© 2013 Aerohive Networks CONFIDENTIAL Rich Korb – Senior Systems Engineer Southeast Region...
-
Upload
tristian-athearn -
Category
Documents
-
view
220 -
download
5
Transcript of © 2013 Aerohive Networks CONFIDENTIAL Rich Korb – Senior Systems Engineer Southeast Region...
© 2013 Aerohive Networks CONFIDENTIAL
Rich Korb – Senior Systems Engineer
Southeast Region
TRANSFORMING YOUR NETWORK INTO A PLATFORM FOR MOBILITY
© 2013 Aerohive Networks CONFIDENTIAL
Introduction to Aerohive:
2
• Cloud-managed Mobile Networking Company› Cloud (Public & Private), Controller-less Wi-Fi,
Routing, VPN, Switching› ~$100M annualized run rate› 5th fastest growing tech company 07-11
» (Deloitte Fast 500 – 44,569% growth) › 135% YoY growth (2011-2012)› ~9000 Customers› ~500 Employees› Most Visionary Vendor - Gartner MQ
for Wired & Wireless LAN 2012
Branch & Teleworker
RoutersEnterprise Wi-Fi
Cloud Services Platform
Public Partner Private (on-premise)
EducationEnterpriseHealthcare Retail Logistics
Access Switches
© 2013 Aerohive Networks CONFIDENTIAL
IT needs to enable them, without drowning in complexity
$X
3
Users want to work anywhere, on any device
Security Performance Reliability Cost
Enterprise Landscape Cloud & Mobility Change Everything
Yesterday Today
Corp deployed enterprise devices, desktop apps & servers
Explosion of consumer devices, BYOD, mobile apps & cloud
Wi-Fi was a convenience / secondary network Wi-Fi has become essential, ubiquitous & strategic
Floor 1VLAN 1“Sales”
Floor 1VLAN 1“Sales”
Floor 1VLAN 1“Sales”
Floor 1VLAN 1“Sales”
Floor 2VLAN 2“Finance”
Floor 2VLAN 2“Finance”
Floor 2VLAN 2“Finance”
Floor 2VLAN 2“Finance”
Floor 1SSID 1“Guest”
Floor 1SSID 2“Corp”
Floor 2VLAN 2“Finance”
Floor 1SSID 1“guest”
Floor 2VLAN 2“Finance”
Floor 1SSID 2“Corp”
SSID 1
SSID 2
SSID 3
SSID 4
SSID 5
SS
ID 6
SS
ID 7
SS
ID 8
Policy was defined by location & network Policy defined by network no longer scales
Networks were monolithic -”build it & they will come” Infrastructure is now expected to be elastic like cloud apps
© 2013 Aerohive Networks CONFIDENTIAL4
Identity & Role
Location & Time
of Day
App Visibility & Control
PBX
Support business productivity and regain control
Device Detection & Security
Public & Enterprise Cloud
Branch Routing
Wi-Fi
Switching
Transforming your network into a platform for mobility
© 2013 Aerohive Networks CONFIDENTIAL
Zero Touch Provisioning
HiveManager IDManager
App & Network Visibility by “Context”
• Application• Role
• Network• Location
Policy enforced by “Context”
• Application• Identity• Device
• Role • Location
• Time of Day
HiveManager Dashboard
*Planned
Client Health Score
Good connection
High data rates & high successful transmission rates
Marginal connection
Lower data rates / lower successful transmission rates
Poor connection
Low data rates / low successful transmission rates
Cloud delivered Apps & Provisioning
Contextual visibility and enforcement
Network services, automation and APIs
Sophisticated troubleshooting tools
Reduce operational costs and add business value
Cloud networking vendor that transforms networks into platforms for mobility
Cloud Service
s
Sin
gle
Arc
hit
ectu
re,
OS
an
d M
an
ag
em
en
t
© 2013 Aerohive Networks CONFIDENTIAL
“It’s all about me.”
© 2013 Aerohive Networks CONFIDENTIAL
Optimize the User Experience Based on what is important to that user!
Mission-Critical,Business related
Evasive, Harmful, &
Non-compliant
Recreational, non-business
Qualit
y o
f Exp
eri
ence
© 2013 Aerohive Networks CONFIDENTIAL
Unified Wired and Wireless Policy
8
Wi-Fi
Switching
RoutingVPNFirewallBonjour
One-Time Port Provisioning Can be
applied to one or thousands of devices
© 2013 Aerohive Networks CONFIDENTIAL
Policy based on Context Identity, Device, Application, Location, Time of Day
9
RADIUS PPSK CWP
Firewall
Corp user Corp user - BYOD Guest user
CORP Policy
Corp VLAN
LAN & Web FW
Prioritize Work Apps
10Mbps per user
24HR Access
BYOD Policy
Restricted VLAN
Email & Web FW
Block Video Streaming
5Mbps per user
M-F 8am-9pm
GUEST Policy
DMZ
Web Only FW
Limit Social Media
1Mbps per user
M-F 9am-5pm
OS Detection
© 2013 Aerohive Networks CONFIDENTIAL
Unified Management via Cloud Platform
• Single pane of glass
• Unified WORKFLOWs› SAME policy, configuration
and management objects apply to APs, Routers, and SWITCHES!!!
