In my previous post I explained why current security architectures aiming at inspecting all inline traffic via hardware appliances are failing to provide proper segmentation and scale in modern day data centers. As I described, this has nothing to do with the type of security technology being deployed but rather with engineering security services that can answer the requirements of scale, high bandwidth, micro-segmentation and distributed applications.
We have to remind ourselves why we are having these architectural discussions: the application and service landscape has been virtualized, generally in excess of 70%, while entertaining any cloud solution will force you down the path of moving to 100% virtualization. Yes, there are still physical servers and legacy applications to which we will extend security services to. But instead of being the norm, we now have to consider their place in the overall architecture as exceptions and design security and networking services around what makes up the bulk of the workloads, i.e. virtualized applications in the form of VMs and containers.
With this understanding, let’s discuss how years of deploying hardware security architectures have boxed us in a complex unidimensional, sequential approach to security policies and how we can now move beyond this implementation scheme with virtualization and the proper software tools. Continue reading
Pim sparse mode – Multicast is used to send the data to the multiple receivers at the same time. Multicast reduces the load on the servers (Senders/Source in multicast term), provides efficient capacity usage on the network links. Figure – 1 Unicast vs Multicast Flows Multicast runs on top of UDP. Multicast uses Class D […]
The post Pim Sparse Mode appeared first on Orhanergun.
Pim sparse mode – Multicast is used to send the data to the multiple receivers at the same time. Multicast reduces the load on the servers (Senders/Source in multicast term), provides efficient capacity usage on the network links. Figure – 1 Unicast vs Multicast Flows Multicast runs on top of UDP. Multicast uses Class D […]
The post Pim Sparse Mode appeared first on Cisco Network Design and Architecture | CCDE Bootcamp | orhanergun.net.
In the second part of this video series, Tony Fortunato begins making changes to a live network.
Apparently RedHat Ansible has realised that network devices is a separate market for their product and has created an “Ansible for Networking”. Frankly, I’m surprised that this wasn’t a thing already.
The post RedHat And Ansible For Networks appeared first on Packet Pushers.
Apparently RedHat Ansible has realised that network devices is a separate market for their product and has created an “Ansible for Networking”. Frankly, I’m surprised that this wasn’t a thing already.
The post RedHat And Ansible For Networks appeared first on Packet Pushers.
That was quick: AWS gets into our MWC coverage on Day One.
The MANO group is hosted by ETSI.
Deutsche Telekom and SK Telecom are already using it.
Kicking off Mobile World Congress with the state of the new Nokia.
Progress in Linux containers from the likes of Avi, Mesosphere, and PLUMgrid.