a new breed of cloud managementintrinsic and multi-layered security capabilities wireless fast,...

31
Mark Lee June 2020 Cloud Driven Networking a new breed of cloud management

Upload: others

Post on 11-Aug-2020

6 views

Category:

Documents


0 download

TRANSCRIPT

Page 1: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Mark Lee

June 2020

Cloud Driven Networkinga new breed of cloud management

Page 2: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

50%

of Deployments will

be Cloud-Managed

BY 2021

3x

Cloud Networking

Growth Rate

TRADITIONAL

WHEN ARE PEOPLE MOVING TO THE CLOUD?

$7B

Market vs

$2B Today

BY 2023

#1

Network Mgmt

Approach

BY 2020

NOW!!!

Page 3: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Continuous Innovation

and Delivery

SPEED SERVICEValue-add Partner

and Tech Ecosystem

SMARTSelf-Learning

ML/AI Networks

SECURITYCertified Security,

Hyperscale

SCALEMulti-Tier, Multi-Tenanted,

and Unlimited Growth

SIMPLEProvisioning and

Management

WHY ARE PEOPLE MOVING TO THE CLOUD?

Page 4: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

The Evolution of Wi-Fi Architecture

Distributed Control

Hybrid Controller

Centralized Controller

No Control

Cloud Controller

NMS

NMS

NMS

Limited Cloud Control

Cloud

Management

Distributed Control

Thin AP

Autonomous AP

Thin AP

Hybrid AP

Physical

Controller

Virtual

Controller

1

2

3

4

5

Page 5: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CLOUD-DRIVEN NETWORKING – WHAT IS IT?

Flexible

Agile

Secure

Technology

Flexible

Agile

Secure

Technology

Page 6: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

IS IT FLEXIBLE?

Page 7: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

AGILITY

Protection

Page 8: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

IS CLOUD NETWORKING SECURE?

Page 9: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

TECHNOLOGY

Vendor Infrastructure

Ecosystem Infrastructure

Partner Apps

TELEMETRY

Vendor Apps

Customer AppsCloud-Driven Network

Page 10: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

or at least a cloud messageEveryone has a Cloud

Reality:

Page 11: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Not All Clouds Are the Same:

3rd

Generation

1st

Generation

2nd

Generation

4th

Generation

In Cloud Networking

Page 12: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

1st Generation Cloud

• Single tenant

• Virtualized

• VM Servers in a data center

• Not globally scalable

• On-premises was more prevalent

1st

Generation

AAA Networks Inc

Our AAA Networks Inc

AAA Networks Inc

AAA Networks Inc

Page 13: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

2nd Generation Cloud

• Security

• Data Analytics

• Resiliency

• Introduction of microservices

• True multitenancy

• Continuous delivery

• 1st to 2nd generation is not easy to use

2nd

Generation

Page 14: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

3rd Generation Cloud

• Machine Learning (ML)

• Artificial Intelligence (AI)

• Real-time innovation

• Microservices

• Serverless computing

• Cloud that is truly elastic

• Performance, Flexibility &

Resiliency

3rd

Generation

Page 15: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Network Monitoring Powered by ML & AI

Real-time “access

network health” in

a single view

Historical “access

network health” in

a single view

Machine Learning

calibrated network

health metrics

Single source

of “truth” for

access network

health

90 Days of

auditable access

network health

data

Page 16: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Client Monitoring Powered by ML & AI

Real-time “total

client experience”

in a single view

Historical

“total client

experience” in a

single view

Machine Learning

calibrated client

health metrics

Single source of

“truth” for client

trouble-shooting

30 Days of

auditable client

experience data

Page 17: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Troubleshooting

Identify and

troubleshoot

client

association

Issues

Identify and

troubleshoot client

authentication

issues

Client Trail info

identifies roam

times and any

issues

Ability to monitor

and detect issues

with DHCP, DNS or

DG access

Provide a high-

level view of the

type and number

of issues

Page 18: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Our Cloud : ExtremeCloud™ IQ

Page 19: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.19

Accelerating at Cloud Speed

Cloud NetworkingTODAY

CUSTOMER BENEFITS

CLOUD EVOLUTION

1st Gen 2nd Gen

FlexibilityScalability

Cost Savings

SecurityAnalyticsResiliency

ContinuousIntegration

Single-tenantVirtualized

ContinuousDelivery

True Multi-tenantMicroservices

ExtremeCloud™ IQ Before Apr 2020

3rd Gen

Real-time Innovation Artificial Intelligence

Machine Learning

Continuous Deployment Continuous Operation Serverless Computing

ExtremeCloud™ IQNOW

4th Gen

Self HealingDynamic Scalability

Agnostic Deployment

Containerized MicroservicesKubernetes

11 9’s Data Durability

Page 20: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Easy Connect & Management

SSID :extreme

1 2 3 4Connect Discover Provision GO !!!

