The term Virtual Private Networks comes with a simple three-letter acronym VPN



Similar documents
MPLS/IP VPN Services Market Update, United States

November Defining the Value of MPLS VPNs

Sprint Global MPLS VPN IP Whitepaper

MITEL. NetSolutions. Flat Rate MPLS VPN

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Managed Services: Taking Advantage of Managed Services in the High-End Enterprise

High Level Overview of IPSec and MPLS IPVPNs

IP VPN Solutions Secure, flexible networking options from a leader in IP solutions

Best Effort gets Better with MPLS. Superior network flexibility and resiliency at a lower cost with support for voice, video and future applications

IP-VPN Architecture and Implementation O. Satty Joshua 13 December Abstract

Managed 4G LTE WAN: Provide Cost-Effective Wireless Broadband Service

Building the Business Case For IP VPNs

Navigating to MPLS-Enabled Networks: The Search for Security, Flexibility and Simplicity

CARRIER MPLS VPN September 2014

Rolling Out New SSL VPN Service

Colt IP VPN Services Colt Technology Services Group Limited. All rights reserved.

How To Find A Vpn Wan Solution

Frame Relay vs. IP VPNs

AT&T. ip vpn portfolio. integrated. IP VPN solutions. for the enterprise. Communication Systems International Incorporated

APPLICATION NOTE. Benefits of MPLS in the Enterprise Network

IPSec or SSL VPN? Copyright 2004 Juniper Networks, Inc. 1

WHITEPAPER MPLS: Key Factors to Consider When Selecting Your MPLS Provider

Sorting Out the Alphabet Soup of VPN Solutions

Multi Protocol Label Switching (MPLS) is a core networking technology that

Pacnet MPLS-Based IP VPN Keeping pace with your growth

MPLS Networks for Small and Mid-Size Business. Performance-Enhancing IT Services with Reduced Costs

Cisco Group Encrypted Transport VPN: Tunnel-less VPN Delivering Encryption and Authentication for the WAN

WAN and VPN Solutions:

Addressing Inter Provider Connections With MPLS-ICI

Ethernet Services Overview

MPLS in Private Networks Is It a Good Idea?

WHY CHOOSE COX BUSINESS FOR YOUR COMPANY S NETWORK SERVICE NEEDS?

How to cut communications costs by replacing leased lines and VPNs with MPLS

Ethernet Wide Area Networking, Routers or Switches and Making the Right Choice

Cisco Which VPN Solution is Right for You?

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Your Wide Area Network Just Got a Whole Lot Wider.

Enterprise Business Products 2014

MPLS: Key Factors to Consider When Selecting Your MPLS Provider Whitepaper

IP-VPN Deployment Decisions and the Business Case for IP-VPN Managed Services

Virtual Private LAN Service (VPLS)

Optimizing Networks for NASPI

Data Sheet. M o r e... making networks better

WHITE PAPER. Addressing Inter Provider Connections with MPLS-ICI CONTENTS: Introduction. IP/MPLS Forum White Paper. January Introduction...

Managed Services The. The Road to Revenue. Pravin Mahajan Session Number Presentation_ID

Unifying the Distributed Enterprise with MPLS Mesh

Blue 102. IP Service Architecture Futures. Geoff Huston May 2000

Is MPLS Dead? Impacts. Recommendations. Analysis

NETWORK ISSUES: COSTS & OPTIONS

ADDENDUM 9 TO APPENDIX 8 TO SCHEDULE 3.3 TO THE

MPLS Networking. Create a Secure Private Network for Cloud Computing. Learn More: Call us at

Virtual Privacy vs. Real Security

WHITE PAPER: Broadband Bonding for VoIP & UC Applications. In Brief. mushroomnetworks.com. Applications. Challenge. Solution. Benefits.

Sprint International Taiwan Ltd. Global MPLS VPN Pricing Guide

ENTERPRISE CONNECTIVITY

Building Trusted VPNs with Multi-VRF

ethernet services for multi-site connectivity security, performance, ip transparency

VPLS lies at the heart of our Next Generation Network approach to creating converged, simplified WANs.

