SlideShare a Scribd company logo
SD WAN:
MPLS VPN disruption or enhancement?
Fahim Sabir
Director of Architecture & Development, Colt On Demand
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 1
Colt networking solutions
and our customers
─ Launched MPLS based services in early 2000s
─ 1000s of customers
─ Range from 10s to 1000s of sites, all over the world
─ Across all sectors: Finance, Media, Manufacturing, Transport,
etc.
─ Typically headquartered in major European and Asian cities
where we have a fibre presence
─ Launched IPSec sites tunnelled over the internet in late
2000s, long before SD WAN came into existence
─ Introduced SD-WAN capability into our networking solutions in
2016, partnering with Versa Networks for the platform
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 2
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 3
The CIO challenge hasn’t
really changed
─ Do more with less
─ Exponential growth in bandwidth requirements – Gbps world
─ Greater agility
─ Highly distributed organisations, all sites need connectivity
─ Measured by spend and application performance
─ Consumer experiences have set the bar much higher
─ Self-service no longer a ‘nice to have’
─ Need the cutting edge without the disruption of a big migration
Both MPLS and IPSec over Internet have
pros and cons
MPLS
― High level of guaranteed performance
― Very expensive per Gbps, especially for
off-net locations
Use when applications are latency, performance
and security sensitive
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 4
IPSec over Internet
― Performance not guaranteed
― Commodity connectivity which is cheaper
and available everywhere
Use when bandwidth is key and performance is
not critical or can’t be controlled
Connectivity isn’t what makes
SD WAN special. The intelligence
and service experience we can add
to the connectivity is.
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 5
Almost every networking solution
RFI received by Colt in the last 18
months has requirements that are
best solved by SD WAN
capabilities, whilst demanding
performance, security and reliability
that can only be delivered by an
MPLS underlay, at a price point
closer to commodity internet
connectivity.
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 6
High level architecture
MPLS Internet
x86 CPEs
Cloud
MPLS  SD WAN
Gateways
x86 CPEs
Control
MPLS IPVPN
Internet
IPSec
Director and
Analytics
Custom Portal
BSS/OSS
systems
Traditional
CPEs
Firewall VNF
Firewall VNF
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 7
― Versa Networks based platform
― Commodity Atom based CPEs – alternate option high performance Xeon D
based CPE due 2017Q4
― VNFs on CPE to provide additional value, currently firewall, others planned
― Direct site-to-site IPSec tunnels where connectivity is over the Internet
― Custom portal offering control and analytics
― Integrated to existing MPLS architecture
― Integrated to existing BSS/OSS platforms
Architecture benefits
─ Delivers a good balance of cost, performance, security and
agility without sacrificing on any of these
─ The customer can validate the SD WAN capability without
committing to a big network rollout or migration
─ The customer can execute the migration to a full SD-WAN
based solution on a rolling basis
─ End-to-end service assurance from a single operator across
‘legacy’ and next generation networks.
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 8
Challenge #1: Expensive off-net MPLS connectivity
Solution: Hybrid MPLS and IPSec over
Internet connectivity
― Premium (MPLS) and value (IPSec over Internet) paths
back to the network
― Default path for each type of traffic, determined by basic
layer 4 analysis, or DPI (2017Q4)
― Alternate path for each type of traffic based on some
steering criteria (latency, available bandwidth)
― Self-service policy setting
― Analytics
MPLS Internet
x86 CPE
Cloud
MPLS  SD WAN
Gateway
x86 CPE
MPLS IPVPN
Internet
IPSec
9
Challenge #2: Exploding internet bandwidth requirements
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 10
MPLS Internet
x86 CPE
Cloud
MPLS  SD WAN
Gateway
x86 CPE
MPLS IPVPN
Internet
IPSecSolution: Local internet breakout
― Traditional used central gateways to break out from the
MPLS core
― Premium bandwidth is reserved for applications that
need it
― Internet services that rely on geolocation work as they
should
― Improved latency for remote sites
Challenge #3: Internet security threats
04 October 2017 11
MPLS Internet
x86 CPE
Cloud
MPLS  SD WAN
Gateway
x86 CPE
MPLS IPVPN
Internet
IPSecSolution: Firewall VNF
― Layer 4 firewall.
― Logging
― Analytics of rule hits
― Resides on the same CPE, additional
hardware not needed
― Multiple firewall types supported (due
2018)
Development continues…
Near term developments include…
― Dual CPE support, with load balancing/redundancy
― More than 2 connections
― Advanced firewall and steering capabilities
― Advanced analytics
― Sub-networks/multi-VRF support
― High performance Xeon D based CPE
― More network functions (application optimisation)
― Support for MPLS only connectivity with an x86 CPE
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 12
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 13
Learnings as an operator
― Feature parity is expected with the network solutions
customers already have. Even the basic stuff needs to be
rebuilt from scratch
― Customer pipeline initially drives the roadmap, because
demand is greater than development velocity
― Customer experience implications must drive every decision
― The commodity compute+software world is very different
from the custom hardware world. For everyone
― Service assurance models need to be rethought for
networks which are part on-net and part overlay
― There aren’t many people available in the market with the
technical skills needed. Cross training is key
― A close working relationship with your SD WAN platform
vendor is a necessary foundation
Thank you
04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 14

