Securing The Hyper-Connected Cloud Alvin Rodrigues, Market development director South East Asia and Hong Kong arodrigues@fortinet.com Copyright Fortinet Inc. All rights reserved.
The rise of a new IOT Era Rethink network design. Increased connectivity Exponential growth of sensors Increased data Increased bandwidth Increased communication - Ericsson Networked Society Report 2
What does a hyper connected cloud means? Addition of IOT devices Vehicles Routers Home Automation SCADA Industrial Cloud Computing 1. Applications 2. Shared resources 3. Shared services Power Switches Security Cameras Fridges ATMs The Internet = Network 3
How is this possible? NFV SDN Big data analytics SDDC Dynamic Traffic Info. IoT Smart Devices Mobile Real-time analytics Events Recommend 4
Extensive proliferation of connected devices SCADA Industrial Vehicles Routers Power Switches Windows Mobile External Hard Drives iphone Fridges Home Automation Security Cameras Printers 5
Exposure to threats inside out Physical core infra Apps Cloud Virtualisation Sensors 6
Eg: Traditional Telco Cloud Environments - Silos Communications Cloud CTO Information Technology Cloud CIO Public Commercial Cloud CMO Telecom Network Transformation Execute IT Transformation Launch Enterprise Offerings 7
One cloud All workloads All industries Applications Services Network functions Security Communications Cloud IT Cloud OSS/BSS, Media & IT functions Cloud Infrastructure Governance & Security Public Commercial Cloud Commercial XaaS Offerings App Delivery N/W Opti Orchestration Hardware Cloud Infrastructure Automation Software Defined Networking End to End Infrastructure [ Storage + Compute + Network ] Data Center Services 8
Customer Challenge Cloud & SDN Security Dynamic & Multi-vendor Network Environments Create Security Gaps Service Provider or large enterprise will support multiple hypervisor platforms No standard orchestration APIs for SDN implementations Enterprises are extending their infrastructure with the public cloud SaaS usage is up dramatically within enterprises Virtualization SDN Cloud (IaaS) Cloud (SaaS) XenServer vsphere Hyper-V NSX 9
Visibility Challenges with Virtual Network Traffic Exacerbated by SDN/Network Virtualization Adoption Visibility & Control Challenges Inter-VM Traffic Visibility (East-West) SDN/Network Virtualization (dynamic flows, overlays) Logical abstraction (port, IP, MAC) can break static rules FACT: 76% of Data Center Traffic is East-West* *Cisco Global Cloud Index, 2013 10
Fortinet Advantage Cloud & SDN Strategy Comprehensive Strategy, Broad Integration and Visibility Scale-Out Elasticity for Hypervisors & Clouds Agile Platform Orchestration & Automation On-Demand, Utility-Based Security-as-a-Service Single Pane-of-Glass Across Hybrid Clouds 11
Fortinet Cloud & SDN Vision Network Security as Agile and Elastic Underlying Infrastructure Physical & Virtual Security FortiMail FortiWifi FortiGate FortiSandbox FortiManager FortiAnalyzer FortiWeb FortiADC FortiDDoS Virtualization SDN Cloud (IaaS) Cloud (SaaS) XenServer vsphere Hyper-V NSX 12
Agile Platform Orchestration & Automation Integration with VMware SDDC Control Plane Fortinet Service VM Visibility and Control in Software-Defined Environments Integration Features Network Visibility Elastic provisioning Distributed Object-based policy Automated Provisioning & Service Insertion SDN/Network Virtualization (dynamic flow control, overlay/underlay traffic) Network Policy Abstraction (logical port, IP, MAC) 13
Security-as-a-Service for Cloud Providers On-Demand Provisioning for Cloud Management and Marketplaces Integration Features Network Visibility Distributed Self-service provisioning Pay-as-you-go pricing Security-as-a-Service for Cloud Providers On-Demand Protection Utility-based Consumption, Metering, Billing Seamless with Cloud Infrastructure 14
Single Pane-of-Glass Management Across Hybrid Cloud Consistent Policy Across Public and Private Clouds Management & Policy Logging & Analysis SaaS-Based Portal Single Pane of Glass Management Public Cloud Physical Network Virtualization vsphere XenServer Hyper-V 15
Endpoint devices requires security 16
Benefits of a hyper connected cloud environment Technology Workflow Automation and Network Orchestration. Rapid network provisioning. Increased data centre agility. Business Rise of potentially new innovative solutions. Business competitive advantage. Differentiator. 17
Getting started Identify Key drivers for SDN Identify application service requirements start preparing (pooled & virtual resources) Work on cross-functional teamwork Start in controlled environment Ensure all investments support your future strategy 18
SDN high expectations and very searched topic 19
Resistance is futile 20
21