SlideShare una empresa de Scribd logo
1 de 15
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATION
UNCLASSIFIED
David Stern- DBC/ID/ID24
Agency SDx SME/Optics & IP Architect
david.j.stern.civ@mail.mil
NOVEMBER 9, 2016
Operationalizing & Securing the Information Core
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Disclaimer
The information provided in these briefings is for general information
purposes only. It does not constitute a commitment on behalf of the
United States Government to provide any of the capabilities, systems or
equipment presented and in no way obligates the United States
Government to enter into any future agreements with regard to the same.
The information presented may not be disseminated without the express
consent of the United States Government. These briefings may also
contain references to United States Government future plans and
projected system capabilities. Mention of these plans or capabilities in no
way guarantees that the U.S. Government will follow these plans or that
any of the associated system capabilities will be available or releasable
to foreign governments.
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Serving Soldiers, Sailors, Airmen, Marines, & Coast Guard – Around the Globe
DEFENSE AND FEDERAL AGENCIES
Enterprise…Innovate, Build, Protect, and Contract
OFFICE OF THE SECRETARY OF DEFENSE
COMBATANT COMMANDS
WHITE HOUSE JOINT CHIEFS OF STAFF
COALITION ACTIVITIES
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Information Core Big Picture
DevOps
Compute
(SDC)
Storage
(SDS)
Network
(SDN)
NetOps
OPEX/HARDWARE CAPEX DEV OPEX/SOFTWARE
SDx
(new/refresh)
Automated
Provisioning
(existing)
Brownfield Greenfield
EFFECTS OPERATIONAL IMPROVEMENTS
AVAILABILITY
DEPLOYMENT COMPLEXITY
PROVE SLA RELIABILITY
EFFECTS FISCAL BUDGETARY REDUCTIONS
NETWORK CONSOLIDATION
LABOR REDUCTION
EFFECTS SERVICE IMPROVEMENTS
AUTOMATED PROVISIONING
GLOBAL REPOSITIONING
DYNAMIC MISSION PARTNER CAPABILITY
NOW IN THE REALM OF POSSIBLE
CAPABILITY DEVELOPMENT
EVERY DEVICE IS A SENSOR (EDIAS)
 End to End (E2E) Visibility of EVERY device
On Demand Tap at EVERY device
CONTINUITY OF GOVERNMENT (COG)
COG Simulation/ Rehearsal
Dept./Agency Level Coop
GOVERNMENT CIRCUIT PROVISIONING
On Demand Last Mile
On Demand Cloud Services
On Demand Mission Networks
JWICS
SIPRNET
NIPRNET
PRIVATE/MPE
GLOBAL C2/VISIBILITY OF ALL ORCHESTRATORS (THROUGH CLASSIFICATION)
C2
AGILITY
CORE PROBLEM SDN SOLVES
Security
(SDS)
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
Automated Provisioning Capability
A Key Enabler for Software Defined Everything
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Automated Provisioning Capability Bottom Line (NOT SDN)
Automated Provisioning (AP) provides the ability to drastically
reduce provisioning times through customer based service
provisioning.
Automation results in a significant reduction in Tier I, II
technicians and provisioning personnel which reduces OPEX
requirements.
Automated Provisioning enables vendor neutral centralized
control services in:
– Legacy and Non-Standard Infrastructure
– Mission Partner Environment (MPE)
– Wide Area Networks
– Campus Area Networks
– Local Area Networks
LOWERS
FASTER
COSTS
EXPANDS
SERVICES
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Keys Points for the Automated Provisioning Capability
Customer order through DDOE/Storefront
– Provisioning goal (hardware available): 7 days
– Actual installation time: 30+ days
– Demonstrated with automation: 2 minutes!!
– Capabilities are provisioned ON DEMAND
Labor Hour Reduction
– 5x OPEX reduction of Tier I, II & provisioning labor hours
for start, change, or disconnect
Automation = What/Where Knowledge
– Potential for Whole of Government Visibility
