Business Transformation Through Innovation
Cisco Virtual Managed Services
Tom Cof, PSS
Service Provider NGN, SEE region
[email protected]
• A disruptive paradigm has emerged where innovative customer experiences are key and the value has shifted to cloud based services
• Automation of Services, NFV, SDN, and Cloud Enable the Ecosystem
• Business Creation, Execution, and Delivery Key to Take Advantage of New Markets
• Cisco strategy is to deliver new customer experiences from the cloud, through the ground to untethered users -- and to connect those clouds together
• Cisco Virtual Managed Services (vMS) is a secure cloud services solution services seamlessly, cost-effectively and on-demand to customers and partners – cost-effectively, quickly, and optimized for amazing user experiences
• Cisco has the right approach to SDN/NFV and automated services orchestration with complementary open platforms – Evolved Services Platform (ESP) , Evolved Programmable Network
• Automated, open, flexible and and application-centric infrastructure required
• Cisco Virtualized Managed Services modules are easy to buy, deploy, and maintain
• Cisco and its Partner community can uniquely help you in your journey to overcome the business challenges and seize these new opportunities.
the opportunities
Industry Market Trends
Changing Customer Expectations
The World Has Gone Mobile
Massive Traffic Growth, Driven by Video
Changing Architecture for Service Delivery Emergence of the Internet of Everything
Process Things
People Data
Ubiquitous Access
to Apps & Services
Changing Enterprise Business Models
Efficiency & Capacity
Rise of Cloud Computing
M2M Driving Enterprise Business Value
User ≠ One Size Fits All
Business Customers Demand More Flexible Offerings --
Inclusive of Hardware and Software
On-Demand
Bandwidth & Capacity
Smart Data & Analytics
Rapid Deployment of New
Business Applications
Anywhere/Anytime
Secure Accessibility
User Experience
Delivered
Open Solutions
Seamless
Connectivity
One Stop
Shop
UX &
Multi-Platform
On-Demand
Solutions
The New Customer Requirements
Telco / Mobile Service
Providers
$$
$$
Customers
Enterprise s Public Sector Consumer1. Fueled by Consumption Economics 2. Highly-industrialized / automated process 3. Fast-paced innovation (Software-driven)
$$
$$
The Internet
1. Market – Sell – Install – Support
2. Complex systems and limited automation 3. Legacy networks, legacy services
Cloud Service
Providers
IaaS PaaS XaaS OTT$$
many networks, technologies and systems massive growth of IP traffic $ $$$$
$$
$$
converged and private networks PPPoE IPv4 IPv6 MPLS MPLS-TP OTN DWDM ATM SDH xGE tunnel VPN MP-BGP ISIS/OSPF MPLS-TE DHCP EOAM IPOAM LACP SNMP CLI XML t revenue cost $The value has shifted…
Cisco Confidential 6 © 2013-2014 Cisco and/or its affiliates. All rights reserved.
The Starting Point:
Unique Opportunity of the SMB Market
An Excellent starting point to Evolve Business Services Models
Modular Architecture: Low Cost Customization
Cloud Services Delivers on New Buy Models
Demands & Cycles
Variability in Vertical, Size & Offering Needs,
Buy-Cycle; One-Size Does Not Fit All
SDN, NFV and Orchestration
Creating the Change Platform for Service Delivery
Orchestration
Automation, provisioning and interworking
of physical and virtual resources
Service Orchestration
NFV SDN
SDN
Optimization of control and data plane
enabling consistent open programmability
NFV
Network functions and software running
on any open standards-based hardware
The Time is NOW to put SDN , NFV, and Orchestration into Action
Services Platform
Business Customers Must Manage a Collection of Providers
“Pain Point”… Fewer Cycles Applied to Core Business
Find a Systems Integrator (SI) to:
1.
Acquire Application and Manage IT
2.
Manage Web Access
3.
Get and Manage Servers and PCs
4.
Arrange for Backup and Storage
5.
Determine Security Needs
Find a Service Provider (SP) to:
1.
Get Internet Connectivity
2.
Manage Email
The Transformative Power of the Cloud
Enterprise SMB CPEVirtual or Physical
Network Elements
CPE Any AccessSecure Broadband / Leased Line / Carrier Ethernet …
Foundation for Service Agility and Transforming Customer Experience
Self-Service Portal Virtualized Mobility Services Virtualized Video Services Virtualized Managed Services
Cloud-based
auto-discovery, provisioning,
orchestration automation
and management
Any AccessWhat is needed to deliver network services from the Cloud?
