Make Your CFO Smile with Cisco Intelligent WAN
Cisco Customer Education
This session was recorded via Cisco WebEx! You can watch the live session recording HERE.
Presentation Agenda► Welcome from Cisco
► A Digital Network Enables New Capabilities
► What Can Cisco Intelligent WAN Do For You?
► Your Network Is The Problem
► Introducing Cisco Intelligent WAN
Priors:Cisco Sales and Channels (11 yrs)President and CEO (6 yrs) - Cisco Premier Partner Director of Sales (2 yrs) - Cisco Silver PartnerFinancial Analyst (7 yrs) - Sprint Corporation
About Your HostBrian AveryTerritory Business ManagerCisco Systems, [email protected]
► Conclusion
CCE is an educational session for current and prospective Cisco customers
Designed to help you understand the capabilities and business benefits of Cisco technologies
Allow you to interact directly with Cisco subject matter experts and ask questions
Offer assistance if you need/want more information, demonstrations, etc.
What Is the Cisco Customer Education Series?
Cisco Confidential 5
Computer scientists, Len Bosackand Sandy Lerner found Cisco Systems
Bosack and Lerner run network cables between two different buildings on the Stanford University campus
A technology has to be invented to deal with disparate local area protocols; the multi-protocol router is born
1984
WellFleet
SynOptics
3Com
ACC
DEC
Proteon
IBM
Bay Netw orks
Newbridge
Cabletron
Ascend
Fore
Xylan
3ComNortel
Ericsson
Alcatel
JuniperLucent
Siemens
NECFoundry
Redback
Riverstone
Extreme AristaHP
Avaya
Juniper
Huawei
Aruba
Brocade
Checkpoint
Fortinet
ShoreTel
Polycom
Microsoft
F5
Riverbed
Dell
Internet of Everything
1990 –1995 1996 – 2000 2001 – 2007 2008 – Today
The Landscape is Constantly
Changing
Leading for Over 30 Years
2016
Cisco Confidential 7
Who Is Cisco?
Chuck Robbins,CEO, Cisco
• Dow Jones Industrial AverageFortune 100 Company (AAPL, CSCO, INTC, MSFT)
• $117B Market Capitalization
• $49.6B in Revenue
• $10B in Annual Net Profits
• $34B More Cash than Debt
• $6.3B in Research and Development
http://finance.yahoo.com/q/ks?s=CSCO+Key+Statistics
Digital Disruption Impact to Business
Of incumbents are at risk of being displaced
in the next 5 years
40%
Digital Vortex: How Digital Disruption Is Redef ining Industries. Global Center for Digital Business Transformation, 2015.
Of digital value at stake across private industries
between 2013-22
$14T
Cisco estimates $14.4 Trillion of digital value at stake across private industries between 2013-22 Where to
begin y our journey to digital value in the private sector.
How much more profitable are
organizations that master digital
26%
Leading Digital: Turning Technology into Business Transformation
Transform Processes and Business Models
InnovationsFaster Time to Market
Empower Workforce Efficiency and Innovation
Increased ProductivityBetter Retention
Personalize Customer/ Citizen Experience
Increased LoyaltyGreater Insight
IoTMobility Analytics CloudMobile traffic will exceed
wired traffic by 2017IoT devices will triple by 2020
75% of companies planning to or investing in big data
80% of organizations will primarily use SaaS by 2018
Creating New Priorities for Digital Organization
Wired Wireless Devices
VLAN 1 VLAN 2 VLAN 3
WAN
Networks today are Complex..
HQ
Remote VLAN C
VLAN B
Branch A
VLAN A Branch B
..and have multiple Operational Challenges
Policy Violations Due to Human Error
Network Changes Performed Manually
95% 70%
OpEx spent on Network Visibility
and Troubleshooting
75%
Source: 2016 Cisco Study
Traditional Networking CANNOT Keep Pace with the Demands of Digital Business
Cisco Confidential 16© 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Big LieThe Big Lie
Cisco Confidential 17© 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Big LieCompetitors Say:
“The Network Is a Commodity”
Sidebar…
Guess what DAY IT IS!