11
Management
Device Configuration
Policy Configuration
Network & App Visibility
Troubleshooting
S/W Updating
Mobility-optimized Access Layer
© 2013 Aerohive Networks CONFIDENTIAL
Aerohive: One Architecture Everywhere
12
HQ Retail
Edu
iPad1:1
Faculty, Guests
Apple TVs
Branch
Unified Wired, Wi-Fi, VPN, FW
Virtualized Mgmt & VPN Termination
Wi-Fi Primary AccessGuest, Corp, BYOD Guest, Corp,
BYOD
TeleworkerWork, Home, 4G,
Cloud Security
Credit Cards. PCI, Inventory, Voice, Kiosks
Logistics
Coverage, Reliability, Voice Picking, Outdoor
Healthcare
EMR, eMAR, Asset Tracking, Voice MessagingHigh Density, AD integration, Bonjour, Ease of Use
Cloud-enabled
Data Center
Performance, Contextual Policy Enforcement, Unified Access Layer, MDM enrollment
© 2013 Aerohive Networks CONFIDENTIAL
How does it work?
13
A single HiveAP by itself acts as a full-featured enterprise class
access pointIdentity-based security, including stateful
inspection FW, rogue detection & mitigation Airtime Scheduling, SLA compliance and local
forwarding implemented at the edge
HiveAPs are discovered, policy is pushed and the
WLAN is operationalHiveManager is a single mgmt interface for configuration, OS updates & monitoring of
thousands of devices
With a second HiveAP, fast stateful roaming,
cooperative RF, station load balancing and
seamless resiliency are enabled
Mesh networking and best path forwarding can be used for extra resiliency
and reachability
Dynamically reroutes around failures
As more HiveAPs are added, coverage, reliability
and backhaul bandwidth increases
Cooperative RF power levels minimize
co-channel interference
With Cooperative Control, clients can securely
and seamlessly roam across the WLAN
Dynamic best path forwarding and stateful
roaming provides resiliency without a single
point of failure
With Cooperative Control, clients can securely
and seamlessly roam across the WLAN
Wireless Network
Wired Network
HiveManager NMS
Reporting Heat Maps
SLA Compliance
Policy Configuration
© 2013 Aerohive Networks CONFIDENTIAL
Public Cloud Provisioning
Public Cloud Provisioning
The Right Cloud Solution For Enterprises
Multi-tenant Public Cloud w/o Control
Plane
Public Cloud
Mid-Market Large Enterprise
Functionality, Reliability, Reduced Opex
Enterprise
Data Center / Private Cloud
© 2013 Aerohive Networks CONFIDENTIAL
Aerohive Platforms
15
AP110 AP121 AP330 AP350 AP170AP141BR100 / AP
Mode
BR100 BR200 WP AP330 / Router Mode
AP350 / Router Mode
Cloud VPN Gateway
SR2124P SR2148PSR2024
SR2xxx / Router Mode
HiveManager OnlineHiveManager On-Prem IDManager StudentManager
Wi-Fi
Routing/VPN
Switching
Management &
Applications
© 2013 Aerohive Networks CONFIDENTIAL
Less Operational Costs
Less Infrastructure Costs
Reduced Capex and Opex
Client Health Score
Good connection
High data rates & high successful transmission rates
Marginal connection
Lower data rates / lower successful transmission rates
Poor connection
Low data rates / low successful transmission rates
Cloud Management
Zero Touch Provisioning Self Healing
16
© 2013 Aerohive Networks CONFIDENTIAL
THANK YOU
© 2013 Aerohive Networks CONFIDENTIAL
Wired and wireless Infrastructure 2012 MQ Aerohive is a Visionary!
18
A Magic Quadrant Visionary for wired and wireless InfrastructureThe strongest “completeness of vision” in the quadrant (the farthest to the right)
• An innovation leader with products such as its Bonjour Gateway and its cooperative control architecture, which eliminates the need for a dedicated controller and provides a cost competitive solution without sacrificing functionality.
• Aerohive should be considered for any overlay WLAN enterprise opportunities in North America, Western Europe or Australia/New Zealand, especially in the education, healthcare and retail markets.
• Its controller-less, mesh-based architecture provides an easy-to-use and robust solution with lower operational costs, which makes it a standard bearer for market pricing of equivalent functionality.
© 2013 Aerohive Networks CONFIDENTIAL 19
Two Approaches to Unified Access Layer
• Cisco › Large Branch / Medium
Campus Environment
• Aerohive› Large Branch / Medium
Campus Environment
$$$$$$ $$$
Access Layer “Hive”
Cloud Mgmt. & Provisioning
Access Switch
AP
© 2013 Aerohive Networks CONFIDENTIAL 20
Two Approaches to Unified Access Layer
• Cisco › Small Branch Environment
• Aerohive› Small Branch Environment
4G Backup
Cloud Mgmt. & Provisioning
$$$
Integrated Switch/Router with 4G b/u
$$$$$$
Access Layer “Hive”
AP