More Related Content

PPTX
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
PDF
SD-WAN for Service Providers - VeloCloud
PPTX
SD-WAN 2.0: Building a Better SD-WAN, October 2016
PDF
SD-WAN for Public & Private Clouds - VeloCloud
PDF
MetTel SD-WAN Hidden Benefits - webinar deck - Jan '17
PDF
Secure Your Network for Scale & the Cloud
PDF
CloudGenix_Customer Presentation
PDF
Verizon Managed SD-WAN with Cisco IWAN
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
SD-WAN for Service Providers - VeloCloud
SD-WAN 2.0: Building a Better SD-WAN, October 2016
SD-WAN for Public & Private Clouds - VeloCloud
MetTel SD-WAN Hidden Benefits - webinar deck - Jan '17
Secure Your Network for Scale & the Cloud
CloudGenix_Customer Presentation
Verizon Managed SD-WAN with Cisco IWAN

What's hot (20)

PDF
A Better Architecture for Hybrid WAN - VeloCloud
PDF
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
PDF
Software-Defined WAN 101
PDF
SD-WAN for Construction - Solution Brief
PDF
Tech Talk by Tim Van Herck: SDN & NFV for WAN
PPTX
Presentation NetScaler SD-WAN
PDF
What SD-WAN Means for Enterprise
PDF
SD-WAN Economics 101 - VeloCloud
PPTX
The greatest SDWAN sales slidedeck ever created
PDF
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
PDF
Citrix Netscaler SD WAN
PDF
An SD-WAN Bill of Rights
PDF
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
PDF
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
PPTX
SD-WAN & Hybrid-WAN Solutions for CSPs
PDF
The Power to Declare Network Independence - VeloCloud
PPTX
PPTX
SD WAN
PPT
SD-WAN: Why should you care?
PDF
SD WAN
A Better Architecture for Hybrid WAN - VeloCloud
Maximizing SD-WAN Architecture with Service Chaining - VeloCloud
Software-Defined WAN 101
SD-WAN for Construction - Solution Brief
Tech Talk by Tim Van Herck: SDN & NFV for WAN
Presentation NetScaler SD-WAN
What SD-WAN Means for Enterprise
SD-WAN Economics 101 - VeloCloud
The greatest SDWAN sales slidedeck ever created
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
Citrix Netscaler SD WAN
An SD-WAN Bill of Rights
SD-WAN Architecture Matters - Dr. Jim Metzler & VeloCloud
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
SD-WAN & Hybrid-WAN Solutions for CSPs
The Power to Declare Network Independence - VeloCloud
SD WAN
SD-WAN: Why should you care?
SD WAN
Ad

Viewers also liked (20)

