SlideShare una empresa de Scribd logo
1 de 46
Twitter: @datacenterworld
#DCWLA17
1
The Best of Both Worlds:
Ensuring a Secure Hybrid Cloud
via Direct Network Connectivity
(Session IT5)
Sagi Brody
CTO -Webair
Download the App
and rate this
session.
2
Data Center World – Certified Vendor Neutral
Each presenter is required to certify that their
presentation will be vendor-neutral.
As an attendee you have a right to enforce this
policy of having no sales pitch within a session
by alerting the speaker if you feel the session is
not being presented in a vendor neutral fashion.
If the issue continues to be a problem, please
alert Data Center World staff after the session
is complete.
Twitter: @datacenterworld
#DCWLA17
Context & Opportunity
• Methods for interconnection of existing enterprise networks with
cloud services
• Leverage local data centers, CSPs, and NSPs to achieve low-
latency local cloud & global scale
• Achieve contract & SLA backed managed cloud services
consumable as if they were on-premises (best of both worlds)
• What to do with old & expensive internet connectivity (DIA)
Twitter: @datacenterworld #DCWLA17
Twitter: @datacenterworld
#DCWLA17
Assumptions
Cloud vs On-Premises infrastructure
• Both Serve a purpose
• Match platform based on:
• Use-case/Applications
• Latency
• Legacy requirements & Integrations
• Security/Compliance
• Costs
Interconnection of existing networks with cloud
Twitter: @datacenterworld
#DCWLA17
Why Care?
CISO Approved
Twitter: @datacenterworld #DCWLA17
Why Care?
Easy..VPN Tunnel
Twitter: @datacenterworld #DCWLA17
VPN Tunnel
Twitter: @datacenterworld #DCWLA17
• Easy to configure - VPN based
• Pros:
• Simple to setup
• Proven config
• Achieve level of hybrid fast
• “Encrypt all things”
• Cons:
• Internet based
• Inconsistent speeds
• Duplication of security & management tools
• Bound by provider’s network configuration
• No cost savings vs Internet based traffic for expensive data transfer fees
At Scale
Twitter: @datacenterworld
#DCWLA17
At Scale
Twitter: @datacenterworld #DCWLA17
Direct connectivity
Twitter: @datacenterworld
#DCWLA17
• Traditional network connectivity : MetroEthernet / MPLS / VPLS / Point to Point
• Connects to what:
• Direct to CSP
• Direct to Hyperscale (if possible)
• To intermediary provider (fabric) who then connect to CSP / Hyperscale
• Ok, why?
• Speed: Lower Latency, consistent performance (up to ~30%)
• Reduced Cost - Possibly 10s of thousands of dollars
• Traffic doesn’t route over public internet
• Network stretch: Workload portability
• Merge Cloud to local environment (pre-existing network models, IP schemes, etc)
• Capture Internet facing traffic via local connectivity
Direct Connectivity
Twitter: @datacenterworld
#DCWLA17
Cloud enablement from traditional network providers
Direct Connectivity
Twitter: @datacenterworld #DCWLA17
• Some NSPs now offering this as a service, consider yourself lucky
• Typically need to pick this up at a data center or MMR
• What about multiple regions?
• Cloud have other providers in the mix..
• “Traditional” circuit with traditional
• Turn up time
• Contracts
• Possibly local loop providers
• Lack of transparency
Multiple Clouds & Multiple Regions
Twitter: @datacenterworld
#DCWLA17
Provider VLAN Tagged connectivity
Twitter: @datacenterworld
#DCWLA17
Slightly better than traditional
Easier in a data center?
Twitter: @datacenterworld #DCWLA17
• 4 Physical ports on devices
• 4 Paid cross connects
• 4 Organized connections with 3rd parties
• 4 Ports to monitor and manage at fixed speeds
• 4 MetroEthernet fees to get to other PoPs
Enter Virtual Interconnection..
Twitter: @datacenterworld #DCWLA17
“ Elastic, SDN based, ubiquitous Ethernet fabric”
“Interconnection Platform”
“software enabled interconnection platform”
Open Cloud Exchange
“ one-to-many Ethernet connection to the cloud”
Cloud Exchange
“advanced interconnection solution” “outsourced connectivity solutions”
Virtual Interconnection
Twitter: @datacenterworld #DCWLA17
Virtual Interconnection
Twitter: @datacenterworld #DCWLA17
• One physical connection from your network to the fabric
• Ability to segment multiple “Virtual Cross Connects” to other
networks/participants
• Ability to provision VXCs instantly via portals or APIs
• Connectivity to large big name clouds and other networks
• Metro and Longhaul
• No Long term commitments
• QoS & SLA
• “It’s not what the fabric can do for you,
its what you can do for the fabric!”