– Military Planners/Operators get current capabilities
• Actionable for real time execution
– DISA service managers get real time capabilities
• Actionable to pre-deploy more capacity
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
Information Core Capability
Software Defined Everything Implementation
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Information Core / Software Defined Enterprise
TODAY: DoD Information Network (DoDIN)
The globally interconnected, end-to-end set of
information capabilities for collecting,
processing, storing, disseminating, and managing
information on demand to warfighters, policy
makers, and support personnel.
GOAL: Information Core
The globally orchestrated, end-to-end set of
information capabilities for collecting,
processing, storing, disseminating, and managing
information on demand to warfighters, policy
makers, and support personnel.
Software Defined Everything collapses the current organizational and work domain
boundaries between Network, Compute, Storage and Security. Centralized orchestration
enables agility. Agility translates to Defensive and Offensive Cyber Maneuver.
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
Proof of Concepts in Lab
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Provider Edge: On Demand Cloud / Last Mile
11 Apr 16
Layer 2 & Layer 3
connectivity
Server
Cloud Computing Services
Last MileDISA Service Provider
Enterprise API
Security
Gateways
Enterprise
applications (API
controlled)
DISA API Client
Centralized
Orchestration
through
API integration
DoDIC
DISA Ft Meade Lab
IPT-PE
Service Provider
Network (Commercial,
DISA, other)
ON DEMAND
POC IN PROCESS
Existing MEF
Multiplexed UNI-N
Facing DISA
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Haywire - Policy Verification (Encryption)
100GbE MACSECCISCO
ASR9000
CISCO
ASR9000
10 x 10GbE BROCADE
MLXe
BROCADE
MLXe
10 x 10G INTERFACES (10 x 10 IPSEC TUNNELS)
o
BROCADE
MLXe 10GbE
IPSEC INTERFACE ETH2/4
1x10G INTERFACE
IPSEC TUNNEL 10.10.x.x
10.7.x.x
TRAFFIC
10 x 10GbE
TRAFFIC
CISCO
ASR9000
Te0/2/0/4
POC COMPLETED
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Haywire - Policy (Encryption) Enforcement
DoD FIRST!
Cyber Circuit BreakerSM
• Policy violation activates Cyber Circuit BreakerSM. Tool
provides authoritative topology to Orchestrator
• The Orchestrator shuts down the Interface on demand to
enforce policy (could be a human entering credentials)
• Policy fails at next collection as destination is no longer
reachable (another policy violation) due to the circuit
breaker
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNCLASSIFIED
UNITED IN SERVICE TO OUR NATION
Handoff – Reliable VM Live Migration
CDC 1
CDC 2 Example of improved Cyber Maneuver - Reliable application
mission movement of VMs/Containers between Data Centers. May be
coupled with Defensive Cyber Operations (DCO) through dynamic
network reconfiguration.
Problem:
Traditional Live Migration results in the loss of network traffic
to/from compute resources while they are moving, especially
between data centers. This results in loss of traffic,
retransmission, resynchronization of encryption and other direct
customer experience impacts.
SDN Based Solution: (DISA Patent Pending) Using
OpenFlow® capable portions of a network, store traffic in transit
while compute assets are moving. Release traffic in order (or
optimized by flow) when move is completed.
BLUF: Orchestrator coordinates compute, storage, and network
together to produce a capability we could not achieve before (i.e.
using the network to store inflight data).
POC in Progress
Patent Pending
UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
UNITED IN SERVICE TO OUR NATION

