1 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA LABS604 - Essentials for quickly deploying and configuring NetScaler.

Slides:



Advertisements
Presentaciones similares
STONEGATE Solución integral de seguridad
Advertisements

© 2006 Microsoft Corporation. All rights reserved.
Productividad personal Estar al día Colaboración Limitada.
Subnetting Class B Addresses and Troubleshooting IP Addressing COMP 417.
3/29/2017 1:27 PM © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered.
José Parada Gimeno ITPro Evangelist
1 1.Prepare and Install 1.1 You have to know before installation 1.2 Hardware Installation 2. How to use Bluetooth Printer Adapter’s Services 2.1 Connect.
Internet Red Modelo con productos Ansel A S B Ansel Smart Box A S B Ansel Smart Box.
Sembrando confianza en el CLOUD Oscar López Área I+D+i XV Jornadas de Seguridad NEXTEL S.A. 27/06/2013.
Ruteo – continuación - Forouzan, capítulo 6.
Helping Your Child at Home with Math Agenda Welcome and Overview Math Tools Using Math Strategies Homework Grade Level Games Closing: Mathematics Vision.
NETGEAR: Business Solutions For Any Size Customer Switching Storage Wireless Security HOY : Howto VPN redundante.
Copyright© 2003 Avaya Inc. All rights reserved Copyright© 2002 Avaya Inc. All rights reserved Avaya – Proprietary Use pursuant to Company instructions.
Launch with Confidence User Experience (UX) Diseñando una experiencia por y para los usuarios Presentado por: Rob [Senior Engineer]
DHCP Redes de computadores: un enfoque descendente basado en Internet, 2ª edición. Jim Kurose, Keith Ross.
FACULTAD DE INGENIERIA UNIVERSIDAD DE BUENOS AIRES FIUBA Redes de Datos – Ing. Marcelo Utard / Ing. Pablo Ronco “Routing Protocols” Curso de Especialización.
Alberto López Marketing Product Manager
Sistemas de Información Agosto-Diciembre 2007 Sesión # 3.
DHCP, DNS, WINS. Repaso..
Hoy es viernes, el 26 de septiembre
Nina Jackson, Presenter.  IMSCI is research based writing instruction.  IMSCI uses the gradual release of responsibility model to teach writing.  Scaffolds.
The Delian Group, LLC Comunicaciones seguras via la infraestructura celular Aplicaciones Smart Phone Para iPhone, Android, Nokia Smartphones y Blackberry.
WWW. WIRELESS WIFI Wireless-Fidelity Es un mecanismo de conexión de dispositivos electrónicos de forma inalámbrica.
FACULTAD DE INGENIERIA DE SISTEMAS, CÓMPUTO Y TELECOMUNICACIONES Enhanced Interior Gateway Protocol (EIGRP)
Telecomunicaciones Ing. Juan J. Salas Fukutake 2014.
Introducción Nivel 4. Modelo OSI Propiedades Nivel 4 Entrega de mensajes garantizada. Entrega de mensajes en el mismo orden en el que fueron enviados.
Bienvenida ALC 135 Miércoles el 13 de abril. objetivo Yo puedo presentar el ppt de la Semana Santa.
BARTERING. What is Bartering? Bartering is negotiating a lower price between a buyer and a seller of a good or service Bartering is negotiating a lower.
Ing. Michael Puma Huanca
Overclipping It’s very important as a trader that you understand your clip size and what positions this allows you to have. In addition it will help you.
Learning Target: I will be able to determine the Difference between different ecosystems around the world.
RedCLARA Update Eriko Porto CLARA Network Engineering Group
Sistemas Tecnológicos Sesión Nro. 3. Las Redes de Computadoras.
Curso de Medidas Eléctricas 2016 CLASE 18 MEDIDAS AUTOMÁTICAS.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 11: Traducción de Direcciones para IPv4 Routing And Switching.
