacion de Miro Polakovic
#CiscoLiveLA 2017 Presentacion de Miro Polakovic
 
vCloud NFV - Accelerating deployment of the Telco Cloud (SDN NFV Day ITB 2016)
vCloud NFV - Accelerating deployment of the Telco Cloud (SDN NFV Day ITB 2016)vCloud NFV - Accelerating deployment of the Telco Cloud (SDN NFV Day ITB 2016)
vCloud NFV - Accelerating deployment of the Telco Cloud (SDN NFV Day ITB 2016)
 
5G Network Introduction
5G Network Introduction5G Network Introduction
5G Network Introduction
 
Cisco Live! :: Introduction to Segment Routing :: BRKRST-2124 | Las Vegas 2017
Cisco Live! :: Introduction to Segment Routing :: BRKRST-2124  | Las Vegas 2017Cisco Live! :: Introduction to Segment Routing :: BRKRST-2124  | Las Vegas 2017
Cisco Live! :: Introduction to Segment Routing :: BRKRST-2124 | Las Vegas 2017
 
Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
Software Defined Networking (SDN) / Network Function Virtualization (NFV) bas...
 
Q4 fy17 earnings slides final no guidance
Q4 fy17 earnings slides final no guidanceQ4 fy17 earnings slides final no guidance
Q4 fy17 earnings slides final no guidance
 
Architecture for Mobile Data Offload over Wi-Fi Access Networks
Architecture for Mobile Data Offload over Wi-Fi Access NetworksArchitecture for Mobile Data Offload over Wi-Fi Access Networks
Architecture for Mobile Data Offload over Wi-Fi Access Networks
 

Ähnlich wie Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN

Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01
Boris Rojas
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) Solution
Cisco Russia
 

Ähnlich wie Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN (20)

Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN Technology
 
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation BranchCisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent Branch - Enabling the Next Generation Branch
 
The Hitch-Hikers Guide to Data Centre Virtualization and Workload Consolidation:
The Hitch-Hikers Guide to Data Centre Virtualization and Workload Consolidation:The Hitch-Hikers Guide to Data Centre Virtualization and Workload Consolidation:
The Hitch-Hikers Guide to Data Centre Virtualization and Workload Consolidation:
 
ENSA_Module_8.pptx
ENSA_Module_8.pptxENSA_Module_8.pptx
ENSA_Module_8.pptx
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 
DNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus DayDNA Intelligent WAN Campus Day
DNA Intelligent WAN Campus Day
 
SD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WANSD-WAN 2.0: Building a Better SD-WAN
SD-WAN 2.0: Building a Better SD-WAN
 
Introducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment RoutingIntroducing Application Engineered Routing Powered by Segment Routing
Introducing Application Engineered Routing Powered by Segment Routing
 
BRKCRS-2110.pdf
BRKCRS-2110.pdfBRKCRS-2110.pdf
BRKCRS-2110.pdf
 
Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01Iwan advantage-v2-140330172853-phpapp01
Iwan advantage-v2-140330172853-phpapp01
 
DEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS CloudDEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
DEM14 Extending the Cisco SD-WAN Fabric to the AWS Cloud
 
NFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch servicesNFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch services
 
The Data Center Network Evolution
The Data Center Network EvolutionThe Data Center Network Evolution
The Data Center Network Evolution
 
ďżź Network Innovations Driving Business Transformation
ďżź Network Innovations Driving Business Transformationďżź Network Innovations Driving Business Transformation
ďżź Network Innovations Driving Business Transformation
 
SD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloudSD-WAN for Service Providers - VeloCloud
SD-WAN for Service Providers - VeloCloud
 
Cisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) SolutionCisco Intelligent WAN (IWAN) Solution
Cisco Intelligent WAN (IWAN) Solution
 
Open v ran
Open v ranOpen v ran
Open v ran
 
Application Engineered Routing: Allowing Applications to Program the Network
Application Engineered Routing: Allowing Applications to Program the NetworkApplication Engineered Routing: Allowing Applications to Program the Network
Application Engineered Routing: Allowing Applications to Program the Network
 
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN 2.0: Building a Better SD-WAN, October 2016
 
Решения конвергентного доступа Cisco. Обновление продуктовой линейки коммутат...
Решения конвергентного доступа Cisco. Обновление продуктовой линейки коммутат...Решения конвергентного доступа Cisco. Обновление продуктовой линейки коммутат...
Решения конвергентного доступа Cisco. Обновление продуктовой линейки коммутат...
 

