SoLuTIoN guide. CLoud CoMPuTINg ANd ThE CLoud-rEAdy data CENTEr NETWork



Similar documents
Increase Simplicity and Improve Reliability with VPLS on the MX Series Routers

Simplifying the Data Center Network to Reduce Complexity and Improve Performance

NETWORKING FOR DATA CENTER CONVERGENCE, VIRTUALIZATION & CLOUD. Debbie Montano, Chief Architect dmontano@juniper.net

WHITE PAPER. Copyright 2011, Juniper Networks, Inc. 1

IF-MAP FEDERATION WITH JUNIPER NETWORKS UNIFIED ACCESS CONTROL

Reasons Enterprises. Prefer Juniper Wireless

Demonstrating the high performance and feature richness of the compact MX Series

PERFORMANCE VALIDATION OF JUNIPER NETWORKS SRX5800 SERVICES GATEWAY

Juniper Networks Solution Portfolio for Public Sector Network Security

Network and Security. Product Description. Product Overview. Architecture and Key Components DATASHEET

White Paper. Juniper Networks. Enabling Businesses to Deploy Virtualized Data Center Environments. Copyright 2013, Juniper Networks, Inc.

Customer Benefits Through Automation with SDN and NFV

NETWORK AND SECURITY MANAGER

New Data Centers Require a New Network

NETWORK AND SECURITY MANAGER APPLIANCES (NSMXPRESS AND NSM3000)

The dramatic growth in mobile device malware. continues to escalate at an ever-accelerating. pace. These threats continue to become more

Deploy secure, corporate access for mobile device users with the Junos Pulse Mobile Security Suite

JUNOS Software: The Power

Six Steps to Ensure Application Performance, Network Resiliency, Data Integrity, and User Access Security

Juniper Solutions for Turnkey, Managed Cloud Services

Junos Pulse Secure Access Service Enables Service Providers to Deliver Scalable and On-Demand, Cloud-Based Deployments with Simplicity and Agility

Flattening the Data Center Architecture

Key Strategies for Long-Term Success

NEC s Juniper Technology Brief Issue 2

POWERING UNIFIED COMMUNICATIONS WITH BRANCH SRX SERIES SERVICES GATEWAYS

Analysis of the Optimal Branch Network Architecture for Successful Unified Communications in the Enterprise

SECURE ACCESS TO THE VIRTUAL DATA CENTER

PRODUCT CATEGORY BROCHURE. Juniper Networks SA Series

MIGRATING IPS SECURITY POLICY TO JUNIPER NETWORKS SRX SERIES SERVICES GATEWAYS

Configuring and Implementing A10

SOLUTION BROCHURE. Juniper Networks. Intelligent Security and Performance for the Distributed Enterprise

Implementing Firewalls inside the Core Data Center Network

JUNIPER NETWORKS WIRELESS LAN SOLUTION

Product Description. Product Overview

Juniper Update Enabling New Network Architectures. Debbie Montano Chief Architect, Gov t, Edu & Medical dmontano@juniper.

VMWARE VIEW WITH JUNIPER NETWORKS SA SERIES SSL VPN APPLIANCES

PRODUCT CATEGORY BROCHURE

Juniper Networks Solution Portfolio for Public Sector Network Security

Transforming Service Life Cycle Through Automation with SDN and NFV

Reasons to Choose the Juniper ON Enterprise Network

Introduction...3. Scope...3. Design Considerations...3. Hardware Requirements...3. Software Requirements...3. Description and Deployment Scenario...

Service Description. Service Overview DATASHEET

Interoperability Test Results for Juniper Networks EX Series Ethernet Switches and NetApp Storage Systems

SOLUTIONS FOR DEPLOYING SERVER VIRTUALIZATION IN DATA CENTER NETWORKS

White Paper. Protect Your Virtual. Realizing the Benefits of Virtualization Without Sacrificing Security. Copyright 2012, Juniper Networks, Inc.

Voice Modules for the CTP Series

Protecting Physical and Virtual Workloads

Security That Ensures Tenants Do Not Pose a Risk to One Another In Terms of Data Loss, Misuse, or Privacy Violation

Juniper Networks MetaFabric Architecture

Monitoring Network Traffic Using sflow Technology on EX Series Ethernet Switches

J-Flow on J Series Services Routers and Branch SRX Series Services Gateways

Secure, Mobile Access to Corporate , Applications, and Intranet Resources

MONITORING NETWORK TRAFFIC USING sflow TECHNOLOGY ON EX SERIES ETHERNET SWITCHES

JUNIPER. One network for all demands MICHAEL FRITZ CEE PARTNER MANAGER. 1 Copyright 2010 Juniper Networks, Inc.

