SlideShare a Scribd company logo
v2 March © 2015 Citrix | Confidential
Virtual WAN
© 2015 Citrix | Confidential
The What
Defining CloudBridge
© 2015 Citrix | Confidential
• WAN Optimization
– TCP Optimization
– Compression/De-Duplication
– Protocol Optimization
– Bandwidth Management
CloudBridge WAN Optimization
• 1011011010 SSL 1011011010 SSL 101101110 SSL 1011 101101110 SSL 1011000110011 001110010100
• 1011011101 10011
• 1011011101 10011
• 1011011101 10011
Optimization
• 1011011101 10011000001
• 1011011101 10011
• 1011011101 10011
Branch Office Data Center
MPLS or Private Circuit
© 2015 Citrix | Confidential
• WAN Virtualization as a conceptual overview
– Service critical applications for the modern enterprise
– Leverage the changing capability and capacity of the public
infrastructure
– Always on
– Sometimes it is just about Bandwidth
CloudBridge WAN Virtualization
• Logical bonding of capacity
• Always on availability for the WAN
• Dynamic monitoring for best path
• Transparent Overlay
• Encryption where required
MPLS
Business DSL
LTE Wireless
Capacity Management and Logical Bonding
© 2015 Citrix | Confidential
CloudBridge Edition Summary
Edition Primary Benefits Recommended for
CloudBridge
WAN Op Edition
Optimized and secure application
delivery from DC over private networks
Video Caching
Enhanced Application Visibility
Quality of Service
• WAN Links that suffer from
congestion and will benefit from
Compression
• Long distance / International links
CloudBridge
Virtual WAN Edition
Highly reliable and secure application
delivery from DC or Cloud over public or
private networks
Use MPLS, Broadband internet,
4G/LTE, Satellite links
Enhanced WAN Visibility
Quality of Service
• Increasing Bandwidth needs
• MPLS not available or expensive
• 100% branch application
availability
© 2015 Citrix | Confidential
Virtual WAN Building Blocks and Definitions
Architecture and Defining Virtual WAN
© 2015 Citrix | Confidential
• Virtual WAN Encapsulates flows into a UDP tunnel Port 4980
– All application flows designated for the Virtual WAN service are encapsulated.
– Encryption is applied where required on Public circuits.
– UDP padding includes intelligence for monitoring of circuit state
• Virtual WAN operates as an L2 and L3 device.
– Operates as an L2 device for application flows not designated for VWAN
specific service.
– Operates as an L3 device for flows designated as interesting by policy for the
Virtual WAN.
• All configured Circuits are considered candidates for Virtual WAN
traffic
– Traffic types can be made persistent to a circuit but will use other circuits in
case of failure.
– All circuits are constantly monitored for state.
CloudBridge Virtual WAN Fundamental Concepts
© 2015 Citrix | Confidential
Virtual WAN Terminology Appliances
MCN VWN
• Master Control Node
– Only one primary
– Time keeper for the Virtual WAN
– Logically it is located at DC but the role can be assigned to any appliance
– Configurator for the Virtual WAN
• VWN (Virtual WAN Node)
– Branch appliance
– Inherits its configuration from the MCN
© 2015 Citrix | Confidential
• Virtual Path Service
– Traffic destined for the Virtual WAN are defined by policy
– Comprises all WAN Circuits
– Traffic management performed at each node in the Virtual WAN
Virtual WAN Terminology Circuit Definitions
MCN VWN
Virtual Path Service
© 2015 Citrix | Confidential
• Virtual Path
– Fundamental building block for Virtual WAN Services
– Uni-Directional
– 2X WAN links
– Each Path has has an associated monitor
Virtual WAN Terminology Circuit Definitions
VWN
MCN
Virtual Paths
1
2
3
4
© 2015 Citrix | Confidential