The Cisco ASA 5500 as a Superior Firewall Solution

Evolving Your Network with Metro Ethernet and MPLS VPNs

IVCi s IntelliNet SM Network

Solution Brief. Secure and Assured Networking for Financial Services

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

The Case for Managed Infrastructure Services

How Proactive Business Continuity Can Protect and Grow Your Business. A CenturyLink White Paper

1.264 Lecture 37. Telecom: Enterprise networks, VPN

Secured Voice over VPN Tunnel and QoS. Feature Paper

Deploying IP-based Virtual Private Network Across the Global Corporation

Corporate Network Services of Tomorrow Business-Aware VPNs

EVALUATING NETWORKING TECHNOLOGIES

GR2000: a Gigabit Router for a Guaranteed Network

CONTENTS. VPN Technology 2. What is MPLS 3. What is IPSsec 4. A Comparison 5. Quality of Service 6. Complementary Technologies 7

Multi-protocol Label Switching

Solution Brief. Migrating to Next Generation WANs. Secure, Virtualized Solutions with IPSec and MPLS

ROGERS DELIVERS THE SPEED, POWER AND RELIABILITY OF FIBRE RIGHT TO YOU.

The Business Case for Ethernet Services Whitepaper Sponsored by Time Warner Cable Business Class

How To Get More Bandwidth From Your Business Network

Mastering Network Design with MPLS

Cisco Wireless Security Gateway R2

The Keys for Campus Networking: Integration, Integration, and Integration

National Managed Broadband Service for Government

Remote access to any VPN, including dial access or remote connectivity using the Internet, also adds security holes to the network.

Virtual Private Networks Secured Connectivity for the Distributed Organization

Private IP Overview. Feature Description Benefit to the Customer

RA-MPLS VPN Services. Kapil Kumar Network Planning & Engineering Data. Kapil.Kumar@relianceinfo.com

COMPLETE YOUR GO-TO-MARKET PLAN BUSINESS SOLUTIONS BARRY DERRICK PRODUCT MARKETING MANAGER

Cisco IPsec and SSL VPN Solutions Portfolio

The Evolution of Ethernet

Building integrated services intranets

Alcatel 7300 ASAM. Advanced Services Access Manager (ETSI Version) Release 4.3/4.4

WHITEPAPER. VPLS for Any-to-Any Ethernet Connectivity: When Simplicity & Control Matter

Preparing Your IP network for High Definition Video Conferencing

Delivering Managed Services Using Next Generation Branch Architectures

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

Ancero Network-Based IP VPN Remote Access (ANIRA) Service Guide

The Role of Carrier Ethernet in Business Applications

Converged TDM and IP- Based Broadband Solutions White Paper. OnSite OS-10 Multi-Service over SDH Provisioning

The Next Generation Network:

Technical papers Virtual private networks

Delivering Dedicated Internet Access (DIA) and IP Services with Converged L2 and L3 Access Device

Transcription:

Application Brief Nortel Networks Virtual Private Networking solutions for service providers Service providers addressing the market for Virtual Private Networking (VPN) need solutions that effectively meet customer requirements. Because no two customers are alike, service providers need access to a complete portfolio of VPN solutions backed by a vendor who truly understands and knows how to meet the broad spectrum of market needs. Responding to service provider requirements, Nortel Networks delivers one of the most complete VPN portfolios in the industry. The term Virtual Private Networks comes with a simple three-letter acronym VPN but in fact represents a very wide range of technologies, protocols, and service types. VPN is defined by Nortel Networks as a secure, packet-based communications network built for the use of an enterprise over a shared public infrastructure. This is a broad definition to be sure, but so are the options open to service providers for delivering secure, private enterprise communications. Nortel Networks VPN solutions at a glance: CPE-based IP-VPN solutions Nortel Networks Contivity Secure IP Services Gateway Features security and IP services in a single integrated platform and supports site-to-site, remote access, and extranet VPN service. Alteon SSL VPN Extends the reach of enterprise applications to mobile workers, telecommuters, partners, and customers through a remote access security solution leveraging the ubiquitous SSL capability inherent to virtually all Web browsers. Network-based IP-VPN solutions Services Edge Router (SER) 5500 Broadband Service Node Provides advanced IP-VPN and other IP services to subscribers and supports intranet, extranet, and remote access. Multiservice Switch (MSS) portfolio Supports security, scalability, reliability, and control with an architecture that offers a powerful, cost-effective way of creating multiple, segregated IP-VPNs within a shared environment.