JUNOS OS: THE POWER OF ONE OPERATING SYSTEM

Meeting PCI Data Security Standards with

PRODUCT CATEGORY BROCHURE. Juniper Networks Integrated

JUNIPER NETWORKS CLOUD SECURITY

SECURE CLOUD CONNECTIVITY FOR VIRTUAL PRIVATE NETWORKS

WEB FILTERING FOR BRANCH SRX SERIES AND J SERIES

Simplify the Data Center with Junos Fusion

DEPLOYING IP TELEPHONY WITH EX SERIES ETHERNET SWITCHES

Optimizing VoIP Applications with Juniper Networks EX3200 and EX4200 Line of Ethernet Switches

CONFIGURATION OPTIONS FOR HARDWARE RULE SEARCH (RMS) AND SOFTWARE RULE SEARCH (SWRS)

Mobile Workforce. Connect, Protect, and Manage Mobile Devices and Users with Junos Pulse and the Junos Pulse Mobile Security Suite.

J SERIES, M SERIES AND MX SERIES ROUTERS

Solution Brief. Secure and Assured Networking for Financial Services

Understanding Fundamental Issues with TRILL

Pharmacy. Regulatory Agency. Medical Equipment. Clinic. Customers Guest Partners Vendors WEB

Implementing Firewalls inside the Core Data Center Network

Juniper Unite Cloud-Enabled Enterprise Reference Architecture

PRODUCT CATEGORY BROCHURE INTEGRATED FIREWALL/ VPN PLATFORMS

Web Filtering For Branch SRX Series and J Series

VIRTUALIZED SECURITY: THE NEXT GENERATION OF CONSOLIDATION

Ultra Low Latency Data Center Switches and iwarp Network Interface Cards

Juniper Networks QFabric: Scaling for the Modern Data Center

Networks that know data center virtualization

Solutions for Health Insurance Portability and Accountability Act (HIPAA) Compliance

ENTERPRISE SOLUTION FOR DIGITAL AND ANALOG VOICE TRANSPORT ACROSS IP/MPLS

Identity-Based Traffic Logging and Reporting

White Paper. Copyright 2012, Juniper Networks, Inc. 1

Security Portfolio. Juniper Networks Integrated Firewall/VPN Platforms. Product Brochure. Internet SRX Fixed Telecommuter or Small Medium Office

Junos Pulse Access Control Service 4.4R4-MDM Supported Platforms Document

Transcription:

SoLuTIoN guide CLoud CoMPuTINg ANd ThE CLoud-rEAdy data CENTEr NETWork

Contents BENEfITS of ThE CLoud-rEAdy data CENTEr NETWork............................3 getting ready......................................................................3 SIMPLIfy.......................................................................... 4 ShArE............................................................................ 6 SECurE........................................................................... 6 SuMMAry........................................................................... 6 JuNIPEr SoLuTIoN CoMPoNENTS....................................................7 SWITChINg........................................................................7 routing..........................................................................7 SECurITy..........................................................................7 operating SySTEM................................................................7 NETWork CLIENT..................................................................7 NETWork MANAgEMENT...........................................................7 SErVICES..........................................................................7 2

Cloud computing represents a new way to deliver and use services on a shared IT infrastructure and network. Previously, IT hardware and software have largely been acquired and provisioned on a business s premises. With cloud computing, the value of these same software and hardware products is delivered on demand in the form of services over a network. Cloud computing is relevant both to service providers offering cloud-based services for customers and to enterprise and public sector IT organizations that are aware of cloud computing s relevance to their own internal operations. IT groups can now build out private clouds or augment their resources with public clouds, enabling the benefits of this powerful computing model for their data centers. To achieve optimal results, a close examination of the network is required, because in the highly connected world of virtualized applications and infrastructures, innovative networks are the foundation of cloud-ready data centers. Juniper Networks was founded on the vision of connecting everything and empowering everyone, engaging in a steady stream of innovations to advance the state of the art in networking for more than a decade. Establishing a relationship with a network partner like Juniper can help IT organizations reap the benefits of cloud computing and increase network effectiveness to meet current and future technological and business requirements. Benefits of the Cloud-Ready Data Center Network Lessons learned from cloud computing can vastly improve the scale, agility and security of applications, reducing costs for delivering new services while improving user experience. Cloud services are delivered by infrastructure that is centrally managed, consolidated and enabled with virtualization. Any of the standard data center elements, such as servers, appliances, storage and other networking devices, can be contained within the cloud. By abstracting logical from physical, these elements can be arranged in resource pools that are shared securely across multiple applications, users, departments, suppliers and customers. The resources in these pools are dynamically allocated to accommodate the changing capacity requirements of different applications and improve asset utilization levels. Consequently, cloud infrastructures are known to simplify management, reduce operating and ownership costs, and allow services to be provisioned with unprecedented speed. Together, cloud services and the cloud infrastructure produce exceptional economies of scale, resulting in greater efficiency, agility and lower costs to deliver higher-quality services to users. Juniper has dedicated itself to building simplified, scalable, agile and secure networks with these design objectives for the cloud-ready data center. Success in building a scalable, cloud-ready data center network requires three critical steps: (1) simplify, (2) share, and (3) secure. Getting Ready Three-Step Approach Success in building a scalable, cloud-ready Juniper recommends a three-step data center network requires three critical approach to make your network steps: (1) simplify, (2) share, and (3) infrastructure cloud ready and reduce the secure. time to implement cloud services: Whether you are running your internal IT Simplify the architecture Consolidate as a cloud or plan to connect with public siloed systems and collapse inefficient cloud services, designing a cloud-ready tiers, resulting in fewer devices, a smaller data center network gives you significant operational footprint, simpler design and infrastructure advantages. Making these management from a single pane of glass. choices and decisions can help you lower Share the resources Segment the costs, increase efficiency and keep your network into simple, logical and scalable data center agile enough to accommodate partitions for your various applications any forthcoming changes in your business and services with privacy, flexibility, high or your technology infrastructure. performance and quality of service (QoS) as primary goals. This sharing enables agility for multiple users, applications and services. Secure the data flows Integrated and virtualized security services resident in the network can provide benefits to users and applications sharing the infrastructure. Comprehensive protection secures data flows into, within and between data centers. Implement centralized management and distributed enforcement of dynamic, application- and identityaware policies. 3