• Internet provisioned circuits add
– Dynamism with the ability to have multiple routed options for
connectivity
– Complexity because they are often Asymmetric making BW
management more complex
Internet Circuits and Virtual Paths
© 2015 Citrix | Confidential
Services and BW Management
Services and BW Management
© 2015 Citrix | Confidential
• Services associated with Virtual WAN
– Virtual WAN Service – Traffic associated by rule or route destined for a
WAN Path and has a traffic management policy
– Intranet Service – Traffic not encapsulated traffic destined for a site with no
Virtual WAN and is associated with a traffic management policy
– Internet – Traffic not encapsulated destined for the internet
– Passthrough – Traffic not accounted for by the other service rules and is
not associated with a BW management policy
Defining Virtual Services
© 2015 Citrix | Confidential
Virtual Services in Action
• Services associated with Virtual WAN
– Note that Passthrough traffic is unaccounted for with
regards to Bandwidth
© 2015 Citrix | Confidential
• 17 traffic management Classes
– 17 Classes
– Can be edited but none added
– Class 10 Realtime = Voice
– Class 11 thru 17 = ICA, RDP, etc
– Class 15 and 16 = CIFS, FTP, etc
Understanding Bandwidth Management “Classes”
© 2015 Citrix | Confidential
Deployment
Network Architecture and HA
© 2015 Citrix | Confidential
Building Capacity with Virtual WAN Zoning
• Virtual WAN capacity considerations
– Maximum of 1Gbps of throughput
– 256 sites
– Refer CloudBridge Data sheet for the latest specifications
256 Sites
HA CB Virtual WAN
PBR Route Policies
© 2015 Citrix | Confidential
• Inline
– Requires VIP for each Virtual WAN service
– LAN routing information
– Services and BW management policies
Basic Deployment Modes
Example 1 Example 2
© 2015 Citrix | Confidential
Basic Deployment Modes
• Inline With HA
– Modified VRRP
– Only one appliance is active at a time
– Both appliances configured in Blocking mode
– Configuration is synced across appliances
© 2015 Citrix | Confidential
Advanced Architecture Considerations Combining Virtual WAN and
Optimization
• Combining WAN Optimization and Virtual WAN
– Virtual WAN should always go after WAN OPT
– Virtual WAN will envelope in UDP obscuring TCP
packets
– Guidelines for good WAN Opt planning do not change
– Asymmetrical routing
– WAN Opt benefits
© 2015 Citrix | Confidential
Advanced Architecture Considerations Combining Virtual WAN and
Optimization
• Combining WAN Optimization and Virtual WAN
out of line
– PBR can be combined with HA
– WCCP adds clustering and resiliency
– WAN opt closer to the LAN than Virtual WAN
© 2015 Citrix | Confidential
Advanced Architecture Considerations Combining Virtual WAN and
Optimization
• Combining WAN Optimization and Virtual WAN
out of line
– PBR can be combined with HA
– WCCP adds clustering and resiliency
– WAN opt closer to the LAN than Virtual WAN
© 2015 Citrix | Confidential
Advanced Architecture Considerations VLAN Trunks
• When spanning a VLAN trunk
– Each VLAN requires a VIP and gateway to host Virtual WAN services
– Routing is required for each path
© 2015 Citrix | Confidential
Building Capacity with Virtual WAN
• Zoning is a method for
– Creating capacity by allocating traffic in manageable segments
– Uses PBR Route Maps to segment load by sites
– HA capabilities require doubling the number of hardware appliances
– Made easier if there is some logic for IP to site allocation
256 Site Zone
256 Site Zone
PBR Route Policies
HA CB Virtual WAN
© 2015 Citrix | Confidential
Work better. Live better.Work better. Live better.

