VISIBILITY INTO CLOUD COMPUTING

Similar documents
CLOUDLENS PUBLIC, PRIVATE, AND HYBRID CLOUD VISIBILITY

Daten-Management & Sicherheit in virtualisierten Umgebungen und der Cloud. Martin Heinzelmann SR CHANNEL SE

Solution Overview Gigamon Visibility Platform for AWS

Data Sheet Gigamon Visibility Platform for AWS

IXIA VISIBILITY ARCHITECTURE Eliminating Blind spots

VMware Cloud on AWS Technical Deck VMware, Inc.

Product Brief GigaVUE-VM

The Next Opportunity in the Data Centre

How to go serverless with AWS Lambda

Hybrid Cloud Solutions

Title DC Automation: It s a MARVEL!

Cloud Technologies Public and Private Cloud Interconnection

Data Sheet GigaSECURE Cloud

MAKING THE CLOUD A SECURE EXTENSION OF YOUR DATACENTER

Security Camp 2016 Cloud Security. August 18, 2016

Serverless Computing. Redefining the Cloud. Roger S. Barga, Ph.D. General Manager Amazon Web Services

How to Leverage Containers to Bolster Security and Performance While Moving to Google Cloud

Exploring Cloud Security, Operational Visibility & Elastic Datacenters. Kiran Mohandas Consulting Engineer

Manage the Performance of SaaS and Cloud Hosted Applications

Multi-Cloud and Application Centric Modeling, Deployment and Management with Cisco CloudCenter (CliQr)

SIEM Product Comparison

CloudCenter for Developers

Module Day Topic. 1 Definition of Cloud Computing and its Basics

Integrating NetScaler ADCs with Cisco ACI

AWS Well Architected Framework

Taming the Multi-Cloud With Simplicity and Openness. Minh Dang Cisco Systems Vietnam 2018 January

Best Practices for Cloud Security at Scale. Phil Rodrigues Security Solutions Architect Amazon Web Services, ANZ

Citrix SD-WAN for Optimal Office 365 Connectivity and Performance

AWS IoT Overview. July 2016 Thomas Jones, Partner Solutions Architect

The Virtualisation Security Journey: Beyond Endpoint Security with VMware and Symantec

OPEN COMPUTE PLATFORMS POWER SOFTWARE-DRIVEN PACKET FLOW VISIBILITY, PART 2 EXECUTIVE SUMMARY. Key Takeaways

Cisco Unified Data Center Strategy

Cloud Computing An IT Paradigm Changer

THE IMPACT OF HYBRID AND MULTI CLOUDS TO CYBERSECURITY PRIORITIES

Cisco Nexus 1000V Switch for Microsoft Hyper-V

DISTRIBUTED SYSTEMS [COMP9243] Lecture 8a: Cloud Computing WHAT IS CLOUD COMPUTING? 2. Slide 3. Slide 1. Why is it called Cloud?

Pasiruoškite ateičiai: modernus duomenų centras. Laurynas Dovydaitis Microsoft Azure MVP

Splunk & AWS. Gain real-time insights from your data at scale. Ray Zhu Product Manager, AWS Elias Haddad Product Manager, Splunk


Getting Started with AWS Security

Intelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access

Cisco Virtual Networking Solution Nexus 1000v and Virtual Services. Abhishek Mande Engineer

vrealize Introducing VMware vrealize Suite Purpose Built for the Hybrid Cloud

Cloud Native Security. OpenShift Commons Briefing

Quantum, network services for Openstack. Salvatore Orlando Openstack Quantum core developer

VMWARE SOLUTIONS AND THE DATACENTER. Fredric Linder

Cloud & container monitoring , Lars Michelsen Check_MK Conference #4

SAFEGUARDING YOUR VIRTUALIZED RESOURCES ON THE CLOUD. May 2012

Application Centric Microservices Ken Owens, CTO Cisco Intercloud Services. Redhat Summit 2015

85% 89% 10/5/2018. Do You Have A Firewall Around Your Cloud? Conquering The Big Threats & Challenges

NTT Com Press Conference March 1, 2016 #enterprisecloud

Cisco Container Platform

Evolution of Data Center Security Automated Security for Today s Dynamic Data Centers

The Latest EMC s announcements

To the Designer Where We Need Your Help

Rethinking Security CLOUDSEC2016. Ian Farquhar Distinguished Sales Engineer Field Lead for the Gigamon Security Virtual Team

How to Route Internet Traffic between A Mobile Application and IoT Device?