simplify The network design that used to work for the business might not be appropriate for the new demands on IT infrastructure and, most importantly, new business requirements. Networks built on fragmented and oversubscribed tree structures have problems with scaling and consistent performance (figure 1). design and management complexity and costs increase exponentially as more devices are added. Ethernet Juniper Networks vision for the ultimate simplification of the data center is the previously announced Project Stratus, replacing multiple devices with a single logical switch (figure 2). guided by this vision, Juniper offers a dramatically streamlined architecture today for a cloud-ready data center network with reduced complexity, improved efficiencies and lower operational, capital and environmental costs. Servers Storage FC SAN figure 1: The legacy network. 4

Juniper Networks helps organizations simplify their cloud-ready data centers with an innovative industry-leading product portfolio and solutions for important network design challenges. Multiple switching tiers are collapsed in Juniper s simplified design, requiring fewer devices and interconnections. Layer Consolidation Juniper simplifies virtual-server deployment with Virtual Chassis technology (gray shadowed devices in figure 3). When placed in the access tier, the Juniper Networks EX4200 Ethernet Switch reduces configuration burdens in the network and measurably improves performance for server-to-server communications in service-oriented architecture, Web services and other distributed application designs. Virtualized Security and Application Services MX Series Servers figure 2: The Stratus Project Juniper s vision for a single data center fabric. Storage Edge Service Consolidation and Management At a data center s edge, where connections to other data centers and networks occur over the WAN, the Internet or a partner s network, the number of deployed devices can be consolidated into fewer, more agile and scalable devices with Juniper. This consolidation simplifies the management and control of the connections and lowers operational cost. Juniper Networks M Series Multiservice Edge routers and MX Series 3d universal Edge routers are powerful, reliable and the most scalable for the intelligent-edge and inter-data center mobility. Servers SRX Series MX Series EX8200 EX4200 Storage figure 3: Juniper s data center solution today. FC SAN 5