PDF
Software Defined WAN – SD-WAN
PPTX
Zigbee network
PDF
What does Web2 do for us?
PPT
Microsoft Active Directory
PPT
Active Directory Training
PPSX
Installing windows server 2016 TP 4
PPTX
10 reasons you'll like Windows Server 2016
PPTX
Дмитрий Дурасов-«Технологии контейнеризации в Windows Server 2016»
PDF
MCSA: Windows Server 2016
PDF
MPLS Concepts and Fundamentals
PPTX
Introduction to Active Directory
PPTX
Windows Server 2008 Active Directory
PPTX
Deploying Windows Containers on Windows Server 2016
PPT
Zigbee
PPTX
Whats new in Microsoft Windows Server 2016 Clustering and Storage
PDF
SDN and NFV в банковской сфере
PDF
Enterprise WAN Evolution with SD-WAN
PDF
Introduction to Windows Containers
PPTX
Windows server2016 presentation
PPTX
zigbee full ppt
Software Defined WAN – SD-WAN
Zigbee network
What does Web2 do for us?
Microsoft Active Directory
Active Directory Training
Installing windows server 2016 TP 4
10 reasons you'll like Windows Server 2016
Дмитрий Дурасов-«Технологии контейнеризации в Windows Server 2016»
MCSA: Windows Server 2016
MPLS Concepts and Fundamentals
Introduction to Active Directory
Windows Server 2008 Active Directory
Deploying Windows Containers on Windows Server 2016
Zigbee
Whats new in Microsoft Windows Server 2016 Clustering and Storage
SDN and NFV в банковской сфере
Enterprise WAN Evolution with SD-WAN
Introduction to Windows Containers
Windows server2016 presentation
zigbee full ppt
Ad

Similar to SD WAN MPLS service disruption or enhancement (20)

PDF
SDWAN vs MPLS: What Enterprises need?
PPT
Cisco MPLS
PPTX
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
PDF
The business case for SD WAN in the enterprise
PDF
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
PPTX
Presentation NetScaler SD-WAN - David Gallo
PDF
How Enterprises will Benefit from SDN
PDF
Cisco Connect 2018 Philippines - cisco sd-wan-next generation wan to power yo...
PPTX
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
PDF
MPLS-VPN-Technology.pdf
PDF
Cisco Connect 2018 Vietnam - Cisco sd-wan-next generation wan to power your d...
PDF
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
PPTX
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
PPTX
Problems with enterprise wan solutions - The Cloud X Ecosystem
PDF
The critical role of NFV orchestration for SD-WAN services
PPTX
SDN/NFV: Create a network that’s ahead of your business
PPT
SBC Data/IP Capabilities NetWorld Interop
PDF
Accelerating SDN Applications with Open Source Network Overlays
PDF
Cloud Services: Is the Transport Network a Utility or Differentiator
PPTX
Level 3 Hybrid WAN/SDN Defined
SDWAN vs MPLS: What Enterprises need?
Cisco MPLS
PLNOG 22 - Denis Zotov - SD-WAN - typowe i nietypowe zastosowania
The business case for SD WAN in the enterprise
Cisco Connect Toronto 2017 - Understanding Cisco Next Generation SD-WAN
Presentation NetScaler SD-WAN - David Gallo
How Enterprises will Benefit from SDN
Cisco Connect 2018 Philippines - cisco sd-wan-next generation wan to power yo...
[Cisco Connect 2018 - Vietnam] 3. rajinder singh cisco sd-wan-next generati...
MPLS-VPN-Technology.pdf
Cisco Connect 2018 Vietnam - Cisco sd-wan-next generation wan to power your d...
[Cisco Connect 2018 - Vietnam] Rajinder singh cisco sd-wan-next generation ...
Adopting SD-WAN With Confidence: How To Assure and Troubleshoot Internet-base...
Problems with enterprise wan solutions - The Cloud X Ecosystem
The critical role of NFV orchestration for SD-WAN services
SDN/NFV: Create a network that’s ahead of your business
SBC Data/IP Capabilities NetWorld Interop
Accelerating SDN Applications with Open Source Network Overlays
Cloud Services: Is the Transport Network a Utility or Differentiator
Level 3 Hybrid WAN/SDN Defined

More from Colt Technology Services (16)