Mehr von Cisco Canada

Mehr von Cisco Canada (20)

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devops
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic fr
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dc
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse locale
 
Cisco Connect Montreal 2018 SecuritĂŠ : SĂŠcuriser votre mobilitĂŠ avec Cisco
Cisco Connect Montreal 2018 SecuritĂŠ : SĂŠcuriser votre mobilitĂŠ avec CiscoCisco Connect Montreal 2018 SecuritĂŠ : SĂŠcuriser votre mobilitĂŠ avec Cisco
Cisco Connect Montreal 2018 SecuritĂŠ : SĂŠcuriser votre mobilitĂŠ avec Cisco
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybrides
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v final
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2
 
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
 
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
Cisco Connect Toronto 2018   an introduction to Cisco kineticCisco Connect Toronto 2018   an introduction to Cisco kinetic
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet Overview
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assurance
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicing
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zero
 
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
 

KĂźrzlich hochgeladen

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
?#DUbAI#??##{{(☎️+971_581248768%)**%*]'#abortion pills for sale in dubai@
 

KĂźrzlich hochgeladen (20)

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
Tech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdfTech Trends Report 2024 Future Today Institute.pdf
Tech Trends Report 2024 Future Today Institute.pdf
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Advantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your BusinessAdvantages of Hiring UIUX Design Service Providers for Your Business
Advantages of Hiring UIUX Design Service Providers for Your Business
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?What Are The Drone Anti-jamming Systems Technology?
What Are The Drone Anti-jamming Systems Technology?
 

Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN

  • 1. Cisco ConfidentialŠ 2016 Cisco and/or its affiliates. All rights reserved. 1 Understanding Cisco’ Next Generation SD-WAN Solution Steven Wood Principal Engineer, SD-WAN & Enterprise Architecture October 12, 2017
  • 2. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 2 Opening Comments • Cisco SDWAN is the name for Cisco’s next generation SDWAN solution. • Cisco SDWAN will have a roadmap for Innovation and for Integration (ISR/ASR/ENCS and IOS-XE) • Cisco IWAN has over 200,000 sites deployed or in deployment • IWAN 2.x support and roadmap will continue as per customer commitments • Cisco is making significant investments in innovation and integration roadmaps
  • 3. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3 Digital Innovations Overwhelming the Branch & the WAN of revenue is generated in the branch 90% MORE THREATS 30% Of advanced threats will target branch offices by 2016 (up from 5%) MORE USERS 80% Of employee and customers are served in branch offices MORE DEVICES 73% Growth in mobile devices from 2014-2018 MORE APPS 20-50% Increase in enterprise bandwidth per year through 2018 IoT devices connected to internet by 2020 30B Annual increase in enterprise bandwidth and video adoption50% Up to Mobile-connected devices by 201910B Of Organizations primarily use public cloud by 201980%
  • 4. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4 The ROI is real Traditional WAN vs Cisco SD-WAN 5X Cloud Performance Cloud Aware architectures and SLA-based traffic steering deliver blazing performance for applications like O365, AWS, SFDC, and more 10X More Bandwidth No capacity restraints. No Choke points. Instantly add bandwidth anytime, anywhere based on application requirements 50% Lower Cost Reduced CapEx & OpEx. Simplified Management. Rapid troubleshooting Circuit Costs Time to enable New services Bandwidth Security & Compliance Change Control
  • 5. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 5 Cloud-first management with flexible deployment options Accelerate key SD-WAN use cases; Cloud-edge and Segmentation Sophisticated, but still simple to deploy and operate Complements Cisco’s Enterprise Networks architecture strategy Why Viptela? Cisco Digital Network Architecture
  • 6. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6 Better Together: Providing Better Outcomes Leading Routing & SD-WAN Platforms Goal: Building next generation SD-WAN solutions Together, helping businesses and IT to innovate faster, securing and delivering better customer outcomes, while reducing costs and lowering risk Cloud-managed & Feature-rich SD-WAN
  • 7. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7 Accelerating SD-WAN Vision and Strategy Secure VPN Overlay, Any Transport, Bandwidth Efficiency, Application SLA Secure, Simple, Centralized Policy Automation, Optimization, Security, E2E Policies Cloud Migration, Cloud Delivery, Analytics, SDN Architecture vRouter, vService and NFV Enterprise Fabric INTELLIGENT VIRTUALIZATION AUTOMATION CLOUD INTEGRATION SERVICE VIRTUALIZATION DNA Next Generation Cisco SDWANIWAN SD-WAN
  • 8. Cisco Confidential 8Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco SD-WAN: Architecture & Use Cases
  • 9. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9 Cisco SD-WAN Solution with Viptela APPLICATION POLICIES SERVICES DELIVERY PLATFORM TRANSPORT INDEPENDENT FABRIC Broadband CellularMPLS ZERO TOUCH ZERO TRUST QoSSecurity Segmentation Svc Insertion SurvivabilityRouting Multicast Per-Segment Topologies Cloud Path Application SLA Secure Perimeter Traffic Engineering Transport Hub Cloud Accel Analytics Monitoring Operations
  • 10. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 10 APPLICATIONS SDWAN Cloud IoT .… Enterprise Fabric SD-WAN Fabric – Networking for the Cloud Era Enabling the Digital Transformation USERS DC IaaS SaaS vDC Analytics SECURE SCALE OPEN Cloud Delivered DEVICES THINGS
  • 11. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11 Cisco SD-WAN with Viptela: Solution Overview Data Center Campus Branch Home Office Control Plane (Containers or VMs) Data Plane (Physical or Virtual) Management Plane (Multi-tenant or Dedicated) Orchestration Plane vManage vSmart vBond vEdge vOrchestrator API 4GINTERNET MPLS CONTROL ANALYTICSORCHESTRATION MANAGEMENT
  • 12. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12 Critical Applications SLA Bandwidth Oversubscription Path Brownout Application- aware Topologies All Links Failure Corporate Data Center Small Office Home Office Cloud Data Center Single Link Failure Cloud Applications Latency Path MTU Changes CPE Device Failure 4G/LTE Internet MPLS BranchCampus
  • 13. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13 Application Recognition Deep Packet Inspection Engine Primary Use Cases: - Application visibility - Application Firewall - Traffic prioritization - Transport selection vEdge Router App 1 App 2 App 3,000 Cloud Data Center Data Center Campus Branch Small Office Home Office MPLS INET 3G/4G
