Huawei Agile WAN Solution
WAN Development and Challenge As more Enterprise services are deployed on IT systems and transmitted over IP networks, Enterprise networks are expanding to support more service types. Enterprise service informatization Comprehensive service Data processing Computer interconnection & file sharing Information sharing Office system Video conferencing Wireless access Voice call Desktop Telepresence Multimedia Cloud Mobile Cloud storage BYOD Spontaneous Telepresence Desktop cloud Enterprise application store Mobile video Cloud computing Internet of Things Service network Development of enterprise IT applications Enterprise informatization Enterprise networks are vital for ensuring service availability; therefore, network reliability, security, and maintainability must be guaranteed to ensure uninterrupted services. The bandwidth demands of Enterprise services on network resources is increasing, especially on Wide Area Network (WAN) bandwidth; however, WAN bandwidth is limited and network resources must be allocated logically to ensure optimal user experience of key applications and to minimize investment costs. Enterprise WANs must be expanded and upgraded to support developing services. WANs must be scalable, able to evolve to ensure service continuity, and maximize Return on Investment (ROI). 2
Solution Overview Huawei has launched its Agile WAN Solution to solve the challenges of insufficient bandwidth, poor reliability, lack of security, and maintainability. Agile Network Enable Networks to Be More Agile for Services Industries Government Enterprise Energy Smart Grid Transportation Finance Solution Highlights Stable network architecture High reliability, performance, and scalability and smooth evolution Agile service provisioning SDN-based traffic scheduling, HQoS Bandwidth management, UCMP load balancing, WAN acceleration Comprehensive network security Border protection, high quality & security, service management, and traffic optimization Unified network management Traffic monitoring, quality monitoring, visualized O&M, and collaborative management Product Family NE series routers AR series routers USG Anti-DDoS esight Agile Controller Huawei Agile WAN Solution architecture Stable network architecture, agile service provisioning, comprehensive network security, and unified network management are the core characteristics of Huawei s Agile WAN Solution. Stable network architecture Huawei s Agile WAN Solution provides device-level and protocol-level reliability. Huawei-developed core chips enable easy upgrades. IPv6 technologies or a transition solution from IPv4 enable network architecture evolution. Agile service provisioning Huawei s Agile WAN Solution implements unified traffic scheduling based on Software-Defined Networking (SDN) to links that transmit multimedia and cloud services. A variety of loadbalancing technologies and WAN-acceleration products are used to maximize link efficiency and ROI. Additionally, Huawei s solution provides differentiated service experience for users through refined bandwidth management based on Quality of Service (QoS) policies.. Comprehensive network security Huawei s Agile WAN Solution provides refined service identification and multi-dimensional policies to provide border security and defend against malicious attacks and unauthorized access. Unified network management Huawei s Agile WAN Solution supports unified management of IP and optical networks, implements visualized monitoring and Operations and Maintenance (O&M) of network traffic, which provides high quality through a simplified, unified Network Management System (NMS). 3
Stable Network Architecture Huawei s Agile WAN Solution provides a comprehensive collection of Enterprise networking products, including optical transmission/ethernet/wlan/wan access routers, aggregation/core routers, network security products, and NMS for a complete End-to-End (E2E) fundamental network solution. Huawei s Agile WAN Solution provides device-level, network-level, and topology-level network reliability. Device-level reliability: Hardware redundancy design: Dual power supplies, dual Main Processing Units (MPUs), and hot-swappable cards. In-Service Software Upgrade (ISSU): Hot patches. Single-point failure recovery: Non-Stop Forwarding (NSF) and non-stop routing (NSR). Protocol-level reliability: Network link and node fault detection technologies: Static/dynamic Bidirectional Forwarding Detection (BFD), single hop/multi-hop BFD, and IPv6 BFD. Industry-leading quick switchover technologies: IP Fast Reroute (FRR), Label Distribution Protocol (LDP) FRR, and VPN FRR. Topology-level reliability: Dual-plane network Double node dual link Networks of two carriers Device-level reliability: Dual MPUs for routers, NSF, and NSR Protocol-level reliability: FRR and BFD Topology-level reliability: Dual systems, dual planes, dual uplinks, and UCMP. Stable network architecture 4
