ENTERPRISE CONNECTIVITY



Similar documents
SCADA. Supervisory Control and Data Acquisition. How to monitor and control your business operation in the most cost-effective way.

SATELLITE MOBILE BACKHAUL: FROM VOICE TO DOMINANT DATA

A TALE OF 3 SATELLITE RETURN TECHNOLOGIES

November Defining the Value of MPLS VPNs

Making the Case for Satellite: Ensuring Business Continuity and Beyond. July 2008

Virtual Privacy vs. Real Security

WHITE PAPER: Broadband Bonding for VoIP & UC Applications. In Brief. mushroomnetworks.com. Applications. Challenge. Solution. Benefits.

APPLICATION NOTE. Benefits of MPLS in the Enterprise Network

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

SingTel MPLS. The Great Multi Protocol Label Switching (MPLS) Migration

Network Performance Optimisation: The Technical Analytics Understood Mike Gold VP Sales, Europe, Russia and Israel Comtech EF Data May 2013

Truffle Broadband Bonding Network Appliance

Virtual Leased Line (VLL) for Enterprise to Branch Office Communications

White Paper: Virtual Leased Line

Cisco Group Encrypted Transport VPN: Tunnel-less VPN Delivering Encryption and Authentication for the WAN

ITC Corporate Connect

Best Effort gets Better with MPLS. Superior network flexibility and resiliency at a lower cost with support for voice, video and future applications

Ethernet Wide Area Networking, Routers or Switches and Making the Right Choice

The Next Generation Network:

MPLS: Key Factors to Consider When Selecting Your MPLS Provider Whitepaper

Colt IP VPN Services Colt Technology Services Group Limited. All rights reserved.

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Implementing VoIP support in a VSAT network based on SoftSwitch integration

Global Headquarters: 5 Speen Street Framingham, MA USA P F

How To Get More Bandwidth From Your Business Network

Edgewater Routers User Guide

Multi Protocol Label Switching (MPLS) is a core networking technology that

Reliable high throughput data connections with low-cost & diverse transport technologies

Site2Site VPN Optimization Solutions

WAN Optimization. Riverbed Steelhead Appliances

Mesh VPN Link Sharing (MVLS) Solutions

Quality of Service Analysis of site to site for IPSec VPNs for realtime multimedia traffic.

High Level Overview of IPSec and MPLS IPVPNs

Advanced VSAT Solutions Bridge Point-to-Multipoint (BPM) Overview

NETWORK ISSUES: COSTS & OPTIONS

WHITEPAPER MPLS: Key Factors to Consider When Selecting Your MPLS Provider

DOMINO Broadband Bonding Network

Preparing Your IP Network for High Definition Video Conferencing

Network Simulation Traffic, Paths and Impairment

ethernet services for multi-site connectivity security, performance, ip transparency

BLACK BOX. EncrypTight

Simwood Carrier Ethernet

Jive Core: Platform, Infrastructure, and Installation

White Paper: Broadband Bonding with Truffle PART I - Single Office Setups

WAN Failover Scenarios Using Digi Wireless WAN Routers

Voice and Data Convergence

MITEL. NetSolutions. Flat Rate MPLS VPN

The term Virtual Private Networks comes with a simple three-letter acronym VPN

Edgewater Routers User Guide

Voice Over IP Performance Assurance

The need for bandwidth management and QoS control when using public or shared networks for disaster relief work

MPLS/IP VPN Services Market Update, United States

Tunnel Routing. Preface. Challenge

WAN Traffic Management with PowerLink Pro100

Multi-protocol Label Switching

The Hybrid Enterprise. Enhance network performance and build your hybrid WAN

Enterprise Network Simulation Using MPLS- BGP

Is Your Network Ready for VoIP? > White Paper

SafeNet Network Encryption Solutions Safenet High-Speed Network Encryptors Combine the Highest Performance With the Easiest Integration and

Demonstrating the high performance and feature richness of the compact MX Series

ABOUT EMC HISTORY EXPERIENCE SERVICES

ICTTEN6172A Design and configure an IP- MPLS network with virtual private network tunnelling

