Security Overview and Cisco ACE Replacement

Similar documents
A10 Thunder Series Application Delivery Controller (ADC)

TALK THUNDER SOFTWARE FOR BARE METAL HIGH-PERFORMANCE SOFTWARE FOR THE MODERN DATA CENTER WITH A10 DATASHEET YOUR CHOICE OF HARDWARE

AX ADC Application Delivery Controller

Thunder Series for MobileIron Sentry

Drive Greater Value from Your Cisco Deployment with Radware Solutions

and public cloud infrastructure, including Amazon Web Services (AWS) and AWS GovCloud, Microsoft Azure and Azure Government Cloud.

Configuring End-to-End SSL

DEPLOYMENT GUIDE HOW TO DEPLOY MICROSOFT SHAREPOINT 2016 WITH A10 THUNDER ADC

F5 Synthesis Information Session. April, 2014

A10 Thunder ADC with Oracle E-Business Suite 12.2 DEPLOYMENT GUIDE

Deployment Guide AX Series with Oracle E-Business Suite 12

Pulse Secure Application Delivery

THUNDER ADC Next-generation Application Delivery Controller

DEPLOYMENT GUIDE A10 THUNDER ADC FOR EPIC SYSTEMS

DEPLOYMENT GUIDE SSL INSIGHT DEPLOYMENT FOR A SINGLE-APPLIANCE ARCHITECTURE

F5 comprehensive protection against application attacks. Jakub Sumpich Territory Manager Eastern Europe

Cisco Cloud Architecture with Microsoft Cloud Platform Peter Lackey Technical Solutions Architect PSOSPG-1002

F5 Networks in the Software Defined DataCenter Era. Paolo Pambianco System Engineer CSP

Sichere Applikations- dienste

SSL Insight and Cisco FirePOWER Deployment Guide DEPLOYMENT GUIDE

DevOps CICD PopUp. Software Defined Application Delivery Fabric. Frey Khademi. Systems Engineering DACH. Avi Networks

SAS and F5 integration at F5 Networks. Updates for Version 11.6

Best Practice Deployment of F5 App Services in Private Clouds. Henry Tam, Senior Product Marketing Manager John Gruber, Sr. PM Solutions Architect

A10 SSL INSIGHT & SONICWALL NEXT-GEN FIREWALLS

THUNDER ADC. 10 Reasons to Select A10 WHITE PAPER

What is New in Cisco ACE 4710 Application Control Engine Software Release 3.1

DEPLOYMENT GUIDE MICROSOFT SKYPE FOR BUSINESS SERVER 2015 DEPLOYMENT WITH THUNDER ADC USING APPCENTRIC TEMPLATES (ACT)

WHITE PAPER A10 SSL INSIGHT & FIREWALL LOAD BALANCING WITH SONICWALL NEXT-GEN FIREWALLS

Architecture: Consolidated Platform. Eddie Augustine Major Accounts Manager: Federal

THUNDER WEB APPLICATION FIREWALL

Orchestration: Accelerate Deployments and Reduce Operational Risk. Nathan Pearce, Product Development SA Programmability & Orchestration Team

Oracle E-Business Suite 11i with Cisco ACE Series Application Control Engine Deployment Guide, Version 1.0

A Single Cloud for Business Applications

Cloud, SDN and BIGIQ. Philippe Bogaerts Senior Field Systems Engineer

Cisco ACE30 Application Control Engine Module

Imperva Incapsula Product Overview

Powerful application delivery, security, performance and reliability

What s next for your data center? Power Your Evolution with Physical and Virtual ADCs. Jeppe Koefoed Wim Zandee Field sales, Nordics

Evolution of Data Center Security Automated Security for Today s Dynamic Data Centers

Deployment Guide. Blackboard Learn +

The Next Opportunity in the Data Centre

Accelerate Your Cloud Journey

Cisco HyperFlex and the F5 BIG-IP Platform Accelerate Infrastructure and Application Deployments

Deployment Guide Apr-2019 rev. a. Array Networks APV/vAPV Series ADCs and eclinicalworks Application Servers

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER

F5 Demystifying Network Service Orchestration and Insertion in Application Centric and Programmable Network Architectures

Configuring Virtual Servers

Corrigendum 3. Tender Number: 10/ dated

DEUTSCHE TELEKOM TERASTREAM: A NETWORK FUNCTIONS VIRTUALIZATION (NFV) USING OPENSTACK

jetnexus Virtual Load Balancer

THUNDER ADC Next-generation Application Delivery Controller

TALK. agalaxy FOR THUNDER TPS REAL-TIME GLOBAL DDOS DEFENSE MANAGEMENT WITH A10 DATA SHEET DDOS DEFENSE MONITORING AND MANAGEMENT

Brocade Application Delivery

SSL INSIGHT SSL ENCRYPTION CHALLENGES SSL USE EXPOSES A BLIND SPOT IN CORPORATE DEFENSES SOLUTION BRIEF UNCOVER HIDDEN THREATS IN ENCRYPTED TRAFFIC

