WHITE PAPER. F5 and Cisco. Supercharging IT Operations with Full-Stack SDN

Similar documents
F5 Reference Architecture for Cisco ACI

F5 and Nuage Networks Partnership Overview for Enterprises

The Programmable Network

The F5 Application Services Reference Architecture

Multi-Tenancy Designs for the F5 High-Performance Services Fabric

Deploying a Next-Generation IPS Infrastructure

Unified Application Delivery

Deploying a Next-Generation IPS Infrastructure

Prompta volumus denique eam ei, mel autem

Improving VDI with Scalable Infrastructure

Complying with PCI DSS 3.0

DESIGN GUIDE. VMware NSX for vsphere (NSX-v) and F5 BIG-IP Design Guide

Archived. Configuring a single-tenant BIG-IP Virtual Edition in the Cloud. Deployment Guide Document Version: 1.0. What is F5 iapp?

Validating Microsoft Exchange 2010 on Cisco and NetApp FlexPod with the F5 BIG-IP System

Deploying the BIG-IP LTM with IBM QRadar Logging

Deploying the BIG-IP System v11 with DNS Servers

Load Balancing 101: Nuts and Bolts

F5 iapps: Moving Application Delivery Beyond the Network

Enabling Long Distance Live Migration with F5 and VMware vmotion

Load Balancing 101: Nuts and Bolts

Maintain Your F5 Solution with Fast, Reliable Support

Large FSI DDoS Protection Reference Architecture

Archived. Deploying the BIG-IP LTM with IBM Cognos Insight. Deployment Guide Document version 1.0. What s inside: 2 Products and versions tested

Enhancing VMware Horizon View with F5 Solutions

Geolocation and Application Delivery

Data Center Virtualization Q&A

F5 Networks in the Software Defined DataCenter Era. Paolo Pambianco System Engineer CSP

Deploy F5 Application Delivery and Security Services in Private, Public, and Hybrid IT Cloud Environments

Deploying the BIG-IP System with CA SiteMinder

Server Virtualization Incentive Program

How to Future-Proof Application Delivery

Managing the Migration to IPv6 Throughout the Service Provider Network White Paper

Meeting the Challenges of an HA Architecture for IBM WebSphere SIP

Protecting Against Application DDoS A acks with BIG-IP ASM: A Three- Step Solution

Cisco Unified Computing System Delivering on Cisco's Unified Computing Vision

Securing the Cloud. White Paper by Peter Silva

The F5 Intelligent DNS Scale Reference Architecture

Cisco HyperFlex and the F5 BIG-IP Platform Accelerate Infrastructure and Application Deployments

F5 in AWS Part 3 Advanced Topologies and More on Highly Available Services

Orchestration: Accelerate Deployments and Reduce Operational Risk. Nathan Pearce, Product Development SA Programmability & Orchestration Team

Optimizing NetApp SnapMirror Data Replication with F5 BIG-IP WAN Optimization Manager

Deploying WAN-Optimized Acceleration for VMware vmotion Between Two BIG-IP Systems

Deploying the BIG-IP System with Oracle Hyperion Applications

Network Functions Virtualization - Everything Old Is New Again

BUILDING the VIRtUAL enterprise

Archived. h h Health monitoring of the Guardium S-TAP Collectors to ensure traffic is sent to a Collector that is actually up and available,

Cookies, Sessions, and Persistence

F5 icontrol. In this white paper, get an introduction to F5 icontrol service-enabled management API. F5 White Paper

OPTIMIZE. MONETIZE. SECURE. Agile, scalable network solutions for service providers.

VMware vcenter Site Recovery Manager

Global Distributed Service in the Cloud with F5 and VMware

Protect Against Evolving DDoS Threats: The Case for Hybrid

Cisco Unified Data Center Strategy

Vulnerability Assessment with Application Security

Software-Defined Hardware: Enabling Performance and Agility with the BIG-IP iseries Architecture

Simplifying Security for Mobile Networks

Cisco CloudCenter Solution with Cisco ACI: Common Use Cases

Managing BIG-IP Devices with HP and Microsoft Network Management Solutions

Hitachi Enterprise Cloud Container Platform

Cisco CloudCenter Solution Use Case: Application Migration and Management

Converting a Cisco ACE configuration file to F5 BIG IP Format

Cisco Cloud Application Centric Infrastructure

SNMP: Simplified. White Paper by F5

21ST century enterprise. HCL Technologies Presents. Roadmap for Data Center Transformation

Optimize and Accelerate Your Mission- Critical Applications across the WAN

Citrix Federated Authentication Service Integration with APM

Considerations for VoLTE Implementation

Networking for a dynamic infrastructure: getting it right.

