REMOVING THE BARRIERS FOR DATA CENTRE AUTOMATION

Similar documents
VM-Series for VMware. PALO ALTO NETWORKS: VM-Series for VMware

Unlock the full potential of data centre virtualisation with micro-segmentation. Making software-defined security (SDS) work for your data centre

Network Virtualization Solutions - A Practical Solution

Data Center Network Evolution: Increase the Value of IT in Your Organization

Brocade One Data Center Cloud-Optimized Networks

Implementing Software- Defined Security with CloudPassage Halo

White Paper. Juniper Networks. Enabling Businesses to Deploy Virtualized Data Center Environments. Copyright 2013, Juniper Networks, Inc.

How Network Virtualization can improve your Data Center Security

VMware vcloud Networking and Security

Virtualization, SDN and NFV

The Next Phase of Datacenter Network Resource Management and Automation March 2011

Cloud Networking: A Novel Network Approach for Cloud Computing Models CQ1 2009

Introduction to Software Defined Networking (SDN) and how it will change the inside of your DataCentre

Leveraging SDN and NFV in the WAN

Private Clouds. Krishnan Subramanian Analyst & Researcher Krishworld.com. A whitepaper sponsored by Trend Micro Inc.

Virtualized Security: The Next Generation of Consolidation

ARISTA WHITE PAPER Cloudifying Data Center Monitoring

SDN and NFV in the WAN

ARISTA NETWORKS AND F5 SOLUTION INTEGRATION

EVOLVED DATA CENTER ARCHITECTURE

Delivering Managed Services Using Next Generation Branch Architectures

Data Center Networking Designing Today s Data Center

SDN Services at the Customer Edge

How To Build A Software Defined Data Center

Next-Generation Datacenter Security Implementation Guidelines

Scalable Approaches for Multitenant Cloud Data Centers

Sourcefire Solutions Overview Security for the Real World. SEE everything in your environment. LEARN by applying security intelligence to data

HOW SDN AND (NFV) WILL RADICALLY CHANGE DATA CENTRE ARCHITECTURES AND ENABLE NEXT GENERATION CLOUD SERVICES

BRINGING NETWORKS TO THE CLOUD ERA

Blue Planet. Introduction. Blue Planet Components. Benefits

Cisco Unified Network Services: Overcome Obstacles to Cloud-Ready Deployments

Virtualization Essentials

Taking the Open Path to Hybrid Cloud with Dell Networking and Private Cloud Solutions

Software Defined Environments

A Mock RFI for a SD-WAN

VXLAN: Scaling Data Center Capacity. White Paper

Software Defined Data Centers Network Virtualization & Security. Jeremy van Doorn Director of Systems Engineering EMEA, Network & Security

Network Monitoring Fabrics Are Key to Scaling IT

Data Center Micro-Segmentation

Business Case for Open Data Center Architecture in Enterprise Private Cloud

VMware vcloud Networking and Security Overview

ARISTA WHITE PAPER Solving the Virtualization Conundrum

Testing Network Virtualization For Data Center and Cloud VERYX TECHNOLOGIES

Transform Your Business and Protect Your Cisco Nexus Investment While Adopting Cisco Application Centric Infrastructure

How do software-defined networks enhance the value of converged infrastructures?

Simplify IT. With Cisco Application Centric Infrastructure. Barry Huang Nov 13, 2014

Radware ADC-VX Solution. The Agility of Virtual; The Predictability of Physical

Managed Hosting is a managed service provided by MN.IT. It is structured to help customers meet:

SOFTWARE DEFINED NETWORKING

Use Case Brief BUILDING A PRIVATE CLOUD PROVIDING PUBLIC CLOUD FUNCTIONALITY WITHIN THE SAFETY OF YOUR ORGANIZATION

ADVANCED SECURITY MECHANISMS TO PROTECT ASSETS AND NETWORKS: SOFTWARE-DEFINED SECURITY

Business Cases for Brocade Software-Defined Networking Use Cases

ALCATEL-LUCENT ENTERPRISE DATA CENTER SWITCHING SOLUTION Automation for the next-generation data center