Cisco Confidential 18© 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Big LieCompetitors Say:
“The Network Is a Commodity”
The Big Lie
Cisco Confidential 19© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Typical Multi-Vendor NetworkSwitching Routing Security Wireless Voice
Cisco
HPDell3ComDlinkNetGearLinksys
Cisco
3ComJuniperHuwaiAdtran
Cisco
WatchguardSonicwallFortinetCheckpointNetGearDlinkPalo Alto
Cisco
3ComHPAerohiveAruba
Cisco
NortelAvayaMitelSiemensShoretelSamsungPanasonicToshibaIntertelComdialNECAlcatel
Cisco Confidential 20© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Switching Routing Security Wireless Voice
Cisco
HPDell3ComDlinkNetGearLinksys
Cisco
3ComJuniperHuwaiAdtran
Cisco
WatchguardSonicwallFortinetCheckpointNetGearDlinkPalo Alto
Cisco
3ComHPAerohiveAruba
Cisco
NortelAvayaMitelSiemensShoretelSamsungPanasonicToshibaIntertelComdialNECAlcatel
Results in The Frankenstein Effect!
Reliability challenges
Inconsistent warranties
Higher maintenance costs
No single point of support
Basic levels of integration
Cisco Confidential 21© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Switching Routing Security Wireless Voice
Cisco
HPDell3ComDlinkNetGearLinksys
Cisco
3ComJuniperHuwaiAdtran
Cisco
WatchguardSonicwallFortinetCheckpointNetGearDlinkPalo Alto
Cisco
3ComHPAerohiveAruba
Cisco
NortelAvayaMitelSiemensShoretelSamsungPanasonicToshibaIntertelComdialNECAlcatel
Only Cisco Can Offer a Complete Solution
The Network: Cornerstone Where Digital Success is Realized or Lost
Full BusinessVisibility
IoTScalability
Conduit for Critical Apps
First Line of Defense
Bridge for Engagement
Digital Transformation Starts with the Right Foundation
Easily enforce policies across wired, wireless, and WAN
Enable sophisticated network capabilities with simplicity
Predictably administer changes and add capabilities
Deliver service innovation more quickly
Get instant view of issue location to speed remediation
Treat the network as a single sophisticated system
Policy-Driven Automated Agile
With Cisco You Can…
Benefits of A Purpose-Built Network
Network Enables New Capabilities
Secure the Enterprise AutomationEngage CustomersMobilize the Workforce
Digital WorkforcePersonalized Workspaces
Effective Collaboration
Omni-channel ExperienceEnhanced Points of Service
Personalized Experiences
Accelerate the BranchRollout services faster
Application performance
Faster threat detectionContinuous compliance
Secure mobile access
Built on the Network as a Platform for the Digital Organization
WAN Demands Exceeding BudgetsHow Can We Deliver More with the Same or Less Budget?
The Widening Network Complexity Gap
Building Blocks of IT
Endp
oint
s on
th
e Ne
twor
k
VoIP/Video
Virtualization
Cloud Computing
Mobility
SDN
IoT
IT Budgets
Network Complexity Gap
Source: ZK Research, 2014
5 yearsCisco® Visual Networking Index, June 2014
Increase 3X in the next
GLOBAL IP TRAFFIC GROWTH:
LIMITED WAN BUDGETS:
will be flat or in decline
Nemertes Research, August 2014
60% of WAN budgets
Digital Innovation Overwhelming the Branch
BRANCH
OSUpdates
HD Video
Mobile Apps
Online Training
Social Media
Guest Wi-Fi
MORE USERS
MORE APPS
MORE THREATS
80% Of employee and customers are servedin branch offices*
20-50%Increase in enterprise bandwidth per year through 2018**
30%Of advanced threats will target branch offices by 2016 (up from 5%) **
OmnichannelApps
SaaS Enterprise Apps
Digital Displays
* Tech Target, Branch Office Growth Demands New Dev ices., 2013
** Gartner, Forecast Analysis: Worldwide Enterprise Network Services, Q2 2015 Update
*** Gartner: “Bring Branch Office Network Security Up to the Enterprise Standard, Jeremy D’Hoinne, 26 April. 2013.
Simplification Creates Agility
Applications Are the Vehicle for Digital Business
DO-IT-YOURSELF ASSEMBLY AND INTEGRATION READY TO GO
Faster Time to Market and Lower OpEx
What is SD-WAN?
Automate and orchestrate
network changes
Open standards and third-party integration
Lower operating costs and TCO
Uncompromised security and
threat defense
Network capacity optimization and
increase bandwidth
Direct Internet and cloud access
Protect applicationSLA
Hybrid WAN
What SD-WAN provides
Benefits of SD-WAN
Identify Prioritize Accelerate
See 1000+ apps running on your network
Automate app priority based on business policies
Boost app performance
Securely on any connection or platform for all users
Cisco Intelligent WANApplication-centric SD-WAN
`
Intelligent WAN (IWAN) Solution Components
WAASAkamai
Pf Rv3
IPSec WAN overlayConsistent operational model
DMVPN, PKI
Management and Orchestration
MPLS
Internet
3G/4G-LTE
PrivateCloud
VirtualPrivate Cloud
PublicCloud
IW AN APP
Cisco Prime™
Branch
AVC
TransportIndependence
Optimal application routingEfficient use of bandw idth
Performance Routing(PfR) QoS
Intelligent Path Control
Performance monitoringOptimization and caching
AVC, WAAS, Akamai
Application Optimization
NG strong encryptionThreat defense
Suite-B, ZBFW, AMP, Umbrella, Stealthwatch
Secure Connectivity
“Intelligent WAN” (IWAN) is a collection of Cisco technologies and products that enable transport independence, intelligent path control, application optimization, and secure connectivity for multi-site deployments.
Transport Independence
Application Control Intelligent Path Control
Secure Connectivity
• IPSec overlay (Auto VPN)
• Scalable (Cloud Controller)
• Traff ic distribution over multiple pathw ays (Internet, cellular, MPLS-to-VPN failover)
• App visibility & control (Meraki dashboard, group-based policies, traff ic analytics)
• Application QoS & bandw idth optimization (Traff ic shaping)
• Uplink chosen by link latency, data loss, etc. (dynamic path selection based on latency, jitter and loss)
• Uplink assigned by traff ic protocol, subnet, source, destination, etc. (PbR, aka policy-based routing)
• Intuitive, automatic, scalable VPN solution to connect remote branch sites (Auto VPN)
Cisco Confidential 33© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Today’s Backhaul Approach is ExpensiveInefficient Traffic Management over a Premium Connection
WAN/MPLS
BEFOREInternet
Data CentersBranch
Backhaul Challenge:Growing WAN traffic from cloud services and internet connectivity
Cisco Confidential 34© 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Upgrade that Pays for ItselfOptimize Your WAN Investment with IWAN
WAN/MPLS
AFTERInternet
Direct Internet Access (DIA) from Branch; Low er latency, low er cost
Data CentersBranch
Internet VPN Used to Connect Branch to HQ
DIA Benefit:Efficient access to SaaSand offload guest traffic
Cisco Confidential 35© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Cisco IWAN Deployment ModelsDual MPLS Hybrid Dual Internet
Highest Service Level (SLA) x Inflexible for new servicesx Expensive
Consistent VPN Overlay enables Security across Transition
Enable SaaS and/or high BW apps Balanced Service Level (SLA) Up to 99.999% Reliability
Best price/performance IT Managed Service Levels Up to 99.999% Reliability
Public Public Enterprise
Internet MPLS Internet Internet
Internet
MPLSMPLS
APIC-EM
Network-Specific Control