Storage Network Compute Service Catalogue Orchestration Engine5) Flexible CPE – Zero Touch Provisioning
vCPE vISE vNAT vFW
Programmable Network
2) Orchestration
4) Network: Open, Fast, Reliable
3) Virtualized Services
Portal
Cisco Service Provider Strategy
Business Transformation Through Innovation
Applications
Automation
Management
Orchestration
Policy
(MANO)
Physical
And Virtual
Infrastructure
(NFVI)
Cisco
Services
Business Mobility Video Consumer
VNFs Storage Compute Network Service Broker Catalog of Virtual/Physical Functions Service Profiles Orchestration Engine Cloud
Evolved Programmable Network
Evolved Services Platform
Our Industry’s Mission : Business Transformation
Automation is Not New – REQUIRED NOW for Business Success
Virtualized Resource Pools (network ready compute/storage) Virtualized Network Functions Dynamic Set-Up,
Tear Down and Provisioning On-Demand Workload Movement with Service Profiles
Data Center
Network
Workload
Portability
Orchestration
Full Access to Resource Pools Anywhere in the CloudCloud Services
Branch
Service Provider Vision for Next Generation Business Services
Public Cloud
Virtual
Private Cloud
vCPE
• Deliver business outcomes based on services automation
• Integrated SDN and Cloud platforms – networks and applications services
• Agile DevOps-based orchestration
• Best-in-class multi-vendor physical and virtual networking functions
• End customer visibility and control
• Open platform for integration with open source & 3
rdparty VNFs / applications
Cloud PoP
Private CloudCentralized
Data
Center
Virtual Network Functions
Cisco Virtual Managed Services
A Focused Approach
• Integrate Virtual Private Networks (VPN) with Cloud Services
• Self Service – Catalog Driven
• Addressing : Small [branches] of the Large [enterprises]
++ Plus
Remote Worker, SOHO, Distributed Sites (hospitality, retail)
• Lower TCO (Agility, Automation, Simplification)
via Virtualization & Cloud Management
• Leverage Existing SP Network Infrastructure
• Shorter Time To Revenue with NO upfront CAPEX
• Ability to Bundle / Package services
Virtual Managed Services is a
portfolio of secure cloud-based
services solutions enabling
automated delivery of business
connectivity and applications
services cost-effectively,
seamlessly, and on-demand to
customers and partners -
optimized for amazing user
experiences
Automate Services End-to-End
Create New Services On-Demand
Simple / Customized Shopping Portal
Modular Tools to Match Your Business
Easy to Deploy and Maintain
Seamless and Secure Cloud Delivery
For Enterprise and SMB Customers
Comprehensive Services Where and When You Need Them
Compliance & Service Level Agreements
Secure User & Permissions Based
For Your Customers, Users, IT: One Portal, One Bill
Virtualized Services
Home / Remote Offices Branch Offices
Public/Community Wifi
Remote Workers
Big Data & Analytics
CloudVPN On-Demand (New Sites, Users, Stores) Advertising/Media
Security, Permissions
PAYG Collaboration, Communications (UC)
eCommerce, Websites Network & Internet Plus Additional Services
VoIP & Mobility
Retail Locations
Doc/App Storage Support
Mail, Apps (CRM, ERP)
Secure & Easy User Portal
xDSL GPON FTTX Mobile xDSL GPON FTTX Mobile xDSL GPON FTTX Mobile R2 R1 R1 R1
Goal:
Multi-tenant
Virtual Private Network+Cloud
Virtual Private Cloud ( VPC )
Logical design automatically created within the WAN and Cloud Data Center self-service creation and modifications
Enabled For Rapid Growth & Seamless Services Delivery
Your Needs:
Easy to Sell, Activate, Create,
Maintain
Your Org Needs:
Easy Integration, Customization,
Usability, Serviceability
Your Customers’ Needs:
Fast Start-Up, Easy-to-Use
On-Demand, Customizable UX
Portal for Service Creation,
Offers and Expansions; Simple
Dashboards & Tooling for
Visibility & Analytics
Plug & Play Install (No
Staging); Multi-Size
Businesses
Service Agility: SP
Template-Based
Configuration
Easy On-Demand
Ordering of New
Applications, Services
Northbound APIs for SP
Integration (Plug & Play
w/Tools You Want to Use
Immediate GTM with No
CAPEX, Multi-Vendor
Customer Experience in a Nutshell
Unbox & Plug-in
Service up and running
CPE ships
Orchestration happens!