Más contenido relacionado

La actualidad más candente

Cloud Expo 2010 Cloud Computing in DoD
Cloud Expo 2010 Cloud Computing in DoDCloud Expo 2010 Cloud Computing in DoD
Cloud Expo 2010 Cloud Computing in DoD
GovCloud Network
 

La actualidad más candente (20)

Monetizing the Enterprise: Borderless Networks
Monetizing the Enterprise: Borderless NetworksMonetizing the Enterprise: Borderless Networks
Monetizing the Enterprise: Borderless Networks
 
MetaFabric Architecture
MetaFabric ArchitectureMetaFabric Architecture
MetaFabric Architecture
 
Virtual Application Networks Innovations Advance Software-defined Network Lea...
Virtual Application Networks Innovations Advance Software-defined Network Lea...Virtual Application Networks Innovations Advance Software-defined Network Lea...
Virtual Application Networks Innovations Advance Software-defined Network Lea...
 
TOP 10 Reasons to Make Peak 10 Your Cloud Provider of Choice
TOP 10 Reasons to Make Peak 10 Your Cloud Provider of ChoiceTOP 10 Reasons to Make Peak 10 Your Cloud Provider of Choice
TOP 10 Reasons to Make Peak 10 Your Cloud Provider of Choice
 
Data Center Security Now and into the Future
Data Center Security Now and into the FutureData Center Security Now and into the Future
Data Center Security Now and into the Future
 
Euro Cloud 23 5 12 Interoute The Cloud Is Great But Vdc Is Better
Euro Cloud 23 5 12 Interoute The Cloud Is Great But Vdc Is BetterEuro Cloud 23 5 12 Interoute The Cloud Is Great But Vdc Is Better
Euro Cloud 23 5 12 Interoute The Cloud Is Great But Vdc Is Better
 
Agniv das- Resume
Agniv das- ResumeAgniv das- Resume
Agniv das- Resume
 
Structure 2014 - Launchpad Competition
Structure 2014 - Launchpad CompetitionStructure 2014 - Launchpad Competition
Structure 2014 - Launchpad Competition
 
SDN a strategic assessment
SDN a strategic assessment  SDN a strategic assessment
SDN a strategic assessment
 
In-Memory Computing Driving Edge Computing and Blockchain Technologies
In-Memory Computing Driving Edge Computing and Blockchain TechnologiesIn-Memory Computing Driving Edge Computing and Blockchain Technologies
In-Memory Computing Driving Edge Computing and Blockchain Technologies
 
CloudGen Firewall, SD-WAN, WAF security - Protection and Performance in the C...
CloudGen Firewall, SD-WAN, WAF security - Protection and Performance in the C...CloudGen Firewall, SD-WAN, WAF security - Protection and Performance in the C...
CloudGen Firewall, SD-WAN, WAF security - Protection and Performance in the C...
 
Vortex II -- The Industrial IoT Connectivity Standard
Vortex II -- The  Industrial IoT  Connectivity StandardVortex II -- The  Industrial IoT  Connectivity Standard
Vortex II -- The Industrial IoT Connectivity Standard
 
City of Geel Case Study
City of Geel Case StudyCity of Geel Case Study
City of Geel Case Study
 
How SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze NetworksHow SASE can help you move securely from the PSN with VMware and Breeze Networks
How SASE can help you move securely from the PSN with VMware and Breeze Networks
 
Cloud Expo 2010 Cloud Computing in DoD
Cloud Expo 2010 Cloud Computing in DoDCloud Expo 2010 Cloud Computing in DoD
Cloud Expo 2010 Cloud Computing in DoD
 
Peak 10 Cloud Delivered Desktop
Peak 10 Cloud Delivered DesktopPeak 10 Cloud Delivered Desktop
Peak 10 Cloud Delivered Desktop
 
NEXTGEN Cyber Security 2021
NEXTGEN Cyber Security 2021NEXTGEN Cyber Security 2021
NEXTGEN Cyber Security 2021
 
Top 10 Reasons for Colocation
Top 10 Reasons for ColocationTop 10 Reasons for Colocation
Top 10 Reasons for Colocation
 
Introducing the New MagicDraw Plug-In for RTI Connext DDS: Industrial IoT Mee...
Introducing the New MagicDraw Plug-In for RTI Connext DDS: Industrial IoT Mee...Introducing the New MagicDraw Plug-In for RTI Connext DDS: Industrial IoT Mee...
Introducing the New MagicDraw Plug-In for RTI Connext DDS: Industrial IoT Mee...
 