Datacenter before
Twitter: @datacenterworld #DCWLA17
Datacenter after
Twitter: @datacenterworld #DCWLA17
Metro Fabric
Twitter: @datacenterworld #DCWLA17
Longhaul before
Twitter: @datacenterworld #DCWLA17
Longhaul after
Twitter: @datacenterworld #DCWLA17
Cloud Connectivity
Twitter: @datacenterworld #DCWLA17
Cool. How does this help with hybrid connectivity
• Consume multiple cloud providers easily
• Reduced data-transfer costs
• Traffic does not traverse the public Internet
• Reduces vendor lock-in and fears of cloud commitment
• Public cloud can now be seen as tenant to existing network
• Build temporary connectivity for sensitive data
• CISCO Happy :)
Any Cons?
• Middle man between you and 3rd party
• Security?
• Multi-tenant platform
• Multiple providers/networks on same platform
• Lack of transparency
• Compliance
Going deeper: leveraging regional & edge providers
for cloud enablement
When public cloud isn’t enough
Twitter: @datacenterworld #DCWLA17
• Latency: post-production uploads, real time bidding, file share “stretch”
• Unmanaged IaaS or hyperscale: management, monitoring, security, and
scaling is still owned and accountable by end user (or additional 3rd party)
• Native BAAs of IaaS and hyperscale are nonexistent or weak
• Data sovereignty is an issue and only growing in importance with political
climate (ie Safe Harbor 10/16)
• Tough for VARs, MSPs, and those seeking white-glove/value add
Cloud at the Edge
Twitter: @datacenterworld
#DCWLA17
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
Opportunity for regional colocation facilities and edge data centers
• Multi-Cloud connectors
• Local cloud services for use-cases where hyperscale may not be a fit
• The “Cloud next door”
• The high touch provider to bring services to end users via customized
deployments
• “Regional Cloud Enabler” (RCE)
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
• Low Latency
• No cost for data transfer
• “Air Gap” Infrastructure by providing physical
segmentation
• CSP Ownership/Accountability of network +
services
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
• Go deeper..
• “Bridge” to an eco-system of
managed services
• Support future business
decisions quickly & privately
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
• Maintain standard & secure consumption model for all services:
• Single network ingestion point
• No/discounted data transfer fees
• Not over the Internet
• Consume these services:
• “Air Gapped” private cloud infrastructure
• Connectivity to public hyperscale
• Voice / SIP trunks
• SEIM / Security services
• 3rd party SaaS, Email, other services
• Backups / DRaaS
Cloud at the Edge
Twitter: @datacenterworld #DCWLA17
• Provides a flexible network deployment model
• Ability to stay compliant with any regulations
• Many cybersecurity questions go away
• Customized BAAs based on services
• Future Proofing the business with flexibility
CISO Approved
Barrier to entry?
Twitter: @datacenterworld #DCWLA17
Value of existing connectivity?
Twitter: @datacenterworld #DCWLA17
Value of existing connectivity?
Twitter: @datacenterworld #DCWLA17
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
Already being done..
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
How we did
it….
• Started with traditional web-hosting
• “Full Stack Ownership”
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
• Started at the top of the stack, Pure colo starts at bottom
• Existing layers of managed infrastructure support 400K sites
• Existing fabric within data centers
• Interesting 3rd party serves on-prem:
• VOIP
• MSSP SOC
• DDoS
• Backups, LBaaS, DRaaS, Cloud, etc..
• Cloud
Easy to win colo when everything is a physical cross connect within
the 4 walls, low latency, secure
How we did it..
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
Ecosystem of managed services within facility
• Started within the facility
• Promise of cloud services
behind the FW
• Easy to extend model to
customer network
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
• Not as black and white as On-Prem vs Hyperscale
• Big opportunity in the gray areas
• Achieve the “Best of Both worlds”: Contract and SLA backed cloud
services consumable as if they were on-premises
“Regional Cloud Enabler”
Twitter: @datacenterworld #DCWLA17
Real world Example: Regional Hospital
46
Thank you
Sagi Brody
CTO - Webair
sagi@webair.com
@webairsagi
Twitter: @datacenterworld
#DCWLA17