More Related Content

PDF
Digital Transformation through Open Software Defined Infrastructure
PDF
Updates on NFV and SDN Activities from the Broadband Forum
PDF
SD WAN MPLS service disruption or enhancement
PDF
The Interoperability Challenge in Telecom and NFS Environments
PDF
Considerations for Deploying Virtual Network Functions and Services
PDF
Colt’s Carrier SDN & NFV: Experience, Learnings & Future Plans
PDF
Security-as-a-Service using SDN
PDF
Container Service Chaining
Digital Transformation through Open Software Defined Infrastructure
Updates on NFV and SDN Activities from the Broadband Forum
SD WAN MPLS service disruption or enhancement
The Interoperability Challenge in Telecom and NFS Environments
Considerations for Deploying Virtual Network Functions and Services
Colt’s Carrier SDN & NFV: Experience, Learnings & Future Plans
Security-as-a-Service using SDN
Container Service Chaining

What's hot (13)

PDF
Network Evolution and Market Outlook
PDF
Denovo SIP VoIP Termination SBC Session Boarder Controler @ denofolab.com
PDF
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
PDF
A Software Defined WAN Architecture
PDF
Traffic Optimization in Multi-Layered WANs using SDN
PDF
PPTX
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
PDF
A Better Architecture for Hybrid WAN - VeloCloud
PPTX
Integrated services - IntServ
PDF
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
PDF
SDN-Based Enterprise Connectivity Service
PDF
Colt SD-WAN experience learnings and future plans
PDF
SD-WAN Economics 101 - VeloCloud
Network Evolution and Market Outlook
Denovo SIP VoIP Termination SBC Session Boarder Controler @ denofolab.com
Cloud-Delivered SD-WAN is Earth Friendly - VeloCloud
A Software Defined WAN Architecture
Traffic Optimization in Multi-Layered WANs using SDN
WAN Summit NYC: SDN, SD-WAN, NFV - I'm Confused!
A Better Architecture for Hybrid WAN - VeloCloud
Integrated services - IntServ
Amplify Hybrid WAN ROI with SD-WAN - VeloCloud
SDN-Based Enterprise Connectivity Service
Colt SD-WAN experience learnings and future plans
SD-WAN Economics 101 - VeloCloud
Ad

Viewers also liked (6)

PPT
Basic Network Concepts
PPT
Basic concepts of computer Networking
PDF
3 Wege in die Cloud, Sascha Dittmann, Ernst & Young
PDF
IP Routing Tutorial
PPT
BASIC CONCEPTS OF COMPUTER NETWORKS
PPTX
Introduction to computer network
Basic Network Concepts
Basic concepts of computer Networking
3 Wege in die Cloud, Sascha Dittmann, Ernst & Young
IP Routing Tutorial
BASIC CONCEPTS OF COMPUTER NETWORKS
Introduction to computer network
Ad

Similar to Virtual WAN (20)

PDF
Software-Defined WAN 101
PDF
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
PDF
Enabling the Future of Work with SD-WAN
PDF
Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide -...
PDF
Cisco Intelligent Branch - Enabling the Next Generation Branch
PDF
Cisco Intelligent WAN (IWAN) Solution
PPTX
CCNA4 Verson6 Chapter1
PDF
Iwan advantage-v2-140330172853-phpapp01
PPTX
CCNA (R & S) Module 02 - Connecting Networks - Chapter 1
PPTX
ENSA_Module_7.pptx_wide_area_network_concepts
PDF
Cvd iwan design-guide-feb16
PDF
Cisco IWAN – Intelligent Connectivity for Today’s Reality
PPTX
CertifiedNv6_instructorPPT_Chapter1.pptx
PDF
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
PDF
DNA Intelligent WAN Campus Day
PDF
Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)
PPTX
Cisco Intelligent WAN: Enabling the Next-Generation Branch
PPTX
en_perfect_pitch_training_2015.pptx
PDF
CCNAv5 - S4: Chapter2 Connecting To The Wan
PPTX
WAN Guide for CCNP Students_Chapter2_final.pptx
Software-Defined WAN 101
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
Enabling the Future of Work with SD-WAN
Speed Hybrid WAN Deployment with the New Cisco Intelligent WAN Design Guide -...
Cisco Intelligent Branch - Enabling the Next Generation Branch
Cisco Intelligent WAN (IWAN) Solution
CCNA4 Verson6 Chapter1
Iwan advantage-v2-140330172853-phpapp01
CCNA (R & S) Module 02 - Connecting Networks - Chapter 1
ENSA_Module_7.pptx_wide_area_network_concepts
Cvd iwan design-guide-feb16
Cisco IWAN – Intelligent Connectivity for Today’s Reality
CertifiedNv6_instructorPPT_Chapter1.pptx
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
DNA Intelligent WAN Campus Day
Cisco SDN/NVF Innovations (SDN NVF Day ITB 2016)
Cisco Intelligent WAN: Enabling the Next-Generation Branch
en_perfect_pitch_training_2015.pptx
CCNAv5 - S4: Chapter2 Connecting To The Wan
WAN Guide for CCNP Students_Chapter2_final.pptx