Breakfast Briefing- Natilik & Cisco Introducing The Network. Intuitive.
Breakfast Briefing- Natilik & Cisco Introducing The Network. Intuitive.Breakfast Briefing- Natilik & Cisco Introducing The Network. Intuitive.
Breakfast Briefing- Natilik & Cisco Introducing The Network. Intuitive.
 

Destacado

Destacado (11)

Industry Panel: Cyber Convergence - Where Do We Go From Here? TechNet Augusta...
Industry Panel: Cyber Convergence - Where Do We Go From Here? TechNet Augusta...Industry Panel: Cyber Convergence - Where Do We Go From Here? TechNet Augusta...
Industry Panel: Cyber Convergence - Where Do We Go From Here? TechNet Augusta...
 
Network Convergence: TechNet Augusta 2015
Network Convergence: TechNet Augusta 2015Network Convergence: TechNet Augusta 2015
Network Convergence: TechNet Augusta 2015
 
Cyber Situational Awareness: TechNet Augusta 2015
Cyber Situational Awareness: TechNet Augusta 2015Cyber Situational Awareness: TechNet Augusta 2015
Cyber Situational Awareness: TechNet Augusta 2015
 
Federal Webinar: RMF, DISA STIGs, and NIST FISMA Compliance using SolarWinds
Federal Webinar: RMF, DISA STIGs, and NIST FISMA Compliance using SolarWindsFederal Webinar: RMF, DISA STIGs, and NIST FISMA Compliance using SolarWinds
Federal Webinar: RMF, DISA STIGs, and NIST FISMA Compliance using SolarWinds
 
What Makes Great Infographics
What Makes Great InfographicsWhat Makes Great Infographics
What Makes Great Infographics
 
Masters of SlideShare
Masters of SlideShareMasters of SlideShare
Masters of SlideShare
 
STOP! VIEW THIS! 10-Step Checklist When Uploading to Slideshare
STOP! VIEW THIS! 10-Step Checklist When Uploading to SlideshareSTOP! VIEW THIS! 10-Step Checklist When Uploading to Slideshare
STOP! VIEW THIS! 10-Step Checklist When Uploading to Slideshare
 
You Suck At PowerPoint!
You Suck At PowerPoint!You Suck At PowerPoint!
You Suck At PowerPoint!
 
10 Ways to Win at SlideShare SEO & Presentation Optimization
10 Ways to Win at SlideShare SEO & Presentation Optimization10 Ways to Win at SlideShare SEO & Presentation Optimization
10 Ways to Win at SlideShare SEO & Presentation Optimization
 
How To Get More From SlideShare - Super-Simple Tips For Content Marketing
How To Get More From SlideShare - Super-Simple Tips For Content MarketingHow To Get More From SlideShare - Super-Simple Tips For Content Marketing
How To Get More From SlideShare - Super-Simple Tips For Content Marketing
 
How to Make Awesome SlideShares: Tips & Tricks
How to Make Awesome SlideShares: Tips & TricksHow to Make Awesome SlideShares: Tips & Tricks
How to Make Awesome SlideShares: Tips & Tricks
 

Similar a 2016 10 31_mef_brief_nonotes_v2

Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptxZapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
SeanHay6
 
Winning Strategy For Hybrid Cloud Environments
Winning Strategy For Hybrid Cloud EnvironmentsWinning Strategy For Hybrid Cloud Environments
Winning Strategy For Hybrid Cloud Environments
Carl De Groote
 
presentation_these_141215
presentation_these_141215presentation_these_141215
presentation_these_141215
Patrick Raad
 

Similar a 2016 10 31_mef_brief_nonotes_v2 (20)

Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...
Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...
Как развернуть кампусную сеть Cisco за 10 минут? Новые технологии для автомат...
 