Más contenido relacionado

Último

Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024The Digital Insurer
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationSafe Software
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsEnterprise Knowledge
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilV3cube
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processorsdebabhi2
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Servicegiselly40
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...Martijn de Jong
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfEnterprise Knowledge
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)Gabriella Davis
 

Último (20)

Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time AutomationFrom Event to Action: Accelerate Your Decision Making with Real-Time Automation
From Event to Action: Accelerate Your Decision Making with Real-Time Automation
 
IAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI SolutionsIAC 2024 - IA Fast Track to Search Focused AI Solutions
IAC 2024 - IA Fast Track to Search Focused AI Solutions
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Developing An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of BrazilDeveloping An App To Navigate The Roads of Brazil
Developing An App To Navigate The Roads of Brazil
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 
CNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of ServiceCNv6 Instructor Chapter 6 Quality of Service
CNv6 Instructor Chapter 6 Quality of Service
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 

Destacado

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by HubspotMarius Sescu
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTExpeed Software
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsPixeldarts
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthThinkNow
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfmarketingartwork
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsKurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summarySpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentLily Ray
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best PracticesVit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project managementMindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...RachelPearson36
 

Destacado (20)

2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot2024 State of Marketing Report – by Hubspot
2024 State of Marketing Report – by Hubspot
 
Everything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPTEverything You Need To Know About ChatGPT
Everything You Need To Know About ChatGPT
 
Product Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage EngineeringsProduct Design Trends in 2024 | Teenage Engineerings
Product Design Trends in 2024 | Teenage Engineerings
 
How Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental HealthHow Race, Age and Gender Shape Attitudes Towards Mental Health
How Race, Age and Gender Shape Attitudes Towards Mental Health
 
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 

The Best of Both Worlds: Ensuring a Secure Hybrid Cloud via Direct Network Connectivity