More from MarketingArrowECS_CZ (20)

PDF
INFINIDAT InfiniGuard - 20220330.pdf
PDF
Využijte svou Oracle databázi na maximum!
PDF
Jak konsolidovat Vaše databáze s využitím Cloud služeb?
PDF
Chráníte správně svoje data?
PDF
Oracle databáze – Konsolidovaná Data Management Platforma
PDF
Nové vlastnosti Oracle Database Appliance
PDF
Infinidat InfiniGuard
PDF
Infinidat InfiniBox
PDF
Novinky ve světě Oracle DB a koncept konvergované databáze
PDF
Základy licencování Oracle software
PDF
Garance 100% dostupnosti dat! Kdo z vás to má?
PDF
Využijte svou Oracle databázi naplno
PDF
Oracle Data Protection - 2. část
PDF
Oracle Data Protection - 1. část
PDF
Benefity Oracle Cloudu (4/4): Storage
PDF
Benefity Oracle Cloudu (3/4): Compute
PDF
InfiniBox z pohledu zákazníka
PDF
Exadata z pohledu zákazníka a novinky generace X8M - 2. část
PDF
Exadata z pohledu zákazníka a novinky generace X8M - 1. část
PDF
Úvod do Oracle Cloud infrastruktury
INFINIDAT InfiniGuard - 20220330.pdf
Využijte svou Oracle databázi na maximum!
Jak konsolidovat Vaše databáze s využitím Cloud služeb?
Chráníte správně svoje data?
Oracle databáze – Konsolidovaná Data Management Platforma
Nové vlastnosti Oracle Database Appliance
Infinidat InfiniGuard
Infinidat InfiniBox
Novinky ve světě Oracle DB a koncept konvergované databáze
Základy licencování Oracle software
Garance 100% dostupnosti dat! Kdo z vás to má?
Využijte svou Oracle databázi naplno
Oracle Data Protection - 2. část
Oracle Data Protection - 1. část
Benefity Oracle Cloudu (4/4): Storage
Benefity Oracle Cloudu (3/4): Compute
InfiniBox z pohledu zákazníka
Exadata z pohledu zákazníka a novinky generace X8M - 2. část
Exadata z pohledu zákazníka a novinky generace X8M - 1. část
Úvod do Oracle Cloud infrastruktury

Recently uploaded (20)

PDF
Getting started with AI Agents and Multi-Agent Systems
PDF
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
PDF
DASA ADMISSION 2024_FirstRound_FirstRank_LastRank.pdf
PDF
Architecture types and enterprise applications.pdf
PDF
Hybrid model detection and classification of lung cancer
PPT
Module 1.ppt Iot fundamentals and Architecture
PDF
project resource management chapter-09.pdf
PPTX
TechTalks-8-2019-Service-Management-ITIL-Refresh-ITIL-4-Framework-Supports-Ou...
PDF
WOOl fibre morphology and structure.pdf for textiles
PDF
Hindi spoken digit analysis for native and non-native speakers
PDF
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
PDF
TrustArc Webinar - Click, Consent, Trust: Winning the Privacy Game
PDF
Web App vs Mobile App What Should You Build First.pdf
PPTX
OMC Textile Division Presentation 2021.pptx
PDF
August Patch Tuesday
PPT
What is a Computer? Input Devices /output devices
PPTX
Programs and apps: productivity, graphics, security and other tools
PPTX
Group 1 Presentation -Planning and Decision Making .pptx
PDF
STKI Israel Market Study 2025 version august
PDF
Developing a website for English-speaking practice to English as a foreign la...
Getting started with AI Agents and Multi-Agent Systems
ENT215_Completing-a-large-scale-migration-and-modernization-with-AWS.pdf
DASA ADMISSION 2024_FirstRound_FirstRank_LastRank.pdf
Architecture types and enterprise applications.pdf
Hybrid model detection and classification of lung cancer
Module 1.ppt Iot fundamentals and Architecture
project resource management chapter-09.pdf
TechTalks-8-2019-Service-Management-ITIL-Refresh-ITIL-4-Framework-Supports-Ou...
WOOl fibre morphology and structure.pdf for textiles
Hindi spoken digit analysis for native and non-native speakers
How ambidextrous entrepreneurial leaders react to the artificial intelligence...
TrustArc Webinar - Click, Consent, Trust: Winning the Privacy Game
Web App vs Mobile App What Should You Build First.pdf
OMC Textile Division Presentation 2021.pptx
August Patch Tuesday
What is a Computer? Input Devices /output devices
Programs and apps: productivity, graphics, security and other tools
Group 1 Presentation -Planning and Decision Making .pptx
STKI Israel Market Study 2025 version august
Developing a website for English-speaking practice to English as a foreign la...