Use Case Brief CLOUD MANAGEMENT SOFTWARE AUTOMATION

Vyatta Network OS for Network Virtualization

A ROAD MAP FOR GEOSPATIAL INFORMATION SYSTEM APPLICATIONS ON VBLOCK INFRASTRUCTURE PLATFORMS

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Meeting the Five Key Needs of Next-Generation Cloud Computing Networks with 10 GbE

Business Case for BTI Intelligent Cloud Connect for Content, Co-lo and Network Providers

How the Software-Defined Data Center Is Transforming End User Computing

The Advantages of Cloud Services

STRATEGIC WHITE PAPER. Securing cloud environments with Nuage Networks VSP: Policy-based security automation and microsegmentation overview

U s i n g S D N - and NFV-based Servi c e s to M a x i m iz e C SP Reve n u e s a n d I n c r e ase

PALANTIR CYBER An End-to-End Cyber Intelligence Platform for Analysis & Knowledge Management

Vulnerability Management

Radware ADC-VX Solution. The Agility of Virtual; The Predictability of Physical

Building Tomorrow s Data Center Network Today

Network Packet Monitoring Optimizations in Data Centre

Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Requirements When Considering a Next- Generation Firewall

Caretower s SIEM Managed Security Services

Remote Voting Conference

Making the hybrid world work for you: Redefining IT operations Frank Casey Group Director, Data Center Solutions & Managed Services

A Look at the New Converged Data Center

Pervasive Security Enabled by Next Generation Monitoring Fabric

Whitepaper. Implementing High-Throughput and Low-Latency 10 Gb Ethernet for Virtualized Data Centers

Enterasys Data Center Fabric

NEC s Juniper Technology Brief Issue 2

The Promise and the Reality of a Software Defined Data Center

RIDE THE SDN AND CLOUD WAVE WITH CONTRAIL

Top 10 Reasons Enterprises are Moving Security to the Cloud

Management & Orchestration of Metaswitch s Perimeta Virtual SBC

Business Case for a DDoS Consolidated Solution

Enterprise Security Platform for Government

How To Build An Ip Storage Network For A Data Center

HAWAII TECH TALK SDN. Paul Deakin Field Systems Engineer

Public Clouds. Krishnan Subramanian Analyst & Researcher Krishworld.com. A whitepaper sponsored by Trend Micro Inc.

Impact of Virtualization on Cloud Networking Arista Networks Whitepaper

Extreme Networks: Building Cloud-Scale Networks Using Open Fabric Architectures A SOLUTION WHITE PAPER

Network Services in the SDN Data Center

Cisco Data Center Network Manager Release 5.1 (LAN)

I D C T E C H N O L O G Y S P O T L I G H T

A Guide to Hybrid Cloud An inside-out approach for extending your data center to the cloud

The Purview Solution Integration With Splunk

The Virtual Ascent of Software Network Intelligence

White Paper. SDN 101: An Introduction to Software Defined Networking. citrix.com

Branches as Nimble as the Cloud: Unleashing Agility with Nuage Networks Virtualized Network Services EXECUTIVE SUMMARY

White Paper. Architecting the security of the next-generation data center. why security needs to be a key component early in the design phase

Transcription:

REMOVING THE BARRIERS FOR DATA CENTRE AUTOMATION

The modern data centre has ever-increasing demands for throughput and performance, and the security infrastructure required to protect and segment the network must be able to meet those demands. To best utilize the new capabilities of a Software Defined Data Centre while providing maximum transparency and performance, the underlying physical network must scale linearly and programmatically interface in a seamless manner with new network virtualization capabilities with very little contention and minimal end-to-end latency. IGX Global and the integrated solutions of NSX by VMware, Palo Alto Networks and Arista Networks support business initiatives through increased automation and overcoming challenges associated with the tie between virtual resources and Physical Network and Security components. HIGHLIGHTS IGX Global is able to seamlessly integrate the vendor technologies of NSX by VMware, Palo Alto Networks and Arista Networks solutions and unlock the full potential of the software-defined data centre, allowing organizations to: Automate delivery of next-generation security services Centrally manage and program all aspects of the network across both virtual and hardware components Fully utilize a high performance networking solution coupled with lower Opex and Capex costs and maximum return on investment NSX AND PALO ALTO NETWORKS COMBINED SOLUTION One of the key barriers to achieving the true promise of a secure, agile, extensible, and flexible private cloud is the inability to deploy security services at the same pace as virtual machine deployments without compromising the level of protection needed. VMware and Palo Alto Networks have partnered to address these challenges. Using the NSX platform extensible service insertion and chaining capabilities, Palo Alto Networks builds on VMware s native kernelbased firewall capabilities to add next-generation security services. Palo Alto Networks offers a unique and modern approach to threat prevention that begins by proactively reducing the vulnerability of the network, then fully inspecting all allowed traffic for threats. The Palo Alto Networks Zero Trust model advocates stripping away all previous assumptions about trust in the network, and not trusting users, packets, interfaces or the network. NSX from VMware is a complete multi-hypervisor, multicloud management network virtualization platform. Inserting other vendors services such as those of integrated software and hardware partners is applicable without compromising any aspect of the platform s capabilities. The consolidated solution provides an integrated data centre design that allows organizations to unlock all the benefits of the software defined data centre, from optimized capacity utilization and operational efficiencies to greater flexibility and agility without compromising security. 2

Figure 1. Components of the NSX platform COMBINED ARISTA EOS AND VMware NSX SOLUTION VMware and Arista Networks have aligned their visions for network virtualization to realize the full potential of the Software Defined Data Centre. VMware NSX works with any existing IP network, but the right coupling between NSX and Arista Networks delivers optimal data centre benefits. The combined Arista and VMware solution is based on Arista s data centre class 10/40/100 GbE networking portfolio with Arista EOS and VMware NSX Virtual Networking and Security platform. The VMware NSX and Arista EOS combined solution offers the following benefits to deploying network virtualization within data centres built on the foundation of Arista's Software Defined Cloud Networking: Virtual and physical workloads can be connected on a common logical segment on-demand regardless of hypervisor, IP subnet or physical location Holistic views of the virtual and physical topology increase operational efficiency Network virtualization with NSX does not require IP multicast for learning or forwarding broadcast, unknown unicast or multicast packets A single point of management and control via NSX APIs and EOS APIs to configure the logical networks across hypervisors and the physical network fabric. 3

