UNIFIED ACCESS: APPLICATION VISIBILITY AND ENFORCEMENT October, 2017
AGENDA Application Visibility and Enforcement Demo Setup Demo Key Takeaways
INDUSTRY TRENDS MOVING TO AN APPLICATION CHAOS? Devices & BYOD Cloud & Applications Mobility The frontiers between private and professional are blurring. 41.7B App Downloads per year by 2015 Notes: Mobility is the #1 priority for IT decision makers 41.7 Billion apps downloads by 2015 1.2 Billion Smartphones to be shipped in 2014 87% of Enterprises will add video conferencing by 2014 Desktop video conferencing is expected to double by 2017 – Frost & Sullivan The BYOD phenomenon, combined with mobility and the move to the cloud creates an environment where users have access anywhere, anytime and with any device to a broad set of applications. This freedom and flexibility empowers and motivates employees to constantly explore and adopt new applications. Enterprises are getting flooded with new applications: For instance by Q2 2013 there were about 100 Billion apps downloaded from Apple and Android app stores combined. Another example more specific to the enterprise is that there are over 1000 custom apps developed internally to automate workflows and business process – this category of apps is growing at a blistering rate of 52% quarter over quarter (Good TechnologyTM Mobility Index Report Q2 and Q3 2013). Just identifying SIP based multimedia traffic is not enough. Additionally, many apps are transition to an http interface. We had to augment our application detection capability and then control the network based on the context of the user, device and applications. Ovum: APPLICATION DOWNLOADS: Growth in the content market shows no signs of slowing down. Ovum indicated that during 2009 2.7 BILLION APPS WERE DOWNLOADED. This figure reached over 18 billion in 2011 and it will reach 41.7 billion in 2015. (Source: OVUM, September 2011) 28% of US online adults are using personal cloud services already, along with 41% of US information workers. The market is expected to grow from $500 million to $6 billion in direct revenue by 2016, primarily driven by the adoption of multiple devices. I identify several other revenue models, from advertising to improved retention for related services to business IT purchases, putting the total market impact at $12 billion by 2016. The three main players in this space are Apple, Google, and Microsoft, with Apple leading the pack. The personal cloud becomes the third client software platform, following mobile devices and PC OS’es Webification of business applications DETAILED APPLICATION VISIBILITY IS ESSENTIAL TO HANDLE THE APP INVASION
NETWORK ANALYTICS VISIBILITY & ENFORCEMENT OV2500 Visibility Application Collection Application Reporting Enforcement Application Enforcement Policy Management OS6860E OA Stellar AP 12XX Notes: As applications migrate towards http/html interface, the app fingerprinting is key to provide visibility Analyst notes: No one else is looking at layer 4-7 as you are. Maybe Cisco will do it in the future with ACI, but I am not hearing from anybody else. Under QoS show consistent on wired and wireless: 11e and 1p INTELLIGENCE AND ENFORCEMENT AT THE EDGE OF THE NETWORK
APPLICATION CONTROL POLICIES PER APPLICATION OR APPLICATION GROUP Visibility Lync Skype BitTorrent FaceTime Box SalesForce AirPlay Control Reserve bandwidth Lower priority Blacklist Limit Bandwidth Limit Bandwidth Prioritize Optimize jitter&latency
Intelligent Traffic Control EMPOWER ADMINISTRATORS WITH CONTROL OF THE NETWORK High priority real-time Medium priority business apps Low priority personal Business-critical applications prioritized Harmful/non-compliant applications stopped Harmonized coexistence of business and personal apps Policy enforcement at network edge
Supported Configurations APPLICATION VISIBILITY AND ENFORCEMENT ON OS6860 SUPPORTED CONFIGURATIONS Not Supported Supported Configurations OS6860E OS6860E OS6860 OS6860 OS6860E OS6860 OS6860 Mixed stack OS6860E / OS6860 (2 to 1 ratio recommended) OS6860E standalone or stacked OS6860 standalone or stacked
APPLICATION VISIBILITY AND ENFORCEMENT ON OS6860 POSITIONING: AT THE EDGE Avg 33 flows/port 0 link agg flows Avg 167 -333 flows/port 8K flows is the size of the flow tracker table – 166 ( for 48 port models) to 333 max flows for 24 port model The two configurations on the right are not supported ( pink switches are edge switch with 1G uplink ) Reason: - Appmon is not supported on LAG ports and the flow table (8K will have to be shared b/n all access switches -> reduced number of flows per port -> irrelevant information Application visibility and enforcement should only be enabled at the edge Why not at the aggregation layer? it is not supported on LAG it will not be able to collect enough data to make information relevant It is not a firewall
APPLICATION VISIBILITY DEMO SETUP – MONITOR AND CONTROL YOUR OWN TRAFFIC RDP Client 172.16.120.11 Or VIA Client 172.16.101.x 6860E-24 8.3.1 172.20.100.110 OV4.2.1R01 MR1
NOW THE DEMO
UNIFIED ACCESS WITH application visibility and control KEY takeaways Visibility of applications in the network Prioritizes business critical applications Increases security: stop risky/non-compliant apps Harmonizes business & personal network use Better use of network resources Simplify roll out of new applications Monitor adoption of new business process Understand customer behavior Notes: Protects investment BYOD ready FE upgrade SDN ready/SW upgrade IPA to AP ugrade
v
Twitter.com/ALUEnterprise Follow us on: Twitter.com/ALUEnterprise Facebook.com/ALUEnterprise Youtube.com/user/enterpriseALU Linkedin.com – Group: Alcatel-Lucent Enterprise Updated November 2013 Slideshare.net/tagged/Enterprise Storify.com/ALUEnterprise
enterprise.alcatel-lucent.com