Order Services
Evolution of Managed Services – Premise to Cloud
Accelerate Delivery of New Services via Secure Transport
Premise
Cloud
L3 “classic”
L2 NID
Network Functions from the Cloud
Network Functions on the CPE
L3 CPE + x86 on premise L3 CPE + cloud managed Simple L3 CPE vMeraki on X86 on prem Network Functions Virtual Network Functions
Cloud
Management
How It Works: Cloud Based IT
On-Prem Device
Today
Time to Market
Cloud Managed into SMB & Enterprise
Next Step
Add Premise Devices and Secure Connection
Email cleansing, advanced security, CSR, ASAv, WSAv. ISR Meraki L2 NID
Cross Domain
Device and Service Orchestration
Self-Service Portal / Catalog REST API WAN DC Network
Today
Time to Market
Premise (CPE)Add Virtual Infrastructure & Bundle Offers
Cloud Managed SMB & Enterprise
Evolved Services Platform (NFV MANO)
Evolved Programmable Network (NFVI)
Virtualized Services
Next Step
Secure End-End Connections to Services
Email cleansing, advanced security, CSR, ASAv, WSAv. ISR Meraki L2 NID
Cross Domain
Device and Service Orchestration
Self-Service Portal / Catalog REST API WAN DC Network
Today
Time to Market
Premise (CPE)Add Hybrid Cloud and As a Service Offerings
Cloud Managed SMB & Enterprise
Evolved Services Platform (NFV MANO)
Evolved Programmable Network (NFVI)
Virtualized Services
3
rdParty
Cloud
Intercloud
Cloud
Services
Hybrid Workload
Add PaaS, SaaS,
NAAS
Cisco Evolved Services Platform
Service Provider Cloud
Storage Network Compute
Cisco Evolved Programmable Network Open APIs Customers Secure Broadband Internet Service Catalog Orchestration Engine Flexible CPE Cisco ISR Meraki MX Ethernet NID
CSR1Kv ASAv WSAv vIPS
Operations Savings
Business
Outcomes
Cisco Virtual Managed Services
Cloud VPN / Cloud Security
Self-Service Portal
Virtual Managed Services -- Cloud VPN
Package 1: CloudVPN with Internet, Firewall (FW), Remote Access (RA)
Cloud IPVPN with FW and Remote Access to Internet
vFW with NAT and Policy
vFW with IPSec/SSL Remote Access
including Remote End-Host posture verification
CPE CPE CPE Internet Router vFW SP CLOUD
Internet
Cloud-Hosted ManagementScalable, elastic, on-demand
Overlay Packet Tunnels
IPSec tunnels – mesh, hub/spoke
CPE
CPE
CPE
SP CLOUD
Cloud-Hosted Management
Scalable, elastic, on-demand
Internet Router vFW
VR
WSAv
Virtual Managed Services -- Cloud VPN
Package 2: CloudVPN with Internet, FW, RA and Enhanced Web Security
Cloud IPVPN with FW and Remote Access to Internet
vFW with NAT and Policy
vFW with IPSec/SSL Remote Access including Remote End-Host posture verification
WSAv for Enhanced Web Security
Overlay Packet Tunnels
IPSec tunnels – mesh, hub/spoke
CPE
CPE
CPE
SP CLOUD
Cloud-Hosted Management
Scalable, elastic, on-demand
Internet Router vFW VR vNG-IPS
Internet
Virtual Managed Services : Cloud
Package 3: CloudVPN with Internet, FW, RA and Next-Gen-IPS
Cloud IPVPN with FW and Remote Access to Internet
vFW with NAT and Policy
vFW with IPSec/SSL Remote Access including Remote End-Host posture verification
vNG-IPS (SourceFire) for advanced threat protection and real-time contextual awareness
Overlay Packet Tunnels
Virtual Managed Services – Flexible Consumption Models
Physical and Virtual Elements Compute, Network, Storage
Open “Pluggable” Platform Packages Pre-Packaged Virtual Services Solutions
Advanced & Consulting Services
Basic Packages Cloud VPN CSR1kv Advanced Packages
Portable Across Hardware
Pay As You Grow Metering
Cloud VPN Advanced Cloud VPN ASAv Cloud Security Advanced Cloud Security vESA Cloud Security ASAv Virtual Managed Services