Role-based Access Control June09 GeoSOA Workshop
Role-based Access Control June09 GeoSOA WorkshopRole-based Access Control June09 GeoSOA Workshop
Role-based Access Control June09 GeoSOA Workshop
 
PDT 94 - $15m - Series A - Cloudsmith.pdf
PDT 94 - $15m - Series A - Cloudsmith.pdfPDT 94 - $15m - Series A - Cloudsmith.pdf
PDT 94 - $15m - Series A - Cloudsmith.pdf
 
Technology Primer: Software-Defined Networking and Its Impact on Infrastructu...
Technology Primer: Software-Defined Networking and Its Impact on Infrastructu...Technology Primer: Software-Defined Networking and Its Impact on Infrastructu...
Technology Primer: Software-Defined Networking and Its Impact on Infrastructu...
 
Connecting Syria's Refugees
Connecting Syria's RefugeesConnecting Syria's Refugees
Connecting Syria's Refugees
 
Whose Cloud Is It Anyway? Exploring Data Security, Ownership and Control
Whose Cloud Is It Anyway? Exploring Data Security, Ownership and ControlWhose Cloud Is It Anyway? Exploring Data Security, Ownership and Control
Whose Cloud Is It Anyway? Exploring Data Security, Ownership and Control
 
Scalar Security Roadshow - Ottawa Presentation
Scalar Security Roadshow - Ottawa PresentationScalar Security Roadshow - Ottawa Presentation
Scalar Security Roadshow - Ottawa Presentation
 
Philippines Cybersecurity Conference 2021: The role of CERTs
Philippines Cybersecurity Conference 2021: The role of CERTsPhilippines Cybersecurity Conference 2021: The role of CERTs
Philippines Cybersecurity Conference 2021: The role of CERTs
 
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pdf
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pdfZapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pdf
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pdf
 
Cisco Connect 2018 Malaysia - SDNNFV telco data center transformation
Cisco Connect 2018 Malaysia - SDNNFV telco data center transformationCisco Connect 2018 Malaysia - SDNNFV telco data center transformation
Cisco Connect 2018 Malaysia - SDNNFV telco data center transformation
 
Security and Virtualization in the Data Center
Security and Virtualization in the Data CenterSecurity and Virtualization in the Data Center
Security and Virtualization in the Data Center
 
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptxZapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
Zapata-Technology-Corporate-Capabilities-Slide-Deck_July-2023-1.pptx
 
Winning Strategy For Hybrid Cloud Environments
Winning Strategy For Hybrid Cloud EnvironmentsWinning Strategy For Hybrid Cloud Environments
Winning Strategy For Hybrid Cloud Environments
 
Cisco ucs overview ibm team 2014 v.2 - handout
Cisco ucs overview   ibm team 2014 v.2 - handoutCisco ucs overview   ibm team 2014 v.2 - handout
Cisco ucs overview ibm team 2014 v.2 - handout
 
Big Data Analytics for Real-time Operational Intelligence with Your z/OS Data
Big Data Analytics for Real-time Operational Intelligence with Your z/OS DataBig Data Analytics for Real-time Operational Intelligence with Your z/OS Data
Big Data Analytics for Real-time Operational Intelligence with Your z/OS Data
 
presentation_these_141215
presentation_these_141215presentation_these_141215
presentation_these_141215
 
SD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivitySD-WAN_MoD.pptx for SD WAN networks connectivity
SD-WAN_MoD.pptx for SD WAN networks connectivity
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitive
 
Cisco at v mworld 2015 vmworld-deck-2015-final
Cisco at v mworld 2015 vmworld-deck-2015-finalCisco at v mworld 2015 vmworld-deck-2015-final
Cisco at v mworld 2015 vmworld-deck-2015-final
 