Service Consolidation Network-based security services intrusion detection, attack prevention, encryption, monitoring can be consolidated into highly scalable virtualized security platforms to reduce security sprawl. The Juniper Networks SRX Series Services Gateways can condense previously siloed security platforms by a factor of 5 to 1. The SRX Series enables rapid provisioning and simplified operation of multiple security controls for elastic scaling of security services across physical and logical platforms. Unified Management By using a common operating system (for example, Juniper Networks Junos operating system) and a unified management system, Juniper is able to significantly simplify configuration and problem management for multiple applications and user groups. These gains are crucial to maintaining service levels and flexibility in IT infrastructure while following the constant business imperative of doing more with less. Share Economic and agility imperatives of the cloud-ready data center require network resources to be allocated, expanded and reallocated efficiently at scale. The uniquely architected Juniper platforms deliver the agility and scaling required by virtualizing network configurations, segmenting services into logical domains and using industry-leading hardware designs to scale without complexity. With a large pool of resources to draw on, customers can efficiently partition those resources to meet service requirements, remain flexible and ensure operational performance, security and control. Resource Allocation Juniper s recommended approach to sharing the network revolves around aligning capacities, bandwidth, priorities and availability goals with application requirements using technologies based on standards and simplified policies. Starting with Juniper Networks Virtual Chassis technology, available with the EX4200 line of switches, organizations can deploy more Layer 2 VLANs with fewer devices. In each of Juniper s routing and switching lines, customers have unmatched scale and agility in processing access control lists that forward traffic according to previously established rules for designated types, rates and packet sizes. Juniper security services and policies nest VLANs within logical zones for security segmentation. With Juniper s carrier-grade, scalable MPLS and VPLS technologies, VPNs can be used to extend zones while VLANs can be stretched across data centers or pods for more flexible shared links to the cloud (Figure 4). Secure growth. Security services, such as Security administrators must secure clientto-server application monitoring, stateful firewalls, traffic as well as traffic between intrusion detection and prevention physical and virtual servers, applications systems, and VPNs, are all consolidated and other data centers. The increased on a platform that flexibly and dynamically access and sophistication of security assigns resources as needed. Juniper threats in a cloud-ready data center provides best-practices guides for security requires expanded security protection to minimize risk and speed time to capabilities. Appropriate security policies implementation when configuring security affect service availability of businesscritical solutions for cloud-ready data centers. applications and operations. Summary To address these challenges, security Many organizations can benefit from services should be consolidated cloud-ready data center networks, whether and virtualized to compliment the building a private cloud network for simplification and sharing of the cloudready internal purposes, connecting to public data center network. This approach cloud services or preparing to connect to enhances the flexibility and efficiency of public cloud services in the future. Juniper the entire security solution. Networks, as a partner with demonstrable Juniper Networks has developed highperformance, experience, can help organizations reduce cloud-enabled virtualized complexity and overall costs in IT while security services, which meet today s accelerating delivery of services to users in security and performance requirements a secure cloud network. while accommodating future on-demand Zone 1 Zone 2 MPLS-VPN MPLS-VPN Zone 4 Zone 3 Data Center Data Center VLANS Zones VPNs Figure 4: Scalable network virtualization technologies. 6

Juniper Solution Components Switching Security Operating System Network Management EX Series Ethernet Switches: Deliver SRX Series Services Gateways: Combine Junos OS: Integrates routing, switching, Network and Security Manager: Provides a unmatched scale and performance for routing, switching, application services, and security services, and offers the single pane of management for the entire L2 and L3 data center networks. The and user- and application-aware security power of one operating system to reduce network infrastructure, including routing, high-density, high-performance Juniper within a single device. complexity, achieve operational excellence switching and security devices. Networks EX8200 Ethernet Switches support data center and cloud computing environments. Virtual Chassis technology enables up to 10 interconnected EX4200 switches to operate as a single device, reducing management overhead. Routing M Series Multiservice Edge Routers: Combine best-in-class integrated virtualization and traffic management with unmatched reliability, stability, security and service richness to connect the cloud-ready data center to the WAN. Unified Access Control: Provides powerful identity- and role-based access control that increases agility in service deployment and overall quality of experience. UAC can be deployed within a data center or across an extended enterprise to protect networks and applications. SA Series SSL VPN Appliances: Provide scalable, simplified and secure remote access from multiple remote networks and platforms (SSL VPN) to data center resources. and deliver dynamic services with lower TCO. Network Client Junos Pulse: A dynamic, standardsbased multiservice network client delivering integrated connectivity, access, acceleration, and security anytime/ anywhere while drastically simplifying the user experience. STRM Series Security Threat Response Managers: Collect events and alerts from different Juniper and third-party products, aggregating and delivering them to an enterprisewide threat management view. Services J-Care Technical Services: A family of support services, J-Care Technical Services offers unlimited access to Juniper s support centers online or by telephone, immediate software updates and hardware replacement options. J-Care Efficiency, Continuity and Agility services add the MX Series 3D Universal Edge Routers: automation elements of Advanced Insight Provide Ethernet switching capabilities Services (AIS), which reduces operating coupled with the carrier-class routing features customers expect from Juniper to expenses and simplifies operations. support advanced virtualization of network infrastructures and traffic management between data centers and WANs. 7

Corporate and sales headquarters Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, CA 94089 usa Phone: 888.JuNIPEr (888.586.4737) or 408.745.2000 fax: 408.745.2100 www.juniper.net apac headquarters Juniper Networks (hong kong) 26/f, Cityplaza one 1111 king s road Taikoo Shing, hong kong Phone: 852.2332.3636 fax: 852.2574.7803 emea headquarters Juniper Networks Ireland Airside Business Park Swords, County dublin, Ireland Phone: 35.31.8903.600 EMEA Sales: 00800.4586.4737 fax: 35.31.8903.601 Copyright 2009 Juniper Networks, Inc. All rights reserved. Juniper Networks, the Juniper Networks logo, Junos, NetScreen, and ScreenoS are registered trademarks of Juniper Networks, Inc. in the united States and other countries. All other trademarks, service marks, registered marks, or registered service marks are the property of their respective owners. Juniper Networks assumes no responsibility for any inaccuracies in this document. Juniper Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice. Printed on recycled paper 1600040-001-EN oct 2009