Network Analytics for More Intelligent SDN Derek Granath Sr. Director, Product Line Management Santa Clara, CA USA April 2015
Agenda The Network as a Strategic Business Asset Network Analytics Information About the Network Information From the Network Using SDN to Improve the Lync User Experience Customer Example 2
THE NETWORK IS MORE THAN STRATEGIC CONNECTIVITY Organizations require technology to make better business decisions Innovative CIOs contribute to business transformation Data traversing the network can be a source of strategic intelligence Network Analytics can improve user experience, security, business transformation 3
NETWORK ANALYTICS BUSINESS TRANSFORMATION Measure strategic applications to assure adoption and productivity Understand application usage to increase revenue Transform unknown or unrelated info into business intelligence As CIO, I m now invited back to the business table with my CEO and lines of business We are able to improve application response time thus increasing productivity I have committed to increase productivity by 30% over 5 years using Purview 4 NETWORK ANALYTICS BETTER USER EXPERIENCE Optimize network and server architecture for bandwidth-hungry applications Streamline troubleshooting with application and network performance visibility IT business planning for improved productivity We fixed performance issues on 6 servers in less than 20 minutes We can open 1 trouble ticket instead of 3 (server, network, application) We now schedule downtime based on low application usage periods NETWORK ANALYTICS BETTER SECURITY Understand shadow IT or unapproved applications Help assure security compliance Detect malicious applications We quickly located and correlated application use I can now tell if students are using applications that meet our security requirements
Information about the Network APs, Switches, Ports IP, Mac Addresses Topology Bandwidth Utilization Alarms & Alerts Design/Optimize Analyze Keeps the lights on, but doesn t contribute to business transformation Monitor Implement 5
Information from the Network Context User/Role Device Application* Access Method Location Time Policy Guest Employee Privileged user Service personnel Contractor Employee Owned Vstng_Emp Device Personal Device Corporate Device Guest Device HTTP Facebook Oracle Salesforce Youtube Twitter Google VDI Wireless Wired Auth. Method 802.1x Web based MAC Conference Rooms Hall way Class room Outside the agency 5ft from an Acess Pt M S 8 am 6 pm Weekends Holidays Anytime Allow Deny Rate Limit Contain Single SSID/VLAN Multiple VLANs Box IF $User_Identity AND $Device AND $Access AND $Location AND $Time THEN $Permission_Allowed
Network Analytics for More Intelligent SDN More Intelligent SDN to Improve User Experience Optimize application performance to improve user experience Ensure SLAs for business critical applications Ensure business ROI on new Applications Better utilize network resources Eliminate issues before they occur User Identity Joe Access Smith Type(s) Wireless Associated AP: wifi-243 SSID: Prod-Guest BSSID: 0-1a-e8-14-de-98 Virtual Device Identity(s) Windows v7.5.3 Device Type(s) Apple MacBook Air Samsung Galaxy Note Location Building-A Floor-2 Conference Room-7b Time of Day Wednesday, April 11, 2012 9:41:00 AM EST Application Provision Web (HTTP): 5Mb download Email (SMTP): 2Mb download All other Services: DISABLED Authentication MAC-Auth: 28:37:37:19:17:e6 PWA: 00:00:f0:45:a2:b3 802.1X: 00:0D:3A:00:a2:f1 Health Authorization Role: Sponsored Guest Sponsor: Jane Doe Internet Access Shared Engineering Servers Physical Device Identity(s) Apple Lion OSX v10.7 Android v4.0.4 Symantec Anti-Virus: Enabled Signature Update v10.4.3 OS Patches Up to date Peer2Peer Service: DISABLED 43 Services Running 7
Why Software Defined Networking - SDN? Recipe if this then that Trigger Ingredients Action Ingredients
If I get an email with a PowerPoint attachment then save it to Google Drive If I m within 500m from home, then open the garage door, set the heat to 20C and turn on the kitchen light If my favorite stock hits my target price then send me a phone Notification If I send a text msg to IFTTT containing the string #help then ring my cell phone
So what does this have to do with SDN?
If a medical device connects to the network then send its traffic through the firewall Topology Services Analytics VPN If a device is found with a vulnerability then automatically redirect traffic to the firewall AAA Skype for Business DNS/DHCP SDN Location Services Firewall Business Applications If a Skype (Lync) video call is initiated then apply dynamic priority and optimal network path for the call SIEM Orchestration If network demand from business applications is high then rate limit any Netflix traffic
Skype for Business SDN Integration (formerly known as Lync) SDN to Deliver Improved User Experience Automated End-to-End QoS for Skype for Business Clients In-depth, Contextual Visibility into Performance, Call Quality Qualified for Wired and Wireless Deployable at scale Today
Lync Solution Architecture with Open SDN Platform Leverages Open Daylight OneController OpenFlow, OVSDB and other protocols QoS prioritization across mixed switch infrastructures Frees customers from proprietary lock-in SDN solution designed to broaden market applicability 13
Visibility - Voice and Video Call Quality in Context MOS Start, End, Duration Caller, Callee, URI Location Info Session Info Prioritized Session Info 14
Analytics Custom Reporting 15
City of Bellevue Nearly $100,000 in program savings from deploying Skype for Business (Lync) vs. traditional IP/PBX System Deployed QoS end-to-end to 1,200 users in their Microsoft Skype for Business environment in hours vs. weeks Quickly identified and resolved application and networkrelated issues Gained deeper insights into application investments, network utilization, resource use, and Skype for Business implementation success factors. Using Extreme Networks made it quick and easy for us to incorporate the built-in QoS to deliver the best user experience to all of our employees across the City. - Garrett Solberg, Senior Network Architect, City of Bellevue 16