vmware sd-wan by velocloud...confidential ©2019 vmware, inc. 2 - leader gartner mq for wan edge...
TRANSCRIPT
Confidential │ ©2019 VMware, Inc. 1
VMware SD-WAN by VeloCloud The Cloud is the Network
July 2019
VMware Inc.
Confidential │ ©2019 VMware, Inc. 2
- Leader Gartner MQ for WAN Edge Infrastructure
- #1 SD-WAN Market Share (IHS Markit); almost equal to #2 and #3 combined
- 5,500+ Customers
- 150,000 Sites Under Contract
- 85+ Service Provider Partners Globally
- 500+ Channel Partners
- SD-WAN is highest growth sector in networking today. Expected to grow to $35 billion by 2025
VMware SD-WAN by VeloCloud – Market Leader(Information – Only Under NDA)
Confidential │ ©2019 VMware, Inc. 3
Ensuring a quality user experience is more difficult than ever beforeTraditional networking approaches are inefficient and costly in a cloud-based landscape
4G
Construction site
Internet
HUB Legacy datacenter
HQModern datacenter
Isolated and unmanaged sitesIntensive CLI provisioning
CLI
CLI
CLI
MPLS
Backhauled traffic across expensive MPLS links
No vis ibility
IaaS/SaaS
Branch offices
Confidential │ ©2019 VMware, Inc. 4
VMware SD-WAN Use CasesWhy SD-WAN?
Cost Saving
• Direct cost saving: transport cost reduction
• Indirect cost saving: simplified operation, management, deployment
Increase Uptime
• Sub-second protection from brownout and blackout
• Deliver app performance over any transport
Cloud adoption
• Granular per-app policy control for direct Internet breakout
Automation & Agility
• Centralized policy
• API/SDK for automation
• Zero touch provisioning
Confidential │ ©2019 VMware, Inc. 5
VMware SD-WAN “As-a-Service” Architecture
Internet
Edge:Appliance or Virtual
SD-WAN Gateways with Embedded Controller
Public Internet
Legacy EnterpriseData Center
Edge ClusterProvider
EdgeProvider
Edge
SaaS
PrivateCircuit
SD-WAN Orchestrator
PrivateMPLS
Hybrid Data Centers:Enterprise or Cloud
1
2
3
2
Confidential │ ©2019 VMware, Inc. 6
VMware SD-WAN Cloud Service Coverage
Gateways Locations Customer Edge Locations
▪ Proximate to major SaaS apps with 99.99% Availability SLA
▪ 30 PoPs
▪ ~1000 Gateways
▪ 65+ Orchestrators
▪ 100,000+ active branch locations
▪ Largest single deployment: 5,000+ branches active
▪ Remediated
▪ 6,000+ blackout conditions
▪ 228,000+ link degradations
Confidential │ ©2019 VMware, Inc. 7
Assured application performance over any type of link
VMware SD-WAN Dynamic Multi-Path Optimization (DMPO)
Continuous Link Monitoring
• Drives automation and optimization
Dynamic Per Packet Steering
• Sub-second steering without
session drops
• Aggregated bandwidth for single
flows
On Demand Remediation
• Protects against concurrent
degradation
• Enables single link
performance
•Excellent voice quality!
Confidential │ ©2019 VMware, Inc. 8
Distributed Services Insertion
On Premises SecurityCorporate / Regional
Cloud Security Service
VMware SD-WAN by VeloCloud Dynamic Multipath Optimization delivers application performance and reliability to cloud
Automated tunneling eliminates site by site configurations
Single-click Application-Aware Policiesfor granular service insertion
Branch Site
VMware SD-WANEdge Hub
VMware SD-WANGateway by VeloCloud
Internet / web
Virtual Branch Services
VMware SD-WANEdge by VeloCloud
Dynamic Multi-Path Optimization
Datacenter
Confidential │ ©2019 VMware, Inc. 9Confidential │ ©2019 VMware, Inc.
Extending VMware SD-WAN to Azure
Confidential │ ©2019 VMware, Inc. 10
Traditional Branch to Azure Connectivity Options
MPLS
Express Route
Legacy datacenterN Branch offices
N Branch offices
N x M Manual IPSEC Tunnel
Long Deployment Times
M Azure VNETs
Azure VNET
Internet
IPSec
Internet
Confidential │ ©2019 VMware, Inc. 11
VMware SD-WAN On-Ramp to Azure
MPLS
Express Route
Legacy datacenterN Branch offices
N Branch offices
Point-2-Point
Eliminate N x M Manual IPSEC Tunnel
Leverage Internet & Reduce Rollout to Days
M Azure VNETs
Azure VNET
Internet
IPSec
Internet
SD-WAN
SD-WAN
Confidential │ ©2019 VMware, Inc. 12
VMware SD-WAN to Azure Deployment Options
On-Ramp via SD-WAN Cloud Gateways• Support multiple Internet Links• Reduce Management Cycles• Extend SD-WAN to IaaS Door Step
On-Ramp via SD-WAN virtual Edge• Support Hybrid Connection• Enable End to End SD-WAN• Launch Virtual Edge from Marketplace
Virtual Edges
VMware SD-WAN Cloud Gateways
IPSec
Internet
MPLS
VMware SD-WAN Edge
VMware SD-WAN EdgeVMware SD-WAN
Virtual Edge
SD-WAN
SD-WAN
Virtual Network
Virtual Network
Confidential │ ©2019 VMware, Inc. 13
VMware SD-WAN + Azure virtual WANSimplify deployment with automation
VMware SD-WAN Edge VMware SD-WAN
Cloud Gateway
IPSecSD-WAN
Azure Virtual Hub
Azure Virtual WAN▪ High scale and throughput VPN headend▪ Low latency, optimal routing within Azure▪ Single connection to reach multiple Azure workload
Integration with VMware SD-WAN▪ Simplified and aggregated secure connectivity vs N
(branch)x M (IaaS DC) manual tunnel config▪ Optimized last mile access vs best effort
Confidential │ ©2019 VMware, Inc. 14
API Integration
Azure Virtual WAN + VMware SD-WAN
VMware SD-WAN Gateways
IPsecSD-WAN Overlay
AzureVirtual WAN
Hub
Branch Subnet 192.168.1.0/24
API Authentication
Create VPN Site in Azure virtual WAN
Download VPN Configuration File
Synchronize VPN Configuration
Confidential │ ©2019 VMware, Inc. 15
Azure virtual WAN simple steps on Orchestrator
Add Azure subscription to VCO (once per account)
1
2
Configure Azure vHub as "Non-Velo Site" (shared by multiple sites)
3
Assign to profile, tunnel will automatically initiate from VCG and shared by sites associated to Profile
Confidential │ ©2019 VMware, Inc. 16Confidential │ ©2019 VMware, Inc.
Optimize traffic to Office 365
Confidential │ ©2019 VMware, Inc. 17
Compliant with Office365 network connectivity principles
Optimized Office Access
• Integrated with Office365 API to automatically update application map
• Extend SD-WAN from Edge to Cloud Gateway• Optional CSS bypass to be compliant with Office365 principles.
Internet
Cloud GatewayBranch Edge
VMware SD-WAN Orchestrator
Microsoft Network
18Confidential │ ©2018 VMware, Inc.
Optimized Office365 PerformanceO365 on a Single Link (Brownout condition) from Branch in Thailand to Gateway in Singapore
VeloCloud
Non-SDWAN
Confidential │ ©2019 VMware, Inc. 19
VMware SD-WAN Differentiators
Key Takeaways
Managed on-Ramp to the Cloud
Assured Application Performance
(DMPO)
Wan Simplicity and Visibility