Introduction to SDN and Network Programmability - BRKRST-1014 | 2017/Las Vegas
Introduction to SDN and Network Programmability - BRKRST-1014 | 2017/Las VegasIntroduction to SDN and Network Programmability - BRKRST-1014 | 2017/Las Vegas
Introduction to SDN and Network Programmability - BRKRST-1014 | 2017/Las Vegas
 

Último

Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
Joaquim Jorge
 

Último (20)

Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Artificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and MythsArtificial Intelligence: Facts and Myths
Artificial Intelligence: Facts and Myths
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 

2016 10 31_mef_brief_nonotes_v2

  • 1. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATION UNCLASSIFIED David Stern- DBC/ID/ID24 Agency SDx SME/Optics & IP Architect david.j.stern.civ@mail.mil NOVEMBER 9, 2016 Operationalizing & Securing the Information Core UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE
  • 2. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Disclaimer The information provided in these briefings is for general information purposes only. It does not constitute a commitment on behalf of the United States Government to provide any of the capabilities, systems or equipment presented and in no way obligates the United States Government to enter into any future agreements with regard to the same. The information presented may not be disseminated without the express consent of the United States Government. These briefings may also contain references to United States Government future plans and projected system capabilities. Mention of these plans or capabilities in no way guarantees that the U.S. Government will follow these plans or that any of the associated system capabilities will be available or releasable to foreign governments.
  • 3. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Serving Soldiers, Sailors, Airmen, Marines, & Coast Guard – Around the Globe DEFENSE AND FEDERAL AGENCIES Enterprise…Innovate, Build, Protect, and Contract OFFICE OF THE SECRETARY OF DEFENSE COMBATANT COMMANDS WHITE HOUSE JOINT CHIEFS OF STAFF COALITION ACTIVITIES
  • 4. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Information Core Big Picture DevOps Compute (SDC) Storage (SDS) Network (SDN) NetOps OPEX/HARDWARE CAPEX DEV OPEX/SOFTWARE SDx (new/refresh) Automated Provisioning (existing) Brownfield Greenfield EFFECTS OPERATIONAL IMPROVEMENTS AVAILABILITY DEPLOYMENT COMPLEXITY PROVE SLA RELIABILITY EFFECTS FISCAL BUDGETARY REDUCTIONS NETWORK CONSOLIDATION LABOR REDUCTION EFFECTS SERVICE IMPROVEMENTS AUTOMATED PROVISIONING GLOBAL REPOSITIONING DYNAMIC MISSION PARTNER CAPABILITY NOW IN THE REALM OF POSSIBLE CAPABILITY DEVELOPMENT EVERY DEVICE IS A SENSOR (EDIAS)  End to End (E2E) Visibility of EVERY device On Demand Tap at EVERY device CONTINUITY OF GOVERNMENT (COG) COG Simulation/ Rehearsal Dept./Agency Level Coop GOVERNMENT CIRCUIT PROVISIONING On Demand Last Mile On Demand Cloud Services On Demand Mission Networks JWICS SIPRNET NIPRNET PRIVATE/MPE GLOBAL C2/VISIBILITY OF ALL ORCHESTRATORS (THROUGH CLASSIFICATION) C2 AGILITY CORE PROBLEM SDN SOLVES Security (SDS)
  • 5. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED Automated Provisioning Capability A Key Enabler for Software Defined Everything
  • 6. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Automated Provisioning Capability Bottom Line (NOT SDN) Automated Provisioning (AP) provides the ability to drastically reduce provisioning times through customer based service provisioning. Automation results in a significant reduction in Tier I, II technicians and provisioning personnel which reduces OPEX requirements. Automated Provisioning enables vendor neutral centralized control services in: – Legacy and Non-Standard Infrastructure – Mission Partner Environment (MPE) – Wide Area Networks – Campus Area Networks – Local Area Networks LOWERS FASTER COSTS EXPANDS SERVICES