A10 DDOS PROTECTION CLOUD

Configuring SSL Termination

Integrating NetScaler ADCs with Cisco ACI

ADC im Cloud - Zeitalter

Build application-centric data centers to meet modern business user needs

Understanding of basic networking concepts (routing, switching, VLAN, firewall functionality)

jetnexus Load Balancer

SDN Security BRKSEC Alok Mittal Security Business Group, Cisco

Layer 4 to Layer 7 Design

Brocade Virtual Traffic Manager and Parallels Remote Application Server

Array Networks Delivering Cloud applications

Service Insertion with ACI using F5 iworkflow

Layer 4 to Layer 7 Service Insertion, page 1

KillTest ᦝ䬺 䬽䭶䭱䮱䮍䭪䎃䎃䎃ᦝ䬺 䬽䭼䯃䮚䮀 㗴 㓸 NZZV ]]] QORRZKYZ PV ٶ瀂䐘މ悹伥濴瀦濮瀃瀆ݕ 濴瀦

Setup SSL Insight in a Single Partition with dynamic port & non-http intercept

jetnexus Virtual Load Balancer

Multi-Tenancy Designs for the F5 High-Performance Services Fabric

The DNS of Things. A. 2001:19b8:10 1:2::f5f5:1d Q. WHERE IS Peter Silva Sr. Technical Marketing

Intelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access

AX Series with Microsoft Exchange Server 2010

vserver vserver virtserver-name no vserver virtserver-name Syntax Description

How your network can take on the cloud and win. Think beyond traditional networking toward a secure digital perimeter

Citrix NetScaler Traffic Management

Configuring Real Servers and Server Farms

Citrix NetScaler 10.5 Essentials for ACE Migration (CNS-208)

Configuring Stickiness

A10 HARMONY CONTROLLER

THUNDER CGN High-Performance IPv4 Scaling and IPv6 Transition Technologies

Role Configuration Mode Commands

Network Automation and Branch Agility The Network Helps Enable Digital Business. Rajinder Singh Product Sales Specialist June 2016

EFFECTIVE SERVICE PROVIDER DDOS PROTECTION THAT SAVES DOLLARS AND MAKES SENSE

Automate Application Deployment with F5 Local Traffic Manager and Cisco Application Centric Infrastructure

Features. HDX WAN optimization. QoS

Cisco Virtual Office High-Scalability Design

The Virtualisation Security Journey: Beyond Endpoint Security with VMware and Symantec

Oracle 10g Application Server Suite Deployment with Cisco Application Control Engine Deployment Guide, Version 1.0

Secure Extensible Network. Solution and Technology Introduction

[DOC] CISCO ACE 4700 CONFIGURATION EXAMPLE DOWNLOAD

NetScaler for Apps and Desktops CNS-222; 5 Days; Instructor-led

Data Center Virtualization Setting the Foundation. Ed Bugnion VP/CTO, Cisco Server, Access and Virtualization Technology Group

Configuring Cisco ACE for Load Balancing Cisco Identity Service Engine (ISE)

Cisco Nexus Data Broker

The New Net, Edge Computing, and Services. Michael R. Nelson, Ph.D. Tech Strategy, Cloudflare May 2018

Hosting Roadmap Upgrades, Improvements and Changes

Disclaimer CONFIDENTIAL 2

Transcription:

Security Overview and Cisco ACE Replacement March, 2014 Florian Hartmann, Senior Systems Engineer DACH

A10 Corporate Introduction Headquarters in San Jose 800+ Employees Offices in 32 countries Customers in 65 countries CUSTOMER GROWTH 1,000+ 2,000+ 4000+ Q4' 11 Q4' 12 Today COMPANY GROWTH $186M $142M $120M $91.5M 54.7M 2

A10 Product Portfolio Overview CGN Carrier Grade Networking ADC Application Delivery Controller TPS Threat Protection System Product Lines ADC Application Acceleration & Security CGN IPv4 Extension / IPv6 Migration TPS Network Perimeter DDoS Security ACOS Platform Application Networking Platform Performance Scalability Extensibility Flexibility Dedicated Network Managed Hosting Cloud IaaS IT Delivery Models 3

3400+ Customers in 65 Countries Service Providers Enterprises Web Giants 3 of Top 4 U.S. WIRELESS CARRIERS 7 of Top 10 U.S. CABLE PROVIDERS Top 3 WIRELESS CARRIERS IN JAPAN 4