Multi-Cloud and Application Centric Modeling, Deployment and Management with Cisco CloudCenter (CliQr)

Presenting the VMware NSX ECO System May Geert Bussé Westcon Group Solutions Sales Specialist, Northern Europe

Security Aspekts on Services for Serverless Architectures. Bertram Dorn EMEA Specialized Solutions Architect Security and Compliance

VMware Cloud on AWS. A Closer Look. Frank Denneman Senior Staff Architect Cloud Platform BU

CHARTING THE FUTURE OF SOFTWARE DEFINED NETWORKING

Virtual Cloud Network Level 200. Jamal Arif November 2018

Amazon Web Services. Block 402, 4 th Floor, Saptagiri Towers, Above Pantaloons, Begumpet Main Road, Hyderabad Telangana India

BROCADE CLOUD-OPTIMIZED NETWORKING: THE BLUEPRINT FOR THE SOFTWARE-DEFINED NETWORK

Certificate of Registration

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

ARCHITECTING WEB APPLICATIONS FOR THE CLOUD: DESIGN PRINCIPLES AND PRACTICAL GUIDANCE FOR AWS

Self-driving Datacenter: Analytics

The Why, What, and How of Cisco Tetration

Nuage Networks Product Architecture. White Paper

Design Guide for Cisco ACI with Avi Vantage

Cloud for the Enterprise

MAKE THE MOST OUT OF HYBRID CLOUD THE CISCO INTERCLOUD FABRIC

Contrail Networking: Evolve your cloud with Containers

AWS_SOA-C00 Exam. Volume: 758 Questions

Raj Jain (Washington University in Saint Louis) Mohammed Samaka (Qatar University)

IBM Cloud Security for the Cloud. Amr Ismail Security Solutions Sales Leader Middle East & Pakistan

SteelConnect. The Future of Networking is here. It s Application- Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

Mid-Atlantic CIO Forum

2018 Cisco and/or its affiliates. All rights reserved.

SYMANTEC DATA CENTER SECURITY

IXVISION: VISIBILITY ARCHITECTURE Eliminating Blind spots

Cisco Tetration Analytics

Building a Microservices Platform, Patterns and Best Practices

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Microsoft Best Practices on AWS

Amazon Web Services Training. Training Topics:

Build an open hybrid cloud and paint it red and blue

DevOps and Continuous Delivery USE CASE

Securing Microservices Containerized Security in AWS

AWS 101. Patrick Pierson, IonChannel

Amazon Web Services (AWS) Solutions Architect Intermediate Level Course Content

Developing Microsoft Azure Solutions (70-532) Syllabus

Creating a Hybrid Gateway for API Traffic. Ed Julson API Platform Product Marketing TIBCO Software

Intuit Application Centric ACI Deployment Case Study

Architecting for Greater Security in AWS

A Single Cloud for Business Applications

Azure Stack: The hybrid cloud revolution

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Transcription:

VISIBILITY INTO CLOUD COMPUTING Brendan Leitch, Head of APAC Marketing 1

SECURITY AND PERFORMANCE DEPENDS ON DATA VISIBILITY Access Challenges: Get data access for tools VISIBILITY: Seeing the Traffic on Your Network Data Distribution Challenges: Scale tool capacity Network taps vs. SPAN ports Filter traffic to tools Limited tool ports Tool 1 Tool 2 Tool N Manage access for each tool Clients Network Tap Switch Network Tap Switch Network Tap Server 2

VISIBILITY IN THE PHYSICAL DATA CENTRE NETWORK Network Operations Taps Switch Network Packet Brokers 1G 1G Application Operations Taps Switch Taps Servers Aggregation Filtering Load Balancing SSL Decryption NetFlow 10G 40G Security Admin Forensics THE DATA CENTER 3