Application, User, and Business-Driven Policies
“Only corporate-owned devices in Group:FinExec can access quarterly
results DB”Cisco® ISE + TrustSec + ACL
Configuration Commands
`
Cisco APIC-EMAn Application Platform for Enterprise WAN and Access Networks
• Virtual (ISO VM) or appliance-based• Provides user policy abstraction and
automation• Simplification of complex network
configuration withCisco® application best practices
• Existing and new installations (Catalyst®, ISR, ASR, WLC)BENEFITS:
Brownfield supportReady-to-use-applications
Open, northbound API
`
APIC-EM Delivers IT Flexibility
Enabling Automation Through Innovative Management Principles
OPENStatic Programmable
Expert CLI Policy + GUI
Greenfield Brownfield + Greenfield
SIMPLE
A B
Manual Automated
Box-Centric Network-wide
Provision in Months Hours
Applications
Network-Wide Abstractions Simplify the Network
SecurityOrchestration Automation Collaboration
SOUTHBOUND ABSTRACTION LAYER
REST API
CATALYST® CISCO NEXUS® ASRISR WIRELESSASA OTHER
SDN Ideal: Controller as the
Application Platform
The SDN Ideal:
Controller as the Application
Platform
Virtualization
Common Policy Model from Branch to Data Center
Application Network Flow ProfileSLA, Security, QoS, Load Balancing
User and Things Network ProfileQoS, Security, SLA, Device, Location, Role
Cloud Data Center WAN Access
POLICY
DATA CENTER WAN AND ACCESS
CISCO® ADVANTAGEBROWNFIELD AND
GREENFIELD END TO END POLICY FRAMEWORK: FOCUS ON APPLICATION AND USER ENABLEMENT
Cisco SD-WAN OptionsChoose Based on Budget, Expertise, Business Priorities
Purchase, deploy, manage yourself with Cisco®APIC-EMand IWAN App/Prime™
On Premises
Utilize Cisco ONE™ Software for license portability
Maximum control overyour network
Cloud-based network management with Cisco Meraki®
Cloud Managed
Subscription-based
Real-time feature and security updates pushed from the cloud
Get on-premises or cloud managed as a service from your service provider
Managed Services
Reduced CapEx, pay-as-you-grow OpEx
You or your SP can manage
Cisco Intelligent WAN Platforms
Branch
4000 Series ISR +Cisco UCS® E-Series
890 Series ISR
Common Software-Defined WAN Capabilities Across Your Entire Portfolio
Head-end
Cisco® ASR 1000 Series
Cloud
Meraki MX
All-in-one branch platformphysical or virtual High availability Cloud Managed
Introducing the Cisco ISR 4000 FamilyEnabling Branch Services for the 21st Century Network
Delivering the Ultimate Application Experience Over Any Connection
4-10 times faster, at the same price Deterministic performance with
services
Pay as you grow Virtualized network function
Revolutionary Architecture Service Innovation Cisco® Application Centric Infrastructure (ACI) for the WAN
Native Layer 2 – 7 services Converged network, compute,
storage Simple, scalable WAN path control Best-of-breed security:
Sourcefire® IDS
Automation, orchestration,
User/app-based policy
Changes without disruption
World’s Broadest Service Offerings in One Box
The Ultimate Converged Branch – No More Appliances
Native, Full Featured Security, AVC, WAN Opt, UC
Ease of Service Deployment – No Truck Rolls
Network, Computeand Storage
WAN opt Compute Storage UC Path Control App Visibility Security
MX security appliances
9 models scaling from small branch to large campus/data center
Complete networking and security in a single appliance
Feature HighlightsZero-touch site-to-site VPNIntrusion detection/preventionContent filteringBuilt-in SD-WAN functionalityAdvanced Malware Protection (AMP)Application firewall
Cisco Meraki: Bringing the cloud to enterprise IT
• Cisco Meraki
MR Wireless LAN
Systems Manager Mobility Management
MS Ethernet Switches
MX Security Appliances
MC Communications
Secure, scalable architectureSecure out-of-band managementNo user traffic flows through the cloud
ReliableNetwork stays up if connection to the cloud is lost
ScalableSupporting customers with thousands of sites, millions of clients
Future-proofNew features delivered seamlessly from the cloud
Dual-active path:• Active-active VPN• Active-active VPN & MPLS
Policy-based routing (PbR) :• Allows uplinks to be intelligently assigned
based on traffic protocol, subnet, source, destination, etc.
