Riverbed SD-WAN: Ricky Lin, CCIE#7469, MBA Deputy CTO
Riverbed SD-WAN: Ricky Lin, CCIE#7469, MBA Deputy CTO
1 Why SD-WAN
2 SteelConnect Overview
3 2016 Direction
2014
© 2016 Riverbed Technology. All rights reserved. 3
Global Ops Data Center SaaS IaaS
Carrier Neutral
Facilities
2016+
© 2016 Riverbed Technology. All rights reserved. 4
Application delivery is becoming complex
The edge is becoming The faster pace of
Application diversity on
a hub of changes drives IT
a stretched perimeter
communication operations to evolve
Local
Branch Faster user
Applications behavior
Data Center
changes Non-scalable
to Branch
Applications SaaS change
to Branch implementation
Applications
based on
Faster business legacy
driven changes concepts
Source: ESG 2015. ROBO TRENDS
SURVEY
Cost Agility
“SD-WAN is a new and transformational way
to architect, deploy and operate corporate
Business
WANs, as it provides a dramatically
Performance
simplified way of deploying and managing
remote branch office connectivity in a cost-
Simplicity Reliability effective manner.”1
7 © 2015
2016 Riverbed Technology. All rights reserved. 7
Agenda
1 Why SD-WAN
2 SteelConnect Overview
3 2016 Direction
SD-WAN
SD-WAN Gateway
Gateways
• Local Policy Enforcement
Remote & Branch Offices Campus Sites Data Centers Regional Hubs • WAN Path Selection, Network QoS, Firewall, Service Chaining
• Telemetry feedback loop to/from SD-WAN Controller
OcedoConnect
Cloud Based
Solutions (HW/SW/SaaS) for automated configuration • “Network Management
and management of Branch networks and WANs Configuration (multitenant, SaaS)
Automated”
3 year old startup focused on SD-WAN and • One centrally
remote/branch office SD-LAN Gateways – G50,
assigned policy G100, V-GW
for WAN and
Founded by team that created Astaro Branch network
(Universal Threat Management (UTM) acquired by Sophos) Ethernet Switch – S24
• Zero touch (w/POE for voice)
Revenue products & cloud services since Q2/2015 provisioning
Project Description
Customer is one of the largest Contract Mining Company’s in Africa with established support networks in Africa, Australia and
Europe. It is a mixed MPLS/Internet infrastructure across 20 branches. Step by step they want to get rid of their entire Cisco
infrastructure.
Gear:
● 3x G100
● 12x G50w
● 3x AP3
● 2x AP5
Effort:
● Few hours from time to time, because of step-by-step order and deployment
Status February 2016: More than half of the sites are up and running with Ocedo GWs, ordering step by step is going on
Gear:
● 9x G50w
● 5x AP5r & nx AP3
● nx S12
Effort:
● 1 day configuration
● Max few hours for each office replacing the infrastructure
Project Description
The customer is one of the leading manufacturers of LED-based illumination technology and light systems. They have offices
and production branches in 40 countries all over the world, HQ is in Germany. All offices have MPLS connection, mostly
used for Citrix, but the bandwidth was often too small and the branches demanded local internet breakout. It was almost
decided to have Citrix CloudBridge VirtualWAN devices installed in all locations, but the partner brought Ocedo into the
game.
Gear:
● 36x G50W, 20x AP3, 2x G100
Effort:
● ½ day for demoing the functionality and convince customer
● ½ day per location to replace and configure G50-onsite
1 Why SD-WAN
2 SteelConnect Overview
3 2016 Direction
Simple to Use
SteelHead
Integrated Visibility
SteelCentral
`
Internet WAN Overlay with Hybrid SD-WAN Overlay with Enterprise-class SD-WAN Extensible service options
Use Case Branch Network automation Dynamic routing for large-scale deployments for converged branches
SDI-130 & 330 up to 200Mbps, SDI-1030, up to 1Gbps, 1000 SDI-2030, up to 1Gbps, SDI-2030, up to 1Gbps,
Branch Gateways
200 sites sites 2000 sites 5000 sites
SDI-VGM, up to 2.5 Gbps SDI-VGM, up to 2.5 Gbps SDI-5030 10Gbps+ with SDI-5030 10Gbps+ with
Data Center Gateways
clustering clustering
L2 & L3 Intra-zone Mesh and L2 & L3 Intra-zone Mesh and Deterministic path selection DPS
Supported Topologies
Hub & Spoke Hub & Spoke (DPS)
Embedded SteelOS with Embedded SteelOS, Dynamic SteelOS, HA via cluster w/ SteelOS, Tighter
Primary SD-WAN services: routing (BGP, OSPF), VRRP, Load Balancing in DC, Path integration with
Static Routing, DPI, QoS, Path Path Quality, VPN+, Auto Quality++, optimized cloud- SteelHead, WAN-Opt as a
Services Selection, integrated Security, Topology, SteelHead WAN- based security – Zscaler,
rd
service, Integrated 3 party
VPNs Opt integration, Steel/Netflow SteelCentral++ service chain
IT leader
SD-WAN
Controller
Global network service abstractions
Software Software
SteelOS
9.1 9.2 XX70
RiOS Hybrid Networking Hybrid Networking scale and SteelOS migration with base
WAN optimization additional enhancements SD-WAN services / Hybrid
Networking
Controlled by SCC
WAN optimization
Router
Incumbents
WAN SDWAN
specialists pureplays
Excellence