▪ Automated Updates- Customers always have the latest features available, without having to use in-house resources to perform the upgrades

▪ True Plug and Play

Page 21: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

▪ Continuous Delivery▪ Infinitely Scalable▪ Multi-Tiered Tenancy▪ Comparative Analytics

▪ Controlled Delivery▪ Infinitely Scalable▪ Multi-Tiered Tenancy▪ Stand Alone

▪ Quarterly SW Updates▪ Limited Scale (5K devices)▪ Multi-Tiered Tenancy▪ Stand Alone

PUBLIC CLOUD

EXTREME RDC EXTREME RDC CUSTOMER RDC PARTNER RDC

PRIVATE CLOUD LOCAL CLOUD

VIQ 3

OR

G 1

OR

G 2

OR

G 3

VIQ 1

VIQ 2

VIQ 3

OR

G 1

OR

G 2

OR

G 3

VIQ 1

VIQ 2

VIQ 1

OR

G 1

OR

G 2

OR

G 3

LBS LBSOPTIONAL LBS

GDC GDC

ANY CUSTOMER LARGE CUSTOMER /PARTNER DC VM ENVIRONMENT

VMware

Flexible Deployment Options

21

Page 22: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

Cloud Platform Agnostic

22

Page 23: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

Geographically Distributed

▪ Extreme Networks has designed a geographically distributed public cloud architecture with data

centers located in North America, Europe, and Asia Pacific.

▪ This optimizes regional service performance for our cloud networking services, and also enables

Extreme to demonstrate compliance with local data security and privacy regulations.

▪ Customer data resides at the RDC-level and stays in region and in-country

REGIONAL DATA CENTER

GLOBAL DATA CENTER

PRIVATE DATA CENTERSEOUL

23

Page 24: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

Data security and privacy

▪ First major cloud-managed networking vendor

to attain ISO/IEC 27001 certification for its

Information Security Management Systems

(ISMS)

▪ ExtremeCloud IQ is equipped with features

that enables our customers to address full

compliance with the European Union’s

General Data Protection Regulation (GDPR)

▪ In addition, ExtremeCloud IQ provides logging

and audit tools to track these actions so our

customers can better document them

24

Page 25: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.25

Wireless service and Dedicated WIPS from One AP

Dedicated WIPS service without affecting WLAN service

Separate sensor radio continuously scans for 2.4 / 5GHz

Radio 1 Radio 2

WIFI Service2.4Ghz

WIFI Service5GHz

wIPS Sensor(Scan 2.4&5Ghz)

Radio 3

AP 410/460 Series(WIFI 6)

Page 26: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

WIPS

Wireless Infra

Block Rogue Client in WPA3 PMF enabled environment

Challenge – Clients operating in PMF environments will not support de-authentication frames

AirDefense Security –Ability to detect & mitigate rogue clients operating in PMF environments

• Supported only for Extreme Wireless infrastructure

26

Page 27: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

Cloud Portfolio

VPN Gateway Network Access Control

SD-WAN

SWITCHING

WLAN

CLOUD MANAGED FULL STACK

Software

ExtremeCloud™ IQ

Page 28: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

EXTREME AP PORTFOLIO: Wi-Fi 6 – 802.11ax RefreshVALUE ENTERPRISE PREMIER

AP360i/e

Dual Radio 2+2 STREAM Tri Radio - 2+4 STREAM Dual Radio 4+4 STREAM

AP310i/e

AP510i/e

AP560i/h

AP460CAP460S6C AP460S12C

AP410CAP305C/CX

AP510C/CX(aka AP650/x)

KEY:IndoorOutdoor

AP460i/e

AP410i/e

AP505i

Page 29: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.

Industry First the Cloud-Driven End-to-End solution

Open Ecosystem

Device, Stack, Cloud, and

Application Partners

Insights and

AnalyticsBusiness and

IT Insights

Automation

Network and

Ecosystem

Security and

Access ControlIntrinsic and Multi-layered

Security Capabilities

Wireless

Fast, Reliable,

Secure, and

Scalable Mobility Switching

Simple, Agile, Secure

Edge, Campus, and

Data Center Connectivity Routing

Versatile, Intelligent,

High-Scalability,

and Performance

Management and

OrchestrationEnd-to-End Network

Management and Visibility

ExtremeCloud™

Fully Flexible Public and Private Deployment Options Public Cloud Private CloudLocal Cloud

Wi-Fi 6, Dual 5GHz, Indoor, Outdoor,

Industrial, Wall Plate, Pluggable

Access/Edge, Standalone, Stackable,

Aggregation, CoreEdge Routing, Enterprise Routing,

Service Provider Routing

Built on 3rd Generation Cloud, Machine-Learning, and AI Technologies

29

Page 30: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

감사합니다.

Page 31: a new breed of cloud managementIntrinsic and Multi-layered Security Capabilities Wireless Fast, Reliable, Secure, and Scalable Mobility Switching Simple, Agile, Secure Edge, Campus,

CONFIDENTIAL. ©EXTREME NETWORKS, INC. ALL RIGHTS RESERVED.31