A10 ACOS Platform Software & Hardware

ACOS Platform: Scaling Application Networking with Moore s Law High-Value Services: Optimization, Availability, Security Shared Memory Architecture OSI Reference Model Application 1 2 3 N Presentation Session Transport Network Data Link Physical IP: 192.168.1.1 Flexible Traffic Accelerator MAC: f4:f9:51:f0:d5:9d IP: 192.168.1.1 Switching and Routing MAC: f4:f9:51:f0:d5:9d Low-Value Services: Forwarding, Segmentation Highly Extremely Scalable Efficient Application-Layer Network Pre-Processing*: Processing: Hardware-Assisted L2-4 Pre-Processing Scalable Optimized Symmetric Hardware-Assisted Multi-Processing Flow Distribution Unique Hardware-Assisted Shared Memory Security Architecture Functions Linear Growth in Scale via Parallel Processing * Hardware Assist Features Available on Most Thunder Appliances 6

ACOS: Platform for Application Service Gateway Portfolio Policy Mgmt agalaxy axapi aflex acloud acloud Services Architecture (SDN & Cloud Integration) Software Product Lines Platform OS & Services Optimization & Acceleration ADC CGN ACOS Advanced Core Operating System IPv6 SLB SSL GSLB TCP Opt NAT Security TPS DDoS SSL WAF AAM DAF Dedicated Data Centers Multi-Tenant Data Centers Form Factors Thunder TM & AX Series Appliances Virtual Chassis (avcs ) Application Delivery Partitions (ADPs) Thunder HVA Appliances vthunder Perpetual License vthunder Pay-as-you-Go License IT Delivery Models Dedicated Network Managed Hosting Cloud IaaS 7

A10 ACOS Platform Security Solutions

Enterprise Data Center Application availability To maintain uptime SLB, GSLB, high-availability (HA), Healthchecks, more Application acceleration For equipment consolidation and faster user experience Caching, compression, network optimization, more Application security services For brand and asset protection while enhancing your existing security FWLB, WAF, SSL services, more Backup Data Center Availability: GSLB High-availability Health-checks A10 ADC Security: DDoS Mitigation WAF DAF AAM Acceleration: SSL Offload TCP Reuse RAM Caching Compression Web App DNS Other App 9

DMZ Security Solutions Scaling security devices and encrypted communications SSL Insight: Eliminate encryption blind spot and scale security appliances FWLB and SSL offload, more Defend against emerging DDoS attacks Network and application protection Selectively apply dynamic security chains Traffic steering and advanced ADC services A10 ADC A10 ADC Firewall Load Balancing DDoS Mitigation WAF DAF AAM Traffic Steering aflex Scripting SSL Offload Firewalls IDS/IPS DLP Other Firewall Load Balancing SSL Insight Data Center Internal Users 10

A10 Security Alliance Partner Categories SSL Inspection and Load Balancing Certificate Management Authentication Intelligence Advanced Detection and Analysis Programmatic Security Control 11

Why A10 Wins - Cisco ACE Replacement and in general

Easy transition features CLI/GUI Graphical User Interface (GUI) Fewer screens and steps for tasks Intuitive and easy to use Command Line Interface (CLI) Industry standard (Cisco-like CLI) Easy to use, comprehensive help ACOS Version 2.7.x Rest-based API JSON format Many integrations and SDKs available 16

Easy transition features CLI/SDP Cisco ACE config interface vlan 120 description Upstream VLAN_120 - Clients and VIPs ip address 192.168.120.1 255.255.255.0 fragment chain 20 fragment min-mtu 68 rserver host SERVER1 ip address 192.168.252.245 inservice rserver host SERVER2 ip address 192.168.252.246 inservice rserver host SERVER3 ip address 192.168.252.247 inservice serverfarm host SFARM1 probe UDP rserver SERVER1 inservice rserver SERVER2 inservice rserver SERVER3 inservice class-map match-all L4UDP-VIP_114:UDP_CLASS 2 match virtual-address 192.168.120.114 udp eq 53 policy-map type loadbalance first-match L7PLBSF_UDP_POLICY class class-default serverfarm SFARM1 A10 AX config vlan 120 tagged interface e 1 router-interface ve 120! interface ve 120 ip address 192.168.120.1 255.255.255.0! slb server SERVER1 192.168.252.245 port 0 udp! slb server SERVER2 192.168.252.246 port 0 udp! slb server SERVER3 192.168.252.247 port 0 udp! slb service-group SFARM1 udp health-check UDP member SERVER1:None member SERVER2:None member SERVER3:None! slb virtual-server vs_192_168_120_114 192.168.120.114 port udp name L4UDP-VIP_114:UDP_CLASS service-group SFARM1 17

Cisco ACI Integration Application-Centric Infrastructure Dynamic L4-L7 Services Nexus 9000 Series Application Policy Infrastructure Controller A10 Networks Thunder Series A10 ACOS Appliances Physical, HVA and Virtual APIC L4, L7 SLB Application templates HTTP optimizations A10 Components Partner Components ADC Thunder, vthunder, Thunder HVA Cisco Nexus Fabric, APIC Controller Target Markets Hybrid Cloud Large Enterprise: Financials, Pharma, Education, SaaS Differentiation Choice of form factors Operational consistency A10 Cisco ACI Device Package available now! 18

Thank you