Virtual WAN

  • 1. v2 March © 2015 Citrix | Confidential Virtual WAN
  • 2. © 2015 Citrix | Confidential The What Defining CloudBridge
  • 3. © 2015 Citrix | Confidential • WAN Optimization – TCP Optimization – Compression/De-Duplication – Protocol Optimization – Bandwidth Management CloudBridge WAN Optimization • 1011011010 SSL 1011011010 SSL 101101110 SSL 1011 101101110 SSL 1011000110011 001110010100 • 1011011101 10011 • 1011011101 10011 • 1011011101 10011 Optimization • 1011011101 10011000001 • 1011011101 10011 • 1011011101 10011 Branch Office Data Center MPLS or Private Circuit
  • 4. © 2015 Citrix | Confidential • WAN Virtualization as a conceptual overview – Service critical applications for the modern enterprise – Leverage the changing capability and capacity of the public infrastructure – Always on – Sometimes it is just about Bandwidth CloudBridge WAN Virtualization • Logical bonding of capacity • Always on availability for the WAN • Dynamic monitoring for best path • Transparent Overlay • Encryption where required MPLS Business DSL LTE Wireless Capacity Management and Logical Bonding
  • 5. © 2015 Citrix | Confidential CloudBridge Edition Summary Edition Primary Benefits Recommended for CloudBridge WAN Op Edition Optimized and secure application delivery from DC over private networks Video Caching Enhanced Application Visibility Quality of Service • WAN Links that suffer from congestion and will benefit from Compression • Long distance / International links CloudBridge Virtual WAN Edition Highly reliable and secure application delivery from DC or Cloud over public or private networks Use MPLS, Broadband internet, 4G/LTE, Satellite links Enhanced WAN Visibility Quality of Service • Increasing Bandwidth needs • MPLS not available or expensive • 100% branch application availability
  • 6. © 2015 Citrix | Confidential Virtual WAN Building Blocks and Definitions Architecture and Defining Virtual WAN
  • 7. © 2015 Citrix | Confidential • Virtual WAN Encapsulates flows into a UDP tunnel Port 4980 – All application flows designated for the Virtual WAN service are encapsulated. – Encryption is applied where required on Public circuits. – UDP padding includes intelligence for monitoring of circuit state • Virtual WAN operates as an L2 and L3 device. – Operates as an L2 device for application flows not designated for VWAN specific service. – Operates as an L3 device for flows designated as interesting by policy for the Virtual WAN. • All configured Circuits are considered candidates for Virtual WAN traffic – Traffic types can be made persistent to a circuit but will use other circuits in case of failure. – All circuits are constantly monitored for state. CloudBridge Virtual WAN Fundamental Concepts
  • 8. © 2015 Citrix | Confidential Virtual WAN Terminology Appliances MCN VWN • Master Control Node – Only one primary – Time keeper for the Virtual WAN – Logically it is located at DC but the role can be assigned to any appliance – Configurator for the Virtual WAN • VWN (Virtual WAN Node) – Branch appliance – Inherits its configuration from the MCN
  • 9. © 2015 Citrix | Confidential • Virtual Path Service – Traffic destined for the Virtual WAN are defined by policy – Comprises all WAN Circuits – Traffic management performed at each node in the Virtual WAN Virtual WAN Terminology Circuit Definitions MCN VWN Virtual Path Service
  • 10. © 2015 Citrix | Confidential • Virtual Path – Fundamental building block for Virtual WAN Services – Uni-Directional – 2X WAN links – Each Path has has an associated monitor Virtual WAN Terminology Circuit Definitions VWN MCN Virtual Paths 1 2 3 4