Agile Service Provisioning Huawei s Agile WAN Solution features the following advantages for agile service provisioning: SDN-based traffic scheduling improves WAN link efficiency by three times. Huawei s Agile WAN Solution introduces its Agile Controller to automatically compute service paths and optimize bandwidth efficiency based on network states and service requests. In addition, this solution fully displays service network characteristics through network state and service priority awareness; it implements path planning and computing over the entire network, which improves link efficiency to over 90 percent. Beijing Tianjin Nanjing Shenzhen Hongkong WAN SDN traffic scheduling Shanghai Guangzhou Provides various types of QoS to guarantee support for multi-service transmission. Hierarchical Quality of Service (HQoS) schedules queues at the physical, logical, and application/service level using different traffic policies. This implements hierarchical traffic management as well as management of different users and services. Huawei supports 5-level HQoS scheduling, and each DS-TE supports eight CTs, providing a refined E2E QoS solution. Unequal-Cost Multi-Path Routing (UCMP) and load balancing allocate traffic to backup links based on their bandwidth capacities. This permits more logical use of backup links, eliminates an idle high-bandwidth link and packet loss on the low bandwidth link. WAN acceleration products compress traffic based on application characteristics to increase network bandwidth utilization. The WAN acceleration module significantly increases transmission speed and reduces bandwidth requirements by 60 to 70 percent, saving up to 38 percent on costs. 5
Comprehensive Network Security Huawei s high-efficiency WAN solution offers the following security protection advantages: Provides major security functions, such as anti-virus, Intrusion Prevention System (IPS), URL filtering, IPSec VPN, SSL VPN, GRE VPN, and anti-spam. Comprehensive authentication modes and refined service identification realize multi-dimensional policy configuration and execution. An advanced traffic management and control solution filters attack and non-service traffic to ensure highefficiency service provisioning. Application identification Support 1200+ types of protocols. Detects encrypted P2P applications. Web site classification > 65 million classified websites > 130 types of websites in 12 languages. Malicious URL detection Malicious URL >2M Phishing websites: Active > 50,000 Accuracy > 90% Malicious website detection Size of Botnet library: 350+. Detects 500+ worms. Accurate Botnet/worm detection Anti-virus Virus SDB: Used in 150 million systems around the world. IPS System weakness analysis and intelligent weakness protection Size of loophole signature library: 6500+ Comprehensive security 6
Unified Network Management Huawei high-efficiency WAN solution provides aunified network management system (NMS): The Huawei U2000 realizes unified management of optical transmission and IP networks. Huawei esight supports the maximum number of third-party devices in the industry. It can manage 675 device types from more than 20 vendors, as well as many types of pre-defined IT and IP devices. Supports management of customized devices (alarm, performance, and panel). Supports visualized management for telepresence and Multi-Protocol Label Switching (MPLS) VPN to realize endto-end visualized network quality detection. VolP Telepresence Desktop cloud Video surveillance Headquarters LAN SLA component NTA traffic Analysis component WAN MPLS VPN component Branch Branch LAN LAN VolP Telepresence Desktop cloud Video surveillance VolP Telepresence Desktop cloud Video surveillance Visualized Network Management 7
Customer Benefits Provides customers with the most complete WAN products (IP network products + optical network products + security/nms products) through a unified solution. Multiple types of service assurance technologies ensure highly efficient multi-service provisioning. Multiple types of load balancing and WAN acceleration technologies maximize bandwidth utilization, reducing Total Cost of Ownership (TCO). Supports comprehensive authentication modes with refined service identification and multi-dimensional policies to provide secure solutions. Supports unified management of optical networks and IP networks to save O&M costs. 8
Why Huawei? Huawei is a leading IP network solutions and equipment provider. Huawei has deployed IP networks that serve one-third of the world's seven billion people in more than 140 countries and regions. The Huawei high-efficiency WAN solution is a highly reliable and scalable solution that supports stable network architecture, highly efficient service assurance, comprehensive security, and unified network management. Boasting many years of experience in the Information Communications Technology (ICT) field, Huawei can help enterprises build WANs and deploy services around the world. For more information, visit: http://enterprise.huawei.com/en/solutions/basenet/wan/index.htm 9
2014 HUAWEI TECHNOLOGIES CO., LTD. Bantian, Longgang District Shenzhen518129, P. R. China Tel:+86-755-28780808