Hybrid VPN solutions SER-Contivity hybrid IP-VPN solution Leading example of how Nortel Networks VPN solutions can be combined to deliver the advantages of each in a single, integrated VPN. In this example, a single VPN is created across both platform types, sharing a single remote access client (the Contivity client), which results in lower operating cost and increased user flexibility. Ethernet-VPN solutions Optical Ethernet Combines the reach and reliability of optical networking with the simplicity and cost-effectiveness of Ethernet to deliver higher bandwidth with lower cost. Optimal for the delivery of time-sensitive, mission-critical applications such as Voice over IP, storage networking, and applications hosting. Service providers planning their VPN deployment strategies must recognize the wide scope of deployment alternatives and how they map to customer applications and the competitive landscape of VPN service offerings on the market today. A strong and credible vendor can be a tremendous ally in this market, helping with technology selection, business modeling, service introduction, and ongoing evolution of the service. While many equipment vendors have approached the VPN market with a one size fits all model, Nortel Networks has been careful to develop and evolve a diversified portfolio of VPN offerings.

Nortel Networks recognizes that different end-customers have different service needs (e.g., security, user control, accessibility) and that service providers have differing delivery needs (e.g., scalability, manageability, survivability). A good solution must fit these requirements. Different VPN solutions come with different inherent strengths, and a truly comprehensive VPN solutions vendor will recommend the solution or solutions best able to meet service provider requirements effectively and economically. Nortel Networks works with service providers to deliver optimized VPN solutions that will shorten the path to service profitability. CPE-based IP-VPN solutions Intelligent devices on customer premises are able to establish secure, encrypted VPN tunnels across an IP network using the IETF standards-based IPSec protocol, or the widely available Secure Sockets Layer (SSL) protocol. Both protocols assure data confidentiality through certificate authentication. CPE IP-VPN solutions have enjoyed widespread success in enterprisemanaged deployments and, increasingly, carrier-managed deployment scenarios. (Figure 1) Nortel Networks Contivity Secure IP Services Gateway is a leading IP-VPN incumbent solution featuring security and IP services in a single integrated platform. Contivity supports site-to-site, remote access, and extranet VPN service. With the IP routing, stateful firewall, policy management, and QoS services of Contivity, service providers can offer the IP services that normally require multiple purpose-built devices. As a highly scalable family of devices, the Contivity platform offers a complete IP services portfolio, from the low-end Contivity 1000 series to the high-end Contivity 5000. This enables Contivity to address the security and IP services needs of the smallest branch site or the largest headquarters. A Contivity Secure IP Services Gateway can be installed as an IP access router, VPN gateway, or stateful packet firewall depending on enterprise need. The industry-leading Contivity client can be deployed in most types of PCs or PDAs connected to the Internet to achieve ubiquitous remote VPN connectivity. Nortel Networks Alteon SSL VPN is a remote access security solution that extends the reach of enterprise applications to mobile workers, telecommuters, partners, and customers. By using Secure Sockets Layer as the underlying security protocol, the Alteon SSL VPN allows for an unrestricted remote access with the Internet providing remote connectivity and the ubiquitous Web browser as the primary client interface. Benefits of Alteon s browser-based client approach include remote access to applications from laptops, home/partner PCs, PDAs and kiosks, and reliable remote access or extranet service from any active Web browser. Additionally, browser-based remote access yields the benefits of reduced management for administrators, who no longer have to install, configure, and manage thousands of software clients.