  • 14. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14 Secure Segmentation Ingress vEdge VPN 3 VPN 1 VPN 2 SD-WAN IPSec Tunnel 20 IP 8 UDP 36 ESP 4 VPN … Data Egress vEdge Interface VLAN • Segment connectivity across fabric w/o reliance on underlay transport • vEdge routers maintain per-VPN routing table • Labels are used to identify VPN for destination route lookup • Interfaces and sub-interfaces (802.1Q tags) are mapped into VPNs VPN1 VPN2 Interface VLAN VPN1 VPN2
  • 15. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15 Arbitrary VPN Topologies VPN1 VPN2 VPN3 VPN4 • Each VPN can have it’s own topology • VPN topology can be influenced by leveraging control policies - Filtering TLOCs or modifying next- hop TLOC attribute for routes • Applications can benefit from shortest path, e.g. voice takes full- mesh topology • Security compliance can benefit from controlled connectivity topology, e.g. PCI data takes hub-and-spoke topology Full-Mesh Hub-and-Spoke Partial Mesh Point-to-Point
  • 16. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16 Cloud Ready WAN IaaS SaaS Data Center Small Office Home Office Data Center Campus Small Office Home Office Branch Cloud Data Center Secure SD-WAN Fabric CampusBranch Cloud Applications Secure SD-WAN Fabric
  • 17. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17 Enabling optimal Cloud OnRamp ESSENTIALS Cloud-ready WAN Optimal exit points and access Pervasive security Direct Internet Access ExpressRoute Access CNF 3 Regional Internet Access Internet Exchange 2 Branch 1 2 3 Direct Internet Access (DIA) for optimal user experience Supported by regional Internet access ExpressRoute peering with Microsoft Azure 1 Secure SD-WAN Fabric
  • 18. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 18 Cloud onRamp for SaaS – Internet DIA Regional Data Center Remote Site ISP2 ISP1 SD-WAN Fabric Loss/ Latency ! Data Center Quality Probing (HTTP ping) • Remote site path-quality probing for selected SaaS applications across each DIA exit - Simulates client connection using HTTP ping • Results are quantified as vQoE score (combination of loss and latency) • DIA exit with better vQoE score is chosen to carry the traffic for the selected SaaS application
  • 19. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19 Cloud onRamp for IaaS – Gateway VPC/VNET Remote Site SD-WAN Fabric Branch Campus Cloud Data Center Host VPCs/VNETs Gateway VPC/VNET • A pair of vEdge routers is instantiated in Amazon VPC or Microsoft Azure VNET - Gateway VPC/VNET • A pair of standard-based IPSec tunnels is stretched from gateway VPC/VNET to each host VPCs/VNETs - Connectivity redundancy • BGP is established across IPSec tunnels for route advertisement - Bi-directional BGP/OMP redistribution on the gateway VPC/VNET vEdge routers • Entire process is automated through vManage workflow Standard IPSec BGPBGP BGP
  • 20. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 20 Service Insertion – Single or Multiple Data Center Remote Office • vEdge router with connected L4-L7 service makes advertisement - Service route OMP address family - Service VPN label • Service is advertised in specific VPN • Service can be L3 routed or L2 bridged • Service can be singly or dually connected (Firewall trust zones) to the advertising vEdge • Control or data policies are used to insert the service node into the matching traffic forwarding path - Match on 6-tuple or DPI signature - Applied on ingress/egress vEdge Regional Hub MPLS INET 4G Service Advertisement Policy Advertisement*vSmart * For data policy only. Control policy enforced on vSmart. VPN1 VPN1 VPN1 Traffic Path Control Plane FW
  • 21. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 21 Replicators Sender vSmart Controllers Multicast Stream SD-WAN Fabric RP Control Plane Branch BranchReceiver Receiver Data Center Multicast Traffic IGMP/PIM IGMP/PIM OMP Update OMP Update OMP Update OMP Update  vEdges interoperate with IGMP v1/v2 and PIM on the service side  vEdges advertise receiver multicast groups using OMP  Replicators advertise themselves using OMP  vEdge cannot be RP. Router is required. - If running SSM, RP is not needed  Replicators replicate multicast stream to receivers as learnt through OMP
  • 22. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 22 Zero Touch Provisioning – vEdge Appliance Control and Policy Elements Full Registration and Configuration vEdge 5 * Factory default configured Assumption:  DHCP on Transport Side (WAN)  DNS to resolve ZTP server name*  Delivered as-a-Service 3 4 Zero Touch Provisioning Server 1 2
  • 23. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 23 Simplified Management REST NETCONF Syslog Flow ExportSNMP CLI Linux Shell Power Tools Single Pane Of Glass Rich Analytics & Monitoring
  • 24. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 24 vAnalytics Dashboard
  • 25. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25 vAnalytics Main Characteristics Application/Flow Centric • Based on DPI and cflowd • Bandwidth Usage - Top sources, destinations, apps - Per-Site basis • Application Performance • Application to tunnel binding and performance information • Anomaly Detection - Baseline of application usage - Anomaly detection based on overall application usage (by application family, by site) Network Centric • Site Availability • Network Availability • Site Usage Analysis - Top sites by bandwidth consumption - Historical bandwidth consumption • Carrier Performance - App-Route stats on a per-carrier basis - Carriers health ranking