PDF
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
PDF
Colt's evolution from MPLS to Cloud Networking
PDF
Colt SDN and NFV - The Route to Automation
PDF
Network Automation at Colt
PDF
Colt Network On Demand
PDF
Colt Optical SDN Innovation
PDF
Colt SD-WAN experience learnings and future plans
PPTX
Colt inter-provider SDN NNIs and APIs
PPTX
SDN/NFV architecture vision and reality
PDF
OSS in the era of SDN and NFV: Evolution vs Revolution - What we can learn f...
PDF
Colt Novitas SDN World Congress 2015
PDF
Colt VCPE and NFV at L123 SDN WC 2015
PDF
Software Defined Future
PDF
State of Packet Optical Integration
PDF
Colt: The Future of Telco Cloud
PDF
Caso de estudio: Las ventajas de la nube gestionada por Colt son comprobadas ...
Colt's L3 VPN Evolution: Towards Hybrid MPLS and SD WAN
Colt's evolution from MPLS to Cloud Networking
Colt SDN and NFV - The Route to Automation
Network Automation at Colt
Colt Network On Demand
Colt Optical SDN Innovation
Colt SD-WAN experience learnings and future plans
Colt inter-provider SDN NNIs and APIs
SDN/NFV architecture vision and reality
OSS in the era of SDN and NFV: Evolution vs Revolution - What we can learn f...
Colt Novitas SDN World Congress 2015
Colt VCPE and NFV at L123 SDN WC 2015
Software Defined Future
State of Packet Optical Integration
Colt: The Future of Telco Cloud
Caso de estudio: Las ventajas de la nube gestionada por Colt son comprobadas ...

Recently uploaded (20)

PDF
Approach and Philosophy of On baking technology
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
PDF
GDG Cloud Iasi [PUBLIC] Florian Blaga - Unveiling the Evolution of Cybersecur...
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Machine learning based COVID-19 study performance prediction
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PDF
Electronic commerce courselecture one. Pdf
Approach and Philosophy of On baking technology
Chapter 3 Spatial Domain Image Processing.pdf
solutions_manual_-_materials___processing_in_manufacturing__demargo_.pdf
The Rise and Fall of 3GPP – Time for a Sabbatical?
[발표본] 너의 과제는 클라우드에 있어_KTDS_김동현_20250524.pdf
GDG Cloud Iasi [PUBLIC] Florian Blaga - Unveiling the Evolution of Cybersecur...
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Understanding_Digital_Forensics_Presentation.pptx
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
“AI and Expert System Decision Support & Business Intelligence Systems”
Machine learning based COVID-19 study performance prediction
NewMind AI Weekly Chronicles - August'25 Week I
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Dropbox Q2 2025 Financial Results & Investor Presentation
Per capita expenditure prediction using model stacking based on satellite ima...
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Diabetes mellitus diagnosis method based random forest with bat algorithm
Electronic commerce courselecture one. Pdf