  • 11. © 2015 Citrix | Confidential • Internet provisioned circuits add – Dynamism with the ability to have multiple routed options for connectivity – Complexity because they are often Asymmetric making BW management more complex Internet Circuits and Virtual Paths
  • 12. © 2015 Citrix | Confidential Services and BW Management Services and BW Management
  • 13. © 2015 Citrix | Confidential • Services associated with Virtual WAN – Virtual WAN Service – Traffic associated by rule or route destined for a WAN Path and has a traffic management policy – Intranet Service – Traffic not encapsulated traffic destined for a site with no Virtual WAN and is associated with a traffic management policy – Internet – Traffic not encapsulated destined for the internet – Passthrough – Traffic not accounted for by the other service rules and is not associated with a BW management policy Defining Virtual Services
  • 14. © 2015 Citrix | Confidential Virtual Services in Action • Services associated with Virtual WAN – Note that Passthrough traffic is unaccounted for with regards to Bandwidth
  • 15. © 2015 Citrix | Confidential • 17 traffic management Classes – 17 Classes – Can be edited but none added – Class 10 Realtime = Voice – Class 11 thru 17 = ICA, RDP, etc – Class 15 and 16 = CIFS, FTP, etc Understanding Bandwidth Management “Classes”
  • 16. © 2015 Citrix | Confidential Deployment Network Architecture and HA
  • 17. © 2015 Citrix | Confidential Building Capacity with Virtual WAN Zoning • Virtual WAN capacity considerations – Maximum of 1Gbps of throughput – 256 sites – Refer CloudBridge Data sheet for the latest specifications 256 Sites HA CB Virtual WAN PBR Route Policies
  • 18. © 2015 Citrix | Confidential • Inline – Requires VIP for each Virtual WAN service – LAN routing information – Services and BW management policies Basic Deployment Modes Example 1 Example 2
  • 19. © 2015 Citrix | Confidential Basic Deployment Modes • Inline With HA – Modified VRRP – Only one appliance is active at a time – Both appliances configured in Blocking mode – Configuration is synced across appliances
  • 20. © 2015 Citrix | Confidential Advanced Architecture Considerations Combining Virtual WAN and Optimization • Combining WAN Optimization and Virtual WAN – Virtual WAN should always go after WAN OPT – Virtual WAN will envelope in UDP obscuring TCP packets – Guidelines for good WAN Opt planning do not change – Asymmetrical routing – WAN Opt benefits
  • 21. © 2015 Citrix | Confidential Advanced Architecture Considerations Combining Virtual WAN and Optimization • Combining WAN Optimization and Virtual WAN out of line – PBR can be combined with HA – WCCP adds clustering and resiliency – WAN opt closer to the LAN than Virtual WAN
  • 22. © 2015 Citrix | Confidential Advanced Architecture Considerations Combining Virtual WAN and Optimization • Combining WAN Optimization and Virtual WAN out of line – PBR can be combined with HA – WCCP adds clustering and resiliency – WAN opt closer to the LAN than Virtual WAN
  • 23. © 2015 Citrix | Confidential Advanced Architecture Considerations VLAN Trunks • When spanning a VLAN trunk – Each VLAN requires a VIP and gateway to host Virtual WAN services – Routing is required for each path
  • 24. © 2015 Citrix | Confidential Building Capacity with Virtual WAN • Zoning is a method for – Creating capacity by allocating traffic in manageable segments – Uses PBR Route Maps to segment load by sites – HA capabilities require doubling the number of hardware appliances – Made easier if there is some logic for IP to site allocation 256 Site Zone 256 Site Zone PBR Route Policies HA CB Virtual WAN
  • 25. © 2015 Citrix | Confidential Work better. Live better.Work better. Live better.