1.264 Lecture 37. Telecom: Enterprise networks, VPN

Voice over IP Networks: Ensuring quality through proactive link management

Values Customer Satisfaction: It is our personal responsibility to satisfy and strive to exceed the expectations of our customers

Newtec. DVB-RCS enables new networking solutions for the broadcast industry. Newtec Productions N.V. Jean-Pierre De Muyt. Group of Companies P 1

The Next Generation of Wide Area Networking

Delivering Dedicated Internet Access (DIA) and IP Services with Converged L2 and L3 Access Device

HughesNet High Availability VPN

How To Use The Cisco Wide Area Application Services (Waas) Network Module

SILVER PEAK ACCELERATION WITH EMC VSPEX PRIVATE CLOUD WITH RECOVERPOINT FOR VMWARE VSPHERE

White Paper. Complementing or Migrating MPLS Networks

Gigabit Multi-Homing VPN Security Router

High Performance VPN Solutions Over Satellite Networks

MPLS VPN basics. E-Guide

the about MPLS security

Solution Brief. Migrating to Next Generation WANs. Secure, Virtualized Solutions with IPSec and MPLS

Applications that Benefit from IPv6

Application Note How To Determine Bandwidth Requirements

Building Trusted VPNs with Multi-VRF

CISCO IOS IP SERVICE LEVEL AGREEMENTS: ASSURE THE DELIVERY OF IP SERVICES AND APPLICATIONS

SSVVP SIP School VVoIP Professional Certification

MikroTik RouterOS Introduction to MPLS. Prague MUM Czech Republic 2009

Managed 4G LTE WAN: Provide Cost-Effective Wireless Broadband Service

Application Performance Management

UNIFIED PERFORMANCE MANAGEMENT

Total solution for your network security. Provide policy-based firewall on scheduled time. Prevent many known DoS and DDoS attack

Networking 4 Voice and Video over IP (VVoIP)

VoIP Virtual Private Networks: Bringing the Benefits of Convergence to the Enterprise

Cisco Integrated Services Routers Performance Overview

Data Networking and Architecture. Delegates should have some basic knowledge of Internet Protocol and Data Networking principles.

Deploying Silver Peak VXOA with EMC Isilon SyncIQ. February

Mind the gap: Top pitfalls to avoid when reaching for the cloud. A whitepaper byfatpipe, the specialist in WAN & Internet Connectivity Optimisation

How Proactive Business Continuity Can Protect and Grow Your Business. A CenturyLink White Paper

How To Make A Vpc More Secure With A Cloud Network Overlay (Network) On A Vlan) On An Openstack Vlan On A Server On A Network On A 2D (Vlan) (Vpn) On Your Vlan

IFB STPD A. Statement of Work FOR CALNET 3, CATEGORY 1 VOICE AND DATA SERVICES ADDENDUM 9 08/22/13 SUBCATEGORY 1.2 MPLS, VPN AND CONVERGED VOIP

Network Services Internet VPN

Juniper Networks Universal Edge: Scaling for the New Network

Figure 1. Traditional PBX system based on TDM (Time Division Multiplexing).

PREPARED FOR ABC CORPORATION

Transcription:

ENTERPRISE CONNECTIVITY IP Services for Business, Governmental & Non-Governmental Organizations The success of today s organizations and enterprises highly depends on reliable and secure connectivity. Enterprise connectivity exists between different branches, between a central office and geographically widespread points of activity and between an enterprise and the public internet. The connectivity enables faster, more secure transactions and improved productivity by sharing information between entities, no matter where they are. s broadband service solutions offer a costeffective broadband connectivity for a wide variety of professional applications on a single platform. www.newtec.eu By offering an extremely cost-effective terminal as part of a scalable network solution, attractive IP services can be deployed complementary to terrestrial infrastructure: As a backup service for the terrestrial network providing business continuity As the main connectivity service in case no adequate terrestrial infrastructure is available providing a way to extend the operation to any location As a highly efficient multicasting data/video service for media-rich collaboration services, video conferencing and financial trading applications Rev.6 08/2015

