Aruba Remote Networks

32
CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved Virtual Branch Networks Overview

description

 

Transcript of Aruba Remote Networks

Page 1: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Virtual Branch NetworksOverviewVirtual Branch NetworksOverview

Page 2: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Virtual Branch NetworksNo-Compromise Functionality

EasierLower Cost

Full-time Homeworkers

Branch & Satellite Offices

Stores & Clinics

Kiosks, Machines & Devices

Temporary Facilities

Supplier, Contractor &

Partner Facilities

Page 3: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

ProblemProblem

The Cost and Complexityto deploy and manage fully functional and

secure Remote Networks

Applications are Centralizing

Data Voice Video

Users are Distributing

Branch Telework Continuity Partners

Page 4: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Client VPN Solves The Mobile WorkerClient VPN Solves The Mobile Worker

Centralized Per-user control Strong security “Transport independent” Low-cost & easy to deploy

VPN

MobileWorker

OccasionalTelecommuter

WorkAt home

“Micro” Branch

Small Branch

Medium Branch

Page 5: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

What About Branch Office Needs?What About Branch Office Needs?

VPN

• Single user

• Data-only access

• Device-dependent

• User-initiated sessions

• Software

“Outside” network experience

MobileWorker

OccasionalTelecommuter

WorkAt home

“Micro” Branch

Small Branch

Medium Branch

• Multiple users

• Data+Voice+Video

• Multiple devices

• “Always On”

• Infrastructure

“Inside” network experience

Page 6: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

The Traditional Branch SolutionThe Traditional Branch Solution

Router/VPN Firewalls

MobileWorker

OccasionalTelecommuter

WorkAt home

“Micro” Branch

Small Branch

Medium Branch

• Complex features

• Subnet/port policy model

• Static configurations

• 1st-generation wireless

• Piecemeal management

IT must trade off cost and complexity against functionality and security

Page 7: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

VBN Centralized Per-user control Strong security “Transport independent” Low Cost & easy to deploy

Solution: Virtual BRANCH NetworksSolution: Virtual BRANCH Networks

VPN

VPN “Plus ” for the Branch

VBN Centralized Per-user control Strong security “Transport independent” Low Cost & easy to deploy

MobileWorker

OccasionalTelecommuter

WorkAt home

“Micro” Branch

Small Branch

Medium Branch

Page 8: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Datacenters

Aruba Virtual Branch Network SolutionAruba Virtual Branch Network Solution

Data Center

Controllers VPN Concentrator PLUS Centralized Remote Network Functions PLUS Virtualized Remote Network Operation

1

Remote Access Points (RAPs) VPN LAN Extension PLUS Local LAN Connectivity PLUS Local Policy Enforcement

2

AirWave Management PlatformConfiguration Management PLUS Total Operations Management

3

Page 9: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

To Datacenters

ClientVPN

WANPlug-Play Client

EnterpriseSecureWi-Fi

LANLocal Connectivity

EnterpriseSecureWired

Remote Access Points Remote Access Points

LAN/WAN/Internet

Access Forwarding Priority

Per User/Device/SessionDynamic Policies via Controller

PEF

DistributedPolicy Enforcement

Firewall Engine

Page 10: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

SecureEnterpriseWireless

Intrusion Prevention

Corporate WLAN

Guest Access

IP Voice

& Video

Extended PBX

Local PBX

NAS & Servers

Printers

Network Devices

Wired Clients

EnterpriseSecured

Wired

No Compromise FunctionalityNo Compromise Functionality

PEF Enforces PolicyPer User/Device/SessionDynamically

LocalForwarding

Split Forwarding

Realtime Visibility Realtime ControlTo The User

PEF

Page 11: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Breakthrough Price-PerformanceBreakthrough Price-Performance