Network-based IP-VPN solutions An alternate way to create a provider-provisioned IP-VPN is to utilize a powerful, shared-use VPN switch on the edge of the carrier network, where it can support hundreds of individual customers simultaneously. (Figure 2) Service providers will realize tangible capex and opex benefits from the network-hosted solution s economies of scale. They ll be able to deliver rich service offerings, tailored to the needs of individual enterprise customers, while allowing those same customers to make provisioning changes to their own IP-VPNs using on-line administration tools. Figure 2. Network-based IP-VPN solutions Extranet Supplier Telecommuter with IPSec client Services Edge Router Services Edge Router Internet Headquarters BGP/MPLS VPN or Virtual Router VPN Mobile worker with IPSec client Regional office Branch office MSS 20000 MSS 7000 Branch office Nortel Networks Services Edge Router 5500 uses the power of its 100+ processors to provide advanced IP-VPN and other IP services to subscribers. Supported IP-VPN services include intranet, extranet, and remote access service. Network-based IP services include a dedicated firewall for each subscriber, advanced QoS, Network Address Translation, and personalized content delivery services. Nortel Networks Multiservice Switch 7400, 15000, and 20000 support security, scalability, reliability, and control with an architecture that offers a powerful, cost-effective way of creating multiple, segregated IP-VPNs within a shared environment. With Multiservice Switch (MSS) IP-VPN, service level agreements (SLAs) can be established with each customer, complemented by applications that allow customers to verify that commitments are being met. MSS SLAs are based on class-of-service (CoS) parameters such as bandwidth, packet loss, and transit delays. In the case of both products, network-hosted IP-VPN service can be delivered over either an IP, ATM, or Multiprotocol Label Switching (MPLS) network using IETF s BGP/MPLS VPNs (RFC2547bis) or Network-based IP-VPN Architecture using Virtual Routers drafts. Combined with the demonstrated standards-based interoperability of both products with their industry counterparts, this protocol flexibility yields outstanding flexibility in deployment alternatives for the service provider.

Ethernet-VPN solutions Optical Ethernet combines the reach and reliability of optical networking with the simplicity and cost-effectiveness of Ethernet to deliver higher bandwidth with lower cost. It also creates a profitable services solution for bridging the metro network between enterprises and service providers. Optical Ethernet provides connectivity services such as Ethernet Private Line and Ethernet VPNs, along with an entire set of enabled services such as Internet access, transparent LANs, and voice and video applications. (Figure 3) Nortel Networks Optical Ethernet delivers superior network performance including the ability to deliver bandwidth from 1 Mbps to 1 Gbps in small increments, with low latency and jitter and sub-50ms failover. These performance attributes allow Optical Ethernet to deliver a host of connectivity and value-add applications. Optical Ethernet s connectivity services include private line emulation, Internet access, and any-to-any transparent LAN service. Optical Ethernet is especially suitable for the delivery of time-sensitive, mission-critical, value-add applications such as Voice over IP, storage networking, and applications hosting. Nortel Networks Optical Ethernet, based on the Optical Metro product family, is designed to guarantee the network reliability and performance necessary to support real-time, missioncritical applications. Additionally, scalability is enabled through its ability to make disparate local area network (LAN) segments behave as one single LAN. Because there is a 97 percent penetration of Ethernet into global LAN connections, Optical Ethernet is poised to become the foundation for next-generation services and platforms. Nortel Networks is uniquely positioned to deliver this profitable services network for enterprises and service providers.

Standards leadership Standards are a crucial part of the complete VPN story, and Nortel Networks is a leader in the development and adoption of VPN standards at all levels. We continue to be a major contributor of both resources and leadership to the organizations that are driving the standardization and enhancement of MPLS, IPSec, ATM, Optical Ethernet, and various other protocols. We will continue to drive the standards process to ensure the continued utility of VPN solutions to the service provider. Conclusion Service providers encounter VPN customer requirements of every imaginable type and must serve them within the bounds of their network infrastructures and business case realities. Because there is no single VPN solution that will economically and effectively address all enterprise needs, service providers must be aware of and informed about the various deployment alternatives. Nortel Networks offers a complete portfolio of deployment options for provider-managed VPNs as well as extensive assistance with go-to-market planning and support. Nortel Networks VPN leadership and impressive portfolio of solutions make it a valued ally in building VPNs to serve today s needs as well as tomorrow s.