Applications Applications Corporate applications - ERP - CRM Unified communications - VoIP - Video conferencing - Screen sharing Service Properties Priority Acceleration Encryption High TCP/HTTP Yes High RTP compression Yes SaaS/Cloud applications Medium TCP/HTTP Yes Email Medium TCP/HTTP Yes File sharing Low TCP/HTTP Yes Internet data and video Low TCP/HTTP Yes Data multicasting file distribution Medium No No Typical enterprise applications can be served with different transport IP services. The service properties vary in the need for encryption, the need for acceleration and the sensitivity to latency and jitter. Efficient Carrier Grade Infrastructure s Broadband Solutions are based on the VSAT platform. The platform provides the means to establish an always-on two-way IP connectivity completely independent from existing terrestrial networks. The basic IP connectivity between hub and modem is extended with Quality of Service (QoS) in forward and return allowing the deployment of different services. The gateway contains management functionalities to monitor, configure and control all worldwide remote sites. Bandwidth Efficient Technologies To make satellite an attractive alternative for enterprise connectivity, s Broadband Solution implements the most bandwidth efficient technologies, such as DVB-S2 ACM forward link, with Equalink 3 predistortion and Clean Channel Technology (low roll off) High Resolution Coding ( TM ) TM return link Quaternary Continuous Phase Modulation (4CPM) MF-TDMA return link Embedded IP traffic enhancement The 4CPM modulation combines bandwidth efficiency of linear modulation, as in the DVB-RCS standard, with a lower cost terminal. Hub Redundancy The hub provides internal and interface (RF, IP, power supply) redundancy. The internal redundancy is conceived to allow full hot-standby redundancy without any single point of failure. If there would be a failure, a switch is automatically performed. The redundant hub architecture also minimizes outage during software upgrades. A failure in the RF-path is resolved by switching to the alternative RF interface. Network Optimization s Network Optimization technology offers up to 35% bandwidth reduction for typical applications such as file downloading, web surfing and content streaming. The reduction of traffic in both volume and number of packets is up to 20% in the forward and up to 90% in the return. The bandwidth savings of forward acceleration is today limited since most content is pre-compressed. Bandwidth reduction is mainly achieved through overhead reduction. The gain can also be viewed from the user experience point of view. The load time of a webpage is reduced by up to 60%, while a file download time is reduced by up to 90%. 2

File download Web surfing Streaming File download Web surfing Streaming Speed Enhancement 57m 30s 51s 17s 28m 15s -98% -47% -89% TCP TCP TCP Duration Duration Duration 9s 3m 14s Bandwidth Saving 34,9 34,8 490-97% -96% KB 461 KB 8,4 0,2-5.9% -42% 45 26KB KB 2.4 0.1 TCP TCP TCP TCP TCP TCP 136 136 Forward Return Forward Return Forward Return Offering Business to Business Services Service providers, corporations and organisations are all faced with different security and scalability needs. Some organisations will have high needs for security that they will fully take care of themselves. Others will have enough trust and confidence that they will leverage the services offered by the service provider. On a VSAT platform different network architectures can coexist on the same platform, providing service diversification. Service providers can optimise CAPEX and OPEX by offering enterprise connectivity services for multiple entities in a shared platform. This helps service providers struggling to strike a balance among their biggest business concerns - capacity, scalability, customer satisfaction and cost. Internet Access for SOHO and SME Small offices are typically looking for pure broadband access with main office applications like web surfing, VOIP and email. An architecture where all terminals belong to the same network is ideal to offer internet access services for Small Office and Home Office or Small & Medium Enterprises. In this configuration Dialog terminals consume only one public IPv4 address and IP address management is simple. A DHCP server is integrated in the modem assigning the addresses to the devices connected to the modem. All payload traffic is encrypted and fully accelerated. DVB-S2 CCT RF GATEWAY MF-TDMA 4CPM MF-TDMA 4CPM DIALOG @ SME SME SOHO Figure 1 - Internet access for SOHO and SME 3