RAP-2wg2 Secure-Ports802.11b/g Wi-Fi$99 US List

RAP-55 Secure-PortsUSB-WAN$395 US List

RAP-5wn5 Secure-Ports802.11a/b/g/nUSB-WAN$595 US List

6508 Secure-PortsUSB-WAN, NAS/Print

6518 Secure-Ports802.11a/b/g/n Wi-Fi USB-WAN, NAS/Print

6208 Secure-PortsUSB-WAN

Medium To Large Branches

“Micro” Branch Small Branch

Starting At $1,495 US List

1-5 users Up to 50 users

Up to 250 users

Page 12: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

To Branch

Controllers Controllers

Centralized, Fully Integrated SolutionRealtime Control of Remote Access Points

VPNServer

RemoteWireless LAN

Control

RemoteWired Security

Control

PEF

DistributedPolicy Enforcement

Firewall Engine

RADIUS/LDAP/AD

APIs/Integration

Management Hooks

Page 13: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

ArubaOS Software

# RAPs 128 256 512 Up to 8,192

# Users 512 1024 2048 Up to 32,768

Throughput 1.6Gbps 4Gbps 8Gbps Up To 32Gbps

Purpose Built, Scalable ControllersPurpose Built, Scalable Controllers

A3200 A3400 A3600

Common software platform that scales to support any network

Starting Under $10,000 U.S. List

A6000-M3

Page 14: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

One Integrated Operations Management Solution

AirWave Management Platform

Security & Audit Team

Compliance Mgmt & Security• Automated

compliance audits & reports

• Wired & wireless intrusion detection

Network Engineering

Provisioning & Configuration

• Provision System

• Centralized configuration & change control

• System Diagnostics

Monitoring &Visualization

• Full visibility to every remote user & device

• Remote diagnostics & automated troubleshooting

L1/L2 Help Desk

Reporting & Analysis

• Usage & trend reports

• Triggers & alerts

• APIs for 3rd party integration

Executive Management

Wired and Wireless UnifiedRole Based Access Control

Page 15: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

SecureCorp

Network

Easy To DeployEasy To Deploy

1. Plug In RAP to ANY network

2. Enter controller address

3. Secure connection established (2-factor optional)

4. Controller automatically updates and provisions RAP

5. Secure remote network automatically comes up

my.controller.com

PEF

End User Installable, No Truck-Rolls!

SecureCorp

NetworkPEF

SecureCorp

NetworkPEF

Page 16: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Easy To ManageEasy To Manage

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

Monitoring

Changes

Troubleshooting

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

x “N”Traditional

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

Monitoring

Changes

Troubleshooting

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

Monitoring

Changes

Troubleshooting

End-UserHelp-Desk

“Assist”Tools

Image Mgmt

Config Mgmt

IP Mgmt

Firmware

Monitoring

Changes

Troubleshooting

End-UserHelp-Desk

“Assist”Tools

Key Functions Centralized & VirtualizedReduction In Managed Devices to One

Realtime Remote Visibility and ControlUser LevelPacket LevelInstant Changes

x 1

Page 17: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Transport IndependenceTransport Independence

SecureCorp

BranchNetwork

AnyWAN/LAN

LAN Challenge Solved User Connectivity Security Policy Traffic Policy

Transport Is A “Cloud”

Buy transport from the most convenient supplier

RAP Drops Traffic To It or Tunnels Through It

Management Solved Realtime Visibility Realtime Control

Page 18: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Dramatic Cost AdvantageDramatic Cost Advantage

Aruba VBN Router/Firewall

Ongoing Mgmt

Deployment

HW/SW/Support

Page 19: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

  Aruba VBN Cisco ISR

     

Remote Access Device (RAP-5WN vs. ISR881) $ 29,750 $ 49,950

3G Backhaul for Remote Access Device (Only 3G modem required for Aruba) $ - $ 42,500

Advanced Wireless (Integrated for Aruba) $ - $ 7,500

Branch Office (50 Total) Equipment Costs $ 29,750 $ 99,950

   

Remote Access Device (RAP-2WG vs. ISR861) $ 19,800 $ 159,800

Home Office (200 Total) Equipment Costs $ 19,800 $ 159,800

     

Headend (with redundancy) Equipment Costs $ 71,410 $ 55,980

     

Network Management Software / Server Costs $ 37,490 $ 98,240

   

Total Equipment Costs $ 128,700 $ 314,020

     

Maintenance Costs $ 56,183 $ 149,029

     

Network Installation Costs $ 15,500 $ 46,500

     

Network Operations at Remote Site (3 times per year) $ 731,250 $ 2,250,000

     

Total Cost Of Ownership - CapEx (HW + Maintenance) $ 184,883 $ 463,049

Total Cost Of Ownership - OpEx (Network Installation and Operations) $ 746,750 $ 2,296,500

3 Year Total Cost Of Ownership $ 931,633 $ 2,759,549

Example: 50 Small Branches + 200 Home BranchesExample: 50 Small Branches + 200 Home Branches

19

TCO CapEx (in $M) TCO OpEx (in $M) TCO Total (in $M)

Aruba VBN Cisco ISR

Page 20: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Single Solution For All Branch NeedsSingle Solution For All Branch Needs