Trends and challenges Managing the performance of a large-scale network was challenging enough when the infrastructure was fairly static. Now, with Ci

Transform Your Business with Hybrid Cloud

The Need In today s fast-paced world, the growing demand to support a variety of applications across the data center and help ensure the compliance an

Networking for a smarter data center: Getting it right

Accelerate Your Enterprise Private Cloud Initiative

Cisco Cloud Services Router 1000V and Amazon Web Services CASE STUDY

VMware NSX: Accelerating the Business

Creating a Hybrid ADN Architecture with both Virtual and Physical ADCs

Solutions Guide. F5 solutions for the emerging 5G landscape

White Paper. OCP Enabled Switching. SDN Solutions Guide

Enabling Flexibility with Intelligent File Virtualization

VMWARE CLOUD FOUNDATION: INTEGRATED HYBRID CLOUD PLATFORM WHITE PAPER NOVEMBER 2017

NFV and SDN what does it mean to enterprises?

Automate Application Deployment with F5 Local Traffic Manager and Cisco Application Centric Infrastructure

Modernizing Healthcare IT for the Data-driven Cognitive Era Storage and Software-Defined Infrastructure

Distributing Applications for Disaster Planning and Availability

Cisco Cloud Architecture with Microsoft Cloud Platform Peter Lackey Technical Solutions Architect PSOSPG-1002

ANNUAL REPORT SOLUTIONS FOR AN APPLICATION WORLD.

ING DIRECT turns ideas into revenue faster with Cisco UCS.

Protecting Against Online Banking Fraud with F5

VMWARE CLOUD FOUNDATION: THE SIMPLEST PATH TO THE HYBRID CLOUD WHITE PAPER AUGUST 2018

Resource Provisioning Hardware Virtualization, Your Way

Design and deliver cloud-based apps and data for flexible, on-demand IT

Simplify Hybrid Cloud

BIG IQ Reporting for Subscription and ELA Programs

Benefits of SD-WAN to the Distributed Enterprise

Securing LTE Networks What, Why, and How

ONUG SDN Federation/Operability

Automating the Data Center

I D C T E C H N O L O G Y S P O T L I G H T. V i r t u a l and Cloud D a t a Center Management

Webshells. Webshell Examples. How does a webshell attack work? Nir Zigler,

DEFINING SECURITY FOR TODAY S CLOUD ENVIRONMENTS. Security Without Compromise

Transcription:

+ WHITE PAPER F5 and Cisco Supercharging IT Operations with Full-Stack SDN

Contents Introduction 3 Confronting the bottleneck 3 Evolving SDN technologies 4 An integrated solution 5 Application policies, not plumbing 6 Empowering IT operations 6 Summary 7 2

Introduction Many IT operations teams struggle to keep pace with application developers and changing business needs. And who can blame them? They must accommodate an explosion of applications across an array of environments. They must protect users and data everywhere and at all times. They must support a continuous flood of infrastructure move, add, and change requests, configuring systems and components to meet exacting and ever-changing requirements. And most of them are still doing it manually. Software-defined networking (SDN) can provide relief for IT operations teams, automating the configuration and deployment of infrastructure based on the needs of applications. But a robust SDN solution must encompass the full network stack and be flexible enough to deliver higher-level application services. This paper illustrates how the integration of the F5 BIG-IP platform, Cisco Application Centric Infrastructure (Cisco ACI ), and the F5 iworkflow virtual appliance) delivers a market-leading SDN solution. By providing policy-driven automation that accelerates infrastructure and application deployment, the solution also elevates the role of IT operations teams, helping them transition from builders to architects, and from technology bottlenecks to business enablers. Confronting the bottleneck Application development teams can no longer wait for their networking, computing, storage, and security counterparts to manually configure and deploy infrastructure systems on their behalf. They need on-demand IT resources to deliver new applications and software updates that address evolving business needs. If they can t get those resources from their internal infrastructure team and get them quickly they will acquire them elsewhere. After all, cloud-based infrastructure is just a credit card number away from being deployed immediately. Enter SDN, which flips traditional IT paradigms on their head and decouples applications from infrastructure. Instead of forcing applications to conform to static underlying systems, SDN automates the configuration and deployment of infrastructure based on the needs of applications. That means compute, storage, and network resources that used to be manually configured taking days, weeks, or even months can be spun up in minutes. It s a major shift for IT teams and the businesses they support, fostering unprecedented efficiency, elasticity, and agility. 3

Applications can be deployed faster, with better service levels. Infrastructure can be expanded or contracted at a moment s notice, whether for peak seasons, batch processing, marketing promotions, or fluctuating bandwidth demands. And the entire business can operate more efficiently, using only the IT resources that are needed, when needed. SDN promises to ease the IT bottleneck that is present in many organizations. One where application developers are waiting for infrastructure, IT operations teams are struggling to maintain existing systems and accommodate move, add, and change requests, and the business is slow to respond to customer, market, and competitive pressures. STATEFUL SERVICES Layers 4-7 Application Delivery Controller Local Load Balancing Global Load Balancing DDoS Protection Application Security Identity and Access Application Performance Application Proxies Secure Web Gateway Firewall VIRTUAL AND OVERLAYING NETWORK STATELESS SERVICES Layers 2-4 Router Switch Figure 1: Organizations can realize the most benefits from operationalizing both stateless and stateful network services. Evolving SDN technologies In its nascent stages, SDN was designed to separate the control plane from the data plane, removing routing and switching from the application development equation. But that only solved half the problem. While first-generation SDN technologies successfully automated the base layers of the network (L2 3) in support of applications, IT operations teams still had to manually configure service levels for those applications. Load balancing, firewall, security, access, and compliance services all delivered in the application layers of the network (L4 7) had to be meticulously assembled for every new workload, and for every software change. In these early stages, the benefits of SDN were clear, but the bottleneck persisted. To realize the full promise and potential of SDN, automation and orchestration were needed across the entire stack from layer 2 through layer 7. 4