Broadband Access for Enterprises Enterprises or larger organisations have typically different needs for their communication infrastructure. First of all they need more public IP addresses in order to connect their own servers to the internet. The Dialog configuration offers full routing capabilities on the modem. Private Networks for Large Enterprises and Organisations A network that connects the numerous sites of a distributed enterprise using a shared communication platform is a Virtual Private Network (VPN). These VPNs provide the benefits of dedicated networks but not the associated cost. Administrators can easily create and modify the Virtual Network (VN) environment. In a VN context, a key requirement is network isolation. This means routing and forwarding tables used by one VN should be able to be isolated from those used by other VNs. The Virtual Routing Function (VRF) creates multiple virtual routers in a Dialog hub to realise multiple VPNs. On top of the network isolation, the Dialog platform offers further security measures such as AES encryption using X.509 digital certificates. Network Isolation Service providers can optimize CAPEX and OPEX by offering enterprise connectivity services for multiple entities in a shared platform. Figure 3 depicts two isolated enterprise networks connecting a headquarters with its branch offices. The hub acts as a router with multiple VRF functions creating fully isolated virtual networks. Service OPEX is reduced because all forward traffic is shared on the same forward link. MPLS Integration Multiprotocol Label Switching (MPLS) is the underlining technology that enables service providers to offer customers high-speed private networks. Service providers can easily integrate their MPLS networks with the Dialog platform. This way, a customer s remote location can be integrated with the rest of their sites to an MPLS backbone. A network in this configuration can eliminate the need for encrypted VPNs and multiple-hops between remote locations and headquarters. This configuration also allows latency sensitive applications such as video conferencing and VoIP to be used between multiple sites. An MPLS Label Edge Router that is connected to the hub can be configured to classify and push MPLS labels onto the packets. This classification can happen either on Source or Destination IP address or 802.1Q VLAN tags coming from the hub. Layer 2 bridging Service providers can offer a layer 2 based service to customers. Using a layer 2 bridging service, customers no longer need to align the configuration between the corporate network and the service provider network layer 3 configuration. All layer 3 traffic and routing is handled fully transparant over the layer 2 bridge. As a result it provides maximal network flexibility and transparancy for the end customer. Additionally, using the layer 2 bridging service providers can deliver new types of high throughput services either as layer 2 or as more advanced layer 3 services supported through a customer premises router. DVB-S2 CCT DVB-S2 CCT RF GATEWAY ENTERPRISE RF GATEWAY MF-TDMA 4CPM DIALOG DIALOG @ PUBLIC MAIL SERVER PUBLIC WEB SERVER LOCAL VLAN PER COMPANY COMPANY B COMPANY A COMPANY A - VPN COMPANY A COMPANY B COMPANY B Figure 2 - Broadband access for enterprises Figure 3 - Private networks for large enterprises and organisations 4

Business Continuity More than ever, enterprises require reliable network connectivity. It is especially important for remote offices that need to access other sites, headquarters and public cloud services where information resources exist. In such cases WAN redundancy is a key requirement for business continuity plans. Satellite networks have the distinct advantage in this setup of being independent of landline infrastructure, which could be affected by accidental cable cuts or natural disasters. Service providers that want to offer a business continuity solution based on satellite connectivity, can do this in a costeffective way. By using a combination of the IP Satellite Modem and technology on the Dialog platform, the following benefits can be seen: - High bandwidth on demand with the highest efficiency - Advanced QoS to support data, VoIP and video applications - Authentication & encryption - Embedded acceleration and compression IPv6 Support The single biggest argument for IPv6 today is business continuity. The public IPv4 networks, which most organisations use today, have nearly run out of unique numbers. Depending on the region you live in, this has already happened. To preserve the capabilities and value that we enjoy today, we have to adopt the new protocol. Migration Scenario Using Dual Stack IPv4/v6 The system supports networks where both IPv4 and IPv6 access is needed. In such cases, an IPv6 network can be merged with an existing IPv4 network to create a single, logical dual-stack IPv4/IPv6 network. Hosts behind a terminal in that dual-stack network can have both IPv4 and IPv6 access. IPv6 Remote Networks With the larger address space inherent to IPv6, addresses within a network can be allocated more effectively in a hierarchical fashion. The IPv6 routing functionality is extended with IPv6 prefix delegation support as a way to centralize and delegate IP address assignment. DVB-S2 CCT RF GATEWAY OFFICE DIALOG SATELLITE WAN TERRESTR. WAN HEADQUARTERS Figure 4 - Support for business continuity 5