ENTERPRISE NETWORK EVOLUTION Then Now Internet of Things Distributed Network Mobile Devices SSL APIs Private & Public Cloud Virtualization 4

VISIBILITY PHYSICAL -> VIRTUAL / PUBLIC Network Operations Switch Application Operations Private & Public Cloud Switch Security Admin Servers Virtualization Forensics THE DATA CENTER 5

VIRTUALIZATION & CONTAINERIZATION 6

Public Cloud Customer CUSTOMER RESPONSIBILITY BOUNDARIES Customer Data Applications Identity & Access Management Operating System & Network Foundation Services Compute Storage Database Network Public Cloud Infrastructure Availability Zones Regions Edge Locations Customer Public Cloud 7

VISIBILIY - CHALLENGES WITH CLOUD ADOPTION Packet data to Tools Platform agnostic service Data access Manual vs On-demand vs Scheduled Solves Scale Up as well as Scale Out Elasticity & Scale Effective handling of transient data Configuration management Dynamic no dependency on the physical location Infrastructure churn 8

INTRODUCING IXIA CLOUDLENS CloudLens CloudLens Private CloudLens Public Branch Office Virtual DC Private Cloud Public Cloud CloudLens vtap CloudLens vpb CloudLens vatip 9

HOW CLOUDLENS WORKS IXIA CloudLens Public Management Layer Monitoring Tools Secure Visibility Path Filtering at source Filtered Traffic securely sent from Instance to Tool 10

WORKFLOW OVERVIEW CLOUDLENS PUBLIC Create source groups based on metadata Identify source instances Source Configuratio n Identify tool instances Tool Configurati on Create secure visibility path from source to tools with intelligent filtering 5 step process to complete visibility Focus on relevant data Create visibility paths with easy drag and drop Create tool group based on metadata 11

users IAM Cognito Management Layer API Gateway Lambda Code Commit Application Layer CloudLens Public SaaS Config S3 DynamoDB Data Access Layer HOW GROUPING WORKS Work from an instance description In the form of a search Can rebuild list at any time Source Group 1 Source Group 2 App Tier Destination Group 1 New instances automatically categorized Expected behavior is known based on existing group configuration Web Tier Scale tools also Destination Group 2 Source instances divided among targets DB Tier Tenant 1 12

GROUPING + METADATA = ELASTIC SCALABILITY Source Group 1 App Tier App Tier App Tier Destination Group 1 Web Tier Web Tier Web Tier Source Group 2 Web Tier Web Tier Web Tier Destination Group 2 DB Tier Tenant 1 13

USE CASE VISIBILITY ACROSS MULTIPLE CLOUDS AND COLOCATIONS Home Office Log storage in private data center Colocation Datacenter Corporate data center Security, Application and Network Performance Monitoring Tools in the private data center Colocation Datacenter Remote Site 14 NOC, user and usage Analytics center

ACHIEVING VISIBILITY & SECURITY IN THE CLOUD THE BENEFITS OF CLOUDLENS PUBLIC ELASTIC SCALE ON DEMAND CLOUD-NATIVE Scales with the source and tool Automatically load balances EASY TO USE Drag & Drop Interface (GUI) Dynamic no dependency on physical location Quick setup process - Installs as Docker container REDUCE ERRORS Minimal management and configuration Saves time and money Tools listen to the virtual interface Enhanced, intelligent filtering based on instance metadata All within Ixia s visibility ecosystem So customers can achieve their security and compliance objectives in the cloud 15

IXIA PROVIDES END-TO-END INSIGHT THE SECURITY & MONITORING FABRIC Monitor virtual traffic at the branch office, data center or cloud Capture and send packets and flows of interest to monitoring tools Support both physical and virtual environments Limit amount, type of data sent to monitoring tools, adjust dynamically Visibility with tenant awareness Branch Office Virtual Data Center Virtual Security Fabric Data Access Anywhere Context Aware Data Processing Intelligent Adaptive Monitoring Public Cloud Private Cloud Cloud SP Network 16

THANK YOU 17