SD WAN MPLS service disruption or enhancement

  • 1. SD WAN: MPLS VPN disruption or enhancement? Fahim Sabir Director of Architecture & Development, Colt On Demand 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 1
  • 2. Colt networking solutions and our customers ─ Launched MPLS based services in early 2000s ─ 1000s of customers ─ Range from 10s to 1000s of sites, all over the world ─ Across all sectors: Finance, Media, Manufacturing, Transport, etc. ─ Typically headquartered in major European and Asian cities where we have a fibre presence ─ Launched IPSec sites tunnelled over the internet in late 2000s, long before SD WAN came into existence ─ Introduced SD-WAN capability into our networking solutions in 2016, partnering with Versa Networks for the platform 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 2
  • 3. 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 3 The CIO challenge hasn’t really changed ─ Do more with less ─ Exponential growth in bandwidth requirements – Gbps world ─ Greater agility ─ Highly distributed organisations, all sites need connectivity ─ Measured by spend and application performance ─ Consumer experiences have set the bar much higher ─ Self-service no longer a ‘nice to have’ ─ Need the cutting edge without the disruption of a big migration
  • 4. Both MPLS and IPSec over Internet have pros and cons MPLS ― High level of guaranteed performance ― Very expensive per Gbps, especially for off-net locations Use when applications are latency, performance and security sensitive 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 4 IPSec over Internet ― Performance not guaranteed ― Commodity connectivity which is cheaper and available everywhere Use when bandwidth is key and performance is not critical or can’t be controlled
  • 5. Connectivity isn’t what makes SD WAN special. The intelligence and service experience we can add to the connectivity is. 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 5
  • 6. Almost every networking solution RFI received by Colt in the last 18 months has requirements that are best solved by SD WAN capabilities, whilst demanding performance, security and reliability that can only be delivered by an MPLS underlay, at a price point closer to commodity internet connectivity. 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 6
  • 7. High level architecture MPLS Internet x86 CPEs Cloud MPLS  SD WAN Gateways x86 CPEs Control MPLS IPVPN Internet IPSec Director and Analytics Custom Portal BSS/OSS systems Traditional CPEs Firewall VNF Firewall VNF 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 7 ― Versa Networks based platform ― Commodity Atom based CPEs – alternate option high performance Xeon D based CPE due 2017Q4 ― VNFs on CPE to provide additional value, currently firewall, others planned ― Direct site-to-site IPSec tunnels where connectivity is over the Internet ― Custom portal offering control and analytics ― Integrated to existing MPLS architecture ― Integrated to existing BSS/OSS platforms
  • 8. Architecture benefits ─ Delivers a good balance of cost, performance, security and agility without sacrificing on any of these ─ The customer can validate the SD WAN capability without committing to a big network rollout or migration ─ The customer can execute the migration to a full SD-WAN based solution on a rolling basis ─ End-to-end service assurance from a single operator across ‘legacy’ and next generation networks. 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 8
  • 9. Challenge #1: Expensive off-net MPLS connectivity Solution: Hybrid MPLS and IPSec over Internet connectivity ― Premium (MPLS) and value (IPSec over Internet) paths back to the network ― Default path for each type of traffic, determined by basic layer 4 analysis, or DPI (2017Q4) ― Alternate path for each type of traffic based on some steering criteria (latency, available bandwidth) ― Self-service policy setting ― Analytics MPLS Internet x86 CPE Cloud MPLS  SD WAN Gateway x86 CPE MPLS IPVPN Internet IPSec 9
  • 10. Challenge #2: Exploding internet bandwidth requirements 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 10 MPLS Internet x86 CPE Cloud MPLS  SD WAN Gateway x86 CPE MPLS IPVPN Internet IPSecSolution: Local internet breakout ― Traditional used central gateways to break out from the MPLS core ― Premium bandwidth is reserved for applications that need it ― Internet services that rely on geolocation work as they should ― Improved latency for remote sites
  • 11. Challenge #3: Internet security threats 04 October 2017 11 MPLS Internet x86 CPE Cloud MPLS  SD WAN Gateway x86 CPE MPLS IPVPN Internet IPSecSolution: Firewall VNF ― Layer 4 firewall. ― Logging ― Analytics of rule hits ― Resides on the same CPE, additional hardware not needed ― Multiple firewall types supported (due 2018)
  • 12. Development continues… Near term developments include… ― Dual CPE support, with load balancing/redundancy ― More than 2 connections ― Advanced firewall and steering capabilities ― Advanced analytics ― Sub-networks/multi-VRF support ― High performance Xeon D based CPE ― More network functions (application optimisation) ― Support for MPLS only connectivity with an x86 CPE 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 12
  • 13. 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 13 Learnings as an operator ― Feature parity is expected with the network solutions customers already have. Even the basic stuff needs to be rebuilt from scratch ― Customer pipeline initially drives the roadmap, because demand is greater than development velocity ― Customer experience implications must drive every decision ― The commodity compute+software world is very different from the custom hardware world. For everyone ― Service assurance models need to be rethought for networks which are part on-net and part overlay ― There aren’t many people available in the market with the technical skills needed. Cross training is key ― A close working relationship with your SD WAN platform vendor is a necessary foundation
  • 14. Thank you 04 October 2017 SD WAN: MPLS VPN disruption or enhancement? 14