bb2370 nielsen cloud network innovations-final
DESCRIPTION
TRANSCRIPT
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Transforming Delivery of Applications to UsersBB2370Mike Nielsen, HP Networking
HP FlexNetwork Architecture Cloud Innovations
Promise of the Cloud for Business
Simplifymanagement
Deploy appsin minutes
3 monthsTo deploy a new application from data center to user
Over
70%Of downtime is caused by CLI misconfiguration
Over
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
4 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Cloud Application Delivery Expectations
50%Workloads will be virtualized by the end of 2012
PRIVATE, PUBLIC AND INDEPENDENT CLOUDS
Over
1%Of smartphones consume 50% of mobile data
DYNAMIC AND MOBILE SERVICE CONSUMPTION
Just
3 monthsTo deploy a new application from data center to user
COMPLEXITY OF THE INFRASTRUCTURE
Over
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
5 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Legacy Networks Slow Application DeploymentSystem Admin
Time in Months
Are you ready yet?
Which server?
Which
VLAN?
Which subnets?
How muchbandwidth?
QoSPriority?
QoSMethod?
Rack 3Server
5
VLAN 10
Subnet.16.31
10M CIR
20M PIR
Priority4 IP TOS
Ok, starting switch config
Deploying Exchange
VMs… ready!
…250,000+ CLI entries for typical data center
Network Admin
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
6 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Legacy Networks Can’t Meet Cloud Expectations
Impossible to identify applications and meet diverse service levels
ApplicationIndifferent
Architected for one tenant, user type and location - lacking programmability
Rigid PhysicalNetworks
Slow to respond to new application requirements and hampered by manual errors
ManualManagement
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
7 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Focus less on managing infrastructure…
…and more on connecting users to applications
HP Virtual Application Networks
HP’s Vision for Software Defined Networks
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
8 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Separate Logical from Physical Management, Making the Network Programmable
Virtual Application Networks
FlexManagement
FlexNetwork Architecture
FlexFabric FlexBranchFlexCampus
End-to-End Control Plane
CoreRouting Access CoreRouting Access Routing Switching Wireless
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
9 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Tunes the Virtual Network for Application Delivery Requirements
Create Virtual Networks for Specific Applications
FlexManagement
FlexNetwork Architecture
End-to-End Control Plane
Virtual Application NetworkVirtual Application NetworkVirtual Application NetworkVirtual Application Network
FlexFabric FlexBranchFlexCampus
CoreRouting Access CoreRouting Access Routing Switching Wireless
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
10 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
New Operating Model Delivers Agility Needed for Cloud
Deploy Virtual Application Networks
Server CPUs
VM VM VM VM
Hypervisor
FlexManagement
FlexNetwork Architecture
End-to-End Control Plane
Virtual Application NetworkVirtual Application NetworkVirtual Application NetworkVirtual Application Network
FlexFabric FlexBranchFlexCampus
CoreRouting Access CoreRouting Access Routing Switching Wireless
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
11 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtual Application Networks Deliver
Create consistency, reliability and repeatability across the entire network infrastructure
ApplicationCharacterization
Create multitenant, on-demand, topology and device-independent provisioning
NetworkVirtualization
Use templates to ensure user service level and policy for dynamic application delivery
Automated Orchestration
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
12 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtual Application Networks in Action
Deploy new applications in minutes in the data center
Rapidly onboard users and their devices
Securely interconnect Virtual Application Networks
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
14 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtual Application Network Manager Module
Delivering Virtual Application Networks Today
• Characterize app using
template
• Program virtual network
resources
• Orchestrate network resources
Hypervisor Management
Intelligent Management Center
VANplug-in
VAN Policy Engine
VANAPI
HPN Access Switch
HPN Data Center
FabricHPN Core
SwitchHPN Core
Router
VM
VM
VM
vSwitchManager
Server
NIC
vS
wit
ch/H
P o
pen
vS
wit
ch
VAN Manager Components
IMC Enterprise/Standard Components
VAN Access
Switch SW
VAN Designe
r
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
15 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtual Application Networks Deploy Apps in MinutesSystem Admin
Network Admin
Deploying Exchange
VMs
Application deployedin 3 steps
CharacterizeIMC VAN
Manager
Orchestrate
VMs
IMC VAN
Manager
Minutes
Wow! That was
fast!… ready!