  • 1. Twitter: @datacenterworld #DCWLA17 1 The Best of Both Worlds: Ensuring a Secure Hybrid Cloud via Direct Network Connectivity (Session IT5) Sagi Brody CTO -Webair Download the App and rate this session.
  • 2. 2 Data Center World – Certified Vendor Neutral Each presenter is required to certify that their presentation will be vendor-neutral. As an attendee you have a right to enforce this policy of having no sales pitch within a session by alerting the speaker if you feel the session is not being presented in a vendor neutral fashion. If the issue continues to be a problem, please alert Data Center World staff after the session is complete. Twitter: @datacenterworld #DCWLA17
  • 3. Context & Opportunity • Methods for interconnection of existing enterprise networks with cloud services • Leverage local data centers, CSPs, and NSPs to achieve low- latency local cloud & global scale • Achieve contract & SLA backed managed cloud services consumable as if they were on-premises (best of both worlds) • What to do with old & expensive internet connectivity (DIA) Twitter: @datacenterworld #DCWLA17
  • 4. Twitter: @datacenterworld #DCWLA17 Assumptions Cloud vs On-Premises infrastructure • Both Serve a purpose • Match platform based on: • Use-case/Applications • Latency • Legacy requirements & Integrations • Security/Compliance • Costs
  • 5. Interconnection of existing networks with cloud
  • 9. VPN Tunnel Twitter: @datacenterworld #DCWLA17 • Easy to configure - VPN based • Pros: • Simple to setup • Proven config • Achieve level of hybrid fast • “Encrypt all things” • Cons: • Internet based • Inconsistent speeds • Duplication of security & management tools • Bound by provider’s network configuration • No cost savings vs Internet based traffic for expensive data transfer fees
  • 12. Direct connectivity Twitter: @datacenterworld #DCWLA17 • Traditional network connectivity : MetroEthernet / MPLS / VPLS / Point to Point • Connects to what: • Direct to CSP • Direct to Hyperscale (if possible) • To intermediary provider (fabric) who then connect to CSP / Hyperscale • Ok, why? • Speed: Lower Latency, consistent performance (up to ~30%) • Reduced Cost - Possibly 10s of thousands of dollars • Traffic doesn’t route over public internet • Network stretch: Workload portability • Merge Cloud to local environment (pre-existing network models, IP schemes, etc) • Capture Internet facing traffic via local connectivity
  • 13. Direct Connectivity Twitter: @datacenterworld #DCWLA17 Cloud enablement from traditional network providers
  • 14. Direct Connectivity Twitter: @datacenterworld #DCWLA17 • Some NSPs now offering this as a service, consider yourself lucky • Typically need to pick this up at a data center or MMR • What about multiple regions? • Cloud have other providers in the mix.. • “Traditional” circuit with traditional • Turn up time • Contracts • Possibly local loop providers • Lack of transparency
  • 15. Multiple Clouds & Multiple Regions Twitter: @datacenterworld #DCWLA17
  • 16. Provider VLAN Tagged connectivity Twitter: @datacenterworld #DCWLA17 Slightly better than traditional
  • 17. Easier in a data center? Twitter: @datacenterworld #DCWLA17 • 4 Physical ports on devices • 4 Paid cross connects • 4 Organized connections with 3rd parties • 4 Ports to monitor and manage at fixed speeds • 4 MetroEthernet fees to get to other PoPs
  • 18. Enter Virtual Interconnection.. Twitter: @datacenterworld #DCWLA17 “ Elastic, SDN based, ubiquitous Ethernet fabric” “Interconnection Platform” “software enabled interconnection platform” Open Cloud Exchange “ one-to-many Ethernet connection to the cloud” Cloud Exchange “advanced interconnection solution” “outsourced connectivity solutions”
  • 20. Virtual Interconnection Twitter: @datacenterworld #DCWLA17 • One physical connection from your network to the fabric • Ability to segment multiple “Virtual Cross Connects” to other networks/participants • Ability to provision VXCs instantly via portals or APIs • Connectivity to large big name clouds and other networks • Metro and Longhaul • No Long term commitments • QoS & SLA • “It’s not what the fabric can do for you, its what you can do for the fabric!”
  • 26. Cloud Connectivity Twitter: @datacenterworld #DCWLA17 Cool. How does this help with hybrid connectivity • Consume multiple cloud providers easily • Reduced data-transfer costs • Traffic does not traverse the public Internet • Reduces vendor lock-in and fears of cloud commitment • Public cloud can now be seen as tenant to existing network • Build temporary connectivity for sensitive data • CISCO Happy :) Any Cons? • Middle man between you and 3rd party • Security? • Multi-tenant platform • Multiple providers/networks on same platform • Lack of transparency • Compliance
  • 27. Going deeper: leveraging regional & edge providers for cloud enablement
  • 28. When public cloud isn’t enough Twitter: @datacenterworld #DCWLA17 • Latency: post-production uploads, real time bidding, file share “stretch” • Unmanaged IaaS or hyperscale: management, monitoring, security, and scaling is still owned and accountable by end user (or additional 3rd party) • Native BAAs of IaaS and hyperscale are nonexistent or weak • Data sovereignty is an issue and only growing in importance with political climate (ie Safe Harbor 10/16) • Tough for VARs, MSPs, and those seeking white-glove/value add
  • 29. Cloud at the Edge Twitter: @datacenterworld #DCWLA17
  • 30. Cloud at the Edge Twitter: @datacenterworld #DCWLA17
  • 31. Cloud at the Edge Twitter: @datacenterworld #DCWLA17 Opportunity for regional colocation facilities and edge data centers • Multi-Cloud connectors • Local cloud services for use-cases where hyperscale may not be a fit • The “Cloud next door” • The high touch provider to bring services to end users via customized deployments • “Regional Cloud Enabler” (RCE)
  • 32. Cloud at the Edge Twitter: @datacenterworld #DCWLA17 • Low Latency • No cost for data transfer • “Air Gap” Infrastructure by providing physical segmentation • CSP Ownership/Accountability of network + services
  • 33. Cloud at the Edge Twitter: @datacenterworld #DCWLA17 • Go deeper.. • “Bridge” to an eco-system of managed services • Support future business decisions quickly & privately
  • 34. Cloud at the Edge Twitter: @datacenterworld #DCWLA17
  • 35. Cloud at the Edge Twitter: @datacenterworld #DCWLA17 • Maintain standard & secure consumption model for all services: • Single network ingestion point • No/discounted data transfer fees • Not over the Internet • Consume these services: • “Air Gapped” private cloud infrastructure • Connectivity to public hyperscale • Voice / SIP trunks • SEIM / Security services • 3rd party SaaS, Email, other services • Backups / DRaaS
  • 36. Cloud at the Edge Twitter: @datacenterworld #DCWLA17 • Provides a flexible network deployment model • Ability to stay compliant with any regulations • Many cybersecurity questions go away • Customized BAAs based on services • Future Proofing the business with flexibility CISO Approved
  • 37. Barrier to entry? Twitter: @datacenterworld #DCWLA17
  • 38. Value of existing connectivity? Twitter: @datacenterworld #DCWLA17
  • 39. Value of existing connectivity? Twitter: @datacenterworld #DCWLA17
  • 40. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 Already being done..
  • 41. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 How we did it…. • Started with traditional web-hosting • “Full Stack Ownership”
  • 42. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 • Started at the top of the stack, Pure colo starts at bottom • Existing layers of managed infrastructure support 400K sites • Existing fabric within data centers • Interesting 3rd party serves on-prem: • VOIP • MSSP SOC • DDoS • Backups, LBaaS, DRaaS, Cloud, etc.. • Cloud Easy to win colo when everything is a physical cross connect within the 4 walls, low latency, secure How we did it..
  • 43. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 Ecosystem of managed services within facility • Started within the facility • Promise of cloud services behind the FW • Easy to extend model to customer network
  • 44. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 • Not as black and white as On-Prem vs Hyperscale • Big opportunity in the gray areas • Achieve the “Best of Both worlds”: Contract and SLA backed cloud services consumable as if they were on-premises
  • 45. “Regional Cloud Enabler” Twitter: @datacenterworld #DCWLA17 Real world Example: Regional Hospital
  • 46. 46 Thank you Sagi Brody CTO - Webair sagi@webair.com @webairsagi Twitter: @datacenterworld #DCWLA17