Multiple users,

Multiple devices,

Multiple policies,

ONE NETWORK

EmployeesContractors

PartnersSuppliersGuests

PC’sPrintersPhones

CamerasMachines

Page 21: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

ArubaVBNRemote Networks

EasierLower Cost

Without Compromise

Page 22: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

General Enterprise & Government

Retail Healthcare Education

Branch-at-Home

Home Workers

Virtual Call Center

Business Continuity

Executives

Branch Office

Complete Branch

Wireless Overlay

Branch-in-Branch

Hoteling & Suites

Remote Devices

Kiosks

ATM’s

Security Cameras

Monitoring Systems

Complete Store

Store-in-Store

Wireless & PCI

EMR

Telemedicine

Clinics

Extended Campus

Distance Learning

Wireless Overlay

Broad Applicability

Page 23: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Backup SlidesBackup Slides

Page 24: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Aruba At A GlanceAruba At A Glance

Technology LeaderEnterprise Wireless LAN

• Founded 2001

• NASDAQ: ARUN

• Russell® 2000/3000

• 6,500+ customers in 130 countries

• Financially Strong

• #2 Marketshare

Key Innovations• Centralized Wireless LAN

• User-Centric Policy Enforcement Firewalls

• Total Operations Solution Management

Page 25: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

ProblemProblem

The Cost and Complexityto deploy and manage, fully functional and

secure Remote Networks

Getting EasierMPLS, Broadband & Cellular

Centralized ComputingCloud Services

Getting HarderApplications, Users, Devices

Security and ComplianceWireless & Prioritization

Connectivity & Policy

LANLinks & Routes

WAN

Page 26: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

The Router/Switch/Firewall SolutionThe Router/Switch/Firewall Solution

Strong WAN Capabilities

Replicates Campus Complexity x N• IP, VLANs, Ports, Routes• Static Configuration, Images

Subnet-Based Policy Model• Complex and Limited Security• Handcrafted Priority/QoS• Limited User/Device Level Visibility

1st Generation Wireless Limits Use

Difficult to deploy, manage, control

High Cost hardware & labor

Compromises & Tradeoffs

1. Build “Mini” Campus2. Internetwork 3. Manage Boxes

Page 27: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Comprehensive Network ManagementComprehensive Network Management

AirWave Management Platform Pricing

# of RAPs

25 50 100 200 500 1,000 2,500

U.S. List $5,995 $8,995 $14,250 $19,995 $27,495 $36,995 $84,995

Management Security Location

Page 28: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Expansion & New RequirementsBusiness Structure Change

New Workplace Initiatives

28

When Does VBN Make Sense?When Does VBN Make Sense?

Refresh & End-of-Life

Page 29: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

ProblemProblem

The Cost and Complexityto deploy and manage Branch Networks

Connectivity & Policy

LAN

Getting HarderApplications, Users, Devices

WirelessSecurity and Compliance

Prioritization

Getting EasierMPLS, Broadband & Cellular

Site-Site VPNCentralized Computing

Cloud Services

Links & Routes

WAN

The Low Cost and Easy answer

to deploy and manage Branch Networks

Transport Simplified SOLVED

Problem SolvedProblem Solved

Page 30: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Micro/Home Branch: RAP-2WG (Chuck) Micro/Home Branch: RAP-2WG (Chuck)

• Wireless: single radio 802.11b/g• 100mW radio

• 2 x 10/100 Base-T (RJ-45)• Uplink/tunnel• Secure access port

• 12V DC powered• Tiny Form Factor ≈4” x 3” x 1”• Functionality: wired, wireless, WIPS• ~5Mb/sec throughput • Up to ≈5 users/device• Shipping now

Page 31: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Micro/Small Branch: RAP-5 and RAP-5WN Micro/Small Branch: RAP-5 and RAP-5WN

• Single radio 802.11n, multi-band 802.11a/b/g/n • 3x3 MIMO, integrated antenna

• Hardware accelerated crypto• 1x 10/100/1000Base-T (RJ-45) • 4x 10/100Base-T (RJ-45)• 1x USB 2.0 port• WAN support via EVDO/HSDPA, Ethernet• DC power input• Functionality: wired, wireless, WIPS,

client/mesh• 100Mb/sec+ throughput• Up to ≈50 users• Shipping now* Options vary by model

Page 32: Aruba Remote Networks

CONFIDENTIAL © Copyright 2009. Aruba Networks, Inc. All rights reserved

Medium Branch: 600 FamilyMedium Branch: 600 Family• Single radio 802.11n / multi-band 802.11a/b/g/n• 3x3 MIMO• Hardware accelerated crypto• 2x 10/100/1000Base-T (RJ-45) • 8x 10/100Base-T (RJ-45)• 4x USB 2.0 port• Power-over-Ethernet (PoE)• Network attached storage port• WAN support via EVDO/HSDPA and Ethernet• DC power input• Functionality: wired, wireless, WIPS, client/mesh• 100Mb/sec+ throughput• Up to 256 users• Shipping early summer 2009* Options vary by model