  • 26. Cisco Confidential 27Š 2016 Cisco and/or its affiliates. All rights reserved. Integration Plans
  • 27. Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Viptela Integration Plan Phase 2 Platform Integration Phase 1 No Integration Phase 3 Management Integration Platform: • As-is Management: • vManage Platform: • vEdge capabilities integrated into all IOS-XE platforms (ISR, CSR, ENCS, ASR1K) Management: • vManage for SD-WAN capabilities on IOS-XE Management: • Cloud hosted DNA Center integrates vManage capabilities • Full DNA Center capabilities (Assurance, Integrated workflows for SD-Access and SD-WAN) Support current Viptela customers Viptela SD-WAN on strategic ISR platform Deliver end-to-end experience with full DNA integration DeploymentScenariosBenefitsDetails vEdge ISR4K + vEdge SW DNA Center + SD-WAN ISR4K + vEdge SW vManage vEdge vManage vEdge
  • 28. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 30 Integration Roadmap - Prioritization Guidelines 1 All existing Viptela features must be supported 2 Workflow sanctity must be preserved 3 Platforms meet performance & scale expectations 4 Security (Embedded & Cloud) 5 Services (UC & WAAS) 6 Brownfield support 7 Advanced IOS capabilities (QoS, BGP etc)
  • 29. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 31 High-level Feature Integration Plan Existing IOSXE CapabilitiesExisting Viptela Capabilities  Day 0, Workflows (User Configuration, System setup, Segmentation Setup)  Day 1, Control phase setup, ZTP, Templates), Segmentation, DC routing, Topologies  Day N, Application Policy, Qos, DIA, Cloud Express, Monitoring & Troubleshooting, Upgrade Options Platform & Interfaces: ASR1K, CSR, ISR4K, T1/E1, FSX/FXO etc Security & Services: ZBF, Umbrella, Waas, UC, etc Advanced Capabilities: QoS, BGP etc.
  • 30. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 32 SD-WAN Fabric Integration with DNA APPs SDWAN Cloud IoT .… SDWAN Fabric USERS DC IaaS SaaS vDC Analytics SECURE SCALE OPEN Cloud Delivered DEVICES THINGS SDA Fabric (branch & campus) SDA Fabric (branch & campus) DC ACI Fabric • User / Device Identity, network-wide • Policy abstraction at User / Group and Application levels • Policy at Fabric Edge. Over-the-top. • Increased Simplicity. Seamless Mobility. End-to-end Context
  • 31. Cisco Confidential 33Š 2016 Cisco and/or its affiliates. All rights reserved. What should I do?
  • 32. Š 2016 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 34 Where are you in the SD-WAN journey ? New SDWAN customers Customers with Viptela vEdge or in process of deployment Customers deployed IWAN or in process of deployment Full breadth of solutions: Cisco SDWAN or Meraki Cisco will support Viptela & vEdge hardware Continued support for IWAN
  • 33. Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Choosing the Appropriate SD-WAN Solution Discovery, Insights and Relevancy Triggers • Cloud and OnRamp • More than two active transports or active LTE • Comprehensive WAN connectivity & services • Complex topologies • Custom policies at scale • Advanced routing & segmentation • Native dynamic cloud application acceleration Advanced SD-WAN • Hybrid WAN • L3 overlay for hub-spoke deployments • Dynamic path selection • Cloud-managed • Zero touch deployment with templates and easy to use dashboard SD-WAN Common • Single pane-of-glass management for full stack infrastructure across the branch • Existing Meraki customers evaluating SD-WAN • Competitive pricing pressure • Integrated branch security and network connectivity solution Single Dashboard
  • 34. Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential vManage Cisco SD-WAN Day 1 Deployment Scenarios ISR TI / E! / DSL DeploymentScenarios vEdge ISR Providing Services vManage vEdge Ethernet ISR vManage ISR TI / E! / DSL vEdge ISR Providing T1/E1/DSL Connectivity vManage ISR TI / E1 / DSL vEdge WaaS UC Thin Branch vManage vEdge Ethernet Available Bundles
  • 35. Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential • I’ve started my IWAN deployment and it meets my Use Case needs - Continue deployment - Invest in strategic platforms: ISR4K/ASR1K/ENCS - Software migration to NextGen when it is needed • I’m considering an SD-WAN deployment. I need advanced use cases: - Automated Segmentation, Cloud - Consider NextGen Deployment - Invest in strategic platforms: ISR4K/ASR1K/ENCS; Available vEdge Bundles What should I do?
  • 36. Š 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential • Cisco SDWAN is the name for Cisco’s next generation SDWAN solution. • Cisco SDWAN has a roadmap for Innovation and for Integration (ISR/ASR/ENCS and IOS-XE) • Cisco IWAN has of 200,000 sites deployed or in deployment • IWAN 2.x support and roadmap will continue as per customer commitments • Cisco is making significant investments in innovation and integration roadmaps Key Takeaways