  • 7. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Keys Points for the Automated Provisioning Capability Customer order through DDOE/Storefront – Provisioning goal (hardware available): 7 days – Actual installation time: 30+ days – Demonstrated with automation: 2 minutes!! – Capabilities are provisioned ON DEMAND Labor Hour Reduction – 5x OPEX reduction of Tier I, II & provisioning labor hours for start, change, or disconnect Automation = What/Where Knowledge – Potential for Whole of Government Visibility – Military Planners/Operators get current capabilities • Actionable for real time execution – DISA service managers get real time capabilities • Actionable to pre-deploy more capacity
  • 8. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED Information Core Capability Software Defined Everything Implementation
  • 9. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Information Core / Software Defined Enterprise TODAY: DoD Information Network (DoDIN) The globally interconnected, end-to-end set of information capabilities for collecting, processing, storing, disseminating, and managing information on demand to warfighters, policy makers, and support personnel. GOAL: Information Core The globally orchestrated, end-to-end set of information capabilities for collecting, processing, storing, disseminating, and managing information on demand to warfighters, policy makers, and support personnel. Software Defined Everything collapses the current organizational and work domain boundaries between Network, Compute, Storage and Security. Centralized orchestration enables agility. Agility translates to Defensive and Offensive Cyber Maneuver.
  • 10. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATIONUNITED IN SERVICE TO OUR NATIONUNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED Proof of Concepts in Lab
  • 11. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Provider Edge: On Demand Cloud / Last Mile 11 Apr 16 Layer 2 & Layer 3 connectivity Server Cloud Computing Services Last MileDISA Service Provider Enterprise API Security Gateways Enterprise applications (API controlled) DISA API Client Centralized Orchestration through API integration DoDIC DISA Ft Meade Lab IPT-PE Service Provider Network (Commercial, DISA, other) ON DEMAND POC IN PROCESS Existing MEF Multiplexed UNI-N Facing DISA
  • 12. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Haywire - Policy Verification (Encryption) 100GbE MACSECCISCO ASR9000 CISCO ASR9000 10 x 10GbE BROCADE MLXe BROCADE MLXe 10 x 10G INTERFACES (10 x 10 IPSEC TUNNELS) o BROCADE MLXe 10GbE IPSEC INTERFACE ETH2/4 1x10G INTERFACE IPSEC TUNNEL 10.10.x.x 10.7.x.x TRAFFIC 10 x 10GbE TRAFFIC CISCO ASR9000 Te0/2/0/4 POC COMPLETED
  • 13. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Haywire - Policy (Encryption) Enforcement DoD FIRST! Cyber Circuit BreakerSM • Policy violation activates Cyber Circuit BreakerSM. Tool provides authoritative topology to Orchestrator • The Orchestrator shuts down the Interface on demand to enforce policy (could be a human entering credentials) • Policy fails at next collection as destination is no longer reachable (another policy violation) due to the circuit breaker
  • 14. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNCLASSIFIED UNITED IN SERVICE TO OUR NATION Handoff – Reliable VM Live Migration CDC 1 CDC 2 Example of improved Cyber Maneuver - Reliable application mission movement of VMs/Containers between Data Centers. May be coupled with Defensive Cyber Operations (DCO) through dynamic network reconfiguration. Problem: Traditional Live Migration results in the loss of network traffic to/from compute resources while they are moving, especially between data centers. This results in loss of traffic, retransmission, resynchronization of encryption and other direct customer experience impacts. SDN Based Solution: (DISA Patent Pending) Using OpenFlow® capable portions of a network, store traffic in transit while compute assets are moving. Release traffic in order (or optimized by flow) when move is completed. BLUF: Orchestrator coordinates compute, storage, and network together to produce a capability we could not achieve before (i.e. using the network to store inflight data). POC in Progress Patent Pending
  • 15. UNCLASSIFIED – APPROVED FOR PUBLIC RELEASE UNITED IN SERVICE TO OUR NATION