Slide title In CAPITALS 50 pt Slide subtitle 32 pt 3G Comissioning using Element Manager By Vanesa Melendez.
Tienes un nuevo mensaje…. Ella era una chica timida, llamada Lina, no tenia amigosy solo convivia con su familia especialmente con su madre y su padre…
¡Hola! Part 3 Icons key: Photo: © Pedro Salaverría, Shutterstock.com
Cómo asignar IP Address estáticos en un host
header Oscar Fernando Jerez Rey
BGP – Border Gateway Protocol
Proyecto de vocabulario de la ciudad
Primera Actividad Escribe en español: 1. The backpack is under the desk. 2. The books are on top of the table. 3. The pens are.
2018/9/21. La abstracción de la Red Un Campus de usuarios Víctor Jiménez Ramos Chief Engineer.
Especificación de equipo contenerizado de generación eléctrica General Electric Jenbacher JGC420 a biogás POME Guatemala, marzo 2018 Agenda Especificaciones.
Page 1 CITS Active Directory Implementation UMass Dartmouth.
© 2017 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 7: EIGRP Tuning and Troubleshooting Scaling Networks.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
| CITSmart ITSM.
IBM Cloud Flexible Choice of Infrastructure VMware | Openstack | Hardware | IaaS Kubernetes-based Platform Developer Productivity | Operational Efficiency.
Rational Tool Overview. Introduction Requirements-Driven Software Development with Rational Analyst Studio. Tafadzwa Nzara Analysis & Design Consultant.
Best Practice Instalacion de motores SQL.
Los números.
Capítulo 4: Contenidos 4.1 Introducción Plano de datos
HUAWEI TECHNOLOGIES CO., LTD. All rights reserved Internal Principios de Operación, Estructura de Hardware y Software CAPÍTULO I.
Comparison of Data-driven Link Estimation Methods in Low-power Wireless Networks HONGWEI ZHANG LIFENG SANG ANISH ARORA.
Virtual Private Networks (VPNs)
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Switched Networks Routing and Switching.
An Animated PowerPoint Template. This 2007 PowerPoint contains video animation, but does not support text over video. The PowerPoint 2010 version includes.
A PowerPoint Template Your Presentation Name. This text is a placeholder Main Content Page Layout 2 Copyright 2009.
Introduction to CAN. What is CAN and what are some of its features? Serial communication Multi-Master Protocol Compact –Twisted Pair Bus line 1 Megabit.
Virtual LAN Design Switches also have enabled the creation of Virtual LANs (VLANs). VLANs provide greater opportunities to manage the flow of traffic on.
Fundamentals of Web Development - 2 nd Ed.Randy Connolly and Ricardo Hoar Fundamentals of Web DevelopmentRandy Connolly and Ricardo Hoar © 2017 Pearson.
El agua.
Connectivity MODELS OF NETWORK COMPUTING Centralized computing Distributed computing Collaborative or cooperative computing.
Welcome to PowerPoint gdskcgdskfcbskjc. Designer helps you get your point across PowerPoint Designer suggests professional designs for your presentation,
How to write my report. Checklist – what I need to include Cover page Contents page – with sections Introduction - aims of project - background information.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 8: DHCP Routing and Switching Essentials v6.0.
Capítulo 4: Contenidos 4.1 Introducción Plano de datos
Introduction to Fortinet Unified Threat Management.
Transcripción de la presentación:

1 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA LABS604 - Essentials for quickly deploying and configuring NetScaler SD-WAN ​Delivery Network Group ​Technical Marketing Engineer MAY 22, 2019

2 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Agenda Basic Introduction to SD-WAN –Module 1: SD-WAN Installation and Configuration –Module 2: SD-WAN Provisioning and Change Management Advanced features to SD-WAN –Module 3: Getting to know the SD-WAN lab environment –Module 4: Features introduced in SD-WAN –Module 5: Features introduced in SD-WAN Welcome

3 ​“The Underlay Network” ​Existing Customer Topology ​Module 1

4 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Existing Customer Network / “The Underlay Network” Branch BBranch A Secondary Data Center Primary Data Center Branch C … Branch N Firewall MPLS Internet

5 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Understand the Existing Network What are you looking to solve? Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router MPLS Queues? VPN in place? Available Static Public IP? iPerf bandwidth measurement? Speedtest bandwidth measurement? Network challenges? –Congested MPLS –Application reliability –Serving high-definition applications (videos, photos, etc.) –Hardware operation and management Network specifics? –Model/Software routers, firewalls, etc –VPN –Accuracy of WAN links speeds –Firewall blocking UDP or limiting speed –Lab environment for PoC, availability of downtime if production PoC Standby?

6 ​“SD-WAN Overlay Network” ​Topology Design ​Module 1

7 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA NetScaler Product Portfolio NetScaler ADCNetScaler GatewayNetScaler SD-WAN Single link QoS Application optimization Application visibility WANOP Edition (WO) Multi Link aggregation WAN path resiliency Application optimization Path/Application visibility Hardware consolidation Enterprise Edition (EE) Multi Link aggregation WAN path resiliency WAN path visibility Hardware consolidation Standard Edition (SE)

8 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Picking the Right Solution List out Success Criteria Better utilize a single MPLS link Optimize business critical apps WAN and HDX insight Increase WAN link capacity Increase application availability Monitor uptime on WAN paths Hardware consolidation Optimize business critical apps WAN and HDX insight NetScaler SD-WAN Data Sheet us/documents/data-sheet/netscaler-sd-wan- datasheet.pdf Sizing & Pricing Guide for Partners: NetScaler SD-WAN ?id= SD-WAN - SESD-WAN - WOSD-WAN - EE

9 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN WANOP Edition Solve single link performance issues of application delivery and visibility Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - WO Standby Suggested deployment: Inline across MPLS using bypass pair SD-WAN - WO Suggested deployment: Virtual Inline (PBR or WCCP) in High Availability pair NetScaler Insight Center

10 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Standard Edition Solve WAN link capacity and application reliability Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Active Suggested deployment: Inline across all WAN Links using bypass pair SD-WAN - SE Suggested deployment: Virtual Inline (PBR) in High Availability pair NetScaler SD-WAN Center

11 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Enterprise Edition Solve WAN link capacity, application reliability, network and application visibility Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN – EE Active Suggested deployment: Inline across all WAN Links using bypass pair SD-WAN - SE Suggested deployment: SE: Virtual Inline (PBR) in HA WO: Virtual Inline (WCCP) in HA NetScaler SD- WAN Center SD-WAN - WO NetScaler Insight Center

12 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Overlay Product Selection Mix and match as needed Branch BBranch A Secondary Data Center Primary Data Center Branch C … Branch N Firewall SD-WAN – WOSD-WAN – SESD-WAN – EE SD-WAN – WO SD-WAN – SE WO SE MPLS Internet No problems & no needs  No SD-WAN

13 ​“SD-WAN Overlay Network” ​Configure SD-WAN Topology ​Module 1

14 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Lab Configuration and Deployment NetScaler SD-WAN VPX Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Active Lab deployment: Inline Edge/Gateway Mode Lab deployment: Inline Transparent Mode NetScaler SD-WAN Center Mgmt. SD-WAN - SE 4G/LTE

15 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Controller (Configuration Editor) Building the SD-WAN Overlay Configuration Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Active Lab deployment: Inline Edge/Gateway Mode Lab deployment: Inline Transparent Mode NetScaler SD-WAN Center Mgmt. SD-WAN - SE 4G/LTE

16 ​“SD-WAN Overlay Network” ​Provision SD-WAN Topology ​Module 2

17 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Change Management Provisioning SD-WAN Overlay Configuration and Software Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Active Lab deployment: Inline Edge/Gateway Mode Lab deployment: Inline Transparent Mode NetScaler SD-WAN Center Mgmt. SD-WAN - SE 4G/LTE

18 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA SD-WAN Lab Virtual Path Good path state indicates successful configuration

19 ​“SD-WAN Overlay Network” ​Troubleshooting SD-WAN Environment ​Module 2

20 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Troubleshooting SD-WAN VIP Connectivity Ping Test 2 INET ping connectivity Remote VIP to DC VIP 1 MPLS ping connectivity Remote VIP to DC VIP 3 LTE ping connectivity Remote VIP to DC VIP