Dynamic path selection:• Ensures the best VPN tunnel is used based
on latency and loss metrics
WAN 1Secure VPN tunnel (active)Latency / loss > threshold
WAN 2Secure VPN tunnel (active)Latency / loss < threshold
Data
Based on L3 / L4 categorization, this data normally travels out WAN 1 (PbR), but MX detects optimal path is WAN 2 based on latency / loss on WAN 1
Make Your Network Application-Aware Ubiquitous Visibility Across the Entire Network
Any user or device, wired or wireless
Facilitates trouble-shooting
No probes or additional hardware
BrowsingConsumer appsUnknownNet-adminFile-sharingVoice and videoOther
“Cisco AVC also makes it easy to see if slow application performance is a result of client network delay or server network delay.”
“IT staff gain a 360-degree view of all devices, users, and applications from a single location.”
Intelligence and Insights
Háskólinn í Reykjavík
Boxwood
Application CategoriesConsumer AppsVoice and Video
File SharingBusiness and Productivity Tools
Social NetworkingSof tware UpdatesInstant Messaging
DatabaseGaming
BrowsingEmail
72483631282419171298
Detect/Categorize 1000+ applications automatically
Increase Application AvailabilityIntelligent Path Control Based on Business Priorities
Route app paths based on policies3
Use Internet as your second WAN2
Set app rankings and policies1Business Relevant – High PriorityBusiness Irrelevant – Low PriorityDefault – Medium Priority
Active-Standby Active-Active
Full utilization of ALL available
bandwidth
Improved application
performance
Lower costs
“I want my critical data and voice traffic moving over MPLS, because I have a service-level agreement with my MPLS provider and I can hold him accountable if there’s an outage or slowdown. PfRdoes that for me, while sending lower-priority traffic like web surfing to DMVPN.” Farm Credit
Mid-America
Enhance the Application Experience
Mobile Apps
Guest Wi-Fi
Video Conferencing
Digital Signage
Catalogs
On-demand Training
Enable Business Initiatives
Reduced Bandwidth
0 0
1
2
3
4
40
80
120
160
App Bandwidth App Latency
Bandwidth(Mbps)
Latency(ms)
ReducedLatency
Bandwidth with IWAN
Bandwidth natively
App latency natively
App latency with IWAN
Result: Louis Vuitton
80% Faster app response time
3x Greaterdwell time
Accelerate applications
over any connection
Store content locally for
instant access
Optimize WAN bandwidth for
better ROI
Secure Your Applications and DataProtect Your Branch and WAN
Secure Intelligent WAN
Secure any of your connections
Meet government and regulatory compliance
Secure traffic directly accessing the Internet
Comprehensive threat defense
Integrated, all-in-one
security platform
Scalability without compromising performance
Respond faster to threats and vulnerabilities
“Having the entire security suite at our fingertips has given us agility to enhance our toolbox on the fly. It’s been easy to manage, and we don’t need to worry about whether to add security elements when we order routers or firewalls; they just come included.”
Coherent
Automation with IWAN App on Cisco APIC-EM
Branch Management Made Easy
Faster deployments85%
Zero-TouchRollout
Set Application Policy
Gain Visibility and Tune
Point and Click Troubleshoot
Simple Workflows
“IWAN automation eliminates tedious configuration tasks for advanced networking features. I can configure IWAN with just 10 GUI clicks.”