Cisco Evolved Services Platform (NFV MANO)
Virtual Infrastructure Managers (VIM) Automated Services Orchestration + SDN
Service Catalog + Self-Service Portal
Perpetual
Cisco Evolved Programmable Network NFV Infrastructure (NFVI)
Term or
Perpetual
Virtual Managed Services Solution Mobile Services Solution Video Services SolutionFlexible Deployment Options – Cloud VPN / Cloud Security
Integrated
Solution
Virtualized Functions
with Service
Orchestration
As-a-Service
Delivery
Repurposed on the Fly
Open Interface to 3rd Parties
Elements that Plug and Play
Individual
Functions
ISR Meraki CSR1Kv ASAv vIPS WSAv NSO Self-Service Portal CSR1Kv ASAv vIPS WSAv NSO Self-Service PortalPhysical and Virtual Infrastructure Advanced Services CSR1Kv ASAv vIPS WSAv NSO Self-Service Portal Leveraging Intercloud Ecosystem CSR1Kv ASAv vIPS WSAv NSO Self-Service Portal
The Transition to Cloud Based Services
Deployment Implications
Disruptive TechnologiesSDN + NFV
+ Open Source
Operational Disruption and Uncertainty…People
Skills
Process
Analytics
Key Strategic Operational Questions….•
WAN + DC
Operations?
•
Virtual &
Physical?
•
What MANO
tools?
•
Multi-Vendor?
•
What SLAs?
Partner
with Cisco
Solution Based
Services
•
Assessments
•
Insights
•
Customization
•
Design & Deploy
•
Build & Operate
•
As a Service
End to End System
Architecture
Elastic Services Controller (ESC)
Tenant Portal
Network Services Orchestrator (NSO)
NETCONF/YANG REST API
NC/YANG, RC/YANG
SP’s OSS/BSS
CPE
PnP Functionality Zero Touch Provisioning
OpenStack X 8 6 S e rv e r Internet Gateway VNF Service chain Provision CSR1Kv
CPE Shipped at Customer Site, connected & Powered ON
Customer Orders Service
Provide Day 1 Configuration
Establish VPN: IPSec tunnel, IP Overlay (L2TP, VXLAN, GRE, LISP)
PnP server
CloudVPN (ISR) CPE Use Case
CSR1Kv ASAv vESA
CloudVPN (Meraki CPE) Use Case
Elastic Services Controller (ESC)
Tenant Portal
Network Services Orchestrator (NSO)
SP’s OSS/BSS or Prime Order Fulfillment (POF)
Meraki CMS
IPSec Tunnel
API
Call Home and Zero Touch Provisioning
OpenStack CSR1Kv ASAv X 8 6 S e rv e r DCI vESA CloudVPN Connectivity up Provision CSR1Kv OVS
Meraki CPE Shipped at Customer Site, connected & Powered ON
Info Exchanged on new CPE Provisioning
Customer Orders a Meraki CPE
Meraki CPE
VTF
NETCONF/YANG REST API
SP
End to End overview - CloudVPN system components
VR CSR NED
VR_CSR Other Network Services
vFW vASA NED ISR NED O/S virt infra mgr Portal: Service Consumer Self Service Create Deliver Operate Optimize cisco Network Compute Storage Service Design Create Deliver Operate Optimize cisco Service Design My Deployments My Designs Deploy Deployment Wizard Select Scope Engineering New Folder Testing Operator Self Service vNG-Intrusion Protection vSecWeb-WSAv NC/YANG REST/XSD vNG IPS NED vSec Web NED Customer VPN BSS Systems RC/YANG NC/YANG VFW_vASA ESC virt service lifecycle management ne tc on fd service models device models
fastmap reactive fastmap
yan g yan g yang O/S component APIs RC/YANG NC/YANG RC/YANG NC/YANG Config & Operation jav a Virtual Switch netconfd Virtual Switch
Model driven service consumer portal for self-service self-service lifecycle : create, modify, redeploy,
delete
NCS
network service lifecycle management
ISR CPE Csco PnP http Csco CLI via SSH Config & Operation Discovery
& Call Home (Call Home) PnP Server
MX CPE Meraki Cloud Meraki: User Dashboard Discovery & Call Home Config & Operation Meraki Cloud NED Discovery & Call Home WAN network and Internet