Virtualizing
Virtualize
Plug-in
vCenter
Build profile with template
Choose connectio
nprofile
Power on virtual
machines
1
2
3
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
16 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtual Application Network ComponentsKey Components
Existing IMC function used to set/monitor virtual switch features in the virtual machine manager
vSwitchManager
Rapid provisioning and error-free configuration to manage the connection between VMs and the required physical and virtual network policies
VAN Policy Engine
Repeatability to design connections based on virtual machine and application requirements, including QoS policies, ACLs, and virtual network configuration details
VAN Designer
Hypervisor integration (currently VMware) enabling system administrators to map connection types to virtual machines
VANPlug in
VANAPI
Assured interoperability with Cloud orchestration through RESTful APIs, enabling external access to VAN functions from cloud and network orchestration frameworks
Virtual Switch which communicates with vSwitch Manager and VAN plug-in to coordinate policy enforcement
vSwitch/HP open vSwitch
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
17 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
HP IMC and F5 Management Integration
HP Intelligent Management Center
• CharacterizeInstantly identify all converged infrastructure requirements
• VirtualizeVirtualize application, network, and server resources
• OrchestrateRapidly deploy application, network, and system configurations
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
18 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Deploying Applications in MinutesSystem Admin
Network Admin
Deploying Exchange
VMs
Application deployedin 3 steps
Characterize
IMC VAN Manager
w/ F5 iApp
Orchestrate
VMs
IMC VAN
Manager
Minutes
Wow! That was
fast!… ready!
Virtualizing
Virtualize
Plug-in
vCenter
Build profile
Select iApp
Choose connectio
nprofile
Power on virtual
machines
1
2
3
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
19 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Challenges of BYOD on Legacy Networks
• Device-dependentLegacy architectures rely on company-issued devices to deliver secure access to applications
• Inconsistent management Separate management for wired and wireless devices are disaggregated, have separate policies
• Separate management for devices, applicationsLack of visibility into user behaviors, access, and usage
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
20 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
User, Network, Security and Application Policy Management with
BYOD
Virtual Application Networks in the Campus
• Secure network access for user-owned devices• Highly secure client control• Self registration for client-owned
• Unified wired and wireless management• Consistent Device policy management• Network policy mapped to user profiles
• Unified monitoring and application access• User and traffic analysis• Application access control
Monitoring
Provisioning
On-boarding
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
21 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Orchestrating User-to-Network-to-Application
BYOD Solution Architecture
Authentication
Device Agnostic
Network Agnostic
User Security Check
Employee Guest
Time Aware
LocationAware
Authorization Audit
Traffic Monitoring
UserBehavior
UserSelf-Service
Monitoring Provisioning
Policy enforcement based on level of trust
Traffic and User Behavior Analysis
User registrationDevice profiling
Onboarding
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
22 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Challenges of Legacy Hub & Spoke WAN Connectivity
• ComplexEncryption configuration is manually intensive & error-prone
• VulnerableCarrier service offerings limit flexibility & security
• ConstrainedLegacy architectures limit performance of rich media applications (e.g., video conferencing)
Campus
BranchBranch
DataCenter
BranchBranch
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
23 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
“Zero-touch” deployment of routers across the enterprise with DVPN
Virtual Application Networks in the Branch
Campus
BranchBranch
Internet
IMC-BIMSSecu
re D
ata
Tunnel
Secure Data Tunnel
Secu
re D
ata
Tunnel
• Simple• Automated zero-touch deployment with IMC• Reduces configuration steps
• Secure• Standards-based IPsec• Flexible support for any WAN technology &
Internet
• Scalable• Site-to-site performance for rich media • Scales to over 30,000 sites
93% reduction in configuration
steps
900% more scalable
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
24 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Hub(primary)
Hub(secondary)
AAA Server
VAM Server (primary)
HQ
VAM Server (secondary)
Spoke
Branch
IP Network
Server Public IP Address (static)Client Public IP
Address (manually configured
or dynamically assigned)
Client Private IP Address
(statically configured)
Tunnel
Tu
nn
elDVPN configured
on single tunnel interface
Virtualizing the WAN and connecting Virtual App Networks
DVPN Solution Architecture
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
25 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Virtualizing the WAN and connecting Virtual App NetworksDVPN Solution Architecture
BranchBranch
Internet
Secu
re D
ata
Tunnel
Secure Data Tunnel
Secu
re D
ata
Tunnel
AAA Server
VAM Server (primary)
VAM Server (secondary)
(primary)(secondary)
Hub
Employs client/server model• Supports up to 10 DVPN domains
per router
• Supports 2 tunnel encapsulations: UDP and GRE
• Each client registers mapping of its private and public IP addresses with server using DVPN control protocol (VAM)
• Managed under IMC w/IVM and BIMS
• Interoperable with standard IPsec
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
26 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Delivering New Applications in Minutes versus WeeksEnable Cloud with Virtual Application Networks
Tune network to the application delivery requirements
Virtualize the network end-to-end, from application to user
Enable IT to manage the network with policies rather than CLI, scripts
Single pane-of-glass management for the physical and virtual network
Ensure choice with open, standards-based approach
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
27 © Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Tools to Help Our Clients
• Learn about Virtual Application Networks
• Download a copy of Virtual Application Networks Whitepaper
• Read about the FlexNetwork Architecture
• Get the analyst perspective from ESG on Virtual Application Networks
• Learn more about Dynamic VPN
• Understand HP’s BYOD strategy
• Load the trial license of the Intelligent Management Center
© Copyright 2012 Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice.
Thank you