IBM
Challenge• High amount of network bandwidth and data
management required• Lots of remote workers
• 55 Cisco® 4000 ISR with Cisco ONE™ SoftwareSolution
Result• Standardize and improve network infrastructure• Save short-term purchase cost• Avoid future license costs
4x the cost (Forrester)
Achieve 365% ROI with Cisco ONE SoftwareGlobal Firm Utilizes Cisco ONE for WAN and Collaboration
Benefits are more than
Better Together Pricing
$80,750
Access toOngoing Innovation
$49,535
License Portabil ity$112,831
Improved Employee Performance
$96,932
Reduced Management Costs
$331,807
Reduced Server Costs$101,467
Cisco Confidential 57© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Quick Payoff for Infrastructure InvestmentCan Shift Funds from Connectivity to Enabling New Services
EXAMPLE:San Francisco MPLS VPN vs Dual Business Internet ($ per month)
$665 savings/month x 12 months x 100 sites
80
274
140
611
1.5 Mbps 10 Mbps
$220
MPLS VPN CoS2 $885
Direct Internet Access Combined
f or Ent SLA-75%
$800K Annual Savings
186% ROI
Payoff in 6 Months
Cisco Confidential 59© 2013-2014 Cisco and/or its affiliates. All rights reserved.
Why Cisco IWAN
Integrated Platform
for IT Simplicity
Granular Control Everywhere
Proven Security at Scale
Unmatched Context-based
Routing
Quick ROIFaster than Alternatives
Overlay Appliances
Up to 72% in Savings
The Alternative:
App Visibility & Control
IP Sec VPN
WAN Opt. Firewall
WAN Path SelectionRouter
• Any to Any Security
• Protect All Branch Resources
• Secure Direct Internet Access
• Network-Aware
• App-Aware
• Endpoint-Aware• Savings enables
Business Innovation
Many pay off in
6-12 months
• Branch ISR-AX
• DC ASR1K-AX
• Cloud CSR1000V
Cisco Confidential 60© 2013-2014 Cisco and/or its affiliates. All rights reserved.
What Can IWAN Enable?
High BW Apps
• Links overwhelmed• Security and policy
• Backhaul to DC
• More BW for less• Visibility and control
• Threat defense• DIA: no backhaul
SaaS Roll-Out
Business Challenges
How IWAN Helps
Mobility/Guest
• App latency• Backhaul to DC
• DIA: low latency• Quick link turn-up
• Visibility and control
• Time-consuming and costly to add BW
• More BW for less
• Quick link turn-up
• DIA for right-traffic, right-link
OpEx Savings
• High recurring charges
• Inflexible SLAs
• Low-cost Internet links without compromise
• Provider flexibility for faster service rollout
Thank You and Next Steps
Brian [email protected]
Contact Your Cisco Partnerhttps://tools.cisco.com/WWChannels/LOCATR/performBasicSearch.do
www.
Learn more about Cisco intelligent WAN:www.cisco.com/go/iwan/
US SMB Customer Financing0% financing for your small and mid-sized business
36 month, 0% financingEligible with all Cisco hardware, software and bundled services (non-Cisco hardware is not eligible
Deal amounts $1,000 to $500,000 per customer
Available for U.S. small and mid-sized business customers only (excludes public sector, service provider, and enterprise customers)
$1 out – customer owns the technology at the end of the term
Available through December 31, 2016
*Terms and conditions do apply*
End-of-year: 0% Financing Offer
For a limited time, Cisco and Cisco Capital have just made it easier for you to deploy a Cisco iWAN solution by providing interest free financingon Cisco technology solutions.
• CCE sessions are held weekly on a variety of topics
• CCE sessions can help you understand the capabilities and business benefits of Cisco technologies
• Watch replays of past events and register for upcoming events!
Visit http://cs.co/cisco101 for details
Join us again for a future Cisco Customer Education Event