Premises Based VPN Solutions In some cases, enterprises want full control over their network security and for example, premises-based VPN solutions, such as IPsec, are deployed end-to-end. IPsec supports key-based authentication and encrypts the complete data packet both data and headers and adds its own header. In doing so it prevents Web and TCP acceleration within the network. The impact on the performance of the network depends on the scenario. Two scenarios are considered: Regional Office Acceleration and compression takes places outside the IPsec VPN tunnel, intercepting and enhancing the unencrypted packets. A NOP1815 PEP-Box gateway can be installed at the remote office. The NOP1815 can set up the IPsec tunnel or, alternatively, this can be left to a separate COTS VPN router. At the headquarters site, a VPN concentrator would terminate the IPsec tunnels. Additionally a NOP1840 PEP Server can perform the acceleration. A regional office: The VPN traffic is considered high, meaning that acceleration of VPN traffic is required in order to reduce bandwidth needs A Point of Sale: The VPN traffic is low volume traffic, cost of the equipment is main driver The result is a secure end-to-end accelerated VPN connecting the headquarter to the regional offices. POS Terminal A low cost VPN router add-on sets up the IPsec tunnel with the headquarters. No TCP acceleration is performed at the virtue of a low cost remote site implementation. SATELLITE VPN VPN TO TCP ACCELERATION AES-128 MDM2500 CUSTOMER PREMISES VPN VPN CONCENTR. NO TCP ACCELERATION COTS SECURITY MDM2500 COTS VPN CUSTOMER PREMISES VPN VPN CONCENTR. NOP1840 PEP SERVER TCP ACCELERATION IPSEC SECURITY MDM2500 NOP1815 VPN/PEP COMPANY HEADQUARTER TELEPORT COMPANY Figure 5 - Premises-Based VPN 6

Matching Terminal Equipment with Remote Application Needs The IP Satellite Modem portfolio is designed to serve a wide range of applications at competitive price points in different markets. Different terminal configurations can be used on the same platform sharing the forward carrier. Management of the modems is done by a single management system. Depending on the application requirements, the amount of users or the geographical location, different capabilities are expected from a terminal. Selecting the right mix of modem types and terminal configurations will minimize the total cost of ownership while fulfilling all requirements. The modems are based on flexible hardware platforms, assuring a long life time for the installed base. Modems can be upgraded over the air when new features are introduced. /2500 IP Satellite Modem IP Satellite Modem # LAN ports 1 4 Max RX/TX Rate TCP 22 Mbps / 5 Mbps 45 Mbps / 20 Mbps Max RX/TX Rate Multicast 80 Mbps / 5 Mbps 80 Mbps / 21 Mbps The /MDM2500 has a compact design with high rate capabilities. 22 Mbps receive and 5 Mbps transmit unicast traffic Adaptive Return Link MF-TDMA - 4CPM Embedded TCP acceleration and encryption Versatile networking, routing and addressing The robust design of the allows flexible integration in the enterprise infrastructure. 45 Mbps receive and 20 Mbps transmit unicast traffic Adaptive Return Link MF-TDMA, SCPC & HighResCoding Embedded TCP acceleration and encryption Versatile networking, routing and addressing 7

SHAPING THE FUTURE OF SATELLITE COMMUNICATIONS More Information: Send a mail to: sales@newtec.eu Visit our website: www.newtec.eu Follow us: Contact us: Cy N.V. Laarstraat 5 B-9100 Sint-Niklaas Belgium Tel: +32 (0)3 780 65 00 Fax: +32 (0)3 780 65 49 Twitter.com/_Satcom You Tube Youtube.com/Satcom in Linkedin.com/company/newtec Slideshare.net/newtec_satcom North America Europe MENA China Asia Pacific South America Europe North America South America Asia-Pacific China MENA Tel: +32 3 780 65 00 Tel: +1 203 323-0042 Tel: +55 11 2092 6220 Tel: +65 6777 22 08 Tel: +86 10-823 18 730 Tel: +971 4 390 18 78 Fax: +32 3 780 65 49 Fax: +1 203 323-8406 Fax: +55 11 2093 3756 Fax: +65 6777 08 87 Fax: +86 10-823 18 731 Fax: +971 4 368 67 68 8