PALO ALTO NETWORKS AND ARISTA NETWORKS ALIGNMENT Palo Alto Networks and Arista Networks have partnered to offer the highest performance nextgeneration firewall implementation in the industry. By leveraging the extensibility built into every Arista Extensible Operating System (EOS), the Arista DirectFlow, and the unique deployment options offered by the Palo Alto Networks virtual-wire mode, we are able to deliver scale while ensuring flow symmetry. The Palo Alto Networks and Arista Networks solution focuses on delivering investment protection by horizontally scaling firewall performance to add capacity while maintaining sessions. Aside from firewall scaling, this concept can easily be applied to many other types of devices, for example IDS/IPS devices, proxies, antivirus pods, DDoS mitigation devices, WAN Optimizers. ARISTA DirectFlow Arista Networks DirectFlow technology allows for linkaggregation of up to 32 10 Gigabit Ethernet connections. This creates a single logical interface of up to 320 Gbps across two chassis in an Active/Active topology, with no blocked paths. The technology will automatically balance traffic between the different links in the aggregated bundle. If any link or system is taken off-line, traffic will be automatically rebalanced among the remaining links, providing full HA functionality. PALO ALTO VIRTUAL WIRE TECHNOLOGY Palo Alto Networks unique Virtual-Wire technology can transparently perform line-rate next generation firewall protection, without requiring configuration changes to the data centre switches. SCALABLE THROUGHPUT Combining the Arista DirectFlow and Palo Alto Networks Virtual-Wire technologies enables the Palo Alto Networks firewalls to inspect each link in the Arista Networks DirectFlow with minimal complexity and allows the firewall to scale as the data centre bandwidth requirements increase. ARISTA EOS Arista EOS (Extensible Operating System) is designed to provide a foundation for the business needs of nextgeneration data centres and cloud networks. It is also programmatic across all layers Linux kernel, hardware forwarding tables, Virtual Machine orchestration, switch configuration, provisioning automation and detailed monitoring of the network. By leveraging the programmability of Arista Extensible Operating System (EOS) with the advanced security capabilities of a Palo Alto Networks next-generation firewall, Arista DirectFlow Assist enables a scale-out architecture where the switch can offload traffic from the firewall. Figure 2. Arista Networks & NSX symmetric Scale configuration showing a 100 Gbps solution 4

IGX GLOBAL IGX Global has been providing technology sales, professional services and managed security services among leading vendors in information network and security for over a decade. Our consultants are experts in their field and can ensure seamless integration between physical and virtual resources and processes. Our team has multiple vendor accreditations to ensure that your environment is treated as an entire system rather than a collection of disparate parts. IGX Global has extensive experience in complete project life cycle management, from establishing requirements through delivery and into ongoing support. We focus on a combination of knowledge transfer, training and solution testing to support adoption of new technologies. We work with our clients to reduce operational cost of adoption and risk. NSX is at the centre of the architecture discussed in this whitepaper. Our team trained at VMware HQ in Ireland and has undertaken projects for VMware Professional Service delivering for a number of large global blue chip clients. IGX Global is uniquely positioned to ensure the best experience for your organization when embracing Software Defined Data centre technologies; we have practical experience of the various multicast considerations, Zero trust models, best practices and all manner of NSX nuances. MSSP OFFERING FROM IGX GLOBAL: Cloud based real time log correlation and alerting platform (security incident and event monitoring and management (SIEM)) Detect threats and breaches + meet compliance needs Early breach discovery through real time analytics, event cross-correlation Correlation, situational and contextual awareness - experienced SOC Analysts Emphasis on technical competence, responsiveness, and flexibility as differentiators + Portal, SLA Adherence, report generation Comprehensive suite of offerings and core competencies System Upgrades / Patches As industry veterans, IGX Global professional services enable customers to draw from a rich pool of seasoned network and security experts as and when they need it. 5

Palo Alto Networks is the leading next-generation network security company. Its innovative platform allows enterprises, service providers, and government entities to secure their networks by safely enabling the increasingly complex and rapidly growing number of applications running on their networks and by providing prevention against cyber threats. Arista Networks was founded to deliver Cloud Networking Solutions for large data centre and computing environment. Arista s award-winning best-of-breed 10, 40 and 100 Gigabit Ethernet switches redefine scalability, robustness, and priceperformance. At the core of Arista s platform is EOS, a groundbreaking software architecture. VMware is the industry-leading virtualization software company. NSX is VMware s leading network virtualization platform that delivers the operational model of a virtual machine for the network. Similar to virtual machines for compute, virtual networks are programmatically provisioned and managed independent of underlying hardware. IGX Global is the premium network and security integrator with four global locations across the United Kingdom and the USA, providing a complete lifecycle of security and network infrastructure services. IGX Global offers IT procurement and asset management, integration and remote services that scale across the SBM market to enterprise and service provider organisations. From cloud MSSP services, to managed integration services and data compliance, IGX Global offers international reach to any size company. 6