21 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Troubleshooting SD-WAN VIP Connectivity Trace Route 1 On Host B Trace Route to Host A 2 HOP #1 3 Host B HOP #2 HOP #3 Host A 4 Destination

22 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Network firewall configuration requirement 1 Src: Local VIP and 4980 Dst: MCN Static Public IP and port Firewall builds entry in NAT table 3 Firewall configured to port-forward :1 NAT: Static Public IP to MCN INET VIP Firewall builds entry in NAT table for dynamic public IP of branch 4 MCN dynamically learns off all remote sites (IP and port) then shares with SD-WAN network One Static Public IP address for each Data Center Internet WAN link Datacenter firewall needs port forwarding rule to allow 4980 UDP (pinhole) UDP Hole Punching option available for remote site ISP firewall (if supported)

23 ​SD-WAN Features ​Release ​Module 3

24 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Dynamic Routing on SD-WAN OSPF, iBGP, eBGP Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Router Replacement OSPF/BGP

25 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA MPLS VIP: MPLS VIP INET VIP: INET VIP G VIP: G VIP Dynamic Routing with SD-WAN Overlay Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router Virtualized Overlay Network Underlay Network MPLS 4G/LTE Internet SD-WAN - SE OSPF SD-WAN BR Route Table Dst: /16  SD-WAN DC Dst: /16  SD-WAN DC SD-WAN BR Route Table Dst: /24  SD-WAN BR

26 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA DHCP Server on SD-WAN SD-WAN - SE 4G/LTE Core Hosts Mgmt. Internet MPLS DHCP IP Lease Request DHCP IP Lease Offer

27 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Internet Traffic Backhaul with SD-WAN Firewall Internet MPLS Firewall Router Core Data Center Remote Core Router SD-WAN - SE Internet Service enabled at Data Center

28 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Direct Internet Breakout at Remote Branch Firewall Internet MPLS Router Core Data Center Remote Core Router SD-WAN - SE Internet Service enabled at Remote Branch Secure Web Gateway Firewall Replacement

29 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Routing Domains on SD-WAN Secondary Data Center Primary Data Center Firewall SalesManufacturingMarketingEngineering IT Firewall Support Firewall MPLS Internet Routing Domain

30 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Zero Touch Deployment for SD-WAN Branch B Primary Data Center New Site Firewall Internet MPLS Citrix Zero Touch Deployment Service SD-WAN Center Branch A 1 SD-WAN Admin builds config for new site. SD-WAN Admin authorizes ZTD deployment request 2 Installer connects new SD-WAN to internet, powers on, and uses serial number to activate 3 ZTD Service validates the two-factor authentication 4 Virtual Path establishment between SD- WANs

31 ​SD-WAN Features ​Release ​Module 4

32 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Metered Links on SD-WAN Internet MPLS Firewall Router SD-WAN - SE 4G/LTE Metered Link Link of Last Resort

33 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Underlay network MPLS Quality of Service and bandwidth % SD-WAN Configuration to match MPLS QoS Queues Configuration on SD-WAN Internet MPLS Router Firewall Router SD-WAN - SE Bulk 20% AF11 50% EF 30% 10Mbps MPLS Bulk – 2Mbps AF11 – 5Mbps EF – 3Mbps 100Mbps MPLS Bulk – 20Mbps AF11 – 50Mbps EF – 30Mbps INET 100%

34 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Trusted links – no encryption if behind Firewall or VPN Untrusted links – force encryption Datasheet specs with AES-128 bit AES-256 bit IPsec using Level 1 FIPS certified IPsec cryptographic binary IPsec Data Encryption on SD-WAN Internet MPLS Router VPN Router SD-WAN - SE Data Encryption

35 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA User controlled BAD state % loss Additional configurable parameters Path State Sensitivity Control Internet MPLS Router Firewall Router SD-WAN - SE BAD / DEAD Path State GOOD Path State

36 ​SD-WAN ​Closing Remarks

37 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA Upgrade Procedure

38 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA

39 © 2017 Citrix | Summit 2017 | Confidential – Content in this presentation is under NDA