An integrated solution F5 and Cisco have partnered to fulfill the promise of full-stack, end-to-end SDN by integrating the BIG-IP platform, Cisco ACI, and the iworkflow virtual appliance. Here s how it works in simplified terms. L4 7 services are defined in F5 iworkflow using easy-to-understand templates called F5 iapps. iworkflow then creates a Dynamic Device Package for each application. These Dynamic Device Packages are loaded into the Cisco Application Policy Infrastructure Controller (APIC), where L2 3 services including servers, firewalls, and load balancers are defined. A policy is then created for each application, and used by iworkflow and the APIC to automatically configure the network, application delivery controllers (ADCs), and service levels. IT operations teams can manage all application policies from the Cisco APIC, which functions as a centralized controller for L2 7 infrastructure automation and orchestration. iworkflow BIG-IP Virtual Edition BIG-IP Appliance BIG-IP Chassis Figure 2: Deliver automation and orchestration with the integrated F5 and Cisco full-stack SDN solution. Compared to other SDN technologies, the F5 and Cisco solution is more integrated, flexible, and controllable. It exposes more granular service levels and choices, which can be tailored for each application. Different policies can be established for diverse application types, or even for different groups in a multitenant framework. And these policies can be easily updated at any time through the Dynamic Device Package. 5

Application policies, not plumbing Two hallmarks of the integrated F5 and Cisco SDN solution are simplicity and focus on application policies. A policy covering L2 3 switching and routing and L4 7 services is created for each application. These policies are described in plain terms, allowing anyone to outline application requirements without knowing the specifics of network and service configuration, which can include tens of thousands of lines of code. Teams need only define high-level application services and basic connections like IP addresses and ports. It s a simplified approach focused on application characteristics and connections, not the underlying plumbing. Policies can be easily changed or updated throughout an application s lifecycle, and they can be used repeatedly for new applications. The approach dramatically speeds up infrastructure provisioning, application deployment, and ongoing software and hardware maintenance. Furthermore, these capabilities can be handed over to application developers through a self-service catalog. With iworkflow, application templates can be prebuilt and reused, with as much choice and flexibility as desired, allowing application developers to spin up their own infrastructure resources. And that changes the very nature and relevance of IT operations. Empowering IT operations IT operations teams are builders of the highest degree, carefully constructing and configuring each infrastructure component and service level to meet the needs of developers and the applications they create. But the reality is that too often most teams are buried in repetitive, manual tasks. Moves, adds, changes. All day, every day. With full-stack, self-service SDN, IT operations teams have the opportunity to elevate their role and relevance within the IT organization and within their business, transforming themselves from order takers to orchestrators. Instead of wielding tools on others behalf, IT operations teams can create a powerful toolbox and place it in the hands of application developers. This frees the IT operations team from repetitive, manual tasks, and allows them to focus on foundational, repeatable capabilities that help push the business forward. And it enables application developers to move at their own pace and deploy infrastructure as needed, when needed. Most importantly, the entire IT organization becomes a faster, more coordinated, more efficient driver of business success. 6

Summary F5 and Cisco have worked together for years to engineer, integrate, and optimize one of the industry s best SDN solutions. One that fundamentally changes the way an infrastructure is managed in support of applications and business needs. The integration of the BIG-IP platform, Cisco ACI, and iworkflow fulfills the promise and potential of SDN, delivering policy-based automation and orchestration up and down the network stack. It brings speed, simplicity, and flexibility to IT processes that have been too slow and cumbersome to keep up with the explosion of enterprise applications and the dynamic nature of modern business. But full-stack SDN does more than speed up infrastructure provisioning and application deployment. It elevates the strategic importance of the IT operations team within an organization, enabling them to transition from builders to architects, creating foundational capabilities that supercharge IT processes and drive business forward. For more information about the F5 and Cisco partnership, visit F5.com/cisco and Cisco.com/F5 Discover how the BIG-IP platform can help you optimize SDN at https://f5.com/products/how-to-buy F5 Networks, Inc. 401 Elliott Avenue West, Seattle, WA 98119 888-882-4447 f5.com Americas info@f5.com Asia-Pacific apacinfo@f5.com Europe/Middle-East/Africa emeainfo@f5.com Japan f5j-info@f5.com 2017 F5 Networks, Inc. All rights reserved. F5, F5 Networks, and the F5 logo are trademarks of F5 Networks, Inc. in the U.S. and in certain other countries. Other F5 trademarks are identified at f5.com. Any other products, services, or company names referenced herein may be trademarks of their respective owners with no endorsement or affiliation, express or implied, claimed by F5. DC0317 WP-CLOUD-PUB-129388717